OTL Log Results 2
========== Files/Folders - Created Within 30 Days ==========
[2011/04/21 19:10:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2011/04/21 18:38:54 | 000,307,288 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswSP.sys
[2011/04/21 18:38:54 | 000,019,544 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[2011/04/21 18:38:51 | 000,025,432 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2011/04/21 18:38:50 | 000,441,176 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswSnx.sys
[2011/04/21 18:38:50 | 000,049,240 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2011/04/21 18:38:49 | 000,053,592 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2011/04/21 18:38:40 | 000,199,304 | ---- | C] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2011/04/21 18:38:40 | 000,040,112 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2011/04/21 18:38:01 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\RaeJae\Desktop\OTL.exe
[2011/04/21 15:31:53 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011/04/21 15:25:42 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{A8AE14F2-1E4F-483A-BD79-952B7A767ADC}
[2011/04/21 15:24:28 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011/04/21 15:13:15 | 000,161,792 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011/04/21 15:13:15 | 000,136,704 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011/04/21 15:13:15 | 000,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011/04/21 15:12:52 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe
[2011/04/21 15:12:50 | 000,000,000 | ---D | C] -- C:\32788R22FWJFW
[2011/04/21 15:11:49 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011/04/21 15:10:47 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/04/21 11:27:04 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{5EC40114-D36E-48D6-97F7-C94AA36076D4}
[2011/04/20 18:23:45 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Roaming\Malwarebytes
[2011/04/20 18:23:28 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2011/04/20 18:23:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/04/20 18:23:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011/04/20 18:23:24 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2011/04/20 18:23:24 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011/04/20 16:28:20 | 035,225,928 | ---- | C] (COMODO) -- C:\Users\RaeJae\Desktop\cfw_installer_x86.exe
[2011/04/20 16:28:20 | 007,734,208 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\RaeJae\Desktop\mbam-setup-1.50.1.1100.exe
[2011/04/20 16:28:20 | 000,446,464 | ---- | C] (OldTimer Tools) -- C:\Users\RaeJae\Desktop\TFC.exe
[2011/04/20 13:39:20 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{4C8437FA-9B99-4CBF-A3F1-FA613C1C825C}
[2011/04/19 17:03:50 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{609E11D7-485F-4B01-99E0-4ABBDE0E8B2A}
[2011/04/19 16:40:17 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{C2E022B5-C93F-4EF5-A47B-FFCFD20FD017}
[2011/04/16 13:18:39 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{787EAFD0-2B98-4F63-9D5B-331774D5E51C}
[2011/04/14 15:20:23 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{8E2A8A4C-0535-4076-A51E-8B70D96314DB}
[2011/04/14 12:58:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2011/04/14 12:58:56 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011/04/14 12:24:28 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\Conduit
[2011/04/14 12:12:57 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{6CF5DCAA-8975-4025-883D-218CE2D891AF}
[2011/04/14 09:22:53 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2011/04/14 09:22:53 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2011/04/14 09:22:36 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Tools
[2011/04/12 22:11:46 | 000,000,000 | R--D | C] -- C:\Users\RaeJae\Desktop\REBEL WITHOUT APPLAUSE
[2011/04/12 09:54:47 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{04323764-5268-48E8-86F3-62D7DC592526}
[2011/04/11 22:00:29 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\Desktop\Silverback Gang
[2011/04/11 19:38:30 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{AAAAF49F-BE39-47CC-9620-25FCB580F967}
[2011/04/11 13:01:54 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG10
[2011/04/11 13:01:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\AVG
