Apologies! Not sure how I did that.
Let me knwow if you need me to repost any of those logs.
Seems the issue may be solved. I will continue to Google and test it during the day and update.
Thanks!
Log from 1st OTL Run.
All processes killed
========== OTL ==========
Service asp.net stopped successfully!
Service asp.net deleted successfully!
File C:\Program Files\Common Files\Microsoft Shared\MSINFO\asp.net not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0347C33E-8762-4905-BF09-768834316C61}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
========== COMMANDS ==========
[EMPTYFLASH]
User: Administrator
User: Administrator.DITSU
->Flash cache emptied: 0 bytes
User: All Users
User: claire.healey
->Flash cache emptied: 0 bytes
User: Default User
User: LocalService
User: mark_breen
->Flash cache emptied: 1631 bytes
User: NetworkService
User: sabbatical
->Flash cache emptied: 0 bytes
User: sean.campbell
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0.00 mb
[EMPTYTEMP]
User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Administrator.DITSU
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: All Users
User: claire.healey
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: mark_breen
->Temp folder emptied: 6375775 bytes
->Temporary Internet Files folder emptied: 275670 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 96596336 bytes
->Flash cache emptied: 0 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: sabbatical
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: sean.campbell
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 21997035 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 155848280 bytes
Total Files Cleaned = 268.00 mb
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
OTL by OldTimer - Version 3.2.17.3 log created on 12162010_075320
Files\Folders moved on Reboot...
C:\Documents and Settings\mark_breen\Local Settings\Temp\All Staff Meeting Minutes 26Nov10.doc moved successfully.
File\Folder C:\Documents and Settings\mark_breen\Local Settings\Temp\Perflib_Perfdata_d70.dat not found!
C:\Documents and Settings\mark_breen\Local Settings\Temp\Services and Trading SC Agenda - 14Dec10.doc moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Temp\Z@RFB.tmp moved successfully.
File\Folder C:\Documents and Settings\mark_breen\Local Settings\Temp\~DF9754.tmp not found!
File\Folder C:\Documents and Settings\mark_breen\Local Settings\Temp\~DFA76F.tmp not found!
C:\Documents and Settings\mark_breen\Local Settings\Temporary Internet Files\Content.Word\~WRF{D16A9DA8-906F-4D5F-B616-3874444A9C17}.tmp moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Temporary Internet Files\Content.Word\~WRS{3C7989F2-F630-449B-BBB0-3ACE7EDB447F}.tmp moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Temporary Internet Files\Content.Word\~WRS{96D6F5CC-DEF5-42CD-9426-13F254544E10}.tmp moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Temporary Internet Files\Content.Word\~WRS{C532299A-0D38-440A-B4E6-6D16E39A6BC4}.tmp moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Temporary Internet Files\Content.Word\~WRS{CC96AF1C-8749-4EF9-A718-A820FF4FD812}.tmp moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Temporary Internet Files\Content.Word\~WRS{CCFBAB1D-64B9-4DFC-831F-7EA1371E64C6}.tmp moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Temporary Internet Files\Content.Word\~WRS{EF597C64-6B28-4CF4-A39A-C5452129D620}.tmp moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Temporary Internet Files\Content.IE5\FPUL4SPA\master[1].xml moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\Cache\_CACHE_001_ moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\Cache\_CACHE_002_ moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\Cache\_CACHE_003_ moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\Cache\_CACHE_MAP_ moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\urlclassifier3.sqlite moved successfully.
C:\Documents and Settings\mark_breen\Local Settings\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\XUL.mfl moved successfully.
File\Folder C:\WINDOWS\temp\Perflib_Perfdata_aa8.dat not found!
Registry entries deleted on Reboot...
