[quote name='sharont6' date='29 July 2010 - 08:16 PM' timestamp='1280452572' post='471050']
Is this what you wanted?
OTL logfile created on: 7/29/2010 8:07:44 PM - Run 2
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\sharont6\Desktop\Media Files
Windows Vista Ultimate Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18928)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 45.00% Memory free
6.00 Gb Paging File | 4.00 Gb Available in Paging File | 66.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 173.48 Gb Total Space | 57.09 Gb Free Space | 32.91% Space Free | Partition Type: NTFS
Drive D: | 12.83 Gb Total Space | 12.74 Gb Free Space | 99.32% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: SHARONT6-PC
Current User Name: sharont6
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
[color="#e56717"]========== Processes (SafeList) ==========[/color]
PRC - [2010/07/23 21:41:15 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\sharont6\Desktop\Media Files\OTL.exe
PRC - [2010/07/13 14:08:50 | 000,304,304 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
PRC - [2010/06/24 08:47:24 | 000,231,888 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashUtil10h_ActiveX.exe
PRC - [2010/06/10 21:03:08 | 000,144,176 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
PRC - [2010/06/01 14:53:46 | 001,093,208 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Essentials\msseces.exe
PRC - [2010/05/11 11:51:52 | 001,287,120 | ---- | M] (PC Tools) -- C:\Program Files\Spyware Doctor\pctsTray.exe
PRC - [2010/05/09 19:39:35 | 000,030,192 | ---- | M] (Google) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
PRC - [2010/04/02 19:34:54 | 000,202,256 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2010/03/25 21:40:44 | 000,017,904 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Essentials\MsMpEng.exe
PRC - [2010/03/15 11:50:36 | 001,142,224 | ---- | M] (PC Tools) -- C:\Program Files\Spyware Doctor\pctsSvc.exe
PRC - [2010/03/11 11:09:22 | 000,366,840 | ---- | M] (PC Tools) -- C:\Program Files\Spyware Doctor\pctsAuxs.exe
PRC - [2010/01/22 08:56:24 | 000,112,592 | ---- | M] (Threat Expert Ltd.) -- C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
PRC - [2010/01/04 20:13:28 | 023,941,120 | ---- | M] () -- C:\Program Files\CounterPath\X-Lite\x-lite.exe
PRC - [2009/12/29 10:08:28 | 001,653,248 | R--- | M] (AWS Convergence Technologies, Inc.) -- C:\Program Files\AWS\WeatherBug\Weather.exe
PRC - [2009/12/01 18:11:15 | 000,039,408 | ---- | M] (Google Inc.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
PRC - [2009/10/26 14:46:54 | 001,458,176 | ---- | M] (Motorola Inc.) -- C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
PRC - [2009/07/24 14:52:02 | 003,121,760 | ---- | M] (SammSoft (
www.sammsoft.com)) -- C:\Program Files\MemTurbo 4\MemTurbo.exe
PRC - [2009/06/09 10:25:54 | 007,539,232 | ---- | M] (Realtek Semiconductor) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
PRC - [2009/04/11 01:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
[color="#e56717"]========== Modules (SafeList) ==========[/color]
MOD - [2010/07/23 21:41:15 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\sharont6\Desktop\Media Files\OTL.exe
MOD - [2010/02/26 07:16:18 | 000,154,160 | ---- | M] (PC Tools) -- C:\Program Files\Spyware Doctor\smum32.dll
MOD - [2009/10/30 10:18:16 | 000,147,024 | ---- | M] (PC Tools) -- C:\Program Files\Spyware Doctor\PCTGMhk.dll
MOD - [2009/04/11 01:21:38 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll
MOD - [2008/01/20 21:22:45 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msscript.ocx
[color="#e56717"]========== Win32 Services (SafeList) ==========[/color]
SRV - [2010/06/10 21:03:08 | 000,144,176 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010/05/09 19:39:35 | 000,030,192 | ---- | M] (Google) [On_Demand | Stopped] -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe -- (GoogleDesktopManager-110309-193829)
SRV - [2010/03/25 21:40:44 | 000,017,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Essentials\MsMpEng.exe -- (MsMpSvc)
SRV - [2010/03/15 11:50:36 | 001,142,224 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\Spyware Doctor\pctsSvc.exe -- (sdCoreService)
SRV - [2010/03/11 11:09:22 | 000,366,840 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\Spyware Doctor\pctsAuxs.exe -- (sdAuxService)
SRV - [2010/01/22 08:56:24 | 000,112,592 | ---- | M] (Threat Expert Ltd.) [Auto | Running] -- C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe -- (Browser Defender Update Service)
SRV - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
SRV - [2008/01/20 21:21:41 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
[color="#e56717"]========== Driver Services (SafeList) ==========[/color]
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - [2010/03/29 10:06:14 | 000,218,592 | ---- | M] (PC Tools) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\PCTCore.sys -- (PCTCore)