[2011/04/11 13:00:45 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2011/04/10 19:37:24 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{1E3AC23E-0819-4446-944C-358872EC34D2}
[2011/04/08 12:56:11 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{0E7B7C2E-6518-44A6-8DA6-56DE5271BEA1}
[2011/04/08 12:39:00 | 000,000,000 | -H-D | C] -- C:\ProgramData\{F751CA04-FB71-4EC0-ACC9-5B733D122C5E}
[2011/04/08 12:38:42 | 000,000,000 | -H-D | C] -- C:\ProgramData\{20EFD19B-675C-417B-A498-B0161D72FF88}
[2011/04/08 12:36:29 | 000,000,000 | -H-D | C] -- C:\ProgramData\{3C6B30C3-46C9-4FD1-AAC3-6011E43BF0D1}
[2011/04/08 12:16:46 | 000,000,000 | -H-D | C] -- C:\ProgramData\{F828BFD7-781D-4BD3-AD6C-71D19DC23493}
[2011/04/08 12:02:31 | 000,000,000 | -H-D | C] -- C:\ProgramData\{E6F7E8AE-5D26-4508-A961-B0231A24CCAE}
[2011/04/08 11:48:38 | 000,000,000 | -H-D | C] -- C:\ProgramData\{C5A0D307-9319-4B00-9734-C0F4B0454A7B}
[2011/04/08 10:40:23 | 000,000,000 | -H-D | C] -- C:\ProgramData\{A6DB2A6F-FF9D-453F-99D6-C1AA54BC0C14}
[2011/04/07 09:00:25 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{D0D41795-8F52-4E52-93FE-AEBCC1745C49}
[2011/04/06 19:13:52 | 000,000,000 | -H-D | C] -- C:\ProgramData\{16E6DCE6-1916-4566-A3CF-31880CAA7C63}
[2011/04/06 16:17:52 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\DAEMON Tools Images
[2011/04/06 16:13:35 | 000,218,688 | ---- | C] (DT Soft Ltd) -- C:\Windows\System32\drivers\dtsoftbus01.sys
[2011/04/06 16:13:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
[2011/04/06 16:13:28 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2011/04/06 16:13:00 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Roaming\DAEMON Tools Lite
[2011/04/06 16:13:00 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2011/04/06 13:05:32 | 001,332,224 | ---- | C] (AD © 2009) -- C:\Windows\System32\SYNSOEMU.DLL
[2011/04/05 16:35:21 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\Desktop\Mess Clean After
[2011/04/04 10:54:46 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{4F597D4D-CBC3-427C-A896-C4ECFD6FAFF8}
[2011/04/03 18:49:06 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{A0BB2CE6-790F-44C5-8D8B-62BADB871418}
[2011/04/02 23:54:57 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{ED84A8A4-45D6-4F0C-9663-C6F4EF268289}
[2011/04/02 11:50:47 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{2CA530FE-C91F-421F-8F88-D1364FF07BEB}
[2011/04/01 00:39:42 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{F06CD8E8-6A07-4E03-B663-8F60F9598E8E}
[2011/03/31 09:17:26 | 000,000,000 | ---D | C] -- C:\ProgramData\AVS4YOU
[2011/03/31 09:17:25 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Roaming\AVS4YOU
[2011/03/31 09:17:18 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU
[2011/03/31 09:17:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU
[2011/03/31 09:17:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\AVSMedia
[2011/03/31 09:17:06 | 000,000,000 | ---D | C] -- C:\Program Files\AVS4YOU
[2011/03/31 08:37:53 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Local\{7E25DA18-103E-4B1B-AF44-54D6418368E5}
[2011/03/29 16:27:13 | 000,000,000 | -H-D | C] -- C:\ProgramData\{37C683B9-C5C5-47D2-AC1F-B551207D4066}
[2011/03/24 10:03:46 | 000,000,000 | ---D | C] -- C:\Program Files\BitTorrent
[2011/03/24 10:03:06 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Roaming\BitTorrent
[2011/03/24 08:09:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Arturia
[2011/03/23 15:04:17 | 000,057,344 | ---- | C] (NexiTech, Inc.) -- C:\Windows\System32\Wnaspint.dll
[2011/03/23 15:04:17 | 000,000,000 | ---D | C] -- C:\Users\RaeJae\AppData\Roaming\Acoustica
[2011/03/23 15:03:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Acoustica
[2011/03/23 12:39:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Ralink
[2011/03/23 12:38:58 | 001,597,440 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\System32\RaCertMgr.dll
[2011/03/23 12:38:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetComm Wireless
[2011/03/23 12:38:49 | 000,724,992 | ---- | C] (Ralink Technology Corp.) -- C:\Windows\System32\drivers\netr28u.sys
[2011/03/23 12:38:49 | 000,221,184 | ---- | C] (Ralink Technology, Inc.) -- C:\Windows\System32\RaCoInst.dll
[2011/03/23 12:38:49 | 000,000,000 | ---D | C] -- C:\ProgramData\NetComm Driver
[2011/03/23 12:38:34 | 000,000,000 | ---D | C] -- C:\Program Files\Cisco
[2011/03/23 12:38:20 | 000,766,464 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\System32\RAIHV.dll
