OTL logfile created on: 1/17/2013 10:36:38 PM - Run 9
OTL by OldTimer - Version 3.2.11.0 Folder = C:\\Users\\Mengsk\\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6002.18005)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 58.00% Memory free
7.00 Gb Paging File | 5.00 Gb Available in Paging File | 78.00% Paging File free
Paging file location(s): ?:\\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\\Windows | %ProgramFiles% = C:\\Program Files
Drive C: | 458.28 Gb Total Space | 149.33 Gb Free Space | 32.58% Space Free | Partition Type: NTFS
Drive D: | 465.76 Gb Total Space | 226.05 Gb Free Space | 48.53% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: MENGSK-PC
Current User Name: Mengsk
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ==========
PRC - [2013/01/10 17:58:22 | 000,917,552 | ---- | M] (Mozilla Corporation) -- C:\\Program Files\\Mozilla Firefox\\firefox.exe
PRC - [2013/01/10 17:58:21 | 000,017,456 | ---- | M] (Mozilla Corporation) -- C:\\Program Files\\Mozilla Firefox\\plugin-container.exe
PRC - [2013/01/08 18:36:23 | 001,808,392 | ---- | M] (Adobe Systems, Inc.) -- C:\\Windows\\System32\\Macromed\\Flash\\FlashPlayerPlugin_11_5_502_146.exe
PRC - [2012/12/11 03:52:44 | 003,147,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\\Program Files\\AVG\\AVG2013\\avgui.exe
PRC - [2012/11/15 23:34:30 | 005,814,904 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\\Program Files\\AVG\\AVG2013\\avgidsagent.exe
PRC - [2012/10/30 04:59:56 | 000,726,648 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\\Program Files\\AVG\\AVG2013\\avgrsx.exe
PRC - [2012/10/22 13:05:08 | 000,196,664 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\\Program Files\\AVG\\AVG2013\\avgwdsvc.exe
PRC - [2012/10/22 13:04:32 | 001,116,792 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\\Program Files\\AVG\\AVG2013\\avgnsx.exe
PRC - [2012/10/22 13:03:52 | 000,796,792 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\\Program Files\\AVG\\AVG2013\\avgemcx.exe
PRC - [2012/10/22 13:03:46 | 000,440,440 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\\Program Files\\AVG\\AVG2013\\avgcsrvx.exe
PRC - [2012/10/10 21:15:04 | 001,258,856 | ---- | M] (NVIDIA Corporation) -- C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe
PRC - [2012/10/09 09:53:36 | 004,441,920 | ---- | M] (Akamai Technologies, Inc.) -- C:\\Users\\Mengsk\\AppData\\Local\\Akamai\\netsession_win.exe
PRC - [2012/10/02 13:29:14 | 000,864,616 | ---- | M] (NVIDIA Corporation) -- C:\\Program Files\\NVIDIA Corporation\\Display\\nvxdsync.exe
PRC - [2012/10/02 13:28:55 | 001,820,520 | ---- | M] (NVIDIA Corporation) -- C:\\Program Files\\NVIDIA Corporation\\Display\\nvtray.exe
PRC - [2012/10/02 13:15:38 | 000,382,824 | ---- | M] (NVIDIA Corporation) -- C:\\Program Files\\NVIDIA Corporation\\3D Vision\\nvSCPAPISvr.exe
PRC - [2011/11/25 16:32:36 | 000,687,400 | ---- | M] (Nero AG) -- C:\\Program Files\\Nero\\Update\\NASvc.exe
PRC - [2011/08/19 03:26:50 | 000,450,848 | ---- | M] (Logitech Inc.) -- C:\\Program Files\\Common Files\\LogiShrd\\LVMVFM\\UMVPFSrv.exe
PRC - [2010/10/16 00:40:40 | 000,037,664 | ---- | M] (Apple Inc.) -- C:\\Program Files\\Common Files\\Apple\\Mobile Device Support\\AppleMobileDeviceService.exe
PRC - [2010/09/01 22:26:24 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\\Users\\Mengsk\\Desktop\\OTL.exe
PRC - [2010/05/07 18:47:32 | 000,162,648 | ---- | M] (Logitech Inc.) -- C:\\Program Files\\Common Files\\LogiShrd\\LVMVFM\\LVPrcSrv.exe
PRC - [2009/07/07 14:48:44 | 000,647,216 | ---- | M] (Cisco Systems, Inc.) -- C:\\Program Files\\Common Files\\Pure Networks Shared\\Platform\\nmsrvc.exe
PRC - [2009/07/07 14:48:44 | 000,647,216 | ---- | M] (Cisco Systems, Inc.) -- C:\\Program Files\\Common Files\\Pure Networks Shared\\Platform\\nmctxth.exe
PRC - [2009/04/11 00:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\explorer.exe
PRC - [2009/03/06 12:59:12 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) -- C:\\Windows\\System32\\atashost.exe
PRC - [2008/09/29 12:19:22 | 000,415,744 | ---- | M] () -- C:\\Program Files\\Atomic Alarm Clock\\timeserv.exe
PRC - [2008/09/24 04:05:05 | 000,527,360 | ---- | M] () -- C:\\Program Files\\Atomic Alarm Clock\\AtomicAlarmClock.exe
PRC - [2007/02/14 16:23:18 | 000,538,096 | ---- | M] ( ) -- C:\\Windows\\System32\\dlcccoms.exe
PRC - [2005/05/17 16:21:12 | 000,147,456 | ---- | M] () -- C:\\Program Files\\Razer\\razerhid.exe
PRC - [2005/01/17 23:06:12 | 000,143,360 | ---- | M] (Razer Inc.) -- C:\\Program Files\\Razer\\razerofa.exe
========== Modules (SafeList) ==========
MOD - [2010/09/01 22:26:24 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\\Users\\Mengsk\\Desktop\\OTL.exe
MOD - [2010/08/31 09:43:52 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\winsxs\\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\\comctl32.dll
MOD - [2008/01/20 20:24:37 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\System32\\msscript.ocx
========== Win32 Services (SafeList) ==========
SRV - [2013/01/10 17:58:22 | 000,115,760 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\\Program Files\\Mozilla Maintenance Service\\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/01/08 18:36:23 | 000,251,400 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\\Windows\\System32\\Macromed\\Flash\\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/11/15 23:34:30 | 005,814,904 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\\Program Files\\AVG\\AVG2013\\avgidsagent.exe -- (AVGIDSAgent)
SRV - [2012/11/11 05:54:38 | 004,539,712 | ---- | M] () [Auto | Running] -- c:\\program files\\common files\\akamai/netsession_win_ce5ba24.dll -- (Akamai)
SRV - [2012/11/09 11:21:24 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\\Program Files\\Skype\\Updater\\Updater.exe -- (SkypeUpdate)
SRV - [2012/10/22 13:05:08 | 000,196,664 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\\Program Files\\AVG\\AVG2013\\avgwdsvc.exe -- (avgwd)
SRV - [2012/10/10 21:15:04 | 001,258,856 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe -- (nvUpdatusService)
SRV - [2012/10/05 09:08:42 | 000,109,064 | ---- | M] (Wajam) [On_Demand | Stopped] -- C:\\Program Files\\Wajam\\Updater\\WajamUpdater.exe -- (WajamUpdater)
SRV - [2012/10/02 13:15:38 | 000,382,824 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\\Program Files\\NVIDIA Corporation\\3D Vision\\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2011/11/25 16:32:36 | 000,687,400 | ---- | M] (Nero AG) [Auto | Running] -- C:\\Program Files\\Nero\\Update\\NASvc.exe -- (NAUpdate)
SRV - [2011/08/19 03:26:50 | 000,450,848 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\\Program Files\\Common Files\\LogiShrd\\LVMVFM\\UMVPFSrv.exe -- (UMVPFSrv)
