[2010/09/23 20:09:12 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Jcarr\Application Data\Mozilla\Extensions
[2011/11/08 21:42:27 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Jcarr\Application Data\Mozilla\Firefox\Profiles\jpbral62.default\extensions
[2011/02/10 16:48:46 | 000,000,000 | ---D | M] () -- C:\Documents and Settings\Jcarr\Application Data\Mozilla\Firefox\Profiles\jpbral62.default\extensions\{000F1EA4-5E08-4564-A29B-29076F63A37A}
[2011/03/08 17:26:06 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Jcarr\Application Data\Mozilla\Firefox\Profiles\jpbral62.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/11/08 21:42:27 | 000,000,000 | ---D | M] (BitTorrentBar Community Toolbar) -- C:\Documents and Settings\Jcarr\Application Data\Mozilla\Firefox\Profiles\jpbral62.default\extensions\{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
[2011/01/09 15:26:10 | 000,000,000 | ---D | M] ("DVDVideoSoft Menu") -- C:\Documents and Settings\Jcarr\Application Data\Mozilla\Firefox\Profiles\jpbral62.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
[2011/05/10 21:21:00 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Jcarr\Application Data\Mozilla\Firefox\Profiles\jpbral62.default\extensions\engine@conduit.com
[2011/11/10 21:33:03 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/10/06 20:27:53 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2011/11/10 21:33:02 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/05/04 03:52:23 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011/03/22 12:38:12 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll
[2010/03/31 09:09:22 | 010,437,264 | ---- | M] (PDFTron Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\PDFNetC.dll
[2010/04/08 11:36:02 | 000,107,760 | ---- | M] () -- C:\Program Files\mozilla firefox\plugins\ScorchPDFWrapper.dll
[2011/05/09 17:16:37 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011/11/10 21:33:02 | 000,002,040 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml
O1 HOSTS File: ([2011/12/03 12:57:48 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [Freecorder FLV Service] C:\Program Files\Freecorder\FLVSrvc.exe (Applian Technologies, Inc.)
O4 - HKLM..\Run: [IObit Malware Fighter] C:\Program Files\IObit\IObit Malware Fighter\IMF.exe (IObit)
O4 - HKLM..\Run: [SmcService] C:\Program Files\Sygate\SPF\Smc.exe (Sygate Technologies, Inc.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [Steam] C:\Program Files\Steam\Steam.exe (Valve Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Documents and Settings\Jcarr\Application Data\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKCU\..Trusted Domains: ([]msn in My Computer)
O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites)
O16 - DPF: {6D0E375A-7C00-4DB2-9D7E-D5B1ACDAF1F2}
http://75.76.219.97:1234/FEWatch.cab (FEWatch4 Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E26E5340-377E-4688-ABCD-44CA58B52B81}: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop WallPaper: C:\Documents and Settings\Jcarr\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Jcarr\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/06/29 23:09:59 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2009/07/16 16:13:07 | 001,246,440 | R--- | M] (BioWare) - D:\autorun.exe -- [ CDFS ]
O32 - AutoRun File - [2010/08/17 11:40:05 | 000,000,052 | R--- | M] () - D:\autorun.inf -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\WINDOWS\System32\DivX.dll (DivX, Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.VP60 - C:\WINDOWS\system32\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\WINDOWS\system32\vp6vfw.dll (On2.com)
Drivers32: vidc.yv12 - C:\WINDOWS\System32\DivX.dll (DivX, Inc.)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2011/12/03 18:05:49 | 000,083,968 | ---- | C] (Esage Lab) -- C:\Documents and Settings\Jcarr\Desktop\boot_cleaner.exe
[2011/12/03 18:04:18 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011/12/03 18:03:03 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Jcarr\Desktop\OTL.exe
[2011/12/03 12:09:16 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2011/12/03 12:05:33 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2011/12/03 12:05:33 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2011/12/03 12:05:33 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2011/12/03 12:05:33 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2011/12/03 12:02:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2011/12/03 12:02:36 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/12/03 11:06:46 | 001,566,512 | ---- | C] (Kaspersky Lab ZAO) -- C:\Documents and Settings\Jcarr\Desktop\tdsskiller.exe