[2011/03/23 12:38:20 | 000,097,280 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\System32\RAEXTUI.dll
[2011/03/23 12:38:19 | 000,000,000 | ---D | C] -- C:\Program Files\NetComm
========== Files - Modified Within 30 Days ==========
[2011/04/21 19:42:00 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/04/21 19:22:21 | 000,011,104 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/04/21 19:22:21 | 000,011,104 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/04/21 19:21:58 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-677347413-2995805031-2245204369-1000UA.job
[2011/04/21 19:20:00 | 000,000,860 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-677347413-2995805031-2245204369-1000Core.job
[2011/04/21 19:15:16 | 000,000,632 | RHS- | M] () -- C:\Users\RaeJae\ntuser.pol
[2011/04/21 19:15:13 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/04/21 19:14:37 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/04/21 19:14:30 | 1602,101,248 | -HS- | M] () -- C:\hiberfil.sys
[2011/04/21 19:10:53 | 000,002,000 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011/04/21 19:10:52 | 000,000,000 | ---- | M] () -- C:\Windows\System32\config.nt
[2011/04/21 18:17:13 | 002,144,362 | ---- | M] () -- C:\Users\RaeJae\Desktop\Noize Kontrol - What Goes On Tour Rough Beat.mp3
[2011/04/21 16:17:24 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\RaeJae\Desktop\OTL.exe
[2011/04/21 16:15:08 | 056,189,640 | ---- | M] () -- C:\Users\RaeJae\Desktop\setup_av_free.exe
[2011/04/21 15:24:17 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2011/04/21 15:12:43 | 004,325,691 | R--- | M] () -- C:\Users\RaeJae\Desktop\ComboFix.exe
[2011/04/21 13:48:10 | 000,080,384 | ---- | M] () -- C:\Users\RaeJae\Desktop\MBRCheck.exe
[2011/04/20 18:23:28 | 000,001,073 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/04/20 18:21:12 | 000,010,374 | -HS- | M] () -- C:\Users\RaeJae\AppData\Local\0v128yg110yy544h80wqr2
[2011/04/20 17:30:52 | 000,010,374 | -HS- | M] () -- C:\ProgramData\0v128yg110yy544h80wqr2
[2011/04/20 16:23:15 | 000,659,294 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011/04/20 16:23:15 | 000,140,320 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011/04/20 14:18:50 | 007,734,208 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\RaeJae\Desktop\mbam-setup-1.50.1.1100.exe
[2011/04/20 14:17:12 | 000,625,664 | ---- | M] () -- C:\Users\RaeJae\Desktop\dds.scr
[2011/04/20 14:16:38 | 000,301,568 | ---- | M] () -- C:\Users\RaeJae\Desktop\1gdrr692.exe
[2011/04/20 14:15:34 | 000,446,464 | ---- | M] (OldTimer Tools) -- C:\Users\RaeJae\Desktop\TFC.exe
[2011/04/20 11:58:22 | 035,225,928 | ---- | M] (COMODO) -- C:\Users\RaeJae\Desktop\cfw_installer_x86.exe
[2011/04/20 09:41:52 | 000,003,486 | ---- | M] () -- C:\Users\RaeJae\Documents\cc_20110420_094146.reg
[2011/04/19 05:25:12 | 000,040,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011/04/19 05:25:10 | 000,199,304 | ---- | M] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2011/04/19 05:17:46 | 000,441,176 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSnx.sys
[2011/04/19 05:17:34 | 000,307,288 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSP.sys
[2011/04/19 05:16:18 | 000,049,240 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2011/04/19 05:13:21 | 000,025,432 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2011/04/19 05:13:09 | 000,053,592 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2011/04/19 05:12:58 | 000,019,544 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[2011/04/16 13:16:52 | 000,438,120 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011/04/14 12:26:14 | 000,045,494 | ---- | M] () -- C:\Users\RaeJae\Documents\cc_20110414_122612.reg
[2011/04/14 12:24:44 | 000,000,971 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011/04/14 09:21:42 | 000,008,782 | ---- | M] () -- C:\Users\RaeJae\Documents\cc_20110414_092139.reg
[2011/04/14 09:02:12 | 000,200,704 | RHS- | M] () -- C:\Windows\System32\LAPRXYQ.dll
[2011/04/11 18:02:34 | 000,000,000 | ---- | M] () -- C:\Users\RaeJae\AppData\Local\prvlcl.dat
[2011/04/11 13:06:30 | 074,465,036 | ---- | M] () -- C:\Windows\System32\drivers\AVG\incavi.avm
[2011/04/09 13:36:19 | 000,114,422 | ---- | M] () -- C:\Users\RaeJae\Documents\cc_20110409_133615.reg
[2011/04/08 14:02:18 | 035,778,560 | ---- | M] () -- C:\Users\RaeJae\Desktop\Maschine 1.5 Beat.wav
