OTL output 1 of 2 - too long for a single post (56,848 characters)
OTL logfile created on: 11/20/2011 2:24:02 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Doug\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
7.97 Gb Total Physical Memory | 6.15 Gb Available Physical Memory | 77.25% Memory free
15.93 Gb Paging File | 13.74 Gb Available in Paging File | 86.22% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 686.69 Gb Total Space | 505.65 Gb Free Space | 73.64% Space Free | Partition Type: NTFS
Drive D: | 11.84 Gb Total Space | 2.13 Gb Free Space | 17.96% Space Free | Partition Type: NTFS
Drive J: | 298.01 Gb Total Space | 73.54 Gb Free Space | 24.68% Space Free | Partition Type: FAT32
Computer Name: DOUGPC | User Name: Doug | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/11/20 14:20:19 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Doug\Downloads\OTL.exe
PRC - [2011/06/06 11:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/03/28 16:07:50 | 000,094,264 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
PRC - [2009/12/01 19:49:52 | 000,210,216 | ---- | M] (CyberLink) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
PRC - [2009/10/20 13:50:34 | 000,128,296 | ---- | M] (CyberLink Corp.) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
========== Modules (No Company Name) ==========
MOD - [2009/12/01 19:49:50 | 000,931,112 | ---- | M] () -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
========== Win32 Services (SafeList) ==========
SRV:
64bit: - [2011/10/26 18:12:02 | 000,409,672 | ---- | M] (BitDefender S.R.L.) [Auto | Running] -- C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe -- (LIVESRV)
SRV:
64bit: - [2010/03/24 11:43:38 | 002,299,656 | ---- | M] (BitDefender S.R.L.) [Auto | Running] -- C:\Program Files\BitDefender\BitDefender 2010\vsserv.exe -- (VSSERV)
SRV:
64bit: - [2010/03/12 15:42:40 | 000,393,728 | ---- | M] (S.C. BitDefender S.R.L) [On_Demand | Stopped] -- C:\Program Files\Common Files\BitDefender\Bitdefender Threat Scanner\scan.dll -- (scan)
SRV:
64bit: - [2009/10/19 19:04:58 | 000,278,224 | ---- | M] (BitDefender S.R.L.
http://www.bitdefender.com) [On_Demand | Stopped] -- C:\Program Files\Common Files\BitDefender\Bitdefender Arrakis Server\bin\arrakis3.exe -- (Update Server)
SRV:
64bit: - [2009/10/19 19:04:58 | 000,278,224 | ---- | M] (BitDefender S.R.L.
http://www.bitdefender.com) [On_Demand | Stopped] -- C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe -- (Arrakis3)
SRV:
64bit: - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2011/06/21 14:57:34 | 000,085,560 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe -- (HP Support Assistant Service)
SRV - [2011/06/06 11:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/03/28 16:07:50 | 000,094,264 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -- (HPDrvMntSvc.exe)
SRV - [2011/03/09 17:02:56 | 000,331,648 | ---- | M] (FileOpen Systems Inc.) [Auto | Running] -- C:\ProgramData\FileOpen\Services\FileOpenManagerSvc64.exe -- (FileOpenManagerSvc)
SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/11/25 15:42:18 | 000,583,640 | ---- | M] (PC Tools) [Disabled | Stopped] -- C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe -- (PCToolsSSDMonitorSvc)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/05/22 13:02:20 | 000,250,616 | ---- | M] (WildTangent, Inc.) [Disabled | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService)
========== Driver Services (SafeList) ==========
DRV:
64bit: - [2011/10/26 18:12:11 | 000,088,144 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BdfNdisf6.sys -- (BdfNdisf)
DRV:
64bit: - [2011/10/26 18:12:06 | 000,089,680 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- C:\Program Files\Common Files\BitDefender\Bitdefender Firewall\bdfwfpf.sys -- (bdfwfpf)
DRV:
64bit: - [2011/09/01 14:29:14 | 000,078,928 | ---- | M] (BitDefender SRL) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bdsandbox.sys -- (bdsandbox)
DRV:
64bit: - [2011/07/15 15:12:44 | 000,258,224 | ---- | M] (BitDefender) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\avchv.sys -- (avchv)
DRV:
64bit: - [2011/03/11 01:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:
64bit: - [2011/03/11 01:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:
64bit: - [2010/11/20 08:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:
64bit: - [2010/11/20 06:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:
64bit: - [2010/09/22 23:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:
64bit: - [2010/02/22 13:57:54 | 000,347,336 | ---- | M] (BitDefender) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\bdfsfltr.sys -- (bdfsfltr)
DRV:
64bit: - [2010/01/29 13:47:04 | 000,163,936 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\bdfm.sys -- (BDFM)
DRV:
64bit: - [2010/01/19 18:32:40 | 000,103,944 | ---- | M] (BitDefender) [Kernel | Auto | Running] -- C:\Program Files\BitDefender\BitDefender 2010\bdvedisk.sys -- (BDVEDISK)
DRV:
64bit: - [2009/12/30 11:21:26 | 000,031,800 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\revoflt.sys -- (Revoflt)
DRV:
64bit: - [2009/08/20 15:05:06 | 000,239,616 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:
64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:
64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:
64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:
64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:
64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:
64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:
64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:
64bit: - [2009/06/05 10:10:10 | 001,478,144 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:
64bit: - [2009/06/03 17:16:56 | 007,333,472 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:
64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_US&c=94&bd=Pavilion&pf=cndt
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\URLSearchHook: {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No CLSID value found
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-4032159327-3157157313-2726375902-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\S-1-5-21-4032159327-3157157313-2726375902-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKU\S-1-5-21-4032159327-3157157313-2726375902-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = BE D2 46 C8 E3 53 CA 01 [binary data]
IE - HKU\S-1-5-21-4032159327-3157157313-2726375902-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "AVG Secure Search"
FF - prefs.js..browser.search.defaulturl: "http://www.bing.com/search?FORM=IEFM1&q="
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.com"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems:
amznUWL2@amazon.com:1.7
FF - prefs.js..extensions.enabledItems:
engine@conduit.com:3.3.3.2
FF - prefs.js..extensions.enabledItems: {2fa4ed95-0317-4c6a-a74c-5f3e3912c1f9}:2.3.1
FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.3.8.20110919032113
FF - prefs.js..extensions.enabledItems: {88c7f2aa-f93f-432c-8f0e-b7d85967a527}:3.7.0.6
FF - prefs.js..extensions.enabledItems: {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20110704
FF - prefs.js..extensions.enabledItems: {e001c731-5e37-4538-a5cb-8168736a2360}:0.9.9.99
FF - prefs.js..extensions.enabledItems:
FFToolbar@bitdefender.com:2.0
FF - prefs.js..keyword.URL: "http://isearch.avg.com/search?cid=%7B883f89f6-7458-48ef-b43b-6eda0c75989c%7D&mid=ec59c282050647d1a85e41affcf06228-888224acfe48b3ad68641d3f0c9229171fca1072&ds=AVG&v=8.0.0.40&lang=en&pr=fr&d=2011-11-19%2017%3A13%3A45&sap=ku&q="
FF:
64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.81\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.81\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Doug\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Doug\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Doug\AppData\Local\Google\Update\1.3.21.81\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Doug\AppData\Local\Google\Update\1.3.21.81\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\FFToolbar@bitdefender.com: C:\Program Files\BitDefender\BitDefender 2010\bdaphffext\ [2011/10/26 18:13:28 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.24\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/11/08 19:40:52 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.24\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/11/08 19:40:52 | 000,000,000 | ---D | M]
[2009/10/22 15:14:56 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Doug\AppData\Roaming\Mozilla\Extensions
