OTlist:
OTListIt logfile created on: 4/23/2009 7:08:38 PM - Run 1
OTListIt2 by OldTimer - Version 2.0.14.0 Folder = C:\Documents and Settings\Joe Tomsic\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.58 Gb Available Physical Memory | 79.30% Memory free
3.85 Gb Paging File | 3.56 Gb Available in Paging File | 92.51% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092;
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232.88 Gb Total Space | 31.09 Gb Free Space | 13.35% Space Free | Partition Type: NTFS
Drive D: | 27.03 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive E: | 27.84 Gb Total Space | 6.21 Gb Free Space | 22.31% Space Free | Partition Type: FAT32
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: JOE
Current User Name: Joe Tomsic
Logged in as Administrator.
Current Boot Mode: SafeMode
Scan Mode: Current user
Output = Minimal
File Age = 30 Days
Company Name Whitelist: On
========== Processes (SafeList) ==========
PRC - C:\WINDOWS\Explorer.EXE (Microsoft Corporation)
PRC - C:\WINDOWS\BCMSMMSG.exe (Broadcom Corporation)
PRC - C:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.)
PRC - C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)
PRC - C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
PRC - C:\Program Files\Stardock\CursorFX\CursorFX.exe (Stardock Corporation)
PRC - C:\Program Files\GameTracker\GTLite.exe (ClanServers Hosting LLC)
PRC - C:\Documents and Settings\Joe Tomsic\Desktop\OTListIt2.exe (OldTimer Tools)
========== Win32 Services (SafeList) ==========
SRV - (.EsetTrialReset [Auto | Stopped]) -- C:\WINDOWS\system32\regedt32.exe (Microsoft Corporation)
SRV - (Adobe Version Cue CS4 [On_Demand | Stopped]) -- C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe (Adobe Systems Incorporated)
SRV - (Apple Mobile Device [Auto | Stopped]) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (aspnet_state [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (Bonjour Service [Auto | Stopped]) -- C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
SRV - (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (FLEXnet Licensing Service [On_Demand | Stopped]) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (FontCache3.0.0.0 [On_Demand | Stopped]) -- c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
SRV - (GS In-Game Service [Auto | Stopped]) -- C:\Program Files\GameTracker\GSInGameService.exe (ClanServers Hosting LLC)
SRV - (gupdate1c9b32b171886be [Auto | Stopped]) -- C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
SRV - (gusvc [Disabled | Stopped]) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (Google)
SRV - (helpsvc [Auto | Running]) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation)
SRV - (IDriverT [On_Demand | Stopped]) -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (idsvc [Unknown | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe (Microsoft Corporation)
SRV - (iPod Service [On_Demand | Stopped]) -- C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.)
SRV - (MSSQL$SONY_MEDIAMGR2 [Disabled | Stopped]) -- c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (Microsoft Corporation)
SRV - (MSSQLServerADHelper [Disabled | Stopped]) -- c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe (Microsoft Corporation)
SRV - (NetTcpPortSharing [Disabled | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)
SRV - (nTuneService [Disabled | Stopped]) -- C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe (NVIDIA)
SRV - (NVSvc [Auto | Stopped]) -- C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation)
SRV - (PnkBstrA [Auto | Stopped]) -- C:\WINDOWS\system32\PnkBstrA.exe ()
SRV - (PnkBstrB [Auto | Stopped]) -- C:\WINDOWS\system32\PnkBstrB.exe ()
SRV - (SeaPort [Auto | Stopped]) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corp.)
SRV - (SPCSUtilityService [Auto | Stopped]) -- C:\Program Files\Sprint\Sierra Wireless\Sprint PCS Connection Manager\SPCSUtilityService.exe (Sprint Spectrum, L.L.C)
SRV - (SQLBrowser [Disabled | Stopped]) -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation)
SRV - (SQLWriter [Disabled | Stopped]) -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation)
SRV - (TuneUp.Defrag [Disabled | Stopped]) -- C:\WINDOWS\System32\TuneUpDefragService.exe (TuneUp Software)
SRV - (TuneUp.ProgramStatisticsSvc [Disabled | Stopped]) -- C:\WINDOWS\System32\TUProgSt.exe (TuneUp Software)
SRV - (UxTuneUp [Auto | Stopped]) -- C:\WINDOWS\System32\uxtuneup.dll (TuneUp Software)
SRV - (Viewpoint Manager Service [Disabled | Stopped]) -- C:\Program Files\Viewpoint\Common\ViewpointService.exe (Viewpoint Corporation)
SRV - (WMPNetworkSvc [Disabled | Stopped]) -- C:\Program Files\Windows Media Player\WMPNetwk.exe (Microsoft Corporation)
========== Driver Services (SafeList) ==========
DRV - (61883 [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\61883.sys (Microsoft Corporation)
DRV - (adfs [Auto | Stopped]) -- C:\WINDOWS\System32\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (AmdK8 [System | Running]) -- C:\WINDOWS\system32\DRIVERS\AmdK8.sys (Advanced Micro Devices)
DRV - (AmdLLD [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\AmdLLD.sys (AMD, Inc.)
DRV - (Avc [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\avc.sys (Microsoft Corporation)
DRV - (BCMModem [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\BCMSM.sys (Broadcom Corporation)
DRV - (e41d09a8 [System | Stopped]) -- C:\WINDOWS\System32\drivers\e41d09a8.sys ()
DRV - (gdrv [On_Demand | Stopped]) -- C:\WINDOWS\gdrv.sys (Windows (R) 2000 DDK provider)
DRV - (GEARAspiWDM [On_Demand | Running]) -- C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV - (HDAudBus [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\HDAudBus.sys (Windows (R) Server 2003 DDK provider)
DRV - (IntcAzAudAddService [On_Demand | Running]) -- C:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (MODEMCSA [On_Demand | Stopped]) -- C:\WINDOWS\system32\drivers\MODEMCSA.sys (Microsoft Corporation)
DRV - (MSDV [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\msdv.sys (Microsoft Corporation)
DRV - (NPF [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\npf.sys (CACE Technologies)
DRV - (nv [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\nv4_mini.sys (NVIDIA Corporation)
DRV - (NVR0Dev [On_Demand | Stopped]) -- C:\WINDOWS\nvoclock.sys (NVidia Corp.)
