FF - prefs.js..browser.startup.homepage: "http://www.yahoo.com/"
FF - prefs.js..extensions.enabledItems: {4176DFF4-4698-11DE-BEEB-45DA55D89593}:0.8.6
FF - prefs.js..extensions.enabledItems: {446c03e0-2c35-11db-a98b-0800200c9a66}:0.6.1.14
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {BBDA0591-3099-440a-AA10-41764D9DB4DB}:2.0
FF - prefs.js..extensions.enabledItems: {2D3F3651-74B9-4795-BDEC-6DA2F431CB62}:4.6
FF - prefs.js..extensions.enabledItems: {c1970c0d-dbe6-4d91-804f-c9c0de643a57}:1.2.4
FF - prefs.js..network.proxy.type: 0
FF - HKLM\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.1.0.32\IPSFFPlgn\ [2010/12/17 12:21:57 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.1.0.32\coFFPlgn\ [2010/12/16 12:28:04 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/12/17 10:00:26 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/12/17 10:00:11 | 000,000,000 | ---D | M]
[2010/12/17 10:00:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dan Werner\Application Data\Mozilla\Extensions
[2010/12/25 06:27:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dan Werner\Application Data\Mozilla\Firefox\Profiles\zp8eoqbx.default\extensions
[2010/12/19 07:39:52 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Dan Werner\Application Data\Mozilla\Firefox\Profiles\zp8eoqbx.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/12/17 12:53:49 | 000,000,000 | ---D | M] (AniWeather) -- C:\Documents and Settings\Dan Werner\Application Data\Mozilla\Firefox\Profiles\zp8eoqbx.default\extensions\{4176DFF4-4698-11DE-BEEB-45DA55D89593}
[2010/12/17 14:55:29 | 000,000,000 | ---D | M] (Favicon Picker 2) -- C:\Documents and Settings\Dan Werner\Application Data\Mozilla\Firefox\Profiles\zp8eoqbx.default\extensions\{446c03e0-2c35-11db-a98b-0800200c9a66}
[2010/12/20 15:48:55 | 000,000,000 | ---D | M] (NoRedirect) -- C:\Documents and Settings\Dan Werner\Application Data\Mozilla\Firefox\Profiles\zp8eoqbx.default\extensions\{c1970c0d-dbe6-4d91-804f-c9c0de643a57}
[2010/12/17 10:00:12 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
O1 HOSTS File: ([2010/12/25 09:21:54 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton 360\Engine\4.3.0.5\coieplg.dll (Symantec Corporation)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton 360\Engine\4.3.0.5\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (AcroIEToolbarHelper Class) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll ()
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll ()
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\4.3.0.5\coieplg.dll (Symantec Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\4.3.0.5\coieplg.dll (Symantec Corporation)
O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe (Intel Corporation)
O4 - HKLM..\Run: [IntelZeroConfig] C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe (Intel Corporation)
O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (Macrovision Corporation)
O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (Macrovision Corporation)
O4 - HKLM..\Run: [Memeo Backup Premium] C:\Program Files\Memeo\AutoBackupPro\MemeoLauncher2.exe (Memeo Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NVHotkey] C:\WINDOWS\System32\nvhotkey.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [RoxWatchTray] C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe (Sonic Solutions)
O4 - HKLM..\Run: [Seagate Dashboard] C:\Program Files\Seagate\Seagate Dashboard\MemeoLauncher.exe ()
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\WINDOWS\stsystra.exe (SigmaTel, Inc.)