Quick Scan Log
OTL logfile created on: 16/12/2010 07:59:32 - Run 2
OTL by OldTimer - Version 3.2.17.3 Folder = C:\Documents and Settings\mark_breen\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 44.00% Memory free
4.00 Gb Paging File | 3.00 Gb Available in Paging File | 74.00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 298.09 Gb Total Space | 270.55 Gb Free Space | 90.76% Space Free | Partition Type: NTFS
Drive Z: | 98.08 Gb Total Space | 47.90 Gb Free Space | 48.84% Space Free | Partition Type: NTFS
Computer Name: EM-BST | User Name: mark_breen | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2010/12/16 07:59:05 | 007,462,912 | ---- | M] () -- C:\Documents and Settings\mark_breen\Local Settings\Temp\FWUpgrader.exe
PRC - [2010/12/16 07:59:01 | 011,750,797 | ---- | M] () -- C:\Documents and Settings\mark_breen\Local Settings\Temp\ML2580_V1.01.00.83.exe
PRC - [2010/12/14 09:46:57 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\mark_breen\Desktop\OTL.exe
PRC - [2010/12/03 19:35:08 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010/12/03 19:35:08 | 000,016,856 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\plugin-container.exe
PRC - [2010/12/03 09:05:32 | 001,389,400 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
PRC - [2010/12/03 09:05:32 | 000,930,032 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
PRC - [2010/11/22 12:41:30 | 000,274,608 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\real\realplayer\Update\realsched.exe
PRC - [2010/11/10 19:08:04 | 000,724,048 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
PRC - [2010/11/10 19:08:02 | 006,127,184 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
PRC - [2010/10/27 05:15:24 | 001,073,504 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgnsx.exe
PRC - [2010/10/27 05:14:50 | 001,047,904 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgemcx.exe
PRC - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgwdsvc.exe
PRC - [2010/10/22 04:57:54 | 002,745,696 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgtray.exe
PRC - [2010/10/22 04:57:38 | 000,652,640 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgrsx.exe
PRC - [2010/10/22 04:56:56 | 000,647,008 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgchsvx.exe
PRC - [2010/10/16 00:40:40 | 000,037,664 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
PRC - [2010/06/09 00:47:48 | 001,531,904 | ---- | M] (Nokia) -- C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
PRC - [2010/02/26 05:10:20 | 021,979,992 | ---- | M] () -- C:\Documents and Settings\mark_breen\Application Data\Dropbox\bin\Dropbox.exe
PRC - [2009/08/14 08:01:14 | 000,614,400 | ---- | M] () -- C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe
PRC - [2009/06/23 15:15:40 | 000,573,440 | ---- | M] (Samsung Printer) -- C:\Program Files\SamsungPrinterLiveUpdate\SP_Connector.exe
PRC - [2009/03/05 16:07:20 | 002,260,480 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
PRC - [2008/04/14 00:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/04/07 14:10:52 | 000,576,024 | ---- | M] (PDF Complete Inc) -- C:\Program Files\PDF Complete\pdfsvc.exe
PRC - [2007/11/08 15:57:24 | 002,139,496 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\DIAS\CnxDIAS.exe
PRC - [2007/01/01 21:22:02 | 003,739,648 | ---- | M] (Google) -- C:\Program Files\Google\Google Talk\googletalk.exe
PRC - [2005/06/20 21:22:00 | 000,630,784 | ---- | M] (ScriptLogic Corporation) -- C:\WINDOWS\system32\slAgent.exe
========== Modules (SafeList) ==========
MOD - [2010/12/14 09:46:57 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\mark_breen\Desktop\OTL.exe
MOD - [2010/11/22 12:42:06 | 000,040,448 | ---- | M] (RealNetworks, Inc.) -- C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Chrome\Hook\rpchromebrowserrecordhelper.dll
MOD - [2010/08/23 16:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2009/07/12 00:02:02 | 000,653,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll
MOD - [2009/07/12 00:02:00 | 000,569,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll
========== Win32 Services (SafeList) ==========
SRV - [2010/12/03 09:05:32 | 001,389,400 | ---- | M] (Lavasoft) [Auto | Running] -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service)
SRV - [2010/11/10 19:08:02 | 006,127,184 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG10\avgwdsvc.exe -- (avgwd)
SRV - [2010/10/16 00:40:40 | 000,037,664 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010/06/14 14:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2008/04/07 14:10:52 | 000,576,024 | ---- | M] (PDF Complete Inc) [Auto | Running] -- C:\Program Files\PDF Complete\pdfsvc.exe -- (pdfcDispatcher)