[2011/11/20 00:33:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Doug\AppData\Roaming\Mozilla\Firefox\Profiles\7q0hgche.default\extensions
[2011/07/12 22:36:21 | 000,000,000 | ---D | M] (Delicious Bookmarks) -- C:\Users\Doug\AppData\Roaming\Mozilla\Firefox\Profiles\7q0hgche.default\extensions\{2fa4ed95-0317-4c6a-a74c-5f3e3912c1f9}
[2011/10/15 13:42:47 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\Doug\AppData\Roaming\Mozilla\Firefox\Profiles\7q0hgche.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2011/09/28 22:48:31 | 000,000,000 | ---D | M] (BitTorrentBar Community Toolbar) -- C:\Users\Doug\AppData\Roaming\Mozilla\Firefox\Profiles\7q0hgche.default\extensions\{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
[2011/07/12 22:36:20 | 000,000,000 | ---D | M] (WOT) -- C:\Users\Doug\AppData\Roaming\Mozilla\Firefox\Profiles\7q0hgche.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2011/10/25 09:12:47 | 000,000,000 | ---D | M] (BitDefender QuickScan) -- C:\Users\Doug\AppData\Roaming\Mozilla\Firefox\Profiles\7q0hgche.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}
[2011/08/29 19:31:56 | 000,000,000 | ---D | M] (Add to Amazon Wish List Button) -- C:\Users\Doug\AppData\Roaming\Mozilla\Firefox\Profiles\7q0hgche.default\extensions\amznUWL2@amazon.com
[2011/04/16 17:39:15 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\Doug\AppData\Roaming\Mozilla\Firefox\Profiles\7q0hgche.default\extensions\engine@conduit.com
[2011/11/19 18:18:32 | 000,003,847 | ---- | M] () -- C:\Users\Doug\AppData\Roaming\Mozilla\Firefox\Profiles\7q0hgche.default\searchplugins\avg-secure-search.xml
[2009/10/23 08:47:06 | 000,002,171 | ---- | M] () -- C:\Users\Doug\AppData\Roaming\Mozilla\Firefox\Profiles\7q0hgche.default\searchplugins\bing.xml
[2011/10/16 19:40:52 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010/06/21 00:39:01 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010/08/25 09:42:59 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/10/16 22:31:56 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011/10/26 18:13:28 | 000,000,000 | ---D | M] ("BitDefender Antiphishing Toolbar") -- C:\PROGRAM FILES\BITDEFENDER\BITDEFENDER 2010\BDAPHFFEXT
[2010/09/15 03:50:38 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010/06/22 21:23:55 | 000,075,208 | ---- | M] (Foxit Software Company) -- C:\Program Files (x86)\mozilla firefox\plugins\npFoxitReaderPlugin.dll
========== Chrome ==========
CHR - default_search_provider: AVG Secure Search (Enabled)
CHR - default_search_provider: search_url = http://isearch.avg.com/search?cid={94D67DAE-F85F-4BED-9F59-ECD45F85D6FE}&mid=ec59c282050647d1a85e41affcf06228-888224acfe48b3ad68641d3f0c9229171fca1072&lang=en&ds=AVG&pr=fr&d=2011-11-19 17:13:45&v=8.0.0.40&sap=dsp&q={searchTerms}
CHR - default_search_provider: suggest_url = http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding}
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Doug\AppData\Local\Google\Chrome\Application\15.0.874.121\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Java Deployment Toolkit 6.0.220.4 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U22 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Doug\AppData\Local\Google\Chrome\Application\15.0.874.121\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Doug\AppData\Local\Google\Chrome\Application\15.0.874.121\pdf.dll
CHR - plugin: Foxit Reader Plugin for Mozilla (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npFoxitReaderPlugin.dll
CHR - plugin: Google Talk Plugin (Enabled) = C:\Users\Doug\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
CHR - plugin: Google Talk Plugin Video Accelerator (Enabled) = C:\Users\Doug\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
O1 HOSTS File: ([2011/11/20 03:01:31 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Microsoft Live Search Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0560.0\msneshellx.dll (Microsoft Corp.)
O3:
64bit: - HKLM\..\Toolbar: (BitDefender Toolbar) - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2010\IEToolbar.dll (BitDefender S.R.L.)
O3 - HKLM\..\Toolbar: (Microsoft Live Search Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0560.0\msneshellx.dll (Microsoft Corp.)
