========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google

riginalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Jeremy\AppData\Local\Google\Chrome\Application\18.0.1025.168\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Jeremy\AppData\Local\Google\Chrome\Application\18.0.1025.168\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Jeremy\AppData\Local\Google\Chrome\Application\18.0.1025.168\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Jeremy\AppData\Local\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_233.dll
CHR - plugin: AVG Internet Security (Enabled) = C:\Users\Jeremy\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\plugins/avgnpss.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U29 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: ActiveTouch General Plugin Container (Enabled) = C:\Users\Jeremy\AppData\Roaming\Mozilla\plugins\npatgpc.dll
CHR - plugin: ESN Launch Mozilla Plugin (Enabled) = C:\Program Files (x86)\Battlelog Web Plugins\1.110.0\npesnlaunch.dll
CHR - plugin: ESN Launch Mozilla Plugin (Enabled) = C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll
CHR - plugin: ESN Sonar API (Enabled) = C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll
CHR - Extension: YouTube = C:\Users\Jeremy\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Users\Jeremy\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: AVG Safe Search = C:\Users\Jeremy\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\
CHR - Extension: Gmail = C:\Users\Jeremy\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2012/04/25 18:51:24 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:
64bit: - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssiea.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:
64bit: - HKLM..\Run: [IntelWireless] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
O4:
64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4:
64bit: - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [ConnectionCenter] C:\Program Files (x86)\Citrix\ICA Client\concentr.exe (Citrix Systems, Inc.)
O4 - HKLM..\Run: [Dell Webcam Central] C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:
64bit: - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8:
64bit: - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:
64bit: - Extra Button: @c:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:
64bit: - Extra 'Tools' menuitem : @c:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O16:
64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16:
64bit: - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16:
64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = macc173.net
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9BB621E0-B0B3-4694-8DAF-624D37161F3E}: DhcpNameServer = 64.71.219.3 64.71.208.7
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9BB621E0-B0B3-4694-8DAF-624D37161F3E}: NameServer = 8.8.8.8,64.71.208.7
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EA16E4FD-7799-4D00-BF2C-331B4FCED39B}: NameServer = 64.71.219.3,64.71.208.7
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EAEFDF75-2E79-4A7B-A0DF-17F3E906908F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EAEFDF75-2E79-4A7B-A0DF-17F3E906908F}: NameServer = 64.71.219.3,64.71.208.7
O18:
64bit: - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgppa.dll (AVG Technologies CZ, s.r.o.)
O18:
64bit: - Protocol\Handler\livecall - No CLSID value found
O18:
64bit: - Protocol\Handler\msnim - No CLSID value found
O18:
64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:
64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:
64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18:
64bit: - Protocol\Filter\application/x-ica - No CLSID value found
O18:
64bit: - Protocol\Filter\ica - No CLSID value found
O18 - Protocol\Filter\application/x-ica {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
O18 - Protocol\Filter\ica {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
O20:
64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:
64bit: - Winlogon\Notify\GoToAssist: DllName - (C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG2012\avgrsa.exe /sync /restart)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
NetSvcs:
64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
Drivers32:
64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2012/05/03 22:35:02 | 000,595,456 | ---- | C] (OldTimer Tools) -- C:\Users\Jeremy\Desktop\OTL.exe
[2012/05/03 20:39:11 | 004,482,876 | R--- | C] (Swearware) -- C:\Users\Jeremy\Desktop\ComboFix.exe
[2012/05/03 19:37:18 | 004,731,392 | ---- | C] (AVAST Software) -- C:\Users\Jeremy\Desktop\aswMBR.exe
[2012/05/03 16:04:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2012/05/03 16:04:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2012/05/02 20:27:06 | 000,024,904 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2012/05/02 20:27:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/05/02 20:27:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2012/05/01 20:56:46 | 000,000,000 | ---D | C] -- C:\Users\Jeremy\AppData\Roaming\SpeedyPC Software
[2012/05/01 20:56:46 | 000,000,000 | ---D | C] -- C:\Users\Jeremy\AppData\Roaming\DriverCure
[2012/05/01 20:56:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\SpeedyPC Software
[2012/05/01 20:56:41 | 000,000,000 | ---D | C] -- C:\ProgramData\SpeedyPC Software
[2012/04/28 18:16:17 | 000,000,000 | ---D | C] -- C:\ProgramData\HitmanPro
[2012/04/25 22:29:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\stinger
[2012/04/25 19:49:11 | 000,000,000 | ---D | C] -- C:\Users\Jeremy\AppData\Roaming\Anvisoft
[2012/04/25 19:49:02 | 000,000,000 | ---D | C] -- C:\Users\Jeremy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Anvisoft
[2012/04/25 19:48:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Anvisoft
[2012/04/25 18:44:18 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2012/04/25 18:44:18 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2012/04/25 18:44:18 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2012/04/25 18:44:13 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2012/04/25 18:42:03 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/04/25 18:22:20 | 000,000,000 | ---D | C] -- C:\ProgramData\RegRun
[2012/04/25 08:56:10 | 000,000,000 | ---D | C] -- C:\Users\Jeremy\AppData\Roaming\Malwarebytes
[2012/04/25 08:56:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012/04/25 08:38:53 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2012/04/25 08:36:29 | 000,000,000 | ---D | C] -- C:\Users\Jeremy\AppData\Roaming\GetRightToGo
[2012/04/20 09:02:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LCI 2.4
[2012/04/20 09:02:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LCI 2.4
[2012/04/20 08:58:17 | 000,000,000 | ---D | C] -- C:\Users\Jeremy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prisma II SOUP
[2012/04/20 08:58:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prisma II SOUP
[2012/04/20 08:58:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PrismaIISOUP
[2012/04/16 08:22:03 | 000,000,000 | ---D | C] -- C:\Users\Jeremy\Desktop\fcc
[2012/04/13 23:10:15 | 000,000,000 | ---D | C] -- C:\Users\Jeremy\AppData\Roaming\Reallusion
[2012/04/13 18:35:41 | 000,094,296 | ---- | C] (Sunbelt Software, Inc.) -- C:\Windows\SysNative\drivers\sbtis.sys
[2012/04/13 18:35:41 | 000,060,504 | ---- | C] (Sunbelt Software, Inc.) -- C:\Windows\SysNative\drivers\sbhips.sys
[2012/04/13 18:35:13 | 000,253,528 | ---- | C] (Sunbelt Software, Inc.) -- C:\Windows\SysNative\drivers\SbFw.sys
[2012/04/13 18:35:13 | 000,084,568 | ---- | C] (Sunbelt Software, Inc.) -- C:\Windows\SysNative\drivers\SbFwIm.sys
[2012/04/12 09:14:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ARRIS
========== Files - Modified Within 30 Days ==========
[2012/05/03 22:35:02 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Users\Jeremy\Desktop\OTL.exe
[2012/05/03 22:21:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/05/03 21:50:00 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3434645323-93754980-1999337375-1001UA.job
[2012/05/03 21:46:00 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/05/03 20:38:52 | 004,482,876 | R--- | M] (Swearware) -- C:\Users\Jeremy\Desktop\ComboFix.exe
[2012/05/03 20:06:49 | 000,083,968 | ---- | M] (Esage Lab) -- C:\Users\Jeremy\Desktop\boot_cleaner.exe
[2012/05/03 20:06:07 | 000,000,512 | ---- | M] () -- C:\Users\Jeremy\Desktop\MBR.dat
