Sorry, I don't know how OTL was incomplete, appears to be more than 5000000 chars.... see below. Your input is duly noted, but disabling of that setting is an order from the people who are in charge at the office here. Users were running updates whenever they saw them available, often leading to blue screen errors and other problems. Also when users had virus problems that disabled or removed antiviruses, they would install free mcaffee ones and other stupid things so leaving notifications off in this environment seems to be better so users do not try to "fix" problems.
But you're right!!!! They need to setup a real server with permissions and authority levels set for users who are/are not allowed to run updates and install software!!! I've been ringing that bell since I started here!!! Please convince my bosses

OTL logfile created on: 8/9/2012 12:54:53 PM - Run 1
OTL by OldTimer - Version 3.2.56.0 Folder = C:\Documents and Settings\JEM\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.97 Gb Total Physical Memory | 1.23 Gb Available Physical Memory | 62.25% Memory free
3.82 Gb Paging File | 3.18 Gb Available in Paging File | 83.25% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74.41 Gb Total Space | 53.46 Gb Free Space | 71.85% Space Free | Partition Type: NTFS
Drive E: | 6.31 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive F: | 1.86 Gb Total Space | 1.24 Gb Free Space | 66.62% Space Free | Partition Type: FAT32
Computer Name: JUDIOPTI755 | User Name: jem | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/08/08 22:54:45 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\JEM\Desktop\OTL.exe
PRC - [2012/07/16 10:37:26 | 002,283,432 | ---- | M] (TeamViewer GmbH) -- c:\Program Files\TeamViewer\Version7\TeamViewer_Desktop.exe
PRC - [2012/07/16 10:37:24 | 006,849,448 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version7\TeamViewer.exe
PRC - [2012/07/16 10:37:24 | 002,677,160 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
PRC - [2012/07/16 10:22:42 | 000,106,408 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version7\tv_w32.exe
PRC - [2012/07/03 13:46:44 | 000,655,944 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012/07/03 13:46:44 | 000,462,920 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2012/03/26 17:08:12 | 000,931,200 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2012/03/26 17:03:40 | 000,011,552 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe
PRC - [2009/12/07 00:19:00 | 001,590,216 | ---- | M] (UltraVNC) -- C:\Program Files\UltraVNC\winvnc.exe
PRC - [2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/10/03 15:45:02 | 000,358,936 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2007/10/03 15:44:58 | 000,178,712 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
========== Modules (No Company Name) ==========
MOD - [2010/07/28 15:12:06 | 000,051,716 | ---- | M] () -- C:\WINDOWS\system32\pdf995mon.dll
MOD - [2008/04/13 20:11:59 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2008/04/13 20:11:51 | 000,059,904 | ---- | M] () -- C:\WINDOWS\system32\devenum.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - [2012/08/02 12:47:09 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/07/16 10:37:24 | 002,677,160 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe -- (TeamViewer7)
SRV - [2012/07/03 13:46:44 | 000,655,944 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012/03/26 17:03:40 | 000,011,552 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2009/12/07 00:19:00 | 001,590,216 | ---- | M] (UltraVNC) [Auto | Running] -- C:\Program Files\UltraVNC\winvnc.exe -- (uvnc_service)
SRV - [2007/10/03 15:45:02 | 000,358,936 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\JEM\LOCALS~1\Temp\catchme.sys -- (catchme)
DRV - [2012/08/09 12:22:46 | 000,029,904 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- c:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{88A104F9-95AE-407D-A9B7-F92824B67BED}\MpKsle4b666b3.sys -- (MpKsle4b666b3)
DRV - [2012/07/03 13:46:44 | 000,022,344 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2010/08/20 13:41:24 | 000,010,688 | ---- | M] (UVNC BVBA) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mv2.sys -- (mv2)
DRV - [2008/02/27 13:49:00 | 000,003,840 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\BANTExt.sys -- (BANTExt)
DRV - [2007/09/24 19:12:48 | 000,392,960 | ---- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (SenFiltService)
DRV - [2007/07/23 18:42:12 | 000,045,056 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HECI.sys -- (HECI)
DRV - [2007/07/23 15:05:20 | 000,009,104 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\DLADResM.SYS -- (DLADResM)
DRV - [2007/07/23 15:04:58 | 000,037,360 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\DLABMFSM.SYS -- (DLABMFSM)
DRV - [2007/07/23 15:04:56 | 000,098,448 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\DLAUDF_M.SYS -- (DLAUDF_M)
DRV - [2007/07/23 15:04:56 | 000,093,552 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\DLAUDFAM.SYS -- (DLAUDFAM)
DRV - [2007/07/23 15:04:54 | 000,027,216 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\DLAOPIOM.SYS -- (DLAOPIOM)
DRV - [2007/07/23 15:04:52 | 000,032,848 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\DLABOIOM.SYS -- (DLABOIOM)
DRV - [2007/07/23 15:04:52 | 000,016,304 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\DLAPoolM.SYS -- (DLAPoolM)
DRV - [2007/07/23 15:04:50 | 000,108,752 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\DLAIFS_M.SYS -- (DLAIFS_M)
DRV - [2007/07/23 14:49:44 | 000,030,064 | ---- | M] (Roxio) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\DLARTL_M.SYS -- (DLARTL_M)
DRV - [2007/07/23 14:49:44 | 000,014,576 | ---- | M] (Roxio) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\DLACDBHM.SYS -- (DLACDBHM)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Page_URL = partnerpage.google.com/smallbiz.dell.com/en_us?hl=en&client=dell-usuk&channel=us-smb&ibd=0080619
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = partnerpage.google.com/smallbiz.dell.com/en_us?hl=en&client=dell-usuk&channel=us-smb&ibd=0080619
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" =
http://www.google.com/search?q={sea...putEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = partnerpage.google.com/smallbiz.dell.com/en_us?hl=en&client=dell-usuk&channel=us-smb&ibd=0080619
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = partnerpage.google.com/smallbiz.dell.com/en_us?hl=en&client=dell-usuk&channel=us-smb&ibd=0080619
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL =
http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
IE - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.wwlp.com/
IE - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.com/ie
IE - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..\SearchScopes,DefaultScope = {FC227DFE-4052-4B3D-89EF-FD1AD48A150A}
IE - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC
IE - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" =
