continued...
O1 HOSTS File: ([2006/09/18 14:37:24 | 000,000,761 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\17.7.0.12\coIEPlg.dll File not found
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\17.7.0.12\IPSBHO.DLL File not found
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll (Microsoft Corp.)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Microsoft Live Search Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0552.0\msneshellx.dll (Microsoft Corp.)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Microsoft Live Search Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0552.0\msneshellx.dll (Microsoft Corp.)
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\17.7.0.12\coIEPlg.dll File not found
O3 - HKCU\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\17.7.0.12\coIEPlg.dll File not found
O4:
64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe ()
O4:
64bit: - HKLM..\Run: [HP Remote Software] C:\Program Files\Hewlett-Packard\HP Remote\HP REMOTE V1.0.5.exe ()
O4:
64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe (Intel Corporation)
O4:
64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe ()
O4:
64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe ()
O4:
64bit: - HKLM..\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe (Hewlett-Packard)
O4:
64bit: - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [CLMLServer for HP TouchSmart] c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe (CyberLink)
O4 - HKLM..\Run: [DVDAgent] c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe (CyberLink Corp.)
O4 - HKLM..\Run: [GrooveMonitor] C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation)
O4 - HKLM..\Run: [HP Health Check Scheduler] c:\Program Files (x86)\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard)
O4 - HKLM..\Run: [hpsysdrv] c:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe (Hewlett-Packard)
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe ()
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Microsoft Default Manager] c:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe (Microsoft Corp.)
O4 - HKLM..\Run: [Qwest Personal Digital Vault] C:\Program Files (x86)\Qwest Personal Digital Vault\QwestPersonalDigitalVault.exe ()
O4 - HKLM..\Run: [QwestTouchPointAgent] C:\Program Files (x86)\Qwest\Desktop\QwestTouchPointAgent.exe (Qwest Communications)
O4 - HKLM..\Run: [RoxWatchTray] C:\Program Files (x86)\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe (Sonic Solutions)
O4 - HKLM..\Run: [TSMAgent] c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdateLBPShortCut] c:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdateP2GoShortCut] c:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdatePDIRShortCut] c:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdatePSTShortCut] c:\Program Files (x86)\CyberLink\CyberLink DVD Suite Deluxe\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKCU..\Run: [Logitech Vid] C:\Program Files (x86)\Logitech\Logitech Vid\vid.exe (Logitech Inc.)
O4 - HKCU..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O10:
64bit: - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10}
http://cdn.scan.onecare.live.com/resource/download/scanner/en-us/wlscctrl2.cab (Windows Live OneCare safety scanner control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Java Plug-in 1.6.0_16)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.87.69.150 68.87.85.102
O18:
64bit: - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20:
64bit: - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll ()
O24 - Desktop WallPaper: C:\Users\Office Depot\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O24 - Desktop BackupWallPaper: C:\Users\Office Depot\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{050b1c7a-71bf-11de-b384-00248cf8b4fe}\Shell - "" = AutoRun
O33 - MountPoints2\{050b1c7a-71bf-11de-b384-00248cf8b4fe}\Shell\AutoRun\command - "" = K:\LaunchU3.exe -- File not found
O33 - MountPoints2\{735a699b-ac5b-11de-a0ea-00248cf8b4fe}\Shell - "" = AutoRun
O33 - MountPoints2\{735a699b-ac5b-11de-a0ea-00248cf8b4fe}\Shell\AutoRun\command - "" = K:\LaunchU3.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 90 Days ==========
[2010/09/29 23:31:32 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Users\Office Depot\Desktop\OTL.exe
[2010/09/29 23:17:49 | 000,000,000 | ---D | C] -- C:\Users\Office Depot\Desktop\files_to_file