[2012/05/03 19:42:39 | 000,019,408 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/05/03 19:42:39 | 000,019,408 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/05/03 19:40:29 | 000,791,434 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012/05/03 19:40:29 | 000,668,586 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/05/03 19:40:29 | 000,124,740 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/05/03 19:37:40 | 004,731,392 | ---- | M] (AVAST Software) -- C:\Users\Jeremy\Desktop\aswMBR.exe
[2012/05/03 19:36:02 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/05/03 19:35:18 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/05/03 19:35:16 | 3111,550,976 | -HS- | M] () -- C:\hiberfil.sys
[2012/05/03 15:50:00 | 000,000,860 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3434645323-93754980-1999337375-1001Core.job
[2012/05/02 20:34:11 | 000,302,592 | ---- | M] () -- C:\Users\Jeremy\Desktop\841yfdul.exe
[2012/05/02 20:27:07 | 000,001,111 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/05/02 20:24:35 | 096,946,683 | ---- | M] () -- C:\Windows\SysNative\drivers\AVG\incavi.avm
[2012/05/02 10:21:42 | 000,000,026 | ---- | M] () -- C:\Windows\BRPP2KA.INI
[2012/05/02 08:45:36 | 000,000,600 | ---- | M] () -- C:\Users\Jeremy\AppData\Local\PUTTY.RND
[2012/05/01 21:20:20 | 000,007,608 | ---- | M] () -- C:\Users\Jeremy\AppData\Local\resmon.resmoncfg
[2012/05/01 13:51:29 | 000,002,411 | ---- | M] () -- C:\Users\Jeremy\Desktop\Google Chrome.lnk
[2012/05/01 08:36:56 | 001,259,915 | ---- | M] () -- C:\Users\Jeremy\Desktop\hitscharts-highlighted.jpg
[2012/05/01 08:36:06 | 001,440,152 | ---- | M] () -- C:\Users\Jeremy\Desktop\lineup-colorcoded.jpg
[2012/04/30 16:26:07 | 000,004,246 | ---- | M] () -- C:\Users\Jeremy\gui.err.v1
[2012/04/30 16:26:07 | 000,000,590 | ---- | M] () -- C:\Users\Jeremy\cp_pref.properties
[2012/04/30 16:26:07 | 000,000,046 | ---- | M] () -- C:\Users\Jeremy\gui.out.v1
[2012/04/30 11:44:51 | 000,067,613 | ---- | M] () -- C:\Users\Jeremy\Desktop\sem2.jpg
[2012/04/30 11:44:51 | 000,004,583 | ---- | M] () -- C:\Users\Jeremy\.recently-used.xbel
[2012/04/30 11:31:43 | 000,097,627 | ---- | M] () -- C:\Users\Jeremy\Desktop\sem1.jpg
[2012/04/28 13:50:05 | 000,283,304 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2012/04/28 13:50:05 | 000,283,304 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2012/04/28 13:49:52 | 000,280,904 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2012/04/26 08:36:13 | 000,002,601 | ---- | M] () -- C:\Users\Jeremy\Desktop\IP Sheet.lnk
[2012/04/26 08:36:02 | 000,002,656 | ---- | M] () -- C:\Users\Jeremy\Desktop\HEIS.lnk
[2012/04/26 08:35:36 | 000,001,923 | ---- | M] () -- C:\Users\Jeremy\Desktop\Server.lnk
[2012/04/25 19:27:25 | 000,017,465 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\services
[2012/04/25 18:51:24 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2012/04/25 08:39:20 | 001,426,192 | ---- | M] () -- C:\Windows\SysNative\drivers\Cat.DB
[2012/04/23 13:33:58 | 000,000,461 | ---- | M] () -- C:\Windows\BRWMARK.INI
[2012/04/21 06:24:59 | 000,345,273 | ---- | M] () -- C:\Windows\SysNative\drivers\AVG\iavichjg.avm
[2012/04/20 09:02:40 | 000,001,634 | ---- | M] () -- C:\Users\Public\Desktop\LCI 2.4.lnk
[2012/04/20 08:58:17 | 000,001,959 | ---- | M] () -- C:\Users\Jeremy\Desktop\SOUPLauncher.lnk
[2012/04/04 15:56:40 | 000,024,904 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
========== Files Created - No Company Name ==========
[2012/05/03 20:06:07 | 000,000,512 | ---- | C] () -- C:\Users\Jeremy\Desktop\MBR.dat
[2012/05/02 20:34:11 | 000,302,592 | ---- | C] () -- C:\Users\Jeremy\Desktop\841yfdul.exe
[2012/05/02 20:27:07 | 000,001,111 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/05/01 08:37:41 | 001,440,152 | ---- | C] () -- C:\Users\Jeremy\Desktop\lineup-colorcoded.jpg
[2012/05/01 08:37:41 | 001,259,915 | ---- | C] () -- C:\Users\Jeremy\Desktop\hitscharts-highlighted.jpg
[2012/04/30 11:44:51 | 000,067,613 | ---- | C] () -- C:\Users\Jeremy\Desktop\sem2.jpg
[2012/04/30 11:44:51 | 000,004,583 | ---- | C] () -- C:\Users\Jeremy\.recently-used.xbel
[2012/04/30 11:31:42 | 000,097,627 | ---- | C] () -- C:\Users\Jeremy\Desktop\sem1.jpg
[2012/04/26 08:36:13 | 000,002,601 | ---- | C] () -- C:\Users\Jeremy\Desktop\IP Sheet.lnk
[2012/04/26 08:36:02 | 000,002,656 | ---- | C] () -- C:\Users\Jeremy\Desktop\HEIS.lnk
[2012/04/26 08:35:36 | 000,001,923 | ---- | C] () -- C:\Users\Jeremy\Desktop\Server.lnk