DRV - (Ptilink [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\ptilink.sys (Parallel Technologies, Inc.)
DRV - (PxHelp20 [Boot | Running]) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (RivaTuner32 [On_Demand | Stopped]) -- C:\Program Files\RivaTuner v2.23\RivaTuner32.sys ()
DRV - (RTLE8023xp [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (SASDIFSV [System | Running]) -- C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASENUM [On_Demand | Stopped]) -- C:\Program Files\SUPERAntiSpyware\SASENUM.SYS ( SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASKUTIL [System | Running]) -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (Secdrv [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (snpstd [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\snpstd.sys ()
DRV - (swmsflt [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\swmsflt.sys ()
DRV - (SWMX00 [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\swmx00.sys (Sierra Wireless Inc.)
DRV - (SWNC5E00 [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\SWNC5E00.sys (Sierra Wireless Inc.)
DRV - (RTCore32 [On_Demand | Stopped]) -- C:\Program Files\EVGA Precision\RTCore32.sys ()
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Yahoo! Search
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.speedbit.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,AutoSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/saautosearch.aspx
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultEngine: "Yahoo"
FF - prefs.js..browser.search.defaultenginename: "Live Search"
FF - prefs.js..browser.search.defaultthis.engineName: "Photobucket_Hack Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.live.com/results.aspx?FORM=IEFM1&q="
FF - prefs.js..browser.search.param.yahoo-fr: "moz2-ytff-flv"
FF - prefs.js..browser.search.param.yahoo-fr-cjkt: "moz2-ytff-flv"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "www.ulv.no"
FF - prefs.js..extensions.enabledItems: DTToolbar@toolbarnet.com:1.0.7.0088
FF - prefs.js..extensions.enabledItems: {2EF30AA2-1590-4FEA-BED6-3E810EA4F5F9}:1.0
FF - prefs.js..extensions.enabledItems: {42EE029C-1CB5-484B-9089-A61FE42FBA36}:1.0
FF - prefs.js..extensions.enabledItems: {60270dc7-9ea0-472f-9b77-66652c06246e}:1.5.39.0
FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:1.6.1.20080801
FF - prefs.js..extensions.enabledItems: {a0bd1aa7-4a60-4e10-846e-b9f8e1787a60}:1.5.46.0
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.1
FF - prefs.js..extensions.enabledItems: {70F1033D-DB53-4AF4-AD06-774AE52E1BFF}:1.0
FF - prefs.js..extensions.enabledItems: {91E18F33-9F38-4BB0-9BCD-9547BE07CB9B}:1.0
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.8
FF - prefs.js..extensions.enabledItems: NG_Classic@snakehole.net:2.0b4
FF - prefs.js..keyword.URL: "http://search.live.com/results.aspx?FORM=IEFM1&q="
FF - HKLM\software\mozilla\Mozilla Firefox 3.0\extensions\\Components: C:\PROGRAM FILES\MOZILLA FIREFOX 3 BETA 5\COMPONENTS [2009/03/25 18:12:26 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0\extensions\\Plugins: C:\PROGRAM FILES\MOZILLA FIREFOX 3 BETA 5\PLUGINS [2009/04/17 21:50:29 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.8\extensions\\Components: C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS [2009/04/06 20:33:57 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.8\extensions\\Plugins: C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS [2009/04/17 21:50:29 | 00,000,000 | ---D | M]
[2009/02/04 21:17:07 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Joe Tomsic\Application Data\mozilla\Extensions
[2008/05/12 19:02:29 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Joe Tomsic\Application Data\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009/02/04 21:17:07 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Joe Tomsic\Application Data\mozilla\Extensions\mozswing@mozswing.org
[2009/04/19 19:42:47 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Joe Tomsic\Application Data\mozilla\Firefox\Profiles\ivl2tm17.default\extensions
[2009/03/01 01:50:26 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Joe Tomsic\Application Data\mozilla\Firefox\Profiles\ivl2tm17.default\extensions\{60270dc7-9ea0-472f-9b77-66652c06246e}
[2008/11/16 15:02:06 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Joe Tomsic\Application Data\mozilla\Firefox\Profiles\ivl2tm17.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2008/05/12 19:03:28 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Joe Tomsic\Application Data\mozilla\Firefox\Profiles\ivl2tm17.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}
[2008/09/28 22:26:51 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Joe Tomsic\Application Data\mozilla\Firefox\Profiles\ivl2tm17.default\extensions\{7affbfae-c4e2-4915-8c0f-00fa3ec610a1}
[2008/09/26 22:11:30 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Joe Tomsic\Application Data\mozilla\Firefox\Profiles\ivl2tm17.default\extensions\{a0bd1aa7-4a60-4e10-846e-b9f8e1787a60}
[2009/02/09 17:09:43 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Joe Tomsic\Application Data\mozilla\Firefox\Profiles\ivl2tm17.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2008/05/18 13:48:57 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Joe Tomsic\Application Data\mozilla\Firefox\Profiles\ivl2tm17.default\extensions\NG_Classic@snakehole.net
