SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
ActiveX: {0291E591-EA41-4c82-8106-3DC6CE7F7664} - Reg Error: Value error.
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} -
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 11.0
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} - Reg Error: Value error.
ActiveX: {347B0667-C7ED-429B-BDE3-CC8D3BACAA31} - Reg Error: Value error.
ActiveX: {38539595-3E29-410d-ABBD-3D6A75BC9A73} - Reg Error: Value error.
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3C3901C5-3455-3E0A-A214-0B093A5070A6} - .NET Framework
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} -
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.8
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\system32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} - Adobe Flash Player
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - Reg Error: Value error.
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\system32\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\system32\ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
Drivers32: msacm.ac3acm - C:\Windows\System32\AC3ACM.acm (fccHandler)
Drivers32: msacm.alf2cd - C:\Windows\System32\alf2cd.acm (NCT Company)
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.scg726 - C:\Windows\System32\Scg726.acm (SHARP Corporation)
Drivers32: msacm.voxacm160 - C:\Windows\System32\vct3216.acm (Voxware, Inc.)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\System32\divx.dll (DivXNetworks, Inc.)
Drivers32: vidc.dvsd - C:\Windows\System32\mcdvd_32.dll (MainConcept)
Drivers32: vidc.tscc - C:\Windows\System32\tsccvid.dll (TechSmith Corporation)
Drivers32: vidc.xvid - C:\Windows\System32\xvidvfw.dll ()
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2010/12/17 06:13:27 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Users\inhissteps\Desktop\OTL.exe
[2010/12/16 08:31:38 | 000,000,000 | ---D | C] -- C:\Users\inhissteps\Documents\erunt[1]
[2010/12/16 08:00:18 | 000,000,000 | ---D | C] -- C:\Users\inhissteps\AppData\Roaming\Malwarebytes
[2010/12/16 08:00:13 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/12/16 08:00:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010/12/16 08:00:09 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/12/16 08:00:09 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/12/16 07:50:10 | 000,446,464 | ---- | C] (OldTimer Tools) -- C:\Users\inhissteps\Desktop\TFC.exe
[2010/12/16 06:42:59 | 000,044,544 | ---- | C] (Absolute Software Corp.) -- C:\Windows\System32\agremove.exe
[2010/12/15 15:50:46 | 000,000,000 | ---D | C] -- C:\ProgramData\gOgDj06308
[2010/12/14 15:50:19 | 002,038,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2010/12/14 15:50:14 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\taskschd.dll
[2010/12/14 15:50:14 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmicmiplugin.dll
[2010/12/14 15:50:14 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\taskcomp.dll
[2010/12/14 15:50:12 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\consent.exe
[2010/12/14 15:49:58 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010/12/14 15:49:57 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2010/12/14 15:49:56 | 001,469,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2010/12/14 15:49:56 | 000,602,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2010/12/14 15:49:56 | 000,387,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010/12/14 15:49:56 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2010/12/14 15:49:55 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2010/12/14 15:49:55 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2010/12/14 15:49:55 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2010/12/14 15:49:55 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2010/12/14 15:49:55 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2010/12/14 15:49:55 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2010/12/14 15:49:55 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2010/12/14 15:49:55 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2010/12/14 15:49:55 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010/12/14 15:49:55 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2010/12/14 15:49:55 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2010/12/14 15:49:53 | 000,292,352 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2010/12/14 15:49:53 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2010/12/14 15:49:53 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2010/12/14 15:49:40 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010/12/12 16:29:31 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2010/12/12 16:28:18 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2010/12/12 15:55:33 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2010/12/12 15:49:26 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime
[2010/11/29 17:38:30 | 000,094,208 | ---- | C] (Apple Inc.) -- C:\Windows\System32\QuickTimeVR.qtx
[2010/11/29 17:38:30 | 000,069,632 | ---- | C] (Apple Inc.) -- C:\Windows\System32\QuickTime.qts
[2010/11/20 21:13:08 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2010/11/20 21:12:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2010/11/20 21:09:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Leapfrog
[2010/11/20 21:09:12 | 000,000,000 | ---D | C] -- C:\Program Files\LeapFrog
[2010/11/18 22:32:10 | 000,000,000 | ---D | C] -- C:\Program Files\SiteAdvisor
[2010/11/18 22:30:37 | 000,009,344 | ---- | C] (McAfee, Inc.) -- C:\Windows\System32\drivers\mfeclnk.sys
[2010/11/18 22:30:18 | 000,164,840 | ---- | C] (McAfee, Inc.) -- C:\Windows\System32\drivers\mfewfpk.sys
[2010/11/18 22:30:18 | 000,084,264 | ---- | C] (McAfee, Inc.) -- C:\Windows\System32\drivers\mferkdet.sys
[2010/11/18 22:30:18 | 000,064,304 | ---- | C] (McAfee, Inc.) -- C:\Windows\System32\drivers\mfenlfk.sys
[2010/11/18 22:30:17 | 000,313,288 | ---- | C] (McAfee, Inc.) -- C:\Windows\System32\drivers\mfefirek.sys
[2010/11/18 22:30:17 | 000,152,960 | ---- | C] (McAfee, Inc.) -- C:\Windows\System32\drivers\mfeavfk.sys
[2010/11/18 22:30:17 | 000,052,104 | ---- | C] (McAfee, Inc.) -- C:\Windows\System32\drivers\mfebopk.sys
[2010/11/18 22:30:16 | 000,055,840 | ---- | C] (McAfee, Inc.) -- C:\Windows\System32\drivers\cfwids.sys
[2010/11/18 22:20:42 | 000,141,792 | ---- | C] (McAfee, Inc.) -- C:\Windows\System32\mfevtps.exe
[2008/09/19 16:01:33 | 008,653,312 | ---- | C] (Dell, Inc. ) -- C:\Users\inhissteps\AppData\Roaming\DataSafeDotNet.exe
[2008/04/30 15:04:31 | 000,008,192 | ---- | C] ( ) -- C:\Windows\System32\cshost.dll
[2007/01/30 08:47:52 | 000,643,072 | ---- | C] ( ) -- C:\Windows\System32\dlbupmui.dll
[2007/01/30 08:46:00 | 001,224,704 | ---- | C] ( ) -- C:\Windows\System32\dlbuserv.dll
[2007/01/30 08:38:18 | 000,421,888 | ---- | C] ( ) -- C:\Windows\System32\dlbucomm.dll
[2007/01/30 08:36:30 | 000,585,728 | ---- | C] ( ) -- C:\Windows\System32\dlbulmpm.dll
[2007/01/30 08:35:00 | 000,397,312 | ---- | C] ( ) -- C:\Windows\System32\dlbuiesc.dll
[2007/01/30 08:32:06 | 000,094,208 | ---- | C] ( ) -- C:\Windows\System32\dlbupplc.dll
[2007/01/30 08:31:08 | 000,684,032 | ---- | C] ( ) -- C:\Windows\System32\dlbucomc.dll
[2007/01/30 08:30:30 | 000,163,840 | ---- | C] ( ) -- C:\Windows\System32\dlbuprox.dll
[2007/01/30 08:22:32 | 000,413,696 | ---- | C] ( ) -- C:\Windows\System32\dlbuinpa.dll
[2007/01/30 08:21:46 | 000,995,328 | ---- | C] ( ) -- C:\Windows\System32\dlbuusb1.dll
[2007/01/30 08:17:02 | 000,696,320 | ---- | C] ( ) -- C:\Windows\System32\dlbuhbn3.dll
========== Files - Modified Within 30 Days ==========
[2010/12/17 06:13:42 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\inhissteps\Desktop\OTL.exe
[2010/12/17 06:05:00 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010/12/17 05:20:00 | 000,000,928 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-259075318-1705345126-1120626912-1000UA.job
[2010/12/17 05:19:48 | 000,003,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/12/17 05:19:48 | 000,003,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/12/16 18:05:00 | 000,000,890 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010/12/16 17:20:47 | 000,241,642 | ---- | M] () -- C:\ProgramData\nvModes.001
[2010/12/16 17:20:40 | 000,241,642 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2010/12/16 17:20:25 | 000,001,693 | ---- | M] () -- C:\Users\Public\Desktop\McAfee Total Protection.lnk
[2010/12/16 17:19:47 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/12/16 17:19:43 | 3217,235,968 | -HS- | M] () -- C:\hiberfil.sys
[2010/12/16 16:03:51 | 000,003,204 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2010/12/16 14:25:04 | 000,184,832 | ---- | M] () -- C:\Users\inhissteps\Desktop\mss.exe
[2010/12/16 08:00:13 | 000,000,908 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/12/16 07:50:13 | 000,446,464 | ---- | M] (OldTimer Tools) -- C:\Users\inhissteps\Desktop\TFC.exe
[2010/12/16 07:32:44 | 000,000,172 | ---- | M] () -- C:\Users\inhissteps\Desktop\How to remove System Tool 2011.url
[2010/12/16 06:43:13 | 000,044,544 | ---- | M] (Absolute Software Corp.) -- C:\Windows\System32\agremove.exe
[2010/12/15 16:21:00 | 000,000,876 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-259075318-1705345126-1120626912-1000Core.job
[2010/12/15 03:26:44 | 000,415,592 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010/12/14 19:05:43 | 000,001,973 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2010/12/12 16:47:35 | 000,000,172 | ---- | M] () -- C:\Users\inhissteps\Desktop\Yahoo! Sports - Sports News, Scores, Rumors, Fantasy Games, and more.url
[2010/12/12 16:30:18 | 000,001,666 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2010/12/12 16:24:02 | 000,001,854 | ---- | M] () -- C:\Users\Public\Desktop\Safari.lnk
[2010/12/12 16:24:02 | 000,001,854 | ---- | M] () -- C:\Users\inhissteps\Application Data\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk
[2010/12/12 16:17:26 | 000,604,502 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010/12/12 16:17:26 | 000,104,170 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010/12/12 16:15:21 | 000,001,889 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 8.lnk
[2010/12/12 15:49:43 | 000,001,728 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2010/12/12 09:57:44 | 000,000,192 | ---- | M] () -- C:\Users\inhissteps\Desktop\Fantasy Football - Free Fantasy Football Leagues, Rankings and more -- ESPN.url
[2010/12/11 15:48:04 | 000,000,215 | ---- | M] () -- C:\Users\inhissteps\Desktop\Yahoo! Sports Fantasy Football.url
[2010/12/10 19:57:11 | 000,000,222 | ---- | M] () -- C:\Users\inhissteps\Desktop\Dinosaur Song.url
[2010/12/03 17:04:33 | 000,017,028 | ---- | M] () -- C:\Users\inhissteps\Documents\Cell Phone Dec 2010.docx
[2010/11/30 09:33:50 | 000,000,346 | ---- | M] () -- C:\Users\inhissteps\Desktop\Gmail Email from Google.url
[2010/11/29 17:42:18 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/11/29 17:42:06 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/11/29 17:38:30 | 000,094,208 | ---- | M] (Apple Inc.) -- C:\Windows\System32\QuickTimeVR.qtx
[2010/11/29 17:38:30 | 000,069,632 | ---- | M] (Apple Inc.) -- C:\Windows\System32\QuickTime.qts
[2010/11/20 21:14:17 | 002,790,864 | ---- | M] (Adobe Systems, Inc.) -- C:\Users\inhissteps\Desktop\install_flash_player.exe
[2010/11/20 21:13:34 | 000,000,751 | ---- | M] () -- C:\Users\Public\Desktop\LeapFrog Connect.lnk
[2010/11/20 01:42:06 | 000,015,747 | ---- | M] () -- C:\Users\inhissteps\Desktop\Nov 21.docx
========== Files Created - No Company Name ==========
[2010/12/16 14:24:50 | 000,184,832 | ---- | C] () -- C:\Users\inhissteps\Desktop\mss.exe
[2010/12/16 08:00:13 | 000,000,908 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/12/16 07:32:44 | 000,000,172 | ---- | C] () -- C:\Users\inhissteps\Desktop\How to remove System Tool 2011.url
[2010/12/12 16:30:18 | 000,001,666 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2010/12/12 15:49:43 | 000,001,728 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2010/12/03 17:04:32 | 000,017,028 | ---- | C] () -- C:\Users\inhissteps\Documents\Cell Phone Dec 2010.docx
[2010/11/20 21:13:34 | 000,000,751 | ---- | C] () -- C:\Users\Public\Desktop\LeapFrog Connect.lnk
[2010/11/19 22:43:41 | 000,015,747 | ---- | C] () -- C:\Users\inhissteps\Desktop\Nov 21.docx
[2010/11/18 22:33:30 | 000,001,693 | ---- | C] () -- C:\Users\Public\Desktop\McAfee Total Protection.lnk
[2010/10/08 09:01:06 | 000,000,003 | ---- | C] () -- C:\ProgramData\AbsoluteNotifier.txt
[2010/01/29 00:15:30 | 000,241,642 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2010/01/29 00:15:30 | 000,241,642 | ---- | C] () -- C:\ProgramData\nvModes.001
[2010/01/03 21:06:22 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2009/09/18 15:26:41 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009/08/15 14:22:36 | 000,001,644 | ---- | C] () -- C:\Windows\ODBCINST.INI
[2009/08/15 14:22:36 | 000,000,288 | ---- | C] () -- C:\Windows\ODBC.INI
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
[2009/07/30 19:58:42 | 000,000,314 | ---- | C] () -- C:\Windows\primopdf.ini
[2009/01/20 01:28:20 | 000,870,128 | ---- | C] () -- C:\Users\inhissteps\AppData\Roaming\mcs.rma
[2009/01/20 01:28:20 | 000,000,004 | ---- | C] () -- C:\Users\inhissteps\AppData\Roaming\C879B2
[2008/09/19 16:00:38 | 000,672,812 | ---- | C] () -- C:\Users\inhissteps\AppData\Roaming\datasafeupdate.msi
[2008/05/21 15:33:45 | 000,054,114 | ---- | C] () -- C:\Program Files\INSTALL.LOG
[2008/05/03 00:12:05 | 000,524,288 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2008/05/03 00:12:05 | 000,139,264 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2008/05/02 15:34:34 | 000,056,056 | ---- | C] () -- C:\Windows\System32\DLAAPI_W.DLL
[2008/05/02 11:03:11 | 000,000,228 | ---- | C] () -- C:\Windows\wininit.ini
[2008/04/26 09:33:35 | 000,208,306 | ---- | C] () -- C:\Users\inhissteps\AppData\Roaming\nvModes.dat
[2008/04/26 09:33:35 | 000,208,306 | ---- | C] () -- C:\Users\inhissteps\AppData\Roaming\nvModes.001
[2008/04/26 00:45:23 | 000,007,592 | ---- | C] () -- C:\Users\inhissteps\AppData\Local\d3d9caps.dat
[2008/03/04 18:52:34 | 000,286,720 | ---- | C] () -- C:\Windows\System32\libcurl.dll
[2008/02/17 15:51:03 | 000,176,235 | ---- | C] () -- C:\Windows\System32\Primomonnt.dll
[2008/02/17 01:10:12 | 000,132,096 | ---- | C] () -- C:\Program Files\Common Files\PCSBoff.exe
[2008/02/14 00:57:01 | 000,038,400 | ---- | C] () -- C:\Users\inhissteps\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007/11/06 12:51:54 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
[2007/11/06 12:51:48 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2007/11/06 05:11:10 | 000,065,536 | ---- | C] () -- C:\Windows\System32\bcmwlrmt.dll
[2007/10/31 09:39:54 | 000,059,904 | ---- | C] () -- C:\Windows\System32\zlib1.dll
[2007/08/06 17:22:15 | 000,000,000 | ---- | C] () -- C:\Windows\System32\px.ini
[2007/05/17 13:58:10 | 000,143,360 | ---- | C] () -- C:\Windows\System32\libexpatw.dll
[2007/02/19 01:32:34 | 000,106,496 | ---- | C] () -- C:\Windows\System32\dlbuinsr.dll
[2007/02/19 01:32:30 | 000,036,864 | ---- | C] () -- C:\Windows\System32\dlbucur.dll
[2007/02/19 01:32:08 | 000,135,168 | ---- | C] () -- C:\Windows\System32\dlbujswr.dll
[2007/02/19 01:29:24 | 000,176,128 | ---- | C] () -- C:\Windows\System32\dlbuinsb.dll
[2007/02/19 01:29:20 | 000,086,016 | ---- | C] () -- C:\Windows\System32\dlbucub.dll
[2007/02/19 01:29:14 | 000,073,728 | ---- | C] () -- C:\Windows\System32\dlbucu.dll
[2007/02/19 01:29:10 | 000,159,744 | ---- | C] () -- C:\Windows\System32\dlbuins.dll
[2007/02/19 01:28:10 | 000,434,176 | ---- | C] () -- C:\Windows\System32\dlbuutil.dll
[2007/02/07 11:57:16 | 000,344,064 | ---- | C] () -- C:\Windows\System32\dlbucoin.dll
[2007/01/22 06:19:00 | 000,069,632 | ---- | C] () -- C:\Windows\System32\dlbucfg.dll
[2006/11/03 17:25:56 | 000,389,120 | ---- | C] () -- C:\Windows\System32\btwhidcs.dll
[2006/11/02 06:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 04:25:44 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2006/11/02 01:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/09/16 22:36:50 | 000,520,192 | ---- | C] () -- C:\Windows\System32\CddbPlaylist2Roxio.dll
[2006/09/16 22:36:50 | 000,204,800 | ---- | C] () -- C:\Windows\System32\CddbFileTaggerRoxio.dll
[2005/08/18 05:26:46 | 000,040,960 | ---- | C] () -- C:\Windows\System32\dlbuvs.dll
[2005/05/25 12:07:26 | 000,061,440 | ---- | C] () -- C:\Windows\System32\dlbucnv4.dll
[2001/11/14 12:56:00 | 001,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll
========== Custom Scans ==========
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[2007/03/21 13:33:40 | 000,065,536 | ---- | M] () Unable to obtain MD5 -- C:\Windows\System32\bcmwlrmt.dll
[2009/03/08 05:31:42 | 000,348,160 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\dxtmsft.dll
[2009/03/08 05:31:37 | 000,216,064 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\dxtrans.dll
[2009/04/11 00:27:47 | 000,241,128 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\rsaenh.dll
[2009/04/11 00:28:23 | 000,228,352 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\SLC.dll
< %systemroot%\system32\*.exe /lockedfiles >
[2007/03/21 13:33:44 | 001,548,288 | ---- | M] (Dell Inc.) Unable to obtain MD5 -- C:\Windows\System32\WLTRAY.EXE
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
[2006/11/02 04:34:05 | 000,008,192 | ---- | M] () -- C:\Windows\System32\config\COMPONENTS.SAV
[2006/11/02 04:34:05 | 000,020,480 | ---- | M] () -- C:\Windows\System32\config\DEFAULT.SAV
[2006/11/02 04:34:05 | 000,008,192 | ---- | M] () -- C:\Windows\System32\config\SECURITY.SAV
[2006/11/02 04:34:08 | 010,133,504 | ---- | M] () -- C:\Windows\System32\config\SOFTWARE.SAV
[2006/11/02 04:34:08 | 001,826,816 | ---- | M] () -- C:\Windows\System32\config\SYSTEM.SAV
< %systemroot%\system32\*.sys >
[2006/11/02 01:09:42 | 000,009,029 | ---- | M] () -- C:\Windows\System32\ANSI.SYS
[2009/04/11 00:32:46 | 000,245,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\clfs.sys
[2006/11/02 01:09:45 | 000,027,097 | ---- | M] () -- C:\Windows\System32\country.sys
[2006/11/02 01:09:41 | 000,004,768 | ---- | M] () -- C:\Windows\System32\HIMEM.SYS
[2006/11/02 01:09:44 | 000,042,809 | ---- | M] () -- C:\Windows\System32\KEY01.SYS
[2006/11/02 01:09:44 | 000,042,537 | ---- | M] () -- C:\Windows\System32\KEYBOARD.SYS
[2006/11/02 01:09:29 | 000,027,866 | ---- | M] () -- C:\Windows\System32\NTDOS.SYS
[2006/11/02 01:09:35 | 000,029,146 | ---- | M] () -- C:\Windows\System32\NTDOS404.SYS
[2006/11/02 01:09:38 | 000,029,370 | ---- | M] () -- C:\Windows\System32\NTDOS411.SYS
[2006/11/02 01:09:40 | 000,029,274 | ---- | M] () -- C:\Windows\System32\NTDOS412.SYS
[2006/11/02 01:09:31 | 000,029,146 | ---- | M] () -- C:\Windows\System32\NTDOS804.SYS
[2006/11/02 01:09:20 | 000,033,952 | ---- | M] () -- C:\Windows\System32\NTIO.SYS
[2006/11/02 01:09:23 | 000,034,672 | ---- | M] () -- C:\Windows\System32\NTIO404.SYS
[2006/11/02 01:09:24 | 000,035,776 | ---- | M] () -- C:\Windows\System32\NTIO411.SYS
[2006/11/02 01:09:26 | 000,035,536 | ---- | M] () -- C:\Windows\System32\NTIO412.SYS
[2006/11/02 01:09:22 | 000,034,672 | ---- | M] () -- C:\Windows\System32\NTIO804.SYS
[2010/10/18 07:31:24 | 002,038,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
< %systemroot%\system32\drivers\*.dll >
< %systemroot%\system32\drivers\*.ini >
< %systemroot%\system32\drivers\*.exe >
[2006/08/04 18:39:20 | 000,386,560 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\XAudio.exe
< %SYSTEMDRIVE%\*.* >
[2002/01/05 02:18:20 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\atl70.dll
[2006/09/18 15:43:36 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
[2009/04/11 00:36:36 | 000,333,257 | RHS- | M] () -- C:\bootmgr
[2006/11/10 07:22:24 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2006/09/18 15:43:37 | 000,000,010 | ---- | M] () -- C:\config.sys
[2007/11/06 12:52:06 | 000,005,320 | RH-- | M] () -- C:\dell.sdr
[2010/12/16 17:19:43 | 3217,235,968 | -HS- | M] () -- C:\hiberfil.sys
[2008/04/24 19:14:05 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2002/01/05 04:48:16 | 000,974,848 | ---- | M] (Microsoft Corporation) -- C:\mfc70.dll
[2002/01/05 04:36:38 | 000,964,608 | ---- | M] (Microsoft Corporation) -- C:\mfc70u.dll
[2008/04/24 19:14:05 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2002/01/05 03:38:38 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\msvci70.dll
[2010/12/16 17:19:42 | 3533,127,680 | -HS- | M] () -- C:\pagefile.sys
[2007/11/06 05:15:01 | 000,002,229 | ---- | M] () -- C:\SetWiFiBT.txt
[2008/07/11 12:49:38 | 000,000,162 | ---- | M] () -- C:\YServer.txt
< %PROGRAMFILES%\*. >
[2010/10/16 23:05:56 | 000,000,000 | ---D | M] -- C:\Program Files\Absolute Software
[2008/02/17 15:51:01 | 000,000,000 | ---D | M] -- C:\Program Files\activePDF
[2008/11/07 10:30:18 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe
[2008/12/16 00:47:59 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe Media Player
[2008/08/06 13:59:34 | 000,000,000 | ---D | M] -- C:\Program Files\Apple Software Update
[2008/11/07 17:57:24 | 000,000,000 | ---D | M] -- C:\Program Files\ArcSoft
[2008/04/30 10:56:34 | 000,000,000 | ---D | M] -- C:\Program Files\Astonsoft
[2008/05/21 15:25:38 | 000,000,000 | ---D | M] -- C:\Program Files\AT&T
[2010/04/03 09:27:54 | 000,000,000 | ---D | M] -- C:\Program Files\ATT
[2008/05/21 13:58:23 | 000,000,000 | ---D | M] -- C:\Program Files\att-nap
[2010/04/03 09:28:28 | 000,000,000 | ---D | M] -- C:\Program Files\ATT-PRT22-WISE
[2010/04/03 09:47:05 | 000,000,000 | ---D | M] -- C:\Program Files\Audacity
[2008/05/03 00:20:31 | 000,000,000 | ---D | M] -- C:\Program Files\AVS4YOU
[2008/05/21 15:46:19 | 000,000,000 | ---D | M] -- C:\Program Files\BellSouth
[2009/01/20 01:34:45 | 000,000,000 | ---D | M] -- C:\Program Files\Best Buy Digital Music Store Powered by Rhapsody
[2010/05/17 12:27:28 | 000,000,000 | ---D | M] -- C:\Program Files\Bible Navigator
[2008/02/17 01:10:12 | 000,000,000 | ---D | M] -- C:\Program Files\Biblesoft
[2010/11/09 19:07:38 | 000,000,000 | ---D | M] -- C:\Program Files\Bing Bar Installer
[2010/12/12 15:55:35 | 000,000,000 | ---D | M] -- C:\Program Files\Bonjour
[2007/11/06 05:11:06 | 000,000,000 | ---D | M] -- C:\Program Files\Broadcom
[2008/07/11 10:49:13 | 000,000,000 | ---D | M] -- C:\Program Files\Camfrog
[2008/02/14 01:02:53 | 000,000,000 | ---D | M] -- C:\Program Files\Cingular
[2008/05/02 14:55:42 | 000,000,000 | ---D | M] -- C:\Program Files\Citrix
[2010/11/20 21:12:28 | 000,000,000 | ---D | M] -- C:\Program Files\Common Files
[2007/11/06 04:56:37 | 000,000,000 | ---D | M] -- C:\Program Files\CONEXANT
[2010/03/23 04:51:45 | 000,000,000 | ---D | M] -- C:\Program Files\Creative
[2007/11/06 05:12:02 | 000,000,000 | ---D | M] -- C:\Program Files\Creative Live! Cam
[2008/08/03 22:19:51 | 000,000,000 | ---D | M] -- C:\Program Files\CROSS Shared
[2007/11/06 05:20:38 | 000,000,000 | ---D | M] -- C:\Program Files\CyberLink
[2010/10/15 13:08:45 | 000,000,000 | ---D | M] -- C:\Program Files\Dell
[2010/03/20 21:51:19 | 000,000,000 | ---D | M] -- C:\Program Files\Dell DataSafe Online
[2008/02/21 14:37:32 | 000,000,000 | ---D | M] -- C:\Program Files\Dell Support Center
[2007/11/06 05:22:12 | 000,000,000 | ---D | M] -- C:\Program Files\DellSupport
[2010/11/20 21:13:08 | 000,000,000 | ---D | M] -- C:\Program Files\DIFX
[2007/11/06 05:06:22 | 000,000,000 | ---D | M] -- C:\Program Files\Digital Line Detect
[2008/05/05 12:38:59 | 000,000,000 | ---D | M] -- C:\Program Files\dl_Cats
[2009/08/15 09:17:32 | 000,000,000 | ---D | M] -- C:\Program Files\Five Star Fantasy Sports Inc
[2009/05/05 17:41:53 | 000,000,000 | ---D | M] -- C:\Program Files\GMI
[2010/01/11 13:42:45 | 000,000,000 | ---D | M] -- C:\Program Files\Google
[2010/03/23 04:51:49 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information
[2010/12/15 03:24:41 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Explorer