[2011/04/08 12:38:41 | 000,001,100 | ---- | M] () -- C:\Users\Public\Desktop\Controller Editor.lnk
[2011/04/08 10:40:23 | 000,001,065 | ---- | M] () -- C:\Users\Public\Desktop\Service Center.lnk
[2011/04/08 08:56:46 | 024,977,120 | ---- | M] () -- C:\Users\RaeJae\Desktop\Maschine Rough.wav
[2011/04/07 18:48:30 | 015,274,235 | ---- | M] () -- C:\Users\RaeJae\Desktop\PainKiller - HitzBeat.mp3
[2011/04/06 16:13:35 | 000,218,688 | ---- | M] (DT Soft Ltd) -- C:\Windows\System32\drivers\dtsoftbus01.sys
[2011/04/06 16:13:29 | 000,001,902 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2011/04/02 14:44:39 | 000,002,830 | ---- | M] () -- C:\Users\RaeJae\Documents\cc_20110402_154436.reg
[2011/03/31 17:08:10 | 000,015,442 | ---- | M] () -- C:\Users\RaeJae\Documents\cc_20110331_180806.reg
[2011/03/31 09:17:20 | 000,001,257 | ---- | M] () -- C:\Users\RaeJae\Desktop\AVS4YOU Software Navigator.lnk
[2011/03/31 09:17:10 | 000,001,201 | ---- | M] () -- C:\Users\RaeJae\Desktop\AVS Image Converter.lnk
[2011/03/28 15:09:54 | 000,000,326 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForRaeJae.job
[2011/03/25 00:02:51 | 000,036,534 | ---- | M] () -- C:\Users\RaeJae\Desktop\Document 1.rns
[2011/03/24 10:03:47 | 000,000,963 | ---- | M] () -- C:\Users\RaeJae\Application Data\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk
[2011/03/24 10:03:47 | 000,000,939 | ---- | M] () -- C:\Users\Public\Desktop\BitTorrent.lnk
[2011/03/23 17:23:12 | 000,023,544 | ---- | M] () -- C:\Users\RaeJae\Documents\cc_20110323_182300.reg
[2011/03/23 12:38:58 | 000,001,947 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NetComm Wireless Utility.lnk
========== Files Created - No Company Name ==========
[2011/04/21 18:38:54 | 000,002,000 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011/04/21 18:37:58 | 056,189,640 | ---- | C] () -- C:\Users\RaeJae\Desktop\setup_av_free.exe
[2011/04/21 18:15:10 | 002,144,362 | ---- | C] () -- C:\Users\RaeJae\Desktop\Noize Kontrol - What Goes On Tour Rough Beat.mp3
[2011/04/21 15:13:15 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe
[2011/04/21 15:13:15 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011/04/21 15:13:15 | 000,089,088 | ---- | C] () -- C:\Windows\MBR.exe
[2011/04/21 15:13:15 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011/04/21 15:13:15 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011/04/21 13:53:06 | 000,080,384 | ---- | C] () -- C:\Users\RaeJae\Desktop\MBRCheck.exe
[2011/04/21 13:53:05 | 004,325,691 | R--- | C] () -- C:\Users\RaeJae\Desktop\ComboFix.exe
[2011/04/20 18:23:28 | 000,001,073 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/04/20 16:28:22 | 000,301,568 | ---- | C] () -- C:\Users\RaeJae\Desktop\1gdrr692.exe
[2011/04/20 16:28:20 | 000,625,664 | ---- | C] () -- C:\Users\RaeJae\Desktop\dds.scr
[2011/04/20 09:41:50 | 000,003,486 | ---- | C] () -- C:\Users\RaeJae\Documents\cc_20110420_094146.reg
[2011/04/19 23:26:16 | 000,010,374 | -HS- | C] () -- C:\Users\RaeJae\AppData\Local\0v128yg110yy544h80wqr2
[2011/04/19 23:26:16 | 000,010,374 | -HS- | C] () -- C:\ProgramData\0v128yg110yy544h80wqr2
[2011/04/16 19:11:07 | 015,274,235 | ---- | C] () -- C:\Users\RaeJae\Desktop\PainKiller - HitzBeat.mp3
[2011/04/14 12:26:13 | 000,045,494 | ---- | C] () -- C:\Users\RaeJae\Documents\cc_20110414_122612.reg
[2011/04/14 09:21:41 | 000,008,782 | ---- | C] () -- C:\Users\RaeJae\Documents\cc_20110414_092139.reg
[2011/04/14 09:02:12 | 000,200,704 | RHS- | C] () -- C:\Windows\System32\LAPRXYQ.dll
[2011/04/11 13:06:30 | 074,465,036 | ---- | C] () -- C:\Windows\System32\drivers\AVG\incavi.avm
[2011/04/09 13:36:17 | 000,114,422 | ---- | C] () -- C:\Users\RaeJae\Documents\cc_20110409_133615.reg
[2011/04/08 14:02:18 | 035,778,560 | ---- | C] () -- C:\Users\RaeJae\Desktop\Maschine 1.5 Beat.wav
[2011/04/08 12:38:41 | 000,001,100 | ---- | C] () -- C:\Users\Public\Desktop\Controller Editor.lnk
[2011/04/08 10:40:23 | 000,001,065 | ---- | C] () -- C:\Users\Public\Desktop\Service Center.lnk
[2011/04/08 08:56:41 | 024,977,120 | ---- | C] () -- C:\Users\RaeJae\Desktop\Maschine Rough.wav
[2011/04/06 16:13:29 | 000,001,902 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2011/04/02 14:44:37 | 000,002,830 | ---- | C] () -- C:\Users\RaeJae\Documents\cc_20110402_154436.reg
[2011/03/31 17:08:09 | 000,015,442 | ---- | C] () -- C:\Users\RaeJae\Documents\cc_20110331_180806.reg
[2011/03/31 09:17:20 | 000,001,257 | ---- | C] () -- C:\Users\RaeJae\Desktop\AVS4YOU Software Navigator.lnk