http://www.google.com/search?q={sea...putEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..\SearchScopes\{9CA9DB7B-BB9C-4C26-97F5-B53AE1F42DD0}: "URL" =
http://websearch.ask.com/redirect?c...pn_sauid=C4CA2517-A3B3-41AC-91D2-D330C5E237BA
IE - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..\SearchScopes\{FC227DFE-4052-4B3D-89EF-FD1AD48A150A}: "URL" =
http://www.google.com/search?q={sea...putEncoding}&sourceid=ie7&rlz=1I7GGIH_enUS283
IE - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems:
tmtoolbar@lexisnexis.com:1.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {238DC124-6920-4855-BFCD-7F6F86D48617}:1.9.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\JEM\Local Settings\Application Data\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\JEM\Local Settings\Application Data\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/08/11 12:54:22 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/04/10 14:47:39 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{7936448B-E0CE-11E1-8270-B8AC6F996F26}: C:\Documents and Settings\JEM\Local Settings\Application Data\{7936448B-E0CE-11E1-8270-B8AC6F996F26}\ [2012/08/07 16:26:53 | 000,000,000 | ---D | M]
[2008/07/08 12:14:17 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\JEM\Application Data\Mozilla\Extensions
[2011/03/09 11:05:04 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\JEM\Application Data\Mozilla\Firefox\Profiles\5hzvutv2.default\extensions
[2009/11/25 13:42:06 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\JEM\Application Data\Mozilla\Firefox\Profiles\5hzvutv2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2012/02/23 11:29:19 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010/08/24 12:32:16 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/11/02 10:10:21 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011/03/09 11:14:50 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/08/03 09:57:39 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2012/02/23 11:29:19 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
[2010/07/09 14:52:14 | 000,022,848 | ---- | M] (LexisNexis, a division of Reed Elsevier Inc. ) -- C:\Program Files\mozilla firefox\components\tmfftb.dll
[2012/02/23 11:29:06 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2009/04/14 17:13:25 | 000,742,088 | ---- | M] (SwiftView, Inc.) -- C:\Program Files\mozilla firefox\plugins\npsview.dll
========== Chrome ==========
CHR - homepage:
http://www.wwlp.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google

riginalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - homepage:
http://www.wwlp.com/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\JEM\Local Settings\Application Data\Google\Chrome\Application\21.0.1180.60\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\JEM\Local Settings\Application Data\Google\Chrome\Application\21.0.1180.60\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\JEM\Local Settings\Application Data\Google\Chrome\Application\21.0.1180.60\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Documents and Settings\JEM\Local Settings\Application Data\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.310.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Microsoft Office 2003 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL
CHR - plugin: SwiftView Plug-In (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npsview.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\JEM\Local Settings\Application Data\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - Extension: Entanglement = C:\Documents and Settings\JEM\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aciahcmjmecflokailenpkdchphgkefd\2.7.9_0\
CHR - Extension: Poppit = C:\Documents and Settings\JEM\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\mcbkbpnkkkipelfledbfocopglifcfmi\2.2_0\
O1 HOSTS File: ([2012/08/09 09:51:52 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Time Matters) - {00F17ECE-12DA-46A0-B541-BDE4EB7DF027} - C:\Program Files\LexisNexis\Time Matters\tmietb.dll (LexisNexis, a division of Reed Elsevier Inc. )
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Time Matters) - {00F17ECE-12DA-46A0-B541-BDE4EB7DF027} - C:\Program Files\LexisNexis\Time Matters\tmietb.dll (LexisNexis, a division of Reed Elsevier Inc. )
O3 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..\Toolbar\ShellBrowser: (no name) - {8EAB99C9-F9EC-4B64-A4BA-D9BCAE8779C2} - No CLSID value found.
O3 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..\Toolbar\WebBrowser: (no name) - {8EAB99C9-F9EC-4B64-A4BA-D9BCAE8779C2} - No CLSID value found.
O3 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O3 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found.
O4 - HKLM..\Run: [HPUsageTracking] C:\Program Files\HP\HP UT\bin\hppusg.exe ()
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe (Intel Corporation)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWelcomeScreen = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O15 - HKU\.DEFAULT\..Trusted Domains: caldirectsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: caldirectsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: com ([pennwest-edocs] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: com ([pennwest-edocs] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: com ([swiftview] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: ditechsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: ditechsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: ditechsecuredocs.net ([www] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: ditechsecuredocs.net ([www] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([ctest] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([ctest] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([forms] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([forms] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([gmacforms] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([gmacforms] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([pro] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([pro] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([secure] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([secure] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([usign] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([usign] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([webpost] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: elynx.net ([webpost] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: gmacmsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: gmacmsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: gmacmsecuredocs.net ([www] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: gmacmsecuredocs.net ([www] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: gmamcsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: gmamcsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: ss3.swiftsend.com ([loandocs] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: ss3.swiftsend.com ([loandocs] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: swiftsend.com ([docs] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: swiftsend.com ([docs] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: swiftsend.com ([loandocs] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: swiftsend.com ([loandocs] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: swiftsend2.com ([docs] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: swiftsend2.com ([docs] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: swiftsend2.com ([loandocs] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: swiftsend2.com ([loandocs] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: swiftview.com ([www] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: swiftview.com ([www] https in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: wamuloandocs.com ([www] http in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: wamuloandocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: caldirectsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: caldirectsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: com ([pennwest-edocs] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: com ([pennwest-edocs] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: com ([swiftview] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: ditechsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: ditechsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: ditechsecuredocs.net ([www] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: ditechsecuredocs.net ([www] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([ctest] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([ctest] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([forms] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([forms] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([gmacforms] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([gmacforms] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([pro] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([pro] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([secure] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([secure] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([usign] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([usign] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([webpost] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: elynx.net ([webpost] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: gmacmsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: gmacmsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: gmacmsecuredocs.net ([www] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: gmacmsecuredocs.net ([www] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: gmamcsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: gmamcsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: ss3.swiftsend.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: ss3.swiftsend.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: swiftsend.com ([docs] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: swiftsend.com ([docs] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: swiftsend.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: swiftsend.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: swiftsend2.com ([docs] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: swiftsend2.com ([docs] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: swiftsend2.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: swiftsend2.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: swiftview.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: swiftview.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: wamuloandocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: wamuloandocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: caldirectsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: caldirectsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: com ([pennwest-edocs] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: com ([pennwest-edocs] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: com ([swiftview] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: ditechsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: ditechsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: ditechsecuredocs.net ([www] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: ditechsecuredocs.net ([www] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([ctest] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([ctest] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([forms] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([forms] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([gmacforms] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([gmacforms] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([pro] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([pro] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([secure] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([secure] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([usign] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([usign] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([webpost] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: elynx.net ([webpost] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: gmacmsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: gmacmsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: gmacmsecuredocs.net ([www] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: gmacmsecuredocs.net ([www] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: gmamcsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: gmamcsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: ss3.swiftsend.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: ss3.swiftsend.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: swiftsend.com ([docs] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: swiftsend.com ([docs] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: swiftsend.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: swiftsend.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: swiftsend2.com ([docs] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: swiftsend2.com ([docs] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: swiftsend2.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: swiftsend2.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: swiftview.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: swiftview.