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe (Adobe Systems Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Google Calendar Sync.lnk = C:\Program Files\Google\Google Calendar Sync\GoogleCalendarSync.exe (Google)
O4 - Startup: C:\Documents and Settings\Dan Werner\Start Menu\Programs\Startup\ClickTray Calendar.lnk = C:\Program Files\ClickTray Calendar\ClickTray.exe (WASEO)
O4 - Startup: C:\Documents and Settings\Dan Werner\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE ()
O4 - Startup: C:\Documents and Settings\Dan Werner\Start Menu\Programs\Startup\PdaNet Desktop.lnk = C:\Program Files\PdaNet for Android\PdaNetPC.exe ()
O4 - Startup: C:\Documents and Settings\Dan Werner\Start Menu\Programs\Startup\Seagate Product Registration.lnk = C:\Documents and Settings\Dan Werner\Application Data\Leadertech\PowerRegister\Seagate Product Registration.exe (Leader Technologies/Seagate)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll (Google Inc.)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.109.67.74 213.109.77.113 1.1.1.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Dan Werner\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Dan Werner\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/12/12 12:06:16 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010/12/25 09:21:54 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010/12/25 06:44:01 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010/12/25 06:40:42 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2010/12/25 06:40:42 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2010/12/25 06:40:42 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2010/12/25 06:40:42 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2010/12/25 06:39:06 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010/12/24 14:02:13 | 000,016,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll
[2010/12/24 14:01:34 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Connect 2
[2010/12/24 13:59:24 | 000,000,000 | ---D | C] -- C:\f0d53f01b9790e9347
[2010/12/24 13:59:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\UMDF
[2010/12/24 07:26:27 | 000,000,000 | ---D | C] -- C:\_OTL
[2010/12/23 15:49:09 | 000,602,624 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Dan Werner\Desktop\OTL.exe
[2010/12/23 15:29:27 | 000,050,688 | ---- | C] (Atribune.org) -- C:\Documents and Settings\Dan Werner\Desktop\ATF-Cleaner.exe
[2010/12/21 07:52:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010/12/21 07:51:24 | 000,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2010/12/21 07:49:55 | 000,791,393 | ---- | C] (Lars Hederer ) -- C:\Documents and Settings\Dan Werner\Desktop\erunt-setup.exe
[2010/12/20 17:21:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Hitman Pro
[2010/12/19 13:53:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Local Settings\Application Data\Identities
[2010/12/18 14:39:17 | 000,000,000 | ---D | C] -- C:\tmp
[2010/12/18 14:39:07 | 000,000,000 | ---D | C] -- C:\Cool RingTone Maker
[2010/12/17 15:43:36 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vbar332.dll
[2010/12/17 15:43:35 | 000,000,000 | ---D | C] -- C:\Program Files\VoptXP v7
[2010/12/17 12:22:41 | 000,501,888 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\N360\0403000.005\cchpx86.sys
[2010/12/17 12:22:41 | 000,361,904 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\N360\0403000.005\symtdi.sys
[2010/12/17 12:22:41 | 000,339,504 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\N360\0403000.005\symtdiv.sys
[2010/12/17 12:22:41 | 000,328,752 | R--- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\N360\0403000.005\symds.sys
[2010/12/17 12:22:41 | 000,325,680 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\N360\0403000.005\srtsp.sys
[2010/12/17 12:22:41 | 000,173,104 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\N360\0403000.005\symefa.sys
[2010/12/17 12:22:41 | 000,116,784 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\N360\0403000.005\ironx86.sys
[2010/12/17 12:22:41 | 000,043,696 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\N360\0403000.005\srtspx.sys
[2010/12/17 12:22:01 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\N360\0403000.005
[2010/12/17 10:58:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Downloads
[2010/12/17 10:00:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Local Settings\Application Data\Mozilla
[2010/12/17 10:00:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\Mozilla
[2010/12/17 10:00:10 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2010/12/16 12:26:50 | 000,107,368 | R--- | C] (GEAR Software Inc.) -- C:\WINDOWS\System32\GEARAspi.dll
[2010/12/16 12:26:21 | 000,124,976 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS
[2010/12/16 12:26:21 | 000,060,808 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\S32EVNT1.DLL
[2010/12/16 12:26:20 | 000,000,000 | ---D | C] -- C:\Program Files\Symantec
[2010/12/16 12:25:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\N360