[2008/09/21 19:31:14 | 00,000,894 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Application Data\Mozilla\FireFox\Profiles\ivl2tm17.default\searchplugins\conduit.xml
[2008/05/12 17:00:38 | 00,002,921 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Application Data\Mozilla\FireFox\Profiles\ivl2tm17.default\searchplugins\daemon-search.xml
[2009/03/17 18:15:35 | 00,001,632 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Application Data\Mozilla\FireFox\Profiles\ivl2tm17.default\searchplugins\live-search.xml
[2009/04/19 19:42:47 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009/04/18 13:24:48 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{2EF30AA2-1590-4FEA-BED6-3E810EA4F5F9}
[2009/01/14 05:18:27 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{42EE029C-1CB5-484B-9089-A61FE42FBA36}
[2009/04/19 14:22:43 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{70F1033D-DB53-4AF4-AD06-774AE52E1BFF}
[2009/04/18 19:08:37 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{91E18F33-9F38-4BB0-9BCD-9547BE07CB9B}
[2009/04/06 20:33:57 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009/04/22 18:26:08 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{C0D23607-BF89-4BC5-8AE2-5A32A15A7A35}
[2009/03/26 15:11:21 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009/03/26 15:11:22 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2009/03/26 14:56:22 | 00,001,394 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom.xml
[2009/03/26 14:56:22 | 00,002,193 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\answers.xml
[2009/03/26 14:56:22 | 00,001,534 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\creativecommons.xml
[2009/03/26 14:56:22 | 00,002,343 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay.xml
[2009/03/26 14:56:22 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2009/03/26 14:56:22 | 00,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia.xml
[2009/03/26 14:56:22 | 00,000,792 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo.xml
O1 HOSTS File: (736 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 jL.chura.pl
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (&Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O3 - HKLM\..\Toolbar: (P2P Energy Toolbar) - {2bae58c2-79f9-45d1-a286-81f911301c3a} - C:\Program Files\P2P_Energy\tbP2P_.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe [2009/04/17 22:16:07 | 00,000,000 | ---D | M]
O3 - HKLM\..\Toolbar: (SpeedBitPlus Toolbar) - {60270dc7-9ea0-472f-9b77-66652c06246e} - C:\Program Files\SpeedBitPlus\tbSpee.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (AIM Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll (AOL LLC)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {60270DC7-9EA0-472F-9B77-66652C06246E} - C:\Program Files\SpeedBitPlus\tbSpee.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {60270DC7-9EA0-472F-9B77-66652C06246E} - C:\Program Files\SpeedBitPlus\tbSpee.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - Reg Error: Key error. File not found
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe" (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe_ID0ENQBO] C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~2\Server\bin\VERSIO~2.EXE (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Alcmtr] ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [AlcWzrd] ALCWZRD.EXE (RealTek Semicoductor Corp.)
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)
O4 - HKLM..\Run: [APVXDWIN] "C:\Program Files\Panda Security\Panda Antivirus Pro 2009\APVXDWIN.EXE" /s File not found
O4 - HKLM..\Run: [BCMSMMSG] BCMSMMSG.exe (Broadcom Corporation)
O4 - HKLM..\Run: [EVGAPrecision] "C:\Program Files\EVGA Precision\EVGAPrecision.exe" /s ()
O4 - HKLM..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" (Apple Inc.)
O4 - HKLM..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] nwiz.exe /install ()
O4 - HKLM..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime (Apple Inc.)
O4 - HKLM..\Run: [RTHDCPL] RTHDCPL.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [SCANINICIO] "C:\Program Files\Panda Security\Panda Antivirus Pro 2009\Inicio.exe" File not found
O4 - HKLM..\Run: [SoundMan] SOUNDMAN.EXE (Realtek Semiconductor Corp.)
O4 - HKCU..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp (AOL LLC)
O4 - HKCU..\Run: [CursorFX] "C:\Program Files\Stardock\CursorFX\CursorFX.exe" (Stardock Corporation)
O4 - HKCU..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent (Electronic Arts)
O4 - HKCU..\Run: [GameTracker] C:\Program Files\GameTracker\GTLite.exe (ClanServers Hosting LLC)
O4 - HKCU..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (Microsoft Corporation)
O4 - HKCU..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear (NVIDIA)
O4 - Startup: C:\Documents and Settings\Joe Tomsic\Start Menu\Programs\Startup\Alienware Dock.lnk = C:\Program Files\AlienGUIse\AlienwareDock\ObjectDock.exe (Stardock)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispBackgroundPage = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispScrSavPage = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O8 - Extra context menu item: &AIM Search - c:\program files\aol\aim toolbar 5.0\resources\en-US\local\search.html ()
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx File not found
O8 - Extra context menu item: Append to existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html (Adobe Systems Incorporated)
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\npjpi160_05.dll (Sun Microsystems, Inc.)