[2011/12/03 00:13:03 | 000,435,032 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2011/12/03 00:13:03 | 000,314,456 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2011/12/03 00:13:03 | 000,111,320 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2011/12/03 00:13:03 | 000,105,176 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2011/12/03 00:13:03 | 000,052,952 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2011/12/03 00:13:03 | 000,034,392 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2011/12/03 00:13:03 | 000,030,808 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2011/12/03 00:13:03 | 000,020,568 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2011/12/03 00:13:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\avast! Free Antivirus
[2011/12/03 00:12:55 | 000,199,816 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2011/12/03 00:12:55 | 000,041,184 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2011/12/03 00:12:47 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2011/12/03 00:12:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\AVAST Software
[2011/12/03 00:04:37 | 001,916,416 | ---- | C] (AVAST Software) -- C:\Documents and Settings\Jcarr\Desktop\aswMBR.exe
[2011/12/02 22:08:56 | 004,326,308 | R--- | C] (Swearware) -- C:\Documents and Settings\Jcarr\Desktop\ComboFix.exe
[2011/12/02 22:06:07 | 000,607,260 | R--- | C] (Swearware) -- C:\Documents and Settings\Jcarr\Desktop\dds.scr
[2011/12/02 22:04:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jcarr\Application Data\Malwarebytes
[2011/12/02 22:04:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/12/02 22:04:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Malwarebytes
[2011/12/02 22:04:26 | 000,022,216 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/12/02 22:04:26 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011/12/02 18:55:19 | 000,656,320 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctEFA.sys
[2011/12/02 18:55:19 | 000,338,880 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctDS.sys
[2011/12/02 18:55:18 | 000,251,560 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctgntdi.sys
[2011/12/02 18:55:11 | 000,239,168 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTCore.sys
[2011/12/02 18:55:11 | 000,160,448 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTAppEvent.sys
[2011/12/02 18:55:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\PC Tools Security
[2011/12/02 18:55:05 | 000,070,536 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctplsg.sys
[2011/12/02 18:55:01 | 000,000,000 | ---D | C] -- C:\Program Files\PC Tools Security
[2011/12/02 18:55:01 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PC Tools
[2011/12/02 18:55:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jcarr\Application Data\PC Tools
[2011/12/02 18:49:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\PC Tools
[2011/11/21 09:11:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\iTunes
[2011/11/21 09:10:38 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2011/11/18 09:07:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jcarr\My Documents\RCT3
[2011/11/18 09:07:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jcarr\Application Data\Atari
[2011/11/18 09:06:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Roller Coaster Tycoon 3 Platinum - CarlesNeo !
[2011/11/18 09:03:25 | 000,000,000 | ---D | C] -- C:\Program Files\Roller Coaster Tycoon 3 Platinum - CarlesNeo !
[2011/11/10 00:36:04 | 000,000,000 | ---D | C] -- C:\Program Files\IMG to ISO
[2011/11/10 00:36:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\IMG to ISO
[2011/11/04 19:17:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe
[2011/11/03 21:24:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Protected Music Converter
[2011/11/03 21:24:15 | 000,000,000 | ---D | C] -- C:\Program Files\WMA-MP3.com
[2011/11/03 21:14:21 | 000,000,000 | ---D | C] -- C:\Program Files\Free WMA MP3 Converter
[2011/11/03 21:14:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jcarr\Start Menu\Programs\Free WMA MP3 Converter
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/12/03 18:03:10 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jcarr\Desktop\OTL.exe
[2011/12/03 16:06:00 | 000,000,386 | ---- | M] () -- C:\WINDOWS\tasks\Final Media Player Update Checker.job
[2011/12/03 15:11:01 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/12/03 13:02:04 | 000,503,204 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/12/03 13:02:04 | 000,088,726 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/12/03 12:58:51 | 000,000,280 | ---- | M] () -- C:\WINDOWS\tasks\SmartDefrag_Startup.job
[2011/12/03 12:57:59 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/12/03 12:57:48 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011/12/03 12:57:13 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/12/03 12:09:19 | 000,000,339 | RHS- | M] () -- C:\boot.ini
