For some reason second section to OTL.txt did not post:
[2010/11/11 18:51:04 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3595617421-2560146394-377733985-1000UA.job
[2010/11/11 18:45:22 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Rich\Desktop\OTL.exe
[2010/11/11 18:24:37 | 000,690,960 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010/11/11 18:24:37 | 000,595,684 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010/11/11 18:24:37 | 000,101,350 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010/11/11 18:18:55 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\LogConfigTemp.xml
[2010/11/11 18:18:53 | 000,004,784 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/11/11 18:18:53 | 000,004,784 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/11/11 18:18:43 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/11/11 18:18:40 | 4293,320,704 | -HS- | M] () -- C:\hiberfil.sys
[2010/11/10 20:56:05 | 000,001,758 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010/11/10 20:32:03 | 002,565,432 | ---- | M] () -- C:\Users\Rich\Desktop\NTBR_CD.exe
[2010/11/10 18:15:21 | 000,089,088 | ---- | M] () -- C:\mbr.exe
[2010/11/10 00:51:00 | 000,000,852 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3595617421-2560146394-377733985-1000Core.job
[2010/11/09 23:37:43 | 000,061,034 | ---- | M] () -- C:\Users\Rich\Documents\cc_20101109_233731.reg
[2010/11/08 22:15:29 | 000,000,836 | ---- | M] () -- C:\Users\Rich\Desktop\KMPlayer.lnk
[2010/11/07 20:39:34 | 002,255,006 | ---- | M] () -- C:\Windows\SysNative\drivers\Cat.DB
[2010/11/07 18:01:52 | 000,424,717 | ---- | M] () -- C:\Users\Rich\Documents\firefox bookmarks.html
[2010/11/07 18:01:00 | 000,396,292 | ---- | M] () -- C:\Users\Rich\Documents\chrome bookmarks.html
[2010/11/07 11:02:05 | 000,029,216 | ---- | M] () -- C:\Users\Rich\AppData\Roaming\UserTile.png
[2010/11/06 18:16:02 | 000,081,920 | ---- | M] () -- C:\Users\Rich\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/11/06 15:38:39 | 000,000,000 | ---- | M] () -- C:\Windows\iPlayer.INI
[2010/11/06 14:58:43 | 000,002,413 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2010/10/29 21:31:18 | 016,639,523 | ---- | M] () -- C:\Users\Rich\B.o.B feat. Hayley Williams and Eminem- Airplanes.mp3
[2010/10/29 16:54:52 | 000,172,227 | ---- | M] () -- C:\Users\Rich\Documents\wsdirect 10.29.csv
[2010/10/29 16:26:14 | 000,162,836 | ---- | M] () -- C:\Users\Rich\Documents\wsblog submiossion 10.29.csv
[2010/10/29 15:20:33 | 000,153,964 | ---- | M] () -- C:\Users\Rich\Documents\blog submission report 10.29.csv
[2010/10/29 13:41:43 | 000,001,955 | ---- | M] () -- C:\Users\Public\Desktop\All-in-One Submission 8.88 Scheduler.lnk
[2010/10/29 13:41:43 | 000,001,929 | ---- | M] () -- C:\Users\Public\Desktop\All-in-One Submission 8.88.lnk
[2010/10/27 17:28:17 | 000,001,944 | ---- | M] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\All-in-One Submission 9.088.8.lnk
[2010/10/25 18:33:58 | 000,000,629 | ---- | M] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Play League of Legends.lnk
[2010/10/24 17:23:35 | 000,019,442 | ---- | M] () -- C:\Users\Rich\Documents\anniversary 2010.odt
[2010/10/24 16:54:26 | 000,032,630 | ---- | M] () -- C:\Users\Rich\Documents\The Mechanic.odt
[2010/10/24 12:38:29 | 000,001,032 | ---- | M] () -- C:\Users\Rich\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk
[2010/10/21 18:26:11 | 000,001,699 | ---- | M] () -- C:\Users\Rich\Desktop\Notepad.lnk
[2010/10/21 17:06:57 | 000,001,614 | ---- | M] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Calculator.lnk
[2010/10/21 07:22:58 | 000,319,368 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010/10/19 22:12:49 | 000,834,544 | ---- | M] () -- C:\Windows\SysNative\drivers\sptd.sys
[2010/10/18 21:03:22 | 000,001,804 | ---- | M] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\iTunes.lnk
[2010/10/18 21:03:09 | 000,000,905 | ---- | M] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\World of Warcraft.lnk
[2010/10/18 20:44:49 | 000,001,027 | ---- | M] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\OpenOffice.org 3.2.lnk
[2010/10/18 16:54:12 | 000,000,000 | ---- | M] () -- C:\Windows\nsreg.dat
[2010/10/18 16:53:01 | 000,001,804 | ---- | M] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2010/10/17 06:37:23 | 000,000,970 | ---- | M] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2010/10/17 01:37:38 | 000,047,092 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2010/10/17 01:34:05 | 000,000,741 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
