Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-02-2014 02
Ran by Owner (administrator) on BILLSR on 01-03-2014 00:47:27
Running from C:\Documents and Settings\Owner\Desktop
Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST:
http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastUI.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\ALCXMNTR.EXE
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\WMPNSCFG.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Microsoft Corporation) C:\Program Files\internet explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\internet explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\internet explorer\iexplore.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AlcxMonitor] - C:\WINDOWS\ALCXMNTR.EXE [57344 2004-09-07] (Realtek Semiconductor Corp.)
HKLM\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [437160 2007-02-26] (Microsoft Corporation)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-1730167982-1273179249-2621698179-1003\...\Run: [SpybotSD TeaTimer] - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2260480 2009-03-05] (Safer-Networking Ltd.)
HKU\S-1-5-21-1730167982-1273179249-2621698179-1003\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [204288 2006-10-18] (Microsoft Corporation)
HKU\S-1-5-21-1730167982-1273179249-2621698179-1003\...\Policies\Explorer: [ClearRecentDocsOnExit] 0x01000000
HKU\S-1-5-21-1730167982-1273179249-2621698179-1003\...\Policies\Explorer: [NoRecentDocsHistory] 0x01000000
HKU\S-1-5-21-1730167982-1273179249-2621698179-1003\...\Policies\Explorer: [NoRecentDocsNetHood] 0x01000000
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://xfinity.comcast.net/home/x/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {A14D885F-DC23-4013-8516-C406D2E3CE50} URL = http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - &Address - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\System32\browseui.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5}
Tcpip\Parameters: [DhcpNameServer] 192.168.60.2 192.168.60.3 192.168.0.1
========================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S3 ClipSrv; No ImagePath
S2 EPSON_PM_RPCV4_01; No ImagePath
S2 HOSTS Anti-PUPs; No ImagePath
S3 ImapiService; No ImagePath
S2 SDhelper; No ImagePath
S3 WmiApSrv; No ImagePath
==================== Drivers (Whitelisted) ====================
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.)
R1 AFS2K; C:\WINDOWS\system32\Drivers\AFS2K.sys [43672 2004-06-03] (Oak Technology Inc.)
S3 ALCXSENS; C:\WINDOWS\System32\drivers\ALCXSENS.SYS [391424 2004-02-17] (Sensaura Ltd)
R3 ALCXWDM; C:\WINDOWS\System32\drivers\ALCXWDM.SYS [2279424 2004-10-01] (Realtek Semiconductor Corp.)
S3 AndNetDiag; C:\WINDOWS\System32\DRIVERS\lgandnetdiag.sys [23040 2012-07-03] (LG Electronics Inc.)
S3 ANDNetModem; C:\WINDOWS\System32\DRIVERS\lgandnetmodem.sys [27776 2012-07-03] (LG Electronics Inc.)
S3 andnetndis; C:\WINDOWS\System32\DRIVERS\lgandnetndis.sys [70400 2012-07-04] (LG Electronics Inc.)
R2 Aspi32; C:\WINDOWS\system32\Drivers\Aspi32.sys [17005 2002-08-14] (Adaptec)
R2 aswFsBlk; C:\WINDOWS\system32\Drivers\aswFsBlk.sys [29816 2013-08-30] (AVAST Software)
R1 aswKbd; C:\WINDOWS\system32\Drivers\aswKbd.sys [18544 2012-08-21] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [66336 2013-08-30] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\Drivers\aswRdr.sys [49760 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49376 2013-08-30] ()
R1 aswSnx; C:\WINDOWS\system32\Drivers\aswSnx.sys [770344 2013-08-30] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\Drivers\aswSP.sys [369584 2013-08-30] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\Drivers\aswTdi.sys [56080 2013-08-30] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [177864 2013-08-30] ()
R2 BCMNTIO; C:\Program Files\CheckIt\Diagnostics\BCMNTIO.SYS [3744 2004-03-05] ()
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
R0 fasttx2k; C:\WINDOWS\System32\DRIVERS\fasttx2k.sys [140800 2003-06-19] (Promise Technology, Inc.)
R3 ltmodem5; C:\WINDOWS\System32\DRIVERS\ltmdmnt.sys [652689 2003-12-12] (Agere Systems)
R2 MAPMEM; C:\Program Files\CheckIt\Diagnostics\MAPMEM.SYS [3904 2004-03-05] ()
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
R3 MxlW2k; C:\WINDOWS\system32\Drivers\MxlW2k.sys [28352 2004-07-06] (MusicMatch, Inc.)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
S3 nvax; C:\WINDOWS\System32\drivers\nvax.sys [40832 2004-03-03] (NVIDIA Corporation)
S2 nvcap; C:\WINDOWS\System32\DRIVERS\nvcap.sys [126348 2003-07-30] ()
R3 NVENET; C:\WINDOWS\System32\DRIVERS\NVENET.sys [54784 2003-04-21] (NVIDIA Corporation)
S3 nvnforce; C:\WINDOWS\System32\drivers\nvapu.sys [320640 2004-03-03] (NVIDIA Corporation)
S2 NVXBAR; C:\WINDOWS\System32\DRIVERS\NVxbar.sys [13006 2003-07-30] (NVIDIA Corporation)
R0 nv_agp; C:\WINDOWS\System32\DRIVERS\nv_agp.sys [21120 2003-09-03] (NVIDIA Corporation)
R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [10368 2003-09-03] (Padus, Inc.)