SRV - [2007/11/08 15:57:24 | 002,139,496 | ---- | M] (CANON INC.) [Auto | Running] -- C:\Program Files\Canon\DIAS\CnxDIAS.exe -- (Canon Driver Information Assist Service)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\System32\Drivers\SSPORT.sys -- (SSPORT)
DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\System32\Drivers\DgiVecp.sys -- (DgiVecp)
DRV - [2010/12/03 09:05:34 | 000,064,288 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\Lbd.sys -- (Lbd)
DRV - [2010/12/03 09:05:33 | 000,015,264 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\Lavasoft\Ad-Aware\kernexplorer.sys -- (Lavasoft Kernexplorer)
DRV - [2010/11/09 22:20:58 | 000,299,984 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2010/09/13 15:27:24 | 000,025,680 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)
DRV - [2010/09/07 02:48:56 | 000,034,384 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2010/09/07 02:48:54 | 000,249,424 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2010/09/07 02:48:50 | 000,026,064 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)
DRV - [2010/08/19 20:42:38 | 000,030,288 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV - [2010/08/19 20:42:36 | 000,123,472 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV - [2010/08/19 20:42:34 | 000,026,192 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSShim.sys -- (AVGIDSShim)
DRV - [2010/02/26 13:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2010/02/26 13:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2010/02/26 13:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2010/02/26 13:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2009/02/20 23:04:38 | 000,195,456 | R--- | M] (Symantec Corp.) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\fslx.sys -- (FSLX)
DRV - [2009/02/11 11:40:40 | 005,028,352 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2008/08/26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008/04/13 16:36:05 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2007/10/30 08:00:36 | 005,851,488 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\igxpmp32.sys -- (ialm)
DRV - [2007/08/07 16:40:38 | 000,098,944 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2004/08/04 00:29:50 | 000,019,455 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wVchNTxx.sys -- (iAimFP4)
DRV - [2004/08/04 00:29:48 | 000,012,063 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wSiINTxx.sys -- (iAimFP3)
DRV - [2004/08/04 00:29:46 | 000,025,471 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wATV10nt.sys -- (iAimTV5)
DRV - [2004/08/04 00:29:46 | 000,023,615 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wCh7xxNT.sys -- (iAimTV4)
DRV - [2004/08/04 00:29:46 | 000,022,271 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wATV06nt.sys -- (iAimTV6)
DRV - [2004/08/04 00:29:44 | 000,033,599 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wATV04nt.sys -- (iAimTV3)
DRV - [2004/08/04 00:29:44 | 000,019,551 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wATV02NT.sys -- (iAimTV1)
DRV - [2004/08/04 00:29:42 | 000,029,311 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wATV01nt.sys -- (iAimTV0)
DRV - [2004/08/04 00:29:42 | 000,011,871 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV09NT.sys -- (iAimFP7)
DRV - [2004/08/04 00:29:40 | 000,011,807 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV07nt.sys -- (iAimFP5)
DRV - [2004/08/04 00:29:40 | 000,011,295 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV08NT.sys -- (iAimFP6)
DRV - [2004/08/04 00:29:38 | 000,161,020 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\i81xnt5.sys -- (i81x)
DRV - [2004/08/04 00:29:38 | 000,012,415 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV01nt.sys -- (iAimFP0)
DRV - [2004/08/04 00:29:38 | 000,012,127 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV02NT.sys -- (iAimFP1)
DRV - [2004/08/04 00:29:38 | 000,011,775 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV05NT.sys -- (iAimFP2)
DRV - [2002/05/09 00:44:42 | 000,105,472 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\adpu320.sys -- (adpu320)
DRV - [2002/04/04 05:32:06 | 000,028,416 | R--- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\symmpi.sys -- (Symmpi)
DRV - [2001/08/17 21:07:42 | 000,030,688 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sym_u3.sys -- (sym_u3)
DRV - [2001/08/17 21:07:40 | 000,028,384 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sym_hi.sys -- (sym_hi)
DRV - [2001/08/17 21:07:36 | 000,032,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\symc8xx.sys -- (symc8xx)