DRV - [2010/03/25 21:30:22 | 000,151,216 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\System32\drivers\MpFilter.sys -- (MpFilter)
DRV - [2010/03/25 21:30:22 | 000,042,368 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\MpNWMon.sys -- (MpNWMon)
DRV - [2009/10/26 15:09:06 | 001,095,936 | ---- | M] (Motorola Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\smserial.sys -- (smserial)
DRV - [2009/06/09 10:13:42 | 002,366,752 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RTKVHDA.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2009/04/10 23:42:54 | 000,073,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\USBAUDIO.sys -- (usbaudio) USB Audio Driver (WDM)
DRV - [2009/02/14 13:55:22 | 000,024,232 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\System32\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV - [2009/02/13 20:28:22 | 000,103,744 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AnyDVD.sys -- (AnyDVD)
DRV - [2008/11/17 16:40:22 | 003,668,480 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw5v32.sys -- (NETw5v32) Intel®
DRV - [2008/03/28 03:06:00 | 000,199,472 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SynTP.sys -- (SynTP)
DRV - [2008/02/10 21:36:10 | 002,302,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\igdkmd32.sys -- (igfx)
DRV - [2008/01/20 21:21:35 | 000,386,616 | ---- | M] (LSI Corporation, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasr.sys -- (MegaSR)
DRV - [2008/01/20 21:21:35 | 000,149,560 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320)
DRV - [2008/01/20 21:21:35 | 000,031,288 | ---- | M] (LSI Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasas.sys -- (megasas)
DRV - [2008/01/20 21:21:34 | 000,101,432 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m)
DRV - [2008/01/20 21:21:34 | 000,074,808 | ---- | M] (Silicon Integrated Systems) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4)
DRV - [2008/01/20 21:21:34 | 000,040,504 | ---- | M] (Hewlett-Packard Company) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs)
DRV - [2008/01/20 21:21:34 | 000,018,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\MODEMCSA.sys -- (MODEMCSA)
DRV - [2008/01/20 21:21:33 | 001,122,360 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300)
DRV - [2008/01/20 21:21:33 | 000,300,600 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci)
DRV - [2008/01/20 21:21:33 | 000,118,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\E1G60I32.sys -- (E1G60) Intel®
DRV - [2008/01/20 21:21:33 | 000,089,656 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS)
DRV - [2008/01/20 21:21:32 | 000,130,616 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid)
DRV - [2008/01/20 21:21:32 | 000,079,928 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas)
DRV - [2008/01/20 21:21:32 | 000,079,416 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arc.sys -- (arc)
DRV - [2008/01/20 21:21:31 | 000,235,064 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV)
DRV - [2008/01/20 21:21:31 | 000,115,816 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2)
DRV - [2008/01/20 21:21:31 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI)
DRV - [2008/01/20 21:21:31 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC)
DRV - [2008/01/20 21:21:30 | 000,342,584 | ---- | M] (Emulex) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor)
DRV - [2008/01/20 21:21:29 | 000,422,968 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx)
DRV - [2008/01/20 21:21:29 | 000,102,968 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid)
DRV - [2008/01/20 21:21:29 | 000,045,112 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor)
DRV - [2008/01/20 21:21:28 | 002,225,664 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETw3v32.sys -- (NETw3v32) Intel®
DRV - [2008/01/20 21:21:28 | 000,238,648 | ---- | M] (ULi Electronics Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci)
DRV - [2008/01/20 21:21:09 | 000,020,024 | ---- | M] (VIA Technologies, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\viaide.sys -- (viaide)
DRV - [2008/01/20 21:21:09 | 000,019,000 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide)
DRV - [2008/01/20 21:21:09 | 000,017,464 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\aliide.sys -- (aliide)
DRV - [2007/10/31 19:36:32 | 002,252,800 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETw4v32.sys -- (NETw4v32) Intel®
DRV - [2007/07/11 03:30:22 | 000,007,168 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HpqRemHid.sys -- (HpqRemHid)
DRV - [2007/06/18 18:12:04 | 000,016,768 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV - [2006/11/14 18:35:20 | 000,037,376 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2006/11/02 04:50:35 | 000,106,088 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx)
DRV - [2006/11/02 04:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata)
