OTL
OTL logfile created on: 1/20/2011 9:20:31 PM - Run 1
OTL by OldTimer - Version 3.2.20.3 Folder = C:\Users\Josh\Desktop
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
8.00 Gb Total Physical Memory | 6.00 Gb Available Physical Memory | 69.00% Memory free
18.00 Gb Paging File | 15.00 Gb Available in Paging File | 86.00% Paging File free
Paging file location(s): c:\pagefile.sys 10000 100000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 465.66 Gb Total Space | 157.98 Gb Free Space | 33.93% Space Free | Partition Type: NTFS
Unable to calculate disk information.
Drive E: | 550.00 Gb Total Space | 0.02 Gb Free Space | 0.00% Space Free | Partition Type: NTFS
Drive G: | 46.17 Gb Total Space | 40.59 Gb Free Space | 87.91% Space Free | Partition Type: NTFS
Drive H: | 3.76 Gb Total Space | 3.76 Gb Free Space | 100.00% Space Free | Partition Type: FAT32
Computer Name: LEIBFAM | User Name: Josh | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/01/20 21:19:26 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Josh\Desktop\OTL.exe
PRC - [2011/01/11 14:20:19 | 000,407,336 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe
PRC - [2011/01/10 11:04:03 | 001,003,576 | ---- | M] (Google Inc.) -- C:\Users\Josh\AppData\Local\Google\Chrome\Application\chrome.exe
PRC - [2010/12/13 08:40:07 | 000,135,336 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2010/12/13 08:39:54 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2010/12/13 08:39:54 | 000,267,944 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2010/12/12 18:44:26 | 002,151,776 | ---- | M] () -- C:\Users\Josh\My Documents\Other and Programs\Dyyno Broadcaster\dyyno_launcher.exe
PRC - [2010/12/12 18:44:18 | 000,415,072 | ---- | M] () -- C:\Users\Josh\My Documents\Other and Programs\Dyyno Broadcaster\launcherd.exe
PRC - [2010/12/11 17:00:18 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2010/12/07 17:23:52 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\Winamp\winampa.exe
PRC - [2010/12/07 05:32:02 | 002,228,008 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
PRC - [2010/11/30 17:54:43 | 001,242,448 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Steam\Steam.exe
PRC - [2010/06/10 20:03:08 | 000,144,176 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
PRC - [2010/02/09 11:38:56 | 003,465,384 | ---- | M] (Thorvald Natvig) -- C:\Users\Josh\My Documents\Other and Programs\Mumble\mumble.exe
PRC - [2009/11/18 10:37:26 | 000,039,408 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
PRC - [2009/10/20 23:12:50 | 000,106,496 | ---- | M] (NEC Electronics Corporation) -- C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
PRC - [2009/08/04 17:29:54 | 000,219,360 | ---- | M] (DeviceVM, Inc.) -- C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
PRC - [2009/08/04 17:29:52 | 000,346,320 | ---- | M] (DeviceVM, Inc.) -- C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
PRC - [2009/07/30 17:51:02 | 000,068,136 | ---- | M] () -- C:\Program Files (x86)\GIGABYTE\EnergySaver\GSvr.exe
PRC - [2009/01/26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
PRC - [2008/06/11 22:43:26 | 000,640,376 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
PRC - [2008/01/29 21:19:34 | 000,041,472 | ---- | M] (Orb Networks) -- C:\Program Files (x86)\Winamp Remote\bin\OrbMediaService.exe
========== Modules (SafeList) ==========
MOD - [2011/01/20 21:19:26 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Josh\Desktop\OTL.exe
MOD - [2010/08/21 00:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV:
64bit: - [2009/11/18 09:24:46 | 001,038,088 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:
64bit: - [2009/07/24 15:04:54 | 000,199,008 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft LifeCam\MSCamS64.exe -- (MSCamSvc)
SRV:
64bit: - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2011/01/11 14:20:19 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2010/12/13 08:40:07 | 000,135,336 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2010/12/13 08:39:54 | 000,267,944 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2010/12/12 18:44:18 | 000,415,072 | ---- | M] () [Auto | Running] -- C:\Users\Josh\My Documents\Other and Programs\Dyyno Broadcaster\launcherd.exe -- (Dyyno Launcher)
