NoobOfLameness
Posts: 25 +0
From OTL.txt (continued):
========== Files - Modified Within 30 Days ==========
[2012/08/07 18:47:03 | 000,000,890 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/08/07 18:32:29 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Michelle\Desktop\OTL.exe
[2012/08/07 18:31:00 | 000,000,830 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2012/08/07 18:00:01 | 000,000,492 | ---- | M] () -- C:\windows\tasks\1-Click Maintenance.job
[2012/08/07 17:22:17 | 000,000,027 | ---- | M] () -- C:\windows\System32\drivers\etc\hosts
[2012/08/07 16:42:02 | 004,728,030 | R--- | M] (Swearware) -- C:\Users\Michelle\Desktop\ComboFix.exe
[2012/08/07 14:38:30 | 010,665,032 | ---- | M] (OPSWAT, Inc.) -- C:\Users\Michelle\Desktop\AppRemover.exe
[2012/08/07 13:47:02 | 000,000,886 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/08/07 11:44:11 | 000,015,792 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/08/07 11:44:11 | 000,015,792 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/08/07 11:39:33 | 000,628,394 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2012/08/07 11:39:33 | 000,108,540 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2012/08/07 11:30:43 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2012/08/07 11:30:26 | 1504,399,360 | -HS- | M] () -- C:\hiberfil.sys
[2012/08/06 20:56:26 | 000,000,512 | ---- | M] () -- C:\Users\Michelle\Desktop\MBR.dat
[2012/08/06 20:20:15 | 004,731,392 | ---- | M] (AVAST Software) -- C:\Users\Michelle\Desktop\aswMBR.exe
[2012/08/06 13:32:17 | 000,123,952 | ---- | M] (Symantec Corporation) -- C:\windows\System32\drivers\SYMEVENT.SYS
[2012/08/06 13:32:17 | 000,010,671 | ---- | M] () -- C:\windows\System32\drivers\SYMEVENT.CAT
[2012/08/06 13:32:17 | 000,000,805 | ---- | M] () -- C:\windows\System32\drivers\SYMEVENT.INF
[2012/08/06 01:16:31 | 000,105,946 | ---- | M] () -- C:\Users\Michelle\Desktop\Schedule-Fall Quarter 2012.jpg
[2012/07/30 17:42:06 | 000,000,000 | ---- | M] () -- C:\t178.1
[2012/07/24 15:56:17 | 000,083,634 | ---- | M] () -- C:\Users\Michelle\Desktop\computer registration letter for new students 2012 July update.pdf
[2012/07/21 19:27:08 | 000,002,086 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2012/07/21 19:26:59 | 000,002,577 | ---- | M] () -- C:\windows\System32\config.nt
[2012/07/21 12:03:43 | 000,001,078 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/07/18 20:07:48 | 000,470,561 | ---- | M] () -- C:\Users\Michelle\Desktop\IOGraph.exe
[2012/07/17 14:12:36 | 000,172,006 | ---- | M] () -- C:\Users\Michelle\Desktop\Master Promissory Note for Perkins Loans.pdf
[2012/07/16 16:24:47 | 000,151,543 | ---- | M] () -- C:\Users\Michelle\Desktop\Master Promissory Note for Direct Loans.pdf
[2012/07/11 22:02:22 | 000,007,620 | ---- | M] () -- C:\Users\Michelle\AppData\Local\Resmon.ResmonCfg
[2012/07/11 12:46:55 | 000,416,768 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2012/07/10 21:20:41 | 000,757,436 | ---- | M] () -- C:\Users\Michelle\Desktop\General Catalog Supplement 2012-2014.pdf
[2012/07/10 21:19:33 | 015,448,325 | ---- | M] () -- C:\Users\Michelle\Desktop\General Catalog 2012-2014.pdf
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
[1 C:\Users\Michelle\Desktop\*.tmp files -> C:\Users\Michelle\Desktop\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012/08/07 17:04:05 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2012/08/07 17:04:04 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2012/08/07 17:04:04 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2012/08/07 17:04:04 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2012/08/07 17:04:04 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2012/08/06 20:56:26 | 000,000,512 | ---- | C] () -- C:\Users\Michelle\Desktop\MBR.dat
[2012/08/06 01:16:31 | 000,105,946 | ---- | C] () -- C:\Users\Michelle\Desktop\Schedule-Fall Quarter 2012.jpg
[2012/07/30 17:42:06 | 000,000,000 | ---- | C] () -- C:\t178.1
[2012/07/24 15:56:15 | 000,083,634 | ---- | C] () -- C:\Users\Michelle\Desktop\computer registration letter for new students 2012 July update.pdf
[2012/07/21 19:27:08 | 000,002,086 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2012/07/18 20:07:45 | 000,470,561 | ---- | C] () -- C:\Users\Michelle\Desktop\IOGraph.exe