S3 rtl8139; C:\WINDOWS\System32\DRIVERS\R8139n51.SYS [46976 2002-10-04] (Realtek Semiconductor Corporation )
S3 S3Psddr; C:\WINDOWS\System32\DRIVERS\s3gnbm.sys [166912 2004-08-04] (S3 Graphics, Inc.)
S3 SiS315; C:\WINDOWS\System32\DRIVERS\sisgrp.sys [394752 2003-05-06] (Silicon Integrated Systems Corporation)
R1 SiSkp; C:\WINDOWS\System32\DRIVERS\srvkp.sys [10624 2003-04-11] (Silicon Integrated Systems Corporation)
R0 viaagp1; C:\WINDOWS\System32\DRIVERS\viaagp1.sys [27904 2003-07-02] (VIA Technologies, Inc.)
S3 viagfx; C:\WINDOWS\System32\DRIVERS\vtmini.sys [265344 2003-08-11] (Copyright (C) VIA/S3 Graphics, Inc.)
S3 {6080A529-897E-4629-A488-ABA0C29B635E}; C:\WINDOWS\System32\drivers\ialmsbw.sys [113504 2003-04-15] (Intel Corporation)
S3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91}; C:\WINDOWS\System32\drivers\ialmkchw.sys [78752 2003-04-15] (Intel Corporation)
S3 catchme; \??\C:\DOCUME~1\Owner\LOCALS~1\Temp\catchme.sys [X]
S3 cpuz134; \??\C:\DOCUME~1\Owner\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
U3 TlntSvr;
U3 aswMBR; \??\C:\DOCUME~1\Owner\LOCALS~1\Temp\aswMBR.sys [X]
U3 mbr; \??\C:\DOCUME~1\Owner\LOCALS~1\Temp\mbr.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-01 00:47 - 2014-03-01 00:47 - 00009484 _____ () C:\Documents and Settings\Owner\Desktop\FRST.txt
2014-03-01 00:47 - 2014-03-01 00:47 - 00000000 ____D () C:\FRST
2014-03-01 00:46 - 2014-03-01 00:47 - 01143808 _____ (Farbar) C:\Documents and Settings\Owner\Desktop\FRST.exe
2014-03-01 00:45 - 2014-03-01 00:45 - 00002216 _____ () C:\Documents and Settings\Owner\Desktop\Rkill.txt
2014-02-28 09:54 - 2014-02-28 09:54 - 00688992 ____R (Swearware) C:\Documents and Settings\Owner\Desktop\dds.scr
2014-02-27 08:27 - 2014-02-27 08:37 - 00000000 __SHD () C:\Documents and Settings\LocalService\Cookies(4)
2014-02-26 22:57 - 2014-02-27 20:15 - 00000000 ____D () C:\RECYCLER(2)
2014-02-26 22:57 - 2014-02-26 23:03 - 00000000 __SHD () C:\Documents and Settings\LocalService\Cookies(3)
2014-02-26 20:44 - 2014-02-26 20:44 - 00000000 ____D () C:\Documents and Settings\LocalService\Cookies(2)
2014-02-26 19:32 - 2014-02-26 19:32 - 00000597 _____ () C:\Documents and Settings\Administrator\Desktop\JRT.txt
2014-02-26 19:20 - 2014-02-26 19:20 - 00009214 _____ () C:\ComboFix.txt
2014-02-17 21:15 - 2014-02-17 21:15 - 00019849 _____ () C:\Documents and Settings\Owner\Desktop\Nahunta.xlsx
2014-02-17 21:11 - 2014-02-17 21:11 - 00019875 _____ () C:\Documents and Settings\Owner\Desktop\Woodbine.xlsx
2014-02-17 20:57 - 2014-02-17 20:57 - 00019871 _____ () C:\Documents and Settings\Owner\Desktop\Hilliard.xlsx
2014-01-31 18:56 - 2013-10-12 17:00 - 00037061 _____ () C:\WINDOWS\system32\Drivers\etc\hosts.20140131-185621.backup
==================== One Month Modified Files and Folders =======
2014-03-01 00:47 - 2014-03-01 00:47 - 00009484 _____ () C:\Documents and Settings\Owner\Desktop\FRST.txt
2014-03-01 00:47 - 2014-03-01 00:47 - 00000000 ____D () C:\FRST
2014-03-01 00:47 - 2014-03-01 00:46 - 01143808 _____ (Farbar) C:\Documents and Settings\Owner\Desktop\FRST.exe
2014-03-01 00:45 - 2014-03-01 00:45 - 00002216 _____ () C:\Documents and Settings\Owner\Desktop\Rkill.txt
2014-03-01 00:40 - 2013-10-08 16:52 - 00000886 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-01 00:05 - 2012-11-12 10:42 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-03-01 00:01 - 2011-10-01 20:33 - 00065536 _____ () C:\WINDOWS\system32\config\WindowsPowerShell.evt
2014-03-01 00:01 - 2007-08-19 14:16 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt
2014-03-01 00:00 - 2003-10-11 05:18 - 00000000 ____D () C:\Documents and Settings\Owner
2014-02-28 21:54 - 2014-01-18 01:48 - 00000283 ____N () C:\WINDOWS\wiadebug.log
2014-02-28 20:40 - 2013-10-08 16:52 - 00000882 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-28 20:34 - 2012-10-22 21:05 - 00000316 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-02-28 18:05 - 2011-06-28 00:24 - 00032606 _____ () C:\WINDOWS\Tasks\SCHEDLGU.TXT
2014-02-28 14:23 - 2014-01-18 01:45 - 01809206 ____N () C:\WINDOWS\WindowsUpdate.log
2014-02-28 09:54 - 2014-02-28 09:54 - 00688992 ____R (Swearware) C:\Documents and Settings\Owner\Desktop\dds.scr
2014-02-28 02:54 - 2010-04-20 22:03 - 00000000 ____D () C:\Program Files\TrojanHunter 5.3
2014-02-27 23:02 - 2014-01-18 01:47 - 00000049 ____N () C:\WINDOWS\wiaservc.log
2014-02-27 23:01 - 2003-10-11 05:15 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-02-27 22:59 - 2003-10-11 05:18 - 00000278 ___SH () C:\Documents and Settings\Owner\ntuser.ini