SRV - [2010/12/11 17:00:18 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2010/12/07 05:32:02 | 002,228,008 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2010/06/10 20:03:08 | 000,144,176 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/11/18 09:23:02 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2009/08/04 17:29:54 | 000,219,360 | ---- | M] (DeviceVM, Inc.) [Auto | Running] -- C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe -- (BCUService)
SRV - [2009/07/30 17:51:02 | 000,068,136 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\GIGABYTE\EnergySaver\GSvr.exe -- (GEST Service)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/01/26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) [Auto | Running] -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe -- (SBSDWSCService)
SRV - [2008/08/15 05:46:20 | 000,284,016 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe -- (Adobe Version Cue CS4)
SRV - [2008/01/29 21:19:34 | 000,041,472 | ---- | M] (Orb Networks) [Auto | Running] -- C:\Program Files (x86)\Winamp Remote\bin\OrbMediaService.exe -- (OrbMediaService)
========== Driver Services (SafeList) ==========
DRV:
64bit: - [2010/12/13 08:40:21 | 000,116,568 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:
64bit: - [2010/12/13 08:40:21 | 000,083,120 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:
64bit: - [2010/09/22 23:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:
64bit: - [2010/09/09 20:42:57 | 000,082,816 | ---- | M] (VSO Software) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pcouffin.sys -- (pcouffin)
DRV:
64bit: - [2010/08/05 13:02:56 | 000,144,720 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV:
64bit: - [2010/04/19 19:47:42 | 000,050,688 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:
64bit: - [2010/02/03 14:56:56 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:
64bit: - [2010/01/21 01:03:10 | 000,027,648 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lgx64diag.sys -- (UsbDiag)
DRV:
64bit: - [2010/01/21 01:03:08 | 000,033,280 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lgx64modem.sys -- (USBModem)
DRV:
64bit: - [2010/01/21 01:03:06 | 000,017,920 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lgx64bus.sys -- (usbbus)
DRV:
64bit: - [2009/10/26 10:19:48 | 000,176,640 | ---- | M] (NEC Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:
64bit: - [2009/10/26 10:19:46 | 000,075,264 | ---- | M] (NEC Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:
64bit: - [2009/09/03 15:30:20 | 000,128,512 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tiehdusb.sys -- (TIEHDUSB)
DRV:
64bit: - [2009/07/30 06:58:42 | 000,236,544 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:
64bit: - [2009/07/13 20:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:
64bit: - [2009/07/13 20:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:
64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:
64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:
64bit: - [2009/07/13 20:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:
64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:
64bit: - [2009/06/30 21:24:50 | 002,060,144 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VX3000.sys -- (VX3000)
DRV:
64bit: - [2009/06/10 15:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:
64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:
64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:
64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:
64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:
64bit: - [2009/05/18 14:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:
64bit: - [2009/04/28 15:20:06 | 000,055,024 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:
64bit: - [2008/11/04 13:21:08 | 000,098,144 | ---- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\jraid.sys -- (JRAID)
DRV - [2011/01/20 19:42:23 | 000,025,640 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\gdrv.sys -- (gdrv)
DRV - [2010/06/08 19:30:22 | 000,015,664 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2008/08/14 07:57:42 | 000,074,720 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysWow64\drivers\adfs.sys -- (adfs)
DRV - [2007/02/07 13:27:46 | 000,014,104 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | Boot | Running] -- C:\Windows\SysWOW64\speedfan.sys -- (speedfan)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0B DA 7C 63 DE A6 CB 01 [binary data]
IE - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\..\URLSearchHook: {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM, Inc.)