[2011/03/31 09:17:10 | 000,001,201 | ---- | C] () -- C:\Users\RaeJae\Desktop\AVS Image Converter.lnk
[2011/03/24 16:10:44 | 000,036,534 | ---- | C] () -- C:\Users\RaeJae\Desktop\Document 1.rns
[2011/03/24 10:03:47 | 000,000,963 | ---- | C] () -- C:\Users\RaeJae\Application Data\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk
[2011/03/24 10:03:47 | 000,000,939 | ---- | C] () -- C:\Users\Public\Desktop\BitTorrent.lnk
[2011/03/23 17:23:02 | 000,023,544 | ---- | C] () -- C:\Users\RaeJae\Documents\cc_20110323_182300.reg
[2011/03/23 12:38:58 | 000,001,947 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NetComm Wireless Utility.lnk
[2011/03/23 12:38:49 | 000,013,931 | ---- | C] () -- C:\Windows\System32\RaCoInst.dat
[2011/02/17 23:22:04 | 000,069,632 | ---- | C] () -- C:\Windows\System32\FxShared.dll
[2011/02/17 23:22:04 | 000,069,632 | ---- | C] () -- C:\Windows\System32\com.fxpansion.fxshared.dll
[2011/01/18 14:25:24 | 000,055,808 | ---- | C] () -- C:\Windows\System32\zlib1.dll
[2010/12/20 16:24:25 | 002,600,164 | ---- | C] () -- C:\Users\RaeJae\AppData\Local\TempMediaPlay.wav
[2010/12/10 12:11:06 | 000,000,004 | ---- | C] () -- C:\ProgramData\sysid100.dat
[2010/12/01 09:14:42 | 000,024,576 | ---- | C] () -- C:\Windows\System32\Hyperman.dll
[2010/12/01 09:11:54 | 000,024,576 | ---- | C] () -- C:\Windows\System32\Wavlbsys.dll
[2010/11/30 14:04:41 | 000,129,024 | ---- | C] () -- C:\Windows\UNWISE.EXE
[2010/11/30 13:58:05 | 000,520,267 | ---- | C] () -- C:\Windows\System32\libmmd.dll
[2010/11/30 13:23:51 | 000,002,240 | ---- | C] () -- C:\Windows\LENDIG.sys
[2010/11/29 11:55:05 | 000,163,840 | ---- | C] () -- C:\Windows\System32\ArtFfct.dll
[2010/10/15 10:48:13 | 000,000,000 | ---- | C] () -- C:\Users\RaeJae\AppData\Local\prvlcl.dat
[2010/08/25 03:00:00 | 000,000,000 | ---- | C] () -- C:\Windows\System32\privatedata.dll
[2010/08/14 19:14:27 | 000,000,118 | ---- | C] () -- C:\Windows\System32\MRT.INI
[2010/06/29 23:12:16 | 000,013,312 | ---- | C] () -- C:\Windows\LPRES.DLL
[2010/06/02 10:35:15 | 000,217,088 | ---- | C] () -- C:\Windows\System32\qtmlClient.dll
[2010/06/02 10:35:09 | 001,362,460 | ---- | C] () -- C:\Windows\System32\ExpansionHD_Firmware.bin
[2010/05/14 21:56:06 | 010,830,680 | ---- | C] () -- C:\Windows\System32\LogiDPP.dll
[2010/05/14 21:56:06 | 000,102,744 | ---- | C] () -- C:\Windows\System32\LogiDPPApp.exe
[2010/05/14 21:55:58 | 000,290,648 | ---- | C] () -- C:\Windows\System32\DevManagerCore.dll
[2010/05/14 21:47:00 | 000,090,071 | ---- | C] () -- C:\Windows\System32\lvcoinst.ini
[2010/05/07 18:46:36 | 000,014,168 | ---- | C] () -- C:\Windows\System32\drivers\iKeyLFT2.dll
[2010/05/07 18:43:30 | 000,025,824 | ---- | C] () -- C:\Windows\System32\drivers\LVPr2Mon.sys
[2010/05/03 11:29:33 | 000,002,892 | ---- | C] () -- C:\Windows\System32\audcon.sys
[2010/05/03 11:27:48 | 000,000,045 | ---- | C] () -- C:\Windows\System32\SYNSOPOS.exe.cfg
[2010/05/03 11:27:46 | 000,086,016 | ---- | C] () -- C:\Windows\System32\SYNSOPOS.exe
[2010/02/25 20:31:40 | 000,005,632 | ---- | C] () -- C:\Users\RaeJae\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/02/02 01:09:05 | 000,212,992 | ---- | C] () -- C:\Windows\ALCHUNIN.EXE
[2010/01/24 16:06:36 | 000,034,308 | ---- | C] () -- C:\Windows\System32\BASSMOD.dll
[2010/01/21 13:38:04 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/01/17 23:08:10 | 000,021,316 | ---- | C] () -- C:\Windows\System32\emptyregdb.dat
[2010/01/09 13:40:49 | 000,013,312 | ---- | C] () -- C:\Windows\System32\drivers\MTictwl.sys
[2010/01/08 12:31:11 | 000,000,016 | ---- | C] () -- C:\Windows\popcinfo.dat
[2010/01/05 12:08:20 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2010/01/04 01:21:38 | 000,000,052 | ---- | C] () -- C:\Windows\Relax.ini
[2010/01/04 01:13:49 | 000,185,856 | ---- | C] () -- C:\Windows\System32\Bmp2Jpeg.dll
[2009/08/03 14:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
[2009/08/03 14:07:42 | 000,230,768 | ---- | C] () -- C:\Windows\System32\OGAEXEC.exe
