Continued
O1 HOSTS File: ([2012/11/15 15:38:47 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
[FONT=mceinline]O1 - Hosts: 127.0.0.1 localhost[/FONT]
[FONT=mceinline]O2:
64bit: - BHO: (AVG Do Not Track) - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files (x86)\AVG\AVG2012\avgdtiea.dll File not found[/FONT]
[FONT=mceinline]O2:
64bit: - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.[/FONT]
[FONT=mceinline]O2:
64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)[/FONT]
[FONT=mceinline]O2:
64bit: - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)[/FONT]
[FONT=mceinline]O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.[/FONT]
[FONT=mceinline]O2 - BHO: (StartNow Toolbar Helper) - {6E13D095-45C3-4271-9475-F3B48227DD9F} - C:\Program Files (x86)\StartNow Toolbar\Toolbar32.dll File not found[/FONT]
[FONT=mceinline]O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)[/FONT]
[FONT=mceinline]O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - No CLSID value found.[/FONT]
[FONT=mceinline]O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)[/FONT]
[FONT=mceinline]O2 - BHO: (DCA BHO) - {B49699FC-1665-4414-A1CB-C4A2A4A13EEC} - C:\Program Files (x86)\Common Files\FreeCause\DCA\dca-bho.dll (Compete, Inc.)[/FONT]
[FONT=mceinline]O2 - BHO: (SocialRibbons LP5) - {CBF3FDCA-6104-1864-D931-D737D2BFC202} - C:\Program Files (x86)\SocialRibbons LP5\Toolbar.dll ()[/FONT]
[FONT=mceinline]O2 - BHO: (WeCareReminder Class) - {D824F0DE-3D60-4F57-9EB1-66033ECD8ABB} - C:\ProgramData\WeCareReminder\IEHelperv2.5.0.dll (We-Care.com)[/FONT]
[FONT=mceinline]O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)[/FONT]
[FONT=mceinline]O2 - BHO: (YouTube Downloader Toolbar) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files (x86)\YouTube Downloader Toolbar\IE\4.6\youtubedownloaderToolbarIE.dll (Spigot, Inc.)[/FONT]
[FONT=mceinline]O2 - BHO: (Yontoo Layers) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo Layers Runtime\YontooIEClient.dll (Yontoo LLC)[/FONT]
[FONT=mceinline]O3:
64bit: - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)[/FONT]
[FONT=mceinline]O3:
64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)[/FONT]
[FONT=mceinline]O3 - HKLM\..\Toolbar: (no name) - !{DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - No CLSID value found.[/FONT]
[FONT=mceinline]O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)[/FONT]
[FONT=mceinline]O3 - HKLM\..\Toolbar: (StartNow Toolbar) - {5911488E-9D1E-40ec-8CBB-06B231CC153F} - C:\Program Files (x86)\StartNow Toolbar\Toolbar32.dll File not found[/FONT]
[FONT=mceinline]O3 - HKLM\..\Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - No CLSID value found.[/FONT]
[FONT=mceinline]O3 - HKLM\..\Toolbar: (YouTube Downloader Toolbar) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files (x86)\YouTube Downloader Toolbar\IE\4.6\youtubedownloaderToolbarIE.dll (Spigot, Inc.)[/FONT]
[FONT=mceinline]O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.[/FONT]
[FONT=mceinline]O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.[/FONT]
[FONT=mceinline]O3 - HKU\S-1-5-21-3718762900-4173039834-1257701688-1001\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.[/FONT]
[FONT=mceinline]O3:
64bit: - HKU\S-1-5-21-3718762900-4173039834-1257701688-1001\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)[/FONT]
[FONT=mceinline]O4:
64bit: - HKLM..\Run: [boincmgr] C:\Program Files\BOINC\boincmgr.exe (Space Sciences Laboratory)[/FONT]
[FONT=mceinline]O4:
64bit: - HKLM..\Run: [boinctray] C:\Program Files\BOINC\boinctray.exe (Space Sciences Laboratory)[/FONT]
[FONT=mceinline]O4:
64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)[/FONT]
[FONT=mceinline]O4:
64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)[/FONT]
[FONT=mceinline]O4:
64bit: - HKLM..\Run: [Launch LGDCore] C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe (Logitech Inc.)[/FONT]
[FONT=mceinline]O4:
64bit: - HKLM..\Run: [Launch LgDeviceAgent] C:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe (Logitech Inc.)[/FONT]
[FONT=mceinline]O4:
64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)[/FONT]
[FONT=mceinline]O4:
64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)[/FONT]
[FONT=mceinline]O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)[/FONT]
[FONT=mceinline]O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)[/FONT]
[FONT=mceinline]O4 - HKLM..\Run: [AVG_UI] C:\Program Files (x86)\AVG\AVG2013\avgui.exe (AVG Technologies CZ, s.r.o.)[/FONT]
[FONT=mceinline]O4 - HKLM..\Run: [CLMLServer] C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe (CyberLink)[/FONT]
[FONT=mceinline]O4 - HKLM..\Run: [Healthcare] C:\Program Files\Lenovo\HealthCare\HealthCare.exe (Lenovo)[/FONT]
[FONT=mceinline]O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)[/FONT]
[FONT=mceinline]O4 - HKLM..\Run: [jmekey] C:\Program Files (x86)\jmesoft\hotkey.exe (JME)[/FONT]
[FONT=mceinline]O4 - HKLM..\Run: [ModeSwitch] C:\Program Files\Lenovo\Power Dial\LitModeSwitch.exe (Lenovo)[/FONT]
[FONT=mceinline]O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)[/FONT]
[FONT=mceinline]O4 - HKLM..\Run: [SetDefaultSCR] C:\Program Files (x86)\Lenovo\Lenovo Screensaver\SetDefaultSCR.exe (Lenovo)[/FONT]
[FONT=mceinline]O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)[/FONT]
[FONT=mceinline]O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present[/FONT]
[FONT=mceinline]O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0[/FONT]
[FONT=mceinline]O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5[/FONT]
[FONT=mceinline]O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3[/FONT]
[FONT=mceinline]O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present[/FONT]
[FONT=mceinline]O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present[/FONT]
[FONT=mceinline]O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present[/FONT]
[FONT=mceinline]O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present[/FONT]
[FONT=mceinline]O7 - HKU\S-1-5-21-3718762900-4173039834-1257701688-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present[/FONT]
[FONT=mceinline]O7 - HKU\S-1-5-21-3718762900-4173039834-1257701688-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145[/FONT]
[FONT=mceinline]O7 - HKU\S-1-5-21-3718762900-4173039834-1257701688-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0[/FONT]
[FONT=mceinline]O7 - HKU\S-1-5-21-3718762900-4173039834-1257701688-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2[/FONT]
[FONT=mceinline]O7 - HKU\S-1-5-21-3718762900-4173039834-1257701688-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1[/FONT]
[FONT=mceinline]O8:
64bit: - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html File not found[/FONT]
[FONT=mceinline]O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html File not found[/FONT]
[FONT=mceinline]O9:
64bit: - Extra Button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files (x86)\AVG\AVG2012\avgdtiea.dll File not found[/FONT]
[FONT=mceinline]O10:
64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)[/FONT]
[FONT=mceinline]O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)[/FONT]
[FONT=mceinline]O13 - gopher Prefix: missing[/FONT]
[FONT=mceinline]O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Reg Error: Value error.)[/FONT]
[FONT=mceinline]O16 - DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab (Java Plug-in 1.6.0_25)[/FONT]
[FONT=mceinline]O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)[/FONT]
[FONT=mceinline]O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 10.9.2)[/FONT]
[FONT=mceinline]O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)[/FONT]
[FONT=mceinline]O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 71.242.0.12[/FONT]
[FONT=mceinline]O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{962325E9-F704-4D24-A1F1-98501D95B43A}: DhcpNameServer = 192.168.1.1 71.242.0.12[/FONT]
[FONT=mceinline]O18:
64bit: - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)[/FONT]
[FONT=mceinline]O18:
64bit: - Protocol\Handler\livecall - No CLSID value found[/FONT]
[FONT=mceinline]O18:
64bit: - Protocol\Handler\ms-help - No CLSID value found[/FONT]
[FONT=mceinline]O18:
64bit: - Protocol\Handler\msnim - No CLSID value found[/FONT]
[FONT=mceinline]O18:
64bit: - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)[/FONT]
[FONT=mceinline]O18:
64bit: - Protocol\Handler\wlmailhtml - No CLSID value found[/FONT]
[FONT=mceinline]O18:
64bit: - Protocol\Handler\wlpg - No CLSID value found[/FONT]
[FONT=mceinline]O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)[/FONT]
[FONT=mceinline]O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)[/FONT]
[FONT=mceinline]O20:
64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)[/FONT]
[FONT=mceinline]O20:
64bit: - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)[/FONT]
[FONT=mceinline]O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)[/FONT]
[FONT=mceinline]O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)[/FONT]
[FONT=mceinline]O20:
64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)[/FONT]
[FONT=mceinline]O21:
64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.[/FONT]
[FONT=mceinline]O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.[/FONT]
[FONT=mceinline]O32 - HKLM CDRom: AutoRun - 1[/FONT]
[FONT=mceinline]O32 - AutoRun File - [2011/09/18 14:07:28 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ][/FONT]
[FONT=mceinline]O32 - AutoRun File - [2012/05/30 14:52:56 | 000,000,094 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ][/FONT]
[FONT=mceinline]O32 - AutoRun File - [2002/10/06 09:08:02 | 000,000,000 | ---D | M] - D:\autorun -- [ CDFS ][/FONT]
[FONT=mceinline]O32 - AutoRun File - [2002/09/20 17:20:04 | 000,053,248 | R--- | M] () - D:\autorun.exe -- [ CDFS ][/FONT]
[FONT=mceinline]O32 - AutoRun File - [2002/09/20 17:20:06 | 000,000,045 | R--- | M] () - D:\autorun.inf -- [ CDFS ][/FONT]
[FONT=mceinline]O34 - HKLM BootExecute: (autocheck autochk *)[/FONT]
[FONT=mceinline]O35:
64bit: - HKLM\..comfile [open] -- "%1" %*[/FONT]
[FONT=mceinline]O35:
64bit: - HKLM\..exefile [open] -- "%1" %*[/FONT]
[FONT=mceinline]O35 - HKLM\..comfile [open] -- "%1" %*[/FONT]
[FONT=mceinline]O35 - HKLM\..exefile [open] -- "%1" %*[/FONT]
[FONT=mceinline]O37:
64bit: - HKLM\...com [@ = ComFile] -- "%1" %*[/FONT]
[FONT=mceinline]O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*[/FONT]
[FONT=mceinline]O37 - HKLM\...com [@ = ComFile] -- "%1" %*[/FONT]
[FONT=mceinline]O37 - HKLM\...exe [@ = exefile] -- "%1" %*[/FONT]
[FONT=mceinline]O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)[/FONT]
[FONT=mceinline]O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)[/FONT]
[FONT=mceinline]O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline]
========== Files/Folders - Created Within 30 Days ==========[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][2012/11/15 20:36:15 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Tony&Theodore\Desktop\OTL.exe[/FONT]
[FONT=mceinline][2012/11/15 20:33:33 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Roaming\AVG2013[/FONT]
[FONT=mceinline][2012/11/15 16:58:40 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Roaming\TuneUp Software[/FONT]
[FONT=mceinline][2012/11/15 16:57:47 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2013[/FONT]
[FONT=mceinline][2012/11/15 16:57:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVG[/FONT]
[FONT=mceinline][2012/11/15 16:55:54 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\MFAData[/FONT]
[FONT=mceinline][2012/11/15 16:55:54 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData[/FONT]
[FONT=mceinline][2012/11/15 16:55:54 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\Avg2013[/FONT]
[FONT=mceinline][2012/11/15 15:43:35 | 000,000,000 | ---D | C] -- C:\windows\temp[/FONT]
[FONT=mceinline][2012/11/15 15:38:50 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN[/FONT]
[FONT=mceinline][2012/11/15 15:21:34 | 000,518,144 | ---- | C] (SteelWerX) -- C:\windows\SWREG.exe[/FONT]
[FONT=mceinline][2012/11/15 15:21:34 | 000,406,528 | ---- | C] (SteelWerX) -- C:\windows\SWSC.exe[/FONT]
[FONT=mceinline][2012/11/15 15:21:34 | 000,060,416 | ---- | C] (NirSoft) -- C:\windows\NIRCMD.exe[/FONT]
[FONT=mceinline][2012/11/15 15:21:06 | 000,000,000 | ---D | C] -- C:\Qoobox[/FONT]
[FONT=mceinline][2012/11/15 15:20:20 | 000,000,000 | ---D | C] -- C:\windows\erdnt[/FONT]