IE - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = localhost;127.0.0.1;<local>
========== FireFox ==========
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.engadget.com/|http://gizmodo.com/"
FF - prefs.js..extensions.enabledItems:
YoutubeDownloader@PeterOlayev.com:1.5
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.2.2
FF - prefs.js..extensions.enabledItems: {6ad56361-628f-471b-8f9d-4c338973a87d}:5.27.1.6046
FF - prefs.js..extensions.enabledItems:
googletube@googletube.com:2.0.2
FF - prefs.js..extensions.enabledItems: {81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}:7.0.0.0
FF - prefs.js..extensions.enabledItems:
firefox@meebo.com:1.1
FF - prefs.js..extensions.enabledItems: {3EC9C995-8072-4fc0-953E-4F30620D17F3}:2.0.0.4
FF - prefs.js..extensions.enabledItems: {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20100908
FF - prefs.js..extensions.enabledItems: {5e5ab302-7f65-44cd-8211-c1d4caaccea3}:2.7.2.0
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8
FF - prefs.js..extensions.enabledItems: {cdd09450-7280-11de-8a39-0800200c9a66}:0.82
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {340c2bbc-ce74-4362-90b5-7c26312808ef}:1.4.4
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems:
foxmarks@kei.com:3.8.7
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems:
chromifox@altmusictv.com:3.6.5
FF - prefs.js..extensions.enabledItems:
nasanightlaunch@example.com:0.6.20100827
FF - prefs.js..extensions.enabledItems: Office2007Black@JBBS:1.5.5
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.11\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2010/10/24 20:56:40 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.11\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2010/11/30 17:56:23 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0b1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 1\components [2010/07/06 17:25:45 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0b1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 1\plugins
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2010/12/13 22:18:29 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
[2010/07/21 14:38:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Josh\AppData\Roaming\Mozilla\Extensions
[2010/02/21 13:29:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Josh\AppData\Roaming\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2010/07/21 14:38:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Josh\AppData\Roaming\Mozilla\Extensions\songbird@songbirdnest.com
[2010/10/10 12:50:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions
[2010/09/21 22:08:38 | 000,000,000 | ---D | M] (TV-Fox) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{2f17f610-5e97-4fed-828f-9940b7b577a4}
[2010/08/18 14:00:16 | 000,000,000 | ---D | M] (Firefox Sync) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{340c2bbc-ce74-4362-90b5-7c26312808ef}
[2010/02/03 19:23:15 | 000,000,000 | ---D | M] (WeatherBug) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{3EC9C995-8072-4fc0-953E-4F30620D17F3}
[2010/09/21 22:08:38 | 000,000,000 | ---D | M] (FoxyTunes) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{463F6CA5-EE3C-4be1-B7E6-7FEE11953374}
[2010/09/01 21:30:18 | 000,000,000 | ---D | M] (XfireXO Toolbar) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}
[2010/08/18 14:00:16 | 000,000,000 | ---D | M] (AOL Radio Toolbar) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{6ad56361-628f-471b-8f9d-4c338973a87d}
[2010/09/21 22:08:37 | 000,000,000 | ---D | M] (NoScript) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}
[2010/09/21 22:08:37 | 000,000,000 | ---D | M] (iMacros for Firefox) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}
[2010/09/21 22:08:38 | 000,000,000 | ---D | M] (WOT) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2010/07/26 19:35:04 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2010/06/14 16:31:29 | 000,000,000 | ---D | M] (FlipClock) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{cdd09450-7280-11de-8a39-0800200c9a66}