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: AIM Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll (AOL LLC)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [NWLink IPX/SPX/NetBIOS Compatible Transport Protocol] - C:\WINDOWS\System32\nwprovau.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 41 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKCU\..Trusted Domains: 40 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {2703049B-D81D-4763-A3C6-AF8932FCBD8F} https://am.hrblock.com/ActivexComponent/CheckFileStatus.CAB (CheckFileStatus.UserControl1)
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} http://messenger.zone.msn.com/EN-US/a-UNO1/GAME_UNO1.cab (UnoCtrl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1210621279093 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab (MSN Games - Installer)
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} http://messenger.zone.msn.com/binary/Bankshot.cab57213.cab (CBreakshotControl Class)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab (Minesweeper Flags Class)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (C:\Documents) - File not found
O20 - HKLM Winlogon: UIHost - (and) - File not found
O20 - HKLM Winlogon: UIHost - (Settings\All) - File not found
O20 - HKLM Winlogon: UIHost - (Users\Application) - File not found
O20 - HKLM Winlogon: UIHost - (Data\TuneUp) - File not found
O20 - HKLM Winlogon: UIHost - (Software\TuneUp) - File not found
O20 - HKLM Winlogon: UIHost - (WinStyler\WinStyler\tu_logonui.exe) - File not found
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\avldr: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O21 - SSODL: IconPackager Repair - {1799460C-0BC8-4865-B9DF-4A36CD703FF0} - C:\Program Files\Stardock\Object Desktop\IconPackager\iprepair.dll (Stardock.net, Inc)
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O24 - Desktop Components:1 () - http://us.media.blizzard.com/1901200114/_flash/frontpage.swf
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O30 - LSA: Authentication Packages - (C:\WINDOWS\system32\efcdDwUl) - File not found
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - Autorun File - C:\AUTOEXEC.BAT () - [ NTFS ]
O32 - Autorun File - D:\autorun.inf () - [ CDFS ]
O32 - Autorun File - E:\AUTORUN.INF () - [ FAT32 ]
O33 - MountPoints2\D\Shell - "" = AutoRun
O33 - MountPoints2\D\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\D\Shell\AutoRun\command - "" = D:\SCMInstaller.exe -- [2007/09/24 12:51:48 | 23,444,960 | R--- | M] (Sierra Wireless )
O33 - MountPoints2\D\Shell\install\command - "" = D:\SCMInstaller.exe -- [2007/09/24 12:51:48 | 23,444,960 | R--- | M] (Sierra Wireless )
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
O34 - HKLM BootExecute: (MACHINE) - File not found
O34 - HKLM BootExecute: (BootExecut) - File not found
========== Files/Folders - Created Within 30 Days ==========
[7 C:\WINDOWS\System32\*.tmp files]
[5 C:\WINDOWS\*.tmp files]
[2009/04/23 19:08:21 | 00,521,728 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Joe Tomsic\Desktop\OTListIt2.exe
[2009/04/23 16:56:00 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Joe Tomsic\Desktop\32788R22FWJFW
[2009/04/22 21:50:25 | 00,001,734 | ---- | C] () -- C:\Documents and Settings\Joe Tomsic\Desktop\HijackThis.lnk
[2009/04/22 21:50:16 | 00,812,344 | ---- | C] (Trend Micro Inc.) -- C:\Documents and Settings\Joe Tomsic\Desktop\HJTInstall.exe
[2009/04/22 19:25:29 | 00,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2009/04/22 18:11:29 | 01,466,368 | ---- | C] (Option^Explicit Software Solutions) -- C:\Documents and Settings\Joe Tomsic\Desktop\WinsockxpFix.exe
[2009/04/19 23:25:58 | 00,251,392 | ---- | C] () -- C:\Documents and Settings\Joe Tomsic\Desktop\hijackthis_sfx.exe
[2009/04/19 22:51:34 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Joe Tomsic\Desktop\gmer
[2009/04/19 22:39:23 | 00,541,022 | ---- | C] () -- C:\Documents and Settings\Joe Tomsic\My Documents\cc_20090419_223915.reg
[2009/04/19 22:34:51 | 00,000,696 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/04/19 22:34:50 | 00,015,504 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2009/04/19 22:34:45 | 00,038,496 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2009/04/19 22:34:42 | 00,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2009/04/19 22:32:04 | 03,190,688 | ---- | C] (Piriform Ltd) -- C:\Documents and Settings\Joe Tomsic\Desktop\ccsetup218.exe
[2009/04/19 21:30:35 | 00,000,000 | ---D | C] -- C:\VundoFix Backups
[2009/04/19 20:42:19 | 13,678,048 | ---- | C] (Doctor Web, Ltd.) -- C:\Documents and Settings\Joe Tomsic\Desktop\drweb-cureit.exe
[2009/04/19 20:18:17 | 00,000,000 | ---D | C] -- C:\Program Files\Windows Resource Kits
[2009/04/19 19:21:22 | 00,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2009/04/19 19:21:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
[2009/04/19 18:41:05 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Joe Tomsic\Desktop\SmitfraudFix
[2009/04/19 15:52:38 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2009/04/19 15:52:33 | 00,001,756 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Professional.lnk
[2009/04/19 15:52:31 | 00,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2009/04/19 15:52:31 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Joe Tomsic\Application Data\SUPERAntiSpyware.com
[2009/04/19 14:35:42 | 00,017,920 | ---- | C] (Sierra Wireless America, Inc.) -- C:\WINDOWS\System32\apintfnt.dll
[2009/04/19 14:34:41 | 00,001,070 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Sprint Mobile Broadband (Sierra).lnk
[2009/04/19 14:34:39 | 00,000,000 | ---D | C] -- C:\Program Files\Sprint