DRV - [2006/11/02 04:50:19 | 000,045,160 | ---- | M] (IBM Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960)
DRV - [2006/11/02 04:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp)
DRV - [2006/11/02 04:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx)
DRV - [2006/11/02 04:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid)
DRV - [2006/11/02 04:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi)
DRV - [2006/11/02 04:50:05 | 000,035,944 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx)
DRV - [2006/11/02 04:50:03 | 000,034,920 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3)
DRV - [2006/11/02 04:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x)
DRV - [2006/11/02 04:49:56 | 000,031,848 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi)
DRV - [2006/11/02 03:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM)
DRV - [2006/11/02 03:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer)
DRV - [2006/11/02 03:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp)
DRV - [2006/11/02 03:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo)
DRV - [2006/11/02 03:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm)
DRV - [2006/11/02 03:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm)
DRV - [2006/11/02 02:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi)
DRV - [2006/11/02 02:30:56 | 000,044,544 | ---- | M] (Realtek Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
DRV - [2005/12/22 18:02:22 | 000,051,840 | ---- | M] (REDC) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2005/12/12 12:56:00 | 000,015,232 | ---- | M] (Micronas GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\uac4pdt.sys -- (uac4pdt)
DRV - [2005/11/16 21:28:32 | 000,028,928 | ---- | M] (REDC) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)
[color="#e56717"]========== Standard Registry (SafeList) ==========[/color]
[color="#e56717"]========== Internet Explorer ==========[/color]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.wisdominparenting.com/IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
[color="#e56717"]========== FireFox ==========[/color]
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "
http://www.yahoo.com...w3i&type=W3i_SP,151,0_0,StartPage,20100625,6692,0,16,0"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.2.1
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.1.3
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {5835466c-49af-4cbe-b102-a8c8b6313749}:1.0.6
FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.1.1.20091029021655
FF - prefs.js..extensions.enabledItems: {BFF829B6-B433-42CE-9A19-E459D3E4E483}:3.6.3
FF - prefs.js..extensions.netassistant.keyword.url: "
http://click.w3i.com...6693&searchterm="
FF - prefs.js..network.proxy.socks: "127.0.0.1"
FF - prefs.js..network.proxy.socks_port: 8080
FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010/04/02 19:50:36 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/07/24 20:57:48 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/07/24 20:57:48 | 000,000,000 | ---D | M]
[2010/04/17 18:08:03 | 000,000,000 | ---D | M] -- C:\Users\sharont6\AppData\Roaming\Mozilla\Extensions
[2010/04/17 18:08:03 | 000,000,000 | ---D | M] -- C:\Users\sharont6\AppData\Roaming\Mozilla\Extensions\
[email protected][2010/07/24 15:16:37 | 000,000,000 | ---D | M] -- C:\Users\sharont6\AppData\Roaming\Mozilla\Firefox\Profiles\0bgzwofg.default\extensions
[2010/06/17 00:42:43 | 000,000,000 | ---D | M] (Shop to Win) -- C:\Users\sharont6\AppData\Roaming\Mozilla\Firefox\Profiles\0bgzwofg.default\extensions\{5835466c-49af-4cbe-b102-a8c8b6313749}
[2010/06/17 00:41:39 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\sharont6\AppData\Roaming\Mozilla\Firefox\Profiles\0bgzwofg.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2010/07/16 21:00:36 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\sharont6\AppData\Roaming\Mozilla\Firefox\Profiles\0bgzwofg.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010/04/09 18:41:37 | 000,002,424 | ---- | M] () -- C:\Users\sharont6\AppData\Roaming\Mozilla\Firefox\Profiles\0bgzwofg.default\searchplugins\askcom.xml
[2010/06/17 00:45:59 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010/05/14 18:18:29 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010/04/12 17:29:19 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
O1 HOSTS File: ([2006/09/18 16:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (PC Tools Browser Guard BHO) - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.5126.1836\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
O4 - HKLM..\Run: [ISTray] C:\Program Files\Spyware Doctor\pctsTray.exe (PC Tools)
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [MSSE] c:\Program Files\Microsoft Security Essentials\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe (Motorola Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [AROReminder] C:\Program Files\Advanced Registry Optimizer\ARO.exe (Sammsoft)