[2010/12/16 12:25:03 | 000,000,000 | ---D | C] -- C:\Program Files\Norton 360
[2010/12/16 12:17:45 | 000,000,000 | ---D | C] -- C:\Program Files\NortonInstaller
[2010/12/16 10:45:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\Tific
[2010/12/15 11:28:55 | 000,018,304 | ---- | C] (GARMIN Corp.) -- C:\WINDOWS\System32\drivers\grmngen.sys
[2010/12/15 11:28:54 | 000,000,000 | ---D | C] -- C:\Program Files\Garmin
[2010/12/15 10:57:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Local Settings\Application Data\Help
[2010/12/15 10:57:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\Help
[2010/12/15 10:54:59 | 000,000,000 | ---D | C] -- C:\Program Files\GSAK
[2010/12/14 17:26:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Local Settings\Application Data\WMTools Downloaded Files
[2010/12/14 16:29:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2010/12/14 16:05:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Sun
[2010/12/14 16:05:24 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2010/12/14 16:04:10 | 000,472,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deployJava1.dll
[2010/12/14 16:04:10 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2010/12/14 16:04:10 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2010/12/14 16:04:10 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2010/12/14 16:04:10 | 000,073,728 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
[2010/12/14 16:03:44 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2010/12/14 15:57:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\Sun
[2010/12/14 12:05:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\GlobalSCAPE
[2010/12/14 10:36:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\My Garmin
[2010/12/14 10:18:34 | 001,089,536 | ---- | C] (eHelp Corporation.) -- C:\WINDOWS\System32\ROBOEX32.DLL
[2010/12/14 10:18:34 | 000,049,152 | ---- | C] (Blue Sky Software Corporation.) -- C:\WINDOWS\System32\INETWH32.dll
[2010/12/14 10:18:34 | 000,000,000 | ---D | C] -- C:\Garmin
[2010/12/14 08:51:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Ultra Fractal 5
[2010/12/14 08:51:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Ultra Fractal 4
[2010/12/14 08:50:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Norton Key
[2010/12/14 08:49:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Elks
[2010/12/14 08:33:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\My Pictures
[2010/12/14 08:23:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\My Music
[2010/12/14 08:20:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Wells Fargo
[2010/12/14 08:20:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\RCI Info
[2010/12/14 08:19:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\SCSA
[2010/12/13 20:56:03 | 000,000,000 | ---D | C] -- C:\Program Files\HyperSnap-DX 4
[2010/12/13 20:46:53 | 000,000,000 | ---D | C] -- C:\Program Files\HyperSnap 6
[2010/12/13 20:24:27 | 000,000,000 | ---D | C] -- C:\Program Files\GlobalSCAPE
[2010/12/13 20:20:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Vbox
[2010/12/13 20:18:36 | 000,306,688 | ---- | C] (InstallShield Software Corporation) -- C:\WINDOWS\IsUninst.exe
[2010/12/13 20:15:19 | 000,000,000 | ---D | C] -- C:\Program Files\ClickTray Calendar
[2010/12/13 19:47:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Auction Sentry Data
[2010/12/13 19:46:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2010/12/13 19:46:51 | 000,000,000 | ---D | C] -- C:\Program Files\Auction Sentry
[2010/12/13 19:46:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\Downloaded Installations
[2010/12/13 19:33:38 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2010/12/13 19:33:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
[2010/12/13 19:22:46 | 000,286,720 | ---- | C] (Indigo Rose Corporation) -- C:\WINDOWS\iun506.exe
[2010/12/13 18:54:51 | 000,013,312 | ---- | C] (June Fabrics Technology Inc.) -- C:\WINDOWS\System32\drivers\pneteth.sys
[2010/12/13 18:47:32 | 000,014,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsgXP_2k3.dll
[2010/12/13 18:47:00 | 000,032,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbccgp.sys
[2010/12/13 18:44:41 | 001,112,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\WdfCoInstaller01007.dll
[2010/12/13 18:44:41 | 000,581,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\WinUSBCoInstaller.dll
[2010/12/13 18:44:40 | 000,000,000 | ---D | C] -- C:\Program Files\PdaNet for Android
[2010/12/13 17:00:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\GARMIN
[2010/12/13 17:00:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\GARMIN
[2010/12/13 16:48:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2010/12/13 16:48:24 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2010/12/13 16:48:15 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2010/12/13 16:47:42 | 001,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpssvcs.dll
[2010/12/13 16:47:42 | 001,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpssvcs.dll
[2010/12/13 16:47:42 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\printfilterpipelinesvc.exe