O3 - HKLM\..\Toolbar: (no name) - {30F9B915-B755-4826-820B-08FBA6BD249D} - No CLSID value found.
O3 - HKLM\..\Toolbar: (BitDefender Toolbar) - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2010\Antispam32\IEToolbar.dll (BitDefender S.R.L.)
O3 - HKLM\..\Toolbar: (no name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No CLSID value found.
O3 - HKU\S-1-5-21-4032159327-3157157313-2726375902-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O4:
64bit: - HKLM..\Run: [BDAgent] C:\Program Files\BitDefender\BitDefender 2010\bdagent.exe (BitDefender S.R.L.)
O4:
64bit: - HKLM..\Run: [BitDefender Antiphishing Helper] C:\Program Files\BitDefender\BitDefender 2010\IEShow.exe (BitDefender S.R.L.)
O4:
64bit: - HKLM..\Run: [BitDefender Antiphishing Helper 32] C:\Program Files\BitDefender\BitDefender 2010\Antispam32\IEShow.exe (BitDefender S.R.L.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-4032159327-3157157313-2726375902-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-4032159327-3157157313-2726375902-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6E2AD852-4733-446D-8134-5F28B4CD57F2}: DhcpNameServer = 192.168.2.1
O18:
64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:
64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:
64bit: - Protocol\Handler\wlpg - No CLSID value found
O20:
64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:
64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/11/19 00:34:56 | 000,000,032 | ---- | M] () - J:\AUTOEXEC.BAT -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
Drivers32:
64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2011/11/20 03:08:26 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011/11/20 02:54:12 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011/11/20 02:54:12 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011/11/20 02:54:12 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011/11/20 02:54:03 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011/11/20 02:54:01 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/11/20 02:10:25 | 004,302,402 | R--- | C] (Swearware) -- C:\Users\Doug\Desktop\ComboFix.exe
[2011/11/19 17:38:02 | 000,000,000 | ---D | C] -- C:\ProgramData\SecTaskMan
[2011/11/19 17:37:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security Task Manager
[2011/11/19 17:37:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Security Task Manager
[2011/11/19 17:13:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Common Files
[2011/11/19 14:06:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2011/11/17 17:10:13 | 000,000,000 | ---D | C] -- C:\Users\Doug\Documents\Homeschool
[2011/11/17 10:54:56 | 000,200,976 | ---- | C] (Trend Micro Inc.) -- C:\Windows\SysWow64\drivers\tmcomm.sys
[2011/11/13 16:53:15 | 000,000,000 | ---D | C] -- C:\Users\Doug\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2011/11/13 15:52:50 | 000,000,000 | ---D | C] -- C:\ProgramData\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}
[2011/11/13 15:50:33 | 000,000,000 | ---D | C] -- C:\Users\Doug\AppData\Local\VS Revo Group
[2011/11/13 15:50:31 | 000,031,800 | ---- | C] (VS Revo Group) -- C:\Windows\SysNative\drivers\revoflt.sys
[2011/11/13 15:50:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
[2011/11/13 15:50:30 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group
[2011/11/13 01:45:08 | 000,000,000 | ---D | C] -- C:\Users\Doug\AppData\Roaming\Opera
[2011/11/13 01:45:08 | 000,000,000 | ---D | C] -- C:\Users\Doug\AppData\Local\Opera
[2011/11/13 01:45:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera
[2011/11/13 01:00:55 | 000,000,000 | ---D | C] -- C:\Users\Doug\AppData\Local\PackageAware
