OTL Log:
OTL logfile created on: 4/9/2012 10:28:57 PM - Run 1
OTL by OldTimer - Version 3.2.39.2 Folder = C:\Documents and Settings\John & Wendy\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.49 Gb Total Physical Memory | 2.22 Gb Available Physical Memory | 63.52% Memory free
5.33 Gb Paging File | 4.03 Gb Available in Paging File | 75.64% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 465.75 Gb Total Space | 437.36 Gb Free Space | 93.90% Space Free | Partition Type: NTFS
Computer Name: DESKTOP-1 | User Name: John & Wendy | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/04/09 22:27:40 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\John & Wendy\Desktop\OTL.exe
PRC - [2012/02/28 17:38:52 | 001,373,576 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
PRC - [2012/02/24 10:36:06 | 002,659,768 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Security\pctsGui.exe
PRC - [2012/02/24 10:36:06 | 001,117,624 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Security\pctsSvc.exe
PRC - [2012/02/24 09:16:12 | 000,402,336 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Security\pctsAuxs.exe
PRC - [2012/02/17 15:08:16 | 000,550,864 | ---- | M] (Threat Expert Ltd.) -- C:\Program Files\PC Tools Security\BDT\BDTUpdateService.exe
PRC - [2012/01/13 14:53:18 | 000,652,360 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012/01/13 14:53:18 | 000,460,872 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2011/11/22 18:18:26 | 001,318,816 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe
PRC - [2011/10/18 15:32:30 | 000,150,856 | ---- | M] (McAfee, Inc.) -- C:\WINDOWS\system32\mfevtps.exe
PRC - [2011/10/18 15:28:34 | 000,160,608 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
PRC - [2011/10/18 15:28:18 | 000,166,288 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
PRC - [2011/09/30 09:11:18 | 000,794,824 | ---- | M] (McAfee, Inc.) -- c:\Program Files\McAfee.com\Agent\mcupdate.exe
PRC - [2011/08/03 07:49:00 | 002,255,464 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
PRC - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
PRC - [2010/03/25 12:02:16 | 000,611,968 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe
PRC - [2010/01/21 17:27:44 | 009,136,960 | ---- | M] (Western Digital) -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
PRC - [2010/01/21 17:27:42 | 002,057,536 | ---- | M] (WDC) -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
PRC - [2010/01/21 17:24:08 | 000,110,592 | ---- | M] (WDC) -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
PRC - [2009/12/28 09:33:01 | 000,096,896 | R--- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
PRC - [2009/11/04 14:39:24 | 000,268,824 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel® Management Engine Components\LMS\LMS.exe
PRC - [2009/10/16 11:42:48 | 000,319,488 | -H-- | M] (DeviceVM, Inc.) -- C:\ASUS.SYS\config\DVMExportService.exe
PRC - [2009/06/16 09:58:08 | 000,020,480 | ---- | M] (Memeo) -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
PRC - [2009/06/03 17:16:42 | 000,207,400 | ---- | M] (ActivIdentity) -- C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe
PRC - [2009/06/03 17:16:34 | 000,153,640 | ---- | M] (ActivIdentity) -- C:\Program Files\ActivIdentity\ActivClient\acevents.exe
PRC - [2009/06/03 17:13:28 | 000,400,936 | ---- | M] (ActivIdentity) -- C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe
PRC - [2009/06/03 17:13:04 | 000,130,600 | ---- | M] (ActivIdentity) -- C:\Program Files\ActivIdentity\ActivClient\acsagent.exe
PRC - [2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2005/07/08 00:55:02 | 000,491,520 | ---- | M] (Hewlett-Packard) -- C:\WINDOWS\system32\hphmon05.exe
PRC - [2005/07/08 00:55:00 | 000,176,128 | ---- | M] (HP) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
PRC - [2004/03/18 17:55:48 | 000,065,536 | ---- | M] (HP) -- C:\WINDOWS\system32\HPZipm12.exe
PRC - [2003/12/05 16:41:44 | 000,049,152 | ---- | M] (Hewlett-Packard) -- C:\Program Files\Hewlett-Packard\HP Software Update\hpwuSchd2.exe
========== Modules (No Company Name) ==========
MOD - [2012/04/04 22:49:18 | 000,998,400 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management\a2a14380e8c9149d5b212d0100ef588a\System.Management.ni.dll
MOD - [2012/04/04 22:48:36 | 001,712,128 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\96e485c02ad346a2bd26a635e7fcb023\Microsoft.VisualBasic.ni.dll
MOD - [2012/04/04 22:37:05 | 000,212,992 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\11dcb806c92f55111f5fa9f1a90e3bdd\System.ServiceProcess.ni.dll
MOD - [2012/04/04 22:36:52 | 011,817,472 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\29bdc8352d3c26e3c572ea60639dec3b\System.Web.ni.dll
MOD - [2012/04/04 22:36:45 | 000,771,584 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\c14e58265386feb509cc61bb5e8dd296\System.Runtime.Remoting.ni.dll
MOD - [2012/04/04 22:36:42 | 006,616,576 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data\ae888f8633fce3ff1de98e32bce0abbf\System.Data.ni.dll
