OTL p1
Yes, it is better! No more pop ups! Really appreciate your help!
OTL logfile created on: 1/12/2012 8:54:09 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Cheewen Ng\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.99 Gb Total Physical Memory | 1.86 Gb Available Physical Memory | 62.10% Memory free
7.38 Gb Paging File | 6.20 Gb Available in Paging File | 83.95% Paging File free
Paging file location(s): c:\pagefile.sys 4591 6000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 142.17 Gb Total Space | 36.29 Gb Free Space | 25.52% Space Free | Partition Type: NTFS
Drive N: | 81.72 Gb Total Space | 66.74 Gb Free Space | 81.67% Space Free | Partition Type: NTFS
Computer Name: CHEEWEN-PC | User Name: Cheewen Ng | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/01/12 20:36:14 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Cheewen Ng\Desktop\OTL.exe
PRC - [2011/04/01 03:31:38 | 002,271,608 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
PRC - [2010/05/28 08:01:45 | 000,202,256 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2010/04/01 04:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
PRC - [2009/11/25 08:24:14 | 004,009,592 | ---- | M] (Almico Software (
www.almico.com)) -- C:\Program Files\SpeedFan\speedfan.exe
PRC - [2009/10/26 08:54:38 | 000,115,560 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\ccApp.exe
PRC - [2009/10/26 08:54:38 | 000,108,392 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
PRC - [2009/10/26 08:54:34 | 001,864,888 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\Symantec Endpoint Protection\Smc.exe
PRC - [2009/10/26 08:54:34 | 001,455,432 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\Symantec Endpoint Protection\SmcGui.exe
PRC - [2009/10/26 08:54:32 | 002,477,304 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe
PRC - [2009/04/11 01:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009/01/26 14:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
PRC - [2008/06/11 21:43:26 | 000,640,376 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
PRC - [2008/04/02 13:07:56 | 000,147,456 | ---- | M] (Sony Corporation) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
PRC - [2008/04/02 13:07:54 | 000,184,320 | ---- | M] (Sony Corporation) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
PRC - [2008/04/02 13:07:38 | 000,279,848 | ---- | M] (Sony Corporation) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
PRC - [2008/03/07 13:48:38 | 000,921,600 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
PRC - [2008/02/21 12:26:20 | 000,182,392 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
PRC - [2008/02/21 12:26:20 | 000,100,472 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe
PRC - [2007/11/21 14:38:28 | 000,311,296 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\ISB Utility\ISBMgr.exe
PRC - [2007/11/09 19:34:28 | 000,104,960 | ---- | M] (ArcSoft, Inc.) -- C:\Program Files\ArcSoft\Magic-i Visual Effects\uCamMonitor.exe
PRC - [2007/10/30 13:04:08 | 001,804,840 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
PRC - [2007/10/30 13:04:08 | 000,748,072 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
PRC - [2007/06/05 15:20:32 | 000,177,704 | ---- | M] () -- C:\Windows\System32\PSIService.exe
PRC - [2007/01/04 21:48:52 | 000,112,152 | R--- | M] (InterVideo) -- c:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
PRC - [2007/01/01 16:22:02 | 003,739,648 | ---- | M] (Google) -- C:\Users\Cheewen Ng\AppData\Roaming\Google\Google Talk\googletalk.exe
========== Modules (No Company Name) ==========
MOD - [2012/01/12 18:44:51 | 000,192,512 | ---- | M] () -- C:\Users\Cheewen Ng\AppData\Local\temp\sfamcc00001.dll
MOD - [2012/01/12 18:44:51 | 000,172,032 | ---- | M] () -- C:\Users\Cheewen Ng\AppData\Local\temp\sfareca00001.dll
MOD - [2010/03/03 15:33:12 | 000,067,872 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2008/02/04 19:08:45 | 000,249,856 | ---- | M] () -- C:\Windows\System32\igfxTMM.dll
MOD - [2007/10/30 12:57:58 | 000,126,976 | ---- | M] () -- C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll
MOD - [2007/10/30 12:44:52 | 000,393,216 | ---- | M] () -- C:\Windows\System32\btwhidcs.dll
========== Win32 Services (SafeList) ==========
SRV - [2011/06/23 13:32:51 | 000,651,720 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011/04/01 03:31:38 | 002,271,608 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2009/10/26 08:54:38 | 000,108,392 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe -- (ccSetMgr)
SRV - [2009/10/26 08:54:38 | 000,108,392 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe -- (ccEvtMgr)
SRV - [2009/10/26 08:54:36 | 000,341,320 | ---- | M] (Symantec Corporation) [Disabled | Stopped] -- C:\Program Files\Symantec\Symantec Endpoint Protection\SNAC.EXE -- (SNAC)