[2010/08/18 14:00:16 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010/06/15 19:10:21 | 000,000,000 | ---D | M] (Chromifox Basic) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\chromifox@altmusictv.com
[2010/06/15 19:10:28 | 000,000,000 | ---D | M] (شريط أدوات Ùيس بوك) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\firefox@facebook.com
[2009/12/06 19:12:43 | 000,000,000 | ---D | M] (meebo) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\firefox@meebo.com
[2010/09/22 20:06:07 | 000,000,000 | ---D | M] ("Xmarks") -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\foxmarks@kei.com
[2010/06/15 19:10:28 | 000,000,000 | ---D | M] (GoogleTube) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\googletube@googletube.com
[2010/09/21 22:08:37 | 000,000,000 | ---D | M] (NASA Night Launch) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\nasanightlaunch@example.com
[2010/09/21 22:08:32 | 000,000,000 | ---D | M] (Office Black) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\Office2007Black@JBBS
[2009/12/07 21:01:09 | 000,000,000 | ---D | M] (RedShift V3) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\redshift_V2@shift-themes.com
[2010/08/10 12:45:56 | 000,000,000 | ---D | M] (1-Click YouTube Video Downloader) -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\extensions\YoutubeDownloader@PeterOlayev.com
[2009/12/28 17:40:04 | 000,002,283 | ---- | M] () -- C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\3uhdm61a.default\searchplugins\aol-search.xml
[2010/12/23 17:51:54 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010/06/17 18:59:10 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010/07/29 15:43:55 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/12/23 17:51:54 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2010/12/23 17:51:40 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
[2010/12/07 17:25:00 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npwachk.dll
O1 HOSTS File: ([2009/06/10 16:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:
64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:
64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg64.dll (Google Inc.)
O2:
64bit: - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll ()
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - C:\Program Files (x86)\Microsoft Money\System\mnyside.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll (Google Inc.)
O3:
64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll ()
O3 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3:
64bit: - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:
64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:
64bit: - HKLM..\Run: [VX3000] C:\Windows\vVX3000.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe_ID0ENQBO] C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [BCU] C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe (DeviceVM, Inc.)
O4 - HKLM..\Run: [NUSB3MON] C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (NEC Electronics Corporation)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000..\Run: [C:!Users!Josh!AppData!Local!Google!Chrome!User Data_service_run] C:\Users\Josh\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)
O4 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000..\Run: [Dyyno Launcher] C:\Users\Josh\Documents\Other and Programs\Dyyno Broadcaster\dyyno_launcher.exe ()
O4 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000..\Run: [sbitunesagent] C:\Users\Josh\My Documents\Songbird\songbirditunesagent.exe ()
O4 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000..\Run: [Task Killer] C:\Program Files (x86)\Task Killer\TaskKiller.exe ()
O4 - Startup: C:\Users\Andi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Josh\AppData\Roaming\Dropbox\bin\Dropbox.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowLegacyWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowUnhashedWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run-Disabled: New Application = C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