[2010/10/17 01:31:19 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2010/10/16 23:49:46 | 000,002,001 | ---- | M] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/10/16 23:24:02 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
[2010/10/16 22:52:00 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\drivers\Gateway_M-6888u_N-A_N1C9641000346.MRK
[2010/10/16 22:03:35 | 000,000,808 | ---- | M] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2010/10/16 21:58:46 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
========== Files Created - No Company Name ==========
[2010/11/11 18:18:40 | 4293,320,704 | -HS- | C] () -- C:\hiberfil.sys
[2010/11/10 20:56:05 | 000,001,758 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010/11/10 20:32:05 | 002,565,432 | ---- | C] () -- C:\Users\Rich\Desktop\NTBR_CD.exe
[2010/11/10 18:15:43 | 000,089,088 | ---- | C] () -- C:\mbr.exe
[2010/11/09 23:37:34 | 000,061,034 | ---- | C] () -- C:\Users\Rich\Documents\cc_20101109_233731.reg
[2010/11/09 21:32:45 | 000,024,664 | ---- | C] () -- C:\Windows\SysNative\drivers\mbam.sys
[2010/11/08 22:15:29 | 000,000,836 | ---- | C] () -- C:\Users\Rich\Desktop\KMPlayer.lnk
[2010/11/07 21:11:41 | 000,270,720 | ---- | C] () -- C:\Windows\SysNative\MpSigStub.exe
[2010/11/07 20:39:16 | 002,255,006 | ---- | C] () -- C:\Windows\SysNative\drivers\Cat.DB
[2010/11/07 20:38:44 | 000,557,938 | ---- | C] () -- C:\Users\Rich\AppData\Local\dd_vcredistMSI4A08.txt
[2010/11/07 20:38:44 | 000,022,422 | ---- | C] () -- C:\Users\Rich\AppData\Local\dd_vcredistUI4A08.txt
[2010/11/07 20:38:44 | 000,010,566 | ---- | C] () -- C:\Users\Rich\AppData\Local\dd_vcredistUI4A09.txt
[2010/11/07 18:01:49 | 000,424,717 | ---- | C] () -- C:\Users\Rich\Documents\firefox bookmarks.html
[2010/11/07 18:01:00 | 000,396,292 | ---- | C] () -- C:\Users\Rich\Documents\chrome bookmarks.html
[2010/11/07 11:02:05 | 000,029,216 | ---- | C] () -- C:\Users\Rich\AppData\Roaming\UserTile.png
[2010/11/06 15:38:39 | 000,000,000 | ---- | C] () -- C:\Windows\iPlayer.INI
[2010/11/06 14:58:43 | 000,002,413 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2010/10/29 21:30:43 | 016,639,523 | ---- | C] () -- C:\Users\Rich\B.o.B feat. Hayley Williams and Eminem- Airplanes.mp3
[2010/10/29 16:54:52 | 000,172,227 | ---- | C] () -- C:\Users\Rich\Documents\wsdirect 10.29.csv
[2010/10/29 16:26:14 | 000,162,836 | ---- | C] () -- C:\Users\Rich\Documents\wsblog submiossion 10.29.csv
[2010/10/29 15:20:33 | 000,153,964 | ---- | C] () -- C:\Users\Rich\Documents\blog submission report 10.29.csv
[2010/10/29 13:41:43 | 000,001,955 | ---- | C] () -- C:\Users\Public\Desktop\All-in-One Submission 8.88 Scheduler.lnk
[2010/10/29 13:41:43 | 000,001,929 | ---- | C] () -- C:\Users\Public\Desktop\All-in-One Submission 8.88.lnk
[2010/10/29 13:41:40 | 000,058,880 | ---- | C] () -- C:\Windows\SysWow64\dbrename7.exe
[2010/10/29 13:41:40 | 000,001,078 | ---- | C] () -- C:\Windows\SysWow64\Recyfull7.ico
[2010/10/27 17:28:17 | 000,001,944 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\All-in-One Submission 9.088.8.lnk
[2010/10/26 16:58:58 | 000,032,256 | ---- | C] () -- C:\Windows\SysNative\Apphlpdm.dll
[2010/10/26 16:58:55 | 004,240,384 | ---- | C] () -- C:\Windows\SysNative\GameUXLegacyGDFs.dll
[2010/10/25 18:33:58 | 000,000,629 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Play League of Legends.lnk
[2010/10/24 17:23:33 | 000,019,442 | ---- | C] () -- C:\Users\Rich\Documents\anniversary 2010.odt
[2010/10/24 12:40:43 | 000,032,630 | ---- | C] () -- C:\Users\Rich\Documents\The Mechanic.odt
[2010/10/24 12:38:29 | 000,001,032 | ---- | C] () -- C:\Users\Rich\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk
[2010/10/23 02:01:50 | 000,049,160 | ---- | C] () -- C:\Windows\SysNative\infocardcpl.cpl
[2010/10/23 02:01:38 | 000,011,264 | ---- | C] () -- C:\Windows\SysNative\icardres.dll
[2010/10/23 02:01:34 | 001,168,928 | ---- | C] () -- C:\Windows\SysNative\PresentationNative_v0300.dll
[2010/10/23 02:01:34 | 000,167,432 | ---- | C] () -- C:\Windows\SysNative\infocardapi.dll
[2010/10/23 02:01:33 | 001,383,936 | ---- | C] () -- C:\Windows\SysNative\icardagt.exe
[2010/10/23 02:01:13 | 000,126,520 | ---- | C] () -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll
[2010/10/22 16:43:18 | 000,320,352 | ---- | C] () -- C:\Windows\SysNative\PresentationHost.exe
[2010/10/22 16:43:18 | 000,109,912 | ---- | C] () -- C:\Windows\SysNative\PresentationHostProxy.dll
[2010/10/22 16:43:17 | 001,942,856 | ---- | C] () -- C:\Windows\SysNative\dfshim.dll
[2010/10/22 16:43:17 | 000,444,752 | ---- | C] () -- C:\Windows\SysNative\mscoree.dll
[2010/10/22 16:43:17 | 000,048,960 | ---- | C] () -- C:\Windows\SysNative\netfxperf.dll
[2010/10/21 18:26:11 | 000,001,699 | ---- | C] () -- C:\Users\Rich\Desktop\Notepad.lnk
[2010/10/21 17:06:57 | 000,001,614 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Calculator.lnk
[2010/10/21 16:59:05 | 000,442,368 | ---- | C] () -- C:\Windows\SysNative\winhttp.dll
[2010/10/21 16:58:40 | 000,461,824 | ---- | C] () -- C:\Windows\SysNative\drivers\srv.sys
[2010/10/21 16:58:40 | 000,179,712 | ---- | C] () -- C:\Windows\SysNative\srvsvc.dll
[2010/10/21 16:58:40 | 000,175,104 | ---- | C] () -- C:\Windows\SysNative\drivers\srv2.sys
[2010/10/21 16:58:40 | 000,144,896 | ---- | C] () -- C:\Windows\SysNative\drivers\srvnet.sys
[2010/10/21 16:58:39 | 000,017,920 | ---- | C] () -- C:\Windows\SysNative\netevent.dll
[2010/10/21 16:58:39 | 000,012,288 | ---- | C] () -- C:\Windows\SysNative\sscore.dll
[2010/10/21 16:58:33 | 000,975,360 | ---- | C] () -- C:\Windows\SysNative\inetcomm.dll
[2010/10/21 07:03:19 | 000,316,416 | ---- | C] () -- C:\Windows\SysNative\msshsq.dll
[2010/10/19 22:12:49 | 000,834,544 | ---- | C] () -- C:\Windows\SysNative\drivers\sptd.sys
[2010/10/19 22:08:11 | 000,158,208 | ---- | C] () -- C:\Windows\SysNative\mscorier.dll
[2010/10/19 22:07:59 | 000,076,288 | ---- | C] () -- C:\Windows\SysNative\mscories.dll
[2010/10/19 22:04:00 | 000,032,768 | ---- | C] () -- C:\Windows\SysNative\nshhttp.dll
[2010/10/19 22:03:56 | 000,610,304 | ---- | C] () -- C:\Windows\SysNative\drivers\http.sys
[2010/10/19 22:03:56 | 000,033,792 | ---- | C] () -- C:\Windows\SysNative\httpapi.dll
[2010/10/19 21:58:44 | 000,227,328 | ---- | C] () -- C:\Windows\SysNative\mpg2splt.ax
[2010/10/19 21:58:44 | 000,101,376 | ---- | C] () -- C:\Windows\SysNative\MSNP.ax
[2010/10/19 21:58:40 | 000,375,808 | ---- | C] () -- C:\Windows\SysNative\psisdecd.dll
[2010/10/19 21:58:39 | 000,558,592 | ---- | C] () -- C:\Windows\SysNative\EncDec.dll
[2010/10/19 21:58:39 | 000,289,792 | ---- | C] () -- C:\Windows\SysNative\psisrndr.ax
[2010/10/19 17:31:22 | 000,372,736 | ---- | C] () -- C:\Windows\SysNative\unregmp2.exe
[2010/10/19 17:30:37 | 001,420,176 | ---- | C] () -- C:\Windows\SysNative\drivers\tcpip.sys
[2010/10/19 17:30:33 | 001,923,584 | ---- | C] () -- C:\Windows\SysNative\ole32.dll
[2010/10/19 17:30:26 | 000,093,184 | ---- | C] () -- C:\Windows\SysNative\mciavi32.dll
[2010/10/19 17:30:26 | 000,076,800 | ---- | C] () -- C:\Windows\SysNative\avicap32.dll
[2010/10/19 17:30:26 | 000,054,272 | ---- | C] () -- C:\Windows\SysNative\iyuv_32.dll
[2010/10/19 17:30:26 | 000,038,400 | ---- | C] () -- C:\Windows\SysNative\msvidc32.dll
[2010/10/19 17:30:26 | 000,025,600 | ---- | C] () -- C:\Windows\SysNative\msyuv.dll
[2010/10/19 17:30:26 | 000,015,872 | ---- | C] () -- C:\Windows\SysNative\msrle32.dll
[2010/10/19 17:30:26 | 000,013,824 | ---- | C] () -- C:\Windows\SysNative\tsbyuv.dll
[2010/10/19 17:30:25 | 000,108,544 | ---- | C] () -- C:\Windows\SysNative\avifil32.dll
[2010/10/19 17:30:24 | 000,143,360 | ---- | C] () -- C:\Windows\SysNative\msvfw32.dll
[2010/10/19 17:29:49 | 000,791,552 | ---- | C] () -- C:\Windows\SysNative\localspl.dll
[2010/10/19 17:29:34 | 000,366,080 | ---- | C] () -- C:\Windows\SysNative\atmfd.dll
[2010/10/19 17:29:33 | 000,096,256 | ---- | C] () -- C:\Windows\SysNative\fontsub.dll
[2010/10/19 17:29:33 | 000,048,128 | ---- | C] () -- C:\Windows\SysNative\atmlib.dll
[2010/10/19 17:29:29 | 001,280,512 | ---- | C] () -- C:\Windows\SysNative\rpcrt4.dll
[2010/10/19 17:29:17 | 000,002,048 | ---- | C] () -- C:\Windows\SysNative\tzres.dll
[2010/10/19 17:28:48 | 000,656,384 | ---- | C] () -- C:\Windows\SysNative\kerberos.dll
[2010/10/19 17:28:40 | 000,437,248 | ---- | C] () -- C:\Windows\SysNative\WSDApi.dll
[2010/10/19 17:28:36 | 000,818,688 | ---- | C] () -- C:\Windows\SysNative\WMSPDMOD.DLL
[2010/10/19 17:28:29 | 012,898,304 | ---- | C] () -- C:\Windows\SysNative\shell32.dll
[2010/10/19 17:28:25 | 000,084,480 | ---- | C] () -- C:\Windows\SysNative\asycfilt.dll