[2012/04/25 18:44:18 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012/04/25 18:44:18 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012/04/25 18:44:18 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012/04/25 18:44:18 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012/04/25 18:44:18 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2012/04/25 08:39:07 | 001,426,192 | ---- | C] () -- C:\Windows\SysNative\drivers\Cat.DB
[2012/04/20 09:02:40 | 000,001,634 | ---- | C] () -- C:\Users\Public\Desktop\LCI 2.4.lnk
[2012/04/20 08:58:17 | 000,001,959 | ---- | C] () -- C:\Users\Jeremy\Desktop\SOUPLauncher.lnk
[2012/03/21 08:55:19 | 000,000,193 | ---- | C] () -- C:\Windows\WORDPAD.INI
[2012/01/25 16:37:51 | 000,000,000 | ---- | C] () -- C:\Windows\Mwm53xx.INI
[2012/01/25 11:30:52 | 000,000,065 | ---- | C] () -- C:\Windows\Otdr.INI
[2011/10/12 16:37:07 | 000,015,290 | ---- | C] () -- C:\Users\Jeremy\AppData\Roaming\ekiga.conf
[2011/09/29 19:08:51 | 000,283,304 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011/09/29 19:08:50 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011/09/23 22:15:08 | 000,056,832 | ---- | C] () -- C:\Windows\SysWow64\OpenVideo.dll
[2011/05/13 12:41:35 | 000,000,034 | ---- | C] () -- C:\Windows\SysWow64\bd404cdn.dat
[2011/05/13 12:41:35 | 000,000,026 | ---- | C] () -- C:\Windows\BRPP2KA.INI
[2011/05/10 14:46:29 | 000,807,666 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011/03/23 10:09:30 | 000,005,574 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2011/03/17 12:51:44 | 000,003,929 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2010/09/10 14:43:43 | 000,007,608 | ---- | C] () -- C:\Users\Jeremy\AppData\Local\resmon.resmoncfg
[2010/09/10 10:51:49 | 000,000,461 | ---- | C] () -- C:\Windows\BRWMARK.INI
[2010/09/10 10:51:49 | 000,000,034 | ---- | C] () -- C:\Windows\SysWow64\BD2140.DAT
[2010/08/24 12:29:44 | 000,000,000 | ---- | C] () -- C:\ProgramData\cp_group.properties
[2010/08/12 23:23:21 | 000,000,600 | ---- | C] () -- C:\Users\Jeremy\AppData\Local\PUTTY.RND
[2010/07/28 18:17:07 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010/07/28 16:40:14 | 000,000,074 | RHS- | C] () -- C:\Windows\CT4CET.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_14001461_61.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_13011461_aa.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_110F1461_ca.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_110F1461_8a.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_11071461_aa.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_11071461_8a.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_060F1461_ca.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_06071461_aa.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_06071461_8a.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_03011461_aa.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_03011461_8a.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_02011461_aa.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_02011461_8a.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_010F1461_ca.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_010F1461_8a.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_01071461_aa.bin
[2010/06/28 03:08:10 | 000,000,502 | ---- | C] () -- C:\Windows\11317231_01071461_8a.bin
[2010/06/28 03:08:10 | 000,000,461 | ---- | C] () -- C:\Windows\11317231_07031461_aa.bin
[2010/06/28 03:08:10 | 000,000,461 | ---- | C] () -- C:\Windows\11317231_03231461_ca.bin
[2010/06/28 03:08:10 | 000,000,461 | ---- | C] () -- C:\Windows\11317231_03231461_aa.bin
[2010/06/28 03:08:10 | 000,000,461 | ---- | C] () -- C:\Windows\11317231_03231461_8a.bin
[2010/06/28 03:08:10 | 000,000,461 | ---- | C] () -- C:\Windows\11317231_03131461_8a.bin
[2010/06/28 03:08:10 | 000,000,461 | ---- | C] () -- C:\Windows\11317231_03031461_aa.bin
[2010/06/28 03:08:10 | 000,000,461 | ---- | C] () -- C:\Windows\11317231_02031461_ca.bin
[2010/06/28 03:08:10 | 000,000,461 | ---- | C] () -- C:\Windows\11317231_02031461_aa.bin
[2010/06/28 03:08:10 | 000,000,461 | ---- | C] () -- C:\Windows\11317231_02031461_8a.bin
[2010/06/28 03:08:10 | 000,000,461 | ---- | C] () -- C:\Windows\11317231_00000000_aa.bin
[2010/06/28 03:08:10 | 000,000,461 | ---- | C] () -- C:\Windows\11317231_00000000_8a.bin
[2010/06/28 03:08:10 | 000,000,376 | ---- | C] () -- C:\Windows\11317231_03131461_aa.bin
[2010/06/25 12:03:12 | 000,053,299 | ---- | C] () -- C:\Windows\SysWow64\pthreadVC.dll