[2009/07/14 16:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/14 16:33:53 | 000,438,120 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2009/07/14 14:05:48 | 000,659,294 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2009/07/14 14:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2009/07/14 14:05:48 | 000,140,320 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2009/07/14 14:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2009/07/14 14:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2009/07/14 14:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2009/07/14 11:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/14 11:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009/07/14 11:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2009/06/11 09:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2009/05/05 01:19:59 | 000,354,816 | ---- | C] () -- C:\Windows\System32\pythoncom26.dll
[2009/05/05 01:19:59 | 000,108,032 | ---- | C] () -- C:\Windows\System32\pywintypes26.dll
[2008/10/07 09:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\System32\physxcudart_20.dll
[2008/10/07 09:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelTraditionalChinese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSwedish.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSpanish.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSimplifiedChinese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelPortugese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelKorean.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelJapanese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelGerman.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelFrench.dll
[2007/04/18 22:07:00 | 000,053,248 | ---- | C] () -- C:\Windows\System32\mgxasio2.dll
[2007/01/25 02:52:26 | 000,065,536 | ---- | C] () -- C:\Program Files\Common Files\NMSAccessU.exe
========== LOP Check ==========
[2010/04/23 18:33:46 | 000,000,000 | ---D | M] -- C:\Users\ChaKotAshWai\AppData\Roaming\Ashampoo Cover Studio 2
[2010/06/06 15:32:01 | 000,000,000 | ---D | M] -- C:\Users\ChaKotAshWai\AppData\Roaming\ElementalsTheMagicKey
[2010/09/24 18:50:26 | 000,000,000 | ---D | M] -- C:\Users\ChaKotAshWai\AppData\Roaming\Friday's games
[2010/05/04 18:50:56 | 000,000,000 | ---D | M] -- C:\Users\ChaKotAshWai\AppData\Roaming\funkitron
[2010/05/04 18:36:06 | 000,000,000 | ---D | M] -- C:\Users\ChaKotAshWai\AppData\Roaming\Jane s Hotel Family Hero
[2010/02/09 17:02:12 | 000,000,000 | ---D | M] -- C:\Users\ChaKotAshWai\AppData\Roaming\WildTangent
[2010/12/09 11:15:20 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\4Front
[2010/06/02 09:13:21 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Ableton
[2011/03/23 15:04:17 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Acoustica
[2010/01/17 23:03:32 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Ambient Design
[2010/06/01 18:50:10 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Ancient Quest of Saqqarah__wildtan
[2010/11/30 12:32:50 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Applied Acoustics Systems
[2010/04/27 07:55:42 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Ashampoo
[2011/04/13 02:57:59 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Ashampoo Cover Studio 2
[2011/02/03 14:34:01 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\AVG10
[2011/04/14 09:21:00 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\BitTorrent
[2010/12/27 15:54:51 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Blue Cat Audio
[2010/01/17 23:03:32 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Bump Technologies, Inc
[2010/06/17 09:05:15 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011/04/06 16:18:18 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\DAEMON Tools Lite
[2011/02/02 22:43:16 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\DAEMON Tools Pro
[2010/12/03 09:05:50 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Deckadance16
[2010/06/29 19:20:03 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Dexpot
[2010/11/30 13:39:59 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\FabFilter
[2010/01/17 23:03:33 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Foxit
[2010/03/30 13:53:55 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Foxit Software
[2010/10/15 11:44:40 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\FreeImageConverter
[2010/04/22 20:52:55 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\FreezeTag
[2010/10/11 10:20:15 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\FrostWire
[2010/05/11 19:27:47 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\funkitron
[2011/02/17 23:23:59 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\FXpansion
[2010/03/05 08:51:26 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\GetRightToGo