[2010/10/19 17:28:17 | 000,135,168 | ---- | C] () -- C:\Windows\SysNative\drivers\mrxsmb.sys
[2010/10/19 17:28:16 | 000,273,920 | ---- | C] () -- C:\Windows\SysNative\drivers\mrxsmb10.sys
[2010/10/19 17:28:16 | 000,105,472 | ---- | C] () -- C:\Windows\SysNative\drivers\mrxsmb20.sys
[2010/10/19 17:28:11 | 000,189,952 | ---- | C] () -- C:\Windows\SysNative\t2embed.dll
[2010/10/19 17:28:08 | 000,633,856 | ---- | C] () -- C:\Windows\SysNative\comctl32.dll
[2010/10/19 17:28:04 | 000,295,936 | ---- | C] () -- C:\Windows\SysNative\raschap.dll
[2010/10/19 17:28:04 | 000,280,576 | ---- | C] () -- C:\Windows\SysNative\rastls.dll
[2010/10/19 17:27:58 | 001,208,832 | ---- | C] () -- C:\Windows\SysNative\kernel32.dll
[2010/10/19 17:27:55 | 000,025,600 | ---- | C] () -- C:\Windows\SysNative\amxread.dll
[2010/10/19 17:27:55 | 000,015,872 | ---- | C] () -- C:\Windows\SysNative\apilogen.dll
[2010/10/19 17:27:53 | 000,050,688 | ---- | C] () -- C:\Windows\SysNative\rtutils.dll
[2010/10/19 17:27:49 | 000,295,424 | ---- | C] () -- C:\Windows\SysNative\MP4SDECD.DLL
[2010/10/19 17:27:47 | 000,267,776 | ---- | C] () -- C:\Windows\SysNative\spoolsv.exe
[2010/10/19 17:27:43 | 002,751,488 | ---- | C] () -- C:\Windows\SysNative\win32k.sys
[2010/10/19 17:27:28 | 004,690,832 | ---- | C] () -- C:\Windows\SysNative\ntoskrnl.exe
[2010/10/19 17:27:26 | 000,324,608 | ---- | C] () -- C:\Windows\SysNative\PortableDeviceApi.dll
[2010/10/19 17:27:23 | 002,423,296 | ---- | C] () -- C:\Windows\SysNative\mstscax.dll
[2010/10/19 17:27:18 | 000,880,640 | ---- | C] () -- C:\Windows\SysNative\timedate.cpl
[2010/10/19 17:27:02 | 013,425,152 | ---- | C] () -- C:\Windows\SysNative\wmp.dll
[2010/10/19 17:26:59 | 010,624,512 | ---- | C] () -- C:\Windows\SysWow64\wmp.dll
[2010/10/19 17:26:55 | 008,147,456 | ---- | C] () -- C:\Windows\SysWow64\wmploc.DLL
[2010/10/19 17:26:54 | 008,147,968 | ---- | C] () -- C:\Windows\SysNative\wmploc.DLL
[2010/10/19 17:26:31 | 001,030,656 | ---- | C] () -- C:\Windows\SysNative\printfilterpipelinesvc.exe
[2010/10/19 17:26:28 | 000,718,336 | ---- | C] () -- C:\Windows\SysNative\rpcss.dll
[2010/10/19 17:26:26 | 000,231,424 | ---- | C] () -- C:\Windows\SysNative\sdohlp.dll
[2010/10/19 17:26:26 | 000,163,840 | ---- | C] () -- C:\Windows\SysNative\iasrecst.dll
[2010/10/19 17:26:26 | 000,075,776 | ---- | C] () -- C:\Windows\SysNative\iasads.dll
[2010/10/19 17:26:26 | 000,061,440 | ---- | C] () -- C:\Windows\SysNative\iasdatastore.dll
[2010/10/19 17:26:26 | 000,036,352 | ---- | C] () -- C:\Windows\SysNative\printfilterpipelineprxy.dll
[2010/10/19 17:26:26 | 000,024,576 | ---- | C] () -- C:\Windows\SysNative\iashost.exe
[2010/10/19 17:25:28 | 000,594,944 | ---- | C] () -- C:\Windows\SysNative\RMActivate_isv.exe
[2010/10/19 17:25:28 | 000,594,432 | ---- | C] () -- C:\Windows\SysNative\RMActivate.exe
[2010/10/19 17:25:24 | 000,413,696 | ---- | C] () -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2010/10/19 17:25:23 | 000,535,040 | ---- | C] () -- C:\Windows\SysNative\secproc.dll
[2010/10/19 17:25:23 | 000,534,016 | ---- | C] () -- C:\Windows\SysNative\secproc_isv.dll
[2010/10/19 17:25:23 | 000,409,600 | ---- | C] () -- C:\Windows\SysNative\RMActivate_ssp.exe
[2010/10/19 17:25:21 | 000,457,216 | ---- | C] () -- C:\Windows\SysNative\msdrm.dll
[2010/10/19 17:25:21 | 000,159,232 | ---- | C] () -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2010/10/19 17:25:21 | 000,158,720 | ---- | C] () -- C:\Windows\SysNative\secproc_ssp.dll
[2010/10/19 17:25:18 | 000,753,152 | ---- | C] () -- C:\Windows\SysNative\jscript.dll
[2010/10/19 17:25:09 | 002,452,872 | ---- | C] () -- C:\Windows\SysNative\ieapfltr.dat
[2010/10/19 17:25:06 | 005,692,928 | ---- | C] () -- C:\Windows\SysNative\mshtml.dll
[2010/10/19 17:25:04 | 007,015,424 | ---- | C] () -- C:\Windows\SysNative\ieframe.dll
[2010/10/19 17:25:03 | 003,587,584 | ---- | C] () -- C:\Windows\SysWow64\mshtml.dll
[2010/10/19 17:25:02 | 001,426,944 | ---- | C] () -- C:\Windows\SysNative\urlmon.dll
[2010/10/19 17:25:02 | 001,032,704 | ---- | C] () -- C:\Windows\SysNative\wininet.dll
[2010/10/19 17:25:01 | 000,208,896 | ---- | C] () -- C:\Windows\SysNative\occache.dll
[2010/10/19 17:24:59 | 000,758,784 | ---- | C] () -- C:\Windows\SysNative\mshtmled.dll
[2010/10/19 17:24:59 | 000,590,848 | ---- | C] () -- C:\Windows\SysNative\msfeeds.dll
[2010/10/19 17:24:59 | 000,422,400 | ---- | C] () -- C:\Windows\SysNative\ieapfltr.dll