O4 - HKCU..\Run: [eyeBeam SIP Client] C:\Program Files\CounterPath\X-Lite\x-lite.exe ()
O4 - HKCU..\Run: [Messenger (Yahoo!)] C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
O4 - HKCU..\Run: [Power2GoExpress] File not found
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKCU..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe (AWS Convergence Technologies, Inc.)
O4 - Startup: C:\Users\sharont6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MemTurbo.lnk = C:\Program Files\MemTurbo 4\MemTurbo.exe (SammSoft (
www.sammsoft.com))
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {3D3B42C2-11BF-4732-A304-A01384B70D68}
http://picasaweb.goo...1/uploader2.cab (UploadListView Class)
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC}
https://h20436.www2....re/HPDEXAXO.cab (HP Download Manager)
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203}
http://h20270.www2.h...ctDetection.cab (GMNRev Class)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968}
http://upload.facebo...oUploader55.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.ma...r/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\Windows\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\Users\sharont6\Pictures\sunsets\cruise 044.jpg
O24 - Desktop BackupWallPaper: C:\Users\sharont6\Pictures\sunsets\cruise 044.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 16:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
[color="#e56717"]========== Files/Folders - Created Within 30 Days ==========[/color]
[2010/07/28 18:54:28 | 000,000,000 | ---D | C] -- C:\Users\sharont6\AppData\Roaming\Malwarebytes
[2010/07/28 18:54:18 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/07/28 18:54:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010/07/28 18:54:16 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/07/28 18:54:16 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/07/28 18:26:26 | 000,000,000 | ---D | C] -- C:\Users\sharont6\AppData\Roaming\Sammsoft
[2010/07/28 18:26:12 | 000,000,000 | ---D | C] -- C:\Program Files\MemTurbo 4
[2010/07/28 18:25:23 | 000,000,000 | ---D | C] -- C:\Program Files\Advanced Registry Optimizer
[2010/07/28 18:19:34 | 000,000,000 | ---D | C] -- C:\Users\sharont6\Desktop\movies
[2010/07/28 16:32:13 | 000,149,456 | ---- | C] (PC Tools) -- C:\Windows\SGDetectionTool.dll
[2010/07/28 16:32:12 | 001,652,688 | ---- | C] (Threat Expert Ltd.) -- C:\Windows\PCTBDCore.dll
[2010/07/28 16:32:12 | 000,165,840 | ---- | C] (Threat Expert Ltd.) -- C:\Windows\PCTBDRes.dll
[2010/07/28 16:22:58 | 000,233,136 | ---- | C] (PC Tools) -- C:\Windows\System32\drivers\pctgntdi.sys
[2010/07/28 16:22:58 | 000,100,136 | ---- | C] (PC Tools) -- C:\Windows\System32\drivers\pctwfpfilter.sys
[2010/07/28 16:22:47 | 000,218,592 | ---- | C] (PC Tools) -- C:\Windows\System32\drivers\PCTCore.sys
[2010/07/28 16:22:47 | 000,088,040 | ---- | C] (PC Tools) -- C:\Windows\System32\drivers\PCTAppEvent.sys
[2010/07/28 16:22:34 | 000,063,360 | ---- | C] (PC Tools) -- C:\Windows\System32\drivers\pctplsg.sys
[2010/07/28 16:22:14 | 000,000,000 | ---D | C] -- C:\Program Files\Spyware Doctor
[2010/07/28 16:22:14 | 000,000,000 | ---D | C] -- C:\Users\sharont6\AppData\Roaming\PC Tools
[2010/07/28 16:22:14 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Tools
[2010/07/28 16:22:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PC Tools
[2010/07/28 16:06:48 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2010/07/28 07:52:24 | 000,000,000 | ---D | C] -- C:\_OTL
[2010/07/26 17:50:56 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2010/07/25 09:54:31 | 000,117,760 | ---- | C] (Hewlett-Packard Company) -- C:\Windows\System32\hpzll64X.dll
[2010/07/25 09:50:44 | 000,000,000 | ---D | C] -- C:\Users\sharont6\AppData\Roaming\HpUpdate
[2010/07/25 09:50:39 | 000,000,000 | ---D | C] -- C:\Windows\Hewlett-Packard
[2010/07/23 21:13:56 | 000,000,000 | ---D | C] -- C:\Users\sharont6\Documents\X-Lite
[2010/07/23 21:03:04 | 000,000,000 | ---D | C] -- C:\ProgramData\CounterPath
[2010/07/23 21:02:58 | 000,000,000 | ---D | C] -- C:\Users\sharont6\AppData\Local\CounterPath
[2010/07/23 21:02:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Intel
[2010/07/23 21:02:46 | 000,000,000 | ---D | C] -- C:\Program Files\CounterPath
[2010/07/23 19:49:48 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010/07/23 19:42:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010/07/23 19:33:40 | 000,000,000 | ---D | C] -- C:\Users\sharont6\Documents\Remote Assistance Logs
[2010/07/09 18:50:47 | 000,000,000 | ---D | C] -- C:\Users\sharont6\Desktop\Lynne's Art
[2010/07/02 13:02:51 | 000,000,000 | ---D | C] -- C:\ProgramData\{728FC1F2-CDDF-47DE-9CD1-E5787B8B3764}
[1 C:\Users\sharont6\Documents\*.tmp files -> C:\Users\sharont6\Documents\*.tmp -> ]
[color="#e56717"]========== Files - Modified Within 30 Days ==========[/color]
[2010/07/29 20:13:00 | 005,242,880 | -HS- | M] () -- C:\Users\sharont6\NTUSER.DAT
[2010/07/29 20:04:00 | 000,000,890 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010/07/29 19:53:00 | 000,000,920 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-990035405-2007910519-4216647221-1000UA.job
[2010/07/29 18:54:11 | 000,003,744 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/07/29 18:54:11 | 000,003,744 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/07/29 17:33:44 | 000,000,424 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{59EBA438-37C2-4E7D-89B7-E443A28A035A}.job
[2010/07/29 17:04:00 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010/07/29 13:53:00 | 000,000,868 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-990035405-2007910519-4216647221-1000Core.job
[2010/07/29 13:11:07 | 000,198,116 | ---- | M] () -- C:\Users\sharont6\Desktop\calendar.1.2.3.zip
[2010/07/29 06:54:13 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/07/28 19:15:10 | 000,595,684 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010/07/28 19:15:10 | 000,101,350 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010/07/28 19:15:09 | 000,690,960 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010/07/28 19:13:26 | 000,000,824 | ---- | M] () -- C:\Users\sharont6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MemTurbo.lnk
[2010/07/28 19:13:06 | 000,000,279 | ---- | M] () -- C:\Users\Public\Documents\hpqp.ini
[2010/07/28 19:09:25 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/07/28 19:09:20 | 3211,190,272 | -HS- | M] () -- C:\hiberfil.sys
[2010/07/28 19:08:09 | 000,524,288 | -HS- | M] () -- C:\Users\sharont6\NTUSER.DAT{0f69446d-6a70-11db-8eb3-985e31beb686}.TMContainer00000000000000000001.regtrans-ms
[2010/07/28 19:08:09 | 000,065,536 | -HS- | M] () -- C:\Users\sharont6\NTUSER.DAT{0f69446d-6a70-11db-8eb3-985e31beb686}.TM.blf
[2010/07/28 19:08:08 | 001,527,590 | -H-- | M] () -- C:\Users\sharont6\AppData\Local\IconCache.db
[2010/07/28 18:29:53 | 000,016,384 | ---- | M] () -- C:\Users\sharont6\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/07/28 18:26:15 | 000,001,824 | ---- | M] () -- C:\Users\sharont6\Application Data\Microsoft\Internet Explorer\Quick Launch\Check PC For Errors.lnk
[2010/07/28 18:26:14 | 000,000,786 | ---- | M] () -- C:\Users\sharont6\Application Data\Microsoft\Internet Explorer\Quick Launch\MemTurbo - PC Optimizer.lnk
[2010/07/28 07:46:51 | 000,551,610 | ---- | M] () -- C:\Users\sharont6\Desktop\The-Butterfly-Effect-Report-New.pdf
[2010/07/26 17:07:39 | 000,817,664 | ---- | M] () -- C:\Users\sharont6\Desktop\thesecretpathof.docx
[2010/07/26 17:07:39 | 000,817,664 | ---- | M] () -- C:\Users\sharont6\Desktop\thesecretpathof - Copy.docx
[2010/07/25 23:15:18 | 196,393,250 | ---- | M] () -- C:\Users\sharont6\Desktop\FinancialAbundance-Download.zip
[2010/07/25 15:34:55 | 000,002,627 | ---- | M] () -- C:\Users\sharont6\Desktop\Microsoft Office Word 2007 (2).lnk
[2010/07/25 15:34:31 | 000,782,542 | ---- | M] () -- C:\Users\sharont6\Documents\thesecretpathof.pdf
[2010/07/25 14:54:37 | 000,012,677 | ---- | M] () -- C:\Users\sharont6\Documents\How to Raise Vibrational Rates.docx
[2010/07/25 12:03:07 | 000,031,232 | ---- | M] () -- C:\Users\sharont6\Documents\Tic-Tac-ToeSoc…udiesBoard.doc
[2010/07/25 09:45:34 | 000,000,354 | ---- | M] () -- C:\Windows\tasks\Driver Fetch.job
[2010/07/24 14:52:05 | 000,012,139 | ---- | M] () -- C:\Users\sharont6\Documents\My New Life.docx
[2010/07/23 21:02:51 | 000,000,924 | ---- | M] () -- C:\Users\sharont6\Desktop\X-Lite.lnk
[2010/07/23 19:33:40 | 000,000,176 | ---- | M] () -- C:\Users\sharont6\AppData\Local\rahistory.xml
[2010/07/22 20:43:23 | 000,010,261 | ---- | M] () -- C:\Users\sharont6\Desktop\isbn#.docx
[2010/07/22 20:42:51 | 000,497,958 | ---- | M] () -- C:\Users\sharont6\Desktop\Minitemplate.docx
[2010/07/22 20:38:09 | 000,010,253 | ---- | M] () -- C:\Users\sharont6\Documents\isbn#.docx
[2010/07/21 18:32:34 | 000,051,200 | ---- | M] () -- C:\Users\sharont6\AppData\Roaming\b047c0e9.exe
[2010/07/20 22:16:00 | 000,009,704 | ---- | M] () -- C:\Users\sharont6\.recently-used.xbel
[2010/07/19 16:28:54 | 005,468,981 | ---- | M] () -- C:\Users\sharont6\Desktop\Hi, My Name Is Rocky.pptx
[2010/07/19 15:01:13 | 000,312,376 | ---- | M] () -- C:\Users\sharont6\Desktop\healing.docx
[2010/07/18 19:55:46 | 000,011,755 | ---- | M] () -- C:\Users\sharont6\Documents\Help Rocky.docx
[2010/07/16 21:22:33 | 000,019,357 | ---- | M] () -- C:\Users\sharont6\Documents\The List.docx
[2010/07/16 20:48:41 | 000,059,392 | ---- | M] () -- C:\Users\sharont6\Desktop\Rockypoems.doc
[2010/07/16 14:40:12 | 002,711,875 | ---- | M] () -- C:\Users\sharont6\Documents\Hi, My Name Is Rocky.pptx
[2010/07/10 17:14:44 | 000,011,199 | ---- | M] () -- C:\Users\sharont6\Desktop\Teaching Tips to Start the Year.docx
[2010/07/06 16:35:11 | 000,075,997 | ---- | M] () -- C:\Users\sharont6\Desktop\The List.docx
[2010/07/02 07:09:50 | 000,053,922 | ---- | M] () -- C:\Users\sharont6\Documents\Michaelresume.docx
