OTL logfile created on: 2/11/2012 2:59:43 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Tara\Music\Downloads
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.75 Gb Total Physical Memory | 1.51 Gb Available Physical Memory | 40.40% Memory free
7.50 Gb Paging File | 4.24 Gb Available in Paging File | 56.54% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 686.46 Gb Total Space | 424.70 Gb Free Space | 61.87% Space Free | Partition Type: NTFS
Drive D: | 12.08 Gb Total Space | 1.48 Gb Free Space | 12.22% Space Free | Partition Type: NTFS
Drive E: | 931.51 Gb Total Space | 437.22 Gb Free Space | 46.94% Space Free | Partition Type: NTFS
Computer Name: TARA-HP | User Name: Tara | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ========== PRC - File not found --
PRC - [2012/02/11 14:58:56 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Tara\Music\Downloads\OTL(1).exe
PRC - [2012/02/02 02:44:30 | 003,329,824 | ---- | M] (Akamai Technologies, Inc) -- C:\Users\Tara\AppData\Local\Akamai\netsession_win.exe
PRC - [2012/02/01 05:39:31 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2011/11/28 13:01:24 | 003,744,552 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011/10/18 19:39:44 | 000,179,152 | ---- | M] (Zecter Inc.) -- C:\Program Files (x86)\Zecter\ZumoCast\ZumoCast.exe
PRC - [2011/10/18 19:39:42 | 000,237,544 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\gst-thumbnailer.exe
PRC - [2011/08/16 22:11:52 | 013,876,224 | ---- | M] (Atomix Productions) -- C:\Program Files (x86)\VirtualDJ\virtualdj_home.exe
PRC - [2011/08/08 13:47:08 | 001,242,448 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Steam\Steam.exe
PRC - [2011/01/20 14:37:59 | 013,623,048 | ---- | M] (AVM Software Inc.) -- C:\Program Files (x86)\Paltalk Messenger\paltalk.exe
PRC - [2010/10/29 15:06:08 | 005,915,480 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
PRC - [2010/01/18 13:21:08 | 000,568,888 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
PRC - [2009/10/14 13:36:56 | 002,793,304 | ---- | M] () -- C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
PRC - [2009/10/14 13:34:18 | 000,560,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LQCVFX\COCIManager.exe
PRC - [2008/11/20 13:47:28 | 000,062,768 | ---- | M] (Hewlett-Packard) -- C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
========== Modules (No Company Name) ========== MOD - [2012/02/11 08:56:02 | 000,160,256 | ---- | M] () -- C:\Users\Tara\AppData\Local\Temp\Zumo
LocalGateway.dll5325527088882608635.lib
MOD - [2012/02/11 08:56:00 | 000,296,448 | ---- | M] () -- C:\Users\Tara\AppData\Local\Temp\WindowsFolderWatcher.
dll4915110326119188997.lib
MOD - [2012/02/11 08:55:35 | 000,379,904 | ---- | M] () -- C:\Users\Tara\AppData\Local\Temp\libsqlitejdbc-3747967753939171105.lib
MOD - [2012/02/11 08:55:23 | 000,200,704 | ---- | M] () -- C:\Users\Tara\AppData\Local\Temp\WindowsAPI.dll8787231156318467697.lib
MOD - [2012/02/08 20:31:25 | 014,415,144 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\libcef.dll
MOD - [2012/02/08 20:31:22 | 000,853,800 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\chromehtml.dll
MOD - [2012/02/08 20:31:22 | 000,155,432 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avformat-52.dll
MOD - [2012/02/08 20:31:22 | 000,091,432 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avutil-50.dll
MOD - [2012/02/08 20:31:21 | 000,914,216 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avcodec-52.dll
MOD - [2012/02/01 05:39:30 | 001,911,768 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2011/11/20 12:08:02 | 008,527,008 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
MOD - [2011/10/18 19:39:44 | 000,150,528 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstmpegdemux.dll
MOD - [2011/10/18 19:39:44 | 000,149,504 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstqtdemux.dll
MOD - [2011/10/18 19:39:44 | 000,126,976 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstogg.dll
MOD - [2011/10/18 19:39:44 | 000,114,688 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstqtmux.dll
MOD - [2011/10/18 19:39:44 | 000,071,680 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstvideoscale.dll
MOD - [2011/10/18 19:39:44 | 000,059,904 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstvideobox.dll
MOD - [2011/10/18 19:39:44 | 000,059,904 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgsttypefindfunctions.dll
MOD - [2011/10/18 19:39:44 | 000,054,784 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstsmpte.dll
MOD - [2011/10/18 19:39:44 | 000,053,248 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstvorbis.dll
MOD - [2011/10/18 19:39:44 | 000,051,712 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstsubparse.dll
MOD - [2011/10/18 19:39:44 | 000,050,688 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstwavpack.dll
MOD - [2011/10/18 19:39:44 | 000,047,616 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstmpegaudioparse.dll
MOD - [2011/10/18 19:39:44 | 000,041,984 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstwavparse.dll
MOD - [2011/10/18 19:39:44 | 000,039,424 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstmpegtsmux.dll
MOD - [2011/10/18 19:39:44 | 000,035,840 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstselector.dll
MOD - [2011/10/18 19:39:44 | 000,035,328 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstreplaygain.dll
MOD - [2011/10/18 19:39:44 | 000,034,304 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstvolume.dll
MOD - [2011/10/18 19:39:44 | 000,032,768 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstvideocrop.dll
MOD - [2011/10/18 19:39:44 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstpng.dll
MOD - [2011/10/18 19:39:44 | 000,025,600 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstmpegvideoparse.dll
MOD - [2011/10/18 19:39:44 | 000,025,088 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstmultipart.dll
MOD - [2011/10/18 19:39:44 | 000,024,576 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstvideorate.dll
MOD - [2011/10/18 19:39:44 | 000,020,480 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstmultifile.dll
MOD - [2011/10/18 19:39:44 | 000,015,360 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstmulaw.dll
MOD - [2011/10/18 19:39:44 | 000,013,312 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgsty4menc.dll
MOD - [2011/10/18 19:39:44 | 000,011,264 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libshift.dll
MOD - [2011/10/18 19:39:42 | 002,009,600 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstfluh264dec.dll
MOD - [2011/10/18 19:39:42 | 001,694,208 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstfluaacdec.dll
MOD - [2011/10/18 19:39:42 | 001,563,136 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstflump3enc.dll
MOD - [2011/10/18 19:39:42 | 001,520,128 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libvorbisenc-2.dll
MOD - [2011/10/18 19:39:42 | 001,396,736 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libxml2-2.dll
MOD - [2011/10/18 19:39:42 | 001,376,256 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstflump3dec.dll
MOD - [2011/10/18 19:39:42 | 000,682,496 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgstreamer-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,563,712 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\liborc-0.4-0.dll
MOD - [2011/10/18 19:39:42 | 000,531,968 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstflumpeg4video.dll
MOD - [2011/10/18 19:39:42 | 000,363,008 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstflumpeg2video.dll
MOD - [2011/10/18 19:39:42 | 000,331,264 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libFLAC-8.dll
MOD - [2011/10/18 19:39:42 | 000,276,992 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libjpeg-8.dll
MOD - [2011/10/18 19:39:42 | 000,248,352 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libopencore-amrnb.0.1.1.dll
MOD - [2011/10/18 19:39:42 | 000,237,544 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\gst-thumbnailer.exe
MOD - [2011/10/18 19:39:42 | 000,199,168 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgstbase-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,196,608 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libwavpack-1.dll
MOD - [2011/10/18 19:39:42 | 000,190,976 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libpng14-14.dll
MOD - [2011/10/18 19:39:42 | 000,187,904 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstffmpegcolorspace.dll
MOD - [2011/10/18 19:39:42 | 000,179,712 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstcoreelements.dll
MOD - [2011/10/18 19:39:42 | 000,163,328 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstmatroska.dll
MOD - [2011/10/18 19:39:42 | 000,162,304 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libvorbis-0.dll
MOD - [2011/10/18 19:39:42 | 000,126,976 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgstcontroller-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,125,440 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgsttag-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,123,947 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libopencore-amrwb.0.1.1.dll
MOD - [2011/10/18 19:39:42 | 000,122,880 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstfluasfdemux.dll
MOD - [2011/10/18 19:39:42 | 000,122,368 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstavi.dll
MOD - [2011/10/18 19:39:42 | 000,119,296 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstflumpegdemux.dll
MOD - [2011/10/18 19:39:42 | 000,108,544 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgstaudio-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,091,136 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstdshowdecwrapper.dll
MOD - [2011/10/18 19:39:42 | 000,088,064 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstflummssrc.dll
MOD - [2011/10/18 19:39:42 | 000,085,504 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\z.dll
MOD - [2011/10/18 19:39:42 | 000,083,968 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstdecodebin2.dll
MOD - [2011/10/18 19:39:42 | 000,079,872 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgstpbutils-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,078,336 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstaudioconvert.dll
MOD - [2011/10/18 19:39:42 | 000,074,240 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstflv.dll
MOD - [2011/10/18 19:39:42 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstdshowsrcwrapper.dll
MOD - [2011/10/18 19:39:42 | 000,070,144 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgstrtp-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,067,584 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstflac.dll
MOD - [2011/10/18 19:39:42 | 000,061,952 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstjpeg.dll
MOD - [2011/10/18 19:39:42 | 000,053,760 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgstinterfaces-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,050,688 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstaudioresample.dll
MOD - [2011/10/18 19:39:42 | 000,048,640 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstalpha.dll
MOD - [2011/10/18 19:39:42 | 000,041,984 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgstriff-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,038,912 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstaiff.dll
MOD - [2011/10/18 19:39:42 | 000,038,400 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgstapp-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,037,888 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstgio.dll
MOD - [2011/10/18 19:39:42 | 000,037,376 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgstvideo-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstflumch264enc.dll
MOD - [2011/10/18 19:39:42 | 000,035,840 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstinterleave.dll
MOD - [2011/10/18 19:39:42 | 000,034,304 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstid3tag.dll
MOD - [2011/10/18 19:39:42 | 000,033,280 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstflumcaacenc.dll
MOD - [2011/10/18 19:39:42 | 000,032,256 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstid3demux.dll
MOD - [2011/10/18 19:39:42 | 000,030,208 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstadder.dll
MOD - [2011/10/18 19:39:42 | 000,029,696 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstgdp.dll
MOD - [2011/10/18 19:39:42 | 000,029,184 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstautodetect.dll
MOD - [2011/10/18 19:39:42 | 000,029,184 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstautoconvert.dll
MOD - [2011/10/18 19:39:42 | 000,026,624 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstequalizer.dll
MOD - [2011/10/18 19:39:42 | 000,023,552 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libogg-0.dll
MOD - [2011/10/18 19:39:42 | 000,020,480 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstamrnb.dll
MOD - [2011/10/18 19:39:42 | 000,019,968 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstaudiorate.dll
MOD - [2011/10/18 19:39:42 | 000,019,456 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstlevel.dll
MOD - [2011/10/18 19:39:42 | 000,019,456 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstauparse.dll
MOD - [2011/10/18 19:39:42 | 000,018,944 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\libgstdataprotocol-0.10.dll
MOD - [2011/10/18 19:39:42 | 000,018,944 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstalaw.dll
MOD - [2011/10/18 19:39:42 | 000,017,920 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstalphacolor.dll
MOD - [2011/10/18 19:39:42 | 000,016,896 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstcutter.dll
MOD - [2011/10/18 19:39:42 | 000,015,360 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstapetag.dll
MOD - [2011/10/18 19:39:42 | 000,014,848 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstamrwbdec.dll
MOD - [2011/10/18 19:39:42 | 000,014,848 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstadpcmdec.dll
MOD - [2011/10/18 19:39:42 | 000,011,776 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstcoreindexers.dll
MOD - [2011/10/18 19:39:42 | 000,008,192 | ---- | M] () -- C:\Program Files (x86)\Zecter\ZumoCast\bin\plugins\libgstapp.dll
MOD - [2011/05/26 12:42:00 | 000,067,872 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/01/20 14:38:03 | 000,048,368 | ---- | M] () -- C:\Program Files (x86)\Paltalk Messenger\ctrlkey.dll
MOD - [2010/10/29 15:02:38 | 000,751,616 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\vpxmd.dll
MOD - [2010/10/29 15:01:30 | 000,027,472 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\SDL.dll
MOD - [2010/01/18 13:21:08 | 000,568,888 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
MOD - [2009/10/14 13:36:56 | 002,793,304 | ---- | M] () -- C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
MOD - [2009/10/14 13:36:34 | 000,181,592 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LvApi11\LvApi11.dll
MOD - [2009/10/14 13:34:18 | 000,560,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LQCVFX\COCIManager.exe
MOD - [2009/10/14 10:08:36 | 000,670,720 | ---- | M] () -- C:\Program Files (x86)\Paltalk Messenger\h264lib_ipp4.dll
MOD - [2009/04/22 16:53:56 | 000,969,040 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtNetwork4.dll
MOD - [2009/04/12 15:10:58 | 000,102,400 | ---- | M] () -- C:\Users\Tara\My Documents\VirtualDJ\Plugins\VideoTransition\default.dll
MOD - [2009/04/09 18:04:56 | 002,141,008 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtCore4.dll
MOD - [2009/03/03 17:18:08 | 000,138,064 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\plugins\imageformats\qjpeg4.dll
MOD - [2009/03/03 17:18:06 | 000,035,152 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\plugins\imageformats\qico4.dll
MOD - [2009/03/03 17:18:06 | 000,029,008 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\plugins\imageformats\qgif4.dll
MOD - [2009/03/03 17:17:46 | 011,311,952 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtWebKit4.dll
MOD - [2009/03/03 17:17:46 | 000,363,856 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtXml4.dll
MOD - [2009/03/03 17:17:44 | 000,200,016 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtSql4.dll
MOD - [2009/03/03 17:17:40 | 000,475,472 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtOpenGL4.dll
MOD - [2009/03/03 17:17:38 | 007,704,400 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtGui4.dll
MOD - [2009/03/03 17:17:32 | 000,291,664 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\phonon4.dll
MOD - [2007/10/04 16:37:26 | 000,102,400 | ---- | M] () -- C:\Users\Tara\My Documents\VirtualDJ\Plugins\SoundEffect\brake.dll
MOD - [2007/10/04 16:35:40 | 000,102,400 | ---- | M] () -- C:\Users\Tara\My Documents\VirtualDJ\Plugins\SoundEffect\backspin.dll
MOD - [2007/01/02 21:34:32 | 000,098,304 | ---- | M] () -- C:\Users\Tara\My Documents\VirtualDJ\Plugins\SoundEffect\flanger.dll
MOD - [2006/08/07 10:11:56 | 000,557,056 | ---- | M] () -- C:\Users\Tara\My Documents\VirtualDJ\Plugins\SoundEffect\BeatGrid.dll
========== Win32 Services (SafeList) ========== SRV:
64bit: - [2012/01/18 20:40:07 | 001,038,088 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:
64bit: - [2011/11/28 13:01:23 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:
64bit: - [2011/08/11 18:38:04 | 000,140,672 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE -- (!SASCORE)
SRV:
64bit: - [2010/09/22 17:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:
64bit: - [2010/05/11 10:16:12 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:
64bit: - [2009/10/07 01:47:10 | 000,191,000 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe -- (LVPrcS64)
SRV - [2012/02/10 15:23:02 | 003,340,064 | ---- | M] () [Auto | Running] -- c:\program files (x86)\common files\akamai/netsession_win_7de0ed9.dll -- (Akamai)
SRV - [2012/01/18 20:39:58 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011/09/09 06:12:15 | 000,411,432 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2011/09/07 18:14:06 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2011/08/19 09:26:50 | 000,450,848 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe -- (UMVPFSrv)
SRV - [2011/06/06 11:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/06/06 11:36:00 | 004,005,936 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWow64\GameMon.des -- (npggsvc)
SRV - [2011/01/27 10:51:05 | 002,253,688 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2011/01/19 06:47:16 | 000,186,760 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Photodex\ProShowGold\scsiaccess.exe -- (ScsiAccess)
SRV - [2010/09/14 04:45:56 | 000,219,496 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2010/09/14 04:45:44 | 000,508,264 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2010/06/12 21:06:08 | 000,400,368 | ---- | M] (CinemaNow, Inc.) [Auto | Running] -- C:\Program Files (x86)\CinemaNow\CinemaNow Media Manager\CinemaNowSvc.exe -- (CinemaNow Service)
SRV - [2010/04/16 15:10:58 | 000,036,864 | ---- | M] (Realtek) [Auto | Running] -- C:\Program Files (x86)\IOGEAR\11n USB Wireless LAN Utility\RtlService.exe -- (Realtek11nSU)
SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/01/29 23:40:16 | 001,043,584 | ---- | M] (Hewlett-Packard Co.) [Auto | Running] -- C:\Program Files (x86)\Hp\Digital Imaging\bin\HPSLPSVC64.DLL -- (HPSLPSVC)
SRV - [2010/01/15 07:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService)
SRV - [2009/10/14 18:53:20 | 000,635,416 | ---- | M] (PDF Complete Inc) [Auto | Running] -- C:\Program Files (x86)\PDF Complete\pdfsvc.exe -- (pdfcDispatcher)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
========== Driver Services (SafeList) ========== DRV:
64bit: - [2011/11/28 12:54:06 | 000,591,192 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:
64bit: - [2011/11/28 12:53:58 | 000,304,472 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:
64bit: - [2011/11/28 12:52:22 | 000,042,328 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr.sys -- (aswRdr)
DRV:
64bit: - [2011/11/28 12:52:20 | 000,058,712 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:
64bit: - [2011/11/28 12:52:11 | 000,066,904 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:
64bit: - [2011/11/28 12:51:53 | 000,024,408 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:
64bit: - [2011/08/19 09:27:30 | 004,869,024 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvuvc64.sys -- (LVUVC64) Logitech Webcam 500(UVC)
DRV:
64bit: - [2011/08/19 09:27:30 | 000,351,136 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:
64bit: - [2011/07/22 11:26:56 | 000,014,928 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys -- (SASDIFSV)
DRV:
64bit: - [2011/07/12 16:55:18 | 000,012,368 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\saskutil64.sys -- (SASKUTIL)
DRV:
64bit: - [2011/01/14 07:56:27 | 000,353,296 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\Windows\SysNative\drivers\klif.sys -- (KLIF)
DRV:
64bit: - [2010/09/22 23:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:
64bit: - [2010/09/14 04:45:52 | 000,022,376 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol)
DRV:
64bit: - [2010/09/14 04:45:50 | 000,025,960 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir)
DRV:
64bit: - [2010/09/14 04:45:48 | 000,268,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay)
DRV:
64bit: - [2010/09/14 04:45:44 | 000,760,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs)
DRV:
64bit: - [2010/05/11 10:46:18 | 006,790,656 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:
64bit: - [2010/05/11 09:24:20 | 000,221,184 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:
64bit: - [2010/03/10 10:33:52 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie64.sys -- (AtiPcie) AMD PCI Express (3GIO)
DRV:
64bit: - [2010/03/09 15:32:58 | 000,687,136 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rtl8192su.sys -- (RTL8192su)
DRV:
64bit: - [2010/03/04 09:43:00 | 000,346,144 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:
64bit: - [2010/02/05 23:04:06 | 000,028,728 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:
64bit: - [2010/02/05 23:04:04 | 000,070,712 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:
64bit: - [2009/12/22 04:26:36 | 000,038,456 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:
64bit: - [2009/12/18 23:33:34 | 000,852,256 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netr28x.sys -- (netr28x)
DRV:
64bit: - [2009/10/07 01:45:50 | 000,030,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2Mon)
DRV:
64bit: - [2009/10/07 01:45:50 | 000,030,232 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2M64)
DRV:
64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:
64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:
64bit: - [2009/07/13 20:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:
64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:
64bit: - [2009/07/13 19:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:
64bit: - [2009/07/13 19:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam)
DRV:
64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:
64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:
64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:
64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:
64bit: - [2009/05/18 12:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:
64bit: - [2008/06/27 07:51:10 | 000,088,632 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\adfs.sys -- (adfs)
DRV - [2012/02/02 17:50:43 | 000,004,774 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\npptNT2.sys -- (NPPTNT2)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:
64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://g.msn.com/HPDSK/1IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://g.msn.com/HPDSK/1 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = B6 ED 96 B5 62 DD CC 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;127.0.0.1:9421;
========== FireFox ========== FF - prefs.js..browser.search.defaultthis.en
gineName: "PageRage Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "
http://search.conduit.com/ResultsExt.aspx?ctid=CT2418376&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.startup.homepage: "
www.facebook.com"
FF - prefs.js..extensions.enabledItems: *Blocked Russian URL*:9.0.0.736
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..keyword.URL: "
http://www.startnow.com/s/?src=addrbar&provider=Bing&provider_code=Z082&partner_id=249&product_id=628&affiliate_id=&channel=3_18&toolbar_id=200&toolbar_version=2.0&install_country=
US&install_date=20110718&user_guid=99A1C3327060408EBF4A42BC2183EADF&machine_id=f4fe9f64372f0e17747d32c0e7c7da9d&browser=FF&os=win&os_version=6.1-x64-SP0&q="
FF:
64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@checkpoint.com/FFApi: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@photodex.com/PhotodexPresenter: C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll ( )
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18: C:\Program Files (x86)\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18: C:\Program Files (x86)\Veetle\Player\npvlc.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@virtools.com/3DviaPlayer: C:\Program Files (x86)\Virtools\3D Life Player\npvirtools.dll (Dassault Systčmes)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Tara\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Tara\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\PROGRAM FILES\CHECKPOINT\ZAFORCEFIELD\TRUSTCHECKER
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\
[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2011/12/30 15:04:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/02/07 07:52:22 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/10/13 13:38:34 | 000,000,000 | ---D | M]
[2011/01/08 16:13:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Tara\AppData\Roaming\Mozilla\Extensions
[2011/12/30 15:02:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Tara\AppData\Roaming\Mozilla\Firefox\Profiles\k5dajkdz.default\extensions
[2011/04/23 16:40:07 | 000,000,000 | ---D | M] (Battlefield Heroes Updater) -- C:\Users\Tara\AppData\Roaming\Mozilla\Firefox\Profiles\k5dajkdz.default\extensions\
[email protected][2011/06/29 17:28:57 | 000,000,000 | ---D | M] (Battlefield Play4Free) -- C:\Users\Tara\AppData\Roaming\Mozilla\Firefox\Profiles\k5dajkdz.default\extensions\
[email protected][2011/06/22 13:13:00 | 000,000,919 | ---- | M] () -- C:\Users\Tara\AppData\Roaming\Mozilla\Firefox\Profiles\k5dajkdz.default\searchplugins\conduit.xml
[2011/11/12 09:38:44 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012/02/01 05:39:31 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2011/05/04 03:52:23 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010/07/27 15:13:46 | 000,027,136 | ---- | M] (NHN USA Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npijjiautoinstallpluginff.dll
[2010/07/28 17:14:08 | 000,022,016 | ---- | M] (NHN USA Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npijjiFFPlugin1.dll
[2011/10/13 06:47:23 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2010/01/01 03:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml.old
[2011/11/12 09:38:35 | 000,002,040 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml
O1 HOSTS File: ([2012/02/07 15:07:44 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:
64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:
64bit: - BHO: (no name) - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - No CLSID value found.
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (no name) - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - No CLSID value found.
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3:
64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:
64bit: - HKLM\..\Toolbar: (no name) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No CLSID value found.
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {9565115D-C7D6-46D3-BD63-B67B481A4368} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4:
64bit: - HKLM..\Run: [hpsysdrv] c:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe (Hewlett-Packard)
O4:
64bit: - HKLM..\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ()
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe ()
O4 - HKLM..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe (PDF Complete Inc)
O4 - HKLM..\Run: [StartCCC] c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Users\Tara\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc)
O4 - HKCU..\Run: [Facebook Update] C:\Users\Tara\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
O4 - HKCU..\Run: [Logitech Vid] C:\Program Files (x86)\Logitech\Vid HD\Vid.exe (Logitech Inc.)
O4 - HKCU..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
O4 - HKCU..\Run: [ZumoCast] C:\Program Files (x86)\Zecter\ZumoCast\ZumoLauncher.lnk ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideSCAHealth = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files (x86)\Paltalk Messenger\paltalk.exe (AVM Software Inc.)
O10:
64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000}
http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072}
http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE}
https://battlefield.play4free.com/static/updater/BP4FUpdater_1.0.53.2.cab (Battlefield Play4Free Updater)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CB065778-EBA4-4E06-A041-AEA7CBD1A7FB}: DhcpNameServer = 192.168.1.1
O18:
64bit: - Protocol\Handler\livecall - No CLSID value found
O18:
64bit: - Protocol\Handler\msnim - No CLSID value found
O18:
64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:
64bit: - Protocol\Handler\wlpg - No CLSID value found
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{57d606fe-e50b-11e0-b556-643150273f20}\Shell - "" = AutoRun
O33 - MountPoints2\{57d606fe-e50b-11e0-b556-643150273f20}\Shell\AutoRun\command - "" = E:\setup.exe -a
O33 - MountPoints2\{ac98e0d2-1b73-11e0-beff-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{ac98e0d2-1b73-11e0-beff-806e6f6e6963}\Shell\AutoRun\command - "" = "E:\WD SmartWare.exe" autoplay=true
O34 - HKLM BootExecute: (autocheck autochk *)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = Reg Error: Key error.] -- Reg Error: Key error. File not found
O37 - HKLM\...exe [@ = Reg Error: Key error.] -- Reg Error: Key error. File not found
========== Files/Folders - Created Within 30 Days ========== [2012/02/11 08:55:09 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\svchost.exe
[2012/02/07 15:51:14 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Roaming\SUPERAntiSpyware.com
[2012/02/07 15:49:35 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2012/02/07 15:49:27 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2012/02/07 15:49:27 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2012/02/07 15:18:28 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2012/02/07 15:01:52 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2012/02/07 15:01:52 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2012/02/07 15:01:52 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2012/02/07 15:01:40 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2012/02/07 14:59:54 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/02/07 14:42:46 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\ElevatedDiagnostics
[2012/02/07 08:10:30 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Roaming\8C048
[2012/02/07 07:15:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\48EDE
[2012/02/07 07:14:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LP
[2012/02/07 05:40:36 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{DDFC89E5-28DE-4083-89A6-128FD740AFA0}
[2012/02/07 05:40:14 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{2EF3351F-C241-4385-BD53-A7CBD1AD3D40}
[2012/02/06 17:39:59 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{9D5379AA-36B9-43BE-AE72-EE058A3D7318}
[2012/02/06 17:39:24 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{61E6FAAC-55A3-447D-A4DC-434683F77E37}
[2012/02/06 05:39:11 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{D3702CFE-6488-47C5-AD4D-D82A2C31149F}
[2012/02/06 05:38:39 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{4B939382-6408-4C25-ADB1-D5994B9ADE18}
[2012/02/05 17:38:24 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{FBBEC2C5-613D-47B4-AED4-CB068FBBCCC6}
[2012/02/05 17:37:51 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{FD5C59CA-D62F-44DF-8CCD-2F6BCA865672}
[2012/02/05 05:37:38 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{D7CE2805-6ED0-4AC8-A3A2-B30342D16421}
[2012/02/05 05:37:16 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{0361E3EB-E8E7-4E79-BBDB-20D0608DC18A}
[2012/02/04 17:36:48 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{3490974B-0224-4543-B586-E358873FD98A}
[2012/02/04 17:36:26 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{5C16FA61-8F0E-4A5E-AFBA-0EF3B912C674}
[2012/02/04 05:36:11 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{9E39FB06-38C3-4F6B-B959-ABBEF6C03642}
[2012/02/04 05:35:37 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{C25CC9A6-22FA-445D-B2AB-78AA578187D5}
[2012/02/03 17:35:01 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{45BFCBDB-C209-4C7E-BBD1-804B7621BD4E}
[2012/02/03 17:34:35 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{74F49B9B-0B85-4056-81C7-B35E8E6F9E9B}
[2012/02/03 05:34:22 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{02A62343-D18B-434E-B649-0819287788B5}
[2012/02/03 05:33:49 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{0C708B7C-0537-45EE-9485-51A1C6D86444}
[2012/02/02 17:33:35 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{3C5F186A-9BEF-406D-821A-E16F2FDBB57C}
[2012/02/02 17:33:09 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{ADF44F04-FD0F-451A-8BE7-BC40D18FA4F6}
[2012/02/02 05:32:57 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{DD64BEE0-119D-4027-A530-B46718755C67}
[2012/02/02 05:32:24 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{56863DA0-292B-416D-A60A-E614B48EA30E}
[2012/02/01 17:32:11 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{44A99AC2-821C-416A-8AC1-6EC86900653D}
[2012/02/01 17:31:50 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{3FE2E98A-22E1-4E67-822B-142D8E33B225}
[2012/02/01 05:31:29 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{27EA36EB-E5E4-49B8-867C-53C52628C294}
[2012/02/01 05:31:02 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{09FB33FA-0B2A-4ACA-AE41-6E077D9D3579}
[2012/01/31 19:09:35 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Roaming\Skype
[2012/01/31 19:09:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2012/01/31 19:09:13 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2012/01/31 19:08:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2012/01/31 08:12:31 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{8B9DE477-3DAA-4DFE-93A0-F83358E29528}
[2012/01/31 08:12:09 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{A6AF6001-E50C-468A-A778-4DCB259972E5}
[2012/01/31 05:09:32 | 001,446,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2012/01/31 05:09:31 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
[2012/01/31 05:09:31 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2012/01/31 05:09:31 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2012/01/31 05:09:31 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2012/01/31 05:09:31 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2012/01/30 20:11:56 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{1B60FBCE-D6E2-4FD1-ACA3-D9C36E0EEB16}
[2012/01/30 20:11:00 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{114702FB-CDBE-49CC-9C8B-77DA4CE770C1}
[2012/01/30 02:01:10 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{F7D6E8DD-DAA3-4242-B5CB-10683A7C4285}
[2012/01/30 02:00:43 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{041A173E-4984-4BE6-B003-480AB2B3A6D4}
[2012/01/29 14:00:04 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{7E7E29E0-4E65-4622-BDA3-1D8482D29F17}
[2012/01/29 13:59:36 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{8DD96138-19E8-4227-8E7B-3393CF0CAAF5}
[2012/01/29 10:07:54 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
[2012/01/29 01:58:50 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{1A87F7A1-154D-4329-92BC-512325E61F91}
[2012/01/29 01:58:27 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{29A90084-A58B-4B72-A86F-B7AFDF6274D1}
[2012/01/28 13:58:13 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{3C456F22-E5D2-4856-916C-52A3D260F7BF}
[2012/01/28 13:57:46 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{84642697-A84F-4C1F-8CB7-402C2A9469CD}
[2012/01/20 06:16:24 | 000,000,000 | ---D | C] -- C:\Users\Tara\Desktop\STONE LOVE 2010 vs TONY MATTERON DUDUS DANCE PT2
[2012/01/19 05:24:36 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{B65FF76F-C444-4C47-871D-918FF5FE3EF1}
[2012/01/19 05:24:00 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{B8FCD4DE-8D57-461C-8854-C0E45C418291}
[2012/01/18 20:54:00 | 000,000,000 | ---D | C] -- C:\ProgramData\FLEXnet
[2012/01/18 20:46:45 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2012/01/18 20:42:44 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\spool
[2012/01/18 20:40:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Macrovision Shared
[2012/01/18 20:40:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2012/01/18 20:39:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Macrovision Shared
[2012/01/18 20:23:55 | 000,000,000 | ---D | C] -- C:\Users\Tara\Desktop\ps
[2012/01/18 17:23:46 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{5C166BDA-D4FF-406D-92AD-13CD653C710C}
[2012/01/18 17:23:22 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{4BEB22DE-95FA-402E-BFE3-8F69D30A266C}
[2012/01/18 05:23:05 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{D7274A2F-D8A7-4067-A2AC-A6C5DEE74855}
[2012/01/18 05:22:53 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{9845356E-F40F-4286-ABE5-20B6FFCB79BE}
[2012/01/17 21:57:08 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\Akamai
[2012/01/17 21:55:28 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Roaming\com.adobe.dmp.contentviewer
[2012/01/17 21:55:05 | 000,000,000 | ---D | C] -- C:\Users\Tara\CS5.5 Master Collection
[2012/01/17 21:54:11 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Roaming\com.adobe.WidgetBrowser.E7BED6E5DDA59983786DD72EBFA46B1598278E07.1
[2012/01/17 20:41:47 | 000,000,000 | ---D | C] -- C:\Users\Tara\New folder (2)
[2012/01/16 20:45:23 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{49045295-E6BC-4129-B951-9CD4473055ED}
[2012/01/16 20:44:59 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{2AF1E9BF-0E41-4C48-BDC0-F0841A67D6D9}
[2012/01/15 10:08:42 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{EDDA800A-3155-4039-86C4-A486A1E62DE7}
[2012/01/15 10:08:20 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{412EF565-E89A-44C6-86F0-5B3CB032A126}
[2012/01/15 08:57:23 | 000,000,000 | ---D | C] -- C:\Users\Tara\Desktop\Jan 2012
[2012/01/14 22:08:06 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{6A4140E4-C994-4FB2-A205-B84309AFE8FE}
[2012/01/14 22:07:44 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{60D181F1-5B14-431D-9E35-B3B503E9934A}
[2012/01/14 10:07:30 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{BAFAE275-233B-486B-A0DB-85BEEC216362}
[2012/01/14 10:06:58 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{F03C0890-CCCF-4336-B5C2-C2862CB9E954}
[2012/01/13 22:06:44 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{E95B4450-F7E8-4127-9AF4-2A4926E9BD9F}
[2012/01/13 22:06:22 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{9F928AFA-C763-4042-A1F9-848D867C7E27}
[2012/01/13 10:06:08 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{4ABA90F3-B298-431B-847E-CBF5F2DC06CD}
[2012/01/13 10:05:35 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{5868D44F-6542-4AF9-BE41-6210BF5A8E72}
[2012/01/12 22:05:22 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{B33A114B-3C03-4514-9CED-6E2554B249C0}
[2012/01/12 22:04:46 | 000,000,000 | ---D | C] -- C:\Users\Tara\AppData\Local\{12E1E6F9-4415-43B4-816D-CDC3E5C0942C}
[6 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Users\Tara\Documents\*.tmp files -> C:\Users\Tara\Documents\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2012/02/11 13:13:01 | 000,000,924 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1206376803-686451631-1135414628-1001UA.job
[2012/02/11 10:13:00 | 000,000,902 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1206376803-686451631-1135414628-1001Core.job
[2012/02/11 09:02:28 | 000,015,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/02/11 09:02:28 | 000,015,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/02/11 08:54:07 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/02/11 08:54:04 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\drivers\lvuvc.hs
[2012/02/11 08:53:57 | 3019,333,632 | -HS- | M] () -- C:\hiberfil.sys
[2012/02/08 20:29:10 | 000,009,993 | ---- | M] () -- C:\Users\Tara\Documents\Seven.zip
[2012/02/07 15:49:36 | 000,001,810 | ---- | M] () -- C:\Users\Tara\Desktop\SUPERAntiSpyware Free Edition.lnk
[2012/02/07 15:07:44 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2012/02/07 15:01:33 | 000,780,156 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012/02/07 15:01:33 | 000,660,732 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/02/07 15:01:33 | 000,121,402 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/02/07 14:33:37 | 000,000,029 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\lmhosts.sam
[2012/02/07 14:17:06 | 000,001,071 | ---- | M] () -- C:\Users\Tara\Desktop\Malwarebytes Anti-Malware.lnk
[2012/02/07 08:33:19 | 000,001,071 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/02/02 17:50:43 | 000,005,265 | ---- | M] () -- C:\Windows\SysWow64\nppt9x.vxd
[2012/02/02 17:50:43 | 000,004,774 | ---- | M] (INCA Internet Co., Ltd.) -- C:\Windows\SysWow64\npptNT2.sys
[2012/02/01 05:39:35 | 000,002,046 | ---- | M] () -- C:\Users\Tara\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2012/01/31 19:09:19 | 000,002,515 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2012/01/29 10:03:39 | 004,891,648 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012/01/24 09:18:38 | 000,001,071 | ---- | M] () -- C:\Users\Tara\Malwarebytes Anti-Malware.lnk
[2012/01/19 05:46:02 | 000,001,160 | ---- | M] () -- C:\Users\Tara\Desktop\Adobe Photoshop CS4 (64 Bit).lnk
[2012/01/19 05:43:29 | 080,962,279 | ---- | M] () -- C:\Users\Tara\Desktop\zach1.psd
[2012/01/18 23:22:50 | 002,124,667 | ---- | M] () -- C:\Users\Tara\Desktop\zach.jpg
[2012/01/18 23:22:19 | 038,402,247 | ---- | M] () -- C:\Users\Tara\Desktop\zach.psd
[2012/01/14 17:20:04 | 000,156,583 | ---- | M] () -- C:\Windows\SysWow64\wbers.dat.dmp
[6 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Users\Tara\Documents\*.tmp files -> C:\Users\Tara\Documents\*.tmp -> ]
========== Files Created - No Company Name ========== [2012/02/08 20:40:26 | 000,006,672 | ---- | C] () -- C:\Users\Tara\Documents\wuauserv.reg
[2012/02/08 20:40:26 | 000,003,364 | ---- | C] () -- C:\Users\Tara\Documents\mpssvc.reg
[2012/02/08 20:40:26 | 000,002,737 | ---- | C] () -- C:\Users\Tara\Documents\wscsvc.reg
[2012/02/08 20:40:26 | 000,002,382 | ---- | C] () -- C:\Users\Tara\Documents\sdrsvc.reg
[2012/02/08 20:40:26 | 000,001,495 | ---- | C] () -- C:\Users\Tara\Documents\bfe.reg
[2012/02/08 20:40:26 | 000,001,190 | ---- | C] () -- C:\Users\Tara\Documents\Legacy_nsiproxy.reg
[2012/02/08 20:40:26 | 000,001,136 | ---- | C] () -- C:\Users\Tara\Documents\Legacy_afd.reg
[2012/02/08 20:40:26 | 000,001,130 | ---- | C] () -- C:\Users\Tara\Documents\Legacy_tdx.reg
[2012/02/08 20:40:26 | 000,000,880 | ---- | C] () -- C:\Users\Tara\Documents\legacy_mpssvc.reg
[2012/02/08 20:40:26 | 000,000,866 | ---- | C] () -- C:\Users\Tara\Documents\legacy_wscsvc.reg
[2012/02/08 20:40:26 | 000,000,866 | ---- | C] () -- C:\Users\Tara\Documents\legacy_sdrsvc.reg
[2012/02/08 20:40:26 | 000,000,830 | ---- | C] () -- C:\Users\Tara\Documents\afd.reg
[2012/02/08 20:40:26 | 000,000,826 | ---- | C] () -- C:\Users\Tara\Documents\legacy_wuauserv.reg
[2012/02/08 20:40:26 | 000,000,738 | ---- | C] () -- C:\Users\Tara\Documents\tdx.reg
[2012/02/08 20:40:26 | 000,000,684 | ---- | C] () -- C:\Users\Tara\Documents\nsiproxy.reg
[2012/02/08 20:40:26 | 000,000,048 | ---- | C] () -- C:\Users\Tara\Documents\start_services.bat
[2012/02/08 20:40:07 | 000,009,993 | ---- | C] () -- C:\Users\Tara\Documents\Seven.zip
[2012/02/07 15:49:36 | 000,001,810 | ---- | C] () -- C:\Users\Tara\Desktop\SUPERAntiSpyware Free Edition.lnk
[2012/02/07 15:01:52 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012/02/07 15:01:52 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012/02/07 15:01:52 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012/02/07 15:01:52 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012/02/07 15:01:52 | 000,068,096 | ---- | C] () -- C:\Windo