O7 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run-Disabled: steam = C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
O8:
64bit: - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:
64bit: - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:
64bit: - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:
64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9 - Extra Button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files (x86)\Microsoft Money\System\mnyside.dll (Microsoft Corporation)
O10:
64bit: - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {4D0A481A-7155-498C-84D8-9CB84DEA237E}
http://68.39.100.29/DVROcxEx.cab (DVROcxEx Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18:
64bit: - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Reg Error: Key error. File not found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:
64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O22:
64bit: - SharedTaskScheduler: {1984DD45-52CF-49cd-AB77-18F378FEA264} - FencesShellExt - C:\Users\Josh\My Documents\Other and Programs\Stardock\Fences\FencesMenu64.dll (Stardock)
O28:
64bit: - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\...com [@ = ComFile] -- Reg Error: Key error. File not found
O37 - HKU\S-1-5-21-1633182106-547672266-1594137005-1000\...exe [@ = exefile] -- Reg Error: Key error. File not found
Drivers32:
64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:
64bit: VIDC.XFR1 - xfcodec64.dll ()
Drivers32: msacm.bdmpeg - C:\Windows\SysWow64\bdmpega.acm ()
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.mpeg - C:\Windows\SysWow64\bdmpegv.dll ()
Drivers32: VIDC.XFR1 - C:\Windows\SysWow64\xfcodec.dll ()
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2011/01/20 21:19:23 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Josh\Desktop\OTL.exe
[2011/01/20 20:36:49 | 000,161,792 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011/01/20 20:36:49 | 000,136,704 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011/01/20 20:36:49 | 000,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011/01/20 20:36:46 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011/01/20 20:36:27 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/01/20 20:36:11 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe
[2011/01/19 21:06:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit
[2011/01/19 13:00:19 | 000,000,000 | ---D | C] -- C:\Users\Josh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ACE
[2011/01/18 15:51:38 | 000,000,000 | ---D | C] -- C:\Users\Josh\AppData\Local\PMB Files
[2011/01/18 15:51:37 | 000,000,000 | ---D | C] -- C:\ProgramData\PMB Files
[2011/01/18 15:34:14 | 000,000,000 | ---D | C] -- C:\ProgramData\SplitMediaLabs
[2011/01/18 07:34:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Graboid
[2011/01/17 23:52:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mathematics (64-bit)
[2011/01/17 23:52:06 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Mathematics
[2011/01/16 14:52:47 | 000,000,000 | ---D | C] -- C:\Users\Josh\Documents\Chrome Themes
[2011/01/16 14:29:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag
[2011/01/12 11:54:00 | 000,000,000 | ---D | C] -- C:\opt
[2011/01/11 14:41:42 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2011/01/08 19:55:32 | 000,000,000 | ---D | C] -- C:\Users\Josh\AppData\Roaming\TS3Client
[2011/01/08 19:55:21 | 000,000,000 | ---D | C] -- C:\Users\Josh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2011/01/08 19:55:20 | 000,000,000 | ---D | C] -- C:\Users\Josh\AppData\Local\TeamSpeak 3 Client
[2011/01/02 17:09:55 | 000,000,000 | ---D | C] -- C:\Users\Josh\AppData\Local\TSVNCache
[2011/01/01 19:42:34 | 000,000,000 | ---D | C] -- C:\Users\Josh\AppData\Roaming\TortoiseSVN
[2011/01/01 19:41:04 | 000,000,000 | ---D | C] -- C:\Users\Josh\AppData\Roaming\Subversion