SRV - [2009/10/26 08:54:34 | 001,864,888 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec\Symantec Endpoint Protection\Smc.exe -- (SmcService)
SRV - [2009/10/26 08:54:32 | 002,477,304 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe -- (Symantec AntiVirus)
SRV - [2009/07/13 11:06:15 | 003,093,880 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Symantec\LiveUpdate\LuComServer_3_3.EXE -- (LiveUpdate)
SRV - [2009/01/26 14:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) [Auto | Running] -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe -- (SBSDWSCService)
SRV - [2008/04/02 13:07:58 | 000,073,728 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe -- (VAIO Entertainment TV Device Arbitration Service)
SRV - [2008/04/02 13:07:56 | 000,147,456 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe -- (VzFw)
SRV - [2008/04/02 13:07:54 | 000,184,320 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe -- (VzCdbSvc)
SRV - [2008/04/02 13:07:38 | 000,279,848 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe -- (Vcsw)
SRV - [2008/03/04 22:58:30 | 000,063,328 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\VAIO Media plus\SOHDs.exe -- (SOHDs)
SRV - [2008/03/04 22:56:42 | 000,350,048 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\VAIO Media plus\SOHDms.exe -- (SOHDms)
SRV - [2008/03/04 22:54:50 | 000,104,288 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\VAIO Media plus\SOHCImp.exe -- (SOHCImp)
SRV - [2008/03/03 16:45:48 | 000,333,088 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe -- (VcmIAlzMgr)
SRV - [2008/03/03 15:27:14 | 000,087,328 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper.exe -- (VcmXmlIfHelper)
SRV - [2008/02/21 12:26:20 | 000,182,392 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\VAIO Event Service\VESMgr.exe -- (VAIO Event Service)
SRV - [2007/11/28 04:08:02 | 000,077,824 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe -- (SPTISRV)
SRV - [2007/11/28 04:02:20 | 000,053,248 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe -- (MSCSPTISRV)
SRV - [2007/11/28 03:43:44 | 000,053,248 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe -- (PACSPTISVR)
SRV - [2007/11/09 19:34:28 | 000,104,960 | ---- | M] (ArcSoft, Inc.) [Auto | Running] -- C:\Program Files\ArcSoft\Magic-i Visual Effects\uCamMonitor.exe -- (uCamMonitor)
SRV - [2007/06/05 15:20:32 | 000,177,704 | ---- | M] () [Auto | Running] -- C:\Windows\System32\PSIService.exe -- (ProtexisLicensing)
SRV - [2007/01/04 21:48:52 | 000,112,152 | R--- | M] (InterVideo) [Auto | Running] -- c:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr)
========== Driver Services (SafeList) ==========
DRV - [2011/11/08 04:00:00 | 000,374,392 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2011/11/08 04:00:00 | 000,106,104 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2011/08/04 03:00:00 | 001,576,312 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Symantec\Definitions\VirusDefs\20120111.018\NAVEX15.SYS -- (NAVEX15)
DRV - [2011/08/04 03:00:00 | 000,086,136 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Symantec\Definitions\VirusDefs\20120111.018\NAVENG.SYS -- (NAVENG)
DRV - [2011/07/08 16:44:14 | 000,167,936 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\wpshelper.sys -- (WpsHelper)
DRV - [2010/06/23 09:21:32 | 000,259,176 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
DRV - [2010/05/28 23:42:39 | 000,124,976 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SYMEVENT.SYS -- (SymEvent)
DRV - [2010/05/28 16:53:21 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010/02/03 14:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2009/10/26 08:54:42 | 000,042,312 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\WPSDRVnt.sys -- (WPS)
DRV - [2009/10/26 08:54:40 | 000,320,560 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\srtspl.sys -- (SRTSPL)
DRV - [2009/10/26 08:54:40 | 000,043,696 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\srtspx.sys -- (SRTSPX)
DRV - [2009/10/26 08:54:38 | 000,281,648 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\Windows\System32\drivers\srtsp.sys -- (SRTSP)
DRV - [2009/10/26 08:54:38 | 000,092,488 | ---- | M] (Symantec Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\SYSTEM32\Drivers\SysPlant.sys -- (SysPlant)
DRV - [2009/10/26 08:54:38 | 000,050,064 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Teefer2.sys -- (Teefer2)
DRV - [2009/10/26 08:54:30 | 000,421,424 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys -- (SPBBCDrv)
DRV - [2009/10/26 08:54:30 | 000,188,080 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\Drivers\SYMTDI.SYS -- (SYMTDI)
DRV - [2009/10/26 08:54:30 | 000,026,416 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\SYMREDRV.SYS -- (SYMREDRV)
DRV - [2009/10/26 08:54:28 | 000,023,888 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\COH_Mon.sys -- (COH_Mon)