[2009/04/19 14:34:39 | 00,000,000 | ---D | C] -- C:\Program Files\Sierra Wireless
[2009/04/19 14:19:45 | 00,000,000 | ---D | C] -- C:\Qoobox
[2009/04/19 14:12:53 | 00,309,248 | ---- | C] () -- C:\Documents and Settings\Joe Tomsic\Desktop\bujvuzhc.exe
[2009/04/19 13:06:17 | 00,008,627 | ---- | C] () -- C:\WINDOWS\System32\PAV_FOG.OPC
[2009/04/19 12:56:09 | 00,000,167 | ---- | C] () -- C:\WINDOWS\AvDetected.ini
[2009/04/19 12:55:28 | 81,751,488 | ---- | C] () -- C:\Documents and Settings\Joe Tomsic\Desktop\AP09promo.exe
[2009/04/18 22:54:15 | 31,707,552 | ---- | C] () -- C:\Documents and Settings\Joe Tomsic\Desktop\avira_antivir_professional_en.exe
[2009/04/18 22:27:41 | 00,000,000 | ---D | C] -- C:\Program Files\ESET
[2009/04/18 14:21:57 | 00,089,448 | ---- | C] () -- C:\WINDOWS\System32\drivers\e41d09a8.sys
[2009/04/18 13:58:46 | 00,000,003 | ---- | C] () -- C:\WINDOWS\System32\bversion.dll
[2009/04/18 13:57:35 | 00,565,248 | ---- | C] () -- C:\WINDOWS\System32\IPHACTION.dll
[2009/04/18 13:32:44 | 00,000,372 | -HS- | C] () -- C:\WINDOWS\System32\lUwDdcfe.ini2
[2009/04/18 13:32:42 | 00,002,719 | -HS- | C] () -- C:\WINDOWS\System32\lUwDdcfe.ini
[2009/04/18 13:26:56 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\IpSvchostF.dll
[2009/04/18 13:25:41 | 00,061,440 | ---- | C] () -- C:\WINDOWS\System32\tcpd.exe
[2009/04/18 13:25:39 | 00,989,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kernel32_check.dll
[2009/04/18 13:25:37 | 00,010,240 | ---- | C] () -- C:\WINDOWS\System32\Packer.dll
[2009/04/18 13:25:37 | 00,000,025 | ---- | C] () -- C:\WINDOWS\System32\tcpd.dll
[2009/04/18 13:25:37 | 00,000,009 | ---- | C] () -- C:\WINDOWS\System32\iphy.dll
[2009/04/18 13:25:37 | 00,000,003 | ---- | C] () -- C:\WINDOWS\System32\fhpatch.dll
[2009/04/18 13:25:37 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\fiplock.dll
[2009/04/18 13:25:30 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\3361
[2009/04/18 13:25:24 | 00,000,000 | ---D | C] -- C:\WINDOWS\dhcp
[2009/04/18 11:54:22 | 00,159,744 | ---- | C] (Blizzard Entertainment) -- C:\WINDOWS\War3Unin.exe
[2009/04/18 11:54:22 | 00,063,272 | ---- | C] () -- C:\WINDOWS\War3Unin.dat
[2009/04/18 11:54:22 | 00,002,829 | ---- | C] () -- C:\WINDOWS\War3Unin.pif
[2009/04/18 11:52:29 | 00,000,000 | ---D | C] -- C:\Program Files\Warcraft III
[2009/04/17 22:11:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\ALM
[2009/04/17 21:51:11 | 00,045,392 | R--- | C] (Adobe Systems Inc) -- C:\WINDOWS\System32\AdobePDF.dll
[2009/04/17 21:50:30 | 00,001,767 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Adobe Acrobat 9 Pro.lnk
[2009/04/17 21:35:07 | 00,000,000 | ---D | C] -- C:\Program Files\Adobe Media Player
[2009/04/17 21:33:03 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2009/04/17 21:24:26 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Macrovision Shared
[2009/04/12 15:25:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Joe Tomsic\Desktop\Wii
[2009/04/12 11:18:54 | 00,000,000 | ---D | C] -- C:\divx
[2009/04/10 14:50:12 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Joe Tomsic\Local Settings\Application Data\Activision
[2009/04/10 14:41:51 | 00,189,072 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2009/04/10 14:36:10 | 00,001,675 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Call of Duty(R) - World at War(TM) Multiplayer.lnk
[2009/04/10 14:36:10 | 00,001,665 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Call of Duty(R) - World at War(TM) Solo - Co-op.lnk
[2009/04/10 14:35:28 | 00,682,280 | ---- | C] () -- C:\WINDOWS\System32\pbsvc.exe
[2009/04/10 02:58:58 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Joe Tomsic\Desktop\profiles
[2009/04/08 12:31:23 | 00,215,715 | ---- | C] () -- C:\WINDOWS\System32\nvapps.xml
[2009/04/08 12:31:23 | 00,019,054 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu
[2009/04/08 12:31:23 | 00,000,000 | ---D | C] -- C:\WINDOWS\nview
[2009/04/08 12:30:57 | 00,000,000 | ---D | C] -- C:\NVIDIA
[2009/04/08 12:21:57 | 00,022,528 | ---- | C] () -- C:\WINDOWS\_MSRSTRT.EXE
[2009/04/06 22:17:23 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Joe Tomsic\Desktop\FEAR Perseus Mandate
[2009/04/06 20:33:58 | 00,001,633 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2009/04/06 12:54:28 | 00,000,893 | ---- | C] () -- C:\Documents and Settings\Joe Tomsic\Start Menu\Programs\Startup\Alienware Dock.lnk
[2009/04/06 12:51:52 | 05,760,054 | ---- | C] () -- C:\WINDOWS\AW_XenoMorph1600.bmp
[2009/04/06 12:50:54 | 05,760,054 | ---- | C] () -- C:\WINDOWS\AW_1600x1200.bmp
[2009/04/05 14:52:06 | 00,000,000 | ---D | C] -- C:\Program Files\Awesom-O
[2009/04/04 19:22:54 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\TimeGate Studios
[2009/04/01 20:38:35 | 00,001,773 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2009/04/01 20:36:43 | 00,000,890 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
[2009/04/01 20:36:32 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\DivX Shared
[2009/04/01 20:29:44 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Joe Tomsic\My Documents\Any Video Converter
[2009/03/27 10:03:00 | 01,724,416 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2009/03/27 10:03:00 | 01,657,376 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2009/03/27 10:03:00 | 01,503,232 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2009/03/27 10:03:00 | 01,346,080 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2009/03/27 10:03:00 | 01,101,824 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2009/03/27 10:03:00 | 00,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2009/03/27 10:03:00 | 00,449,056 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2009/03/27 10:03:00 | 00,436,768 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2009/03/27 10:03:00 | 00,073,728 | ---- | C] () -- C:\WINDOWS\System32\nvtuicpl.cpl