DRV - [2001/08/17 21:07:34 | 000,016,256 | ---- | M] (Symbios Logic Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\symc810.sys -- (symc810)
DRV - [2001/08/17 14:20:04 | 000,096,256 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ac97intc.sys -- (ac97intc) Intel(r) 82801 Audio Driver Install Service (WDM)
DRV - [2001/08/17 13:49:10 | 000,026,624 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\irstusb.sys -- (STIrUsb)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_gb&c=93&bd=all&pf=cmdt
IE - HKCU\..\URLSearchHook: CFBFAE00-17A6-11D0-99CB-00C04FD64497} - Reg Error: Key error. File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://partnerpage.google.com/ditsu.ie"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.2
FF - prefs.js..extensions.enabledItems: {0545b830-f0aa-4d7e-8820-50a4629a56fe}:4.6.5
FF - prefs.js..extensions.enabledItems:
piclens@cooliris.com:1.12.0.36949
FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.7.2
FF - prefs.js..extensions.enabledItems: {ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}:1.4.1
FF - prefs.js..extensions.enabledItems: {5546F97E-11A5-46b0-9082-32AD74AAA920}:0.5.5.9
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {05f6a7ea-896b-11da-8bde-f66bad1e3fff}:3.5.20090705
FF - prefs.js..extensions.enabledItems: morningCoffee@shaneliesegang:1.33
FF - prefs.js..extensions.enabledItems:
quickdrag@mozilla.ktechcomputing.com:2.0.2.1
FF - prefs.js..extensions.enabledItems: {EF522540-89F5-46b9-B6FE-1829E2B572C6}:4.9.4
FF - prefs.js..extensions.enabledItems:
en-GB@dictionaries.addons.mozilla.org:1.19.1
FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.3.42
FF - prefs.js..extensions.enabledItems: {02450954-cdd9-410f-b1da-db804e18c671}:0.96.3
FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:10.0.0.1167
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - HKLM\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2010/08/20 09:23:29 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG10\Firefox\ [2010/11/24 08:36:35 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010/11/22 12:42:07 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/12/13 09:03:42 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/12/14 09:43:43 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2010/08/20 09:23:31 | 000,000,000 | ---D | M]
[2009/06/30 12:52:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Extensions
[2010/12/15 14:56:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions
[2010/07/27 08:02:06 | 000,000,000 | ---D | M] (Screengrab) -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\{02450954-cdd9-410f-b1da-db804e18c671}
[2010/12/14 08:07:48 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe}
[2009/07/29 08:26:02 | 000,000,000 | ---D | M] (Locator) -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\{05f6a7ea-896b-11da-8bde-f66bad1e3fff}
[2010/04/30 08:05:24 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/07/26 08:15:09 | 000,000,000 | ---D | M] (InFormEnter) -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\{5546F97E-11A5-46b0-9082-32AD74AAA920}
[2010/12/13 07:45:51 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010/10/12 15:12:21 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2010/11/18 09:20:00 | 000,000,000 | ---D | M] (FoxTab) -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}
[2010/11/16 09:13:52 | 000,000,000 | ---D | M] (SearchPreview) -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\{EF522540-89F5-46b9-B6FE-1829E2B572C6}
[2010/12/13 07:45:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\en-GB@dictionaries.addons.mozilla.org
[2010/01/11 09:53:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\lazarus@interclue.com
[2009/06/30 13:52:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\morningCoffee@shaneliesegang
[2010/06/22 06:38:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\piclens@cooliris.com
[2009/06/30 14:06:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\Mozilla\Firefox\Profiles\sl18u4ij.default\extensions\quickdrag@mozilla.ktechcomputing.com
[2010/12/15 14:56:30 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010/12/15 08:04:53 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2010/12/15 08:04:35 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
O1 HOSTS File: ([2010/12/16 07:53:30 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {0347C33E-8762-4905-BF09-768834316C61} - No CLSID value found.
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (no name) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - No CLSID value found.