DRV - [2008/10/09 15:42:42 | 000,017,408 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\KMWDFILTER.sys -- (KMWDFILTER)
DRV - [2008/02/12 19:01:28 | 000,073,472 | ---- | M] (Ricoh) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\R5U870FLx86.sys -- (R5U870FLx86)
DRV - [2008/02/12 19:01:28 | 000,043,904 | ---- | M] (Ricoh) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\R5U870FUx86.sys -- (R5U870FUx86)
DRV - [2008/02/06 19:03:27 | 000,008,192 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2008/01/30 19:33:28 | 000,017,408 | ---- | M] (ArcSoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ArcSoftKsUFilter.sys -- (ArcSoftKsUFilter)
DRV - [2007/12/16 20:57:23 | 000,009,344 | ---- | M] (Sony Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SFEP.sys -- (SFEP)
DRV - [2007/12/13 19:40:06 | 000,010,216 | ---- | M] (Sony Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\DMICall.sys -- (DMICall)
DRV - [2007/11/15 19:29:22 | 000,818,688 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ti21sony.sys -- (ti21sony)
DRV - [2007/09/18 22:29:09 | 002,222,080 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw4v32.sys -- (NETw4v32) Intel(R)
DRV - [2007/05/26 03:03:06 | 000,128,104 | R--- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\WimFltr.sys -- (WimFltr)
DRV - [2007/04/17 22:09:28 | 000,011,032 | ---- | M] (InterVideo) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\regi.sys -- (regi)
DRV - [2006/09/24 08:28:46 | 000,005,248 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Boot | Running] -- C:\Windows\system32\speedfan.sys -- (speedfan)
DRV - [1996/04/03 14:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\system32\giveio.sys -- (giveio)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://search.searchcompletion.com/?si=10205&home=1
IE - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [Binary data over 100 bytes]
IE - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL =
http://search.searchcompletion.com/?si=10205&home=1
IE - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://google.com/
IE - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://search.searchcompletion.com/?si=10205&home=1
IE - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page =
http://search.searchcompletion.com/?si=10205&home=1
IE - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: "Complitly"
FF - prefs.js..browser.search.defaultenginename: "Complitly"
FF - prefs.js..browser.search.order.1: "Complitly"
FF - prefs.js..browser.search.update: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.ca/"
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.7.3
FF - prefs.js..extensions.enabledItems: {fe0258ab-4f74-43a1-8781-bcdf340f9ee9}:2.6.4
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..keyword.URL: "http://search.searchcompletion.com/?bs=1&si=10205&q="
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.732: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.3.732: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=1.0.0.0: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.732: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Cheewen Ng\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Cheewen Ng\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Cheewen Ng\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Cheewen Ng\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.22\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/09/15 10:14:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.22\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/12/24 22:00:02 | 000,000,000 | ---D | M]
[2010/05/27 23:11:10 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Cheewen Ng\AppData\Roaming\Mozilla\Extensions
[2012/01/07 12:41:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Cheewen Ng\AppData\Roaming\Mozilla\Firefox\Profiles\uciu5qj0.default\extensions
[2010/05/30 01:09:18 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Cheewen Ng\AppData\Roaming\Mozilla\Firefox\Profiles\uciu5qj0.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/05/28 09:17:36 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Cheewen Ng\AppData\Roaming\Mozilla\Firefox\Profiles\uciu5qj0.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2010/08/09 20:20:02 | 000,000,000 | ---D | M] (Redirect Remover) -- C:\Users\Cheewen Ng\AppData\Roaming\Mozilla\Firefox\Profiles\uciu5qj0.default\extensions\{fe0258ab-4f74-43a1-8781-bcdf340f9ee9}
[2011/12/10 00:49:06 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010/12/02 20:24:09 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011/01/23 17:18:01 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2011/03/13 13:11:09 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2010/06/11 13:05:14 | 000,253,952 | ---- | M] () -- C:\Program Files\mozilla firefox\components\CheckTudouVa.dll