[2011/12/03 12:06:42 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/12/03 12:05:05 | 004,326,308 | R--- | M] (Swearware) -- C:\Documents and Settings\Jcarr\Desktop\ComboFix.exe
[2011/12/03 11:07:02 | 001,566,512 | ---- | M] (Kaspersky Lab ZAO) -- C:\Documents and Settings\Jcarr\Desktop\tdsskiller.exe
[2011/12/03 09:33:12 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\J6H4cVn.com_.b
[2011/12/03 00:13:03 | 000,002,625 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011/12/03 00:13:03 | 000,001,689 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\avast! Free Antivirus.lnk
[2011/12/03 00:11:39 | 000,042,319 | ---- | M] () -- C:\Documents and Settings\Jcarr\Desktop\Orchestration.sib
[2011/12/03 00:05:05 | 001,916,416 | ---- | M] (AVAST Software) -- C:\Documents and Settings\Jcarr\Desktop\aswMBR.exe
[2011/12/02 22:06:28 | 000,607,260 | R--- | M] (Swearware) -- C:\Documents and Settings\Jcarr\Desktop\dds.scr
[2011/12/02 22:05:50 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\Jcarr\Desktop\8592qs41.exe
[2011/12/02 22:04:31 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/12/02 21:21:16 | 000,166,712 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/12/02 19:00:28 | 000,000,112 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\fNQS5xOoj.dat
[2011/12/02 18:55:28 | 000,662,868 | ---- | M] () -- C:\WINDOWS\System32\drivers\Cat.DB
[2011/12/02 18:55:15 | 000,013,428 | -HS- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\1j12k24v1r5y337242lk111b71y3g67k47nia
[2011/12/02 18:55:12 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\J6H4cVn.com.b
[2011/12/02 18:55:09 | 000,001,682 | ---- | M] () -- C:\Documents and Settings\Jcarr\Application Data\Microsoft\Internet Explorer\Quick Launch\Spyware Doctor.lnk
[2011/12/02 18:47:23 | 000,512,992 | ---- | M] () -- C:\Documents and Settings\Jcarr\Desktop\sdinstaller.exe
[2011/11/28 12:01:25 | 000,041,184 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2011/11/28 12:01:23 | 000,199,816 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2011/11/28 11:53:53 | 000,435,032 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2011/11/28 11:53:35 | 000,314,456 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2011/11/28 11:52:19 | 000,034,392 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2011/11/28 11:52:16 | 000,052,952 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2011/11/28 11:52:02 | 000,111,320 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2011/11/28 11:51:59 | 000,105,176 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2011/11/28 11:51:50 | 000,020,568 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2011/11/28 11:48:49 | 000,030,808 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2011/11/23 00:03:43 | 000,087,709 | ---- | M] () -- C:\Documents and Settings\Jcarr\Desktop\Strings Composition.sib
[2011/11/21 09:11:08 | 000,001,542 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\iTunes.lnk
[2011/11/13 17:59:53 | 000,003,185 | ---- | M] () -- C:\WINDOWS\unins000.dat
[2011/11/13 17:56:50 | 000,695,578 | ---- | M] () -- C:\WINDOWS\unins000.exe
[2011/11/10 03:03:05 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011/11/07 21:19:12 | 000,082,803 | ---- | M] () -- C:\Documents and Settings\Jcarr\Desktop\Rush.sib
[2011/11/07 20:23:23 | 000,411,192 | ---- | M] () -- C:\Documents and Settings\Jcarr\My Documents\rush_score.pdf
[2011/11/06 14:49:50 | 000,048,867 | ---- | M] () -- C:\Documents and Settings\Jcarr\Desktop\303853_10150425673476253_590881252_10762840_547261239_n.jpg
[2011/11/03 21:14:21 | 000,000,688 | ---- | M] () -- C:\Documents and Settings\Jcarr\Desktop\Free WMA MP3 Converter.lnk
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/12/03 12:09:19 | 000,000,223 | ---- | C] () -- C:\Boot.bak
[2011/12/03 12:09:16 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2011/12/03 12:05:33 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2011/12/03 12:05:33 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2011/12/03 12:05:33 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2011/12/03 12:05:33 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2011/12/03 12:05:33 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2011/12/03 09:33:12 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\J6H4cVn.com_.b
[2011/12/03 00:13:03 | 000,001,689 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\avast! Free Antivirus.lnk
[2011/12/02 22:59:15 | 000,042,319 | ---- | C] () -- C:\Documents and Settings\Jcarr\Desktop\Orchestration.sib
[2011/12/02 22:05:40 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\Jcarr\Desktop\8592qs41.exe