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: wamuloandocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: wamuloandocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: caldirectsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: caldirectsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: com ([pennwest-edocs] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: com ([pennwest-edocs] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: com ([swiftview] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: ditechsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: ditechsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: ditechsecuredocs.net ([www] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: ditechsecuredocs.net ([www] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([ctest] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([ctest] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([forms] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([forms] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([gmacforms] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([gmacforms] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([pro] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([pro] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([secure] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([secure] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([usign] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([usign] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([webpost] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: elynx.net ([webpost] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: gmacmsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: gmacmsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: gmacmsecuredocs.net ([www] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: gmacmsecuredocs.net ([www] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: gmamcsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: gmamcsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: ss3.swiftsend.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: ss3.swiftsend.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: swiftsend.com ([docs] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: swiftsend.com ([docs] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: swiftsend.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: swiftsend.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: swiftsend2.com ([docs] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: swiftsend2.com ([docs] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: swiftsend2.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: swiftsend2.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: swiftview.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: swiftview.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: wamuloandocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-20\..Trusted Domains: wamuloandocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: caldirectsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: caldirectsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: com ([pennwest-edocs] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: com ([pennwest-edocs] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: com ([swiftview] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: ditechsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: ditechsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: ditechsecuredocs.net ([www] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: ditechsecuredocs.net ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: docmagic.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: docmagic.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([ctest] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([ctest] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([forms] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([forms] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([gmacforms] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([gmacforms] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([pro] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([pro] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([secure] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([secure] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([usign] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([usign] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([webpost] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: elynx.net ([webpost] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: gmacmsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: gmacmsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: gmacmsecuredocs.net ([www] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: gmacmsecuredocs.net ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: gmamcsecuredocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: gmamcsecuredocs.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: ss3.swiftsend.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: ss3.swiftsend.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: swiftsend.com ([docs] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: swiftsend.com ([docs] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: swiftsend.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: swiftsend.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: swiftsend2.com ([docs] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: swiftsend2.com ([docs] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: swiftsend2.com ([loandocs] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: swiftsend2.com ([loandocs] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: swiftview.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: swiftview.com ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: wamuloandocs.com ([www] http in Trusted sites)
O15 - HKU\S-1-5-21-3320993506-1443092694-3632316342-1154\..Trusted Domains: wamuloandocs.com ([www] https in Trusted sites)
O16 - DPF: {493ACF15-5CD9-4474-82A6-91670C3DD66E}
http://www.linkedin.com/cab/LinkedInContactFinderControl.cab (LinkedIn ContactFinderControl)
O16 - DPF: {7DD62E58-5FA8-11D2-AFB7-00104B64F126}
http://products.swiftview.com/install.html?id=sv8/3_IN_1_CAB&ctx=&ref= (Sview Control)
O16 - DPF: {7EC816D4-6FC3-4C58-A7DA-A770EE461602}
http://151.203.99.51/Ericom/WebConnect 5.6/web/windows/ptdownloader.cab (PowerTerm Downloader Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C}
https://softprocorp.webex.com/client/T26L/support/ieatgpc.cab (GpcContainer Class)
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9}
https://secure.logmein.com/activex/ractrl.cab?lmi=100 (Performance Viewer Activex Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = pcalaw.local
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{37731411-9362-4A81-BBB8-779EEAB3B3B6}: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\belarc {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper: C:\Documents and Settings\JEM\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/08/11 17:15:00 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2007/10/23 03:22:58 | 000,000,283 | R--- | M] () - E:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2012/01/15 17:53:56 | 000,000,000 | ---D | M] - F:\Autoruns -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)