[2010/09/29 23:16:38 | 000,000,000 | R--D | C] -- C:\Users\Office Depot\Desktop\shortcuts
[2010/09/29 22:49:24 | 000,000,000 | R--D | C] -- C:\32788R22FWJFW
[2010/09/27 23:07:17 | 000,000,000 | ---D | C] -- C:\Users\Office Depot\AppData\Roaming\Avira
[2010/09/27 22:56:02 | 000,051,992 | ---- | C] (AVIRA GmbH) -- C:\Windows\SysWow64\drivers\avgntdd.sys
[2010/09/27 22:56:02 | 000,017,016 | ---- | C] (AVIRA GmbH) -- C:\Windows\SysWow64\drivers\avgntmgr.sys
[2010/09/27 22:56:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2010/09/27 22:56:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira
[2010/09/27 22:51:26 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2010/09/27 22:51:25 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2010/09/27 22:51:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2010/09/27 22:48:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime
[2010/09/27 22:46:04 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2010/09/27 22:46:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2010/09/27 22:42:13 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2010/09/27 21:46:54 | 000,000,000 | ---D | C] -- C:\Users\Office Depot\AppData\Roaming\Malwarebytes
[2010/09/27 21:46:48 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2010/09/27 17:35:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2010/09/27 17:35:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010/09/22 14:22:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2010/09/22 14:22:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2010/07/30 23:03:40 | 013,526,497 | ---- | C] (Oregon Employment Department) -- C:\Users\Office Depot\Otter32Setup.exe
[2010/07/23 08:33:22 | 000,000,000 | ---D | C] -- C:\Users\Office Depot\Desktop\album 7-22-2010
[2010/07/17 15:19:21 | 000,000,000 | ---D | C] -- C:\Users\Office Depot\AppData\Local\CrashDumps
[2010/07/07 03:10:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2
[2010/07/06 14:43:14 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NISx64\1107000.00C
[2010/07/06 08:34:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live
[2010/07/06 08:34:17 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2010/07/06 08:34:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live SkyDrive
[2010/07/06 08:34:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Sync Framework
[2010/07/06 08:33:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Windows Live
[2010/07/06 08:19:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
[2010/07/06 08:12:38 | 000,000,000 | ---D | C] -- C:\Users\Office Depot\AppData\Local\Qwest
[2010/07/06 08:12:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Qwest Personal Digital Vault
[2010/07/06 08:11:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared
[2010/07/06 08:09:52 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NISx64
[2010/07/06 08:09:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Norton Internet Security
[2010/07/06 08:09:30 | 000,000,000 | ---D | C] -- C:\Users\Office Depot\Documents\Symantec
[2010/07/06 07:42:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Qwest
[2010/07/06 07:41:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\supportsoft
[2010/07/06 07:38:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Qwest
[2010/07/06 07:37:51 | 000,000,000 | ---D | C] -- C:\Windows\XSxS
[2010/07/06 07:37:51 | 000,000,000 | ---D | C] -- C:\Users\Office Depot\AppData\Local\Xenocode
[2010/07/06 07:37:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Xenocode
[2010/07/02 16:33:37 | 000,000,000 | ---D | C] -- C:\Users\Office Depot\AppData\Local\2DBoy
[2010/07/02 16:33:37 | 000,000,000 | ---D | C] -- C:\ProgramData\2DBoy
[1 C:\Users\Office Depot\Desktop\*.tmp files -> C:\Users\Office Depot\Desktop\*.tmp -> ]
========== Files - Modified Within 90 Days ==========
[2010/09/29 23:35:31 | 002,488,546 | ---- | M] () -- C:\Windows\SysNative\drivers\NISx64\1107000.00C\Cat.DB
[2010/09/29 23:34:43 | 002,621,440 | -HS- | M] () -- C:\Users\Office Depot\ntuser.dat
[2010/09/29 23:31:35 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Office Depot\Desktop\OTL.exe