[2011/01/01 19:39:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TortoiseSVN
[2011/01/01 19:39:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\TortoiseOverlays
[2011/01/01 14:39:46 | 000,000,000 | ---D | C] -- C:\Users\Josh\Documents\My Games
[2010/12/28 11:34:56 | 000,000,000 | ---D | C] -- C:\Users\Josh\AppData\Roaming\Avira
[2010/12/28 11:32:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2010/12/28 11:31:55 | 000,116,568 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avipbb.sys
[2010/12/28 11:31:55 | 000,083,120 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2010/12/28 11:31:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2010/12/28 11:31:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira
[2010/12/24 14:33:07 | 000,000,000 | ---D | C] -- C:\Users\Josh\Documents\Dyyno
[2010/12/23 17:52:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2010/12/23 17:51:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2010/12/23 17:21:10 | 000,000,000 | ---D | C] -- C:\Users\Josh\Documents\Alpha Server Config
[2010/09/09 20:42:57 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Josh\AppData\Roaming\pcouffin.sys
========== Files - Modified Within 30 Days ==========
[2011/01/20 21:19:26 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Josh\Desktop\OTL.exe
[2011/01/20 21:13:32 | 000,015,024 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/01/20 21:13:32 | 000,015,024 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/01/20 21:11:00 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/01/20 20:57:00 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1633182106-547672266-1594137005-1000UA.job
[2011/01/20 20:57:00 | 000,000,852 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1633182106-547672266-1594137005-1000Core.job
[2011/01/20 20:01:34 | 000,034,560 | ---- | M] () -- C:\Windows\SysWow64\drivers\Normandy.sys
[2011/01/20 19:43:20 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/01/20 19:43:20 | 000,000,322 | ---- | M] () -- C:\Windows\tasks\GlaryInitialize.job
[2011/01/20 19:42:14 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/01/20 19:42:00 | 2146,295,807 | -HS- | M] () -- C:\hiberfil.sys
[2011/01/19 15:31:28 | 458,483,725 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2011/01/19 13:51:50 | 000,270,904 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2011/01/19 13:51:50 | 000,270,904 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011/01/19 13:50:27 | 000,215,128 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2011/01/19 13:00:19 | 000,001,838 | ---- | M] () -- C:\Users\Josh\Desktop\ACE LoL Client.lnk
[2011/01/19 11:49:56 | 000,001,190 | ---- | M] () -- C:\Users\Josh\Desktop\lol.launcher - Shortcut.lnk
[2011/01/18 17:19:01 | 000,784,344 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/01/18 17:19:01 | 000,663,722 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/01/18 17:19:01 | 000,122,452 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/01/18 15:33:01 | 000,001,252 | ---- | M] () -- C:\Users\Josh\Desktop\XSplit Broadcaster.lnk
[2011/01/17 23:57:11 | 000,000,173 | ---- | M] () -- C:\Users\Josh\AppData\Local\msmathematics.qat.Josh
[2011/01/17 15:27:40 | 000,013,659 | ---- | M] () -- C:\Users\Josh\Desktop\Roaming - Shortcut.lnk
[2011/01/17 12:04:01 | 000,001,109 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/01/16 14:29:12 | 000,001,063 | ---- | M] () -- C:\Users\Public\Desktop\Mp3tag.lnk
[2011/01/12 11:41:11 | 000,001,095 | ---- | M] () -- C:\Users\Josh\Desktop\eclipse - Shortcut.lnk
[2011/01/12 10:58:38 | 000,002,391 | ---- | M] () -- C:\Users\Josh\Desktop\Google Chrome.lnk
[2011/01/11 15:07:10 | 000,000,890 | ---- | M] () -- C:\Users\Josh\Desktop\League of Legends - Shortcut.lnk
[2011/01/08 19:55:21 | 000,001,203 | ---- | M] () -- C:\Users\Josh\Desktop\TeamSpeak 3 Client.lnk
[2011/01/08 08:02:34 | 003,034,000 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010/12/28 11:32:06 | 000,002,066 | ---- | M] () -- C:\Users\Public\Desktop\Avira AntiVir Control Center.lnk