[2011/11/01 08:03:05 | 000,000,000 | ---D | C] -- C:\Users\Doug\AppData\Roaming\Apple Computer
[2011/10/31 18:13:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2011/10/31 18:12:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime
[2011/10/31 18:12:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2011/10/26 22:46:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/10/26 22:46:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2011/10/26 17:58:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitDefender 2010
[2011/10/26 17:38:03 | 000,000,000 | ---D | C] -- C:\Users\Doug\AppData\Roaming\BitDefender
[2011/10/26 17:38:03 | 000,000,000 | ---D | C] -- C:\ProgramData\BitDefender
[2011/10/26 17:38:03 | 000,000,000 | ---D | C] -- C:\Program Files\BitDefender
[2011/10/26 17:36:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\BitDefender
[2011/10/26 16:39:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2012
[2011/10/25 20:54:04 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Games
[2011/10/25 08:40:24 | 000,079,952 | ---- | C] (BitDefender SRL) -- C:\Windows\SysNative\drivers\bdsandbox.sys.upd
[2011/10/24 10:32:40 | 000,000,000 | ---D | C] -- C:\ProgramData\BDLogging
[2011/10/22 18:46:10 | 000,000,000 | ---D | C] -- C:\Users\Doug\AppData\Roaming\QuickScan
[1 C:\Users\Doug\AppData\Local\*.tmp files -> C:\Users\Doug\AppData\Local\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/11/20 14:04:14 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/11/20 13:40:00 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4032159327-3157157313-2726375902-1000UA.job
[2011/11/20 08:07:15 | 000,015,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/11/20 08:07:15 | 000,015,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/11/20 04:04:00 | 000,000,890 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/11/20 03:40:00 | 000,000,852 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4032159327-3157157313-2726375902-1000Core.job
[2011/11/20 03:05:20 | 000,726,316 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/11/20 03:05:20 | 000,623,940 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/11/20 03:05:20 | 000,106,316 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/11/20 03:01:31 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011/11/20 03:01:06 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/11/20 03:00:52 | 2120,097,791 | -HS- | M] () -- C:\hiberfil.sys
[2011/11/20 03:00:24 | 000,000,052 | ---- | M] () -- C:\Windows\SysNative\ashttpstats.csv
[2011/11/20 02:10:29 | 004,302,402 | R--- | M] (Swearware) -- C:\Users\Doug\Desktop\ComboFix.exe
[2011/11/19 19:22:59 | 000,000,000 | ---- | M] () -- C:\Users\Doug\AppData\Local\{1F27879C-3BF5-4336-BA6A-00D39B8B3F6B}
[2011/11/19 16:17:47 | 000,000,328 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForDoug.job
[2011/11/19 16:16:10 | 000,000,288 | ---- | M] () -- C:\ProgramData\~YFdVN365mYfZcj
[2011/11/19 16:16:10 | 000,000,216 | ---- | M] () -- C:\ProgramData\~YFdVN365mYfZcjr
[2011/11/19 16:16:09 | 000,000,336 | ---- | M] () -- C:\ProgramData\YFdVN365mYfZcj
[2011/11/19 14:06:01 | 000,002,246 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2011/11/18 10:44:19 | 000,002,398 | ---- | M] () -- C:\Users\Doug\Desktop\Google Chrome.lnk
[2011/11/17 10:58:42 | 000,164,104 | ---- | M] () -- C:\Users\Doug\AppData\Local\census.cache
[2011/11/17 10:58:39 | 000,114,525 | ---- | M] () -- C:\Users\Doug\AppData\Local\ars.cache
[2011/11/17 10:54:37 | 000,000,036 | ---- | M] () -- C:\Users\Doug\AppData\Local\housecall.guid.cache
[2011/11/13 15:50:32 | 000,001,135 | ---- | M] () -- C:\Users\Doug\Application Data\Microsoft\Internet Explorer\Quick Launch\Revo Uninstaller Pro.lnk