[2010/09/29 23:29:12 | 000,707,456 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010/09/29 23:29:12 | 000,607,168 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010/09/29 23:29:12 | 000,104,808 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010/09/29 23:22:51 | 000,003,616 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/09/29 23:22:51 | 000,003,616 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/09/29 23:22:49 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/09/29 23:22:46 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/09/29 23:22:08 | 000,524,288 | -HS- | M] () -- C:\Users\Office Depot\ntuser.dat{2099d45c-ca9e-11df-94f5-00248cf8b4fe}.TMContainer00000000000000000001.regtrans-ms
[2010/09/29 23:22:08 | 000,065,536 | -HS- | M] () -- C:\Users\Office Depot\ntuser.dat{2099d45c-ca9e-11df-94f5-00248cf8b4fe}.TM.blf
[2010/09/27 22:27:51 | 000,001,460 | ---- | M] () -- C:\Users\Office Depot\AppData\Local\d3d9caps64.dat
[2010/09/27 22:27:46 | 000,002,551 | ---- | M] () -- C:\Users\Office Depot\Application Data\Microsoft\Internet Explorer\Quick Launch\HP MediaSmart.lnk
[2010/09/27 18:47:08 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\drivers\lvuvc.hs
[2010/09/27 18:42:52 | 000,442,864 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010/09/27 18:41:54 | 000,524,288 | -HS- | M] () -- C:\Users\Office Depot\ntuser.dat{2099d45c-ca9e-11df-94f5-00248cf8b4fe}.TMContainer00000000000000000002.regtrans-ms
[2010/09/27 18:41:17 | 000,000,258 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2010/09/27 17:45:21 | 000,524,288 | -HS- | M] () -- C:\Users\Office Depot\ntuser.dat{41224832-4878-11df-ae4b-00248cf8b4fe}.TMContainer00000000000000000001.regtrans-ms
[2010/09/27 17:45:21 | 000,065,536 | -HS- | M] () -- C:\Users\Office Depot\ntuser.dat{41224832-4878-11df-ae4b-00248cf8b4fe}.TM.blf
[2010/08/31 14:38:51 | 000,000,552 | ---- | M] () -- C:\Windows\tasks\PCDRScheduledMaintenance.job
[2010/07/30 23:03:40 | 013,526,497 | ---- | M] (Oregon Employment Department) -- C:\Users\Office Depot\Otter32Setup.exe
[2010/07/30 22:33:45 | 000,035,328 | ---- | M] () -- C:\Users\Office Depot\Documents\THEMES 2010.doc
[2010/07/28 17:52:35 | 000,614,416 | -H-- | M] () -- C:\Users\Office Depot\Desktop\xOx0.dat
[2010/07/28 17:31:19 | 000,038,450 | ---- | M] () -- C:\Users\Office Depot\AppData\Roaming\Comma Separated Values (DOS).ADR
[2010/07/27 18:55:50 | 000,237,856 | ---- | M] () -- C:\Windows\SysNative\dnssdX.dll
[2010/07/27 18:55:50 | 000,119,584 | ---- | M] () -- C:\Windows\SysNative\dns-sd.exe
[2010/07/27 18:55:50 | 000,095,520 | ---- | M] () -- C:\Windows\SysNative\dnssd.dll
[2010/07/27 18:55:50 | 000,069,408 | ---- | M] () -- C:\Windows\SysNative\jdns_sd.dll
[2010/07/07 16:19:48 | 000,000,970 | ---- | M] () -- C:\Users\Office Depot\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook.lnk
[2010/07/07 16:18:27 | 000,124,816 | ---- | M] () -- C:\Users\Office Depot\AppData\Local\GDIPFONTCACHEV1.DAT
[2010/07/07 03:03:21 | 000,000,250 | ---- | M] () -- C:\Windows\win.ini
[2010/07/06 10:50:57 | 000,031,232 | ---- | M] () -- C:\Users\Office Depot\Spummer Lesson Picasso.doc
[2010/07/06 08:15:40 | 000,216,266 | ---- | M] () -- C:\Windows\WLIcon.ico
[2010/07/06 08:11:00 | 000,173,104 | ---- | M] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS
[2010/07/06 08:11:00 | 000,007,440 | ---- | M] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.CAT
[2010/07/06 08:11:00 | 000,000,854 | ---- | M] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.INF
[2010/07/06 07:49:13 | 000,031,089 | ---- | M] () -- C:\Users\Office Depot\Documents\Qwest Configuration Details.mht
[1 C:\Users\Office Depot\Desktop\*.tmp files -> C:\Users\Office Depot\Desktop\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/09/27 22:56:02 | 000,116,568 | ---- | C] () -- C:\Windows\SysNative\drivers\avipbb.sys
[2010/09/27 22:56:02 | 000,081,072 | ---- | C] () -- C:\Windows\SysNative\drivers\avgntflt.sys
[2010/09/27 22:54:35 | 000,421,308 | ---- | C] () -- C:\Users\Office Depot\AppData\Local\dd_vcredistMSI0A62.txt
[2010/09/27 22:54:34 | 000,039,034 | ---- | C] () -- C:\Users\Office Depot\AppData\Local\dd_vcredistUI0A62.txt
[2010/09/27 22:51:53 | 000,002,426 | ---- | C] () -- C:\Users\Office Depot\AppData\Local\dd_vcredistMSI0851.txt
[2010/09/27 22:51:52 | 000,039,088 | ---- | C] () -- C:\Users\Office Depot\AppData\Local\dd_vcredistUI0851.txt
[2010/09/27 21:46:46 | 000,024,664 | ---- | C] () -- C:\Windows\SysNative\drivers\mbam.sys
[2010/09/27 18:17:49 | 000,524,288 | -HS- | C] () -- C:\Users\Office Depot\ntuser.dat{2099d45c-ca9e-11df-94f5-00248cf8b4fe}.TMContainer00000000000000000002.regtrans-ms