[2010/03/31 13:54:48 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\ImgBurn
[2010/08/17 17:45:37 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\ImTOO
[2010/02/03 11:10:03 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\IObit
[2010/06/12 10:16:40 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\iShell
[2010/12/10 13:07:11 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\iZotope
[2010/06/27 18:40:20 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Leadertech
[2010/01/20 15:42:52 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\MysteryStudio
[2010/05/10 20:02:49 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\NCH Swift Sound
[2011/04/01 01:55:23 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\PACE Anti-Piracy
[2011/04/05 16:34:44 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\PreSonus
[2011/02/02 22:48:25 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Propellerhead Software
[2010/02/03 01:00:48 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Publish Providers
[2010/01/20 17:28:41 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Recordpad
[2010/11/11 15:42:34 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Smartelectronix
[2010/12/20 19:30:30 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Sony
[2010/02/23 12:10:19 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\SynthMaker
[2010/05/07 12:39:07 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\SystemRequirementsLab
[2010/11/02 18:18:29 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\TweakNow RegCleaner
[2010/05/10 10:49:16 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1
[2010/01/24 20:38:04 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Uniblue
[2010/01/17 23:03:42 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Virtual City
[2010/02/17 12:15:33 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\VitySoft
[2010/12/06 09:57:27 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Waves Audio
[2010/01/17 23:03:43 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\WildTangent
[2010/01/17 23:03:43 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\WinBatch
[2010/03/05 08:53:15 | 000,000,000 | ---D | M] -- C:\Users\RaeJae\AppData\Roaming\Xilisoft Corporation
[2011/03/04 21:48:30 | 000,032,606 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2009/06/11 09:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
[2009/07/14 13:38:58 | 000,383,562 | RHS- | M] () -- C:\bootmgr
[2010/01/18 19:41:48 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
[2011/04/21 15:31:52 | 000,026,243 | ---- | M] () -- C:\ComboFix.txt
[2009/06/11 09:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys
[2010/10/15 13:31:44 | 000,001,370 | ---- | M] () -- C:\docuPrinter.log
[2010/10/21 21:53:27 | 000,002,750 | ---- | M] () -- C:\FINIS_IT.TXT
[2011/04/21 19:14:30 | 1602,101,248 | -HS- | M] () -- C:\hiberfil.sys
[2010/12/20 16:25:30 | 000,015,803 | ---- | M] () -- C:\INSTALL.LOG
[2010/08/06 12:17:24 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010/08/06 12:17:24 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2011/04/21 19:14:35 | 2136,137,728 | -HS- | M] () -- C:\pagefile.sys
[2009/05/05 01:44:16 | 000,000,349 | ---- | M] () -- C:\updatedatfix.log
[2008/08/27 00:37:52 | 000,000,458 | ---- | M] () -- C:\Windows Sidebar
< %systemroot%\Fonts\*.com >
[2009/07/14 16:52:25 | 000,026,040 | ---- | M] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2009/07/14 16:52:25 | 000,026,489 | ---- | M] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2009/07/14 16:52:25 | 000,029,779 | ---- | M] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont
[2009/07/14 16:52:25 | 000,043,318 | ---- | M] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2009/06/11 09:31:19 | 000,000,065 | ---- | M] () -- C:\Windows\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2009/06/22 17:58:20 | 000,089,600 | ---- | M] (Hewlett-Packard Corporation) -- C:\Windows\System32\spool\prtprocs\w32x86\HPZPPLHN.DLL
[2009/07/14 13:15:35 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spool\prtprocs\w32x86\jnwppr.dll
[2009/07/14 13:16:19 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spool\prtprocs\w32x86\winprint.dll
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
[2011/04/19 05:25:12 | 000,040,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2010/11/10 01:28:46 | 000,301,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\WLXPGSS.SCR