[2011/11/13 15:50:32 | 000,001,111 | ---- | M] () -- C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
[2011/11/13 01:45:06 | 000,001,867 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk
[2011/11/13 01:04:50 | 000,005,856 | ---- | M] () -- C:\Users\Doug\Desktop\Default_LNK_(Shortcut).reg
[2011/11/13 01:02:29 | 000,001,886 | ---- | M] () -- C:\Users\Doug\Desktop\cc_20111113_010223.reg
[2011/11/09 03:18:41 | 000,372,624 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011/11/01 13:59:14 | 001,082,584 | ---- | M] () -- C:\Users\Doug\Desktop\ConsumerSentimentandSpending MilkenInstitute .pdf
[2011/11/01 00:25:03 | 000,057,364 | ---- | M] () -- C:\Users\Doug\Desktop\cc_20111101_012456.reg
[2011/10/31 18:13:04 | 000,001,879 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2011/10/26 22:46:40 | 000,001,147 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/10/26 18:12:11 | 000,088,144 | ---- | M] (BitDefender LLC) -- C:\Windows\SysNative\drivers\BdfNdisf6.sys
[2011/10/26 17:59:00 | 000,002,136 | ---- | M] () -- C:\Users\Public\Desktop\BitDefender Internet Security 2010.lnk
[2011/10/26 17:40:52 | 000,000,385 | ---- | M] () -- C:\Windows\SysNative\user_gensett.xml
[2011/10/26 17:14:44 | 000,027,689 | ---- | M] () -- C:\ProgramData\1319667278.bdinstall.bin
[2011/10/26 17:12:57 | 000,027,689 | ---- | M] () -- C:\ProgramData\1319667172.bdinstall.bin
[2011/10/26 17:11:32 | 000,000,303 | ---- | M] () -- C:\Windows\SysNative\checkdnsid.xml
[2011/10/26 17:05:46 | 000,007,606 | ---- | M] () -- C:\Users\Doug\AppData\Local\Resmon.ResmonCfg
[2011/10/26 16:39:39 | 000,148,729 | ---- | M] () -- C:\ProgramData\1319665086.bdinstall.bin
[2011/10/26 16:39:36 | 000,000,270 | ---- | M] () -- C:\bdr-conf
[2011/10/26 16:38:06 | 000,023,975 | ---- | M] () -- C:\ProgramData\1319665085.bdinstall.bin
[2011/10/26 10:11:30 | 000,027,689 | ---- | M] () -- C:\ProgramData\1319641883.bdinstall.bin
[2011/10/25 22:15:21 | 000,204,091 | ---- | M] () -- C:\ProgramData\1319598661.bdinstall.bin
[2011/10/25 22:02:56 | 000,166,240 | ---- | M] () -- C:\ProgramData\1319598111.bdinstall.bin
[2011/10/25 21:58:07 | 000,094,087 | ---- | M] () -- C:\ProgramData\1319597729.bdinstall.bin
[2011/10/25 21:30:35 | 000,214,848 | ---- | M] () -- C:\ProgramData\1319595922.bdinstall.bin
[2011/10/25 21:18:41 | 000,095,205 | ---- | M] () -- C:\ProgramData\1319595405.bdinstall.bin
[2011/10/25 20:48:24 | 000,001,055 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011/10/25 08:40:24 | 000,079,952 | ---- | M] (BitDefender SRL) -- C:\Windows\SysNative\drivers\bdsandbox.sys.upd
[2011/10/25 04:38:40 | 000,020,748 | ---- | M] () -- C:\Users\Doug\Desktop\cc_20111025_053835.reg
[2011/10/22 18:51:50 | 000,190,222 | ---- | M] () -- C:\ProgramData\1319327154.bdinstall.bin
[2011/10/22 18:50:52 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_avchv_01009.Wdf
[1 C:\Users\Doug\AppData\Local\*.tmp files -> C:\Users\Doug\AppData\Local\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/11/20 02:54:12 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011/11/20 02:54:12 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011/11/20 02:54:12 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011/11/20 02:54:12 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011/11/20 02:54:12 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011/11/19 19:22:59 | 000,000,000 | ---- | C] () -- C:\Users\Doug\AppData\Local\{1F27879C-3BF5-4336-BA6A-00D39B8B3F6B}
[2011/11/19 18:52:06 | 000,002,310 | ---- | C] () -- C:\Users\Public\Desktop\Fidelity Active Trader Pro.lnk