[2011/02/02 20:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011/12/24 22:27:13 | 000,003,195 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\Complitly.xml
O1 HOSTS File: ([2012/01/11 22:24:11 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe (Symantec Corporation)
O4 - HKLM..\Run: [ISBMgr.exe] C:\Program Files\Sony\ISB Utility\ISBMgr.exe (Sony Corporation)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKU\S-1-5-21-1789908265-441396232-4072253329-1000..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-1789908265-441396232-4072253329-1000..\Run: [googletalk] C:\Users\Cheewen Ng\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1789908265-441396232-4072253329-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html File not found
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (Intertrust Technologies, Inc.)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 64.71.255.198
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CD724545-1010-4E83-A4B6-442088A955DE}: DhcpNameServer = 64.71.255.198
O20 - AppInit_DLLs: (C:\Windows\System32\acaptuser32.dll) -C:\Windows\System32\acaptuser32.dll (Adobe Systems, Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\VESWinlogon: DllName - (VESWinlogon.dll) - C:\Windows\System32\VESWinlogon.dll (Sony Corporation)
O24 - Desktop WallPaper: C:\Users\Cheewen Ng\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O24 - Desktop BackupWallPaper: C:\Users\Cheewen Ng\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 16:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.dvsd - C:\Program Files\Common Files\Sony Shared\VideoLib\sonydv.dll (Sony Corporation)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2012/01/12 20:36:13 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\Cheewen Ng\Desktop\OTL.exe
[2012/01/12 20:33:11 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{C2685970-9D98-4EEC-8DC3-5892BA6FDAD8}
[2012/01/12 20:32:37 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{44EF32F8-515B-48D0-966E-85F36C122CEB}
[2012/01/11 22:30:12 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2012/01/11 22:30:11 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\temp
[2012/01/11 22:24:18 | 000,000,000 | ---D | C] -- C:\$RECYCLE.BIN
[2012/01/11 22:04:02 | 000,000,000 | ---D | C] -- C:\ComboFix
[2012/01/11 19:04:19 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{64298741-F1CB-4B48-9412-C48911066F8D}
[2012/01/11 19:03:25 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{4B32D155-FE26-4715-9233-80F8F8DF956B}
[2012/01/10 21:13:41 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{8592363A-2E73-4464-9B5F-16AF690F7276}
[2012/01/10 21:13:28 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{083AD1DF-D139-474F-B005-817ECFD854EA}
[2012/01/10 19:29:41 | 000,046,640 | ---- | C] (Symantec Corporation) -- C:\Windows\System32\msln.exe
[2012/01/09 22:43:06 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2012/01/09 22:43:06 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2012/01/09 22:43:05 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2012/01/09 22:42:58 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2012/01/09 22:40:08 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/01/09 20:33:47 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Roaming\Malwarebytes
[2012/01/09 20:33:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012/01/09 20:33:40 | 000,020,464 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2012/01/09 20:33:40 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012/01/09 19:14:40 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{A03A1812-11C3-4F51-BE93-7DC7F9BC4434}
[2012/01/09 19:14:26 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{AD900ECA-2375-4771-8413-07CB86333587}
[2012/01/09 07:14:07 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{F8C11F14-3B67-4701-B36A-9198D3C54184}
[2012/01/09 07:13:26 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{F70A7C40-6F69-4707-A971-88AA1E6A9DF4}
[2012/01/08 12:11:16 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{6852BF4E-389E-42FB-B046-46CFDAB74569}
[2012/01/08 12:11:02 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{74D0923E-1DA8-4309-84E9-C584BE5D86DA}
[2012/01/08 00:10:58 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{727FE0F7-446E-41DE-B847-FDE2695C0826}
[2012/01/08 00:10:44 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{8731B9D9-4753-49F6-9F3E-0AABCD1761CD}
[2012/01/07 12:10:24 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{0D5EE393-01C1-47AC-A497-9562C6450903}
[2012/01/07 12:09:11 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{69FE61F8-0D01-4B03-90F4-AF22B725B35A}
[2012/01/06 19:10:48 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{0AF6863F-7980-4648-B213-831173D9EE2F}
[2012/01/06 19:10:32 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{845031FE-F467-480E-9035-1EF5864819D4}