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation)
O4 - HKLM..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe (Google)
O4 - HKLM..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia)
O4 - HKLM..\Run: [PDF Complete] C:\Program Files\PDF Complete\pdfsty.exe (PDF Complete Inc)
O4 - HKLM..\Run: [Samsung PanelMgr] C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe ()
O4 - HKLM..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [TkBellExe] C:\program files\real\realplayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - Startup: C:\Documents and Settings\mark_breen\Start Menu\Programs\Startup\Dropbox.lnk = C:\Documents and Settings\mark_breen\Application Data\Dropbox\bin\Dropbox.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.2
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = ditsu.local
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{58726723-b3e5-11de-bb52-0024212f431f}\Shell - "" = AutoRun
O33 - MountPoints2\{58726723-b3e5-11de-bb52-0024212f431f}\Shell\Auto\command - "" = E:\asp.net -- File not found
O33 - MountPoints2\{58726723-b3e5-11de-bb52-0024212f431f}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{6692fd3d-b32f-11de-bb51-0011957d355a}\Shell - "" = AutoRun
O33 - MountPoints2\{6692fd3d-b32f-11de-bb51-0011957d355a}\Shell\Auto\command - "" = E:\asp.net -- File not found
O33 - MountPoints2\{6692fd3d-b32f-11de-bb51-0011957d355a}\Shell\AutoRun - "" = Auto&Play
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010/12/16 07:53:20 | 000,000,000 | ---D | C] -- C:\_OTL
[2010/12/14 09:46:54 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\mark_breen\Desktop\OTL.exe
[2010/12/14 09:45:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mark_breen\Desktop\tdsskiller
[2010/12/14 09:44:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Sun
[2010/12/14 09:38:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mark_breen\Desktop\JavaRa
[2010/12/13 11:42:48 | 000,388,608 | ---- | C] (Trend Micro Inc.) -- C:\Documents and Settings\mark_breen\Desktop\HijackThis.exe
[2010/12/13 10:12:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mark_breen\Application Data\Malwarebytes
[2010/12/13 10:12:05 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/12/13 10:12:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010/12/13 10:12:01 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/12/13 10:12:00 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/12/13 09:21:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mark_breen\Local Settings\Application Data\Sunbelt Software
[2010/12/13 09:20:36 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}
[2010/11/25 16:15:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mark_breen\Desktop\Event Elephant FAQs
[2010/11/25 16:12:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mark_breen\Application Data\WinRAR
[2010/11/25 16:12:30 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010/11/23 10:49:37 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2010/11/23 10:49:31 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2010/11/23 10:46:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Apple Computer
[2010/11/22 12:43:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mark_breen\Local Settings\Application Data\Real
[2010/11/22 12:42:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\xing shared
[2010/11/22 12:41:23 | 000,000,000 | ---D | C] -- C:\Program Files\real
[2009/06/30 12:26:27 | 007,371,960 | ---- | C] (Mozilla) -- C:\Program Files\Firefox Setup 3.0.11.exe
[2 C:\Documents and Settings\mark_breen\Desktop\*.tmp files -> C:\Documents and Settings\mark_breen\Desktop\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010/12/16 08:01:57 | 101,889,147 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2010/12/16 07:58:45 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2010/12/16 07:55:54 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/12/16 07:55:51 | 000,000,288 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-299502267-1417001333-839522115-1138.job
[2010/12/16 07:55:26 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/12/16 07:55:25 | 2136,133,632 | -HS- | M] () -- C:\hiberfil.sys
[2010/12/16 07:54:32 | 000,000,012 | ---- | M] () -- C:\WINDOWS\bthservsdp.dat
[2010/12/16 07:53:32 | 000,000,296 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-299502267-1417001333-839522115-1138.job
[2010/12/16 07:53:30 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts
[2010/12/16 07:47:14 | 000,111,578 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\DITStudentCharter 2004(2).pdf
[2010/12/15 15:59:51 | 000,011,634 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\Invoice - Steven Cassells - Dec 2010.docx
[2010/12/15 15:14:30 | 000,088,259 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\Services and Trading SC Minutes - 16Nov10.pdf
[2010/12/15 11:07:57 | 000,111,578 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\DITStudentCharter 2004.pdf
[2010/12/15 03:25:08 | 000,285,312 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/12/15 03:08:30 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/12/14 20:01:48 | 000,824,832 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\DITSU Events & Marketing Dep’t.ppt
[2010/12/14 10:07:43 | 000,638,677 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\DIT - Contractors Form - Bacstroke - Dec 10.pdf