[2009/03/25 18:14:48 | 00,002,137 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2009/03/25 18:14:08 | 00,000,000 | ---D | C] -- C:\Program Files\iPod
[2009/03/25 18:14:05 | 00,000,000 | ---D | C] -- C:\Program Files\iTunes
[2009/03/25 18:14:05 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
[2009/03/25 18:12:17 | 00,001,604 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\QuickTime Player.lnk
[2009/01/17 17:20:49 | 00,119,296 | ---- | C] () -- C:\WINDOWS\System32\zlib.dll
[2009/01/17 17:20:49 | 00,057,344 | ---- | C] () -- C:\WINDOWS\System32\ADsSecurity.dll
[2009/01/17 17:20:49 | 00,036,864 | ---- | C] () -- C:\WINDOWS\System32\dxinputdll.dll
[2009/01/17 17:15:28 | 00,000,118 | ---- | C] () -- C:\WINDOWS\Eztoo DVD To PSP Converter.ini
[2009/01/17 16:53:52 | 00,000,118 | ---- | C] () -- C:\WINDOWS\pro Eztoo DVD To PSP Converter.ini
[2009/01/16 12:04:47 | 00,000,235 | ---- | C] () -- C:\WINDOWS\System32\xcchit32.ini
[2009/01/15 23:04:10 | 00,000,819 | ---- | C] () -- C:\WINDOWS\xccwinsys.ini
[2008/11/25 19:56:27 | 00,018,612 | -H-- | C] () -- C:\WINDOWS\System32\config.ini.exe
[2008/11/22 16:00:47 | 00,000,038 | ---- | C] () -- C:\WINDOWS\AviSplitter.INI
[2008/11/12 19:09:11 | 00,017,917 | ---- | C] () -- C:\WINDOWS\System32\upis.dll
[2008/10/28 17:40:48 | 00,173,552 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat
[2008/10/10 23:42:56 | 00,299,776 | ---- | C] () -- C:\WINDOWS\System32\drivers\snpstd.sys
[2008/10/10 23:42:55 | 00,057,344 | ---- | C] ( ) -- C:\WINDOWS\System32\csnpstd.dll
[2008/10/10 23:42:55 | 00,053,248 | ---- | C] () -- C:\WINDOWS\System32\dsnpstd.dll
[2008/10/10 23:42:55 | 00,036,864 | ---- | C] ( ) -- C:\WINDOWS\System32\vsnpstd.dll
[2008/10/10 23:42:55 | 00,015,541 | ---- | C] () -- C:\WINDOWS\snpstd.ini
[2008/10/07 10:13:30 | 00,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
[2008/10/07 10:13:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008/10/07 10:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
[2008/10/07 10:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
[2008/10/07 10:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008/10/07 10:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
[2008/10/07 10:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
[2008/10/07 10:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
[2008/10/07 10:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
[2008/10/07 10:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
[2008/10/05 11:03:38 | 00,000,009 | ---- | C] () -- C:\WINDOWS\ULEAD32.INI
[2008/08/14 06:03:06 | 00,000,197 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2008/06/30 01:57:17 | 00,021,840 | ---- | C] () -- C:\WINDOWS\System32\SIntfNT.dll
[2008/06/30 01:57:17 | 00,017,212 | ---- | C] () -- C:\WINDOWS\System32\SIntf32.dll
[2008/06/30 01:57:17 | 00,012,067 | ---- | C] () -- C:\WINDOWS\System32\SIntf16.dll
[2008/06/04 17:31:53 | 00,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll
[2008/06/03 16:41:51 | 00,000,056 | ---- | C] () -- C:\WINDOWS\wb.ini
[2008/05/31 20:59:17 | 00,000,000 | ---- | C] () -- C:\WINDOWS\WoWEmuHackSettings.ini
[2008/05/25 01:34:20 | 00,007,680 | ---- | C] () -- C:\WINDOWS\System32\CNMVS64.DLL
[2008/05/24 01:53:28 | 02,463,976 | ---- | C] () -- C:\WINDOWS\System32\NPSWF32.dll
[2007/10/05 07:26:08 | 00,000,031 | ---- | C] () -- C:\WINDOWS\IDC.INI
[2007/09/27 11:51:02 | 00,020,698 | ---- | C] () -- C:\WINDOWS\System32\idxcntrs.ini
[2007/09/27 11:48:48 | 00,030,628 | ---- | C] () -- C:\WINDOWS\System32\gsrvctr.ini
[2007/09/27 11:48:28 | 00,031,698 | ---- | C] () -- C:\WINDOWS\System32\gthrctr.ini
[2007/08/10 14:08:48 | 00,024,456 | ---- | C] () -- C:\WINDOWS\System32\drivers\swmsflt.sys
[2007/03/12 15:01:30 | 00,217,088 | ---- | C] () -- C:\WINDOWS\NVGfxOgl.dll
[2007/01/10 07:44:26 | 01,457,024 | R--- | C] () -- C:\WINDOWS\System32\SSCProt.dll
[2005/10/14 05:56:50 | 00,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2005/10/14 05:56:50 | 00,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2005/10/14 05:56:50 | 00,344,064 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2005/10/14 05:56:50 | 00,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005/10/14 05:56:50 | 00,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005/10/14 05:56:50 | 00,155,136 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2005/10/14 05:56:50 | 00,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005/10/14 05:56:48 | 00,077,824 | ---- | C] () -- C:\WINDOWS\System32\MMSwitch.dll
[2004/12/19 09:29:40 | 00,106,496 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2004/08/04 08:00:00 | 00,000,610 | ---- | C] () -- C:\WINDOWS\win.ini
[2004/08/04 08:00:00 | 00,000,227 | ---- | C] () -- C:\WINDOWS\system.ini
[2002/05/15 19:38:40 | 00,091,136 | ---- | C] () -- C:\WINDOWS\System32\mp4fil32.dll
[1996/04/03 15:33:26 | 00,005,248 | ---- | C] () -- C:\WINDOWS\System32\giveio.sys
========== Files - Modified Within 30 Days ==========
[7 C:\WINDOWS\System32\*.tmp files]
[5 C:\WINDOWS\*.tmp files]
[2009/04/23 19:07:44 | 00,521,728 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Joe Tomsic\Desktop\OTListIt2.exe
[2009/04/23 16:38:07 | 00,215,715 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2009/04/23 16:37:29 | 00,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009/04/23 16:37:13 | 00,000,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2009/04/23 16:36:48 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009/04/22 21:50:25 | 00,001,734 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Desktop\HijackThis.lnk