2014-02-27 22:17 - 2003-10-11 05:44 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2014-02-27 21:06 - 2012-10-29 01:27 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-02-27 21:06 - 2012-10-29 01:27 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-02-27 20:55 - 2003-10-10 22:10 - 00618792 ____C () C:\WINDOWS\system32\PerfStringBackup.INI
2014-02-27 20:53 - 2013-07-28 02:00 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-02-27 20:48 - 2005-08-26 20:35 - 85946576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-02-27 20:34 - 2012-11-12 10:16 - 00001697 _____ () C:\Documents and Settings\All Users\Desktop\avast! Free Antivirus.lnk
2014-02-27 20:34 - 2003-10-11 05:16 - 00002577 ____C () C:\WINDOWS\system32\CONFIG.NT
2014-02-27 20:31 - 2010-04-15 11:30 - 00000000 ____D () C:\Documents and Settings\Administrator
2014-02-27 20:31 - 2003-10-11 05:18 - 00000000 ___SD () C:\Documents and Settings\NetworkService
2014-02-27 20:31 - 2003-10-11 05:18 - 00000000 ___SD () C:\Documents and Settings\LocalService
2014-02-27 20:31 - 2003-10-11 05:13 - 00000000 ____D () C:\WINDOWS\Registration
2014-02-27 20:30 - 2012-11-16 23:20 - 00000000 ____D () C:\Qoobox
2014-02-27 20:30 - 2004-04-02 15:14 - 00000000 ____D () C:\Documents and Settings\Owner\Local Settings\Application Data\Adobe
2014-02-27 20:29 - 2004-05-11 21:27 - 00000000 ____D () C:\Documents and Settings\Owner\Local Settings\Application Data\Google
2014-02-27 20:28 - 2004-04-02 16:06 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2014-02-27 20:19 - 2013-08-24 19:41 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Revo Uninstaller Pro
2014-02-27 20:15 - 2014-02-26 22:57 - 00000000 ____D () C:\RECYCLER(2)
2014-02-27 08:37 - 2014-02-27 08:27 - 00000000 __SHD () C:\Documents and Settings\LocalService\Cookies(4)
2014-02-26 23:03 - 2014-02-26 22:57 - 00000000 __SHD () C:\Documents and Settings\LocalService\Cookies(3)
2014-02-26 23:03 - 2003-10-11 05:06 - 00001158 _____ () C:\WINDOWS\system32\wpa.dbl
2014-02-26 20:44 - 2014-02-26 20:44 - 00000000 ____D () C:\Documents and Settings\LocalService\Cookies(2)
2014-02-26 19:32 - 2014-02-26 19:32 - 00000597 _____ () C:\Documents and Settings\Administrator\Desktop\JRT.txt
2014-02-26 19:20 - 2014-02-26 19:20 - 00009214 _____ () C:\ComboFix.txt
2014-02-26 19:18 - 2003-10-11 05:06 - 00000411 _____ () C:\WINDOWS\system.ini
2014-02-22 01:08 - 2004-04-02 14:21 - 00000000 ____D () C:\Documents and Settings\Owner\Desktop\Dad's Stuff
2014-02-17 21:15 - 2014-02-17 21:15 - 00019849 _____ () C:\Documents and Settings\Owner\Desktop\Nahunta.xlsx
2014-02-17 21:11 - 2014-02-17 21:11 - 00019875 _____ () C:\Documents and Settings\Owner\Desktop\Woodbine.xlsx
2014-02-17 20:57 - 2014-02-17 20:57 - 00019871 _____ () C:\Documents and Settings\Owner\Desktop\Hilliard.xlsx
2014-02-15 23:30 - 2012-08-28 21:19 - 00000000 ____D () C:\Documents and Settings\Owner\Desktop\Quench
2014-02-13 03:07 - 2009-06-04 01:17 - 00000000 ____D () C:\WINDOWS\ie8updates
2014-02-12 07:05 - 2005-03-31 19:56 - 00271360 ____C () C:\Documents and Settings\Owner\My Documents\archive.pst
2014-02-06 03:54 - 2006-11-07 02:26 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe
2014-02-06 03:54 - 2003-11-15 03:22 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-02-05 18:26 - 2012-06-13 17:04 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll
2014-02-05 18:26 - 2011-10-05 17:03 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll
2014-02-05 18:26 - 2011-10-05 17:03 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll
2014-02-05 18:26 - 2011-10-05 17:03 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll
2014-02-05 18:26 - 2007-06-27 09:34 - 11113472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll
2014-02-05 18:26 - 2007-06-27 09:34 - 02006016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll
2014-02-05 18:26 - 2007-06-27 09:34 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll
2014-02-05 18:26 - 2007-06-27 09:34 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll
2014-02-05 18:26 - 2006-11-07 20:03 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-02-05 18:26 - 2006-11-07 20:03 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-02-05 18:26 - 2006-11-07 20:03 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2014-02-05 18:26 - 2006-11-07 02:27 - 00387584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll
2014-02-05 18:26 - 2006-10-17 11:05 - 01469440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl
2014-02-05 18:26 - 2006-10-17 11:05 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll
2014-02-05 18:26 - 2006-10-17 11:04 - 00206848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll
2014-02-05 18:26 - 2006-10-17 11:03 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll
2014-02-05 18:26 - 2006-10-17 10:57 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-02-05 18:26 - 2006-09-18 09:15 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll
2014-02-05 18:26 - 2006-05-19 10:06 - 06021120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll
2014-02-05 18:26 - 2006-05-10 00:25 - 01216000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll
2014-02-05 18:26 - 2006-05-10 00:25 - 00920064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll
2014-02-05 18:26 - 2006-05-10 00:25 - 00611840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll
2014-02-05 18:26 - 2006-05-10 00:25 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll
2014-02-05 18:26 - 2006-05-10 00:25 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll
2014-02-05 18:26 - 2006-05-10 00:25 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll
2014-02-05 18:26 - 2004-07-07 17:37 - 06021120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-02-05 18:26 - 2004-02-06 17:05 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-02-05 18:26 - 2004-01-21 16:20 - 01216000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-02-05 18:26 - 2003-11-15 03:23 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll
2014-02-05 18:26 - 2003-11-15 03:23 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2014-02-05 18:26 - 2003-11-15 03:23 - 00067072 ____N (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-02-05 18:26 - 2003-11-15 03:23 - 00043520 ____N (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
2014-02-05 18:26 - 2003-11-15 03:23 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll
2014-02-05 18:26 - 2003-11-15 03:22 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-02-05 18:26 - 2003-11-15 03:22 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-02-05 18:26 - 2003-11-15 03:22 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2014-02-05 18:26 - 2003-11-15 03:22 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-02-05 18:26 - 2003-11-15 03:22 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll
2014-02-05 18:26 - 2003-11-15 02:58 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
2014-02-05 17:24 - 2004-08-04 00:59 - 00385024 ____N (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2014-02-04 21:38 - 2010-08-08 16:03 - 00000000 ____D () C:\Documents and Settings\Owner\Desktop\Smarte Carte
2014-02-01 12:00 - 2010-04-29 23:04 - 00000000 ____D () C:\WINDOWS\ERDNT
Files to move or delete:
====================
C:\Documents and Settings\Owner\Application Data\cache.ini
==================== Bamital & volsnap Check =================
C:\WINDOWS\explorer.exe => MD5 is legit
C:\WINDOWS\system32\winlogon.exe => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit
C:\WINDOWS\system32\User32.dll => MD5 is legit
C:\WINDOWS\system32\userinit.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\volsnap.sys => MD5 is legit
==================== End Of Log ============================
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 27-02-2014 02
Ran by Owner at 2014-03-01 00:47:56
Running from C:\Documents and Settings\Owner\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: avast! Antivirus (Disabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: avast! Antivirus (Disabled) {7591DB91-41F0-48A3-B128-1A293FD8233D}
==================== Installed Programs ======================
Acrobat.com (HKLM\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.7.186 - Adobe Systems Incorporated)
Acrobat.com (Version: 0.0.0 - Adobe Systems Incorporated) Hidden
Acronis*PrivacyExpert (HKLM\...\PrivacyExpert) (Version: - Acronis)
Active@ ISO Burner (HKLM\...\{7694E0B1-2332-448B-9235-929F84B41E3F}) (Version: 2.5.1 - LSoft Technologies)
Active@ Password Changer Professional (HKLM\...\Active@ Password Changer Professional) (Version: 4.0 - LSoft Technologies Inc)
Adobe Flash Player 12 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 12.0.0.70 - Adobe Systems Incorporated)
Adobe Photoshop Album Starter Edition (HKLM\...\{483616D1-867E-46F8-BEC7-3C6475933908}) (Version: 1.0 - Adobe Systems, Inc.)
Adobe Photoshop Elements 7.0 (HKLM\...\Adobe Photoshop Elements 7) (Version: 7.0 - Adobe Systems Incorporated)
Adobe Photoshop Elements 7.0 (Version: 7.0.0.3 - Adobe Systems Incorporated) Hidden
Adobe Photoshop.com Inspiration Browser (HKLM\...\PhotoshopdotcomInspirationBrowser.4C35C4D325D350FE0114230CBADCA2DDD0AC8D25.1) (Version: 2.61 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) MUI (HKLM\...\{AC76BA86-7AD7-FFFF-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM\...\Adobe Shockwave Player) (Version: 11.6.8.638 - Adobe Systems, Inc.)