[2010/12/24 16:02:04 | 000,000,032 | ---- | M] () -- C:\Users\Josh\Documents\mineserver_201024.7z
[2010/12/24 14:30:20 | 000,001,119 | ---- | M] () -- C:\Users\Josh\Desktop\Dyyno Broadcaster.lnk
========== Files Created - No Company Name ==========
[2011/01/20 20:36:49 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe
[2011/01/20 20:36:49 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011/01/20 20:36:49 | 000,089,088 | ---- | C] () -- C:\Windows\MBR.exe
[2011/01/20 20:36:49 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011/01/20 20:36:49 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011/01/20 20:01:29 | 000,034,560 | ---- | C] () -- C:\Windows\SysWow64\drivers\Normandy.sys
[2011/01/19 11:49:56 | 000,001,190 | ---- | C] () -- C:\Users\Josh\Desktop\lol.launcher - Shortcut.lnk
[2011/01/19 11:47:47 | 000,001,838 | ---- | C] () -- C:\Users\Josh\Desktop\ACE LoL Client.lnk
[2011/01/18 15:33:01 | 000,001,252 | ---- | C] () -- C:\Users\Josh\Desktop\XSplit Broadcaster.lnk
[2011/01/17 23:57:11 | 000,000,173 | ---- | C] () -- C:\Users\Josh\AppData\Local\msmathematics.qat.Josh
[2011/01/17 15:27:40 | 000,013,659 | ---- | C] () -- C:\Users\Josh\Desktop\Roaming - Shortcut.lnk
[2011/01/16 14:29:12 | 000,001,063 | ---- | C] () -- C:\Users\Public\Desktop\Mp3tag.lnk
[2011/01/12 11:41:11 | 000,001,095 | ---- | C] () -- C:\Users\Josh\Desktop\eclipse - Shortcut.lnk
[2011/01/11 15:07:10 | 000,000,890 | ---- | C] () -- C:\Users\Josh\Desktop\League of Legends - Shortcut.lnk
[2011/01/08 19:55:21 | 000,001,203 | ---- | C] () -- C:\Users\Josh\Desktop\TeamSpeak 3 Client.lnk
[2010/12/28 11:32:06 | 000,002,066 | ---- | C] () -- C:\Users\Public\Desktop\Avira AntiVir Control Center.lnk
[2010/12/24 16:01:54 | 000,000,032 | ---- | C] () -- C:\Users\Josh\Documents\mineserver_201024.7z
[2010/10/07 21:07:06 | 000,778,156 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010/09/09 20:43:32 | 000,000,033 | ---- | C] () -- C:\Users\Josh\AppData\Roaming\pcouffin.log
[2010/09/09 20:42:57 | 000,007,859 | ---- | C] () -- C:\Users\Josh\AppData\Roaming\pcouffin.cat
[2010/09/09 20:42:57 | 000,001,167 | ---- | C] () -- C:\Users\Josh\AppData\Roaming\pcouffin.inf
[2010/08/11 20:37:22 | 001,589,248 | ---- | C] () -- C:\Windows\SysWow64\libmysql_d.dll
[2010/07/13 17:01:21 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2010/07/09 14:04:40 | 000,041,872 | ---- | C] () -- C:\Windows\SysWow64\xfcodec.dll
[2010/03/08 15:13:58 | 000,000,139 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2010/01/28 20:31:26 | 000,000,279 | ---- | C] () -- C:\Windows\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}_WiseFW.ini
[2009/12/18 22:36:21 | 000,146,432 | ---- | C] () -- C:\Windows\SysWow64\APOMngr.DLL
[2009/12/18 22:36:21 | 000,072,704 | ---- | C] () -- C:\Windows\SysWow64\CmdRtr.DLL
[2009/12/10 17:26:04 | 000,003,584 | ---- | C] () -- C:\Users\Josh\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/11/28 10:46:42 | 000,007,597 | ---- | C] () -- C:\Users\Josh\AppData\Local\resmon.resmoncfg
[2009/11/24 17:29:17 | 000,002,528 | ---- | C] () -- C:\Windows\FCIC.INI
[2009/11/22 12:22:33 | 000,000,171 | ---- | C] () -- C:\Windows\QUICKEN.INI
[2009/11/19 21:50:32 | 000,000,048 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2009/11/17 15:35:05 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini
[2009/08/28 13:13:46 | 000,098,304 | ---- | C] () -- C:\Windows\SysWow64\PlayerDll.dll
[2009/08/28 13:13:42 | 000,208,896 | ---- | C] () -- C:\Windows\SysWow64\DVRConfig.dll
[2009/08/28 13:13:38 | 000,114,688 | ---- | C] () -- C:\Windows\SysWow64\ResourceDll.dll
[2009/08/20 09:36:54 | 000,258,048 | ---- | C] () -- C:\Windows\SysWow64\DVRTH264.dll
[2009/07/13 18:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 16:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/07/08 20:03:02 | 000,058,880 | ---- | C] () -- C:\Windows\SysWow64\bdmpegv.dll
[2009/06/26 17:24:18 | 000,015,498 | ---- | C] () -- C:\Windows\VX3000.ini
========== LOP Check ==========