[2010/10/19 17:24:58 | 000,375,296 | ---- | C] () -- C:\Windows\SysNative\iertutil.dll
[2010/10/19 17:24:57 | 000,480,256 | ---- | C] () -- C:\Windows\SysNative\iedkcs32.dll
[2010/10/19 17:24:57 | 000,267,776 | ---- | C] () -- C:\Windows\SysNative\ieaksie.dll
[2010/10/19 17:24:57 | 000,249,856 | ---- | C] () -- C:\Windows\SysNative\iepeers.dll
[2010/10/19 17:24:56 | 001,129,984 | ---- | C] () -- C:\Windows\SysNative\mstime.dll
[2010/10/19 17:24:56 | 000,485,376 | ---- | C] () -- C:\Windows\SysNative\html.iec
[2010/10/19 17:24:56 | 000,032,768 | ---- | C] () -- C:\Windows\SysNative\ieUnatt.exe
[2010/10/19 17:24:55 | 001,383,424 | ---- | C] () -- C:\Windows\SysNative\mshtml.tlb
[2010/10/19 17:24:55 | 000,086,528 | ---- | C] () -- C:\Windows\SysNative\ieencode.dll
[2010/10/19 17:24:55 | 000,032,256 | ---- | C] () -- C:\Windows\SysNative\jsproxy.dll
[2010/10/19 17:24:40 | 000,603,648 | ---- | C] () -- C:\Windows\SysNative\vbscript.dll
[2010/10/19 17:24:35 | 002,900,480 | ---- | C] () -- C:\Windows\SysNative\WMVCORE.DLL
[2010/10/19 17:24:32 | 003,547,136 | ---- | C] () -- C:\Windows\SysNative\mf.dll
[2010/10/19 17:24:24 | 001,692,160 | ---- | C] () -- C:\Windows\SysNative\lsasrv.dll
[2010/10/19 17:24:24 | 000,268,800 | ---- | C] () -- C:\Windows\SysNative\msv1_0.dll
[2010/10/19 17:24:24 | 000,205,312 | ---- | C] () -- C:\Windows\SysNative\wdigest.dll
[2010/10/19 17:24:23 | 000,515,656 | ---- | C] () -- C:\Windows\SysNative\drivers\ksecdd.sys
[2010/10/19 17:24:23 | 000,094,720 | ---- | C] () -- C:\Windows\SysNative\secur32.dll
[2010/10/19 17:24:23 | 000,011,264 | ---- | C] () -- C:\Windows\SysNative\lsass.exe
[2010/10/19 17:24:20 | 000,088,576 | ---- | C] () -- C:\Windows\SysNative\atl.dll
[2010/10/19 17:23:53 | 000,141,312 | ---- | C] () -- C:\Windows\SysNative\netiohlp.dll
[2010/10/19 17:23:52 | 000,032,256 | ---- | C] () -- C:\Windows\SysNative\NETSTAT.EXE
[2010/10/19 17:23:52 | 000,023,040 | ---- | C] () -- C:\Windows\SysNative\ARP.EXE
[2010/10/19 17:23:52 | 000,012,800 | ---- | C] () -- C:\Windows\SysNative\MRINFO.EXE
[2010/10/19 17:23:51 | 000,021,504 | ---- | C] () -- C:\Windows\SysNative\ROUTE.EXE
[2010/10/19 17:23:51 | 000,011,264 | ---- | C] () -- C:\Windows\SysNative\finger.exe
[2010/10/19 17:23:51 | 000,010,752 | ---- | C] () -- C:\Windows\SysNative\TCPSVCS.EXE
[2010/10/19 17:23:51 | 000,010,240 | ---- | C] () -- C:\Windows\SysNative\HOSTNAME.EXE
[2010/10/19 17:23:15 | 001,875,456 | ---- | C] () -- C:\Windows\SysNative\msxml3.dll
[2010/10/19 17:23:12 | 001,570,816 | ---- | C] () -- C:\Windows\SysNative\quartz.dll
[2010/10/19 17:23:11 | 000,082,944 | ---- | C] () -- C:\Windows\SysNative\msasn1.dll
[2010/10/19 17:23:08 | 000,202,752 | ---- | C] () -- C:\Windows\SysNative\wkssvc.dll
[2010/10/19 17:23:05 | 000,730,112 | ---- | C] () -- C:\Windows\SysNative\msdtcprx.dll
[2010/10/19 17:23:05 | 000,048,640 | ---- | C] () -- C:\Windows\SysNative\xolehlp.dll
[2010/10/19 17:23:03 | 000,072,192 | ---- | C] () -- C:\Windows\SysNative\l3codeca.acm
[2010/10/19 17:23:01 | 000,622,080 | ---- | C] () -- C:\Windows\SysNative\usp10.dll
[2010/10/19 17:22:39 | 000,368,128 | ---- | C] () -- C:\Windows\SysNative\wmpdxm.dll
[2010/10/19 17:22:37 | 000,009,216 | ---- | C] () -- C:\Windows\SysNative\spwmp.dll
[2010/10/19 17:22:37 | 000,005,120 | ---- | C] () -- C:\Windows\SysNative\msdxm.ocx
[2010/10/19 17:22:37 | 000,005,120 | ---- | C] () -- C:\Windows\SysNative\dxmasf.dll
[2010/10/19 17:22:34 | 000,043,520 | ---- | C] () -- C:\Windows\SysNative\msdxm.tlb
[2010/10/19 17:22:34 | 000,018,432 | ---- | C] () -- C:\Windows\SysNative\amcompat.tlb
[2010/10/19 17:22:29 | 000,343,040 | ---- | C] () -- C:\Windows\SysNative\schannel.dll
[2010/10/19 17:22:27 | 001,090,048 | ---- | C] () -- C:\Windows\SysNative\wmpmde.dll
[2010/10/19 17:22:24 | 002,608,803 | ---- | C] () -- C:\Windows\SysNative\wlan.tmf
[2010/10/19 17:22:23 | 000,353,280 | ---- | C] () -- C:\Windows\SysNative\wlanmsm.dll
[2010/10/19 17:22:22 | 000,615,936 | ---- | C] () -- C:\Windows\SysNative\wlansvc.dll
[2010/10/19 17:22:22 | 000,376,832 | ---- | C] () -- C:\Windows\SysNative\wlansec.dll
[2010/10/19 17:22:22 | 000,157,184 | ---- | C] () -- C:\Windows\SysNative\L2SecHC.dll
[2010/10/19 17:22:22 | 000,097,792 | ---- | C] () -- C:\Windows\SysNative\wlanhlp.dll
[2010/10/19 17:22:22 | 000,086,528 | ---- | C] () -- C:\Windows\SysNative\wlanapi.dll
[2010/10/18 21:03:22 | 000,001,804 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\iTunes.lnk