[FONT=mceinline][2012/11/15 15:14:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG[/FONT]
[FONT=mceinline][2012/11/15 15:13:37 | 000,000,000 | ---D | C] -- C:\Config.Msi[/FONT]
[FONT=mceinline][2012/11/15 15:12:44 | 011,492,288 | ---- | C] (OPSWAT, Inc.) -- C:\Users\Tony&Theodore\Desktop\AppRemover.exe[/FONT]
[FONT=mceinline][2012/11/15 14:58:32 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{B154F1A1-A626-4451-951C-B062582BF503}[/FONT]
[FONT=mceinline][2012/11/14 19:54:00 | 004,732,416 | ---- | C] (AVAST Software) -- C:\Users\Tony&Theodore\Desktop\aswMBR.exe[/FONT]
[FONT=mceinline][2012/11/14 19:49:48 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\Desktop\RK_Quarantine[/FONT]
[FONT=mceinline][2012/11/14 19:45:51 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\Desktop\tdsskiller[/FONT]
[FONT=mceinline][2012/11/14 15:13:30 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{A23F856F-F4F6-4483-8C6D-5D8674227E22}[/FONT]
[FONT=mceinline][2012/11/13 16:05:27 | 000,688,901 | R--- | C] (Swearware) -- C:\Users\Tony&Theodore\Desktop\dds.com[/FONT]
[FONT=mceinline][2012/11/13 15:18:28 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{D1FFC2FD-9BBD-4737-8679-D1B65C7001F4}[/FONT]
[FONT=mceinline][2012/11/12 21:25:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java[/FONT]
[FONT=mceinline][2012/11/12 18:20:52 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{0E438D92-7535-4DA7-9E66-6B23C0EFBB40}[/FONT]
[FONT=mceinline][2012/11/11 12:57:44 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{4F5B45C4-CD3B-4F62-9783-04CC14E7CE7A}[/FONT]
[FONT=mceinline][2012/11/10 17:15:47 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\Desktop\PokeMMO-Client[/FONT]
[FONT=mceinline][2012/11/10 11:07:18 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{2228DF0A-8F31-437C-A7CD-A588F1A8238D}[/FONT]
[FONT=mceinline][2012/11/09 15:13:14 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{02B44A64-28E0-407B-85BB-D6A1A2A4EE65}[/FONT]
[FONT=mceinline][2012/11/08 14:59:16 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{670CACFB-27FB-4F4F-8CB8-FB1FE9282150}[/FONT]
[FONT=mceinline][2012/11/07 14:54:49 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{3F7FE5D1-C890-4E6C-87DB-A7A4F54859A8}[/FONT]
[FONT=mceinline][2012/11/06 11:13:19 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{5312017D-7C99-4540-905A-7BE00151D5C2}[/FONT]
[FONT=mceinline][2012/11/05 20:09:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BOINC[/FONT]
[FONT=mceinline][2012/11/05 20:09:05 | 000,000,000 | ---D | C] -- C:\ProgramData\BOINC[/FONT]
[FONT=mceinline][2012/11/05 20:09:05 | 000,000,000 | ---D | C] -- C:\Program Files\BOINC[/FONT]
[FONT=mceinline][2012/11/05 20:08:28 | 000,000,000 | ---D | C] -- C:\windows\Downloaded Installations[/FONT]
[FONT=mceinline][2012/11/05 14:57:56 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{46A50010-0179-480D-B64A-350458D69D02}[/FONT]
[FONT=mceinline][2012/11/04 08:58:12 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{FB20549F-819B-4480-8241-A2B3B06279A3}[/FONT]
[FONT=mceinline][2012/11/03 09:33:07 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{00C2B26A-31F0-4F51-B223-27826945098F}[/FONT]
[FONT=mceinline][2012/11/02 14:13:26 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{17DB9820-D8AA-40E6-A944-8D8348A821C7}[/FONT]
[FONT=mceinline][2012/11/01 16:06:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foldit[/FONT]
[FONT=mceinline][2012/11/01 16:06:19 | 000,000,000 | ---D | C] -- C:\Foldit[/FONT]
[FONT=mceinline][2012/11/01 13:58:33 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{8D8570E7-7818-4990-BD1A-F905641FCC8E}[/FONT]
[FONT=mceinline][2012/10/31 13:52:17 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{3AA02ECB-16FD-4E35-912D-3DCDFE938142}[/FONT]
[FONT=mceinline][2012/10/30 12:45:40 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{6960295E-3251-4CD8-88D0-951F12C6336E}[/FONT]
[FONT=mceinline][2012/10/29 13:29:03 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Roaming\.minecraft[/FONT]
[FONT=mceinline][2012/10/29 09:07:27 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{287F85C0-53BF-4DAA-9B1E-D53F030DA175}[/FONT]
[FONT=mceinline][2012/10/28 14:44:25 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{2C043AA3-1D6F-4962-AE0D-AF403CCCC771}[/FONT]
[FONT=mceinline][2012/10/27 08:57:28 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{AA9B76B7-FB93-4123-A852-C6BAC7429F3A}[/FONT]
[FONT=mceinline][2012/10/26 15:15:37 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\Desktop\Backups of FINAL PROJECT[/FONT]
[FONT=mceinline][2012/10/26 13:48:20 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{44825EB0-1DB2-4772-A28B-457C63881A9B}[/FONT]
[FONT=mceinline][2012/10/25 14:16:49 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{6A6E8E29-6C2A-4B92-B0F6-81090C0FF6E0}[/FONT]
[FONT=mceinline][2012/10/24 17:57:28 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{7B94FCCA-713B-4B37-87AC-AAFB524CA4FC}[/FONT]
[FONT=mceinline][2012/10/23 13:47:08 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{368E4309-4DF4-4741-8CE3-58FFDC481565}[/FONT]
[FONT=mceinline][2012/10/22 13:58:25 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{C674B742-BB4D-4D2A-8DBD-69D9D51399AA}[/FONT]
[FONT=mceinline][2012/10/22 13:02:44 | 000,154,464 | ---- | C] (AVG Technologies CZ, s.r.o. ) -- C:\windows\SysNative\drivers\avgidsdrivera.sys[/FONT]
[FONT=mceinline][2012/10/21 17:46:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Eidos Interactive[/FONT]
[FONT=mceinline][2012/10/21 17:39:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Eidos Interactive[/FONT]
[FONT=mceinline][2012/10/21 16:24:09 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\Desktop\Backups of project 3[/FONT]
[FONT=mceinline][2012/10/21 15:54:14 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{40BD84EF-3931-44D0-B8DD-A8CBE8F6B4F1}[/FONT]
[FONT=mceinline][2012/10/19 14:51:16 | 000,000,000 | ---D | C] -- C:\webGalleryCache[/FONT]
[FONT=mceinline][2012/10/19 14:12:15 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{67E7039B-75F1-484E-B7D3-25839F042D52}[/FONT]
[FONT=mceinline][2012/10/18 13:53:38 | 000,000,000 | ---D | C] -- C:\Users\Tony&Theodore\AppData\Local\{3A889E57-2366-4B23-9119-F9CCD42A9221}[/FONT]
[FONT=mceinline][2010/09/16 13:28:02 | 001,914,000 | ---- | C] (Adobe Systems Incorporated) -- C:\ProgramData\flashax10.exe[/FONT]
[FONT=mceinline][4 C:\windows\*.tmp files -> C:\windows\*.tmp -> ][/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline]
========== Files - Modified Within 30 Days ==========[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][2012/11/15 20:36:16 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Tony&Theodore\Desktop\OTL.exe[/FONT]
[FONT=mceinline][2012/11/15 20:32:49 | 000,000,912 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job[/FONT]
[FONT=mceinline][2012/11/15 20:32:49 | 000,000,830 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job[/FONT]
[FONT=mceinline][2012/11/15 20:32:47 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat[/FONT]
[FONT=mceinline][2012/11/15 16:58:40 | 000,000,965 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2013.lnk[/FONT]
[FONT=mceinline][2012/11/15 16:03:29 | 000,017,952 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0[/FONT]
[FONT=mceinline][2012/11/15 16:03:29 | 000,017,952 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0[/FONT]
[FONT=mceinline][2012/11/15 16:01:51 | 000,796,170 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI[/FONT]
[FONT=mceinline][2012/11/15 16:01:51 | 000,672,662 | ---- | M] () -- C:\windows\SysNative\perfh009.dat[/FONT]
[FONT=mceinline][2012/11/15 16:01:51 | 000,125,394 | ---- | M] () -- C:\windows\SysNative\perfc009.dat[/FONT]
[FONT=mceinline][2012/11/15 15:55:58 | 000,000,908 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job[/FONT]
[FONT=mceinline][2012/11/15 15:55:53 | 000,065,536 | ---- | M] () -- C:\windows\SysNative\Ikeext.etl[/FONT]
[FONT=mceinline][2012/11/15 15:55:38 | 2089,697,279 | -HS- | M] () -- C:\hiberfil.sys[/FONT]
[FONT=mceinline][2012/11/15 15:38:47 | 000,000,027 | ---- | M] () -- C:\windows\SysNative\drivers\etc\hosts[/FONT]
[FONT=mceinline][2012/11/15 15:12:49 | 000,000,009 | ---- | M] () -- C:\END[/FONT]
[FONT=mceinline][2012/11/14 20:28:19 | 000,000,512 | ---- | M] () -- C:\Users\Tony&Theodore\Desktop\MBR.dat[/FONT]
[FONT=mceinline][2012/11/14 19:54:26 | 004,732,416 | ---- | M] (AVAST Software) -- C:\Users\Tony&Theodore\Desktop\aswMBR.exe[/FONT]
[FONT=mceinline][2012/11/14 19:45:24 | 002,195,061 | ---- | M] () -- C:\Users\Tony&Theodore\Desktop\tdsskiller.zip[/FONT]
[FONT=mceinline][2012/11/14 18:54:03 | 000,283,032 | ---- | M] () -- C:\windows\SysWow64\PnkBstrB.xtr[/FONT]
[FONT=mceinline][2012/11/14 18:54:03 | 000,283,032 | ---- | M] () -- C:\windows\SysWow64\PnkBstrB.exe[/FONT]
[FONT=mceinline][2012/11/14 18:53:34 | 000,298,016 | ---- | M] () -- C:\windows\SysWow64\PnkBstrB.ex0[/FONT]
[FONT=mceinline][2012/11/14 17:08:24 | 000,436,301 | ---- | M] () -- C:\windows\SysNative\drivers\AVG\iavichjg.avm[/FONT]
[FONT=mceinline][2012/11/14 15:12:43 | 000,000,003 | ---- | M] () -- C:\windows\SysNative\HRUPPROG.DIE.NOW[/FONT]
[FONT=mceinline][2012/11/14 15:11:45 | 000,504,864 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT[/FONT]
[FONT=mceinline][2012/11/13 16:08:36 | 000,001,113 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk[/FONT]
[FONT=mceinline][2012/11/13 16:05:29 | 000,688,901 | R--- | M] (Swearware) -- C:\Users\Tony&Theodore\Desktop\dds.com[/FONT]
[FONT=mceinline][2012/11/13 15:55:56 | 000,302,592 | ---- | M] () -- C:\Users\Tony&Theodore\Desktop\2b5znx75.exe[/FONT]
[FONT=mceinline][2012/11/09 15:54:16 | 000,002,378 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk[/FONT]
[FONT=mceinline][2012/11/08 14:48:19 | 000,030,568 | ---- | M] (AVG Technologies) -- C:\windows\SysNative\drivers\avgtpx64.sys[/FONT]
[FONT=mceinline][2012/11/07 17:22:32 | 000,000,856 | ---- | M] () -- C:\Users\Tony&Theodore\.recently-used.xbel[/FONT]
[FONT=mceinline][2012/11/06 02:11:36 | 011,492,288 | ---- | M] (OPSWAT, Inc.) -- C:\Users\Tony&Theodore\Desktop\AppRemover.exe[/FONT]
[FONT=mceinline][2012/11/05 20:10:31 | 000,000,632 | RHS- | M] () -- C:\Users\Tony&Theodore\ntuser.pol[/FONT]
[FONT=mceinline][2012/11/01 16:06:27 | 000,001,408 | ---- | M] () -- C:\Users\Public\Desktop\Foldit.lnk[/FONT]
[FONT=mceinline][2012/10/31 15:52:36 | 012,219,121 | ---- | M] () -- C:\Users\Tony&Theodore\Desktop\FINAL PROJECT.a2w[/FONT]
[FONT=mceinline][2012/10/22 13:02:44 | 000,154,464 | ---- | M] (AVG Technologies CZ, s.r.o. ) -- C:\windows\SysNative\drivers\avgidsdrivera.sys[/FONT]
[FONT=mceinline][2012/10/21 17:46:06 | 000,001,238 | ---- | M] () -- C:\Users\Tony&Theodore\Desktop\Play Hitman 2.lnk[/FONT]
[FONT=mceinline][2012/10/21 17:28:05 | 024,200,935 | ---- | M] () -- C:\Users\Tony&Theodore\Desktop\project 3.a2w[/FONT]
[FONT=mceinline][2012/10/19 06:55:46 | 000,000,172 | ---- | M] () -- C:\windows\SysNative\drivers\MCLIENTx64\0302000.013\isolate.ini[/FONT]
[FONT=mceinline][4 C:\windows\*.tmp files -> C:\windows\*.tmp -> ][/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline]
========== Files Created - No Company Name ==========[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][2012/11/15 16:58:40 | 000,000,965 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2013.lnk[/FONT]
[FONT=mceinline][2012/11/15 15:21:34 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe[/FONT]
[FONT=mceinline][2012/11/15 15:21:34 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe[/FONT]
[FONT=mceinline][2012/11/15 15:21:34 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe[/FONT]
[FONT=mceinline][2012/11/15 15:21:34 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe[/FONT]
[FONT=mceinline][2012/11/15 15:21:34 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe[/FONT]
[FONT=mceinline][2012/11/15 15:12:49 | 000,000,009 | ---- | C] () -- C:\END[/FONT]
[FONT=mceinline][2012/11/14 20:28:19 | 000,000,512 | ---- | C] () -- C:\Users\Tony&Theodore\Desktop\MBR.dat[/FONT]
[FONT=mceinline][2012/11/14 19:45:13 | 002,195,061 | ---- | C] () -- C:\Users\Tony&Theodore\Desktop\tdsskiller.zip[/FONT]
[FONT=mceinline][2012/11/14 15:12:43 | 000,000,003 | ---- | C] () -- C:\windows\SysNative\HRUPPROG.DIE.NOW[/FONT]
[FONT=mceinline][2012/11/13 21:49:38 | 000,000,003 | ---- | C] () -- C:\windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf[/FONT]
[FONT=mceinline][2012/11/13 21:43:19 | 000,000,003 | ---- | C] () -- C:\windows\SysNative\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf[/FONT]
[FONT=mceinline][2012/11/13 15:55:54 | 000,302,592 | ---- | C] () -- C:\Users\Tony&Theodore\Desktop\2b5znx75.exe[/FONT]
[FONT=mceinline][2012/11/07 17:22:32 | 000,000,856 | ---- | C] () -- C:\Users\Tony&Theodore\.recently-used.xbel[/FONT]
[FONT=mceinline][2012/11/01 16:06:27 | 000,001,408 | ---- | C] () -- C:\Users\Public\Desktop\Foldit.lnk[/FONT]
[FONT=mceinline][2012/10/26 14:58:46 | 012,219,121 | ---- | C] () -- C:\Users\Tony&Theodore\Desktop\FINAL PROJECT.a2w[/FONT]
[FONT=mceinline][2012/10/21 17:46:06 | 000,001,238 | ---- | C] () -- C:\Users\Tony&Theodore\Desktop\Play Hitman 2.lnk[/FONT]
[FONT=mceinline][2012/10/21 16:11:45 | 024,200,935 | ---- | C] () -- C:\Users\Tony&Theodore\Desktop\project 3.a2w[/FONT]
[FONT=mceinline][2012/07/03 12:27:47 | 000,283,032 | ---- | C] () -- C:\windows\SysWow64\PnkBstrB.exe[/FONT]
[FONT=mceinline][2012/07/03 12:27:45 | 003,130,440 | ---- | C] () -- C:\windows\SysWow64\pbsvc_blr.exe[/FONT]
[FONT=mceinline][2012/07/03 12:27:45 | 000,076,888 | ---- | C] () -- C:\windows\SysWow64\PnkBstrA.exe[/FONT]
[FONT=mceinline][2012/05/15 01:21:50 | 000,423,744 | ---- | C] () -- C:\windows\SysWow64\nvStreaming.exe[/FONT]
[FONT=mceinline][2011/12/23 00:22:16 | 000,002,839 | ---- | C] () -- C:\Users\Tony&Theodore\invasion-installer-v2.bat[/FONT]
[FONT=mceinline][2011/11/24 13:04:35 | 000,019,183 | ---- | C] () -- C:\windows\War3Unin.dat[/FONT]
[FONT=mceinline][2011/10/17 17:50:21 | 000,000,632 | RHS- | C] () -- C:\Users\Tony&Theodore\ntuser.pol[/FONT]
[FONT=mceinline][2011/09/28 16:44:14 | 000,179,271 | ---- | C] () -- C:\windows\SysWow64\xlive.dll.cat[/FONT]
[FONT=mceinline][2011/09/18 14:21:12 | 000,000,153 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc[/FONT]
[FONT=mceinline][2011/09/09 21:01:13 | 000,032,256 | ---- | C] () -- C:\windows\SysWow64\AVSredirect.dll[/FONT]
[FONT=mceinline][2011/09/09 20:57:26 | 000,107,520 | RHS- | C] () -- C:\windows\SysWow64\TAKDSDecoder.dll[/FONT]
[FONT=mceinline][2011/08/08 15:13:41 | 000,000,032 | R--- | C] () -- C:\ProgramData\hash.dat[/FONT]
[FONT=mceinline][2011/07/06 09:41:44 | 000,789,894 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI[/FONT]
[FONT=mceinline][2011/03/15 14:34:03 | 000,000,017 | ---- | C] () -- C:\Users\Tony&Theodore\AppData\Local\resmon.resmoncfg[/FONT]
[FONT=mceinline][2011/03/03 16:10:07 | 000,000,622 | ---- | C] () -- C:\windows\eReg.dat[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline]
========== ZeroAccess Check ==========[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32][/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32][/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64[/FONT]
[FONT=mceinline]"" = C:\Windows\SysNative\shell32.dll -- [2012/06/09 00:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)[/FONT]
[FONT=mceinline]"ThreadingModel" = Apartment[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32][/FONT]
[FONT=mceinline]"" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 23:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)[/FONT]
[FONT=mceinline]"ThreadingModel" = Apartment[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64[/FONT]
[FONT=mceinline]"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)[/FONT]
[FONT=mceinline]"ThreadingModel" = Free[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32][/FONT]
[FONT=mceinline]"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 07:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)[/FONT]
[FONT=mceinline]"ThreadingModel" = Free[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64[/FONT]
[FONT=mceinline]"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)[/FONT]
[FONT=mceinline]"ThreadingModel" = Both[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32][/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline]
========== LOP Check ==========[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline][2011/11/02 17:11:58 | 000,000,000 | ---D | M] -- C:\Users\Tony\AppData\Roaming\Autodesk[/FONT]
[FONT=mceinline][2012/06/19 18:01:02 | 000,000,000 | ---D | M] -- C:\Users\Tony\AppData\Roaming\AVG2012[/FONT]
[FONT=mceinline][2011/10/18 16:34:21 | 000,000,000 | ---D | M] -- C:\Users\Tony\AppData\Roaming\com.w3i.intune[/FONT]
[FONT=mceinline][2011/10/18 16:30:36 | 000,000,000 | ---D | M] -- C:\Users\Tony\AppData\Roaming\Fighters[/FONT]
[FONT=mceinline][2011/08/11 16:08:11 | 000,000,000 | ---D | M] -- C:\Users\Tony\AppData\Roaming\My Battle for Middle-earth Files[/FONT]
[FONT=mceinline][2011/12/12 18:55:32 | 000,000,000 | ---D | M] -- C:\Users\Tony\AppData\Roaming\uTorrent[/FONT]
[FONT=mceinline][2012/10/29 13:29:22 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\.minecraft[/FONT]
[FONT=mceinline][2011/09/18 19:15:09 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\Autodesk[/FONT]
[FONT=mceinline][2012/11/15 20:33:34 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\AVG2013[/FONT]
[FONT=mceinline][2012/08/31 11:26:59 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\Awesomium[/FONT]
[FONT=mceinline][2012/04/15 12:17:36 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\Babylon[/FONT]
[FONT=mceinline][2012/05/02 18:25:28 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\Blender Foundation[/FONT]
[FONT=mceinline][2012/03/22 19:03:19 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\com.w3i.fliptoast[/FONT]
[FONT=mceinline][2012/11/07 17:22:32 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\gtk-2.0[/FONT]
[FONT=mceinline][2011/07/07 15:05:59 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\Hi-Rez Studios[/FONT]
[FONT=mceinline][2012/09/26 13:56:59 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\LolClient[/FONT]
[FONT=mceinline][2011/08/12 11:22:56 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\My Battle for Middle-earth Files[/FONT]
[FONT=mceinline][2012/01/14 13:04:00 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\NationRed[/FONT]
[FONT=mceinline][2012/03/22 16:46:40 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\ooVoo Details[/FONT]
[FONT=mceinline][2011/08/22 09:58:24 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\SanDisk[/FONT]
[FONT=mceinline][2011/10/30 07:46:05 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\Spotify[/FONT]
[FONT=mceinline][2012/05/12 21:29:02 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\Synthesia[/FONT]
[FONT=mceinline][2011/06/26 03:58:26 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\System[/FONT]
[FONT=mceinline][2012/11/12 21:25:22 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\SystemRequirementsLab[/FONT]
[FONT=mceinline][2011/07/29 22:24:37 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\Systweak[/FONT]
[FONT=mceinline][2012/11/15 16:58:40 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\TuneUp Software[/FONT]
[FONT=mceinline][2011/11/01 19:33:14 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\Unity[/FONT]
[FONT=mceinline][2011/06/23 20:52:46 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\VBA-M[/FONT]
[FONT=mceinline][2011/11/07 20:26:40 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\Windows Live Writer[/FONT]
[FONT=mceinline][2011/09/10 22:18:38 | 000,000,000 | -HSD | M] -- C:\Users\Tony&Theodore\AppData\Roaming\wyUpdate AU[/FONT]
[FONT=mceinline][2011/09/10 10:32:32 | 000,000,000 | ---D | M] -- C:\Users\Tony&Theodore\AppData\Roaming\Xilisoft Corporation[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline]
========== Purity Check ==========[/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline] [/FONT]
[FONT=mceinline]
========== Files - Unicode (All) ==========[/FONT]
[FONT=mceinline][2011/09/18 19:36:49 | 005,393,792 | ---- | M] ()(C:\Users\Tony&Theodore\Documents\?a?a?t??d?? - St? t?ap??? p?? ta p???.flv) -- C:\Users\Tony&Theodore\Documents\Καζαντζίδης - Στο τραπέζι που τα πίνω.flv[/FONT]
[FONT=mceinline][2011/09/18 19:35:14 | 005,393,792 | ---- | C] ()(C:\Users\Tony&Theodore\Documents\?a?a?t??d?? - St? t?ap??? p?? ta p???.flv) -- C:\Users\Tony&Theodore\Documents\Καζαντζίδης - Στο τραπέζι που τα πίνω.flv[/FONT]
[FONT=mceinline][/FONT]
[FONT=mceinline]< End of report >[/FONT]