[2010/12/14 09:46:57 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\mark_breen\Desktop\OTL.exe
[2010/12/14 09:44:53 | 001,230,779 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\tdsskiller.zip
[2010/12/14 09:38:04 | 000,205,540 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\JavaRa.zip
[2010/12/14 09:04:45 | 000,231,581 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\AdoptionPack.jpg
[2010/12/13 11:43:03 | 000,388,608 | ---- | M] (Trend Micro Inc.) -- C:\Documents and Settings\mark_breen\Desktop\HijackThis.exe
[2010/12/13 09:49:16 | 000,037,358 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\LPIT Funding Review - Draft 1.docx
[2010/12/13 09:33:49 | 000,000,199 | ---- | M] () -- C:\WINDOWS\hpbafd.ini
[2010/12/13 09:29:42 | 000,894,464 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\All Staff Meeting Minutes 26Nov10.doc
[2010/12/13 09:23:22 | 000,098,392 | ---- | M] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\SBREDrv.sys
[2010/12/13 09:03:43 | 000,001,620 | ---- | M] () -- C:\Documents and Settings\mark_breen\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2010/12/10 16:12:57 | 000,638,677 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\IMG.pdf
[2010/12/10 12:04:10 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/12/10 10:19:04 | 000,112,091 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\Groupon-EF7E012238.pdf
[2010/12/08 17:00:38 | 000,018,371 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\E&M - Dep't Update - Nov 10.docx
[2010/12/08 12:22:40 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/12/08 11:35:58 | 000,823,808 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\ICPSMMaterials.ppt
[2010/12/08 10:12:05 | 000,109,397 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\attack page.JPG
[2010/12/08 09:00:49 | 000,489,437 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\Diploma in Management Feb 201.pdf
[2010/12/08 09:00:25 | 000,053,488 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\Diploma Booking Form.pdf
[2010/12/06 11:14:15 | 000,019,346 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\Scholarship(2)
[2010/12/06 11:14:02 | 000,019,346 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\Scholarship
[2010/12/03 09:05:34 | 000,064,288 | ---- | M] (Lavasoft AB) -- C:\WINDOWS\System32\drivers\Lbd.sys
[2010/11/29 17:42:18 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/11/29 17:42:06 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/11/24 08:28:38 | 000,026,554 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\I&E - RAG Ball & BNO - Venue Options - Nov 10.xlsx
[2010/11/23 19:24:24 | 000,016,363 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\I&E - EBTTRT - Nov 10.xlsx
[2010/11/23 16:51:00 | 000,023,040 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\EBTTRT - Invoice - Australian Pearl Jam - Nov 10.doc
[2010/11/22 16:04:34 | 000,057,732 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\DIT Invoice 21st November.pdf
[2010/11/22 12:41:33 | 000,272,896 | ---- | M] (Progressive Networks) -- C:\WINDOWS\System32\pncrt.dll
[2010/11/18 17:10:36 | 000,049,736 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\InvoiceDIT0890.pdf
[2010/11/18 17:10:02 | 000,049,720 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\InvoiceDIT0891.pdf
[2010/11/18 17:10:01 | 000,049,751 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\InvoiceDIT0889.pdf
[2010/11/18 09:39:19 | 000,010,517 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\Welfare - Daytime act availabilites - Nov 10.xlsx
[2010/11/17 12:36:06 | 000,014,331 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\Ltr to Solr Nov10 - Mark version.docx
[2010/11/17 12:15:09 | 000,057,337 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\DIT Invoice 14th November.pdf
[2010/11/17 12:06:49 | 000,019,330 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\E&M - Dep't Update - Oct Nov 10.docx
[2010/11/16 14:43:58 | 000,420,340 | ---- | M] () -- C:\Documents and Settings\mark_breen\Desktop\OFA-CFR Instructors (Heartbeat Safety).pdf
[2 C:\Documents and Settings\mark_breen\Desktop\*.tmp files -> C:\Documents and Settings\mark_breen\Desktop\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/12/16 07:47:13 | 000,111,578 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\DITStudentCharter 2004(2).pdf
[2010/12/15 15:14:29 | 000,088,259 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\Services and Trading SC Minutes - 16Nov10.pdf
[2010/12/15 11:07:56 | 000,111,578 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\DITStudentCharter 2004.pdf
[2010/12/14 13:00:59 | 000,824,832 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\DITSU Events & Marketing Dep’t.ppt
[2010/12/14 10:07:42 | 000,638,677 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\DIT - Contractors Form - Bacstroke - Dec 10.pdf
[2010/12/14 09:44:50 | 001,230,779 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\tdsskiller.zip
[2010/12/14 09:38:04 | 000,205,540 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\JavaRa.zip
[2010/12/14 09:04:44 | 000,231,581 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\AdoptionPack.jpg
[2010/12/13 09:29:40 | 000,894,464 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\All Staff Meeting Minutes 26Nov10.doc
[2010/12/13 08:38:21 | 000,037,358 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\LPIT Funding Review - Draft 1.docx
[2010/12/10 16:12:45 | 000,638,677 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\IMG.pdf