[2012/07/17 14:06:09 | 000,172,006 | ---- | C] () -- C:\Users\Michelle\Desktop\Master Promissory Note for Perkins Loans.pdf
[2012/07/16 16:24:47 | 000,151,543 | ---- | C] () -- C:\Users\Michelle\Desktop\Master Promissory Note for Direct Loans.pdf
[2012/07/10 21:20:41 | 000,757,436 | ---- | C] () -- C:\Users\Michelle\Desktop\General Catalog Supplement 2012-2014.pdf
[2012/07/10 21:19:31 | 015,448,325 | ---- | C] () -- C:\Users\Michelle\Desktop\General Catalog 2012-2014.pdf
[2012/06/23 22:21:12 | 000,033,758 | ---- | C] () -- C:\Users\Michelle\AppData\Local\dt.dat
[2011/12/26 15:17:25 | 000,723,294 | ---- | C] () -- C:\windows\unins000.exe
[2011/12/26 15:17:25 | 000,136,470 | ---- | C] () -- C:\windows\unins000.dat
[2011/10/20 22:46:10 | 000,007,620 | ---- | C] () -- C:\Users\Michelle\AppData\Local\Resmon.ResmonCfg
[2009/12/27 12:58:42 | 000,000,000 | ---- | C] () -- C:\Users\Michelle\AppData\Roaming\wklnhst.dat
========== LOP Check ==========
[2011/05/01 22:45:17 | 000,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\TuneUp Software
[2011/05/01 22:45:17 | 000,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\TuneUp Software
[2011/10/13 20:26:22 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\AVG2012
[2009/12/27 12:58:44 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\Template
[2010/03/20 19:58:58 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\Toshiba
[2009/12/27 13:25:25 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\TuneUp Software
[2012/07/18 20:07:04 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\WhatPulse
[2010/07/21 14:15:10 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\WildTangent
[2009/12/27 12:32:40 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\WinBatch
[2010/10/22 00:42:45 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\Windows Live Writer
[2012/08/07 18:00:01 | 000,000,492 | ---- | M] () -- C:\windows\Tasks\1-Click Maintenance.job
[2012/07/07 12:35:03 | 000,032,638 | ---- | M] () -- C:\windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
< End of report >
========== Files - Modified Within 30 Days ==========
[2012/08/07 18:47:03 | 000,000,890 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/08/07 18:32:29 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Michelle\Desktop\OTL.exe
[2012/08/07 18:31:00 | 000,000,830 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2012/08/07 18:00:01 | 000,000,492 | ---- | M] () -- C:\windows\tasks\1-Click Maintenance.job
[2012/08/07 17:22:17 | 000,000,027 | ---- | M] () -- C:\windows\System32\drivers\etc\hosts
[2012/08/07 16:42:02 | 004,728,030 | R--- | M] (Swearware) -- C:\Users\Michelle\Desktop\ComboFix.exe
[2012/08/07 14:38:30 | 010,665,032 | ---- | M] (OPSWAT, Inc.) -- C:\Users\Michelle\Desktop\AppRemover.exe
[2012/08/07 13:47:02 | 000,000,886 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/08/07 11:44:11 | 000,015,792 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/08/07 11:44:11 | 000,015,792 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/08/07 11:39:33 | 000,628,394 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2012/08/07 11:39:33 | 000,108,540 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2012/08/07 11:30:43 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2012/08/07 11:30:26 | 1504,399,360 | -HS- | M] () -- C:\hiberfil.sys
[2012/08/06 20:56:26 | 000,000,512 | ---- | M] () -- C:\Users\Michelle\Desktop\MBR.dat
[2012/08/06 20:20:15 | 004,731,392 | ---- | M] (AVAST Software) -- C:\Users\Michelle\Desktop\aswMBR.exe
[2012/08/06 13:32:17 | 000,123,952 | ---- | M] (Symantec Corporation) -- C:\windows\System32\drivers\SYMEVENT.SYS
[2012/08/06 13:32:17 | 000,010,671 | ---- | M] () -- C:\windows\System32\drivers\SYMEVENT.CAT
[2012/08/06 13:32:17 | 000,000,805 | ---- | M] () -- C:\windows\System32\drivers\SYMEVENT.INF
[2012/08/06 01:16:31 | 000,105,946 | ---- | M] () -- C:\Users\Michelle\Desktop\Schedule-Fall Quarter 2012.jpg
[2012/07/30 17:42:06 | 000,000,000 | ---- | M] () -- C:\t178.1
[2012/07/24 15:56:17 | 000,083,634 | ---- | M] () -- C:\Users\Michelle\Desktop\computer registration letter for new students 2012 July update.pdf