[2011/11/19 18:52:06 | 000,002,246 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2011/11/19 18:52:06 | 000,002,213 | ---- | C] () -- C:\Users\Public\Desktop\HP Support Assistant.lnk
[2011/11/19 18:52:06 | 000,002,136 | ---- | C] () -- C:\Users\Public\Desktop\BitDefender Internet Security 2010.lnk
[2011/11/19 18:52:06 | 000,001,977 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/11/19 18:52:06 | 000,001,965 | ---- | C] () -- C:\Users\Public\Desktop\Stellarium.lnk
[2011/11/19 18:52:06 | 000,001,918 | ---- | C] () -- C:\Users\Public\Desktop\Internet Explorer.lnk
[2011/11/19 18:52:06 | 000,001,879 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2011/11/19 18:52:06 | 000,001,867 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk
[2011/11/19 18:52:06 | 000,001,147 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/11/19 18:52:06 | 000,001,111 | ---- | C] () -- C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
[2011/11/19 18:52:06 | 000,001,101 | ---- | C] () -- C:\Users\Public\Desktop\Registry Mechanic.lnk
[2011/11/19 18:52:06 | 000,001,055 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011/11/19 18:52:06 | 000,001,001 | ---- | C] () -- C:\Users\Public\Desktop\BitTorrent.lnk
[2011/11/19 18:52:05 | 000,002,053 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2011/11/19 18:52:00 | 000,002,557 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office PowerPoint Viewer 2007.lnk
[2011/11/19 18:52:00 | 000,002,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2011/11/19 18:52:00 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
[2011/11/19 18:52:00 | 000,002,243 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite Deluxe.lnk
[2011/11/19 18:52:00 | 000,001,991 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\thinkorswim from TD AMERITRADE.lnk
[2011/11/19 18:52:00 | 000,001,921 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PictureMover.lnk
[2011/11/19 18:52:00 | 000,001,879 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
[2011/11/19 18:52:00 | 000,001,547 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
[2011/11/19 18:52:00 | 000,001,492 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
[2011/11/19 18:52:00 | 000,001,408 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
[2011/11/19 18:52:00 | 000,001,352 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk
[2011/11/19 18:52:00 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2011/11/19 18:52:00 | 000,001,339 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
[2011/11/19 18:52:00 | 000,001,330 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
[2011/11/19 18:52:00 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2011/11/19 18:52:00 | 000,001,246 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
[2011/11/19 18:52:00 | 000,001,210 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
[2011/11/19 18:52:00 | 000,001,188 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2011/11/19 18:52:00 | 000,001,181 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works Task Launcher.lnk
[2011/11/19 18:52:00 | 000,000,182 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pandora Internet Radio.url
[2011/11/19 16:16:10 | 000,000,288 | ---- | C] () -- C:\ProgramData\~YFdVN365mYfZcj
[2011/11/19 16:16:10 | 000,000,216 | ---- | C] () -- C:\ProgramData\~YFdVN365mYfZcjr
[2011/11/19 16:16:09 | 000,000,336 | ---- | C] () -- C:\ProgramData\YFdVN365mYfZcj
[2011/11/17 10:58:42 | 000,164,104 | ---- | C] () -- C:\Users\Doug\AppData\Local\census.cache
[2011/11/17 10:58:39 | 000,114,525 | ---- | C] () -- C:\Users\Doug\AppData\Local\ars.cache
[2011/11/17 10:54:37 | 000,000,036 | ---- | C] () -- C:\Users\Doug\AppData\Local\housecall.guid.cache