AiO_Scan (Version: 5.31.1.27 - Hewlett-Packard) Hidden
AIOMinimal (Version: 5.31.1.27 - Hewlett-Packard) Hidden
AiOSoftware (Version: 5.31.1.27 - Hewlett-Packard) Hidden
ArcSoft Print Creations (HKLM\...\{0D6D96F4-0CAF-4522-B05F-70A88EDECDFD}) (Version: - ArcSoft)
ArcSoft ShowBiz 2 (HKLM\...\{791B20D4-AE59-4DE9-B45F-BA01F3D0A493}) (Version: - )
ArcSoft Software Suite (HKLM\...\{66C8BE35-8BBB-472B-96C7-C7C9A499F988}) (Version: - )
avast! Free Antivirus (HKLM\...\avast) (Version: 8.0.1497.0 - AVAST Software)
CafeScribe Offline (HKLM\...\com.Follett.CafeScribe.Offline) (Version: 2.2.0.2 - Follett Software Company)
CafeScribe Offline (Version: 2.2.0 - Follett Software Company) Hidden
Calculator Powertoy for Windows XP (HKLM\...\{B37C842A-B624-46B8-A727-654E72F1C91A}) (Version: 1.00.0001 - Microsoft Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 4.06 - Piriform)
CD ROM Applied Management Science 2e (HKLM\...\CD ROM Applied Management Science 2e) (Version: - )
CheckIt Diagnostics (HKLM\...\CheckIt Diagnostics) (Version: 7.0 - Smith Micro Software, Inc.)
Command & Conquer Generals (HKLM\...\InstallShield_{06F80017-8F98-4C94-B868-52358569FC32}) (Version: 0.50.0000 - Electronic Arts)
Command & Conquer Generals (Version: 0.50.0000 - Electronic Arts) Hidden
Command and ConquerTM Generals Zero Hour (HKLM\...\InstallShield_{F3E9C243-122E-4D6B-ACC1-E1FEC02F6CA1}) (Version: 1.00.0000 - Electronic Arts)
Command and ConquerTM Generals Zero Hour (Version: 1.00.0000 - Electronic Arts) Hidden
Compaq Connections (HKLM\...\BackWeb-1940576 Uninstaller) (Version: - )
Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Copy (Version: 5.31.0.150 - Hewlett-Packard) Hidden
CreativeProjects (Version: 5.31.0.150 - Hewlett-Packard) Hidden
Director (Version: 5.31.0.154 - Hewlett-Packard) Hidden
DocProc (Version: 3.1.0.0 - Hewlett-Packard) Hidden
Enhanced Multimedia Keyboard Solution (HKLM\...\KBD) (Version: - )
EPSON CX8400 User's Guide (HKLM\...\Silent Package Run-Time Sample) (Version: - )
EPSON Printer Software (HKLM\...\EPSON Printer and Utilities) (Version: - SEIKO EPSON Corporation)
EPSON Scan (HKLM\...\EPSON Scanner) (Version: - )
EPSON Stylus CX8400 Series Scanner Driver Update (HKLM\...\{24ADC0E4-8D3E-40C4-9106-F2DE5E9112F1}) (Version: - )
ERUNT 1.1j (HKLM\...\ERUNT_is1) (Version: - Lars Hederer)
ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version: - )
Fax (Version: 5.31.1.27 - Hewlett-Packard) Hidden
Free Window Registry Repair (HKLM\...\Free Window Registry Repair) (Version: - )
GdiplusUpgrade (Version: 1.00.01 - Hewlett-Packard) Hidden
Google Earth Plug-in (HKLM\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (Version: 1.3.22.5 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.1.0.0 (Version: 1.00.0000 - Hewlett-Packard) Hidden
HighMAT Extension to Microsoft Windows XP CD Writing Wizard (HKLM\...\{FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F}) (Version: 1.1.1905.1 - Microsoft Corporation)
HP Deskjet Preloaded Printer Drivers (HKLM\...\{F419D20A-7719-4639-8E30-C073A040D878}) (Version: 8.3.3.0 - Hewlett-Packard Company)
HP Photo & Imaging 3.1 (HKLM\...\HP Photo & Imaging) (Version: 3.1 - HP)
HP Photo and Imaging 2.0 - Photosmart Cameras (HKLM\...\{5D7F0A0E-369E-46C0-9F99-FAB21A064781}) (Version: 2.0.0000 - {&Tahoma8}Hewlett-Packard)
HP Product Detection (HKLM\...\{A436F67F-687E-4736-BD2B-537121A804CF}) (Version: 11.14.0001 - HP)
HP PSC & OfficeJet 3.0 (HKLM\...\{F38FA38A-7E5A-4209-88ED-4DE21CD20EEF}) (Version: 3.0 - HP)
HP Update (HKLM\...\{787D1A33-A97B-4245-87C0-7174609A540C}) (Version: 5.002.005.003 - Hewlett-Packard)
hpmdtab (Version: 2.0.470.1598 - Hewlett-Packard) Hidden
HpSdpAppCoreApp (Version: 2.00.0000 - Hewlett-Packard) Hidden
HPSystemDiagnostics (Version: 1.5.0.0 - Your Company Name) Hidden
InstantShare (Version: 3.1.0.13 - Hewlett-Packard) Hidden
Intel(R) Extreme Graphics Driver (HKLM\...\{8A708DD8-A5E6-11D4-A706-000629E95E20}) (Version: - )
IntelliMover Data Transfer Demo (HKLM\...\{14589F05-C658-4594-9429-D437BA688686}) (Version: - )
InterActual Player (HKLM\...\InterActual Player) (Version: - )
InterVideo WinDVD Player (HKLM\...\{98E8A2EF-4EAE-43B8-A172-74842B764777}) (Version: 4.0-B11.399 - InterVideo Inc.)