SRV - [2011/02/22 07:33:09 | 000,797,696 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\\Windows\\System32\\FntCache.dll -- (FontCache)
SRV - [2010/10/16 00:40:40 | 000,037,664 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\\Program Files\\Common Files\\Apple\\Mobile Device Support\\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010/05/07 18:47:32 | 000,162,648 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\\Program Files\\Common Files\\Logishrd\\LVMVFM\\LVPrcSrv.exe -- (LVPrcSrv)
SRV - [2010/03/18 12:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\\Windows\\Microsoft.NET\\Framework\\v4.0.30319\\WPF\\WPFFontCache_v0400.exe -- (WPFFontCache_v0400)
SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\\Windows\\Microsoft.NET\\Framework\\v4.0.30319\\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/02/19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\\Program Files\\Common Files\\Adobe\\SwitchBoard\\SwitchBoard.exe -- (SwitchBoard)
SRV - [2010/01/21 16:51:12 | 030,963,576 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\\Program Files\\Microsoft Office\\Office14\\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service)
SRV - [2010/01/09 19:37:50 | 004,640,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\\Program Files\\Common Files\\Microsoft Shared\\OfficeSoftwareProtectionPlatform\\OSPPSVC.EXE -- (osppsvc)
SRV - [2009/11/20 12:55:15 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\\Program Files\\Common Files\\Macrovision Shared\\FLEXnet Publisher\\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2009/07/07 14:48:44 | 000,647,216 | ---- | M] (Cisco Systems, Inc.) [Auto | Running] -- C:\\Program Files\\Common Files\\Pure Networks Shared\\Platform\\nmsrvc.exe -- (nmservice)
SRV - [2009/03/06 12:59:12 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) [Auto | Running] -- C:\\Windows\\System32\\atashost.exe -- (atashost)
SRV - [2008/09/29 12:19:22 | 000,415,744 | ---- | M] () [Auto | Running] -- C:\\Program Files\\Atomic Alarm Clock\\timeserv.exe -- (AtomicAlarmClock)
SRV - [2008/01/20 20:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\\Program Files\\Windows Defender\\MpSvc.dll -- (WinDefend)
SRV - [2007/02/14 16:23:18 | 000,538,096 | ---- | M] ( ) [Auto | Running] -- C:\\Windows\\System32\\dlcccoms.exe -- (dlcc_device)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\DRIVERS\\ProtoWall.sys -- (ProtoWall)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\\Program Files\\PeerGuardian2\\pgfilter.sys -- (pgfilter)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\DRIVERS\\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\DRIVERS\\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\DRIVERS\\ipinip.sys -- (IpInIp)
DRV - [2012/11/15 23:33:26 | 000,094,048 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\\Windows\\system32\\DRIVERS\\avgmfx86.sys -- (Avgmfx86)
DRV - [2012/10/22 13:02:46 | 000,179,936 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | System | Running] -- C:\\Windows\\System32\\drivers\\avgidsdriverx.sys -- (AVGIDSDriver)
DRV - [2012/10/15 03:48:52 | 000,055,776 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\\Windows\\system32\\DRIVERS\\avgidshx.sys -- (AVGIDSHX)
DRV - [2012/10/10 21:14:28 | 010,837,352 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\\Windows\\System32\\drivers\\nvlddmkm.sys -- (nvlddmkm)
DRV - [2012/10/02 03:30:38 | 000,159,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\\Windows\\System32\\drivers\\avgldx86.sys -- (Avgldx86)
DRV - [2012/09/21 03:46:06 | 000,164,832 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\\Windows\\System32\\drivers\\avgtdix.sys -- (Avgtdix)
DRV - [2012/09/21 03:46:00 | 000,177,376 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | Boot | Running] -- C:\\Windows\\system32\\DRIVERS\\avglogx.sys -- (Avglogx)
DRV - [2012/09/21 03:45:54 | 000,019,936 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | System | Running] -- C:\\Windows\\System32\\drivers\\avgidsshimx.sys -- (AVGIDSShim)
DRV - [2012/09/14 03:05:20 | 000,035,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\\Windows\\system32\\DRIVERS\\avgrkx86.sys -- (Avgrkx86)
DRV - [2011/12/01 11:40:16 | 000,056,496 | ---- | M] (Nero AG) [Kernel | Boot | Running] -- C:\\Windows\\system32\\DRIVERS\\NBVol.sys -- (NBVol)
DRV - [2011/12/01 11:40:16 | 000,012,464 | ---- | M] (Nero AG) [Kernel | Boot | Running] -- C:\\Windows\\system32\\DRIVERS\\NBVolUp.sys -- (NBVolUp)
DRV - [2011/08/19 03:26:50 | 004,334,624 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\lvuvc.sys -- (LVUVC) Logitech HD Webcam C270(UVC)
DRV - [2011/08/19 03:26:46 | 000,315,808 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\lvrs.sys -- (LVRS)
DRV - [2010/05/14 16:02:14 | 000,114,784 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\lvpopflt.sys -- (lvpopflt)
DRV - [2010/05/07 18:43:30 | 000,025,824 | ---- | M] () [Kernel | On_Demand | Running] -- C:\\Windows\\System32\\drivers\\LVPr2Mon.sys -- (LVPr2Mon)
DRV - [2009/07/07 14:48:44 | 000,027,696 | ---- | M] (Cisco Systems, Inc.) [Kernel | Auto | Running] -- C:\\Windows\\System32\\drivers\\purendis.sys -- (purendis)
DRV - [2009/07/07 14:48:44 | 000,026,672 | ---- | M] (Cisco Systems, Inc.) [Kernel | Auto | Running] -- C:\\Windows\\System32\\drivers\\pnarp.sys -- (pnarp)
DRV - [2009/06/30 09:37:16 | 000,028,552 | ---- | M] (Panda Security, S.L.) [File_System | Boot | Running] -- C:\\Windows\\system32\\drivers\\pavboot.sys -- (pavboot)
DRV - [2009/04/10 22:42:54 | 000,073,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\USBAUDIO.sys -- (usbaudio) USB Audio Driver (WDM)
DRV - [2009/04/08 14:29:52 | 000,056,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\xusb21.sys -- (xusb21)
DRV - [2008/12/18 06:23:49 | 000,103,360 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\System32\\drivers\\AnyDVD.sys -- (AnyDVD)
DRV - [2008/11/02 02:44:10 | 000,056,572 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\\Windows\\System32\\drivers\\scdemu.sys -- (SCDEmu)
DRV - [2008/07/21 06:11:58 | 000,024,392 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\\Windows\\System32\\drivers\\ElbyCDIO.sys -- (ElbyCDIO)
DRV - [2008/01/25 18:02:04 | 000,140,832 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\nvstor32.sys -- (nvstor32)
DRV - [2008/01/25 18:02:04 | 000,132,128 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\nvrd32.sys -- (nvrd32)
DRV - [2008/01/20 20:23:49 | 000,007,680 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\umpass.sys -- (UMPass)
DRV - [2008/01/20 20:23:27 | 000,386,616 | ---- | M] (LSI Corporation, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\megasr.sys -- (MegaSR)
DRV - [2008/01/20 20:23:27 | 000,149,560 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\adpu320.sys -- (adpu320)
DRV - [2008/01/20 20:23:27 | 000,031,288 | ---- | M] (LSI Corporation) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\megasas.sys -- (megasas)
DRV - [2008/01/20 20:23:26 | 000,101,432 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\adpu160m.sys -- (adpu160m)
DRV - [2008/01/20 20:23:26 | 000,074,808 | ---- | M] (Silicon Integrated Systems) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\sisraid4.sys -- (SiSRaid4)
DRV - [2008/01/20 20:23:26 | 000,052,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\msdv.sys -- (MSDV)
DRV - [2008/01/20 20:23:26 | 000,040,504 | ---- | M] (Hewlett-Packard Company) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\hpcisss.sys -- (HpCISSs)
DRV - [2008/01/20 20:23:25 | 000,300,600 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\adpahci.sys -- (adpahci)
DRV - [2008/01/20 20:23:25 | 000,089,656 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\lsi_sas.sys -- (LSI_SAS)
DRV - [2008/01/20 20:23:24 | 001,122,360 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\ql2300.sys -- (ql2300)
DRV - [2008/01/20 20:23:24 | 000,118,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\E1G60I32.sys -- (E1G60) Intel(R)
DRV - [2008/01/20 20:23:24 | 000,079,928 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\arcsas.sys -- (arcsas)
DRV - [2008/01/20 20:23:23 | 000,235,064 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\\Windows\\system32\\drivers\\iastorv.sys -- (iaStorV)
DRV - [2008/01/20 20:23:23 | 000,130,616 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\vsmraid.sys -- (vsmraid)
DRV - [2008/01/20 20:23:23 | 000,115,816 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\ulsata2.sys -- (ulsata2)
DRV - [2008/01/20 20:23:23 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\lsi_scsi.sys -- (LSI_SCSI)
DRV - [2008/01/20 20:23:23 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\lsi_fc.sys -- (LSI_FC)
DRV - [2008/01/20 20:23:23 | 000,079,416 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\arc.sys -- (arc)
DRV - [2008/01/20 20:23:23 | 000,045,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\61883.sys -- (61883)
DRV - [2008/01/20 20:23:22 | 000,342,584 | ---- | M] (Emulex) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\elxstor.sys -- (elxstor)
DRV - [2008/01/20 20:23:21 | 000,422,968 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\adp94xx.sys -- (adp94xx)
DRV - [2008/01/20 20:23:21 | 000,102,968 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\nvraid.sys -- (nvraid)
DRV - [2008/01/20 20:23:21 | 000,045,112 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\nvstor.sys -- (nvstor)
DRV - [2008/01/20 20:23:20 | 002,225,664 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\NETw3v32.sys -- (NETw3v32) Intel(R)
DRV - [2008/01/20 20:23:20 | 000,238,648 | ---- | M] (ULi Electronics Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\uliahci.sys -- (uliahci)
DRV - [2008/01/20 20:23:20 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\avc.sys -- (Avc)
DRV - [2008/01/20 20:23:00 | 000,020,024 | ---- | M] (VIA Technologies, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\viaide.sys -- (viaide)
DRV - [2008/01/20 20:23:00 | 000,019,000 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\cmdide.sys -- (cmdide)
DRV - [2008/01/20 20:23:00 | 000,017,464 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\aliide.sys -- (aliide)
DRV - [2007/07/14 19:37:04 | 000,027,992 | ---- | M] (EnTech Taiwan) [Kernel | System | Running] -- C:\\Windows\\System32\\drivers\\pstrip.sys -- (PStrip)
DRV - [2007/06/15 09:52:18 | 000,143,256 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Running] -- C:\\Windows\\system32\\drivers\\mv61xx.sys -- (mv61xx)
DRV - [2007/05/24 08:15:00 | 000,246,784 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\\Windows\\System32\\drivers\\yk60x86.sys -- (yukonwlh)
DRV - [2007/04/25 10:17:36 | 000,277,784 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\iastor.sys -- (iaStor)
DRV - [2007/04/11 22:18:34 | 000,048,000 | ---- | M] (JMicron Technology Corp.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\jraid.sys -- (JRAID)
DRV - [2006/12/28 17:51:56 | 000,110,592 | ---- | M] (ATI Technologies Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\ahcix86s.sys -- (ahcix86s)
DRV - [2006/12/12 10:16:06 | 000,022,528 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\emAudio.sys -- (emAudio)
DRV - [2006/11/02 03:50:35 | 000,106,088 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\ql40xx.sys -- (ql40xx)
DRV - [2006/11/02 03:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\ulsata.sys -- (UlSata)
DRV - [2006/11/02 03:50:19 | 000,045,160 | ---- | M] (IBM Corporation) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\nfrd960.sys -- (nfrd960)
DRV - [2006/11/02 03:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\iirsp.sys -- (iirsp)
DRV - [2006/11/02 03:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\djsvs.sys -- (aic78xx)
DRV - [2006/11/02 03:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\iteraid.sys -- (iteraid)
DRV - [2006/11/02 03:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\iteatapi.sys -- (iteatapi)
DRV - [2006/11/02 03:50:05 | 000,035,944 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\symc8xx.sys -- (Symc8xx)
DRV - [2006/11/02 03:50:03 | 000,034,920 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\sym_u3.sys -- (Sym_u3)
DRV - [2006/11/02 03:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\mraid35x.sys -- (Mraid35x)
DRV - [2006/11/02 03:49:56 | 000,031,848 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\sym_hi.sys -- (Sym_hi)
DRV - [2006/11/02 02:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM)
DRV - [2006/11/02 02:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\system32\\drivers\\brusbser.sys -- (BrUsbSer)
DRV - [2006/11/02 02:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\system32\\drivers\\brfiltup.sys -- (BrFiltUp)
DRV - [2006/11/02 02:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\system32\\drivers\\brfiltlo.sys -- (BrFiltLo)
DRV - [2006/11/02 02:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\brserwdm.sys -- (BrSerWdm)
DRV - [2006/11/02 02:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\brusbmdm.sys -- (BrUsbMdm)
DRV - [2006/11/02 01:41:50 | 000,983,552 | ---- | M] (Agere Systems) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\AGRSM.sys -- (AgereSoftModem)
DRV - [2006/11/02 01:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) [Kernel | Disabled | Stopped] -- C:\\Windows\\system32\\drivers\\ntrigdigi.sys -- (ntrigdigi)
DRV - [2006/11/01 23:50:52 | 000,128,104 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\WimFltr.sys -- (WimFltr)
DRV - [2006/10/30 17:23:12 | 000,007,680 | ---- | M] (ATI Technologies Inc.) [Kernel | Boot | Running] -- C:\\Windows\\system32\\DRIVERS\\AtiPcie.sys -- (AtiPcie) ATI PCI Express (3GIO)
DRV - [2006/10/18 23:44:48 | 000,007,680 | ---- | M] () [Kernel | On_Demand | Running] -- C:\\Windows\\System32\\drivers\\ASACPI.sys -- (MTsensor)
DRV - [2006/09/24 07:28:46 | 000,005,248 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Boot | Running] -- C:\\Windows\\system32\\speedfan.sys -- (speedfan)
DRV - [2006/08/28 15:12:04 | 000,013,312 | ---- | M] () [Kernel | System | Running] -- C:\\Windows\\system32\\drivers\\MTictwl.sys -- (NCPro)
DRV - [2006/08/28 15:12:04 | 000,013,312 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\MTictwl.sys -- (MagicTune)
DRV - [2006/02/07 17:52:58 | 000,006,912 | ---- | M] (JMicron ) [Kernel | Boot | Stopped] -- C:\\Windows\\system32\\drivers\\jgogo.sys -- (JGOGO)
DRV - [2005/12/21 08:14:52 | 000,100,957 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\emDevice.sys -- (DCamUSBEMPIA)
DRV - [2005/12/21 08:14:52 | 000,005,245 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\emFilter.sys -- (FiltUSBEMPIA)
DRV - [2005/12/21 08:14:52 | 000,004,493 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\emScan.sys -- (ScanUSBEMPIA)
DRV - [2005/09/23 22:18:32 | 000,171,520 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\\Windows\\System32\\drivers\\MarvinBus.sys -- (MarvinBus)
DRV - [2002/07/17 15:20:32 | 000,084,832 | ---- | M] (Adaptec) [Kernel | On_Demand | Stopped] -- C:\\Windows\\System32\\drivers\\ASPI32.SYS -- (ASPI)
DRV - [1996/04/03 13:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\\Windows\\system32\\giveio.sys -- (giveio)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Default_Secondary_Page_URL = [Binary data over 100 bytes]
IE - HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Local Page = %SystemRoot%\\system32\\blank.htm
IE - HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Secondary Start Pages = [Binary data over 100 bytes]
IE - HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Start Page = http://www.alienware.com/mothership
IE - HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Search,SearchAssistant =
IE - HKLM\\..\\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\\Program Files\\uTorrentControl_v2\\prxtbuTor.dll (Conduit Ltd.)
IE - HKCU\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://www.alienware.com/Mothership?Comp=%ALIENFACTORY_Company%&SysCode=%ALIENFACTORY_SystemCode%&ai=636E3D34363638393826706F3D35383437363541
IE - HKCU\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Secondary Start Pages = http://www.google.com/ [binary data]
IE - HKCU\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Start Page = [String data over 1000 bytes]
IE - HKCU\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Start Page Restore = http://www.alienware.com/Mothership?Comp=%ALIENFACTORY_Company%&SysCode=%ALIENFACTORY_SystemCode%&ai=636E3D34363638393826706F3D35383437363541
IE - HKCU\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,StartPageCache = 2
IE - HKCU\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,XMLHTTP_UUID_Default = CF A7 84 15 40 A2 7C 49 B3 3F E3 BE 8C B0 BE 2D [binary data]
IE - HKCU\\..\\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\\Program Files\\uTorrentControl_v2\\prxtbuTor.dll (Conduit Ltd.)
IE - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyEnable\" = 0
IE - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyOverride\" = *.local;127.0.0.1:9421;<local>
========== FireFox ==========
FF - HKLM\\software\\mozilla\\Firefox\\Extensions\\\\[email protected]: C:\\ProgramDataMozilla\\Extensions\\[email protected] [2011/06/04 22:34:46 | 000,000,000 | ---D | M]
FF - HKLM\\software\\mozilla\\Firefox\\Extensions\\\\{22119944-ED35-4ab1-910B-E619EA06A115}: C:\\Program Files\\Siber Systems\\AI RoboForm\\Firefox [2012/08/20 22:41:57 | 000,000,000 | ---D | M]
FF - HKLM\\software\\mozilla\\Firefox\\Extensions\\\\[email protected]: C:\\Program Files\\Mozilla Firefox\\extensions\\[email protected] [2013/01/16 12:03:26 | 000,000,000 | ---D | M]
FF - HKLM\\software\\mozilla\\Mozilla Firefox 18.0\\extensions\\\\Components: C:\\Program Files\\Mozilla Firefox\\components [2013/01/10 17:58:22 | 000,000,000 | ---D | M]
FF - HKLM\\software\\mozilla\\Mozilla Firefox 18.0\\extensions\\\\Plugins: C:\\Program Files\\Mozilla Firefox\\plugins [2013/01/16 01:58:29 | 000,000,000 | ---D | M]
[2009/04/29 21:07:49 | 000,000,000 | ---D | M] -- C:\\Users\\Mengsk\\AppData\\Roaming\\Mozilla\\Extensions
[2013/01/16 14:08:53 | 000,000,000 | ---D | M] -- C:\\Users\\Mengsk\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qpjdcmoy.default-1357689702659\\extensions
[2013/01/16 12:03:26 | 000,000,000 | ---D | M] -- C:\\Program Files\\Mozilla Firefox\\extensions
[2013/01/10 17:58:15 | 000,000,000 | ---D | M] (No name found) -- C:\\Program Files\\Mozilla Firefox\\extensions\\{800b5000-a755-47e1-992b-48a1c1357f07}
[2013/01/10 17:58:15 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\\Program Files\\Mozilla Firefox\\extensions\\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2013/01/16 12:03:26 | 000,000,000 | ---D | M] -- C:\\Program Files\\Mozilla Firefox\\extensions\\[email protected]
[2013/01/10 17:58:22 | 000,262,704 | ---- | M] (Mozilla Foundation) -- C:\\Program Files\\Mozilla Firefox\\components\\browsercomps.dll
[2012/08/28 21:24:58 | 000,002,465 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\bing.xml
[2011/05/06 22:37:38 | 000,002,252 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\bing.xml.old
[2012/10/12 04:27:33 | 000,002,058 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\twitter.xml
O1 HOSTS File: ([2011/10/12 02:21:55 | 000,001,798 | ---- | M]) - C:\\Windows\\System32\\drivers\\etc\\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 adobe.activate.com
O1 - Hosts: 127.0.0.1 adobeereg.com
O1 - Hosts: 127.0.0.1 www.adobeereg.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 125.252.224.90
O1 - Hosts: 127.0.0.1 125.252.224.91
O1 - Hosts: 127.0.0.1 hl2rcv.adobe.com
O2 - BHO: (Coupon Companion Plugin) - {11111111-1111-1111-1111-110211181104} - C:\\Program Files\\Coupon Companion Plugin\\Coupon Companion Plugin.dll (215 Apps)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\\Program Files\\AVG\\AVG2012\\avgssie.dll File not found
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\\Program Files\\Siber Systems\\AI RoboForm\\roboform.dll (Siber Systems Inc.)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\\Program Files\\Microsoft Office\\Office14\\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (uTorrentControl_v2 Toolbar) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\\Program Files\\uTorrentControl_v2\\prxtbuTor.dll (Conduit Ltd.)
O2 - BHO: (Window Shopper) - {74F475FA-6C75-43BD-AAB9-ECDA6184F600} - C:\\Program Files\\Superfish\\Window Shopper\\SuperfishIEAddon.dll (Superfish)
O2 - BHO: (Wajam) - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\\Program Files\\Wajam\\IE\\priam_bho.dll (Wajam)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\\Program Files\\Skype\\Toolbars\\Internet Explorer\\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\\Program Files\\Google\\GoogleToolbarNotifier\\5.2.4204.1700\\swg.dll (Google Inc.)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\\Program Files\\Microsoft Office\\Office14\\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Windows Live Toolbar Helper) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\\Program Files\\Windows Live Toolbar\\msntb.dll (Microsoft Corporation)
O2 - BHO: (IE Developer Toolbar BHO) - {CC7E636D-39AA-49b6-B511-65413DA137A1} - C:\\Program Files\\Microsoft\\Internet Explorer Developer Toolbar\\IEDevToolbar.dll (Microsoft Corporation)
O3 - HKLM\\..\\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\\Program Files\\Siber Systems\\AI RoboForm\\roboform.dll (Siber Systems Inc.)
O3 - HKLM\\..\\Toolbar: (uTorrentControl_v2 Toolbar) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\\Program Files\\uTorrentControl_v2\\prxtbuTor.dll (Conduit Ltd.)
O3 - HKLM\\..\\Toolbar: (Windows Live Toolbar) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\\Program Files\\Windows Live Toolbar\\msntb.dll (Microsoft Corporation)
O3 - HKLM\\..\\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKCU\\..\\Toolbar\\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\\Program Files\\Siber Systems\\AI RoboForm\\roboform.dll (Siber Systems Inc.)
O3 - HKCU\\..\\Toolbar\\WebBrowser: (uTorrentControl_v2 Toolbar) - {7473B6BD-4691-4744-A82B-7854EB3D70B6} - C:\\Program Files\\uTorrentControl_v2\\prxtbuTor.dll (Conduit Ltd.)
O3 - HKCU\\..\\Toolbar\\WebBrowser: (Windows Live Toolbar) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\\Program Files\\Windows Live Toolbar\\msntb.dll (Microsoft Corporation)
O4 - HKLM..\\Run: [AdobeAAMUpdater-1.0] C:\\Program Files\\Common Files\\Adobe\\OOBE\\PDApp\\UWA\\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\\Run: [AdobeCS5ServiceManager] C:\\Program Files\\Common Files\\Adobe\\CS5ServiceManager\\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\\Run: [AppleSyncNotifier] C:\\Program Files\\Common Files\\Apple\\Mobile Device Support\\bin\\AppleSyncNotifier.exe (Apple Inc.)
O4 - HKLM..\\Run: [AVG_UI] C:\\Program Files\\AVG\\AVG2013\\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\\Run: [DLCCCATS] C:\\Windows\\System32\\spool\\DRIVERS\\W32X86\\3\\DLCCtime.DLL ()
O4 - HKLM..\\Run: [LanguageShortcut] C:\\Program Files\\CyberLink\\PowerDVD\\Language\\Language.exe ()
O4 - HKLM..\\Run: [Malwarebytes Anti-Malware (reboot)] C:\\Program Files\\Malwarebytes\' Anti-Malware\\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\\Run: [nmctxth] C:\\Program Files\\Common Files\\Pure Networks Shared\\Platform\\nmctxth.exe (Cisco Systems, Inc.)
O4 - HKLM..\\Run: [razer] C:\\Program Files\\Razer\\razerhid.exe ()
O4 - HKLM..\\Run: [SwitchBoard] C:\\Program Files\\Common Files\\Adobe\\SwitchBoard\\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\\Run: [USB2Check] C:\\Windows\\System32\\PCLECoInst.DLL (Pinnacle Systems)
O4 - HKLM..\\Run: [Windows Defender] C:\\Program Files\\Windows Defender\\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\\Run: [Akamai NetSession Interface] C:\\Users\\Mengsk\\AppData\\Local\\Akamai\\netsession_win.exe (Akamai Technologies, Inc.)
O4 - HKCU..\\Run: [PeerBlock] C:\\Program Files\\PeerBlock\\peerblock.exe (PeerBlock, LLC)
O4 - HKCU..\\Run: [SkinClock] C:\\Program Files\\Atomic Alarm Clock\\AtomicAlarmClock.exe ()
O6 - HKLM\\Software\\Policies\\Microsoft\\Internet Explorer\\Activities present
O6 - HKLM\\Software\\Policies\\Microsoft\\Internet Explorer\\control panel present
O6 - HKLM\\Software\\Policies\\Microsoft\\Internet Explorer\\restrictions present
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoDrives = 0
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: EnableLinkedConnections = 1
O7 - HKCU\\Software\\Policies\\Microsoft\\Internet Explorer\\control panel present
O7 - HKCU\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoDrives = 0
O8 - Extra context menu item: Customize Menu - C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboFormComCustomizeIEMenu.html ()
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\\Program Files\\Microsoft Office\\Office14\\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Fill Forms - C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboFormComFillForms.html ()
O8 - Extra context menu item: RoboForm Toolbar - C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboFormComShowToolbar.html ()
O8 - Extra context menu item: Save Forms - C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboFormComSavePass.html ()
O8 - Extra context menu item: Se&nd to OneNote - C:\\Program Files\\Microsoft Office\\Office14\\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\\Program Files\\Microsoft Office\\Office14\\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra \'Tools\' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\\Program Files\\Microsoft Office\\Office14\\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboFormComFillForms.html ()
O9 - Extra \'Tools\' menuitem : Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboFormComFillForms.html ()
O9 - Extra Button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboFormComSavePass.html ()
O9 - Extra \'Tools\' menuitem : Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboFormComSavePass.html ()
O9 - Extra Button: IE Developer Toolbar - {48FFE35F-36D9-44bd-A6CC-1D34414EAC0D} - C:\\Program Files\\Microsoft\\Internet Explorer Developer Toolbar\\IEDevToolbar.dll (Microsoft Corporation)
O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboFormComShowToolbar.html ()
O9 - Extra \'Tools\' menuitem : RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboFormComShowToolbar.html ()
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\\Program Files\\Microsoft Office\\Office14\\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra \'Tools\' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\\Program Files\\Microsoft Office\\Office14\\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\\Program Files\\Skype\\Toolbars\\Internet Explorer\\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra \'Tools\' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\\Program Files\\Skype\\Toolbars\\Internet Explorer\\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Window Shopper - {A69A551A-1AAE-4B67-8C2E-52F8B8A19504} - C:\\Program Files\\Superfish\\Window Shopper\\SuperfishIEAddon.dll (Superfish)
O10 - NameSpace_Catalog5\\Catalog_Entries\\000000000007 [] - C:\\Program Files\\Bonjour\\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_07-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0017-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_07-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_07-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (Reg Error: Value error.)
O17 - HKLM\\System\\CCS\\Services\\Tcpip\\Parameters: DhcpNameServer = 192.168.1.1 75.75.75.75 75.75.76.76
O18 - Protocol\\Handler\\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\\Program Files\\AVG\\AVG2012\\avgpp.dll File not found
O18 - Protocol\\Handler\\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\\Program Files\\Common Files\\microsoft shared\\Help\\hxds.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\pure-go {4746C79A-2042-4332-8650-48966E44ABA8} - C:\\Program Files\\Common Files\\Pure Networks Shared\\Platform\\puresp4.dll (Cisco Systems, Inc.)
O18 - Protocol\\Handler\\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\Program Files\\Common Files\\Skype\\Skype4COM.dll (Skype Technologies)
O18 - Protocol\\Handler\\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\\Program Files\\Skype\\Toolbars\\Internet Explorer\\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\\Filter\\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\\Program Files\\Common Files\\microsoft shared\\OFFICE14\\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\\Windows\\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\\Users\\Mengsk\\AppData\\Roaming\\Mozilla\\Firefox\\Desktop Background.bmp
O24 - Desktop BackupWallPaper: C:\\Users\\Mengsk\\AppData\\Roaming\\Mozilla\\Firefox\\Desktop Background.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\\Program Files\\Microsoft Office\\Office14\\GROOVEEX.DLL (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\\..comfile [open] -- \"%1\" %*
O35 - HKLM\\..exefile [open] -- \"%1\" %*
O37 - HKLM\\...com [@ = ComFile] -- \"%1\" %*
O37 - HKLM\\...exe [@ = exefile] -- \"%1\" %*
========== Files/Folders - Created Within 30 Days ==========
[2013/01/16 12:11:04 | 000,000,000 | ---D | C] -- C:\\Users\\Mengsk\\AppData\\Local\\iLivid
[2013/01/16 12:03:36 | 000,000,000 | ---D | C] -- C:\\Users\\Mengsk\\AppData\\Local\\Coupon Companion Plugin
[2013/01/16 12:03:30 | 000,000,000 | ---D | C] -- C:\\Users\\Mengsk\\AppData\\Local\\Updater21804
[2013/01/16 12:03:22 | 000,000,000 | ---D | C] -- C:\\Program Files\\InfoAtoms
[2013/01/16 12:03:22 | 000,000,000 | ---D | C] -- C:\\Program Files\\Coupon Companion Plugin
[2013/01/10 17:58:15 | 000,000,000 | ---D | C] -- C:\\Program Files\\Mozilla Firefox
[2013/01/08 21:15:16 | 002,048,000 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\System32\\win32k.sys
[2013/01/08 21:14:41 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\System32\\ncrypt.dll
[2012/12/30 17:17:28 | 000,000,000 | ---D | C] -- C:\\Users\\Mengsk\\AppData\\Local\\Wajam
[2012/12/30 17:17:28 | 000,000,000 | ---D | C] -- C:\\Program Files\\OApps
[2012/12/30 17:17:23 | 000,000,000 | ---D | C] -- C:\\Program Files\\Wajam
[2012/12/25 23:09:32 | 000,000,000 | ---D | C] -- C:\\Users\\Mengsk\\AppData\\Local\\Daring_Development_Inc
[2012/12/25 23:07:15 | 000,000,000 | ---D | C] -- C:\\Program Files\\Daring Development
[2012/12/25 13:27:20 | 000,000,000 | ---D | C] -- C:\\Users\\Mengsk\\Eastbound and Down Season 3 (Complete) [Luke1382]
[2012/12/21 03:00:21 | 000,293,376 | ---- | C] (Adobe Systems Incorporated) -- C:\\Windows\\System32\\atmfd.dll
[2012/12/21 03:00:21 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\\Windows\\System32\\atmlib.dll
[2008/12/30 23:43:53 | 000,047,360 | ---- | C] (VSO Software) -- C:\\Users\\Mengsk\\AppData\\Roaming\\pcouffin.sys
[2006/12/20 17:08:24 | 000,643,072 | ---- | C] ( ) -- C:\\Windows\\System32\\dlccpmui.dll
[2006/12/20 17:06:58 | 001,224,704 | ---- | C] ( ) -- C:\\Windows\\System32\\dlccserv.dll
[2006/12/20 17:01:04 | 000,421,888 | ---- | C] ( ) -- C:\\Windows\\System32\\dlcccomm.dll
[2006/12/20 16:59:24 | 000,585,728 | ---- | C] ( ) -- C:\\Windows\\System32\\dlcclmpm.dll
[2006/12/20 16:58:02 | 000,397,312 | ---- | C] ( ) -- C:\\Windows\\System32\\dlcciesc.dll
[2006/12/20 16:55:40 | 000,094,208 | ---- | C] ( ) -- C:\\Windows\\System32\\dlccpplc.dll
[2006/12/20 16:54:54 | 000,684,032 | ---- | C] ( ) -- C:\\Windows\\System32\\dlcccomc.dll
[2006/12/20 16:54:20 | 000,163,840 | ---- | C] ( ) -- C:\\Windows\\System32\\dlccprox.dll
[2006/12/20 16:47:32 | 000,413,696 | ---- | C] ( ) -- C:\\Windows\\System32\\dlccinpa.dll
[2006/12/20 16:46:50 | 000,991,232 | ---- | C] ( ) -- C:\\Windows\\System32\\dlccusb1.dll
[2006/12/20 16:42:36 | 000,696,320 | ---- | C] ( ) -- C:\\Windows\\System32\\dlcchbn3.dll
[3 C:\\ProgramData\\*.tmp files -> C:\\ProgramData\\*.tmp -> ]
[3 C:\\ProgramData\\*.tmp files -> C:\\ProgramData\\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2013/01/17 22:38:56 | 006,291,456 | -HS- | M] () -- C:\\Users\\Mengsk\\NTUSER.DAT
[2013/01/17 22:36:00 | 000,000,830 | ---- | M] () -- C:\\Windows\\tasks\\Adobe Flash Player Updater.job