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2009/07/14 16:41:57 | 000,000,174 | -HS- | M] () -- C:\Program Files\desktop.ini
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2010/01/04 02:44:15 | 000,000,221 | -HS- | M] () -- C:\Users\RaeJae\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop (1).ini
[2010/01/17 23:20:41 | 000,000,221 | -HS- | M] () -- C:\Users\RaeJae\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
[2010/01/05 10:35:14 | 000,000,201 | ---- | M] () -- C:\Users\RaeJae\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\eBay.url
< %USERPROFILE%\Desktop\*.exe >
[2011/04/20 14:16:38 | 000,301,568 | ---- | M] () -- C:\Users\RaeJae\Desktop\1gdrr692.exe
[2011/04/20 11:58:22 | 035,225,928 | ---- | M] (COMODO) -- C:\Users\RaeJae\Desktop\cfw_installer_x86.exe
[2011/04/21 15:12:43 | 004,325,691 | R--- | M] () -- C:\Users\RaeJae\Desktop\ComboFix.exe
[2011/04/20 14:18:50 | 007,734,208 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\RaeJae\Desktop\mbam-setup-1.50.1.1100.exe
[2011/04/21 13:48:10 | 000,080,384 | ---- | M] () -- C:\Users\RaeJae\Desktop\MBRCheck.exe
[2011/04/21 16:17:24 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\RaeJae\Desktop\OTL.exe
[2011/04/21 16:15:08 | 056,189,640 | ---- | M] () -- C:\Users\RaeJae\Desktop\setup_av_free.exe
[2011/04/20 14:15:34 | 000,446,464 | ---- | M] (OldTimer Tools) -- C:\Users\RaeJae\Desktop\TFC.exe
< %PROGRAMFILES%\Common Files\*.* >
[2007/01/25 02:52:26 | 000,065,536 | ---- | M] () -- C:\Program Files\Common Files\NMSAccessU.exe
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >
< %PROGRAMFILES%\PC-Doctor\Downloads\*.* >
< %PROGRAMFILES%\Internet Explorer\*.tmp >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %USERPROFILE%\My Documents\*.exe >
< %USERPROFILE%\*.exe >
< %systemroot%\ADDINS\*.* >
[2009/06/11 09:20:04 | 000,000,802 | ---- | M] () -- C:\Windows\addins\FXSEXT.ecf
< %systemroot%\assembly\*.bak2 >
< %systemroot%\Config\*.* >
< %systemroot%\REPAIR\*.bak2 >
< %systemroot%\SECURITY\Database\*.sdb /x >
< %systemroot%\SYSTEM\*.bak2 >
< %systemroot%\Web\*.bak2 >
< %systemroot%\Driver Cache\*.* >
< %PROGRAMFILES%\Mozilla Firefox\0*.exe >
< %ProgramFiles%\Microsoft Common\*.* >
< %ProgramFiles%\TinyProxy. >
< %USERPROFILE%\Favorites\*.url /x >
[2010/08/14 21:36:52 | 000,000,402 | -HS- | M] () -- C:\Users\RaeJae\Favorites\desktop.ini
< %systemroot%\system32\*.bk >
< %systemroot%\*.te >
< %systemroot%\system32\system32\*.* >
< %ALLUSERSPROFILE%\*.dat /x >
[2011/04/20 17:30:52 | 000,010,374 | -HS- | M] () -- C:\ProgramData\0v128yg110yy544h80wqr2
< %systemroot%\system32\drivers\*.rmv >
< dir /b "%systemroot%\system32\*.exe" | find /i " " /c >
< dir /b "%systemroot%\*.exe" | find /i " " /c >
< %PROGRAMFILES%\Microsoft\*.* >
< %systemroot%\System32\Wbem\proquota.exe >
< %PROGRAMFILES%\Mozilla Firefox\*.dat >
< %USERPROFILE%\Cookies\*.txt /x >
< %SystemRoot%\system32\fonts\*.* >
< %systemroot%\system32\winlog\*.* >
< %systemroot%\system32\Language\*.* >
< %systemroot%\system32\Settings\*.* >
< %systemroot%\system32\*.quo >
< %SYSTEMROOT%\AppPatch\*.exe >
< %SYSTEMROOT%\inf\*.exe >
< %SYSTEMROOT%\Installer\*.exe >
< %systemroot%\system32\config\*.bak2 >
< %systemroot%\system32\Computers\*.* >
< %SystemRoot%\system32\Sound\*.* >
< %SystemRoot%\system32\SpecialImg\*.* >
< %SystemRoot%\system32\code\*.* >
< %SystemRoot%\system32\draft\*.* >
< %SystemRoot%\system32\MSSSys\*.* >
< %ProgramFiles%\Javascript\*.* >
< %systemroot%\pchealth\helpctr\System\*.exe /s >
< %systemroot%\Web\*.exe >
< %systemroot%\system32\msn\*.* >
< %systemroot%\system32\*.tro >
< %AppData%\Microsoft\Installer\msupdates\*.* >
< %ProgramFiles%\Messenger\*.* >
< %systemroot%\system32\systhem32\*.* >
< %systemroot%\system\*.exe >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\ Auto Update\Results\Install|LastSuccessTime /rs >
========== Alternate Data Streams ==========
@Alternate Data Stream - 1238 bytes -> C:\Users\RaeJae\AppData\Local\3KDlJfWHhxqk8US

0XruD21dPH8RG99Zx2A
@Alternate Data Stream - 117 bytes -> C:\ProgramData\Temp

74B6CF5
@Alternate Data Stream - 109 bytes -> C:\ProgramData\Temp

FC5A2B2
@Alternate Data Stream - 1057 bytes -> C:\Users\RaeJae\AppData\Local\mhpZyXByCHO9WP:Fu8w9uaQQLrCJXEJHIpdfbnC
@Alternate Data Stream - 1033 bytes -> C:\Users\RaeJae\AppData\Local\Temp:SVSytjQYCf1FZESAvcJs0tQMN
< End of report >