LG United Mobile Drivers (HKLM\...\{5DB849D6-9392-4FB7-9ABB-87ED433152E5}) (Version: 3.8.1 - LG Electronics)
Macromedia Shockwave Player (HKLM\...\Macromedia Shockwave Player) (Version: - )
Mah Jong Tiles Deluxe (HKLM\...\Mah Jong Tiles Deluxe) (Version: - GameHouse, Inc.)
Malwarebytes Anti-Malware version 1.75.0.1300 (HKLM\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation)
Memories Disc Creator 2.0 (HKLM\...\{2E132061-C78A-48D4-A899-1D13B9D189FA}) (Version: 2.0.588.1728 - Memories Disc Creator 2.0)
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - )
Microsoft .NET Framework 1.1 (Version: 1.1.4322 - Microsoft) Hidden
Microsoft .NET Framework 1.1 Security Update (KB2656353) (HKLM\...\M2656353) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB2656370) (HKLM\...\M2656370) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version: - )
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Base Smart Card Cryptographic Service Provider Package (HKLM\...\KB909520) (Version: - Microsoft Corporation)
Microsoft Baseline Security Analyzer 1.2.1 (HKLM\...\{DF15059E-A356-47B2-B14B-6380ED32AB68}) (Version: 1.2.4013.0 - Microsoft Corporation)
Microsoft Compression Client Pack 1.0 for Windows XP (HKLM\...\MSCompPackV1) (Version: 1 - Microsoft Corporation)
Microsoft Data Access Components KB870669 (HKLM\...\KB870669) (Version: - Microsoft Corporation)
Microsoft Download Manager (HKLM\...\{654977DB-0001-0002-0001-EABD228DDE8B}) (Version: 1.2.1 - Microsoft Corporation)
Microsoft Internationalized Domain Names Mitigation APIs (Version: - Microsoft Corporation) Hidden
Microsoft Money 2004 (HKLM\...\{1D643CD7-4DD6-11D7-A4E0-000874180BB3}) (Version: 12.0.50 - Microsoft)
Microsoft Money 2004 System Pack (HKLM\...\{8C64E145-54BA-11D6-91B1-00500462BE80}) (Version: 12.0.80 - Microsoft)
Microsoft National Language Support Downlevel APIs (Version: - Microsoft Corporation) Hidden
Microsoft Office Access 2003 (HKLM\...\{90150409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office PowerPoint 2003 Template Creation Wizard (HKLM\...\{39B1915D-3CBA-42F8-8A58-2AB5587BF863}) (Version: 1.0.0 - Microsoft)
Microsoft Office PowerPoint 2003 Template Pack 1 (HKLM\...\{90AB0409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation)
Microsoft Office PowerPoint 2003 Template Pack 2 (HKLM\...\{90AC0409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation)
Microsoft Office PowerPoint 2003 Template Pack 3 (HKLM\...\{90AD0409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation)
Microsoft Office Standard Edition 2003 (HKLM\...\{91120409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Plus! Digital Media Edition (HKLM\...\{C6A7AF96-4EB1-4AAE-8318-1AB393C64F88}) (Version: 1.1.0.2423 - Microsoft Corporation)
Microsoft Producer for Microsoft Office PowerPoint 2003 (HKLM\...\{155FBB0D-0EE9-42D1-9E41-15E08F691033}) (Version: 2.0.1389.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft User-Mode Driver Framework Feature Pack 1.0 (HKLM\...\Wudf01000) (Version: - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Works 7.0 (HKLM\...\{764D06D8-D8DE-411E-A1C8-D9E9380F8A84}) (Version: 07.02.0620 - Microsoft Corporation)
MS Access 97 SP2 (HKLM\...\MS Access 97 SP2) (Version: - )
MSXML 4.0 SP2 (KB925672) (HKLM\...\{A9CF9052-F4A0-475D-A00F-A8388C62DD63}) (Version: 4.20.9839.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 6 Service Pack 2 (KB973686) (HKLM\...\{56EA8BC0-3751-4B93-BC9D-6651CC36E5AA}) (Version: 6.20.2003.0 - Microsoft Corporation)
MyScribe (HKLM\...\MyScribe) (Version: 20101118 - Fourteen40 Inc., a Follett Corporation Company.)
NSS Labs Browser Hardening Utility for IE8 (HKLM\...\{4989815E-42B5-4AF1-A118-81714C497B3B}) (Version: 1.0 - Nss Labs)
NVIDIA Display Driver (HKLM\...\NVIDIA Display Driver) (Version: - )
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: - )
PC-Doctor for Windows (HKLM\...\{1F7CCFA3-D926-4882-B2A5-A0217ED25597}) (Version: - )
PhotoGallery (Version: 5.31.0.158 - Hewlett-Packard) Hidden
PhotoshopdotcomInspirationBrowser (Version: 0.0.0 - Adobe Systems Incorporated) Hidden
Photosmart 140,240,7200,7600,7700,7900 Series (HKLM\...\{45B6180B-DCAB-4093-8EE8-6164457517F0}) (Version: 2.0 - Hewlett-Packard)
Pop-Up Stopper Free Edition (HKLM\...\Pop-Up Stopper Free Edition) (Version: 3.1.1014 - Panicware, Inc.)
PrintScreen (Version: 5.31.0.147 - Hewlett-Packard) Hidden
Professor Answers (HKLM\...\Professor Answers) (Version: - Individual Software, Inc.)
Professor Teaches Excel 2003 (HKLM\...\Professor Teaches Excel 2003) (Version: 1.0 - Individual Software, Inc.)
Professor Teaches PowerPoint 2003 (HKLM\...\Professor Teaches PowerPoint 2003) (Version: 1.0 - Individual Software, Inc.)
Professor Teaches Word 2003 (HKLM\...\Professor Teaches Word 2003) (Version: 1.0 - Individual Software, Inc.)
PS2 (HKLM\...\PS2) (Version: - )
PSShortcutsP (Version: 1.00.0000 - Hewlett-Packard) Hidden
Python 2.2 combined Win32 extensions (HKLM\...\Python 2.2 combined Win32 extensions) (Version: - )
Python 2.2.1 (HKLM\...\Python 2.2.1) (Version: 2.2.1 - PythonLabs at Zope Corporation)
QFolder (Version: 1.00.0000 - Hewlett-Packard) Hidden
QuickProjects (Version: 5.31.0.147 - Hewlett-Packard) Hidden
Readme (Version: 5.31.1.27 - Hewlett-Packard) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0 - RealNetworks, Inc) Hidden
RealPlayer (HKLM\...\RealPlayer 15.0) (Version: 15.0.6 - RealNetworks)
RealUpgrade 1.1 (Version: 1.1.0 - RealNetworks, Inc.) Hidden
RecordNow! (HKLM\...\{9541FED0-327F-4DF0-8B96-EF57EF622F19}) (Version: 6.5.1 - Hewlett-Packard)
RegCure (HKLM\...\RegCure) (Version: 3.0.2.0 - ParetoLogic, Inc.)
Revo Uninstaller Pro 2.5.9 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 2.5.9 - VS Revo Group, Ltd.)
Scan (Version: 3.1.0.0 - Hewlett-Packard) Hidden
SkinsHP1 (Version: 5.31.0.147 - Hewlett-Packard) Hidden
SkinsHP2 (Version: 5.31.0.147 - Hewlett-Packard) Hidden
Sonic Update Manager (HKLM\...\{09DA4F91-2A09-4232-AB8C-6BC740096DE3}) (Version: 2.9 - Sonic Solutions)
Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Sybase SQL Anywhere 7 Personal Server (HKLM\...\Sybase SQL Anywhere 7 Personal Server) (Version: - )
System Security Suite 1.04 (HKLM\...\System Security Suite 1.04) (Version: - )
Top Comp Calculator (HKLM\...\{FC713618-78C4-4563-9105-B9B503E8A86F}) (Version: 2.05.0001 - New York Life)
TrayApp (Version: 5.31.0.147 - Hewlett-Packard) Hidden
TrojanHunter 5.3 (HKLM\...\TrojanHunter_is1) (Version: 5.3 - Mischel Internet Security)
Tweak UI (HKLM\...\Tweak UI 2.10) (Version: - )
Unload (Version: 3.1.0 - Hewlett-Packard) Hidden
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (HKLM\...\{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707) (Version: 1 - Microsoft Corporation)
Update for Windows Internet Explorer 7 (KB976749) (Version: 1 - Microsoft Corporation) Hidden
Update for Windows Internet Explorer 7 (KB980182) (Version: 1 - Microsoft Corporation) Hidden
Update for Windows Internet Explorer 8 (KB2598845) (HKLM\...\KB2598845-IE8) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2863058) (HKLM\...\KB2863058) (Version: 1 - Microsoft Corporation)
Update for Windows XP (KB2904266) (HKLM\...\KB2904266) (Version: 1 - Microsoft Corporation)
Virtual Magnifying Glass v3.4 (HKLM\...\Virtual Magnifying Glass_is1) (Version: - )
WebFldrs XP (Version: 9.50.6513 - Microsoft Corporation) Hidden
WebReg (Version: 5.31.0.147 - Hewlett-Packard) Hidden
Westwood Shared Internet Components (HKLM\...\WOLAPI) (Version: - )
Windows Defender Signatures (Version: 1.20.1459.12 - Microsoft Corporation) Hidden
Windows Genuine Advantage Notifications (KB905474) (HKLM\...\WgaNotify) (Version: 1.7.0017.0 - Microsoft Corporation)
Windows Genuine Advantage v1.3.0254.0 (Version: 1.3.0254.0 - Microsoft) Hidden
Windows Genuine Advantage Validation Tool (KB892130) (HKLM\...\KB892130) (Version: - Microsoft Corporation)
Windows Genuine Advantage Validation Tool (KB892130) (HKLM\...\WGA) (Version: 1.7.0069.2 - Microsoft Corporation)
Windows Imaging Component (HKLM\...\WIC) (Version: 3.0.0.0 - Microsoft Corporation)
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
Windows Media Connect (Version: - Microsoft Corporation) Hidden
Windows Media Format 11 runtime (HKLM\...\Windows Media Format Runtime) (Version: - )
Windows Media Format 11 runtime (Version: - Microsoft Corporation) Hidden
Windows Media Player 11 (HKLM\...\Windows Media Player) (Version: - )
Windows Media Player 11 (Version: - Microsoft Corporation) Hidden
Windows XP Service Pack 3 (HKLM\...\Windows XP Service Pack) (Version: 20080414.031525 - Microsoft Corporation)