[2010/10/18 21:03:09 | 000,000,905 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\World of Warcraft.lnk
[2010/10/18 20:44:49 | 000,001,027 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\OpenOffice.org 3.2.lnk
[2010/10/18 16:54:12 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010/10/18 16:53:01 | 000,001,804 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2010/10/18 16:41:23 | 000,104,960 | ---- | C] () -- C:\Windows\SysNative\cabview.dll
[2010/10/18 16:41:22 | 000,218,112 | ---- | C] () -- C:\Windows\SysNative\wintrust.dll
[2010/10/18 16:33:28 | 002,621,440 | ---- | C] () -- C:\Windows\SysNative\wucltux.dll
[2010/10/18 16:33:28 | 000,057,560 | ---- | C] () -- C:\Windows\SysNative\wuauclt.exe
[2010/10/18 16:33:28 | 000,043,744 | ---- | C] () -- C:\Windows\SysNative\wups2.dll
[2010/10/18 16:33:27 | 002,424,024 | ---- | C] () -- C:\Windows\SysNative\wuaueng.dll
[2010/10/18 16:33:15 | 000,700,640 | ---- | C] () -- C:\Windows\SysNative\wuapi.dll
[2010/10/18 16:33:15 | 000,098,816 | ---- | C] () -- C:\Windows\SysNative\wudriver.dll
[2010/10/18 16:33:15 | 000,038,112 | ---- | C] () -- C:\Windows\SysNative\wups.dll
[2010/10/18 16:33:04 | 000,185,416 | ---- | C] () -- C:\Windows\SysNative\wuwebv.dll
[2010/10/18 16:33:04 | 000,036,864 | ---- | C] () -- C:\Windows\SysNative\wuapp.exe
[2010/10/17 19:41:30 | 000,428,078 | ---- | C] () -- C:\Users\Rich\AppData\Local\dd_vcredistMSI356F.txt
[2010/10/17 19:41:30 | 000,012,138 | ---- | C] () -- C:\Users\Rich\AppData\Local\dd_vcredistUI356F.txt
[2010/10/17 18:56:44 | 003,851,784 | ---- | C] () -- C:\Windows\SysWow64\D3DX9_39.dll
[2010/10/17 08:09:25 | 000,126,312 | ---- | C] () -- C:\Windows\SysNative\GEARAspi64.dll
[2010/10/17 08:09:25 | 000,034,152 | ---- | C] () -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys
[2010/10/17 06:37:23 | 000,000,970 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2010/10/17 06:25:44 | 000,607,232 | ---- | C] () -- C:\Users\Rich\Documents\Person Motion Test 1.avi
[2010/10/17 06:25:43 | 002,394,112 | ---- | C] () -- C:\Users\Rich\Documents\Human Test 2.avi
[2010/10/17 06:25:43 | 002,393,808 | ---- | C] () -- C:\Users\Rich\Documents\Stop Motion 6.avi
[2010/10/17 06:25:43 | 002,311,916 | ---- | C] () -- C:\Users\Rich\Documents\Stop Motion 3.avi
[2010/10/17 06:25:43 | 001,458,968 | ---- | C] () -- C:\Users\Rich\Documents\Stop Motion 4.avi
[2010/10/17 06:25:43 | 001,320,264 | ---- | C] () -- C:\Users\Rich\Documents\Stop Motion 2.avi
[2010/10/17 06:25:43 | 001,190,614 | ---- | C] () -- C:\Users\Rich\Documents\Stop Motion 1.avi
[2010/10/17 06:25:43 | 000,607,172 | ---- | C] () -- C:\Users\Rich\Documents\Stop Motion 5.avi
[2010/10/17 06:25:30 | 000,386,560 | ---- | C] () -- C:\Users\Rich\Documents\Motion 23.avi
[2010/10/17 06:25:23 | 000,081,920 | ---- | C] () -- C:\Users\Rich\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/10/17 01:35:11 | 001,603,584 | ---- | C] () -- C:\Windows\SysNative\stlang64.dll
[2010/10/17 01:35:11 | 000,119,296 | ---- | C] () -- C:\Windows\SysNative\stacsv64.exe
[2010/10/17 01:35:10 | 005,593,088 | ---- | C] () -- C:\Windows\SysNative\IDTSG64.cpl
[2010/10/17 01:34:40 | 000,620,544 | ---- | C] () -- C:\Windows\SysNative\stapo64.dll
[2010/10/17 01:34:40 | 000,364,544 | ---- | C] () -- C:\Windows\SysNative\stapi64.dll
[2010/10/17 01:34:40 | 000,347,648 | ---- | C] () -- C:\Windows\SysNative\stcplx64.dll
[2010/10/17 01:34:06 | 000,293,376 | ---- | C] () -- C:\Windows\SysNative\BtwRSupport.dll
[2010/10/17 01:34:05 | 000,000,741 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
[2010/10/17 01:31:19 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010/10/16 23:49:46 | 000,002,001 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/10/16 23:46:45 | 000,000,904 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3595617421-2560146394-377733985-1000UA.job
[2010/10/16 23:46:45 | 000,000,852 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3595617421-2560146394-377733985-1000Core.job
[2010/10/16 23:24:02 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
[2010/10/16 22:52:00 | 000,000,000 | ---- | C] () -- C:\Windows\SysNative\drivers\Gateway_M-6888u_N-A_N1C9641000346.MRK
[2010/10/16 22:49:24 | 000,000,000 | ---- | C] () -- C:\Windows\SysNative\LogConfigTemp.xml
[2010/10/16 22:49:23 | 000,585,216 | ---- | C] () -- C:\Windows\SysNative\INT15_64.dll