[2011/12/02 22:04:31 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/12/02 18:55:20 | 000,662,868 | ---- | C] () -- C:\WINDOWS\System32\drivers\Cat.DB
[2011/12/02 18:55:12 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\J6H4cVn.com.b
[2011/12/02 18:55:09 | 000,001,682 | ---- | C] () -- C:\Documents and Settings\Jcarr\Application Data\Microsoft\Internet Explorer\Quick Launch\Spyware Doctor.lnk
[2011/12/02 18:49:14 | 000,512,992 | ---- | C] () -- C:\Documents and Settings\Jcarr\Desktop\sdinstaller.exe
[2011/12/02 18:48:40 | 000,000,112 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\fNQS5xOoj.dat
[2011/12/02 18:37:02 | 000,013,428 | -HS- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\1j12k24v1r5y337242lk111b71y3g67k47nia
[2011/11/21 09:11:08 | 000,001,542 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\iTunes.lnk
[2011/11/13 17:57:36 | 000,695,578 | ---- | C] () -- C:\WINDOWS\unins000.exe
[2011/11/13 17:57:36 | 000,003,185 | ---- | C] () -- C:\WINDOWS\unins000.dat
[2011/11/07 20:23:23 | 000,411,192 | ---- | C] () -- C:\Documents and Settings\Jcarr\My Documents\rush_score.pdf
[2011/11/06 14:49:50 | 000,048,867 | ---- | C] () -- C:\Documents and Settings\Jcarr\Desktop\303853_10150425673476253_590881252_10762840_547261239_n.jpg
[2011/11/03 21:14:21 | 000,000,688 | ---- | C] () -- C:\Documents and Settings\Jcarr\Desktop\Free WMA MP3 Converter.lnk
[2011/11/03 19:38:29 | 000,082,803 | ---- | C] () -- C:\Documents and Settings\Jcarr\Desktop\Rush.sib
[2011/10/17 16:50:36 | 000,030,028 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2011/08/28 20:49:29 | 000,279,712 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2011/08/28 20:49:29 | 000,025,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2011/08/07 17:15:55 | 000,017,795 | ---- | C] () -- C:\WINDOWS\War3Unin.dat
[2011/07/06 16:09:23 | 000,029,520 | ---- | C] () -- C:\WINDOWS\System32\SmartDefragBootTime.exe
[2011/07/06 16:09:22 | 000,013,496 | ---- | C] () -- C:\WINDOWS\System32\drivers\SmartDefragDriver.sys
[2011/06/24 09:48:21 | 000,000,248 | ---- | C] () -- C:\WINDOWS\RomeTW.ini
[2011/06/21 15:55:51 | 000,033,792 | ---- | C] () -- C:\WINDOWS\System32\drivers\libusb0.sys
[2011/06/07 23:36:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin
[2011/06/06 09:27:06 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2011/05/31 20:50:52 | 000,040,960 | R--- | C] () -- C:\WINDOWS\IGLobbyReg.exe
[2011/04/09 17:55:28 | 000,179,261 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat
[2011/04/05 22:08:08 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2011/03/31 12:35:07 | 000,012,312 | ---- | C] () -- C:\WINDOWS\scunin.dat
[2011/01/25 17:16:14 | 000,000,604 | -H-- | C] () -- C:\Program Files\STLL Notifier
[2011/01/25 17:13:10 | 000,000,452 | ---- | C] () -- C:\WINDOWS\{17FE44E2-D21A-4F0C-BE49-798A8FBC374E}_WiseFW.ini
[2011/01/09 19:36:40 | 000,021,840 | ---- | C] () -- C:\WINDOWS\System32\SIntfNT.dll
[2011/01/09 19:36:40 | 000,017,212 | ---- | C] () -- C:\WINDOWS\System32\SIntf32.dll
[2011/01/09 19:36:40 | 000,012,067 | ---- | C] () -- C:\WINDOWS\System32\SIntf16.dll
[2010/11/13 12:33:58 | 000,040,960 | R--- | C] () -- C:\WINDOWS\System32\psfind.dll
[2010/11/02 20:02:05 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2010/09/26 20:02:00 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010/09/25 09:54:58 | 000,593,920 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2010/09/25 09:54:56 | 003,107,788 | R--- | C] () -- C:\WINDOWS\System32\ativvaxx.dat
[2010/09/25 09:54:56 | 000,189,051 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2010/09/24 22:59:20 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/09/23 21:10:49 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2010/09/23 20:09:07 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010/09/23 20:00:38 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2010/09/23 19:58:02 | 000,001,732 | R--- | C] () -- C:\WINDOWS\System32\drivers\nvphy.bin
[2010/09/23 19:35:17 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010/09/23 19:32:33 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010/09/23 15:29:53 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010/09/23 15:29:10 | 000,166,712 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/02/10 22:12:00 | 003,107,788 | ---- | C] () -- C:\WINDOWS\System32\ativva5x.dat
[2010/02/10 22:12:00 | 000,887,724 | ---- | C] () -- C:\WINDOWS\System32\ativva6x.dat
[2008/10/07 08:13:30 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
[2008/10/07 08:13:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008/10/07 08:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
[2008/10/07 08:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
[2008/10/07 08:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008/10/07 08:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
[2008/10/07 08:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
[2008/10/07 08:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
[2008/10/07 08:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
[2008/10/07 08:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
[2004/10/15 17:31:56 | 000,218,264 | ---- | C] () -- C:\WINDOWS\System32\SetAid.dll
[2003/03/31 06:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2003/03/31 06:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2003/03/31 06:00:00 | 000,503,204 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2003/03/31 06:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2003/03/31 06:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2003/03/31 06:00:00 | 000,088,726 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2003/03/31 06:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2003/03/31 06:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2003/03/31 06:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2003/03/31 06:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2003/03/31 06:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2002/06/04 08:59:58 | 000,204,800 | ---- | C] () -- C:\Program Files\Restoration.exe
========== LOP Check ==========
[2011/12/03 00:12:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\AVAST Software
[2011/08/28 07:27:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Best Buy pc app
[2011/09/14 10:23:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\BioWare
[2011/12/03 12:58:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\DAEMON Tools Lite
[2008/10/19 21:21:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\EarMaster
[2011/05/21 08:03:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Electronic Arts
[2011/08/28 13:23:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Firefly Studios
[2011/10/23 11:46:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Guitar Pro 6
[2011/07/28 10:52:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\IObit
[2011/04/04 22:20:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\MakeMusic
[2011/06/21 14:34:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\PassMark
[2011/10/20 07:49:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Rosetta Stone
[2011/08/28 20:50:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Tages
[2011/08/28 20:49:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Ubisoft
[2011/11/11 19:16:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\VirtualizedApplications
[2011/10/06 22:31:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Xilisoft
[2011/05/05 15:05:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/08/28 07:27:39 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\{76E0646D-ED0B-4E1B-81CC-E8FF0AA8EDC0}
[2011/11/18 09:07:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\Atari
[2011/07/27 17:12:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\Bioshock
[2011/09/13 22:47:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\Bioshock2
[2011/11/18 16:53:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\BitTorrent
[2011/02/13 21:15:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\DAEMON Tools Lite
[2011/01/09 15:26:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\DVDVideoSoftIEHelpers
[2011/02/21 16:09:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\FinalMediaPlayer
[2011/08/29 17:39:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\Firefly Studios
[2011/10/06 22:18:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\GetRightToGo
[2011/07/22 20:57:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\GlarySoft
[2011/10/23 11:47:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\Guitar Pro 6
[2011/06/21 15:45:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\ImgBurn
[2011/07/06 16:09:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\IObit
[2011/04/04 22:20:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\MakeMusic
[2011/04/27 23:39:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\SC2MM
[2011/12/02 19:55:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\SoftGrid Client
[2011/02/10 16:50:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\Sony Online Entertainment
[2011/10/06 21:01:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\SystemRequirementsLab
[2011/07/07 09:14:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\The Creative Assembly
[2011/11/01 17:53:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\TP
[2011/08/28 20:50:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\Ubisoft
[2010/09/25 06:42:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\Uniblue
[2011/08/20 19:06:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\Unity
[2011/10/06 22:31:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jcarr\Application Data\Xilisoft
[2011/12/03 16:06:00 | 000,000,386 | ---- | M] () -- C:\WINDOWS\Tasks\Final Media Player Update Checker.job
[2011/12/03 12:58:51 | 000,000,280 | ---- | M] () -- C:\WINDOWS\Tasks\SmartDefrag_Startup.job
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2010/06/29 23:09:59 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2011/02/12 23:03:12 | 000,000,223 | ---- | M] () -- C:\Boot.bak
[2011/12/03 12:09:19 | 000,000,339 | RHS- | M] () -- C:\boot.ini
[2004/08/03 23:00:00 | 000,260,272 | RHS- | M] () -- C:\cmldr
[2011/12/03 13:03:41 | 000,019,296 | ---- | M] () -- C:\ComboFix.txt
[2010/06/29 23:09:59 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010/11/22 16:07:14 | 000,000,081 | ---- | M] () -- C:\DVDPATH.TXT
[2011/06/21 15:45:05 | 3982,229,504 | ---- | M] () -- C:\FINAL_FANTASY_X_2.ISO
[2011/06/21 15:45:05 | 000,004,314 | ---- | M] () -- C:\FINAL_FANTASY_X_2.MDS
[2010/06/29 23:09:59 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010/06/29 23:09:59 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010/09/23 21:13:41 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2010/09/24 20:21:32 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2011/12/03 12:57:03 | 3219,128,320 | -HS- | M] () -- C:\pagefile.sys
[2011/12/03 11:08:08 | 000,053,430 | ---- | M] () -- C:\TDSSKiller.2.6.21.0_03.12.2011_11.07.46_log.txt
< %systemroot%\Fonts\*.com >
[2006/04/18 14:39:28 | 000,026,040 | ---- | M] () -- C:\WINDOWS\Fonts\GlobalMonospace.CompositeFont
[2006/06/29 13:53:56 | 000,026,489 | ---- | M] () -- C:\WINDOWS\Fonts\GlobalSansSerif.CompositeFont
[2006/04/18 14:39:28 | 000,029,779 | ---- | M] () -- C:\WINDOWS\Fonts\GlobalSerif.CompositeFont
[2006/06/29 13:58:52 | 000,030,808 | ---- | M] () -- C:\WINDOWS\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2010/09/23 19:33:57 | 000,000,067 | -HS- | M] () -- C:\WINDOWS\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2008/07/06 06:06:10 | 000,089,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
[2008/07/06 04:50:03 | 000,597,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\printfilterpipelinesvc.exe
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
[2011/11/28 12:01:25 | 000,041,184 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2002/06/04 08:53:46 | 000,008,127 | ---- | M] () -- C:\Program Files\README.txt
[2002/06/04 08:59:58 | 000,204,800 | ---- | M] () -- C:\Program Files\Restoration.exe
[2011/01/25 17:16:14 | 000,000,604 | -H-- | M] () -- C:\Program Files\STLL Notifier
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
[2010/09/23 15:28:11 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2010/09/23 15:28:11 | 000,626,688 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2010/09/23 15:28:11 | 000,425,984 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
[2010/09/24 20:22:52 | 000,000,272 | -HS- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\desktop.ini
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2010/09/23 21:17:13 | 000,000,177 | -HS- | M] () -- C:\Documents and Settings\Jcarr\Application Data\Microsoft\Internet Explorer\Quick Launch\desktop.ini
[2010/09/23 19:43:09 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\Jcarr\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
< %USERPROFILE%\Desktop\*.exe >
[2011/12/02 22:05:50 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\Jcarr\Desktop\8592qs41.exe
[2011/12/03 00:05:05 | 001,916,416 | ---- | M] (AVAST Software) -- C:\Documents and Settings\Jcarr\Desktop\aswMBR.exe
[2011/09/20 03:02:40 | 000,083,968 | ---- | M] (Esage Lab) -- C:\Documents and Settings\Jcarr\Desktop\boot_cleaner.exe
[2011/12/03 12:05:05 | 004,326,308 | R--- | M] (Swearware) -- C:\Documents and Settings\Jcarr\Desktop\ComboFix.exe
[2011/02/24 06:41:44 | 000,889,416 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\Jcarr\Desktop\dotNetFx40_Full_setup.exe
[2005/08/02 19:43:52 | 005,074,944 | ---- | M] () -- C:\Documents and Settings\Jcarr\Desktop\imperialglory_vnnn_v11.exe
[2006/12/05 15:12:16 | 000,379,822 | ---- | M] (LibUSB-Win32 ) -- C:\Documents and Settings\Jcarr\Desktop\libusb-win32-filter-bin-0.1.10.1.exe
[2011/12/03 18:03:10 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jcarr\Desktop\OTL.exe
[2006/11/23 19:48:46 | 000,040,960 | ---- | M] () -- C:\Documents and Settings\Jcarr\Desktop\ps3sixaxis_en.exe
[2011/12/02 18:47:23 | 000,512,992 | ---- | M] () -- C:\Documents and Settings\Jcarr\Desktop\sdinstaller.exe
[2011/12/03 11:07:02 | 001,566,512 | ---- | M] (Kaspersky Lab ZAO) -- C:\Documents and Settings\Jcarr\Desktop\tdsskiller.exe