[2011/11/13 16:53:16 | 000,002,398 | ---- | C] () -- C:\Users\Doug\Desktop\Google Chrome.lnk
[2011/11/13 15:50:32 | 000,001,135 | ---- | C] () -- C:\Users\Doug\Application Data\Microsoft\Internet Explorer\Quick Launch\Revo Uninstaller Pro.lnk
[2011/11/13 01:02:26 | 000,001,886 | ---- | C] () -- C:\Users\Doug\Desktop\cc_20111113_010223.reg
[2011/11/01 13:59:14 | 001,082,584 | ---- | C] () -- C:\Users\Doug\Desktop\ConsumerSentimentandSpending MilkenInstitute .pdf
[2011/11/01 00:24:59 | 000,057,364 | ---- | C] () -- C:\Users\Doug\Desktop\cc_20111101_012456.reg
[2011/10/26 21:50:30 | 000,005,856 | ---- | C] () -- C:\Users\Doug\Desktop\Default_LNK_(Shortcut).reg
[2011/10/26 17:40:52 | 000,000,385 | ---- | C] () -- C:\Windows\SysNative\user_gensett.xml
[2011/10/26 17:14:44 | 000,027,689 | ---- | C] () -- C:\ProgramData\1319667278.bdinstall.bin
[2011/10/26 17:12:57 | 000,027,689 | ---- | C] () -- C:\ProgramData\1319667172.bdinstall.bin
[2011/10/26 17:05:46 | 000,007,606 | ---- | C] () -- C:\Users\Doug\AppData\Local\Resmon.ResmonCfg
[2011/10/26 16:39:39 | 000,148,729 | ---- | C] () -- C:\ProgramData\1319665086.bdinstall.bin
[2011/10/26 16:39:36 | 000,000,270 | ---- | C] () -- C:\bdr-conf
[2011/10/26 16:39:35 | 036,506,740 | ---- | C] () -- C:\bdrescue.gz
[2011/10/26 16:39:35 | 002,510,608 | ---- | C] () -- C:\bdrescue.vm
[2011/10/26 16:39:35 | 000,217,769 | ---- | C] () -- C:\bdrescue
[2011/10/26 16:39:35 | 000,009,216 | ---- | C] () -- C:\bdrescue.mbr
[2011/10/26 16:38:06 | 000,023,975 | ---- | C] () -- C:\ProgramData\1319665085.bdinstall.bin
[2011/10/26 10:11:30 | 000,027,689 | ---- | C] () -- C:\ProgramData\1319641883.bdinstall.bin
[2011/10/25 22:15:21 | 000,204,091 | ---- | C] () -- C:\ProgramData\1319598661.bdinstall.bin
[2011/10/25 22:02:56 | 000,166,240 | ---- | C] () -- C:\ProgramData\1319598111.bdinstall.bin
[2011/10/25 21:58:07 | 000,094,087 | ---- | C] () -- C:\ProgramData\1319597729.bdinstall.bin
[2011/10/25 21:30:35 | 000,214,848 | ---- | C] () -- C:\ProgramData\1319595922.bdinstall.bin
[2011/10/25 21:18:41 | 000,095,205 | ---- | C] () -- C:\ProgramData\1319595405.bdinstall.bin
[2011/10/25 04:38:38 | 000,020,748 | ---- | C] () -- C:\Users\Doug\Desktop\cc_20111025_053835.reg
[2011/10/22 19:06:11 | 000,000,303 | ---- | C] () -- C:\Windows\SysNative\checkdnsid.xml
[2011/10/22 18:51:50 | 000,190,222 | ---- | C] () -- C:\ProgramData\1319327154.bdinstall.bin
[2011/10/22 18:50:52 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_avchv_01009.Wdf
[2011/06/08 11:29:06 | 000,704,793 | ---- | C] () -- C:\Windows\unins000.exe
[2011/06/08 11:29:06 | 000,003,668 | ---- | C] () -- C:\Windows\unins000.dat
[2010/06/09 18:16:03 | 000,835,732 | ---- | C] () -- C:\Users\Doug\AppData\Roaming\DouglasWRoberts.zip
[2010/02/25 23:14:26 | 000,000,025 | ---- | C] () -- C:\Users\Doug\AppData\Roaming\bdfvconp.ini
[2009/10/23 06:31:04 | 000,000,140 | ---- | C] () -- C:\Users\Doug\AppData\Roaming\wklnhst.dat
[2009/07/14 00:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/13 21:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009/07/13 21:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009/07/13 19:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/13 18:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 16:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/10 16:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009/06/03 17:14:52 | 000,982,220 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2009/06/03 17:14:52 | 000,433,024 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2009/06/03 17:14:52 | 000,134,592 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin
[2009/06/03 17:14:52 | 000,092,216 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin