OTL logfile created on: 4/6/2011 7:44:48 PM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Glenda Pagan\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 66.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 87.00% Paging File free
Paging file location(s): C:\pagefile.sys 0 0 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 15.99 Gb Total Space | 1.55 Gb Free Space | 9.71% Space Free | Partition Type: NTFS
Drive D: | 39.91 Gb Total Space | 12.95 Gb Free Space | 32.44% Space Free | Partition Type: NTFS
Unable to calculate disk information.
Computer Name: GLENDA | User Name: Glenda Pagan | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ========== PRC - C:\Documents and Settings\Glenda Pagan\desktop\OTL.exe (OldTimer Tools)
PRC - D:\Online Armor\oacat.exe (Emsi Software GmbH)
PRC - D:\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
PRC - D:\ScottradeELITE\ScottradeELITEClientUpdater.exe (Scottrade Inc.)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\ATI Multimedia\main\atidtct.exe (ATI Technologies Inc.)
PRC - C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\Directcd.exe (Roxio)
PRC - C:\WINDOWS\LogWatNT.exe ()
PRC - C:\WINDOWS\system32\NILaunch.exe ()
========== Modules (SafeList) ========== MOD - C:\Documents and Settings\Glenda Pagan\desktop\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\Alwil Software\Avast5\snxhk.dll (AVAST Software)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ========== SRV - (CWShredder Service) -- File not found
SRV - (AppMgmt) -- File not found
SRV - (SvcOnlineArmor) -- D:\Online Armor\oasrv.exe (Emsi Software GmbH)
SRV - (OAcat) -- D:\Online Armor\OAcat.exe (Emsi Software GmbH)
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (Pml Driver HPH11) -- C:\WINDOWS\system32\hphipm11.exe (HP)
SRV - (SPTISRV) -- C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe (Sony Corporation)
SRV - (LogWatch) -- C:\WINDOWS\LogWatNT.exe ()
========== Driver Services (SafeList) ========== DRV - (utqynzg0) -- C:\WINDOWS\system32\drivers\utqynzg0.sys ()
DRV - (oahlpXX) -- C:\WINDOWS\system32\drivers\oahlp32.sys ()
DRV - (OAnet) -- C:\WINDOWS\system32\drivers\OAnet.sys (Emsisoft)
DRV - (OAmon) -- C:\WINDOWS\system32\drivers\OAmon.sys (Emsisoft)
DRV - (OADevice) -- C:\WINDOWS\system32\drivers\OADriver.sys ()
DRV - (aswSnx) -- C:\WINDOWS\System32\drivers\aswSnx.sys (AVAST Software)
DRV - (aswSP) -- C:\WINDOWS\System32\drivers\aswSP.sys (AVAST Software)
DRV - (aswTdi) -- C:\WINDOWS\System32\drivers\aswTdi.sys (AVAST Software)
DRV - (aswMon2) -- C:\WINDOWS\System32\drivers\aswmon2.sys (AVAST Software)
DRV - (aswRdr) -- C:\WINDOWS\System32\drivers\aswRdr.sys (AVAST Software)
DRV - (Aavmker4) -- C:\WINDOWS\System32\drivers\aavmker4.sys (AVAST Software)
DRV - (aswFsBlk) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys (AVAST Software)
DRV - (SASKUTIL) -- D:\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASDIFSV) -- D:\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (16799702) -- C:\WINDOWS\system32\DRIVERS\16799702.sys (Kaspersky Lab)
DRV - (Kapersky setup_9.0.0.722_04.04.2011_22-38drv) -- C:\WINDOWS\system32\drivers\1679970.sys (Kaspersky Lab)
DRV - (ati2mtag) -- C:\WINDOWS\system32\drivers\ati2mtag.sys (ATI Technologies Inc.)
DRV - (16799701) -- C:\WINDOWS\system32\drivers\16799701.sys (Kaspersky Lab)
DRV - (Dot4Usb HPH11) -- C:\WINDOWS\system32\drivers\hphius11.sys (HP)
DRV - (Dot4Print HPH11) -- C:\WINDOWS\system32\drivers\hphipr11.sys (HP)
DRV - (Dot4 HPH11) -- C:\WINDOWS\system32\drivers\hphid411.sys (HP)
DRV - (L8042Kbd) -- C:\WINDOWS\system32\drivers\L8042Kbd.sys (Logitech, Inc.)
DRV - (L8042mou) -- C:\WINDOWS\system32\drivers\L8042mou.Sys (Logitech, Inc.)
DRV - (LMouKE) -- C:\WINDOWS\system32\drivers\LMouKE.Sys (Logitech, Inc.)
DRV - (LHidKe) -- C:\WINDOWS\system32\drivers\LHidKE.Sys (Logitech, Inc.)
DRV - (SiS7012) Service for AC'97 Sample Driver (WDM) -- C:\WINDOWS\system32\drivers\sis7012.sys (Silicon Integrated Systems Corporation)
DRV - (btaudio) -- C:\WINDOWS\system32\drivers\btaudio.sys (Broadcom Corporation)
DRV - (BTKRNL) -- C:\WINDOWS\system32\drivers\btkrnl.sys (Broadcom Corporation)
DRV - (btwhid) -- C:\WINDOWS\system32\drivers\btwhid.sys (Broadcom Corporation)
DRV - (BTDriver) -- C:\WINDOWS\system32\drivers\btport.sys (Broadcom Corporation)
DRV - (BTWUSB) -- C:\WINDOWS\system32\drivers\btwusb.sys (Broadcom Corporation)
DRV - (vserial) -- C:\WINDOWS\system32\drivers\vserial.sys (ELTIMA Software)
DRV - (vsbus) -- C:\WINDOWS\system32\drivers\vsb.sys (ELTIMA Software)
DRV - (LHidPPKE) -- C:\WINDOWS\system32\drivers\LHidPPKE.Sys (Logitech, Inc.)
DRV - (pwd_2K) -- C:\WINDOWS\System32\drivers\pwd_2K.sys (Roxio)
DRV - (cdudf_xp) -- C:\WINDOWS\System32\drivers\cdudf_xp.sys (Roxio)
DRV - (Udfreadr_xp) -- C:\WINDOWS\System32\drivers\udfreadr_xp.sys (Roxio)
DRV - (mmc_2K) -- C:\WINDOWS\System32\drivers\Mmc_2k.sys (Roxio)
DRV - (dvd_2K) -- C:\WINDOWS\System32\drivers\Dvd_2k.sys (Roxio)
DRV - (Cdr4_xp) -- C:\WINDOWS\System32\drivers\cdr4_xp.sys (Roxio)
DRV - (Cdralw2k) -- C:\WINDOWS\System32\drivers\cdralw2k.sys (Roxio)
DRV - (SMBE) Sony MPEG2 Encoder Board (WDM) -- C:\WINDOWS\system32\drivers\Smbe.sys (Sony Corporation)
DRV - (SiS315) -- C:\WINDOWS\system32\drivers\sisgrp.sys (Silicon Integrated Systems Corporation)
DRV - (LucentSoftModem) -- C:\WINDOWS\system32\drivers\LTSM.sys (Lucent Technologies)
DRV - (portD) -- C:\WINDOWS\system32\drivers\portd2k.sys (Windows (R) 2000 DDK provider)
DRV - (SiSkp) -- C:\WINDOWS\system32\drivers\srvkp.sys ()
DRV - (SONYWBMS) Sony Memory Stick controller(WB) -- C:\WINDOWS\system32\drivers\SonyWBMS.sys (Sony Corporation)
DRV - (rtl8139) -- C:\WINDOWS\system32\drivers\R8139n51.sys (Realtek Semiconductor Corporation)
DRV - (ICDUSB) -- C:\WINDOWS\system32\drivers\ICDUSB.sys (Sony Corporation)
DRV - (SbcpHid) -- C:\WINDOWS\system32\drivers\SbcpHid.sys ()
DRV - (mrtRate) -- C:\WINDOWS\System32\drivers\MrtRate.sys (Marimba, Inc.)
DRV - (DMICall) -- C:\WINDOWS\system32\drivers\DMICall.sys (Sony Corporation)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://search.msn.com/results.asp?cfg=SMCSP&FORM=SPBA&v=1&cp=1252&q=IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.nytimes.com/IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 127.0.0.1;localhost;*.local
========== FireFox ========== [2010/01/15 00:14:31 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Glenda Pagan\Application Data\Mozilla\Extensions
[2009/02/22 11:08:02 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Glenda Pagan\Application Data\Mozilla\Extensions\
[email protected][2010/04/14 17:47:40 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Glenda Pagan\Application Data\Mozilla\Firefox\Profiles\a6mot6iz.default\extensions
[2010/04/14 17:47:40 | 000,000,000 | ---D | M] (Microsoft Default Manager) -- C:\Documents and Settings\Glenda Pagan\Application Data\Mozilla\Firefox\Profiles\a6mot6iz.default\extensions\DefaultManager@Microsoft
O1 HOSTS File: ([2011/04/04 17:26:57 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O3 - HKLM\..\Toolbar: (no name) - {4E7BD74F-2B8D-469E-C0FF-FD60B590A87D} - No CLSID value found.
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {4E538A3C-326F-4F7C-B95A-A97C1C2E3978} - No CLSID value found.