[2010/07/01 19:49:21 | 000,054,644 | ---- | M] () -- C:\Users\sharont6\Documents\res.docx
[2010/07/01 09:01:09 | 000,012,747 | ---- | M] () -- C:\Users\sharont6\Desktop\50 Ways to Increase Traffic.docx
[1 C:\Users\sharont6\Documents\*.tmp files -> C:\Users\sharont6\Documents\*.tmp -> ]
[color="#e56717"]========== Files Created - No Company Name ==========[/color]
[2010/07/29 13:11:05 | 000,198,116 | ---- | C] () -- C:\Users\sharont6\Desktop\calendar.1.2.3.zip
[2010/07/28 18:26:15 | 000,001,824 | ---- | C] () -- C:\Users\sharont6\Application Data\Microsoft\Internet Explorer\Quick Launch\Check PC For Errors.lnk
[2010/07/28 18:26:14 | 000,000,824 | ---- | C] () -- C:\Users\sharont6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MemTurbo.lnk
[2010/07/28 18:26:14 | 000,000,786 | ---- | C] () -- C:\Users\sharont6\Application Data\Microsoft\Internet Explorer\Quick Launch\MemTurbo - PC Optimizer.lnk
[2010/07/28 16:32:14 | 000,767,952 | ---- | C] () -- C:\Windows\BDTSupport.dll
[2010/07/28 16:32:13 | 001,152,444 | ---- | C] () -- C:\Windows\UDB.zip
[2010/07/28 16:32:13 | 000,000,882 | ---- | C] () -- C:\Windows\RegSDImport.xml
[2010/07/28 16:32:13 | 000,000,879 | ---- | C] () -- C:\Windows\RegISSImport.xml
[2010/07/28 16:32:13 | 000,000,131 | ---- | C] () -- C:\Windows\IDB.zip
[2010/07/28 16:22:58 | 000,007,387 | ---- | C] () -- C:\Windows\System32\drivers\pctgntdi.cat
[2010/07/28 16:22:47 | 000,007,412 | ---- | C] () -- C:\Windows\System32\drivers\PCTAppEvent.cat
[2010/07/28 16:22:47 | 000,007,383 | ---- | C] () -- C:\Windows\System32\drivers\pctcore.cat
[2010/07/28 16:22:34 | 000,007,383 | ---- | C] () -- C:\Windows\System32\drivers\pctplsg.cat
[2010/07/28 07:46:51 | 000,551,610 | ---- | C] () -- C:\Users\sharont6\Desktop\The-Butterfly-Effect-Report-New.pdf
[2010/07/26 17:10:13 | 000,817,664 | ---- | C] () -- C:\Users\sharont6\Desktop\thesecretpathof - Copy.docx
[2010/07/25 15:34:27 | 000,782,542 | ---- | C] () -- C:\Users\sharont6\Documents\thesecretpathof.pdf
[2010/07/25 12:42:28 | 000,012,677 | ---- | C] () -- C:\Users\sharont6\Documents\How to Raise Vibrational Rates.docx
[2010/07/24 09:11:29 | 000,012,139 | ---- | C] () -- C:\Users\sharont6\Documents\My New Life.docx
[2010/07/23 21:02:51 | 000,000,924 | ---- | C] () -- C:\Users\sharont6\Desktop\X-Lite.lnk
[2010/07/23 19:33:40 | 000,000,176 | ---- | C] () -- C:\Users\sharont6\AppData\Local\rahistory.xml
[2010/07/22 20:43:22 | 000,010,261 | ---- | C] () -- C:\Users\sharont6\Desktop\isbn#.docx
[2010/07/22 20:38:08 | 000,010,253 | ---- | C] () -- C:\Users\sharont6\Documents\isbn#.docx
[2010/07/22 17:11:25 | 000,497,958 | ---- | C] () -- C:\Users\sharont6\Desktop\Minitemplate.docx
[2010/07/21 18:32:34 | 000,051,200 | ---- | C] () -- C:\Users\sharont6\AppData\Roaming\b047c0e9.exe
[2010/07/20 22:16:00 | 000,009,704 | ---- | C] () -- C:\Users\sharont6\.recently-used.xbel
[2010/07/19 15:01:12 | 000,312,376 | ---- | C] () -- C:\Users\sharont6\Desktop\healing.docx
[2010/07/18 19:55:45 | 000,011,755 | ---- | C] () -- C:\Users\sharont6\Documents\Help Rocky.docx
[2010/07/16 21:22:33 | 000,019,357 | ---- | C] () -- C:\Users\sharont6\Documents\The List.docx
[2010/07/16 14:46:46 | 005,468,981 | ---- | C] () -- C:\Users\sharont6\Desktop\Hi, My Name Is Rocky.pptx
[2010/07/16 14:42:43 | 000,016,384 | ---- | C] () -- C:\Users\sharont6\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/07/16 14:04:35 | 002,711,875 | ---- | C] () -- C:\Users\sharont6\Documents\Hi, My Name Is Rocky.pptx
[2010/07/16 13:35:47 | 000,059,392 | ---- | C] () -- C:\Users\sharont6\Desktop\Rockypoems.doc
[2010/07/10 16:41:49 | 000,011,199 | ---- | C] () -- C:\Users\sharont6\Desktop\Teaching Tips to Start the Year.docx
[2010/07/02 16:27:28 | 196,393,250 | ---- | C] () -- C:\Users\sharont6\Desktop\FinancialAbundance-Download.zip
[2010/07/01 19:49:21 | 000,054,644 | ---- | C] () -- C:\Users\sharont6\Documents\res.docx
[2010/06/30 18:05:05 | 000,053,922 | ---- | C] () -- C:\Users\sharont6\Documents\Michaelresume.docx
[2010/06/01 13:31:20 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
[2008/12/14 16:55:42 | 000,057,344 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2008/02/10 21:55:18 | 000,147,456 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1437.dll
[2008/01/20 21:23:41 | 000,081,158 | ---- | C] () -- C:\Windows\System32\manage-bde.ini.en
[2006/11/02 07:34:20 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 02:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/03/09 17:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2005/05/06 20:06:00 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
[color="#e56717"]========== Alternate Data Streams ==========[/color]
@Alternate Data Stream - 24 bytes -> C:\Windows:321853CCE3400771
@Alternate Data Stream - 170 bytes -> C:\ProgramData\TEMP:DFC5A2B2
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:A8ADE5D8
< End of report >
[/quote]Is this the Extra?
OTL Extras logfile created on: 7/29/2010 8:07:44 PM - Run 2
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\sharont6\Desktop\Media Files
Windows Vista Ultimate Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18928)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 45.00% Memory free
6.00 Gb Paging File | 4.00 Gb Available in Paging File | 66.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 173.48 Gb Total Space | 57.09 Gb Free Space | 32.91% Space Free | Partition Type: NTFS
Drive D: | 12.83 Gb Total Space | 12.74 Gb Free Space | 99.32% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: SHARONT6-PC
Current User Name: sharont6
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{4788B68F-C191-4ABB-8FC4-64CAC09EB819}" = rport=445 | protocol=6 | dir=out | app=system |
"{49977757-7F9D-4016-BCB7-E7AD25D1691A}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=c:\windows\system32\spoolsv.exe |
"{4F313F30-CA30-4009-B1CD-BAF87FF36403}" = lport=138 | protocol=17 | dir=in | app=system |
"{605AAFF6-7984-4292-A004-C90A51508189}" = rport=138 | protocol=17 | dir=out | app=system |
"{74245940-CA6C-4DA6-9697-8CFF8FFA7236}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=c:\windows\system32\svchost.exe |
"{811FFA1A-54AA-4DC4-BC5B-30CA2031C83E}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=file and printer sharing (spooler service - rpc-epmap) |
"{84A57273-D89F-402F-9772-579E30C7EC6B}" = lport=445 | protocol=6 | dir=in | app=system |
"{93BC8ED2-A664-40C7-BF5D-ED773DB68E55}" = rport=139 | protocol=6 | dir=out | app=system |
"{B53B0D8A-9AEF-41A3-8828-A8AAD4F34024}" = lport=67 | protocol=17 | dir=in | name=dhcp discovery service |
"{C34290BC-7B3E-43B6-A312-97F3D161EA2B}" = lport=67 | protocol=17 | dir=in | name=dhcp discovery service |
"{CB3C7D61-53CA-4008-8ADC-A51BF1E0E96A}" = rport=137 | protocol=17 | dir=out | app=system |
"{DACF26BF-D208-4E89-AD1A-3E48B134581E}" = lport=139 | protocol=6 | dir=in | app=system |
"{EBBC3ED1-0250-4E98-B1E4-BC3FF4F4D7BC}" = lport=137 | protocol=17 | dir=in | app=system |
"{F6CFA15D-7805-42A7-ABF8-1F2D6586236F}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe |
========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0CE4CCA5-1DED-4B02-8854-AE26F57C38C7}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe |
"{10B6CEC0-BBEA-4E48-981D-344DCF3C2B00}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1A37A410-901B-4B98-86F7-403FA19F0B40}" = protocol=17 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe |
"{29BD4D47-DB05-46C3-A016-4F8BB68B6CDA}" = protocol=58 | dir=in | name=file and printer sharing (echo request - icmpv6-in) |
"{2DD2E8ED-4CF5-4D10-ABC8-168F950A78EE}" = protocol=1 | dir=out | name=file and printer sharing (echo request - icmpv4-out) |
"{39CF86E0-7414-4B51-9034-FE97A7C879C2}" = dir=in | app=c:\program files\hp\quickplay\qp.exe |
"{3AD89BB3-0E0B-4FD5-9431-FA9CF66F9E17}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{3E2B1BEC-F84F-400B-B8E6-E1D071409F7F}" = protocol=58 | dir=out | name=file and printer sharing (echo request - icmpv6-out) |
"{443E5841-76A7-46C0-8D0E-05B287D4B23D}" = protocol=6 | dir=in | app=c:\program files\limewire\limewire.exe |
"{47EB578A-DC83-4F99-A4C1-91DAC4E86D62}" = protocol=17 | dir=in | app=c:\program files\limewire\limewire.exe |
"{54F553E7-0C1A-4B74-9664-704CDE71DD67}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
"{66EE03F6-E5FC-45A5-9FC0-19CCBD1EFAC3}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
"{6AF59B94-C25B-417F-8704-81459DC91975}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe |
"{74322C78-E1B4-4E95-A27A-96BBD9C4CAE9}" = protocol=17 | dir=in | app=c:\program files\common files\pure networks shared\platform\nmsrvc.exe |
"{8F6A2C0E-CCCC-4FBB-9EDC-03DF7983DB78}" = dir=in | app=c:\program files\hp\quickplay\qpservice.exe |
"{A4015357-7009-419E-A6AE-45A467C6C960}" = protocol=6 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe |
"{AA8917F7-7290-429F-9D89-4E8B7D5A3438}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{BC08EE18-495A-4D4E-8450-1BCF87F9060D}" = protocol=1 | dir=in | name=file and printer sharing (echo request - icmpv4-in) |
"{D34CEF0F-5470-435D-8705-39D95BD40ACC}" = protocol=6 | dir=in | app=c:\program files\common files\pure networks shared\platform\nmsrvc.exe |
"{D574F928-32AB-493E-A7B0-225A6EC447CE}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{FC31FAFD-4884-4D81-B7B6-961904CB8790}" = dir=in | app=c:\program files\cyberlink\powerdirector\pdr.exe |
"{FD78058D-A757-42DD-82BD-C98E9B1A4754}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"TCP Query User{2E236CB7-D22B-4E05-88B2-827043010A49}C:\program files\counterpath\x-lite\x-lite.exe" = protocol=6 | dir=in | app=c:\program files\counterpath\x-lite\x-lite.exe |
"TCP Query User{5A9F7F1D-301F-406C-96C0-6631742D5863}C:\program files\counterpath\x-lite\x-lite.exe" = protocol=6 | dir=in | app=c:\program files\counterpath\x-lite\x-lite.exe |
"TCP Query User{8F1D38FA-395D-4341-8180-85B199A276AC}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{2037AB80-71F5-4998-B484-B04C03D50942}C:\program files\counterpath\x-lite\x-lite.exe" = protocol=17 | dir=in | app=c:\program files\counterpath\x-lite\x-lite.exe |
"UDP Query User{8ED96A20-EFEB-431A-A5FA-F9E805FA12B5}C:\program files\counterpath\x-lite\x-lite.exe" = protocol=17 | dir=in | app=c:\program files\counterpath\x-lite\x-lite.exe |
"UDP Query User{F7A0A60D-8A01-4605-B0F3-F113AD06E9A3}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{0CB9668D-F979-4F31-B8B8-67FE90F929F8}" = Bonjour
"{10E1E87C-656C-4D08-86D6-5443D28583BE}" = TrayApp
"{13F00518-807A-4B3A-83B0-A7CD90F3A398}" = MarketResearch
"{1753255A-0AEB-4220-8C75-607B73F0C133}" = Copy
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = DVD Suite
"{22466889-7642-488d-AA0E-F619704CF7AB}" = DeviceDiscovery
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{26A24AE4-039D-4CA4-87B4-2F83216010FF}" = Java(TM) 6 Update 20
"{26B878A8-5704-3B64-BDBC-4F0EACA38121}" = Google Talk Plugin
"{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime
"{29FA38B4-0AE4-4D0D-8A51-6165BB990BB0}" = WebReg
"{2F28B3C9-2C89-4206-8B33-8ADC9577C49B}" = Scan
"{30DAA715-5032-40F9-A0AE-95C9AEBB3E3F}" = HP QuickTouch 1.00 D2
"{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons 6.40 H2
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{45D707E9-F3C4-11D9-A373-0050BAE317E1}" = HP QuickPlay 3.6
"{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}" = HPSSupply
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4F41AD68-89F2-4262-A32C-2F70B01FCE9E}" = Photo Story 3 for Windows
"{543E938C-BDC4-4933-A612-01293996845F}" = UnloadSupport
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6DC0CBB2-F919-4bdd-A608-E8FE35E03237}" = MX Skype Recorder v3.4
"{6EE738C2-0ECE-4917-B62D-D3061A6B29E7}" = Skype Integration
"{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7AB3A249-FB81-416B-917A-A2A10E74C503}" = iTunes
"{824D3839-DAA1-4315-A822-7AE3E620E528}" = VideoToolkit01
"{835E1FFE-7B14-45F9-9A93-18B6EDAC255D}" = VoIPVoice Integration
"{8389382B-53BA-4A87-8854-91E3D80A5AC7}" = HP Photosmart Essential2.01
"{85991ED2-010C-4930-96FA-52F43C2CE98A}" = Apple Mobile Device Support
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8F018A9E-56DE-4A79-A5EF-25F413F1D538}" = WeatherBug
"{90120000-0014-0000-0000-0000000FF1CE}" = Microsoft Office Professional 2007
"{90120000-0014-0000-0000-0000000FF1CE}_PRO_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0014-0000-0000-0000000FF1CE}_PRO_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120