[2009/04/22 21:47:44 | 00,812,344 | ---- | M] (Trend Micro Inc.) -- C:\Documents and Settings\Joe Tomsic\Desktop\HJTInstall.exe
[2009/04/22 18:07:30 | 01,466,368 | ---- | M] (Option^Explicit Software Solutions) -- C:\Documents and Settings\Joe Tomsic\Desktop\WinsockxpFix.exe
[2009/04/19 23:25:26 | 00,251,392 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Desktop\hijackthis_sfx.exe
[2009/04/19 22:39:32 | 00,541,022 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\My Documents\cc_20090419_223915.reg
[2009/04/19 22:34:51 | 00,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/04/19 22:27:32 | 03,190,688 | ---- | M] (Piriform Ltd) -- C:\Documents and Settings\Joe Tomsic\Desktop\ccsetup218.exe
[2009/04/19 21:50:07 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009/04/19 21:47:28 | 00,000,496 | ---- | M] () -- C:\WINDOWS\tasks\1-Click Maintenance.job
[2009/04/19 21:47:22 | 00,000,890 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
[2009/04/19 21:26:41 | 00,000,326 | ---- | M] () -- C:\WINDOWS\tasks\edgsktsj.job
[2009/04/19 20:57:51 | 00,220,672 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/04/19 20:45:05 | 00,033,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wscntfy.exe
[2009/04/19 20:45:00 | 00,289,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vssvc.exe
[2009/04/19 20:45:00 | 00,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\userinit.exe
[2009/04/19 20:45:00 | 00,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ups.exe
[2009/04/19 20:44:59 | 00,073,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tlntsvr.exe
[2009/04/19 20:44:58 | 00,089,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\smlogsvc.exe
[2009/04/19 20:44:58 | 00,077,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\spoolsv.exe
[2009/04/19 20:44:57 | 00,045,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\shmgrate.exe
[2009/04/19 20:44:56 | 00,459,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\searchindexer.exe
[2009/04/19 20:44:56 | 00,184,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\searchprotocolhost.exe
[2009/04/19 20:44:56 | 00,141,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sessmgr.exe
[2009/04/19 20:44:56 | 00,107,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\searchfilterhost.exe
[2009/04/19 20:44:55 | 00,132,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rsvp.exe
[2009/04/19 20:44:55 | 00,095,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\scardsvr.exe
[2009/04/19 20:44:55 | 00,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rundll32.exe
[2009/04/19 20:44:54 | 00,011,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\regsvr32.exe
[2009/04/19 20:44:54 | 00,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\regedt32.exe
[2009/04/19 20:44:50 | 00,031,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntsd.exe
[2009/04/19 20:44:49 | 00,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\netdde.exe
[2009/04/19 20:44:48 | 00,078,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msiexec.exe
[2009/04/19 20:44:47 | 00,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mnmsrvc.exe
[2009/04/19 20:44:47 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtc.exe
[2009/04/19 20:44:46 | 00,220,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\logon.scr
[2009/04/19 20:44:46 | 00,075,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\locator.exe
[2009/04/19 20:44:45 | 00,150,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\imapi.exe
[2009/04/19 20:44:45 | 00,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ieudinit.exe
[2009/04/19 20:44:42 | 00,054,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ie4uinit.exe
[2009/04/19 20:44:28 | 00,224,768 | ---- | M] (Microsoft Corp., Veritas Software) -- C:\WINDOWS\System32\dmadmin.exe
[2009/04/19 20:44:28 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllhost.exe
[2009/04/19 20:44:26 | 00,035,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ctfmon.exe
[2009/04/19 20:44:19 | 00,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\clipsrv.exe
[2009/04/19 20:44:19 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cisvc.exe
[2009/04/19 20:44:15 | 00,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\alg.exe
[2009/04/19 20:44:12 | 01,053,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
[2009/04/19 20:44:10 | 02,810,880 | ---- | M] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe
[2009/04/19 20:40:30 | 13,678,048 | ---- | M] (Doctor Web, Ltd.) -- C:\Documents and Settings\Joe Tomsic\Desktop\drweb-cureit.exe
[2009/04/19 19:29:41 | 00,249,147 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.bak
[2009/04/19 15:52:33 | 00,001,756 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Professional.lnk
[2009/04/19 14:34:41 | 00,001,070 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Sprint Mobile Broadband (Sierra).lnk
[2009/04/19 14:12:12 | 00,309,248 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Desktop\bujvuzhc.exe
[2009/04/19 13:06:35 | 00,008,627 | ---- | M] () -- C:\WINDOWS\System32\PAV_FOG.OPC
[2009/04/19 13:06:33 | 00,617,486 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009/04/19 13:06:33 | 00,509,266 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009/04/19 13:06:33 | 00,096,390 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009/04/19 13:05:59 | 00,000,610 | ---- | M] () -- C:\WINDOWS\win.ini
[2009/04/19 12:56:09 | 00,000,167 | ---- | M] () -- C:\WINDOWS\AvDetected.ini
[2009/04/19 12:52:42 | 81,751,488 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Desktop\AP09promo.exe
[2009/04/18 22:52:24 | 31,707,552 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Desktop\avira_antivir_professional_en.exe
