[2009/02/18 22:59:30 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\Peter Malanos\Application Data\Mozilla\Firefox\Profiles\jna38tb1.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2009/04/28 09:43:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Peter Malanos\Application Data\Mozilla\Firefox\Profiles\jna38tb1.default\extensions\redshift_V2@shift-themes.com
[2009/04/29 09:01:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Peter Malanos\Application Data\Mozilla\Firefox\Profiles\jna38tb1.default\extensions\yetanothersmoothscrolling@kataho
[2010/08/18 08:11:23 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010/08/03 08:11:03 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/08/03 08:10:44 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2006/12/05 19:54:48 | 000,114,688 | ---- | M] () -- C:\Program Files\Mozilla Firefox\plugins\npmozax.dll
[2008/09/15 11:52:06 | 000,376,832 | ---- | M] ( ) -- C:\Program Files\Mozilla Firefox\plugins\npsnapfish.dll
O1 HOSTS File: ([2010/08/03 11:50:13 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll (Sonic Solutions)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe (Apple Inc.)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [CloneCDTray] C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe (SlySoft, Inc.)
O4 - HKLM..\Run: [ddoctorv2] C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe (SupportSoft, Inc.)
O4 - HKLM..\Run: [HostManager] C:\Program Files\Common Files\AOL\1182363942\ee\aolsoftware.exe (America Online, Inc.)
O4 - HKLM..\Run: [ibmmessages] C:\Program Files\IBM\Messages By IBM\\ibmmessages.exe ()
O4 - HKLM..\Run: [IBMPRC] c:\IBMTOOLS\utils\ibmprc.exe (IBM Corp.)
O4 - HKLM..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe (Analog Devices, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [UC_Start] C:\Program Files\IBM\Updater\\ucstartup.exe ()
O4 - HKLM..\Run: [UpdateManager] c:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe (Sonic Solutions)
O4 - HKCU..\Run: [ibmmessages] C:\Program Files\IBM\Messages By IBM\ibmmessages.exe (IBM)
O4 - HKCU..\Run: [Rainlendar2] C:\Program Files\Rainlendar2\Rainlendar2.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit Inc.)
O4 - Startup: C:\Documents and Settings\Peter Malanos\Start Menu\Programs\Startup\VirtualExpander.lnk = C:\WINDOWS\system32\VirtualExpander\VirtualExpander.exe (Sony Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA}
http://java.sun.com/products/plugin/1.4.2/jinstall-142-win.cab (Java Plug-in 1.4.2)
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab (Java Plug-in 1.5.0_06)
O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab (Java Plug-in 1.6.0_01)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.87.68.166 68.87.74.166
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Peter Malanos\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Peter Malanos\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2005/11/27 02:35:23 | 000,000,000 | -H-- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
NetSvcs: HidServ - C:\WINDOWS\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
Drivers32: midi - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: midimapper - C:\WINDOWS\System32\midimap.dll (Microsoft Corporation)
Drivers32: mixer - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.imaadpcm - C:\WINDOWS\System32\imaadp32.acm (Microsoft Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.msadpcm - C:\WINDOWS\System32\msadp32.acm (Microsoft Corporation)
Drivers32: msacm.msaudio1 - C:\WINDOWS\System32\msaud32.acm (Microsoft Corporation)
Drivers32: msacm.msg711 - C:\WINDOWS\System32\msg711.acm (Microsoft Corporation)
Drivers32: msacm.msg723 - C:\WINDOWS\System32\msg723.acm (Microsoft Corporation)
Drivers32: msacm.msgsm610 - C:\WINDOWS\System32\msgsm32.acm (Microsoft Corporation)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.I420 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: vidc.iyuv - C:\WINDOWS\System32\iyuv_32.dll (Microsoft Corporation)
Drivers32: vidc.M261 - C:\WINDOWS\System32\msh261.drv (Microsoft Corporation)
Drivers32: vidc.M263 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
Drivers32: VIDC.MP42 - C:\WINDOWS\System32\MPG4C32.DLL (Microsoft Corporation)
Drivers32: VIDC.MPG4 - C:\WINDOWS\System32\MPG4C32.DLL (Microsoft Corporation)
Drivers32: vidc.mrle - C:\WINDOWS\System32\msrle32.dll (Microsoft Corporation)
Drivers32: vidc.msvc - C:\WINDOWS\System32\msvidc32.dll (Microsoft Corporation)
Drivers32: vidc.uyvy - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: vidc.yuy2 - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: vidc.yvu9 - C:\WINDOWS\System32\tsbyuv.dll (Microsoft Corporation)
Drivers32: vidc.yvyu - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: wave - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: wavemapper - C:\WINDOWS\System32\msacm32.drv (Microsoft Corporation)
Unable to start service SrService!
========== Files/Folders - Created Within 90 Days ==========
[2010/08/18 08:25:14 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Peter Malanos\Desktop\OTL.exe
[2010/08/10 15:53:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Peter Malanos\My Documents\F
[2010/08/10 15:42:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Peter Malanos\My Documents\Recipes
[2010/08/10 15:39:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Peter Malanos\My Documents\quickbooks backups
[2010/08/10 15:20:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Peter Malanos\My Documents\Arcadia Construction LLC
[2010/08/05 17:55:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Peter Malanos\Desktop\trying to cover this gigantic pale back
[2010/08/05 12:38:23 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010/08/03 21:30:45 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2010/08/03 11:42:20 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010/08/03 11:39:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010/08/03 08:11:57 | 027,386,256 | ---- | C] ( ) -- C:\Documents and Settings\Peter Malanos\Desktop\AdbeRdr930_en_US.exe
[2010/08/03 08:11:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Sun
[2010/08/02 18:35:44 | 000,038,848 | ---- | C] (ALWIL Software) -- C:\WINDOWS\avastSS.scr
[2010/08/02 18:35:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2010/08/02 18:13:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Peter Malanos\Application Data\Malwarebytes
[2010/08/02 18:12:53 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/08/02 18:12:51 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/08/02 18:12:51 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/08/02 18:12:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010/08/02 18:08:17 | 006,153,376 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Peter Malanos\Desktop\mbam-setup-1.46.exe
[2010/08/02 17:47:49 | 000,446,464 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Peter Malanos\Desktop\TFC.exe
[4 C:\Documents and Settings\Peter Malanos\My Documents\*.tmp files -> C:\Documents and Settings\Peter Malanos\My Documents\*.tmp -> ]
========== Files - Modified Within 90 Days ==========
[2010/08/18 08:25:14 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Peter Malanos\Desktop\OTL.exe
[2010/08/18 08:14:21 | 000,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2010/08/18 08:14:00 | 000,000,900 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/08/18 08:02:22 | 000,067,404 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\My Documents\Lot 20 Charlestown.pdf
[2010/08/16 08:53:36 | 000,059,682 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\My Documents\Kendall Awning Quote.pdf
[2010/08/16 08:14:49 | 000,002,278 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/08/16 08:13:54 | 000,000,896 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/08/16 08:13:51 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/08/16 08:13:29 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/08/16 08:13:27 | 2406,010,880 | -HS- | M] () -- C:\hiberfil.sys
[2010/08/16 08:12:13 | 003,670,016 | -H-- | M] () -- C:\Documents and Settings\Peter Malanos\NTUSER.DAT
[2010/08/16 08:12:13 | 000,000,278 | -HS- | M] () -- C:\Documents and Settings\Peter Malanos\ntuser.ini
[2010/08/13 23:34:01 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/08/13 15:03:30 | 009,454,592 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\My Documents\Monarch 2010 Thermal TEst Results.xls
[2010/08/13 15:03:30 | 009,454,592 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\Desktop\Monarch 2010 Thermal TEst Results.xls
[2010/08/12 08:16:03 | 000,094,598 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\Desktop\20100811133627045.pdf
[2010/08/11 19:14:42 | 000,001,824 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2010/08/10 20:10:05 | 000,013,824 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/08/10 16:06:40 | 000,019,456 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\My Documents\codes.doc
[2010/08/10 15:58:24 | 000,000,634 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\Desktop\Shortcut (2) to Rainlendar-Lite-2.3.lnk
[2010/08/10 15:55:20 | 000,000,634 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\Desktop\Shortcut to Rainlendar-Lite-2.3.lnk
[2010/08/10 14:56:24 | 000,068,276 | ---- | M] () -- C:\WINDOWS\hpoins05.dat
[2010/08/10 14:44:08 | 000,068,276 | ---- | M] () -- C:\WINDOWS\hpoins05.dat.temp
[2010/08/09 12:33:14 | 062,435,312 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\Desktop\drv_rub_w01_ENU_NB.exe
[2010/08/03 21:30:28 | 002,672,312 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\Desktop\esetsmartinstaller_enu.exe
[2010/08/03 11:50:47 | 000,000,284 | ---- | M] () -- C:\WINDOWS\system.ini
[2010/08/03 11:50:13 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010/08/03 11:42:25 | 000,000,254 | RHS- | M] () -- C:\BOOT.INI
[2010/08/03 11:27:09 | 000,372,191 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\Desktop\20100802144157514.pdf
[2010/08/03 08:16:16 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2010/08/03 08:12:19 | 027,386,256 | ---- | M] ( ) -- C:\Documents and Settings\Peter Malanos\Desktop\AdbeRdr930_en_US.exe
[2010/08/02 21:42:40 | 000,293,376 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\Desktop\n0tr6363.exe
[2010/08/02 18:36:04 | 000,001,711 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\avast! Free Antivirus.lnk
[2010/08/02 18:36:03 | 000,002,626 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010/08/02 18:32:09 | 054,835,272 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\Desktop\setup_av_free.exe
[2010/08/02 18:12:55 | 000,000,707 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/08/02 18:09:01 | 006,153,376 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Peter Malanos\Desktop\mbam-setup-1.46.exe
[2010/08/02 17:47:50 | 000,446,464 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Peter Malanos\Desktop\TFC.exe
[2010/07/26 23:14:54 | 000,001,802 | ---- | M] () -- C:\Documents and Settings\Peter Malanos\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/06/28 16:57:33 | 000,038,848 | ---- | M] (ALWIL Software) -- C:\WINDOWS\avastSS.scr
[2010/06/28 16:57:12 | 000,165,032 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2010/06/28 16:37:52 | 000,046,672 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2010/06/28 16:37:30 | 000,165,456 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2010/06/28 16:33:13 | 000,023,376 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2010/06/28 16:32:45 | 000,100,176 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2010/06/28 16:32:42 | 000,094,544 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2010/06/28 16:32:33 | 000,017,744 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2010/06/28 16:32:16 | 000,028,880 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2010/06/23 03:03:27 | 000,501,604 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/06/23 03:03:27 | 000,441,454 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/06/23 03:03:27 | 000,071,264 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/06/10 03:28:33 | 000,154,768 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/06/10 03:12:01 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[4 C:\Documents and Settings\Peter Malanos\My Documents\*.tmp files -> C:\Documents and Settings\Peter Malanos\My Documents\*.tmp -> ]