[2010/10/16 22:49:23 | 000,017,952 | ---- | C] () -- C:\Windows\SysNative\drivers\int15_64.sys
[2010/10/16 22:47:15 | 005,631,520 | ---- | C] () -- C:\Windows\System\DriveIcon.dll
[2010/10/16 22:47:15 | 000,062,464 | ---- | C] () -- C:\Windows\SysNative\drivers\RTSTOR64.sys
[2010/10/16 22:47:15 | 000,038,660 | ---- | C] () -- C:\Windows\System\sd.ico
[2010/10/16 22:47:15 | 000,037,300 | ---- | C] () -- C:\Windows\System\cf.ico
[2010/10/16 22:47:15 | 000,037,041 | ---- | C] () -- C:\Windows\System\sm.ico
[2010/10/16 22:47:15 | 000,034,530 | ---- | C] () -- C:\Windows\System\ms.ico
[2010/10/16 22:47:15 | 000,005,430 | ---- | C] () -- C:\Windows\System\MyMulti.ico
[2010/10/16 22:43:14 | 000,000,258 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2010/10/16 22:43:14 | 000,000,240 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2010/10/16 22:03:35 | 000,000,808 | ---- | C] () -- C:\Users\Rich\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2010/10/16 21:58:49 | 000,121,936 | ---- | C] () -- C:\Windows\SysNative\drivers\aswSP.sys
[2010/10/16 21:58:49 | 000,020,048 | ---- | C] () -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2010/10/16 21:58:48 | 000,051,280 | ---- | C] () -- C:\Windows\SysNative\drivers\aswTdi.sys
[2010/10/16 21:58:48 | 000,028,752 | ---- | C] () -- C:\Windows\SysNative\drivers\aswRdr.sys
[2010/10/16 21:58:47 | 000,061,008 | ---- | C] () -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2010/10/16 21:58:46 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\config.nt
[2010/10/16 21:58:25 | 000,426,230 | ---- | C] () -- C:\Users\Rich\AppData\Local\dd_vcredistMSI5014.txt
[2010/10/16 21:58:24 | 000,012,286 | ---- | C] () -- C:\Users\Rich\AppData\Local\dd_vcredistUI5014.txt
[2009/03/04 13:33:35 | 001,695,744 | ---- | C] () -- C:\Windows\SysWow64\gameux.dll
[2009/03/04 13:06:36 | 003,936,256 | ---- | C] () -- C:\Windows\SysWow64\atiumdva.dll
[2008/01/20 21:50:15 | 000,127,488 | ---- | C] () -- C:\Windows\SysWow64\aclui.dll
[2008/01/20 21:50:05 | 000,060,124 | ---- | C] () -- C:\Windows\SysWow64\tcpmon.ini
[2008/01/20 21:49:49 | 000,368,640 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2008/01/20 21:49:00 | 002,226,688 | ---- | C] () -- C:\Windows\SysWow64\networkexplorer.dll
========== LOP Check ==========
[2010/10/19 22:29:40 | 000,000,000 | ---D | M] -- C:\Users\Rich\AppData\Roaming\DAEMON Tools Lite
[2010/10/18 20:45:43 | 000,000,000 | ---D | M] -- C:\Users\Rich\AppData\Roaming\LolClient
[2010/10/24 12:36:34 | 000,000,000 | ---D | M] -- C:\Users\Rich\AppData\Roaming\OpenOffice.org
[2010/11/07 11:02:03 | 000,000,000 | ---D | M] -- C:\Users\Rich\AppData\Roaming\PeerNetworking
[2010/11/08 23:27:13 | 000,000,000 | ---D | M] -- C:\Users\Rich\AppData\Roaming\uTorrent
[2010/11/10 21:01:11 | 000,026,602 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2008/01/20 21:50:15 | 000,333,203 | RHS- | M] () -- C:\bootmgr
[2009/03/04 13:09:41 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2007/11/07 07:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1028.txt
[2007/11/07 07:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1031.txt
[2007/11/07 07:00:40 | 000,010,134 | ---- | M] () -- C:\eula.1033.txt
[2007/11/07 07:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1036.txt
[2007/11/07 07:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1040.txt
[2007/11/07 07:00:40 | 000,000,118 | ---- | M] () -- C:\eula.1041.txt
[2007/11/07 07:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1042.txt
[2007/11/07 07:00:40 | 000,017,734 | ---- | M] () -- C:\eula.2052.txt
[2007/11/07 07:00:40 | 000,017,734 | ---- | M] () -- C:\eula.3082.txt
[2007/11/07 07:00:40 | 000,001,110 | ---- | M] () -- C:\globdata.ini
[2010/11/11 18:18:40 | 4293,320,704 | -HS- | M] () -- C:\hiberfil.sys
[2007/11/07 07:44:20 | 000,855,040 | ---- | M] (Microsoft Corporation) -- C:\install.exe
[2007/11/07 07:00:40 | 000,000,843 | ---- | M] () -- C:\install.ini
[2007/11/07 07:44:20 | 000,075,280 | ---- | M] (Microsoft Corporation) -- C:\install.res.1028.dll
[2007/11/07 07:44:20 | 000,095,248 | ---- | M] (Microsoft Corporation) -- C:\install.res.1031.dll
[2007/11/07 07:44:20 | 000,090,128 | ---- | M] (Microsoft Corporation) -- C:\install.res.1033.dll
[2007/11/07 07:44:20 | 000,096,272 | ---- | M] (Microsoft Corporation) -- C:\install.res.1036.dll
[2007/11/07 07:44:20 | 000,094,224 | ---- | M] (Microsoft Corporation) -- C:\install.res.1040.dll
[2007/11/07 07:44:20 | 000,080,400 | ---- | M] (Microsoft Corporation) -- C:\install.res.1041.dll
[2007/11/07 07:44:20 | 000,078,864 | ---- | M] (Microsoft Corporation) -- C:\install.res.1042.dll
[2007/11/07 07:44:20 | 000,074,768 | ---- | M] (Microsoft Corporation) -- C:\install.res.2052.dll
[2007/11/07 07:44:20 | 000,095,248 | ---- | M] (Microsoft Corporation) -- C:\install.res.3082.dll
[2009/03/04 15:32:38 | 000,000,165 | ---- | M] () -- C:\Labelprint.log
[2010/11/10 18:15:21 | 000,089,088 | ---- | M] () -- C:\mbr.exe
[2010/11/10 18:17:31 | 000,000,227 | ---- | M] () -- C:\mbr.log
[2005/09/23 02:39:38 | 000,894,976 | ---- | M] (Microsoft Corporation) -- C:\msdia80.dll
[2010/11/11 18:18:38 | 311,955,455 | -HS- | M] () -- C:\pagefile.sys
[2010/10/16 22:51:01 | 000,000,163 | ---- | M] () -- C:\power2go.log
[2007/11/07 07:00:40 | 000,005,686 | ---- | M] () -- C:\vcredist.bmp
[2007/11/07 07:50:40 | 001,927,956 | ---- | M] () -- C:\VC_RED.cab
[2007/11/07 07:53:12 | 000,242,176 | ---- | M] () -- C:\VC_RED.MSI
< %systemroot%\Fonts\*.com >
[2006/11/02 10:06:41 | 000,026,040 | ---- | M] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2006/11/02 10:06:41 | 000,026,489 | ---- | M] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2006/11/02 10:06:41 | 000,029,779 | ---- | M] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont
[2006/11/02 10:06:41 | 000,030,808 | ---- | M] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2006/09/18 16:35:48 | 000,000,065 | ---- | M] () -- C:\Windows\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
[2010/09/07 10:12:17 | 000,038,848 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2008/01/20 22:21:59 | 000,000,174 | -HS- | M] () -- C:\Program Files (x86)\desktop.ini
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2010/10/21 17:06:57 | 000,000,344 | -HS- | M] () -- C:\Users\Rich\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
< %USERPROFILE%\Desktop\*.exe >
[2010/11/10 20:32:03 | 002,565,432 | ---- | M] () -- C:\Users\Rich\Desktop\NTBR_CD.exe
[2010/11/11 18:45:22 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Rich\Desktop\OTL.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >
< %PROGRAMFILES%\PC-Doctor\Downloads\*.* >
< %PROGRAMFILES%\Internet Explorer\*.tmp >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %USERPROFILE%\My Documents\*.exe >
< %USERPROFILE%\*.exe >
< %systemroot%\ADDINS\*.* >
< %systemroot%\assembly\*.bak2 >
< %systemroot%\Config\*.* >
< %systemroot%\REPAIR\*.bak2 >
< %systemroot%\SECURITY\Database\*.sdb /x >
< %systemroot%\SYSTEM\*.bak2 >
< %systemroot%\Web\*.bak2 >
< %systemroot%\Driver Cache\*.* >
< %PROGRAMFILES%\Mozilla Firefox\0*.exe >
< %ProgramFiles%\Microsoft Common\*.* >
< %ProgramFiles%\TinyProxy. >
< %USERPROFILE%\Favorites\*.url /x >
[2010/10/16 22:45:40 | 000,000,402 | -HS- | M] () -- C:\Users\Rich\Favorites\desktop.ini
< %systemroot%\system32\*.bk >
< %systemroot%\*.te >
< %systemroot%\system32\system32\*.* >
< %ALLUSERSPROFILE%\*.dat /x >
< %systemroot%\system32\drivers\*.rmv >
< dir /b "%systemroot%\system32\*.exe" | find /i " " /c >
< dir /b "%systemroot%\*.exe" | find /i " " /c >
< %PROGRAMFILES%\Microsoft\*.* >
< %systemroot%\System32\Wbem\proquota.exe >
< %PROGRAMFILES%\Mozilla Firefox\*.dat >
< %USERPROFILE%\Cookies\*.txt /x >
< %SystemRoot%\system32\fonts\*.* >
< %systemroot%\system32\winlog\*.* >
< %systemroot%\system32\Language\*.* >
< %systemroot%\system32\Settings\*.* >
< %systemroot%\system32\*.quo >
< %SYSTEMROOT%\AppPatch\*.exe >
< %SYSTEMROOT%\inf\*.exe >
< %SYSTEMROOT%\Installer\*.exe >
< %systemroot%\system32\config\*.bak2 >
< %systemroot%\system32\Computers\*.* >
< %SystemRoot%\system32\Sound\*.* >
< %SystemRoot%\system32\SpecialImg\*.* >
< %SystemRoot%\system32\code\*.* >
< %SystemRoot%\system32\draft\*.* >
< %SystemRoot%\system32\MSSSys\*.* >
< %ProgramFiles%\Javascript\*.* >
< %systemroot%\pchealth\helpctr\System\*.exe /s >
< %systemroot%\Web\*.exe >
< %systemroot%\system32\msn\*.* >
< %systemroot%\system32\*.tro >
< %AppData%\Microsoft\Installer\msupdates\*.* >
< %ProgramFiles%\Messenger\*.* >
< %systemroot%\system32\systhem32\*.* >
< %systemroot%\system\*.exe >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\ Auto Update\Results\Install|LastSuccessTime /rs >
========== Alternate Data Streams ==========
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP

FC5A2B2
< End of report >