[2010/12/13 16:47:42 | 000,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpsshhdr.dll
[2010/12/13 16:47:42 | 000,117,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\prntvpt.dll
[2010/12/13 16:47:42 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\filterpipelineprintproc.dll
[2010/12/13 16:47:42 | 000,000,000 | ---D | C] -- C:\30af5d22e69d662677
[2010/12/13 16:41:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google
[2010/12/13 16:36:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2010/12/13 16:36:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Local Settings\Application Data\Google
[2010/12/13 16:35:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Google
[2010/12/13 16:34:55 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2010/12/13 16:34:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\Google
[2010/12/13 16:34:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\Macromedia
[2010/12/13 15:48:13 | 000,000,000 | ---D | C] -- C:\gsak
[2010/12/13 15:28:42 | 000,000,000 | ---D | C] -- C:\e18a05fd45ecaad9b471
[2010/12/13 15:28:08 | 000,000,000 | ---D | C] -- C:\drivers
[2010/12/13 12:23:38 | 000,000,000 | ---D | C] -- C:\DJ's 2010
[2010/12/13 12:23:26 | 000,000,000 | ---D | C] -- C:\c653913046ee4a6c69ae8de1105fed
[2010/12/13 09:24:46 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/12/13 09:24:43 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/12/13 09:24:42 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/12/13 09:16:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\Malwarebytes
[2010/12/13 09:15:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010/12/13 09:12:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Symantec
[2010/12/13 09:04:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PCSettings
[2010/12/13 09:01:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NortonInstaller
[2010/12/13 08:51:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\Norton
[2010/12/13 08:41:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Local Settings\Application Data\Symantec
[2010/12/13 08:00:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Temp
[2010/12/13 08:00:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\RV Data
[2010/12/13 08:00:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\pwrcmdr
[2010/12/13 07:58:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\PDF Files
[2010/12/13 07:55:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\My Web Sites
[2010/12/13 07:54:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\My Videos
[2010/12/13 07:53:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Harley Data
[2010/12/13 07:52:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Guns
[2010/12/13 07:49:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Geocaching Data
[2010/12/13 07:46:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\DJs
[2010/12/13 07:46:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\Blood Pressure
[2010/12/12 19:07:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\MemeoCommon
[2010/12/12 17:54:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[2010/12/12 17:54:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Norton
[2010/12/12 17:52:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\Memeo
[2010/12/12 17:52:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Seagate
[2010/12/12 17:52:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\Seagate
[2010/12/12 17:51:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\ServiceTest
[2010/12/12 17:50:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Memeo
[2010/12/12 17:50:39 | 000,000,000 | ---D | C] -- C:\Program Files\Memeo
[2010/12/12 17:50:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Local Settings\Application Data\temp
[2010/12/12 17:49:21 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2010/12/12 17:48:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2010/12/12 17:48:06 | 000,000,000 | ---D | C] -- C:\Program Files\Seagate
[2010/12/12 17:33:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\Leadertech
[2010/12/12 17:27:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\AdobeUM
[2010/12/12 17:27:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Local Settings\Application Data\Adobe
[2010/12/12 17:27:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\My Documents\My eBooks
[2010/12/12 17:26:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dan Werner\Application Data\Adobe
[2010/12/12 17:25:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2010/12/12 17:25:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\Adobe PDF 6.0
[2010/12/12 17:25:09 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010/12/12 17:24:26 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2010/12/12 17:14:22 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Sidebar
[2010/12/12 17:12:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Symantec
[2010/12/12 16:48:29 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared