Results of screen317's Security Check version 0.99.10
Windows 7 (UAC is enabled)
Internet Explorer 8
``````````````````````````````
Antivirus/Firewall Check: Windows Firewall Enabled!
WMI entry may not exist for antivirus; attempting automatic update. ```````````````````````````````
Anti-malware/Other Utilities Check: Malwarebytes' Anti-Malware
Mozilla Firefox (3.6.10)
Firefox Out of Date! ````````````````````````````````
Process Check:
objlist.exe by Laurent ``````````End of Log```````````` OTL logfile created on: 4/5/2011 4:21:22 PM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Laxson\Downloads
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
4.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 77.00% Memory free
7.00 Gb Paging File | 6.00 Gb Available in Paging File | 79.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 452.91 Gb Total Space | 412.63 Gb Free Space | 91.11% Space Free | Partition Type: NTFS
Drive D: | 12.75 Gb Total Space | 2.29 Gb Free Space | 17.99% Space Free | Partition Type: NTFS
Drive E: | 338.52 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive G: | 1.88 Gb Total Space | 0.88 Gb Free Space | 46.85% Space Free | Partition Type: FAT
Computer Name: LAXSON-PC | User Name: Laxson | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ========== PRC - C:\Users\Laxson\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe (CyberLink)
PRC - c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe (CyberLink Corp.)
PRC - C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE (Hewlett-Packard)
PRC - C:\Program Files (x86)\Hewlett-Packard\Buttons & OSDs control application gen3\JAN2OSD.exe (Hewlett-Packard)
PRC - C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\HPTouchSmartSyncCalReminderApp.exe (Hewlett-Packard)
PRC - C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe (Hewlett-Packard)
PRC - C:\Program Files (x86)\Hewlett-Packard\Buttons & OSDs control application gen3\FastUserSwitching.exe (Hewlett-Packard)
PRC - C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\Keystatus.exe ()
PRC - C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe (Hewlett-Packard)
========== Modules (SafeList) ========== MOD - C:\Users\Laxson\Downloads\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll (Microsoft Corporation)
MOD - c:\Program Files (x86)\McAfee\SiteAdvisor\sahook.dll (McAfee, Inc.)
========== Win32 Services (SafeList) ========== SRV:
64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:
64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:
64bit: - (AEADIFilters) -- C:\Windows\SysNative\AEADISRV.EXE (Andrea Electronics Corporation)
SRV - (McAfee SiteAdvisor Service) -- C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe (McAfee, Inc.)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (HPSLPSVC) -- C:\Program Files (x86)\hp\Digital Imaging\bin\HPSLPSVC64.DLL (Hewlett-Packard Co.)
SRV - (CalendarSynchService) -- C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe (Hewlett-Packard)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
========== Driver Services (SafeList) ========== DRV:
64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:
64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:
64bit: - (ssrangdr) -- C:\Windows\SysNative\drivers\ssrangdr.sys (SupportSoft Inc.)
DRV:
64bit: - (hidkmdf) -- C:\Windows\SysNative\drivers\hidkmdf.sys (Windows (R) Win 7 DDK provider)
DRV:
64bit: - (NW1950) -- C:\Windows\SysNative\drivers\NW1950.sys ()
DRV:
64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:
64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:
64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:
64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:
64bit: - (StillCam) -- C:\Windows\SysNative\drivers\serscan.sys (Microsoft Corporation)
DRV:
64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
DRV:
64bit: - (atikmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV:
64bit: - (ADIHdAudAddService) -- C:\Windows\SysNative\drivers\ADIHdAud.sys (Analog Devices, Inc.)
DRV:
64bit: - (ACPIService) -- C:\Windows\SysNative\drivers\OSDACPI.SYS ()
DRV:
64bit: - (Ntfs) -- C:\Windows\SysNative\wbem\ntfs.mof ()
DRV:
64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:
64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:
64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:
64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:
64bit: - (netr28x) -- C:\Windows\SysNative\drivers\netr28x.sys (Ralink Technology, Corp.)
DRV:
64bit: - (AtiPcie) AMD PCI Express (3GIO) -- C:\Windows\SysNative\drivers\AtiPcie.sys (Advanced Micro Devices Inc.)
DRV:
64bit: - (usbfilter) -- C:\Windows\SysNative\drivers\usbfilter.sys (Advanced Micro Devices)
DRV:
64bit: - (rcmirror) -- C:\Windows\SysNative\drivers\rcmirror.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (SASDIFSV) -- C:\Users\Laxson\AppData\Local\Temp\SAS_SelfExtract\sasdifsv64.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASKUTIL) -- C:\Users\Laxson\AppData\Local\Temp\SAS_SelfExtract\saskutil64.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:
64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_US&c=94&bd=crossfire&pf=cndtIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_US&c=94&bd=crossfire&pf=cndtIE - HKLM\..\URLSearchHook: {f0e98552-8e47-4c6c-9b3a-11ab0549f94d} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll (AOL L.L.C.)
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.aol.comIE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ========== FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.2
FF - HKLM\software\mozilla\Firefox\Extensions\\
[email protected]: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/04/27 21:03:56 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files (x86)\McAfee\SiteAdvisor [2010/11/23 07:05:52 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/04/05 13:10:29 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/04/05 13:10:28 | 000,000,000 | ---D | M]
[2011/04/05 13:10:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Laxson\AppData\Roaming\Mozilla\Extensions
[2011/04/05 13:10:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Laxson\AppData\Roaming\Mozilla\Firefox\Profiles\kmssm71e.default\extensions
[2011/04/05 13:10:29 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010/11/23 07:05:52 | 000,000,000 | ---D | M] (McAfee SiteAdvisor) -- C:\PROGRAM FILES (X86)\MCAFEE\SITEADVISOR
O1 HOSTS File: ([2011/04/04 14:36:39 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:
64bit: - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (AOL Toolbar Loader) - {3ef64538-8b54-4573-b48f-4d34b0238ab2} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll (AOL L.L.C.)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - File not found
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
O3:
64bit: - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - File not found
O3 - HKLM\..\Toolbar: (AOL Toolbar) - {ba00b7b1-0351-477a-b948-23e3ee5a73d4} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll (AOL L.L.C.)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (AOL Toolbar) - {BA00B7B1-0351-477A-B948-23E3EE5A73D4} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll (AOL L.L.C.)
O4 - HKLM..\Run: [Buttons & OSDs control application gen3] c:\Program Files (x86)\Hewlett-Packard\Buttons & OSDs control application gen3\FastUserSwitching.exe (Hewlett-Packard)
O4 - HKLM..\Run: [HP KEYBOARDx] C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE (Hewlett-Packard)
O4 - HKLM..\Run: [hpsysdrv] c:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe (Hewlett-Packard)
O4 - HKLM..\Run: [StartCCC] c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [UpdatePRCShortCut] C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 2
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18:
64bit: - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O18:
64bit: - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O18:
64bit: - Protocol\Handler\symres {AA1061FE-6C41-421f-9344-69640C9732AB} - Reg Error: Key error. File not found
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\symres {AA1061FE-6C41-421f-9344-69640C9732AB} - File not found
O20:
64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O28:
64bit: - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/05/22 06:49:26 | 000,648,360 | R--- | M] () - E:\Autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2008/05/24 08:10:20 | 000,000,113 | -H-- | M] () - G:\autorun.inf -- [ FAT ]
O32 - AutoRun File - [2008/05/24 08:10:20 | 000,000,113 | ---- | M] () - G:\AUTORUN_.INF -- [ FAT ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2011/04/05 13:10:33 | 000,000,000 | ---D | C] -- C:\Users\Laxson\AppData\Roaming\Mozilla
[2011/04/05 13:10:33 | 000,000,000 | ---D | C] -- C:\Users\Laxson\AppData\Local\Mozilla
[2011/04/05 13:10:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox
[2011/04/05 13:10:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2011/04/05 12:35:46 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe
[2011/04/05 12:14:53 | 000,000,000 | ---D | C] -- C:\Users\Laxson\AppData\Local\Diagnostics
[2011/04/05 09:10:09 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2011/04/05 08:25:39 | 000,000,000 | ---D | C] -- C:\Users\Laxson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Security
[2011/04/05 08:12:57 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011/04/04 16:54:49 | 000,000,000 | ---D | C] -- C:\Users\Laxson\AppData\Roaming\HPAppData
[2011/04/04 16:15:39 | 000,000,000 | ---D | C] -- C:\Users\Laxson\Desktop\AOL Saved PFC
[2011/04/04 16:09:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security
[2011/04/04 16:01:43 | 000,000,000 | ---D | C] -- C:\Users\Laxson\AppData\Local\Adobe
[2011/04/04 15:41:02 | 000,000,000 | ---D | C] -- C:\Users\Laxson\AppData\Local\Apple
[2011/04/04 15:31:23 | 000,000,000 | ---D | C] -- C:\Users\Laxson\AppData\Local\AOL
[2011/04/04 15:27:49 | 000,000,000 | ---D | C] -- C:\Users\Laxson\AppData\Roaming\Malwarebytes
[2011/04/04 15:27:41 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2011/04/04 15:27:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011/04/04 15:27:37 | 000,024,152 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2011/04/04 15:27:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2011/04/04 14:38:06 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011/04/04 14:31:02 | 000,161,792 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011/04/04 14:31:02 | 000,136,704 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011/04/04 14:31:02 | 000,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011/04/04 14:30:59 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011/04/04 14:27:28 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/04/04 13:21:36 | 000,000,000 | ---D | C] -- C:\Users\Laxson\AppData\Roaming\SUPERAntiSpyware.com
[2011/04/04 13:21:36 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2011/03/09 09:01:47 | 001,540,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2011/03/09 09:01:47 | 001,074,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DWrite.dll
[2011/03/09 09:01:47 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2011/03/09 09:01:47 | 000,739,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d2d1.dll
[2011/03/09 09:01:45 | 001,118,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sbe.dll
[2011/03/09 09:01:45 | 000,961,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CPFilters.dll
[2011/03/09 09:01:45 | 000,723,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDec.dll
[2011/03/09 09:01:45 | 000,642,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CPFilters.dll
[2011/03/09 09:01:45 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EncDec.dll
[2011/03/09 09:01:45 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mpg2splt.ax
[2011/03/09 09:01:44 | 000,850,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sbe.dll
[2011/03/09 09:01:44 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mpg2splt.ax
[2011/03/09 09:01:43 | 003,138,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2011/03/09 09:01:43 | 002,690,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2011/03/09 09:01:43 | 001,034,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2011/03/09 09:01:42 | 001,097,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
========== Files - Modified Within 30 Days ========== [2011/04/05 15:52:43 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/04/05 14:57:37 | 000,015,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/04/05 14:57:37 | 000,015,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/04/05 13:10:29 | 000,001,925 | ---- | M] () -- C:\Users\Laxson\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/04/05 09:55:05 | 000,000,336 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForLaxson.job
[2011/04/05 09:54:47 | 3019,300,864 | -HS- | M] () -- C:\hiberfil.sys
[2011/04/04 16:33:57 | 000,732,510 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/04/04 16:33:57 | 000,628,082 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/04/04 16:33:57 | 000,108,260 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/04/04 16:15:39 | 000,000,002 | ---- | M] () -- C:\Windows\msoffice.ini
[2011/04/04 14:36:39 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011/04/04 08:47:20 | 004,313,359 | R--- | M] () -- C:\Users\Laxson\Desktop\user123.exe
[2011/04/01 21:21:50 | 001,096,811 | ---- | M] () -- C:\Users\Laxson\Documents\CoconutMacaroons#1.pdf
[2011/04/01 14:26:53 | 000,101,329 | ---- | M] () -- C:\Users\Laxson\Documents\FwExcellentPhoto
[2011/04/01 10:40:47 | 002,624,000 | ---- | M] () -- C:\Users\Laxson\Documents\The_Best_Map_Ever_of_World_War_II.pps
[2011/03/31 13:40:47 | 000,000,552 | ---- | M] () -- C:\Windows\tasks\PCDRScheduledMaintenance.job
[2011/03/29 16:12:02 | 004,325,851 | ---- | M] () -- C:\Users\Laxson\Documents\President_car.wmv
[2011/03/29 16:02:22 | 002,236,684 | ---- | M] () -- C:\Users\Laxson\Documents\GillespieUnitMarwithFeb2011news.pdf
[2011/03/29 11:32:08 | 000,019,856 | ---- | M] () -- C:\Users\Laxson\Documents\From
[2011/03/28 21:13:59 | 001,764,864 | ---- | M] () -- C:\Users\Laxson\Documents\Jessica_Cox_English-1.pps
[2011/03/28 08:04:56 | 004,154,880 | ---- | M] () -- C:\Users\Laxson\Documents\BlueTrain-Africa.pps
[2011/03/18 12:17:37 | 000,469,232 | ---- | M] () -- C:\Users\Laxson\Documents\Scan001.pdf
========== Files Created - No Company Name ========== [2011/04/05 13:10:29 | 000,001,925 | ---- | C] () -- C:\Users\Laxson\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/04/05 12:35:16 | 004,313,359 | R--- | C] () -- C:\Users\Laxson\Desktop\user123.exe
[2011/04/05 03:11:52 | 000,000,336 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleForLaxson.job
[2011/04/04 16:15:39 | 000,000,002 | ---- | C] () -- C:\Windows\msoffice.ini
[2011/04/04 14:31:02 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe
[2011/04/04 14:31:02 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011/04/04 14:31:02 | 000,089,088 | ---- | C] () -- C:\Windows\MBR.exe
[2011/04/04 14:31:02 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011/04/04 14:31:02 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011/04/01 21:21:45 | 001,096,811 | ---- | C] () -- C:\Users\Laxson\Documents\CoconutMacaroons#1.pdf
[2011/04/01 14:26:52 | 000,101,329 | ---- | C] () -- C:\Users\Laxson\Documents\FwExcellentPhoto
[2011/04/01 10:40:36 | 002,624,000 | ---- | C] () -- C:\Users\Laxson\Documents\The_Best_Map_Ever_of_World_War_II.pps
[2011/03/29 16:11:41 | 004,325,851 | ---- | C] () -- C:\Users\Laxson\Documents\President_car.wmv
[2011/03/29 16:02:10 | 002,236,684 | ---- | C] () -- C:\Users\Laxson\Documents\GillespieUnitMarwithFeb2011news.pdf
[2011/03/29 11:32:08 | 000,019,856 | ---- | C] () -- C:\Users\Laxson\Documents\From
[2011/03/28 21:13:51 | 001,764,864 | ---- | C] () -- C:\Users\Laxson\Documents\Jessica_Cox_English-1.pps
[2011/03/28 08:04:35 | 004,154,880 | ---- | C] () -- C:\Users\Laxson\Documents\BlueTrain-Africa.pps
[2011/03/18 12:17:35 | 000,469,232 | ---- | C] () -- C:\Users\Laxson\Documents\Scan001.pdf
[2010/04/27 21:02:36 | 000,023,143 | ---- | C] () -- C:\Windows\hpqins15.dat
[2010/03/26 11:38:29 | 000,000,600 | ---- | C] () -- C:\Users\Laxson\AppData\Local\PUTTY.RND
[2009/11/23 12:50:50 | 000,208,187 | ---- | C] () -- C:\Windows\hpoins40.dat.temp
[2009/11/23 12:50:49 | 000,000,918 | ---- | C] () -- C:\Windows\hpomdl40.dat.temp
[2009/11/23 12:24:03 | 000,000,335 | ---- | C] () -- C:\Windows\nsreg.dat
[2009/11/20 11:55:47 | 000,208,187 | ---- | C] () -- C:\Windows\hpoins40.dat
[2009/11/19 20:57:44 | 000,001,308 | ---- | C] () -- C:\Users\Laxson\AppData\Roaming\wklnhst.dat
[2009/11/18 10:41:19 | 000,024,644 | ---- | C] () -- C:\ProgramData\restorewl.ini
[2009/09/19 11:18:12 | 000,000,012 | ---- | C] () -- C:\ProgramData\GEN3BrightnessLevel.INI
[2009/09/07 23:02:00 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2009/07/15 20:50:42 | 000,013,312 | ---- | C] () -- C:\Windows\LPRES.DLL
[2009/07/14 01:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/13 22:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009/07/13 22:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009/07/13 20:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/13 19:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 17:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/10 17:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009/05/22 06:04:30 | 000,000,918 | ---- | C] () -- C:\Windows\hpomdl40.dat
[2008/01/14 18:47:06 | 000,099,712 | ---- | C] () -- C:\Windows\HPBroker.dll
[2005/08/26 16:28:34 | 000,143,360 | ---- | C] () -- C:\Windows\unzip.exe
[2005/08/26 16:27:58 | 000,045,056 | ---- | C] () -- C:\Windows\devenum.exe
========== LOP Check ========== [2009/11/18 10:41:19 | 000,000,000 | ---D | M] -- C:\Users\Laxson\AppData\Roaming\supportdotcom
[2010/01/05 15:14:54 | 000,000,000 | ---D | M] -- C:\Users\Laxson\AppData\Roaming\Template
[2009/11/26 12:06:37 | 000,000,000 | ---D | M] -- C:\Users\Laxson\AppData\Roaming\WinBatch
[2011/03/31 13:40:47 | 000,000,552 | ---- | M] () -- C:\Windows\Tasks\PCDRScheduledMaintenance.job
[2011/03/25 07:44:56 | 000,032,654 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ========== ========== Alternate Data Streams ========== @Alternate Data Stream - 985 bytes -> C:\Users\Laxson\Documents\[Fwd_humor].eml:OECustomProperty
@Alternate Data Stream - 961 bytes -> C:\Users\Laxson\Documents\Whymenarebecomingrepublicans(oldbutfunny).eml:OECustomProperty
@Alternate Data Stream - 961 bytes -> C:\Users\Laxson\Documents\Fw_TrainofLife..Thisisabsolutelyawesome!!!.eml:OECustomProperty
@Alternate Data Stream - 937 bytes -> C:\Users\Laxson\Documents\Fw_Youthinkyouhavecomputerproblems_.eml:OECustomProperty
@Alternate Data Stream - 933 bytes -> C:\Users\Laxson\Documents\[kaivitifriends]ALITTLELIGHTRELIEF.eml:OECustomProperty
@Alternate Data Stream - 929 bytes -> C:\Users\Laxson\Documents\Fwd_AFRENCHPOEMwrittenbyanAmericanPatriot.eml:OECustomProperty
@Alternate Data Stream - 929 bytes -> C:\Users\Laxson\Documents\Fw_Info.eml:OECustomProperty
@Alternate Data Stream - 913 bytes -> C:\Users\Laxson\Documents\Fw_SOLDIER'SFUNERAL(TEXASSTYLE]].eml:OECustomProperty
@Alternate Data Stream - 905 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_whatSenatorJohnGlennsaid.eml:OECustomProperty
@Alternate Data Stream - 905 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_THEBRICK.eml:OECustomProperty
@Alternate Data Stream - 876 bytes -> C:\Users\Laxson\Documents\Fwd_AGELESSWISDOM.eml:OECustomProperty
@Alternate Data Stream - 865 bytes -> C:\Users\Laxson\Documents\Fw_Wishingyou.....eml:OECustomProperty
@Alternate Data Stream - 864 bytes -> C:\Users\Laxson\Documents\Beforeandafterpictures(goodones).eml:OECustomProperty
@Alternate Data Stream - 861 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_CheckoutDrug.eml:OECustomProperty
@Alternate Data Stream - 837 bytes -> C:\Users\Laxson\Documents\Fw_APlotofGrass.eml:OECustomProperty
@Alternate Data Stream - 833 bytes -> C:\Users\Laxson\Documents\Fwd_Whatit'sallabout..eml:OECustomProperty
@Alternate Data Stream - 824 bytes -> C:\Users\Laxson\Documents\Fw_Thisisabsolutelyadorable.eml:OECustomProperty
@Alternate Data Stream - 820 bytes -> C:\Users\Laxson\Documents\Fwd_HAPPINESSFAIRY.eml:OECustomProperty
@Alternate Data Stream - 817 bytes -> C:\Users\Laxson\Documents\WeeklyCleaningSchedule.eml:OECustomProperty
@Alternate Data Stream - 817 bytes -> C:\Users\Laxson\Documents\Fw_GreatAnimalpix.eml:OECustomProperty
@Alternate Data Stream - 808 bytes -> C:\Users\Laxson\Documents\CherokeeWisdom...short...great!.eml:OECustomProperty
@Alternate Data Stream - 807 bytes -> C:\Users\Laxson\Documents\English.eml:OECustomProperty
@Alternate Data Stream - 805 bytes -> C:\Users\Laxson\Documents\Fw_Ilovethisone.eml:OECustomProperty
@Alternate Data Stream - 801 bytes -> C:\Users\Laxson\Documents\Fw_ReadittotheBottom.eml:OECustomProperty
@Alternate Data Stream - 773 bytes -> C:\Users\Laxson\Documents\FW_Thoughtthiswassuper.eml:OECustomProperty
@Alternate Data Stream - 773 bytes -> C:\Users\Laxson\Documents\[Fwd_Alzheimer'sTest].eml:OECustomProperty
@Alternate Data Stream - 741 bytes -> C:\Users\Laxson\Documents\Thebestdayofmylife.eml:OECustomProperty
@Alternate Data Stream - 736 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_[Bulk]Fw_TheElf.eml:OECustomProperty
@Alternate Data Stream - 736 bytes -> C:\Users\Laxson\Documents\Fwd_Friendshipbracelet.eml:OECustomProperty
@Alternate Data Stream - 721 bytes -> C:\Users\Laxson\Documents\AirportWashroom.eml:OECustomProperty
@Alternate Data Stream - 720 bytes -> C:\Users\Laxson\Documents\Fwd_Virusalert.eml:OECustomProperty
@Alternate Data Stream - 689 bytes -> C:\Users\Laxson\Documents\Partydifferences.eml:OECustomProperty
@Alternate Data Stream - 4149 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_Fw_OpticalIllusion.eml:OECustomProperty
@Alternate Data Stream - 3913 bytes -> C:\Users\Laxson\Documents\Fw_TheMediaisatitagain!fromJamesDobson.eml:OECustomProperty
@Alternate Data Stream - 3776 bytes -> C:\Users\Laxson\Documents\ProofofGlobalwarming.eml:OECustomProperty
@Alternate Data Stream - 3761 bytes -> C:\Users\Laxson\Documents\Fw_FW_INMEMORIAM.eml:OECustomProperty
@Alternate Data Stream - 3581 bytes -> C:\Users\Laxson\Documents\WorkOutandfeelbetter-Hasmusic.eml:OECustomProperty
@Alternate Data Stream - 3552 bytes -> C:\Users\Laxson\Documents\Fwd_readthisassoonasyouchecke-mail.eml:OECustomProperty
@Alternate Data Stream - 3129 bytes -> C:\Users\Laxson\Documents\Fw_AReportfromGrandpa_Grandma.eml:OECustomProperty
@Alternate Data Stream - 2657 bytes -> C:\Users\Laxson\Documents\Fw_Fwd_GrandmaFaith'sWebsite_OldAge.eml:OECustomProperty
@Alternate Data Stream - 2457 bytes -> C:\Users\Laxson\Documents\4086-Wmlrml;[eDED]download;33944955.eml:OECustomProperty
@Alternate Data Stream - 2355 bytes -> C:\Users\Laxson\Documents\Fw_OneoftheNicestE-mails.....eml:OECustomProperty
@Alternate Data Stream - 2205 bytes -> C:\Users\Laxson\Documents\Fw_WordsfromMayaAngelou.eml:OECustomProperty
@Alternate Data Stream - 2196 bytes -> C:\Users\Laxson\Documents\Theemptychair.eml:OECustomProperty
@Alternate Data Stream - 2161 bytes -> C:\Users\Laxson\Documents\Fw_JohnCleese'sLettertoAmerica.eml:OECustomProperty
@Alternate Data Stream - 1972 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_.eml:OECustomProperty
@Alternate Data Stream - 1893 bytes -> C:\Users\Laxson\Documents\Fw_ENGAGEMENTPHOTO.eml:OECustomProperty
@Alternate Data Stream - 1886 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_Somethingtothinkabout.eml:OECustomProperty
@Alternate Data Stream - 1829 bytes -> C:\Users\Laxson\Documents\TheWeatheredOldBarn.eml:OECustomProperty
@Alternate Data Stream - 1764 bytes -> C:\Users\Laxson\Documents\Fwd_FW_CHURCHCHUCKLES.eml:OECustomProperty
@Alternate Data Stream - 1757 bytes -> C:\Users\Laxson\Documents\Donotdelete(PHOTOS!)pleasescrolldownandlookatthepictures.em
l:OECustomProperty
@Alternate Data Stream - 1741 bytes -> C:\Users\Laxson\Documents\27603-Wmlrml;[eDED]download;32902765.eml:OECustomProperty
@Alternate Data Stream - 1709 bytes -> C:\Users\Laxson\Documents\Fw_Puppiesforsale-willyousendthisback__.eml:OECustomProperty
@Alternate Data Stream - 1665 bytes -> C:\Users\Laxson\Documents\Fw_FW_Amazing!.eml:OECustomProperty
@Alternate Data Stream - 1645 bytes -> C:\Users\Laxson\Documents\Fwd_FW_Hunting_.eml:OECustomProperty
@Alternate Data Stream - 1645 bytes -> C:\Users\Laxson\Documents\Fw_DenzelWashington.eml:OECustomProperty
@Alternate Data Stream - 1629 bytes -> C:\Users\Laxson\Documents\Fwd_DilemaoftheTerroristWar.eml:OECustomProperty
@Alternate Data Stream - 1617 bytes -> C:\Users\Laxson\Documents\Fw_(nosubject).eml:OECustomProperty
@Alternate Data Stream - 1613 bytes -> C:\Users\Laxson\Documents\Fw_ReactiveSneezing(amustread!).eml:OECustomProperty
@Alternate Data Stream - 1513 bytes -> C:\Users\Laxson\Documents\Fw_checkoutyourcounty_city....eml:OECustomProperty
@Alternate Data Stream - 1512 bytes -> C:\Users\Laxson\Documents\FW_SMACK.eml:OECustomProperty
@Alternate Data Stream - 1492 bytes -> C:\Users\Laxson\Documents\Fwd_FW_Questions.eml:OECustomProperty
@Alternate Data Stream - 1469 bytes -> C:\Users\Laxson\Documents\FW_OppositeofJaneFonda.eml:OECustomProperty
@Alternate Data Stream - 1468 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_birthdayparty.eml:OECustomProperty
@Alternate Data Stream - 1461 bytes -> C:\Users\Laxson\Documents\Fw_NAILINTHEFENCE.eml:OECustomProperty
@Alternate Data Stream - 1433 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_Happy4thofJuly!.......................eml:OECustomProperty
@Alternate Data Stream - 143 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_WhyMichellecamehome.eml:OECustomProperty
@Alternate Data Stream - 1428 bytes -> C:\Users\Laxson\Documents\Fwd_FW_NoSubject.eml:OECustomProperty
@Alternate Data Stream - 1381 bytes -> C:\Users\Laxson\Documents\Fw_SomethingDifferent.eml:OECustomProperty
@Alternate Data Stream - 1365 bytes -> C:\Users\Laxson\Documents\Fwd_RemarkableObituary.eml:OECustomProperty
@Alternate Data Stream - 1365 bytes -> C:\Users\Laxson\Documents\Fw_Fw_.eml:OECustomProperty
@Alternate Data Stream - 1361 bytes -> C:\Users\Laxson\Documents\Fw_SugarBabies.eml:OECustomProperty
@Alternate Data Stream - 1356 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_Absolutelyamustread.eml:OECustomProperty
@Alternate Data Stream - 1335 bytes -> C:\Users\Laxson\Documents\Fw_CreditCardFraud.eml:OECustomProperty
@Alternate Data Stream - 1333 bytes -> C:\Users\Laxson\Documents\Fw_Frommyhousetoyours.eml:OECustomProperty
@Alternate Data Stream - 1329 bytes -> C:\Users\Laxson\Documents\FW_G.R.I.T.S.....GirlsRaisedintheSouth.eml:OECustomProperty
@Alternate Data Stream - 1297 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_Fw_FootprintsAnewversion_^..^_].eml:OECustomProperty
@Alternate Data Stream - 1293 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_EDITORIAL.eml:OECustomProperty
@Alternate Data Stream - 1265 bytes -> C:\Users\Laxson\Documents\Fwd_ThisissuchasweetstorythatIhavetoshare!.eml:OECustomProperty
@Alternate Data Stream - 1258 bytes -> C:\Users\Laxson\Documents\4Candles.eml:OECustomProperty
@Alternate Data Stream - 1205 bytes -> C:\Users\Laxson\Documents\FW_TheBrick.eml:OECustomProperty
@Alternate Data Stream - 1181 bytes -> C:\Users\Laxson\Documents\Fw_KidsintheFifties.eml:OECustomProperty
@Alternate Data Stream - 1137 bytes -> C:\Users\Laxson\Documents\ATT00121.eml:OECustomProperty
@Alternate Data Stream - 1117 bytes -> C:\Users\Laxson\Documents\oisreallyresponsible_(NewOrleans)ByRev.JesseLeePeterson].eml:OECustomProperty
@Alternate Data Stream - 1117 bytes -> C:\Users\Laxson\Documents\Fw_[Fwd_Fw_Friends....Smilesarein!!!!Enjoy!!!!].eml:OECustomProperty
@Alternate Data Stream - 1049 bytes -> C:\Users\Laxson\Documents\Re_[kaivitifriends]FORALLTHEMUMSANDGRANDMUMSOUTTHERE.eml:OECustomProperty
@Alternate Data Stream - 1049 bytes -> C:\Users\Laxson\Documents\Fw_TheLord'sPrayer.eml:OECustomProperty
@Alternate Data Stream - 1037 bytes -> C:\Users\Laxson\Documents\Fw_PrayerRequest.eml:OECustomProperty
@Alternate Data Stream - 1033 bytes -> C:\Users\Laxson\Documents\Fw_John3_16,AbsolutelyBeautiful].eml:OECustomProperty
@Alternate Data Stream - 1009 bytes -> C:\Users\Laxson\Documents\Fwd_Fw_1905.eml:OECustomProperty
< End of report >
OTL Extras logfile created on: 4/5/2011 4:21:22 PM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Laxson\Downloads
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
4.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 77.00% Memory free
7.00 Gb Paging File | 6.00 Gb Available in Paging File | 79.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 452.91 Gb Total Space | 412.63 Gb Free Space | 91.11% Space Free | Partition Type: NTFS
Drive D: | 12.75 Gb Total Space | 2.29 Gb Free Space | 17.99% Space Free | Partition Type: NTFS
Drive E: | 338.52 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive G: | 1.88 Gb Total Space | 0.88 Gb Free Space | 46.85% Space Free | Partition Type: FAT
Computer Name: LAXSON-PC | User Name: Laxson | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l File not found
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== System Restore Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}" = McAfee SiteAdvisor
"{48C0866E-57EB-444C-8371-8E4321066BC3}" = Network64
"{6ACE7F46-FACE-4125-AE86-672F4F2A6A28}" = Virtual Earth 3D (Beta)
"{7371196E-FA5B-43AE-1AE2-875E98869B47}" = ccc-utility64
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{88882852-5C7D-A48B-15F3-8D13CABDA7A3}" = ATI Catalyst Install Manager
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007
"{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
"{B2DAB009-8236-48A0-AD7F-E940F5AB1578}" = HP Photosmart Plus B209a-m All-in-One Driver Software 14.0 Rel. 6
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{BE930E38-7BB3-45B6-85B2-5251F374F844}" = 64 Bit HP CIO Components Installer
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"ATT-RC" = ATT-RC Self Support Tool
"CCleaner" = CCleaner
"HP Imaging Device Functions" = HP Imaging Device Functions 14.0
"HP Print Projects" = HP Print Projects 1.0
"HP Smart Web Printing" = HP Smart Web Printing 4.60
"HP Solution Center & Imaging Support Tools" = HP Solution Center 14.0
"HPExtendedCapabilities" = HP Customer Participation Program 14.0
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"PC-Doctor for Windows" = Hardware Diagnostic Tools
"Shop for HP Supplies" = Shop for HP Supplies
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP TouchSmart Webcam
"{0284181F-355D-C4E1-B483-41992C48490E}" = CCC Help German
"{04D66C1E-E5E2-483C-8715-916C42703924}" = HP TouchSmart Calendar
"{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{07FB17D8-7DB6-4F06-80C4-8BE1719CB6A1}" = hpWLPGInstaller
"{07FF3AA8-0BC6-8861-F27F-2ED442F5C03E}" = CCC Help English
"{13A5A060-F2EF-449C-AD0E-293C459271FF}" = HP TouchSmart Netflix
"{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}" = DeviceDiscovery
"{14A4957E-46DB-4821-528D-8381B4376FE2}" = CCC Help Korean
"{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}" = HPProductAssistant
"{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works
"{1AFC20E3-35B0-4916-9809-F6C46A92A695}" = HP TouchSmart Weather
"{1F959C31-3C22-404B-8284-534A416119B0}" = Buttons & OSDs control application gen3
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe
"{22139F5D-9405-455A-BDEB-658B1A4E4861}" = Catalyst Control Center - Branding
"{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library
"{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox
"{297C2073-4ED9-4AD7-B4DA-EA2565568379}" = HP TouchSmart Link
"{2DBE7159-9081-4DDB-B8DB-31692A41008F}" = HP TouchSmart Notes
"{2E4BEAC4-FB73-9657-A5B2-42F508AF98FE}" = CCC Help Finnish
"{2FB9EA69-51D4-4913-9AD5-762C034DE811}" = Status
"{3023EBDA-BF1B-4831-B347-E5018555F26E}" = HP TouchSmart Movie Themes
"{36B90A24-CE03-79C6-3DEE-1EFEE456377F}" = Catalyst Control Center Graphics Full Existing
"{3898934B-05AE-41CD-96BE-70DA9BFBCE1F}" = Microsoft XNA Framework Redistributable 3.0
"{3B18BAAA-1734-8CA1-1A04-B68A06A1F9C9}" = Catalyst Control Center Graphics Full New
"{3E450CF1-F8C4-C8D6-29D1-87AD090E8F2A}" = Catalyst Control Center InstallProxy
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"{424CECC6-CEB1-4A5F-9A42-ADE64F035DEB}" = HP TouchSmart
"{4377068C-A88F-53F7-EDAF-DBD7990AEB93}" = CCC Help Swedish
"{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = PowerRecover
"{4907BDCE-4DF2-350C-24B2-9C509F004F1D}" = CCC Help Chinese Traditional
"{4EDD5F10-3961-48C2-ACD9-63D5C125EA8F}" = HP TouchSmart Clock
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{5B0D4B33-FB4C-CB95-38D3-66F4B942661E}" = CCC Help Japanese
"{5DCF0E4B-F8EA-4229-A0BD-5CA6D4AFB749}" = SolutionCenter
"{628690B9-A523-B37A-E001-D8E4581D573D}" = Catalyst Control Center Localization All
"{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6AC35F19-C3DF-6455-C9E2-1E77BA42D3BC}" = Catalyst Control Center Graphics Previews Vista
"{6D1A44ED-3D15-9BB3-43AE-91A077AE9212}" = CCC Help Chinese Standard
"{717CC8F7-D8EF-4339-AC51-A501DC9EC7B6}" = HP TouchSmart Tutorials
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74DC0593-6BC6-4001-AD5F-D810AFB68D86}" = HP Update
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{82809116-D1EE-443C-AE31-F19E709DDF7A}" = AMD USB Filter Driver
"{83907548-56BB-D892-1CAC-2F5EC0939B37}" = CCC Help Czech
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8ABB6A99-E2D5-47E4-905A-2FD4657D235E}" = HP TouchSmart RSS
"{8EE94FD8-5F52-4463-A340-185D16328158}" = WebReg
"{8FF6F5CA-4E30-4E3B-B951-204CAAA2716A}" = SmartWebPrinting
"{8FF90DB8-6DED-44A3-B182-244FEC09012F}" = Microsoft Touch Pack for Windows 7
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0409-1000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0116-0409-1000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{9062CED6-AECC-E6C6-E6A0-A654CE167554}" = CCC Help Portuguese
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{97E32194-C626-92E1-9AB9-64AA00CC7380}" = CCC Help Russian
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A58E9FA7-23E7-4D87-AD5B-E8331821B84B}" = HP TouchSmart Canvas
"{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}" = HPSSupply
"{AE566093-655C-416B-8D25-4B4D85887978}" = HP TouchSmart RecipeBox
"{AE8C4181-26D7-4E92-A6EF-81BB2A8E0230}" = HP TouchSmart Twitter
"{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}" = HP TouchSmart Music/Photo/Video
"{B53E61D7-7C80-40DF-82D2-CF5390D6D20A}" = HP Advisor
"{B60DCA15-56A3-4D2D-8747-22CF7D7B588B}" = HP Support Assistant
"{B8AC1A89-FFD1-4F97-8051-E505A160F562}" = HP Odometer
"{B9A03B7B-E0FF-4FB3-BA83-762E58A1B0AA}" = HP Support Information
"{BB3447F6-9553-4AA9-960E-0DB5310C5779}" = GPBaseService2
"{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations
"{BE9CE924-DD9E-3A0D-EA16-9931D21FB3F5}" = CCC Help Turkish
"{C285CFAB-889A-47C9-2959-A9B71B5E0BFB}" = CCC Help Hungarian
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"{C611CF88-969D-43E6-A877-D6D6439DD081}" = HP Remote Solution
"{C75CDBA2-3C86-481e-BD10-BDDA758F9DFF}" = hpPrintProjects
"{C88256B0-1182-C1B2-FE22-C1BAC6BB0E83}" = CCC Help Norwegian
"{CA1A637B-5BFD-A325-BC4B-15D3D10B861C}" = Catalyst Control Center Core Implementation
"{CACBE764-2E09-5D88-E496-78F7B1E9FFAE}" = CCC Help Greek
"{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"{CD31E63D-47FD-491C-8117-CF201D0AFAB5}" = TrayApp
"{CDC8DBA8-37FF-4C82-84FF-DEBEDF93BEC4}" = PS_AIO_06_B209a-m_SW_Min
"{CEF9A199-8652-B2A0-8C82-5491CB57AC3A}" = CCC Help French
"{D360FA88-17C8-4F14-B67F-13AAF9607B12}" = MarketResearch
"{D781BE32-516F-957C-C080-8365111CAC18}" = CCC Help Danish
"{DC2841DC-5ADC-8FDD-C3FD-5FD223426F38}" = CCC Help Polish
"{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"{DFD6EBE3-F0DA-4E24-9202-37AF8D20888B}" = HP TouchSmart Browser
"{E517094C-06B6-419F-8FFD-EF4F57972130}" = QuickTransfer
"{E617721F-B66C-4D5A-AA2A-B2D60820CDC3}" = B209a-m
"{E9E34215-82EF-4909-BE2F-F581F0DC9062}" = DirectX for Managed Code Update (Summer 2004)
"{EB04773A-005D-3A2E-43C2-CEDE2645F1C3}" = ccc-core-static
"{EE6097DD-05F4-4178-9719-D3170BF098E8}" = Apple Application Support
"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
"{F1F24DF6-37BB-9905-9EB4-5C1E4D32B664}" = Catalyst Control Center Graphics Light
"{F20A4D6F-88ED-32BA-0C6D-BD6A692EFF29}" = CCC Help Italian
"{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}" = HP Setup
"{F5AC7E52-BDF6-9948-73CD-BCE3C23632F3}" = CCC Help Dutch
"{F6FA1416-ABCF-3559-1ACA-CEAADD6AF3E8}" = CCC Help Thai
"{F86145F7-BF40-33F0-F07B-D10BE04F98AA}" = CCC Help Spanish
"{FA0FF682-CC70-4C57-93CD-E276F3E7537E}" = BufferChm
"AOL Emergency Connect Utility 1.0" = Uninstall AOL Emergency Connect Utility 1.0
"AOL Toolbar" = AOL Toolbar
"ATT-RC" = ATT-RC Self Support Tool
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"HP Keyboard_is1" = HP Desktop Keyboard
"HP Photo Creations" = HP Photo Creations
"HP Remote Solution" = HP Remote Solution
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP TouchSmart Webcam
"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe
"InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}" = HP TouchSmart Movie Themes
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}" = HP TouchSmart Music/Photo/Video
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mozilla Firefox (3.6.10)" = Mozilla Firefox (3.6.10)
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"ViewpointMediaPlayer" = Viewpoint Media Player
"Yahoo! Companion" = Yahoo! Toolbar
========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"HuluDesktop" = Hulu Desktop
========== Last 10 Event Log Errors ========== [ Application Events ]
Error - 7/11/2010 7:14:44 AM | Computer Name = Laxson-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file. .
Error - 7/11/2010 7:14:44 AM | Computer Name = Laxson-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file. .
Error - 7/11/2010 7:14:48 AM | Computer Name = Laxson-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file. .
Error - 7/11/2010 7:14:48 AM | Computer Name = Laxson-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file. .
Error - 7/11/2010 7:14:48 AM | Computer Name = Laxson-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file. .
Error - 7/11/2010 7:14:48 AM | Computer Name = Laxson-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file. .
Error - 7/25/2010 1:59:34 PM | Computer Name = Laxson-PC | Source = MsiInstaller | ID = 11704
Description =
Error - 9/27/2010 11:15:14 AM | Computer Name = Laxson-PC | Source = Application Hang | ID