O4 - HKLM..\Run: [AdaptecDirectCD] C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\Directcd.exe (Roxio)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe (HP)
O4 - HKLM..\Run: [HydraVisionDesktopManager] C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe (ATI Technologies Inc.)
O4 - HKLM..\Run: [HydraVisionViewport] C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraMD.exe (ATI Technologies Inc.)
O4 - HKLM..\Run: [Logitech Hardware Abstraction Layer] C:\WINDOWS\KHALMNPR.Exe (Logitech Inc.)
O4 - HKLM..\Run: [Net-It Launcher] C:\WINDOWS\system32\NILaunch.exe ()
O4 - HKLM..\Run: [NvCplDaemon] File not found
O4 - HKLM..\Run: [ZTgServerSwitch] c:\program files\support.com\client\bin\tgcmd.exe (Support.com, Inc.)
O4 - HKCU..\Run: [ATI DeviceDetect] C:\Program Files\ATI Multimedia\main\ATIDtct.EXE (ATI Technologies Inc.)
O4 - HKCU..\Run: [ATI Launchpad] C:\Program Files\ATI Multimedia\main\LaunchPd.exe (ATI Technologies Inc.)
O4 - HKCU..\Run: [LDM] D:\Desktop Messenger\8876480\Program\backWeb-8876480.exe (Logitech)
O4 - HKCU..\Run: [SUPERAntiSpyware] D:\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech Inc.)
O4 - Startup: C:\Documents and Settings\Glenda Pagan\Start Menu\Programs\Startup\Kapersky setup_9.0.0.722_04.04.2011_22-38.lnk = D:\Documents and Settings\Glenda Pagan\Desktop\Virus Removal Tool\Kapersky setup_9.0.0.722_04.04.2011_22-38\startup.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Open Client to monitor &1 - C:\WINDOWS\Web\AOpenClient.htm ()
O8 - Extra context menu item: Open Client to monitor &4 - C:\WINDOWS\Web\AOpenClient.htm ()
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O9 - Extra Button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - C:\Program Files\ATI Multimedia\dtv\EXPLBAR.DLL (ATI Technologies Inc.)
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet)
O16 - DPF: {0000000A-9980-0010-8000-00AA00389B71}
http://codecs.microsoft.com/codecs/i386/wmsp9dmo.cab (Reg Error: Value error.)
O16 - DPF: {0067DBFC-A752-458C-AE6E-B9C7E63D4824}
http://www.logitech.com/devicedetector/plugins/LogitechDeviceDetection32.cab (Device Detection)
O16 - DPF: {32C3FEAE-0877-4767-8C20-62A5829A0945}
http://static.ak.facebook.com/fbplugin/win32/axfbootloader.cab (Reg Error: Value error.)
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71}
http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB (Reg Error: Value error.)
O16 - DPF: {33564D57-9980-0010-8000-00AA00389B71}
http://codecs.microsoft.com/codecs/i386/wmv9dmo.cab (Reg Error: Value error.)
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB}
http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab (NVIDIA Smart Scan)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F}
http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37607.6467824074 (Reg Error: Value error.)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 167.206.254.2 167.206.254.1 192.168.1.1
O18 - Protocol\Handler\widimg {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\BTXPPanel.dll (Broadcom Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - D:\SASWINLO.DLL - D:\SASWINLO.DLL (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O28 - HKLM ShellExecuteHooks: {4F07DA45-8170-4859-9B5F-037EF2970034} - D:\Online Armor\oaevent.dll (Emsi Software GmbH)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - D:\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2002/09/03 10:58:31 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.CAM -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2011/04/06 19:42:11 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Glenda Pagan\Desktop\OTL.exe
[2011/04/04 23:06:31 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011/04/04 22:14:12 | 000,000,000 | R--D | C] -- C:\32788R22FWJFW
[2011/04/04 17:11:37 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2011/04/04 17:06:38 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2011/04/04 17:06:38 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2011/04/04 17:06:38 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2011/04/04 17:06:38 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2011/04/04 17:06:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2011/04/04 17:05:51 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/04/04 15:35:20 | 000,315,408 | ---- | C] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\1679970.sys
[2011/04/04 15:35:20 | 000,128,016 | ---- | C] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\16799701.sys
[2011/04/04 15:35:20 | 000,037,392 | ---- | C] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\16799702.sys
[2011/04/03 23:07:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2011/04/03 14:48:05 | 000,237,776 | ---- | C] (Tech-Pro Limited) -- C:\WINDOWS\System32\tpuninst.exe
[2011/04/03 01:47:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Glenda Pagan\Application Data\OnlineArmor
[2011/04/03 01:47:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\OnlineArmor
[2011/04/03 01:46:29 | 000,029,464 | ---- | C] (Emsisoft) -- C:\WINDOWS\System32\drivers\OAnet.sys
[2011/04/03 01:46:29 | 000,025,192 | ---- | C] (Emsisoft) -- C:\WINDOWS\System32\drivers\OAmon.sys
[2011/04/03 01:46:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Online Armor
[2011/04/02 22:26:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Glenda Pagan\Application Data\SUPERAntiSpyware.com
[2011/04/02 22:25:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\SUPERAntiSpyware
[2011/04/02 21:14:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Glenda Pagan\Application Data\ErrorExpert
[2011/04/02 20:25:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2011/04/02 17:54:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Advanced SystemCare 3
[2011/04/01 23:12:31 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Glenda Pagan\Recent
[2011/04/01 17:57:26 | 000,000,000 | ---D | C] -- C:\Program Files\AMD APP
[2011/03/21 19:55:46 | 012,385,792 | ---- | C] (Advanced Micro Devices Inc.) -- C:\WINDOWS\System32\amdocl.dll
[2011/03/13 14:40:11 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wab.exe
[2011/03/13 14:36:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011/03/13 14:35:33 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2011/03/13 14:35:33 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2011/03/13 14:35:33 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2011/03/13 14:31:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\McAfee
[2011/03/11 16:14:05 | 000,371,544 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2005/02/26 14:18:33 | 000,131,072 | R--- | C] ( ) -- C:\WINDOWS\System32\ATIDEMGR.dll
[2004/12/25 12:22:17 | 000,090,112 | R--- | C] ( ) -- C:\WINDOWS\System32\SCCD3X02.DLL
[2002/12/11 16:55:44 | 000,078,336 | ---- | C] ( ) -- C:\WINDOWS\pysoft_uninstaller.exe
========== Files - Modified Within 30 Days ========== [2011/04/06 19:42:17 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Glenda Pagan\Desktop\OTL.exe
[2011/04/06 12:09:24 | 000,000,436 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{5B5D6917-909B-4733-9654-DF5E30BA0BE5}.job
[2011/04/06 09:12:43 | 000,002,048 | ---- | M] () -- C:\WINDOWS\bootstat.dat
[2011/04/05 17:00:55 | 000,000,565 | ---- | M] () -- C:\hpfr5550.xml
[2011/04/05 11:17:38 | 000,001,687 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk
[2011/04/05 00:16:09 | 000,002,644 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/04/04 17:26:57 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011/04/04 17:11:48 | 000,000,327 | -HS- | M] () -- C:\boot.ini
[2011/04/04 16:53:16 | 000,007,168 | ---- | M] () -- C:\WINDOWS\System32\drivers\utqynzg0.sys
[2011/04/04 15:37:46 | 000,001,921 | ---- | M] () -- C:\Documents and Settings\Glenda Pagan\Start Menu\Programs\Startup\Kapersky setup_9.0.0.722_04.04.2011_22-38.lnk
[2011/04/03 14:15:14 | 000,000,186 | ---- | M] () -- C:\Documents and Settings\Glenda Pagan\Desktop\FreeStockCharts.com - Web's Best Streaming Realtime Stock Charts - Free.url
[2011/04/03 01:47:16 | 000,427,254 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/04/03 01:47:16 | 000,065,674 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/04/01 23:31:12 | 000,000,026 | ---- | M] () -- C:\WINDOWS\ATICIM.MIF
[2011/04/01 00:31:16 | 000,189,792 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/03/30 19:32:42 | 000,039,048 | ---- | M] () -- C:\WINDOWS\System32\drivers\oahlp32.sys
[2011/03/30 19:32:20 | 000,029,464 | ---- | M] (Emsisoft) -- C:\WINDOWS\System32\drivers\OAnet.sys
[2011/03/30 19:32:20 | 000,025,192 | ---- | M] (Emsisoft) -- C:\WINDOWS\System32\drivers\OAmon.sys
[2011/03/30 19:32:18 | 000,205,992 | ---- | M] () -- C:\WINDOWS\System32\drivers\OADriver.sys
[2011/03/21 19:56:22 | 000,059,904 | ---- | M] () -- C:\WINDOWS\System32\OVDecode.dll
[2011/03/21 19:55:46 | 012,385,792 | ---- | M] (Advanced Micro Devices Inc.) -- C:\WINDOWS\System32\amdocl.dll
[2011/03/18 09:09:33 | 000,000,141 | ---- | M] () -- C:\Documents and Settings\Glenda Pagan\Desktop\No Day Trading Margin Calls- Proprietary Trading.url
[2011/03/13 15:32:57 | 000,000,235 | ---- | M] () -- C:\Documents and Settings\Glenda Pagan\Desktop\Whole Roasted Chicken with Pear, Shallots, and Thyme.url
[2011/03/12 22:20:54 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/03/11 16:17:22 | 000,002,639 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011/03/10 10:30:00 | 000,030,088 | ---- | M] () -- C:\Documents and Settings\Glenda Pagan\Desktop\StockFetcher.lwp
[2011/03/09 12:21:22 | 000,000,580 | ---- | M] () -- C:\Documents and Settings\Glenda Pagan\Desktop\ScottradeELITE.lnk
========== Files Created - No Company Name ========== [2011/04/04 17:11:48 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2011/04/04 17:11:45 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2011/04/04 17:06:38 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2011/04/04 17:06:38 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2011/04/04 17:06:38 | 000,089,088 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2011/04/04 17:06:38 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2011/04/04 17:06:38 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2011/04/04 16:52:49 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\utqynzg0.sys
[2011/04/04 15:37:46 | 000,001,921 | ---- | C] () -- C:\Documents and Settings\Glenda Pagan\Start Menu\Programs\Startup\Kapersky setup_9.0.0.722_04.04.2011_22-38.lnk
[2011/04/03 01:46:29 | 000,205,992 | ---- | C] () -- C:\WINDOWS\System32\drivers\OADriver.sys
[2011/04/03 01:46:29 | 000,039,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\oahlp32.sys
[2011/04/02 20:36:24 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Reader X.lnk
[2011/03/21 19:56:22 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\OVDecode.dll
[2011/03/18 09:09:33 | 000,000,141 | ---- | C] () -- C:\Documents and Settings\Glenda Pagan\Desktop\No Day Trading Margin Calls- Proprietary Trading.url
[2011/03/09 12:17:27 | 000,000,580 | ---- | C] () -- C:\Documents and Settings\Glenda Pagan\Desktop\ScottradeELITE.lnk
[2011/02/14 18:40:17 | 000,036,864 | ---- | C] () -- C:\WINDOWS\hpfsched.exe
[2011/02/14 18:39:48 | 000,004,760 | ---- | C] () -- C:\WINDOWS\hphmdl11.dat
[2010/11/18 21:57:48 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin
[2010/11/18 20:54:59 | 000,887,724 | ---- | C] () -- C:\WINDOWS\System32\ativva6x.dat
[2010/11/18 20:54:53 | 003,107,788 | ---- | C] () -- C:\WINDOWS\System32\ativva5x.dat
[2010/03/14 15:02:32 | 000,002,644 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2009/11/07 13:14:46 | 000,038,756 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2009/02/01 23:23:51 | 000,000,019 | ---- | C] () -- C:\WINDOWS\rrver.ini
[2007/12/11 17:44:33 | 000,000,043 | ---- | C] () -- C:\WINDOWS\WALLSTRT.INI
[2007/02/03 13:15:15 | 000,001,365 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2006/06/25 15:20:21 | 000,000,151 | ---- | C] () -- C:\WINDOWS\CONV311.SYS
[2006/02/18 00:18:19 | 000,000,000 | ---- | C] () -- C:\WINDOWS\asym.ini
[2006/01/21 19:30:52 | 000,006,645 | ---- | C] () -- C:\WINDOWS\WinSig.Ini
[2006/01/21 19:30:52 | 000,000,046 | ---- | C] () -- C:\WINDOWS\Reader.Ini
[2006/01/21 19:27:56 | 000,002,962 | ---- | C] () -- C:\WINDOWS\WinRos.Ini
[2006/01/15 17:49:32 | 000,000,000 | ---- | C] () -- C:\WINDOWS\PROTOCOL.INI
[2005/09/06 16:11:23 | 000,000,552 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat
[2005/07/29 20:01:51 | 000,002,158 | ---- | C] () -- C:\WINDOWS\System32\tmmute.ini
[2005/07/29 14:48:05 | 000,000,004 | ---- | C] () -- C:\WINDOWS\RM_RESULT.DAT
[2005/07/29 14:47:51 | 000,000,170 | ---- | C] () -- C:\WINDOWS\GetServer.ini
[2005/07/03 14:46:47 | 000,081,920 | ---- | C] () -- C:\WINDOWS\bwUnin-6.1.4.68-8876480L.exe
[2005/07/03 09:33:42 | 000,000,080 | ---- | C] () -- C:\WINDOWS\encore_launcher.ini
[2005/06/10 16:59:16 | 000,189,051 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2005/02/26 14:49:58 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ATIMMC.INI
[2005/02/26 14:18:42 | 000,593,920 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2004/12/25 12:22:17 | 000,131,072 | R--- | C] () -- C:\WINDOWS\System32\SCCD3X01.DLL
[2004/11/15 20:09:51 | 000,000,045 | ---- | C] () -- C:\WINDOWS\BCFFINP.ini
[2004/10/28 18:26:42 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\btprn2k.dll
[2004/10/24 19:47:05 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004/07/30 16:30:28 | 000,001,464 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2004/05/27 16:36:16 | 000,026,362 | ---- | C] () -- C:\Documents and Settings\Glenda Pagan\Application Data\Comma Separated Values (Windows).ADR
[2004/03/09 12:12:06 | 000,028,775 | ---- | C] () -- C:\WINDOWS\javaw.exe
[2004/03/04 12:06:57 | 000,000,000 | ---- | C] () -- C:\WINDOWS\OPPRIN~1.INI
[2004/01/28 12:42:06 | 000,066,560 | ---- | C] () -- C:\WINDOWS\System32\atiyuv12.dll
[2004/01/28 12:42:06 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\Iyvu9_32.dll
[2004/01/28 12:42:06 | 000,013,601 | ---- | C] () -- C:\WINDOWS\System32\vctest.ini
[2003/10/18 14:36:22 | 000,016,384 | ---- | C] () -- C:\WINDOWS\System32\FileOps.exe
[2003/10/16 20:46:26 | 000,000,000 | ---- | C] () -- C:\WINDOWS\QXCONVRT.INI
[2003/10/14 16:07:26 | 000,000,422 | ---- | C] () -- C:\WINDOWS\videoimp.ini
[2003/07/28 10:44:21 | 000,000,034 | ---- | C] () -- C:\WINDOWS\hpfsched.ini
[2003/07/25 00:16:36 | 000,001,901 | ---- | C] () -- C:\WINDOWS\panose.bin
[2003/07/24 23:38:21 | 000,000,235 | ---- | C] () -- C:\WINDOWS\QTW.INI
[2003/07/24 23:37:16 | 000,210,944 | ---- | C] () -- C:\WINDOWS\System32\MSVCRT10.DLL
[2003/07/24 23:37:16 | 000,042,483 | ---- | C] () -- C:\WINDOWS\ICCCODES.DAT
[2003/07/24 23:37:15 | 000,027,648 | ---- | C] () -- C:\WINDOWS\PFPICK.DLL
[2003/07/24 23:36:59 | 000,000,110 | ---- | C] () -- C:\WINDOWS\KPCMS.INI
[2003/07/24 22:55:43 | 000,001,344 | ---- | C] () -- C:\WINDOWS\System32\odbcinst.ini
[2003/07/24 22:44:35 | 000,000,035 | ---- | C] () -- C:\WINDOWS\A4W.INI
[2003/07/07 23:21:20 | 000,000,027 | ---- | C] () -- C:\WINDOWS\INTUIT.INI
[2003/06/16 14:15:55 | 000,140,503 | ---- | C] () -- C:\WINDOWS\msview.ini
[2003/06/08 14:08:27 | 000,000,063 | ---- | C] () -- C:\WINDOWS\mdm.ini
[2003/06/05 15:39:20 | 000,000,030 | ---- | C] () -- C:\WINDOWS\INTURS.DAT
[2003/06/05 13:59:28 | 000,000,000 | ---- | C] () -- C:\WINDOWS\QFN.ini
[2003/06/05 13:59:28 | 000,000,000 | ---- | C] () -- C:\WINDOWS\QDQICK.ini
[2003/04/10 20:14:13 | 000,006,550 | ---- | C] () -- C:\WINDOWS\jautoexp.dat
[2003/04/02 01:23:18 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2003/03/21 11:49:01 | 000,000,212 | ---- | C] () -- C:\WINDOWS\states.ini
[2003/03/21 11:49:01 | 000,000,069 | ---- | C] () -- C:\WINDOWS\zip_var.ini
[2003/03/21 11:49:01 | 000,000,034 | ---- | C] () -- C:\WINDOWS\phone_var.ini
[2003/03/21 11:49:00 | 000,051,942 | ---- | C] () -- C:\WINDOWS\name_gender.ini
[2003/03/21 11:49:00 | 000,000,037 | ---- | C] () -- C:\WINDOWS\name_var.ini
[2003/03/21 11:49:00 | 000,000,011 | ---- | C] () -- C:\WINDOWS\city_var.ini
[2003/03/21 11:48:59 | 000,000,058 | ---- | C] () -- C:\WINDOWS\birth_var.ini
[2003/03/21 11:48:59 | 000,000,016 | ---- | C] () -- C:\WINDOWS\addr_var.ini
[2003/01/29 00:32:42 | 000,000,332 | ---- | C] () -- C:\WINDOWS\VTruck2.ini
[2003/01/08 14:47:58 | 000,000,061 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2002/12/19 11:31:29 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2002/12/11 18:24:40 | 000,000,308 | ---- | C] () -- C:\WINDOWS\VTruck1.ini
[2002/11/22 15:50:06 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\hpodinet.dll
[2002/10/30 23:28:36 | 000,000,006 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2002/10/23 12:46:55 | 000,000,335 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2002/09/04 14:52:13 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Net-It Now! SE.INI
[2002/09/04 14:51:50 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\NILaunch.exe
[2002/09/04 14:51:49 | 000,037,888 | ---- | C] () -- C:\WINDOWS\System32\NIUninstall.exe
[2002/09/04 14:51:20 | 000,000,038 | ---- | C] () -- C:\WINDOWS\Approach.ini
[2002/09/03 11:02:39 | 000,154,112 | ---- | C] () -- C:\WINDOWS\System32\Tngremov.exe
[2002/09/03 10:49:07 | 000,343,040 | ---- | C] () -- C:\WINDOWS\System32\lffpx7.dll
[2002/09/03 10:49:07 | 000,116,736 | ---- | C] () -- C:\WINDOWS\System32\lfkodak.dll
[2002/09/03 10:48:09 | 000,062,976 | ---- | C] () -- C:\Documents and Settings\Glenda Pagan\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2002/04/26 05:06:10 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2002/04/25 18:13:18 | 000,000,932 | ---- | C] () -- C:\WINDOWS\intuprof.ini
[2002/04/25 18:13:18 | 000,000,921 | ---- | C] () -- C:\WINDOWS\QUICKEN.INI
[2002/04/25 18:13:17 | 000,007,406 | ---- | C] () -- C:\WINDOWS\ICOADB32.DAT
[2002/04/25 18:09:33 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\winchip.dll
[2002/04/25 18:09:10 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\Cpuinf32.dll
[2002/04/25 18:08:09 | 000,262,416 | ---- | C] () -- C:\WINDOWS\System32\Asfv2.dll
[2002/04/25 17:48:56 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\pxhpinst.exe
[2002/04/25 17:48:04 | 000,524,288 | ---- | C] () -- C:\WINDOWS\System32\TDI-SonyOMG.dll
[2002/04/24 20:36:03 | 000,005,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\srvkp.sys
[2002/04/24 20:35:24 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\sis740.bin
[2002/04/24 20:35:24 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\sis650.bin
[2002/04/24 20:35:18 | 000,155,648 | ---- | C] () -- C:\WINDOWS\System32\setuplib.dll
[2002/04/24 20:35:18 | 000,086,275 | ---- | C] () -- C:\WINDOWS\System32\waitwnd.exe
[2002/04/24 14:47:28 | 000,001,342 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2002/04/24 14:42:49 | 000,002,048 | ---- | C] () -- C:\WINDOWS\bootstat.dat
[2002/04/24 14:39:34 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2002/04/24 14:32:17 | 000,311,912 | ---- | C] () -- C:\WINDOWS\Q320174.exe
[2002/04/24 14:32:14 | 002,931,304 | ---- | C] () -- C:\WINDOWS\Q317277.exe
[2002/04/24 14:32:13 | 000,621,672 | ---- | C] () -- C:\WINDOWS\Q316134.exe
[2002/04/24 14:32:11 | 000,487,016 | ---- | C] () -- C:\WINDOWS\Q315403.EXE
[2002/04/24 14:32:10 | 000,599,144 | ---- | C] () -- C:\WINDOWS\Q315000.EXE
[2002/04/24 14:32:10 | 000,234,088 | ---- | C] () -- C:\WINDOWS\Q314147.exe
[2002/04/24 14:32:09 | 000,605,288 | ---- | C] () -- C:\WINDOWS\Q312368.EXE
[2002/04/24 14:32:09 | 000,329,320 | ---- | C] () -- C:\WINDOWS\Q312131.exe
[2002/04/24 14:32:08 | 000,290,920 | ---- | C] () -- C:\WINDOWS\Q311889.EXE
[2002/04/24 14:32:06 | 002,039,400 | ---- | C] () -- C:\WINDOWS\Q309521.exe
[2002/04/24 14:32:06 | 000,474,728 | ---- | C] () -- C:\WINDOWS\Q308677.EXE
[2002/04/24 14:32:06 | 000,162,920 | ---- | C] () -- C:\WINDOWS\Q309056.exe
[2002/04/24 14:32:05 | 000,359,016 | ---- | C] () -- C:\WINDOWS\Q308402.EXE
[2002/04/24 14:32:05 | 000,188,520 | ---- | C] () -- C:\WINDOWS\Q307274.exe
[2002/04/24 14:32:05 | 000,159,336 | ---- | C] () -- C:\WINDOWS\Q307271.exe
[2002/04/24 14:32:04 | 000,240,232 | ---- | C] () -- C:\WINDOWS\Q306583.exe
[2002/04/24 14:30:54 | 000,000,672 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2002/04/24 14:30:37 | 000,427,254 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2002/04/24 14:30:37 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2002/04/24 14:30:37 | 000,065,674 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2002/04/24 14:30:37 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2002/04/24 14:30:36 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2002/04/24 14:30:36 | 000,004,530 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2002/04/24 14:30:35 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2002/04/24 14:30:34 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2002/04/24 14:30:34 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2002/04/24 14:30:30 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2002/04/24 07:36:00 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2002/04/24 07:35:21 | 000,189,792 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2001/11/14 13:56:00 | 001,802,240 | ---- | C] () -- C:\WINDOWS\System32\lcppn21.dll
[2001/08/23 15:00:00 | 000,022,400 | ---- | C] () -- C:\WINDOWS\System32\drivers\SbcpHid.sys
[2000/06/08 14:15:24 | 000,050,176 | ---- | C] () -- C:\WINDOWS\LogWatNT.exe
[2000/04/25 14:58:08 | 000,047,104 | ---- | C] () -- C:\WINDOWS\System32\Wrkgadm.exe
[1999/07/23 13:46:48 | 000,000,116 | ---- | C] () -- C:\WINDOWS\AuHCcup1.ini
[1999/07/23 10:53:20 | 000,129,536 | ---- | C] () -- C:\WINDOWS\AuHCcup1.dll
[1999/03/10 21:23:00 | 000,222,928 | ---- | C] () -- C:\WINDOWS\System32\lobas09.dll
[1999/01/22 12:46:56 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL
[1998/03/18 21:23:00 | 000,096,256 | ---- | C] () -- C:\WINDOWS\System32\nsqlc32.dll
[1998/01/13 21:23:00 | 000,047,104 | ---- | C] () -- C:\WINDOWS\System32\lotrn13.dll
[1997/11/14 21:23:00 | 000,031,008 | ---- | C] () -- C:\WINDOWS\System32\ivtrn09.dll
[1997/05/13 21:23:00 | 000,000,153 | ---- | C] () -- C:\WINDOWS\acroread.ini
[1996/11/17 01:37:00 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\HLINKPRX.DLL
[1994/07/25 21:23:00 | 000,014,928 | ---- | C] () -- C:\WINDOWS\System32\wingen.drv
[1994/04/07 21:23:00 | 000,000,462 | ---- | C] () -- C:\WINDOWS\lodbf13.ini
========== LOP Check ========== [2010/03/21 20:17:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2009/11/23 13:43:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\avg9
[2010/04/22 18:22:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Cisco Systems
[2010/06/21 16:50:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\eSignal
[2010/11/18 19:57:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Innovative Solutions
[2011/04/03 13:33:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\OnlineArmor
[2010/11/18 23:10:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
[2010/09/19 15:07:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\performance
[2011/04/03 14:30:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\RocketReader
[2009/09/30 19:26:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2005/07/28 13:32:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
[2009/03/12 00:12:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
[2010/06/10 11:13:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2009/10/13 17:57:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009/04/23 16:50:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2009/11/23 11:58:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\AVG9
[2011/04/02 20:08:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\BitTorrent
[2010/11/25 21:59:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2007/08/11 13:46:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\com.codeode
[2010/06/21 17:01:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\counters
[2010/11/18 21:23:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\driveridentifier
[2011/04/02 21:14:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\ErrorExpert
[2010/06/21 17:03:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\eSignal
[2010/10/27 18:20:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\GlarySoft
[2002/04/25 18:05:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\InterTrust
[2011/04/02 20:09:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\IObit
[2011/04/03 01:47:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\OnlineArmor
[2003/07/15 16:03:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\Publish Providers
[2010/10/27 18:57:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\Reasonable Software House Ltd
[2003/07/15 16:03:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\SBF
[2010/05/26 12:56:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\Uniblue
[2005/07/21 19:39:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Glenda Pagan\Application Data\X10 Commander
[2011/04/06 12:09:24 | 000,000,436 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{5B5D6917-909B-4733-9654-DF5E30BA0BE5}.job
========== Purity Check ========== ========== Alternate Data Streams ========== @Alternate Data Stream - 60 bytes -> C:\Documents and Settings\All Users\Documents\.TemporaryItems:AFP_AfpInfo
@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5C321E34
@Alternate Data Stream - 12 bytes -> C:\Documents and Settings\Glenda Pagan\My Documents:{726B6F7C-E889-4EFE-8CA3-AEF4943DBD38}
@Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:723BF4A6
@Alternate Data Stream - 114 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D1B5B4F1
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
< End of report >