WinPatrol 2009 (HKLM\...\WinPatrol) (Version: 17.0.2010.0 - BillP Studios)
Zone Deluxe Games (HKLM\...\{66C018BD-6F16-4B32-B4CD-1DC1B21FBDFF}) (Version: 7.1.7412.1 - Zone.com)
==================== Restore Points =========================
19-01-2014 02:41:38 System Checkpoint
19-01-2014 08:00:20 Software Distribution Service 3.0
20-01-2014 08:00:20 Software Distribution Service 3.0
21-01-2014 08:00:16 Software Distribution Service 3.0
22-01-2014 03:48:22 Software Distribution Service 3.0
23-01-2014 04:31:04 System Checkpoint
23-01-2014 08:00:16 Software Distribution Service 3.0
24-01-2014 08:00:18 Software Distribution Service 3.0
25-01-2014 08:00:16 Software Distribution Service 3.0
26-01-2014 02:43:26 Software Distribution Service 3.0
26-01-2014 08:00:17 Software Distribution Service 3.0
26-01-2014 13:59:34 Made by Regsofts
26-01-2014 14:31:55 Software Distribution Service 3.0
27-01-2014 08:00:21 Software Distribution Service 3.0
28-01-2014 08:00:16 Software Distribution Service 3.0
29-01-2014 08:00:18 Software Distribution Service 3.0
30-01-2014 08:00:17 Software Distribution Service 3.0
31-01-2014 08:49:18 Software Distribution Service 3.0
01-02-2014 03:38:52 Spybot-S&D Spyware removal
01-02-2014 10:51:00 Software Distribution Service 3.0
02-02-2014 00:34:44 Made by Regsofts
02-02-2014 00:41:27 Made by Regsofts
02-02-2014 08:00:17 Software Distribution Service 3.0
03-02-2014 08:00:16 Software Distribution Service 3.0
04-02-2014 08:00:16 Software Distribution Service 3.0
05-02-2014 08:00:16 Software Distribution Service 3.0
06-02-2014 02:18:39 Made by Regsofts
06-02-2014 08:00:18 Software Distribution Service 3.0
07-02-2014 08:00:19 Software Distribution Service 3.0
07-02-2014 13:55:53 Software Distribution Service 3.0
12-02-2014 05:49:55 System Checkpoint
13-02-2014 04:50:18 Made by Regsofts
13-02-2014 08:00:20 Software Distribution Service 3.0
14-02-2014 08:00:16 Software Distribution Service 3.0
15-02-2014 08:00:25 Software Distribution Service 3.0
15-02-2014 19:03:24 Made by Regsofts
16-02-2014 08:00:18 Software Distribution Service 3.0
17-02-2014 04:33:39 Software Distribution Service 3.0
18-02-2014 05:03:27 System Checkpoint
18-02-2014 08:00:16 Software Distribution Service 3.0
19-02-2014 08:00:16 Software Distribution Service 3.0
21-02-2014 04:24:03 Software Distribution Service 3.0
21-02-2014 08:00:20 Software Distribution Service 3.0
21-02-2014 09:52:54 Made by Regsofts
22-02-2014 08:00:17 Software Distribution Service 3.0
23-02-2014 03:55:34 Made by Regsofts
23-02-2014 04:04:59 Installed Java 7 Update 51
23-02-2014 08:00:17 Software Distribution Service 3.0
24-02-2014 09:32:28 Software Distribution Service 3.0
25-02-2014 08:39:58 Software Distribution Service 3.0
26-02-2014 08:00:16 Software Distribution Service 3.0
27-02-2014 03:57:25 Restore Operation
27-02-2014 04:06:07 Software Distribution Service 3.0
27-02-2014 08:00:17 Software Distribution Service 3.0
27-02-2014 13:25:38 Restore Operation
27-02-2014 13:40:59 Software Distribution Service 3.0
28-02-2014 01:08:29 Restore Operation
28-02-2014 01:37:12 Software Distribution Service 3.0
28-02-2014 02:09:01 Made by Regsofts
28-02-2014 08:00:42 Software Distribution Service 3.0
==================== Hosts content: ==========================
2003-10-11 05:06 - 2014-02-01 12:00 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2014-02-28 19:12 - 2014-02-28 16:37 - 02275840 _____ () C:\Program Files\AVAST Software\Avast\defs\14022803\algo.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MSIServer => ""="Service"
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 46%
Total physical RAM: 1535.3 MB
Available physical RAM: 825.28 MB
Total Pagefile: 2920.51 MB
Available Pagefile: 2390.76 MB
Total Virtual: 2047.88 MB
Available Virtual: 1947.35 MB
==================== Drives ================================
Drive c: (PRESARIO) (Fixed) (Total:147.51 GB) (Free:96.29 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (PRESARIO_RP) (Fixed) (Total:5.14 GB) (Free:1.06 GB) FAT32 ==>[Drive with boot components (Windows XP)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 153 GB) (Disk ID: F84EF84E)
Partition: GPT Partition Type.
==================== End Of Log ============================