2. OTL(the first one mentioned completely LOCKED up my computer. I had to shut it down using the power button)
3. The other OTL logs as follows : OTL logfile created on: 10/5/2011 5:44:41 PM - Run 6
OTL by OldTimer - Version 3.2.29.1 Folder = C:\Documents and Settings\Kristyn\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.26 Gb Available Physical Memory | 62.93% Memory free
3.85 Gb Paging File | 3.22 Gb Available in Paging File | 83.73% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74.50 Gb Total Space | 11.27 Gb Free Space | 15.13% Space Free | Partition Type: NTFS
Drive G: | 931.51 Gb Total Space | 587.35 Gb Free Space | 63.05% Space Free | Partition Type: NTFS
Computer Name: BOOMTOWN-MAFIA | User Name: Kristyn | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/10/05 17:44:32 | 000,582,656 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kristyn\Desktop\OTL.exe
PRC - [2011/08/31 17:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2011/08/04 15:15:28 | 003,674,904 | ---- | M] (Mozy, Inc.) -- C:\Program Files\MozyHome\mozystat.exe
PRC - [2011/07/13 01:34:50 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2011/04/21 07:54:05 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2011/04/21 07:53:48 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2011/04/21 07:53:33 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2010/05/20 15:27:24 | 000,139,632 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe
PRC - [2010/05/17 14:45:32 | 001,615,176 | ---- | M] (Rosetta Stone Ltd.) -- C:\Program Files\RosettaStoneLtdServices\RosettaStoneDaemon.exe
PRC - [2010/01/28 14:02:40 | 001,867,464 | ---- | M] (Blockbuster) -- C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\MovielinkCore.exe
PRC - [2008/11/09 14:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
PRC - [2008/04/13 18:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2005/03/22 17:20:44 | 000,339,968 | ---- | M] (SigmaTel, Inc.) -- C:\WINDOWS\stsystra.exe
========== Modules (No Company Name) ==========
MOD - [2010/11/04 08:51:42 | 002,502,248 | ---- | M] () -- C:\Program Files\NVIDIA Corporation\nView\nView.dll
MOD - [2010/06/17 15:27:22 | 000,355,688 | ---- | M] () -- C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll
MOD - [2008/04/13 18:11:59 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2008/04/13 18:11:51 | 000,059,904 | ---- | M] () -- C:\WINDOWS\system32\devenum.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- -- (GoToAssist)
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011/08/31 17:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011/08/29 15:10:27 | 001,045,256 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011/07/13 01:34:50 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2011/04/21 07:53:48 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2010/05/20 15:27:24 | 000,139,632 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc)
SRV - [2010/05/17 14:45:32 | 001,615,176 | ---- | M] (Rosetta Stone Ltd.) [Auto | Running] -- C:\Program Files\RosettaStoneLtdServices\RosettaStoneDaemon.exe -- (RosettaStoneDaemon)
SRV - [2010/01/28 14:02:40 | 001,867,464 | ---- | M] (Blockbuster) [Auto | Running] -- C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\MovielinkCore.exe -- (Movielink Core Service)
SRV - [2008/11/09 14:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
SRV - [2004/10/15 19:40:56 | 002,577,632 | ---- | M] (Sygate Technologies, Inc.) [Auto | Stopped] -- C:\Program Files\Sygate\SPF\Smc.exe -- (SmcService)
========== Driver Services (SafeList) ==========
DRV - [2011/08/31 17:00:50 | 000,022,216 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2011/07/13 01:34:52 | 000,138,192 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2011/07/13 01:34:52 | 000,066,616 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2010/06/17 15:27:22 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2010/06/17 15:27:12 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio)
DRV - [2010/05/20 15:27:24 | 000,030,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nx6000.sys -- (MSHUSBVideo)
DRV - [2010/04/28 08:44:02 | 000,054,760 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr)
DRV - [2009/12/30 11:20:56 | 000,027,064 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\revoflt.sys -- (Revoflt)
DRV - [2006/05/05 20:21:00 | 000,004,608 | ---- | M] (NVIDIA Corporation.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\nvport.sys -- (nvport)
DRV - [2006/03/29 09:49:26 | 000,009,856 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc)
DRV - [2005/11/16 15:36:00 | 001,047,816 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA)
DRV - [2004/10/15 18:32:44 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg6n.sys -- (wg6n)
DRV - [2004/10/15 18:32:42 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg5n.sys -- (wg5n)
DRV - [2004/10/15 18:32:40 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg4n.sys -- (wg4n)
DRV - [2004/10/15 18:32:38 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg3n.sys -- (wg3n)
DRV - [2004/10/15 18:18:46 | 000,021,075 | ---- | M] (Sygate Technologies, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\wpsdrvnt.sys -- (wpsdrvnt)
DRV - [2004/10/15 18:17:02 | 000,060,496 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\SYSTEM32\Drivers\Teefer.sys -- (Teefer)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/?fr=fp-yie8
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = F4 76 3E B9 FE F3 CB 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore =
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpWinExt,version=5.0: C:\Program Files\MSN Toolbar\Platform\5.0.1449.0\npwinext.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=4.0: C:\Program Files\Virtual Earth 3D\ File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.53\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.53\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Kristyn\Local Settings\Application Data\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Kristyn\Local Settings\Application Data\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\msntoolbar@msn.com: C:\Program Files\MSN Toolbar\Platform\5.0.1449.0\Firefox [2011/08/04 23:02:02 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2011/07/18 03:30:06 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Kristyn\Local Settings\Application Data\Google\Chrome\Application\14.0.835.187\gcswf32.dll
CHR - plugin: Java Platform SE 6 U26 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Program Files\Microsoft\Office Live\npOLW.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Kristyn\Local Settings\Application Data\Google\Chrome\Application\14.0.835.187\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Kristyn\Local Settings\Application Data\Google\Chrome\Application\14.0.835.187\pdf.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Kristyn\Local Settings\Application Data\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: Bing Bar (Enabled) = C:\Program Files\MSN Toolbar\Platform\5.0.1449.0\npwinext.dll
CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: Kate Spade = C:\Documents and Settings\Kristyn\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\cfhpfdkiglaphjhmhojbofcplejkjkoc\3_0\
O1 HOSTS File: ([2011/07/18 06:59:21 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (no name) - {99079a25-328f-4bd4-be04-00955acaa0a7} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe ()
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\WINDOWS\stsystra.exe (SigmaTel, Inc.)
O4 - HKLM..\Run: [SmcService] C:\Program Files\Sygate\SPF\Smc.exe (Sygate Technologies, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\programs\Startup\MozyHome Status.lnk = C:\Program Files\MozyHome\mozystat.exe (Mozy, Inc.)
O4 - Startup: C:\Documents and Settings\Kristyn\Start Menu\programs\Startup\News Alert.lnk = C:\Program Files\News Alert\liveonline_3883833.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\control panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html File not found
O9 - Extra Button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - Reg Error: Key error. File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} http://support.dell....iler/SysPro.CAB (SysProWmi Class)
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.micros...n/ieawsdc32.cab (Microsoft Office Template and Media Control)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.appl...ex/qtplugin.cab (Reg Error: Key error.)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.micr...78f/wvc1dmo.cab (Reg Error: Key error.)
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} http://messenger.zon...wn.cab56986.cab (Solitaire Showdown Class)
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} http://messenger.zon...1/GAME_UNO1.cab (UnoCtrl Class)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.micros...b?1278014241125 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.micros...b?1278014234593 (MUWebControl Class)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {A4110378-789B-455F-AE86-3A1BFC402853} http://zone.msn.com/...vl.cab55579.cab (ZPA_SHVL Object)
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} http://cdn2.zone.msn...k.cab102118.cab (MSN Games - Installer)
O16 - DPF: {C1F8FC10-E5DB-4112-9DBF-6C3FF728D4E3} http://support.dell....lSystemLite.CAB (DellSystemLite.Scanner)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zon...nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0015-0000-0017-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macr...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: CabBuilder http://kiw.imgag.com...llerControl.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 205.171.3.25
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7AAD24EF-B8CE-442D-9AD9-7CAD08309A52}: DhcpNameServer = 192.168.0.1 205.171.3.25
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\GoToAssist: DllName - (C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll) - C:\Program Files\Citrix\GoToAssist\514\g2awinlogon.dll (Citrix Online, a division of Citrix Systems, Inc.)
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kristyn\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/06/30 22:52:09 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/10/05 16:13:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\VideoLAN
[2011/10/04 05:09:51 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kristyn\Recent
[2011/09/30 06:38:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kristyn\Local Settings\Application Data\Spotify
[2011/09/30 06:38:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kristyn\Application Data\Spotify
[2011/09/26 18:25:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kristyn\My Documents\SeamlessPro
[2011/09/26 18:25:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kristyn\Application Data\com.chromaom.SeamlessStudio
[2011/09/26 18:25:44 | 000,000,000 | ---D | C] -- C:\Program Files\Seamless Studio
[2011/09/25 14:35:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kristyn\Desktop\emailsig_files
[2011/09/24 05:31:29 | 000,000,000 | ---D | C] -- C:\Program Files\Yahoo!
[2010/09/27 21:37:23 | 003,887,480 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Program Files\procexp.exe
[2010/07/02 11:00:27 | 000,258,352 | ---- | C] (Microsoft Corporation) -- C:\Program Files\unicows.dll
[2010/07/02 10:59:57 | 000,372,736 | ---- | C] (Intel Corporation) -- C:\Program Files\ijl15.dll
[2010/07/01 07:01:39 | 017,252,512 | ---- | C] (Microsoft Corporation) -- C:\Program Files\BOIE8_ENUS_XP.EXE
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/10/05 17:44:32 | 000,582,656 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kristyn\Desktop\OTL.exe
[2011/10/05 17:42:00 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/10/05 17:38:01 | 000,000,986 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-746137067-1409082233-839522115-1004UA.job
[2011/10/05 17:37:37 | 000,000,432 | ---- | M] () -- C:\WINDOWS\tasks\GBM - Easy Layout Backup Job-Full.job
[2011/10/05 17:33:35 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/10/05 17:33:34 | 000,000,282 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-746137067-1409082233-839522115-1004.job
[2011/10/05 17:33:33 | 000,012,598 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/10/05 17:33:00 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/10/05 17:00:54 | 000,446,464 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kristyn\Desktop\TFC.exe
[2011/10/05 16:47:21 | 000,000,802 | ---- | M] () -- C:\Documents and Settings\Kristyn\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk
[2011/10/05 16:26:28 | 002,359,350 | ---- | M] () -- C:\Documents and Settings\Kristyn\Desktop\SCORPIO.bmp
[2011/10/05 16:13:31 | 000,000,719 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2011/10/05 16:10:07 | 021,073,936 | ---- | M] () -- C:\Documents and Settings\Kristyn\My Documents\vlc-1.1.11-win32.exe
[2011/10/05 14:30:35 | 000,000,426 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{51CE0117-9DB9-4100-9E08-A92F9708E878}.job
[2011/10/05 09:38:00 | 000,000,934 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-746137067-1409082233-839522115-1004Core.job
[2011/10/05 03:31:54 | 000,581,500 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/10/05 03:31:54 | 000,128,934 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/10/05 02:31:00 | 000,012,716 | ---- | M] () -- C:\WINDOWS\mozy.flt
[2011/10/05 02:31:00 | 000,005,752 | ---- | M] () -- C:\WINDOWS\mozy.blk
[2011/10/04 23:59:30 | 000,032,115 | ---- | M] () -- C:\Documents and Settings\Kristyn\Desktop\haircut.jpg
[2011/10/04 16:01:40 | 000,088,976 | ---- | M] () -- C:\Documents and Settings\Kristyn\Desktop\$(KGrHqZ,!k4E1F3)1NyUBNWsF+KUtw~~0_3.jpg
[2011/10/04 05:10:00 | 000,000,290 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-746137067-1409082233-839522115-1004.job
[2011/10/01 16:40:24 | 000,002,300 | ---- | M] () -- C:\Documents and Settings\Kristyn\Desktop\Google Chrome.lnk
[2011/10/01 16:40:24 | 000,002,278 | ---- | M] () -- C:\Documents and Settings\Kristyn\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/09/30 06:38:34 | 000,000,940 | ---- | M] () -- C:\Documents and Settings\Kristyn\Desktop\Spotify.lnk
[2011/09/30 06:38:31 | 006,836,896 | ---- | M] () -- C:\Documents and Settings\Kristyn\Desktop\spotify.exe
[2011/09/29 13:58:39 | 000,000,001 | ---- | M] () -- C:\WINDOWS\System32\nvdrssel.bin
[2011/09/29 13:58:38 | 000,252,984 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2011/09/29 13:58:19 | 000,252,984 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2011/09/28 00:22:09 | 001,408,000 | ---- | M] () -- C:\Documents and Settings\Kristyn\Desktop\Publication1.pub
[2011/09/27 22:07:18 | 000,125,345 | ---- | M] () -- C:\Documents and Settings\Kristyn\Desktop\1.ssf
[2011/09/26 20:57:14 | 000,024,240 | ---- | M] () -- C:\Documents and Settings\Kristyn\Desktop\cstmbkgrnd2.ssf
[2011/09/26 18:25:49 | 000,000,700 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Seamless Studio.lnk
[2011/09/25 14:35:13 | 000,006,277 | ---- | M] () -- C:\Documents and Settings\Kristyn\Desktop\emailsig.htm
[2011/09/25 12:52:30 | 000,000,670 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\WinMaximizer.lnk
[2011/09/25 12:01:17 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011/09/24 05:44:14 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\Kristyn\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/09/16 15:11:39 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk
[2011/09/13 03:01:07 | 000,000,564 | ---- | M] () -- C:\WINDOWS\tasks\PCDoctorBackgroundMonitorTask.job
[2011/09/12 13:46:46 | 000,025,088 | ---- | M] () -- C:\Documents and Settings\Kristyn\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/09/12 04:00:03 | 000,000,936 | ---- | M] () -- C:\Documents and Settings\Kristyn\Desktop\Shortcut to Alabama - Ultimate Alabama 20 #1 Hits - 16 - You've Got The Touch.mp3.lnk
[2011/09/11 10:48:57 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\Kristyn\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2011/09/09 07:34:53 | 000,270,611 | ---- | M] () -- C:\WINDOWS\System32\hpprnt
[2011/09/09 03:12:13 | 000,599,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\crypt32.dll
[2011/09/07 08:46:16 | 000,267,800 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/10/05 16:26:28 | 002,359,350 | ---- | C] () -- C:\Documents and Settings\Kristyn\Desktop\SCORPIO.bmp
[2011/10/05 16:13:31 | 000,000,719 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2011/10/05 16:09:42 | 021,073,936 | ---- | C] () -- C:\Documents and Settings\Kristyn\My Documents\vlc-1.1.11-win32.exe
[2011/10/04 23:59:51 | 000,032,115 | ---- | C] () -- C:\Documents and Settings\Kristyn\Desktop\haircut.jpg
[2011/10/04 17:55:20 | 000,088,976 | ---- | C] () -- C:\Documents and Settings\Kristyn\Desktop\$(KGrHqZ,!k4E1F3)1NyUBNWsF+KUtw~~0_3.jpg
[2011/09/30 06:38:34 | 000,000,946 | ---- | C] () -- C:\Documents and Settings\Kristyn\Start Menu\programs\Spotify.lnk
[2011/09/30 06:38:34 | 000,000,940 | ---- | C] () -- C:\Documents and Settings\Kristyn\Desktop\Spotify.lnk
[2011/09/30 06:38:14 | 006,836,896 | ---- | C] () -- C:\Documents and Settings\Kristyn\Desktop\spotify.exe
[2011/09/27 22:03:44 | 000,125,345 | ---- | C] () -- C:\Documents and Settings\Kristyn\Desktop\1.ssf
[2011/09/26 20:57:14 | 000,024,240 | ---- | C] () -- C:\Documents and Settings\Kristyn\Desktop\cstmbkgrnd2.ssf
[2011/09/26 18:25:49 | 000,000,706 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Seamless Studio.lnk
[2011/09/26 18:25:49 | 000,000,700 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Seamless Studio.lnk
[2011/09/25 14:35:12 | 000,006,277 | ---- | C] () -- C:\Documents and Settings\Kristyn\Desktop\emailsig.htm
[2011/09/12 04:00:03 | 000,000,936 | ---- | C] () -- C:\Documents and Settings\Kristyn\Desktop\Shortcut to Alabama - Ultimate Alabama 20 #1 Hits - 16 - You've Got The Touch.mp3.lnk
[2011/09/09 07:34:35 | 000,270,611 | ---- | C] () -- C:\WINDOWS\System32\hpprnt
[2011/04/27 12:51:27 | 000,061,440 | ---- | C] () -- C:\WINDOWS\uninstall.exe
[2011/03/16 05:30:11 | 000,252,984 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2011/03/16 05:30:07 | 000,252,984 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2011/03/16 05:30:07 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
[2011/03/16 05:29:46 | 002,292,678 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin
[2011/03/08 05:59:43 | 000,025,088 | ---- | C] () -- C:\Documents and Settings\Kristyn\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/03/05 13:55:12 | 000,000,262 | ---- | C] () -- C:\WINDOWS\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
[2011/03/04 08:45:45 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2011/03/04 08:45:45 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2011/03/04 08:45:45 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2011/03/04 08:45:45 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2011/03/04 08:45:45 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2011/02/14 03:22:25 | 000,306,688 | R--- | C] () -- C:\WINDOWS\System32\LFFPX7.DLL
[2011/02/14 03:22:25 | 000,095,232 | R--- | C] () -- C:\WINDOWS\System32\LFKODAK.DLL
[2011/02/05 12:38:45 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\Kristyn\Local Settings\Application Data\housecall.guid.cache
[2010/12/23 16:57:41 | 019,985,265 | ---- | C] () -- C:\Program Files\vlc-1.1.5-win32.exe
[2010/12/21 07:22:39 | 000,032,608 | ---- | C] () -- C:\WINDOWS\king-uninstall.exe
[2010/12/20 09:34:58 | 000,072,348 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2010/09/27 21:37:23 | 000,072,268 | ---- | C] () -- C:\Program Files\procexp.chm
[2010/08/12 01:57:51 | 000,870,128 | ---- | C] () -- C:\Documents and Settings\Kristyn\Application Data\mcs.rma
[2010/08/12 01:57:51 | 000,000,004 | ---- | C] () -- C:\Documents and Settings\Kristyn\Application Data\3051A7
[2010/07/02 11:00:00 | 000,004,886 | ---- | C] () -- C:\Program Files\install.ini
[2010/07/02 10:31:19 | 1339,050,285 | ---- | C] () -- C:\Program Files\data2.pck
[2010/07/01 23:50:32 | 2097,182,634 | ---- | C] () -- C:\Program Files\data1.pck
[2010/07/01 23:50:25 | 001,520,208 | ---- | C] () -- C:\Program Files\check.md
[2010/07/01 19:11:18 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010/07/01 14:08:34 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2010/07/01 00:04:25 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2010/06/30 22:53:27 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010/06/30 22:49:55 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010/06/30 16:43:40 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010/06/30 16:42:33 | 000,267,800 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2008/08/22 16:30:04 | 131,898,830 | ---- | C] () -- C:\Program Files\Data.cab
[2008/08/22 16:30:04 | 000,064,000 | ---- | C] () -- C:\Program Files\1031.mst
[2008/08/22 16:30:04 | 000,058,880 | ---- | C] () -- C:\Program Files\1034.mst
[2008/08/22 16:30:02 | 000,131,584 | ---- | C] () -- C:\Program Files\1042.mst
[2008/08/22 16:30:02 | 000,124,928 | ---- | C] () -- C:\Program Files\1041.mst
[2008/08/22 16:30:02 | 000,097,280 | ---- | C] () -- C:\Program Files\2052.mst
[2008/08/22 16:30:02 | 000,062,464 | ---- | C] () -- C:\Program Files\1036.mst
[2008/08/22 16:30:02 | 000,059,904 | ---- | C] () -- C:\Program Files\1040.mst
[2008/05/26 21:59:42 | 000,018,904 | ---- | C] () -- C:\WINDOWS\System32\structuredqueryschematrivial.bin
[2008/05/26 21:59:40 | 000,106,605 | ---- | C] () -- C:\WINDOWS\System32\structuredqueryschema.bin
[2007/09/27 10:51:02 | 000,020,698 | ---- | C] () -- C:\WINDOWS\System32\idxcntrs.ini
[2007/09/27 10:48:48 | 000,030,628 | ---- | C] () -- C:\WINDOWS\System32\gsrvctr.ini
[2007/09/27 10:48:28 | 000,031,698 | ---- | C] () -- C:\WINDOWS\System32\gthrctr.ini
[2007/04/18 22:26:00 | 000,581,632 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll
[2007/04/18 22:26:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2004/10/15 18:31:56 | 000,218,264 | ---- | C] () -- C:\WINDOWS\System32\SetAid.dll
[2003/03/31 06:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2003/03/31 06:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2003/03/31 06:00:00 | 000,581,500 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2003/03/31 06:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2003/03/31 06:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2003/03/31 06:00:00 | 000,128,934 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2003/03/31 06:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2003/03/31 06:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2003/03/31 06:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2003/03/31 06:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2003/03/31 06:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[1998/12/04 11:39:42 | 000,006,125 | R--- | C] () -- C:\Program Files\complogo.htm
[1998/10/12 12:21:58 | 000,057,562 | R--- | C] () -- C:\Program Files\cl10mpad.GIF
[1998/10/12 12:20:24 | 000,029,124 | R--- | C] () -- C:\Program Files\cl09done.GIF
[1998/10/12 11:31:30 | 000,004,278 | R--- | C] () -- C:\Program Files\cl08cups.GIF
[1998/10/12 11:28:38 | 000,014,902 | R--- | C] () -- C:\Program Files\cl07efct.GIF
[1998/10/12 11:19:58 | 000,012,717 | R--- | C] () -- C:\Program Files\cl06colz.GIF
[1998/10/09 17:24:04 | 000,009,616 | R--- | C] () -- C:\Program Files\cl05yell.GIF
[1998/10/09 17:19:52 | 000,022,189 | R--- | C] () -- C:\Program Files\cl03blue.GIF
[1998/10/09 17:18:06 | 000,017,727 | R--- | C] () -- C:\Program Files\cl04text.GIF
[1998/10/09 16:58:54 | 000,017,911 | R--- | C] () -- C:\Program Files\cl02bean.GIF
[1998/10/09 16:55:46 | 000,054,277 | R--- | C] () -- C:\Program Files\cl01exam.GIF
========== LOP Check ==========
[2010/07/20 17:02:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\agi
[2010/07/14 10:34:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\billeo
[2011/07/02 17:18:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\boost_interprocess
[2010/06/30 23:03:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Citrix
[2010/07/07 13:56:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Geek Squad
[2011/04/25 21:06:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\gKl16639lDmHh16639
[2010/07/20 17:03:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Kiwee Toolbar
[2010/09/23 13:20:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MGS
[2010/07/31 10:22:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Movielink
[2011/06/24 09:48:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PCDr
[2011/08/29 15:05:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Rosetta Stone
[2011/08/29 15:03:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\RosettaStoneLtdServices
[2010/07/14 13:38:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sierra
[2010/09/26 00:05:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\STOPzilla!
[2010/08/14 15:50:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Trusteer
[2011/08/12 16:05:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WinMaximizer
[2011/03/27 09:04:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WinZip
[2010/12/03 10:45:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/07/24 12:15:28 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{9CD61942-8DA1-4781-925C-4FE1471E0820}
[2010/07/20 17:03:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\AGI
[2011/08/08 23:53:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\Amazon
[2011/09/29 07:44:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\Azureus
[2010/10/15 12:13:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\BabylonToolbar
[2010/07/21 01:08:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\BitZipper
[2011/09/26 18:25:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\com.chromaom.SeamlessStudio
[2011/06/24 01:24:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\ElevatedDiagnostics
[2010/08/01 14:45:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\Genie-Soft
[2011/05/18 22:10:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\GetRightToGo
[2011/06/24 09:42:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\PCDr
[2011/01/21 05:05:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\PhotoScape
[2010/08/16 14:15:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\Raptr
[2011/07/24 12:15:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\searchquband
[2011/08/29 01:13:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\SecondLife
[2011/09/30 06:48:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\Spotify
[2010/08/14 15:51:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\Trusteer
[2011/09/29 07:43:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\TS3Client
[2011/03/29 15:10:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\Windows Desktop Search
[2011/05/21 23:55:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\Windows Search
[2011/01/21 05:05:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kristyn\Application Data\yoclient
[2011/10/05 17:37:37 | 000,000,432 | ---- | M] () -- C:\WINDOWS\Tasks\GBM - Easy Layout Backup Job-Full.job
[2011/09/13 03:01:07 | 000,000,564 | ---- | M] () -- C:\WINDOWS\Tasks\PCDoctorBackgroundMonitorTask.job
[2011/10/05 14:30:35 | 000,000,426 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{51CE0117-9DB9-4100-9E08-A92F9708E878}.job
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 88 bytes -> C:\Documents and Settings\Kristyn\Desktop\Launcher.exe:SummaryInformation
@Alternate Data Stream - 88 bytes -> C:\Documents and Settings\Kristyn\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf:SummaryInformation
< End of report >
as far as EXTRAS log, I have no idea where this would be as it did not save to my desktop as indicated in the posted instructions stated it would. So the only other log which I have per same instructions is the "Check-up log". Those results are as follows;
Results of screen317's Security Check version 0.99.20
Windows XP Service Pack 3
Internet Explorer 8
``````````````````````````````
Antivirus/Firewall Check:
Windows Firewall Enabled!
Avira AntiVir Personal - Free Antivirus
Sygate Personal Firewall
Avira successfully updated!
```````````````````````````````
Anti-malware/Other Utilities Check:
Malwarebytes' Anti-Malware
CCleaner
Java 6 Update 26
Out of date Java installed!
Adobe Flash Player
````````````````````````````````
Process Check:
objlist.exe by Laurent
Malwarebytes' Anti-Malware mbamservice.exe
Avira Antivir avgnt.exe
Avira Antivir avguard.exe
``````````End of Log````````````
Okay, so a summary in my own words as to what has been going on with my system. Well for starters my hotmail account was apparently hacked, I believe this due to some obscure email which was sent out to all of my email contacts using my email account to do so. I know that my account was used because I received several postmaster unable to deliver notifications in my inbox( actually this occurred twice several hours apart).
And another issue which has been going on for sometime now is that when I am on the Internet I contstantly receive that Error page stating "Internet Explorer cannot display the page you have requested.". With the "Diagnose Network Connection Problems (or something to that effect). This has become more than just bothersome, it has actually cost me several hundred dollars, since this occurred when I was recently booking an airline ticket to Holland and when attempting to process the payment for said ticket I received this Error, only to find out payment had processed after all despite the message the British Airways website displayed. ( Because I have found that if I refresh, that this error screen will more times than not go away and take me to the page I was attempting to view), so when I refreshed during the payment process ofc BA website is prgrammed to err. However it didnt and I ended up making this reservation twice due to this cluster**** of an issue my computer seems to have going to all different types of pages not just when it involves encryption.
Another indication of infection would be that my desktop wallpaper seems to change at random times with no provocation from me. Well that and Im not understanding the whole file structure of my computer and why there seems to be several computers listed under my C: drive much with the same types of folders contained in ea. if that makes sense. So I trust you guys and know you know what you are soing. and would appreciate any help you can give with this apparrent Beast that has taken over my system.