[2012/01/06 07:10:12 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{84CF9663-2AD9-4272-A8F9-C6A95AA7C6B6}
[2012/01/05 18:43:16 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{C48979F8-6F4B-45F8-9E63-21C309CDCF49}
[2012/01/05 18:43:14 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{71575716-115F-42AC-826A-77B3C4262AD9}
[2012/01/05 06:42:49 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{4053C5A1-ED96-4B93-9977-CF03655DE575}
[2012/01/05 06:41:47 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{A2AD6664-B9CF-46F6-907A-39AAC2089BEF}
[2012/01/04 12:55:39 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{54D3D57E-8813-4183-8F24-8614CBE2808B}
[2012/01/04 12:54:37 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{461548B5-BB44-40CE-ACF3-3BCB285F7078}
[2012/01/04 00:54:31 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{E1DA432D-4237-4037-9780-F26B28C18517}
[2012/01/04 00:54:18 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{9B7F547E-F315-4211-8DF1-227EED4E8823}
[2012/01/03 12:54:15 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{08A35BC1-F428-447A-AD38-EFB11E3AFE73}
[2012/01/03 00:46:04 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{B369E690-D5E5-4006-8CDD-977609DEFEAC}
[2012/01/03 00:45:51 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{0DA45A11-E211-4DE5-89A2-1EE4C1FBE84D}
[2012/01/02 12:45:31 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{2BFA53A5-114A-4EA5-A382-F994202BBBAB}
[2012/01/02 12:44:55 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{72033EA5-FCF3-487B-B649-CC82A200C760}
[2012/01/01 17:29:10 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{78FC18D0-DEEB-4A60-94A3-F690C6B61E07}
[2012/01/01 17:28:46 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{693B6FB7-5502-4FF3-9EEA-24E1E7ED728F}
[2011/12/31 12:41:38 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{101DA094-D220-4B54-8078-BB73E5B01028}
[2011/12/31 12:41:23 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{26CDCE8E-DD21-4EC4-BE50-85A79F38EE80}
[2011/12/31 00:41:19 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{436D550C-C863-4973-A9E3-B3449EEEF1BC}
[2011/12/31 00:41:05 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{82EE88EF-59EC-47B0-9B6E-47BFFC1E45A7}
[2011/12/30 12:41:01 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{059AC69D-AA63-4067-BB17-B966A1E78359}
[2011/12/30 12:40:21 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{F2AB1C8F-E1DF-4978-9E38-71E8B2F61378}
[2011/12/30 00:08:35 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{F524A9DD-9BEE-4A2B-B123-7AD4DF698637}
[2011/12/30 00:08:21 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{EA3B67AA-3193-4D6C-ACDA-6E1D31296EDD}
[2011/12/29 12:08:15 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{42B90EBC-E252-44D1-A980-E6B1E6AECCEB}
[2011/12/29 12:07:33 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{DA10987B-8C20-4BDF-898F-90C3ED43D46D}
[2011/12/28 20:27:59 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{083CF3D4-5831-4826-8798-574D7CC165DE}
[2011/12/28 20:27:02 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{BBE2C542-16B7-4679-8473-19438B806C82}
[2011/12/28 02:28:49 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{0FEDABB3-0FCF-42D3-9161-5B0382284A3B}
[2011/12/28 02:28:36 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{867F135B-D865-4E73-9A95-8AEC52ECFC86}
[2011/12/27 14:28:14 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{17C40065-194E-4294-9FAE-AB3AEC4DD869}
[2011/12/27 14:27:37 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{E350EC80-1971-44A5-B712-045D844A9455}
[2011/12/26 23:51:34 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{A81E9042-8E9C-4ADC-B604-6D6DC2BB4A26}
[2011/12/26 23:50:51 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{44F72B70-4006-4FB5-A0F4-774A72ABF984}
[2011/12/26 09:50:14 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{4D6ED0EC-21B8-4DAF-8D08-89693DAF8C46}
[2011/12/26 09:49:44 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{6F8A0799-07A0-48E8-B8FB-07871621D1F8}
[2011/12/25 16:37:44 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{5D7E4959-1708-48FA-9568-42147F4E7572}
[2011/12/25 16:37:11 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{1FE4F372-A6D3-48A6-9FD7-E97D953D7D91}
[2011/12/25 04:37:06 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{188D79E1-099C-4246-A0E5-E0B158244B22}
[2011/12/25 04:36:53 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Local\{15008875-994D-4724-A7A4-2BA74F635DD2}
[2011/12/24 22:47:47 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TimeAdjuster
[2011/12/24 22:47:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TimeAdjuster
[2011/12/24 22:47:46 | 000,000,000 | ---D | C] -- C:\Program Files\TimeAdjuster
[2011/12/24 22:32:20 | 000,000,000 | ---D | C] -- C:\Users\Cheewen Ng\AppData