[2010/12/10 10:19:03 | 000,112,091 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\Groupon-EF7E012238.pdf
[2010/12/08 16:58:53 | 000,018,371 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\E&M - Dep't Update - Nov 10.docx
[2010/12/08 11:35:57 | 000,823,808 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\ICPSMMaterials.ppt
[2010/12/08 10:12:05 | 000,109,397 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\attack page.JPG
[2010/12/08 09:00:48 | 000,489,437 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\Diploma in Management Feb 201.pdf
[2010/12/08 09:00:25 | 000,053,488 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\Diploma Booking Form.pdf
[2010/12/06 11:14:14 | 000,019,346 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\Scholarship(2)
[2010/12/06 11:14:02 | 000,019,346 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\Scholarship
[2010/11/24 08:04:18 | 000,026,554 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\I&E - RAG Ball & BNO - Venue Options - Nov 10.xlsx
[2010/11/23 19:24:24 | 000,016,363 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\I&E - EBTTRT - Nov 10.xlsx
[2010/11/23 16:49:06 | 000,023,040 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\EBTTRT - Invoice - Australian Pearl Jam - Nov 10.doc
[2010/11/22 16:04:32 | 000,057,732 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\DIT Invoice 21st November.pdf
[2010/11/22 12:43:43 | 000,000,288 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-299502267-1417001333-839522115-1138.job
[2010/11/22 12:43:42 | 000,000,296 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-299502267-1417001333-839522115-1138.job
[2010/11/18 17:10:35 | 000,049,736 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\InvoiceDIT0890.pdf
[2010/11/18 17:10:01 | 000,049,720 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\InvoiceDIT0891.pdf
[2010/11/18 17:09:59 | 000,049,751 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\InvoiceDIT0889.pdf
[2010/11/18 09:39:19 | 000,010,517 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\Welfare - Daytime act availabilites - Nov 10.xlsx
[2010/11/17 12:36:06 | 000,014,331 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\Ltr to Solr Nov10 - Mark version.docx
[2010/11/17 12:15:08 | 000,057,337 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\DIT Invoice 14th November.pdf
[2010/11/17 08:43:22 | 000,019,330 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\E&M - Dep't Update - Oct Nov 10.docx
[2010/11/16 14:43:57 | 000,420,340 | ---- | C] () -- C:\Documents and Settings\mark_breen\Desktop\OFA-CFR Instructors (Heartbeat Safety).pdf
[2010/11/01 14:04:34 | 000,026,624 | ---- | C] () -- C:\WINDOWS\System32\ssp5ml3.dll
[2010/01/22 10:01:42 | 000,000,199 | ---- | C] () -- C:\WINDOWS\hpbafd.ini
[2009/11/30 10:34:52 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\mark_breen\Local Settings\Application Data\prvlcl.dat
[2009/10/29 11:13:22 | 000,017,424 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2009/09/24 07:56:51 | 000,000,023 | ---- | C] () -- C:\WINDOWS\BO2700CN.INI
[2009/08/27 08:29:41 | 000,000,410 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI
[2009/08/27 08:29:41 | 000,000,026 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2009/08/11 13:50:52 | 000,016,896 | ---- | C] () -- C:\Documents and Settings\mark_breen\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.dll
[2009/07/09 08:20:33 | 000,000,317 | ---- | C] () -- C:\WINDOWS\SWWATER.INI
[2009/06/30 20:08:22 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2009/06/30 19:51:40 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4885.dll
[2009/06/30 19:39:31 | 000,000,829 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2006/04/26 00:31:56 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
========== LOP Check ==========
[2010/10/26 06:40:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2010/10/20 08:56:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\avg9
[2010/10/26 06:39:53 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2010/08/20 09:16:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Installations
[2010/10/20 08:53:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2010/08/20 09:32:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nokia
[2010/07/26 08:16:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NokiaInstallerCache
[2010/08/20 08:17:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2010/12/13 09:20:47 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}
[2010/08/20 09:43:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2010/10/26 06:42:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\AVG10
[2010/12/16 07:58:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\Dropbox
[2009/08/04 08:02:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\EasyChat
[2009/08/12 14:49:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\ErrorExpert
[2010/08/20 09:35:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\Nokia
[2010/08/20 09:32:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\Nokia Ovi Suite
[2009/06/30 14:43:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\OpenOffice.org
[2010/08/20 09:32:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark_breen\Application Data\PC Suite
[2010/12/16 07:58:45 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
========== Purity Check ==========
< End of report >