[2013/01/17 22:26:39 | 000,005,952 | ---- | M] () -- C:\\Windows\\System32\\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2013/01/17 22:26:39 | 000,005,952 | ---- | M] () -- C:\\Windows\\System32\\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2013/01/17 22:13:00 | 000,000,912 | ---- | M] () -- C:\\Windows\\tasks\\GoogleUpdateTaskUserS-1-5-21-3144074192-4086266024-1217872548-1000UA.job
[2013/01/17 21:58:00 | 000,000,270 | ---- | M] () -- C:\\Windows\\tasks\\Check Updates for Windows Live Toolbar.job
[2013/01/17 21:55:00 | 000,000,886 | ---- | M] () -- C:\\Windows\\tasks\\GoogleUpdateTaskMachineUA.job
[2013/01/17 16:33:34 | 000,707,520 | ---- | M] () -- C:\\Windows\\System32\\PerfStringBackup.INI
[2013/01/17 16:33:34 | 000,607,406 | ---- | M] () -- C:\\Windows\\System32\\perfh009.dat
[2013/01/17 16:33:34 | 000,105,046 | ---- | M] () -- C:\\Windows\\System32\\perfc009.dat
[2013/01/17 16:30:00 | 000,001,456 | ---- | M] () -- C:\\Users\\Mengsk\\AppData\\Local\\Adobe Save for Web 12.0 Prefs
[2013/01/17 16:27:22 | 000,000,745 | ---- | M] () -- C:\\Users\\Mengsk\\AppData\\Roaming\\AtomicAlarmClock.ini
[2013/01/17 16:26:41 | 000,000,882 | ---- | M] () -- C:\\Windows\\tasks\\GoogleUpdateTaskMachineCore.job
[2013/01/17 16:26:40 | 000,000,266 | ---- | M] () -- C:\\Windows\\tasks\\AutoKMS.job
[2013/01/17 16:26:39 | 000,000,006 | -H-- | M] () -- C:\\Windows\\tasks\\SA.DAT
[2013/01/17 16:26:36 | 000,067,584 | --S- | M] () -- C:\\Windows\\bootstat.dat
[2013/01/17 16:26:33 | 3488,931,840 | -HS- | M] () -- C:\\hiberfil.sys
[2013/01/17 16:24:30 | 000,524,288 | -HS- | M] () -- C:\\Users\\Mengsk\\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms
[2013/01/17 16:24:30 | 000,065,536 | -HS- | M] () -- C:\\Users\\Mengsk\\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf
[2013/01/17 16:24:27 | 000,543,204 | -H-- | M] () -- C:\\Users\\Mengsk\\AppData\\Local\\IconCache.db
[2013/01/17 14:26:00 | 000,000,868 | ---- | M] () -- C:\\Windows\\tasks\\Google Software Updater.job
[2013/01/17 13:13:00 | 000,000,860 | ---- | M] () -- C:\\Windows\\tasks\\GoogleUpdateTaskUserS-1-5-21-3144074192-4086266024-1217872548-1000Core.job
[2013/01/17 12:33:16 | 2663,538,036 | ---- | M] () -- C:\\Users\\Mengsk\\du.mkv
[2013/01/16 01:58:29 | 000,001,887 | ---- | M] () -- C:\\Users\\Public\\Desktop\\Adobe Reader 9.lnk
[2013/01/11 08:42:19 | 000,000,842 | ---- | M] () -- C:\\Users\\Public\\Desktop\\AVG 2013.lnk
[2013/01/11 07:15:15 | 000,002,049 | ---- | M] () -- C:\\Users\\Mengsk\\Application Data\\Microsoft\\Internet Explorer\\Quick Launch\\Google Chrome.lnk
[2013/01/09 03:28:31 | 004,014,432 | ---- | M] () -- C:\\Windows\\System32\\FNTCACHE.DAT
[2013/01/08 18:36:23 | 000,697,864 | ---- | M] (Adobe Systems Incorporated) -- C:\\Windows\\System32\\FlashPlayerApp.exe
[2013/01/08 18:36:23 | 000,074,248 | ---- | M] (Adobe Systems Incorporated) -- C:\\Windows\\System32\\FlashPlayerCPLApp.cpl
[2013/01/08 17:36:31 | 000,000,906 | ---- | M] () -- C:\\Users\\Public\\Desktop\\Malwarebytes Anti-Malware.lnk
[2013/01/05 00:38:43 | 002,693,480 | ---- | M] () -- C:\\Users\\Mengsk\\Digital Booklet - good kid, m.A.A.d.pdf
[2013/01/01 02:59:42 | 000,069,120 | ---- | M] () -- C:\\Users\\Mengsk\\AppData\\Local\\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/12/27 12:15:26 | 000,000,349 | ---- | M] () -- C:\\Users\\Public\\Documents\\PCLECHAL.INI
[2012/12/26 23:17:36 | 016,167,452 | ---- | M] () -- C:\\Users\\Mengsk\\Desktop\\Deadlift475.mpg
[2012/12/23 21:07:19 | 000,026,397 | ---- | M] () -- C:\\Users\\Mengsk\\Desktop\\Justin Movie Filmography.odt
[3 C:\\ProgramData\\*.tmp files -> C:\\ProgramData\\*.tmp -> ]
[3 C:\\ProgramData\\*.tmp files -> C:\\ProgramData\\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013/01/17 12:03:48 | 2663,538,036 | ---- | C] () -- C:\\Users\\Mengsk\\du.mkv
[2013/01/16 01:58:29 | 000,001,887 | ---- | C] () -- C:\\Users\\Public\\Desktop\\Adobe Reader 9.lnk
[2013/01/05 00:38:38 | 002,693,480 | ---- | C] () -- C:\\Users\\Mengsk\\Digital Booklet - good kid, m.A.A.d.pdf
[2012/12/26 23:17:18 | 016,167,452 | ---- | C] () -- C:\\Users\\Mengsk\\Desktop\\Deadlift475.mpg
[2012/08/29 12:43:04 | 000,027,520 | ---- | C] () -- C:\\Users\\Mengsk\\AppData\\Local\\dt.dat
[2011/12/09 02:25:24 | 000,001,456 | ---- | C] () -- C:\\Users\\Mengsk\\AppData\\Local\\Adobe Save for Web 12.0 Prefs
[2011/08/19 03:26:20 | 010,898,456 | ---- | C] () -- C:\\Windows\\System32\\LogiDPP.dll
[2011/08/19 03:26:20 | 000,336,408 | ---- | C] () -- C:\\Windows\\System32\\DevManagerCore.dll
[2011/07/26 00:48:54 | 000,028,418 | ---- | C] () -- C:\\Windows\\System32\\lvcoinst.ini
[2011/06/10 19:32:54 | 000,000,585 | ---- | C] () -- C:\\Users\\Mengsk\\AppData\\Roaming\\alarms.ini
[2011/06/05 20:16:09 | 000,000,745 | ---- | C] () -- C:\\Users\\Mengsk\\AppData\\Roaming\\AtomicAlarmClock.ini
[2011/04/18 02:11:54 | 000,000,328 | ---- | C] () -- C:\\ProgramData\\41344776
[2011/02/02 19:58:28 | 000,069,120 | ---- | C] () -- C:\\Users\\Mengsk\\AppData\\Local\\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/01/31 01:00:40 | 000,000,000 | ---- | C] () -- C:\\Users\\Mengsk\\AppData\\Local\\prvlcl.dat
[2010/11/05 01:19:04 | 000,000,056 | ---- | C] () -- C:\\ProgramData\\ezsidmv.dat
[2010/10/11 20:37:14 | 000,000,262 | ---- | C] () -- C:\\Windows\\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
[2010/07/22 13:56:56 | 000,000,565 | ---- | C] () -- C:\\Users\\Mengsk\\AppData\\Roaming\\myMPQ.ini
[2010/05/07 18:46:36 | 000,014,168 | ---- | C] () -- C:\\Windows\\System32\\drivers\\iKeyLFT2.dll
[2010/05/07 18:43:30 | 000,025,824 | ---- | C] () -- C:\\Windows\\System32\\drivers\\LVPr2Mon.sys
[2009/12/30 12:35:18 | 008,892,928 | ---- | C] () -- C:\\ProgramData\\atscie.msi
[2009/12/06 20:20:33 | 001,970,176 | ---- | C] () -- C:\\Windows\\System32\\d3dx9.dll
[2009/09/17 05:39:59 | 000,117,248 | ---- | C] () -- C:\\Windows\\System32\\EhStorAuthn.dll
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\\Windows\\System32\\OGACheckControl.dll
[2009/01/12 00:23:00 | 000,001,041 | ---- | C] () -- C:\\Users\\Mengsk\\AppData\\Roaming\\vso_ts_preview.xml
[2008/12/30 23:43:53 | 000,007,887 | ---- | C] () -- C:\\Users\\Mengsk\\AppData\\Roaming\\pcouffin.cat
[2008/12/30 23:43:53 | 000,001,144 | ---- | C] () -- C:\\Users\\Mengsk\\AppData\\Roaming\\pcouffin.inf
[2008/12/30 23:43:53 | 000,000,034 | ---- | C] () -- C:\\Users\\Mengsk\\AppData\\Roaming\\pcouffin.log
[2008/12/28 11:29:45 | 000,815,104 | ---- | C] () -- C:\\Windows\\System32\\xvidcore.dll
[2008/12/28 11:29:45 | 000,180,224 | ---- | C] () -- C:\\Windows\\System32\\xvidvfw.dll
[2008/12/28 01:36:54 | 000,000,125 | -HS- | C] () -- C:\\ProgramData\\.zreglib
[2008/11/21 15:47:52 | 003,596,288 | ---- | C] () -- C:\\Windows\\System32\\qt-dx331.dll
[2008/11/21 15:45:16 | 000,000,416 | ---- | C] () -- C:\\Windows\\System32\\dtu100.dll.manifest
[2008/11/21 15:45:16 | 000,000,416 | ---- | C] () -- C:\\Windows\\System32\\dpl100.dll.manifest
[2008/11/21 15:44:16 | 000,012,288 | ---- | C] () -- C:\\Windows\\System32\\DivXWMPExtType.dll
[2008/08/12 20:31:10 | 000,007,680 | ---- | C] () -- C:\\Windows\\System32\\ff_vfw.dll
[2008/08/12 20:31:10 | 000,000,547 | ---- | C] () -- C:\\Windows\\System32\\ff_vfw.dll.manifest
[2008/07/18 19:18:12 | 000,013,312 | ---- | C] () -- C:\\Windows\\System32\\drivers\\MTictwl.sys
[2008/07/15 06:42:52 | 000,000,274 | ---- | C] () -- C:\\Windows\\AWACT.dll
[2007/09/07 08:34:50 | 000,000,395 | ---- | C] () -- C:\\ProgramData\\pstrip.ini
[2007/02/07 12:57:16 | 000,344,064 | ---- | C] () -- C:\\Windows\\System32\\dlcccoin.dll
[2007/01/26 07:11:42 | 000,106,496 | ---- | C] () -- C:\\Windows\\System32\\dlccinsr.dll
[2007/01/26 07:11:20 | 000,036,864 | ---- | C] () -- C:\\Windows\\System32\\dlcccur.dll
[2007/01/26 07:09:58 | 000,135,168 | ---- | C] () -- C:\\Windows\\System32\\dlccjswr.dll
[2007/01/26 06:59:04 | 000,176,128 | ---- | C] () -- C:\\Windows\\System32\\dlccinsb.dll
[2007/01/26 06:58:30 | 000,086,016 | ---- | C] () -- C:\\Windows\\System32\\dlcccub.dll
[2007/01/26 06:57:38 | 000,073,728 | ---- | C] () -- C:\\Windows\\System32\\dlcccu.dll
[2007/01/26 06:57:18 | 000,159,744 | ---- | C] () -- C:\\Windows\\System32\\dlccins.dll
[2007/01/26 06:53:46 | 000,434,176 | ---- | C] () -- C:\\Windows\\System32\\dlccutil.dll
[2007/01/26 01:04:12 | 000,138,752 | ---- | C] () -- C:\\Windows\\System32\\mase32.dll
[2007/01/26 01:04:12 | 000,027,648 | ---- | C] () -- C:\\Windows\\System32\\ma32.dll
[2007/01/22 02:24:50 | 000,069,632 | ---- | C] () -- C:\\Windows\\System32\\dlcccfg.dll
[2006/11/02 06:35:32 | 000,005,632 | ---- | C] () -- C:\\Windows\\System32\\sysprepMCE.dll
[2006/11/02 01:40:29 | 000,013,750 | ---- | C] () -- C:\\Windows\\System32\\pacerprf.ini
[2006/10/18 23:44:48 | 000,007,680 | ---- | C] () -- C:\\Windows\\System32\\drivers\\ASACPI.sys
[2005/08/18 06:26:46 | 000,040,960 | ---- | C] () -- C:\\Windows\\System32\\dlccvs.dll
[2005/04/01 11:44:16 | 000,061,440 | ---- | C] () -- C:\\Windows\\System32\\dlcccnv4.dll
[1996/04/03 13:33:26 | 000,005,248 | ---- | C] () -- C:\\Windows\\System32\\giveio.sys
========== Alternate Data Streams ==========
@Alternate Data Stream - 3552 bytes -> C:\\Windows\\alienware logo_slvr.jpg:Q30lsldxJoudresxAaaqpcawXc
@Alternate Data Stream - 151 bytes -> C:\\ProgramData\\TEMP:D1B5B4F1
@Alternate Data Stream - 124 bytes -> C:\\ProgramData\\TEMP:288A91F8
< End of report >