[2012/07/21 19:27:08 | 000,002,086 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2012/07/21 19:26:59 | 000,002,577 | ---- | M] () -- C:\windows\System32\config.nt
[2012/07/21 12:03:43 | 000,001,078 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/07/18 20:07:48 | 000,470,561 | ---- | M] () -- C:\Users\Michelle\Desktop\IOGraph.exe
[2012/07/17 14:12:36 | 000,172,006 | ---- | M] () -- C:\Users\Michelle\Desktop\Master Promissory Note for Perkins Loans.pdf
[2012/07/16 16:24:47 | 000,151,543 | ---- | M] () -- C:\Users\Michelle\Desktop\Master Promissory Note for Direct Loans.pdf
[2012/07/11 22:02:22 | 000,007,620 | ---- | M] () -- C:\Users\Michelle\AppData\Local\Resmon.ResmonCfg
[2012/07/11 12:46:55 | 000,416,768 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2012/07/10 21:20:41 | 000,757,436 | ---- | M] () -- C:\Users\Michelle\Desktop\General Catalog Supplement 2012-2014.pdf
[2012/07/10 21:19:33 | 015,448,325 | ---- | M] () -- C:\Users\Michelle\Desktop\General Catalog 2012-2014.pdf
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
[1 C:\Users\Michelle\Desktop\*.tmp files -> C:\Users\Michelle\Desktop\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012/08/07 17:04:05 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2012/08/07 17:04:04 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2012/08/07 17:04:04 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2012/08/07 17:04:04 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2012/08/07 17:04:04 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2012/08/06 20:56:26 | 000,000,512 | ---- | C] () -- C:\Users\Michelle\Desktop\MBR.dat
[2012/08/06 01:16:31 | 000,105,946 | ---- | C] () -- C:\Users\Michelle\Desktop\Schedule-Fall Quarter 2012.jpg
[2012/07/30 17:42:06 | 000,000,000 | ---- | C] () -- C:\t178.1
[2012/07/24 15:56:15 | 000,083,634 | ---- | C] () -- C:\Users\Michelle\Desktop\computer registration letter for new students 2012 July update.pdf
[2012/07/21 19:27:08 | 000,002,086 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2012/07/18 20:07:45 | 000,470,561 | ---- | C] () -- C:\Users\Michelle\Desktop\IOGraph.exe
[2012/07/17 14:06:09 | 000,172,006 | ---- | C] () -- C:\Users\Michelle\Desktop\Master Promissory Note for Perkins Loans.pdf
[2012/07/16 16:24:47 | 000,151,543 | ---- | C] () -- C:\Users\Michelle\Desktop\Master Promissory Note for Direct Loans.pdf
[2012/07/10 21:20:41 | 000,757,436 | ---- | C] () -- C:\Users\Michelle\Desktop\General Catalog Supplement 2012-2014.pdf
[2012/07/10 21:19:31 | 015,448,325 | ---- | C] () -- C:\Users\Michelle\Desktop\General Catalog 2012-2014.pdf
[2012/06/23 22:21:12 | 000,033,758 | ---- | C] () -- C:\Users\Michelle\AppData\Local\dt.dat
[2011/12/26 15:17:25 | 000,723,294 | ---- | C] () -- C:\windows\unins000.exe
[2011/12/26 15:17:25 | 000,136,470 | ---- | C] () -- C:\windows\unins000.dat
[2011/10/20 22:46:10 | 000,007,620 | ---- | C] () -- C:\Users\Michelle\AppData\Local\Resmon.ResmonCfg
[2009/12/27 12:58:42 | 000,000,000 | ---- | C] () -- C:\Users\Michelle\AppData\Roaming\wklnhst.dat
========== LOP Check ==========
[2011/05/01 22:45:17 | 000,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\TuneUp Software
[2011/05/01 22:45:17 | 000,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\TuneUp Software
[2011/10/13 20:26:22 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\AVG2012
[2009/12/27 12:58:44 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\Template
[2010/03/20 19:58:58 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\Toshiba
[2009/12/27 13:25:25 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\TuneUp Software
[2012/07/18 20:07:04 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\WhatPulse
[2010/07/21 14:15:10 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\WildTangent
[2009/12/27 12:32:40 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\WinBatch
[2010/10/22 00:42:45 | 000,000,000 | ---D | M] -- C:\Users\Michelle\AppData\Roaming\Windows Live Writer
[2012/08/07 18:00:01 | 000,000,492 | ---- | M] () -- C:\windows\Tasks\1-Click Maintenance.job
[2012/07/07 12:35:03 | 000,032,638 | ---- | M] () -- C:\windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
< End of report >