Thanks Blade!

I really appreciate the effort you've taken!
Ok- hopefully you are now free to diagnose thii ancient computer!
----
OTL logfile created on: 25/03/2011 17:44:19 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Martha\Desktop
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
247.00 Mb Total Physical Memory | 58.00 Mb Available Physical Memory | 24.00% Memory free
976.00 Mb Paging File | 364.00 Mb Available in Paging File | 37.00% Paging File free
Paging file location(s): C:\pagefile.sys 372 744 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 55.93 Gb Total Space | 6.13 Gb Free Space | 10.97% Space Free | Partition Type: NTFS
Computer Name: MARTHA | User Name: Martha | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Martha\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Documents and Settings\Martha\Start Menu\Programs\Startup\procexp.exe (Sysinternals -
www.sysinternals.com)
PRC - C:\Program Files\McAfee\MSC\mcmscsvc.exe (McAfee, Inc.)
PRC - C:\Program Files\McAfee\MSC\mcinfo.exe (McAfee, Inc.)
PRC - C:\Program Files\McAfee\VirusScan\mcsysmon.exe (McAfee, Inc.)
PRC - c:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
PRC - C:\Program Files\McAfee\MPF\MpfSrv.exe (McAfee, Inc.)
PRC - C:\Program Files\McAfee\MSK\msksrver.exe (McAfee, Inc.)
PRC - c:\Program Files\Common Files\McAfee\McProxy\McProxy.exe (McAfee, Inc.)
PRC - c:\Program Files\Common Files\McAfee\MNA\McNASvc.exe (McAfee, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
========== Modules (SafeList) ==========
MOD - C:\Documents and Settings\Martha\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (AppMgmt) -- File not found
SRV - (mcmscsvc) -- C:\Program Files\McAfee\MSC\mcmscsvc.exe (McAfee, Inc.)
SRV - (McShield) -- C:\Program Files\McAfee\VirusScan\Mcshield.exe (McAfee, Inc.)
SRV - (McSysmon) -- C:\Program Files\McAfee\VirusScan\mcsysmon.exe (McAfee, Inc.)
SRV - (McODS) -- C:\Program Files\McAfee\VirusScan\mcods.exe (McAfee, Inc.)
SRV - (MpfService) -- C:\Program Files\McAfee\MPF\MPFSrv.exe (McAfee, Inc.)
SRV - (MSK80Service) -- C:\Program Files\McAfee\MSK\MskSrver.exe (McAfee, Inc.)
SRV - (MBackMonitor) -- C:\Program Files\McAfee\MBK\MBackMonitor.exe (McAfee)
SRV - (McProxy) -- c:\Program Files\Common Files\McAfee\McProxy\McProxy.exe (McAfee, Inc.)
SRV - (McNASvc) -- c:\Program Files\Common Files\McAfee\MNA\McNASvc.exe (McAfee, Inc.)
========== Driver Services (SafeList) ==========
DRV - (MPFP) -- C:\WINDOWS\system32\drivers\Mpfp.sys (McAfee, Inc.)
DRV - (mfehidk) -- C:\WINDOWS\system32\drivers\mfehidk.sys (McAfee, Inc.)
DRV - (mfeavfk) -- C:\WINDOWS\system32\drivers\mfeavfk.sys (McAfee, Inc.)
DRV - (mfesmfk) -- C:\WINDOWS\system32\drivers\mfesmfk.sys (McAfee, Inc.)
DRV - (mfebopk) -- C:\WINDOWS\system32\drivers\mfebopk.sys (McAfee, Inc.)
DRV - (mferkdk) -- C:\WINDOWS\system32\drivers\mferkdk.sys (McAfee, Inc.)
DRV - (NwlnkIpx) -- C:\WINDOWS\system32\drivers\nwlnkipx.sys (Microsoft Corporation)
DRV - (NwlnkNb) -- C:\WINDOWS\system32\drivers\nwlnknb.sys (Microsoft Corporation)
DRV - (NwlnkSpx) -- C:\WINDOWS\system32\drivers\nwlnkspx.sys (Microsoft Corporation)
DRV - (rtl8139) Realtek RTL8139(A/B/C) -- C:\WINDOWS\system32\drivers\RTL8139.sys (Realtek Semiconductor Corporation)
DRV - (mxnic) -- C:\WINDOWS\system32\drivers\mxnic.sys (Macronix International Co., Ltd. )
DRV - (irsir) -- C:\WINDOWS\system32\drivers\irsir.sys (Microsoft Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.urban75.net/vbulletin/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.com/ie
IE - HKCU\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local
FF - HKLM\software\mozilla\Firefox\Extensions\\{4D6928D2-393B-4D0C-BE5A-0CAA73BF98FA}: C:\Documents and Settings\Martha\Local Settings\Application Data\{4D6928D2-393B-4D0C-BE5A-0CAA73BF98FA} [2010/03/05 11:47:28 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{B8CA2B3C-AD44-4FE1-8F6A-DE7155E09B50}: C:\Documents and Settings\Anthea Parker\Local Settings\Application Data\{B8CA2B3C-AD44-4FE1-8F6A-DE7155E09B50} [2010/04/14 08:58:03 | 000,000,000 | ---D | M]
O1 HOSTS File: ([2011/03/19 23:01:27 | 000,431,122 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1
www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1
www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1
www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1
www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1
www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1
www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1
www.1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1
www.100888290cs.com
O1 - Hosts: 127.0.0.1
www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1
www.10sek.com
O1 - Hosts: 127.0.0.1
www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 14841 more lines...
O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Program Files\McAfee\MSK\mskapbho.dll ()
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.)
O2 - BHO: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (uTorrentBar Toolbar) - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O4 - HKLM..\Run: [Cmaudio] File not found
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [McAfee Backup] C:\Program Files\McAfee\MBK\McAfeeDataBackup.exe (McAfee)
O4 - HKLM..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - Startup: C:\Documents and Settings\Martha\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE ()
O4 - Startup: C:\Documents and Settings\Martha\Start Menu\Programs\Startup\procexp.exe (Sysinternals -
www.sysinternals.com)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: &ieSpell Options - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O8 - Extra context menu item: Check &Spelling - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O8 - Extra context menu item: Lookup on Merriam Webster - C:\Program Files\ieSpell\Merriam Webster.HTM ()
O8 - Extra context menu item: Lookup on Wikipedia - C:\Program Files\ieSpell\wikipedia.HTM ()
O9 - Extra Button: Sky - {08E730A4-FB02-45BD-A900-01E4AD8016F6} - File not found
O9 - Extra Button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O9 - Extra 'Tools' menuitem : ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O9 - Extra 'Tools' menuitem : ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {15B782AF-55D8-11D1-B477-006097098764}
http://thirdforce.com/portals/0/webplayer7.0/awswax70.cab (Macromedia Authorware Web Player Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616}
http://go.divx.com/plugin/DivXBrowserPlugin.cab (Reg Error: Key error.)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1168439284265 (MUWebControl Class)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072}
http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/03/05 11:45:55 | 000,000,057 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/03/25 17:12:22 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Martha\Desktop\OTL.exe
[2011/03/20 18:09:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Identities
[2011/03/20 08:16:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2011/03/20 08:15:49 | 000,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2011/03/20 08:15:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\ERUNT
[2011/03/19 21:35:01 | 000,791,393 | ---- | C] (Lars Hederer ) -- C:\Documents and Settings\Martha\Desktop\erunt-setup.exe
[2011/03/19 19:09:31 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2011/03/19 19:09:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
[2011/03/19 18:12:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2011/03/18 12:17:20 | 000,098,392 | ---- | C] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\SBREDrv.sys
[2011/03/18 12:04:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Martha\Local Settings\Application Data\Sunbelt Software
[2011/03/18 11:55:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Lavasoft
[2011/03/18 08:52:12 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Martha\Recent
[2011/03/16 15:56:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Adobe
[2011/03/15 14:36:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2011/03/15 14:35:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Adobe
[2011/03/13 14:47:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Martha\Application Data\FileZilla
[2011/03/13 13:03:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\FileZilla FTP Client
[2011/03/13 13:01:31 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla FTP Client
[2011/03/11 08:12:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Martha\My Documents\notes & posts
[2011/03/10 10:40:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\ImageConverter Plus
[2011/03/10 10:40:36 | 001,706,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\gdiplus.dll
[2011/03/10 10:40:25 | 000,180,224 | ---- | C] (fCoder Group International) -- C:\WINDOWS\System32\cnvshell.dll
[2011/03/10 10:39:31 | 000,000,000 | ---D | C] -- C:\Program Files\ImageConverter Plus
[2011/03/09 14:09:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\ImageConverter Plus
[2011/03/09 14:09:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Martha\My Documents\Image Converter Plus
[2011/03/09 12:53:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Martha\Local Settings\Application Data\CutePDF Writer
[2011/03/09 12:12:02 | 000,000,000 | ---D | C] -- C:\Program Files\Acro Software
[2011/03/09 10:29:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Martha\Word flyer templates
[2011/03/09 10:27:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Martha\My Documents\Illustrator templates
[2011/03/08 10:59:05 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Martha\My Documents\My Webs
[2011/03/08 10:42:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Martha\Application Data\PriceGong
[2011/03/07 12:11:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Martha\Local Settings\Application Data\Conduit
[2011/03/03 14:01:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Martha\My Documents\Handy Andy
[2011/03/03 12:28:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Martha\Application Data\Serif
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\System\*.tmp files -> C:\WINDOWS\System\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/03/25 17:21:16 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/03/25 17:11:58 | 000,000,884 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/03/25 17:11:39 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Martha\Desktop\OTL.exe
[2011/03/25 14:53:12 | 000,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2011/03/25 12:17:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2011/03/25 10:27:51 | 000,007,074 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\log results.zip
[2011/03/25 09:15:02 | 000,301,568 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\h43exsi2.exe
[2011/03/25 09:00:52 | 000,001,374 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/03/25 09:00:19 | 000,000,880 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/03/25 08:54:31 | 000,019,871 | ---- | M] () -- C:\WINDOWS\System32\Config.MPF
[2011/03/25 08:53:03 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/03/24 19:48:30 | 000,058,368 | ---- | M] () -- C:\Documents and Settings\Martha\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/03/23 17:25:30 | 001,620,188 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\cinema-investment-proposal-final.pdf
[2011/03/22 16:59:35 | 000,217,569 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\6b19921b441a5674b061dabf4722601f.pdf
[2011/03/21 10:16:31 | 001,006,764 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\rkill.exe
[2011/03/20 19:23:53 | 000,000,129 | ---- | M] () -- C:\Documents and Settings\Martha\Local Settings\Application Data\fusioncache.dat
[2011/03/20 08:16:10 | 000,000,767 | ---- | M] () -- C:\Documents and Settings\Martha\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
[2011/03/20 08:15:57 | 000,000,592 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\ERUNT.lnk
[2011/03/20 00:03:20 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\Martha\PUTTY.RND
[2011/03/19 23:01:27 | 000,431,122 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011/03/19 21:34:37 | 000,791,393 | ---- | M] (Lars Hederer ) -- C:\Documents and Settings\Martha\Desktop\erunt-setup.exe
[2011/03/19 19:10:03 | 000,000,933 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\Spybot - Search & Destroy.lnk
[2011/03/19 10:40:50 | 000,002,483 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\Microsoft Word.lnk
[2011/03/18 13:44:53 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\userinit.exe
[2011/03/18 12:17:18 | 000,098,392 | ---- | M] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\SBREDrv.sys
[2011/03/17 09:09:37 | 000,011,064 | ---- | M] () -- C:\Documents and Settings\Martha\My Documents\cc_20110317_090929.reg
[2011/03/16 12:17:46 | 000,000,872 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\handyandybuilders.com Secure WebDisk.lnk
[2011/03/15 16:14:04 | 000,000,060 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\Access cPanel Webmail.url
[2011/03/15 15:42:48 | 000,005,366 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\handyandybuilders.com Secure WebDisk.vbs
[2011/03/15 13:19:53 | 000,000,022 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\New WinRAR ZIP archive.zip
[2011/03/13 13:05:24 | 000,001,663 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\FileZilla Client.lnk
[2011/03/12 23:42:58 | 000,003,184 | ---- | M] () -- C:\Documents and Settings\Martha\My Documents\cc_20110312_234227.reg
[2011/03/12 22:27:54 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\Martha\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/03/10 11:29:08 | 003,708,214 | ---- | M] () -- C:\Documents and Settings\Martha\My Documents\1165796_63751301.png
[2011/03/10 10:40:49 | 000,000,666 | ---- | M] () -- C:\Documents and Settings\Martha\Desktop\ImageConverter Plus.lnk
[2011/03/09 16:26:18 | 000,166,712 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/03/01 01:00:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\McQcTask.job
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\System\*.tmp files -> C:\WINDOWS\System\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/03/25 10:27:51 | 000,007,074 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\log results.zip
[2011/03/25 09:15:15 | 000,301,568 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\h43exsi2.exe
[2011/03/23 17:25:42 | 001,620,188 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\cinema-investment-proposal-final.pdf
[2011/03/22 16:59:51 | 000,217,569 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\6b19921b441a5674b061dabf4722601f.pdf
[2011/03/21 10:16:50 | 001,006,764 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\rkill.exe
[2011/03/20 19:23:53 | 000,000,129 | ---- | C] () -- C:\Documents and Settings\Martha\Local Settings\Application Data\fusioncache.dat
[2011/03/20 08:16:10 | 000,000,767 | ---- | C] () -- C:\Documents and Settings\Martha\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
[2011/03/20 08:15:57 | 000,000,592 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\ERUNT.lnk
[2011/03/19 19:10:02 | 000,000,933 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\Spybot - Search & Destroy.lnk
[2011/03/18 12:33:03 | 000,000,472 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2011/03/17 09:09:35 | 000,011,064 | ---- | C] () -- C:\Documents and Settings\Martha\My Documents\cc_20110317_090929.reg
[2011/03/15 16:14:04 | 000,000,060 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\Access cPanel Webmail.url
[2011/03/15 15:48:30 | 000,000,872 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\handyandybuilders.com Secure WebDisk.lnk
[2011/03/15 15:42:48 | 000,005,366 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\handyandybuilders.com Secure WebDisk.vbs
[2011/03/15 13:19:53 | 000,000,022 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\New WinRAR ZIP archive.zip
[2011/03/15 09:13:46 | 000,000,868 | ---- | C] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2011/03/13 13:05:24 | 000,001,663 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\FileZilla Client.lnk
[2011/03/12 23:42:50 | 000,003,184 | ---- | C] () -- C:\Documents and Settings\Martha\My Documents\cc_20110312_234227.reg
[2011/03/12 22:27:54 | 000,001,813 | ---- | C] () -- C:\Documents and Settings\Martha\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/03/10 11:29:04 | 003,708,214 | ---- | C] () -- C:\Documents and Settings\Martha\My Documents\1165796_63751301.png
[2011/03/10 10:40:49 | 000,000,666 | ---- | C] () -- C:\Documents and Settings\Martha\Desktop\ImageConverter Plus.lnk
[2011/03/09 18:08:51 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\Martha\PUTTY.RND
[2010/08/12 19:28:02 | 000,176,235 | ---- | C] () -- C:\WINDOWS\System32\Primomonnt.dll
[2010/04/07 13:51:06 | 000,000,552 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat
[2010/03/07 14:40:09 | 000,000,067 | ---- | C] () -- C:\WINDOWS\AVIConverter.INI
[2010/03/07 13:43:58 | 000,000,310 | ---- | C] () -- C:\Documents and Settings\Martha\Application Data\burnaware.ini
[2010/03/05 11:47:38 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Xqokonibumerujom.bin
[2010/03/05 11:47:37 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Edenimesumiwumez.dat
[2010/02/26 21:20:43 | 000,058,368 | ---- | C] () -- C:\Documents and Settings\Martha\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/12/21 01:42:18 | 000,000,314 | ---- | C] () -- C:\WINDOWS\primopdf.ini
[2007/10/05 07:41:50 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2007/06/26 20:22:12 | 000,000,015 | ---- | C] () -- C:\WINDOWS\popcinfo.dat
[2007/06/26 17:03:51 | 000,010,240 | ---- | C] () -- C:\WINDOWS\hpdj3840.ini
[2007/01/13 10:32:48 | 000,000,035 | ---- | C] () -- C:\WINDOWS\A5W.INI
[2007/01/13 10:32:43 | 000,000,212 | ---- | C] () -- C:\WINDOWS\AWSHKWV.INI
[2006/11/11 20:09:18 | 000,016,384 | ---- | C] () -- C:\WINDOWS\System32\FileOps.exe
[2006/11/08 21:40:13 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2006/08/17 19:53:12 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\lxakih.exe
[2006/08/17 19:53:11 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\lxaklcnp.dll
[2006/08/17 19:53:11 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\INSTMON.EXE
[2006/08/09 12:15:04 | 000,000,060 | ---- | C] () -- C:\WINDOWS\System32\SYSDRV.DAT
[2005/04/26 02:11:10 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2005/04/26 01:27:29 | 000,352,256 | ---- | C] () -- C:\WINDOWS\System32\HotlineClient.exe
[2005/04/25 23:31:16 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2005/04/25 23:24:53 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2005/04/25 23:06:29 | 000,000,449 | ---- | C] () -- C:\WINDOWS\System32\emver.ini
[2005/04/25 23:06:29 | 000,000,338 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2005/04/25 23:05:55 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2005/04/25 23:05:52 | 000,442,620 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2005/04/25 23:05:52 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2005/04/25 23:05:52 | 000,072,046 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2005/04/25 23:05:52 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2005/04/25 23:05:51 | 000,005,151 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2005/04/25 23:05:50 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2005/04/25 23:05:48 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2005/04/25 23:05:43 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2005/04/25 23:05:42 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2005/04/25 23:05:35 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2005/04/25 23:05:27 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2005/04/25 16:17:17 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2005/04/25 16:16:19 | 000,166,712 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2004/04/23 22:02:10 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\cmirmdrv.exe
[2004/03/03 07:50:56 | 000,004,460 | ---- | C] () -- C:\WINDOWS\hpfmdl_s04_main.dat
[2004/02/11 18:39:07 | 000,000,316 | ---- | C] () -- C:\WINDOWS\hpfins_s04_main.dat
[2003/02/19 01:26:28 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\cmirmdrv.dll
========== Alternate Data Streams ==========
@Alternate Data Stream - 132 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C8B8CEBD
@Alternate Data Stream - 129 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:918DBCA9
< End of report >