[2009/04/18 16:21:15 | 00,089,448 | ---- | M] () -- C:\WINDOWS\System32\drivers\e41d09a8.sys
[2009/04/18 14:31:49 | 02,357,048 | -H-- | M] () -- C:\Documents and Settings\Joe Tomsic\Local Settings\Application Data\IconCache.db
[2009/04/18 13:58:46 | 00,000,003 | ---- | M] () -- C:\WINDOWS\System32\bversion.dll
[2009/04/18 13:57:42 | 00,565,248 | ---- | M] () -- C:\WINDOWS\System32\IPHACTION.dll
[2009/04/18 13:36:36 | 00,000,441 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics
[2009/04/18 13:34:54 | 00,002,719 | -HS- | M] () -- C:\WINDOWS\System32\lUwDdcfe.ini
[2009/04/18 13:32:44 | 00,000,372 | -HS- | M] () -- C:\WINDOWS\System32\lUwDdcfe.ini2
[2009/04/18 13:26:56 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\IpSvchostF.dll
[2009/04/18 13:25:52 | 00,000,025 | ---- | M] () -- C:\WINDOWS\System32\tcpd.dll
[2009/04/18 13:25:42 | 00,061,440 | ---- | M] () -- C:\WINDOWS\System32\tcpd.exe
[2009/04/18 13:25:38 | 00,989,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kernel32_check.dll
[2009/04/18 13:25:38 | 00,989,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kernel32.dll
[2009/04/18 13:25:37 | 00,010,240 | ---- | M] () -- C:\WINDOWS\System32\Packer.dll
[2009/04/18 13:25:37 | 00,000,009 | ---- | M] () -- C:\WINDOWS\System32\iphy.dll
[2009/04/18 13:25:37 | 00,000,003 | ---- | M] () -- C:\WINDOWS\System32\fhpatch.dll
[2009/04/18 13:25:37 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\fiplock.dll
[2009/04/18 13:25:25 | 00,000,077 | -HS- | M] () -- C:\Documents and Settings\Joe Tomsic\My Documents\desktop.ini
[2009/04/18 11:58:26 | 00,063,272 | ---- | M] () -- C:\WINDOWS\War3Unin.dat
[2009/04/18 11:57:51 | 00,159,744 | ---- | M] (Blizzard Entertainment) -- C:\WINDOWS\War3Unin.exe
[2009/04/18 11:57:51 | 00,002,829 | ---- | M] () -- C:\WINDOWS\War3Unin.pif
[2009/04/18 07:36:52 | 02,179,032 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/04/17 22:20:51 | 00,018,120 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/04/17 21:50:30 | 00,001,767 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Acrobat 9 Pro.lnk
[2009/04/15 21:20:33 | 00,189,072 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2009/04/15 21:20:33 | 00,189,072 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2009/04/14 11:19:00 | 00,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2009/04/10 16:28:11 | 00,002,137 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2009/04/10 14:40:28 | 00,075,064 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2009/04/10 14:36:10 | 00,001,675 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Call of Duty(R) - World at War(TM) Multiplayer.lnk
[2009/04/10 14:36:10 | 00,001,665 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Call of Duty(R) - World at War(TM) Solo - Co-op.lnk
[2009/04/10 14:35:50 | 00,022,328 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Application Data\PnkBstrK.sys
[2009/04/10 14:35:28 | 00,682,280 | ---- | M] () -- C:\WINDOWS\System32\pbsvc.exe
[2009/04/08 12:21:57 | 00,022,528 | ---- | M] () -- C:\WINDOWS\_MSRSTRT.EXE
[2009/04/06 20:33:58 | 00,001,633 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2009/04/06 15:32:54 | 00,038,496 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2009/04/06 15:32:46 | 00,015,504 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2009/04/06 12:54:28 | 03,932,214 | ---- | M] () -- C:\WINDOWS\AW_XenoMorph1280.bmp
[2009/04/06 12:54:28 | 00,000,893 | ---- | M] () -- C:\Documents and Settings\Joe Tomsic\Start Menu\Programs\Startup\Alienware Dock.lnk
[2009/04/06 12:51:52 | 05,760,054 | ---- | M] () -- C:\WINDOWS\AW_XenoMorph1600.bmp
[2009/04/06 12:50:54 | 05,760,054 | ---- | M] () -- C:\WINDOWS\AW_1600x1200.bmp
[2009/04/06 02:03:55 | 00,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2009/04/01 20:38:35 | 00,001,773 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2009/03/27 10:03:00 | 01,724,416 | ---- | M] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2009/03/27 10:03:00 | 01,657,376 | ---- | M] () -- C:\WINDOWS\System32\nwiz.exe
[2009/03/27 10:03:00 | 01,503,232 | ---- | M] () -- C:\WINDOWS\System32\nview.dll
[2009/03/27 10:03:00 | 01,346,080 | ---- | M] () -- C:\WINDOWS\System32\nvdspsch.exe
[2009/03/27 10:03:00 | 01,101,824 | ---- | M] () -- C:\WINDOWS\System32\nvwimg.dll
[2009/03/27 10:03:00 | 00,466,944 | ---- | M] () -- C:\WINDOWS\System32\nvshell.dll
[2009/03/27 10:03:00 | 00,449,056 | ---- | M] () -- C:\WINDOWS\System32\nvappbar.exe
[2009/03/27 10:03:00 | 00,436,768 | ---- | M] () -- C:\WINDOWS\System32\keystone.exe
[2009/03/27 10:03:00 | 00,073,728 | ---- | M] () -- C:\WINDOWS\System32\nvtuicpl.cpl
[2009/03/27 10:03:00 | 00,019,054 | ---- | M] () -- C:\WINDOWS\System32\nvdisp.nvu
[2009/03/25 18:12:17 | 00,001,604 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\QuickTime Player.lnk
========== Alternate Data Streams ==========
@Alternate Data Stream - 150 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:CD060F93
@Alternate Data Stream - 129 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:05EE1EEF
@Alternate Data Stream - 124 bytes -> C:\WINDOWS\System32\zlib.dll:SummaryInformation
@Alternate Data Stream - 124 bytes -> C:\WINDOWS\System32\zlib.dll:DocumentSummaryInformation
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:6DFF1A8A
@Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A9662AE0
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:0766416E
@Alternate Data Stream - 114 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:0F8F5844
@Alternate Data Stream - 112 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:12DCF8FC
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:888AFB86
< End of report >