MOD - [2012/04/04 22:36:31 | 012,430,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\ad99ac6b5666edb8ee742dd64f9578af\System.Windows.Forms.ni.dll
MOD - [2012/04/04 22:36:24 | 001,587,200 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\9351cf29bb1ba951e45a9b3b0edab937\System.Drawing.ni.dll
MOD - [2012/04/04 22:35:37 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\77e1279cbf4eecfb0284b63316fe43fe\System.Xml.ni.dll
MOD - [2012/04/04 22:35:33 | 000,971,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\94a40f415bfa947e251888bbe88bb973\System.Configuration.ni.dll
MOD - [2012/04/04 22:35:28 | 007,953,408 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\9e3803cd2a11f056291862e306a8e2b2\System.ni.dll
MOD - [2012/04/04 22:34:47 | 002,933,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2012/02/24 10:36:02 | 000,157,624 | ---- | M] () -- C:\Program Files\PC Tools Security\NetworkLayer\PCTCFHook.dll
MOD - [2012/02/24 10:35:44 | 000,091,576 | ---- | M] () -- C:\Program Files\PC Tools Security\avengine\sdkBSCtrl.dll
MOD - [2012/02/17 15:08:16 | 000,108,496 | ---- | M] () -- C:\Program Files\PC Tools Security\BDT\BSPatch.dll
MOD - [2011/10/16 15:49:04 | 011,490,816 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\ca87ba84221991839abbe7d4bc9c6721\mscorlib.ni.dll
MOD - [2009/09/29 23:33:08 | 000,024,576 | R--- | M] () -- C:\WINDOWS\system32\AsIO.dll
MOD - [2009/08/19 16:49:08 | 000,049,152 | ---- | M] () -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\Memeo.API.dll
MOD - [2009/07/29 16:24:14 | 000,504,293 | ---- | M] () -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\sqlite3.dll
MOD - [2008/06/20 12:02:47 | 000,245,248 | ---- | M] () -- \\?\globalroot\systemroot\system32\mswsock.dll
MOD - [2008/06/20 12:02:47 | 000,245,248 | ---- | M] () -- \\.\globalroot\systemroot\system32\mswsock.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\NVENET.dll -- (ziptoa)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\spmd.dll -- (zebrceb)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\navapel.dll -- (z525obex)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\btdriver.dll -- (Wtcls2k)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\winpower.dll -- (WscNetDr)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mcafeeantispyware.dll -- (wpsdrvnt)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\PCDCODEC.dll -- (WINIO)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\NVTCP.dll -- (windrvNT)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tosrfnds.dll -- (win32sl)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\scarddrv.dll -- (WIBUKEY)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\s125mgmt.dll -- (websenseuserservice)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\smservaz.dll -- (websensepolicyserver)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SunkFilt.dll -- (w800bus)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\roxupnprenderer.dll -- (W700mdfl)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wkscfgsrv.dll -- (w39n51)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\EpmShd.dll -- (vpctcom)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\basic2.dll -- (vpcbus)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dktknsrv.dll -- (vncmirror)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\w3svc.dll -- (vmnetdhcp)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\WNCPKT.dll -- (VirtualFD)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\carboniteservice.dll -- (viaudio)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ntiopnp.dll -- (vetfddnt)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\caccprovsp.dll -- (VAIOMediaPlatform-PhotoServer-HTTP)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\hsvcmod.dll -- (v2imount)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\hclinetd.dll -- (usnsvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\w550bus.dll -- (USBDeviceService)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\TPwSav.dll -- (us30service)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vxd.dll -- (upperdev)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nvport.dll -- (U81xbus)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\WNIPROT5.dll -- (U2SP)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cmbatt.dll -- (tunnelguardservice)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\L8042Kbd.dll -- (tosrfec)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\modem.dll -- (tfsndrct)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\VRADFIL.dll -- (TestHandler)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\s217unic.dll -- (symsecureport)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\isdrv120.dll -- (SWUMX20)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nmwcdc.dll -- (SWMX00) BLKWGU(Belkin)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vstor2.dll -- (stylexphelper)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\portio.dll -- (sstpsvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\egathdrv.dll -- (ssoftservice)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dcomlaunch.dll -- (SrvcEKIOMngr)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cercsr6.dll -- (SprintRcAppSvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\btkrnl.dll -- (speedfan)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\emitray.dll -- (spbbcsvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\senfilt.dll -- (softfax)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iolodmv.dll -- (smrt)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\siswlsvc.dll -- (siside)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\bc_tdi_f.dll -- (shdserv)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Invoker.dll -- (sglfb)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\aksfridge.dll -- (SetupNT)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\GoogleDesktopManager-010708-104812.dll -- (se58mdm)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\backupexecnamingservice.dll -- (SE2Cmgmt)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\BCM43XV.dll -- (SE27bus)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ctdvda2k.dll -- (sdbus)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\aolservice.dll -- (sbhooksvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\p17.dll -- (sansaservice)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SE2Bmdfl.dll -- (s616obex)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\addfiltr.dll -- (S3GIGP)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iviregmgr.dll -- (s125mdm)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lcs.dll -- (s116unic)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pserve.dll -- (s116obex)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\prfldsvc.dll -- (s116bus)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\WGX.dll -- (rxmssync)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\termservice.dll -- (RTSTOR)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\roxwatch9.dll -- (RTL8169)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\WD_FireWire_HID.dll -- (rt73)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\maya70docserver.dll -- (RSAFAL)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tvs.dll -- (roxliveshare9)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\anio.dll -- (ROOTUSB)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\CAM1210.dll -- (rampartsvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\JavaQuickStarterService.dll -- (racsvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dlacdbhm.dll -- (qserver)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\raidmsvr.dll -- (qfcoresvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ndproxy.dll -- (purendis)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\bthusb.dll -- (PTDCBus)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lxbt_device.dll -- (psasrv)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\rsvchost.dll -- (ProcObsrv)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\HPFECP20.dll -- (pfmodnt)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\WaveFDE.dll -- (pdlnecfg)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\soma.dll -- (pcctlcom)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mail2ec.dll -- (parallel)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\acmservice.dll -- (owstimer)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pdengine.dll -- (oracleorahometnslistener)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\fallback.dll -- (OracleOraHome92ClientCache)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SE2Cmdfl.dll -- (oracleorahome90agent)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sonytvc.dll -- (oraclemtsrecoveryservice)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\w29n51.dll -- (ohci1394)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SrvcSSIOMngr.dll -- (ofcpfwsvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\zpjava.dll -- (NWHOST)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\shdserv.dll -- (NVR0FLASHDev)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\crcdisk.dll -- (nvata)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vaiomediaplatform-musicserver-appserver.dll -- (NuidFltr)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\stcagent.dll -- (NSSvcMgr)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\USIUDF.dll -- (nnsvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iaimfp0.dll -- (NMSSvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SE2Cmdm.dll -- (NMSAccessU)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\qcdonner.dll -- (NeroMediaHomeService.4)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\hcwPVRP2.dll -- (Ndisipo)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\se58bus.dll -- (mxserver)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\websensecpmcommunicationagent.dll -- (mvwebserver)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\igniteservice.exe.dll -- (mssqlserver)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pktfilter.dll -- (mssql$sony_mediamgr)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\s116unic.dll -- (mscsptisrv)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\DSXUSB.dll -- (mhn)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sandradatasrv.dll -- (lwwlicenseservice)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iwebcal.dll -- (lvselsus)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\EUSBMSD.dll -- (ltck000c)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\RTHDMIAzAudService.dll -- (lockmgr)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dtscsi.dll -- (LMouKE)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\i81x.dll -- (lmimaint)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\MKEMUSB.dll -- (lhidusb)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iPassPeriodicUpdateService.dll -- (l8042pr2)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ndiscm.dll -- (JGOGO)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\PCASp50.dll -- (issuser)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\quickhealfirewall.dll -- (irmon)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\backupexecjobengine.dll -- (IPSECSHM)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\spcsutilityservice.dll -- (iksysflt)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\knobserv.dll -- (ikfileflt)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\advservice.dll -- (iftpsvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cachemgr.dll -- (idechndr)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ptilink.dll -- (ICM10USB)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\se27unic.dll -- (icm10blk)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ma_cmidi_installerservice.dll -- (ibmpmdrv)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\USR1806V.dll -- (iaimfp2)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mmc_2K.dll -- (iaimfp1)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\yukonwxp.dll -- (iaantmon)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pavsrv.dll -- (HPFECP20)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\avg7alrt.dll -- (hpdskflt)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\kpfwsvc.dll -- (HFACSVC)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\symc8xx.dll -- (fshttps)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pccsmcfd.dll -- (Freedom)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sfman.dll -- (filechecker)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\MA8032U.dll -- (fgdxbus)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\atfsd.dll -- (fasttrackinstallerservice)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\RIOUNIV.dll -- (EU3_USB)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\incdfs.dll -- (ET5Drv)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\WMIService.dll -- (elotouchscreen)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cm102u32.dll -- (eloggersvc6)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\radclock.dll -- (ELmou)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mvserver.dll -- (egathdrv)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ino_flpy.dll -- (edspport)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\RivaTuner32.dll -- (dwmrcs)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\emclisrv.dll -- (dnserver32)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lvupdtio.dll -- (DMUSBUSBDCam)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Alpham1.dll -- (dlaudfam)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\apfiltrservice.dll -- (diskeeper)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\orbmediaservice.dll -- (dirms_defragmentation)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\superproserver.dll -- (defwatch)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\int15.sys.dll -- (dcstor32)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nvraid.dll -- (dcpflics)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Pctspk.dll -- (DCamUSBSQTECH)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\napagent.dll -- (DCamUSBMke2)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\WavxDMgr.dll -- (DCamUSBGrandTek)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ghostsec.dll -- (cwafadmincontroller)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\bt3cusb.dll -- (cvslock)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\oracleformsserver-forms60server-oraform.dll -- (CTSBLFX.DLL)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\symantecantibotdriver.dll -- (ctljystk)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SQLAgent$LG_LP2.dll -- (crauto)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sbpci.dll -- (cqmghost)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mcdbus.dll -- (cpucoolserver)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\TNaviSrv.dll -- (cpqdmi)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tangoservice.dll -- (cpqdfw)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\psasrv.dll -- (cpqarry2)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\kpf4.dll -- (comhost)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ser2plms.dll -- (CnxTrUsb)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\aswlsvc.dll -- (ccflic0)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\MA8032M.dll -- (Cam5603D)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\BCMTPM.dll -- (Cam5603C)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\trlokom_rmhsvc.dll -- (cachemgr)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\fix.dll -- (BUFADPT)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\LVCap138.dll -- (btnetfilter)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\npkcmsvc.dll -- (besclient)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\A88xXBar.dll -- (bdfdll)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\enum1394.dll -- (awecho)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tsmapip.dll -- (AVRec)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\CiscoVpnInstallService.dll -- (autostore)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\KS0108.dll -- (ATKFUSService)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pchost.dll -- (atitool)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tmmbd.dll -- (ati)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ASMMAP.dll -- (AR5416)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sfng32.dll -- (Angel2)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cmuda.dll -- (amusbprt)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\W55U01.dll -- (AlteraByteBlaster)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lxdmCATSCustConnectService.dll -- (ALABULK)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cvspydr2.dll -- (aksusb)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lxcj_device.dll -- (Afc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tcpip.dll -- (adpu320)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iaimfp2.dll -- (acrsch2svc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ndistapi.dll -- ({6080a529-897e-4629-a488-aba0c29b635e})
SRV - [2012/04/04 22:56:34 | 000,253,600 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/02/28 17:38:52 | 001,373,576 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2012/02/24 10:36:06 | 001,117,624 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\PC Tools Security\pctsSvc.exe -- (sdCoreService)
SRV - [2012/02/24 09:16:12 | 000,402,336 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\PC Tools Security\pctsAuxs.exe -- (sdAuxService)
SRV - [2012/02/24 09:16:08 | 000,071,008 | ---- | M] (PC Tools) [On_Demand | Stopped] -- C:\Program Files\PC Tools Security\TFEngine\TFService.exe -- (ThreatFire)
SRV - [2012/02/17 15:08:16 | 000,550,864 | ---- | M] (Threat Expert Ltd.) [Auto | Running] -- C:\Program Files\PC Tools Security\BDT\BDTUpdateService.exe -- (Browser Defender Update Service)
SRV - [2012/01/13 14:53:18 | 000,652,360 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011/10/18 15:32:30 | 000,150,856 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\WINDOWS\system32\mfevtps.exe -- (mfevtp)
SRV - [2011/10/18 15:28:34 | 000,160,608 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire)
SRV - [2011/10/18 15:28:18 | 000,166,288 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe -- (McShield)
SRV - [2011/08/03 07:49:00 | 002,255,464 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService)
SRV - [2011/06/23 15:22:58 | 000,361,712 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee\VirusScan\mcods.exe -- (McODS)
SRV - [2011/03/16 11:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McProxy)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNASvc)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (mcmscsvc)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV - [2010/01/21 17:24:08 | 000,110,592 | ---- | M] (WDC) [Auto | Running] -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe -- (WDDMService)
SRV - [2009/12/28 09:33:01 | 000,096,896 | R--- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe -- (AsSysCtrlService)
SRV - [2009/11/04 14:39:24 | 000,268,824 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS) Intel®
SRV - [2009/10/16 11:42:48 | 000,319,488 | -H-- | M] (DeviceVM, Inc.) [Auto | Running] -- C:\ASUS.SYS\config\DVMExportService.exe -- (DvmMDES)
SRV - [2009/06/16 09:58:08 | 000,020,480 | ---- | M] (Memeo) [Auto | Running] -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe -- (WDSmartWareBackgroundService)
SRV - [2009/06/03 17:16:42 | 000,207,400 | ---- | M] (ActivIdentity) [Auto | Running] -- C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe -- (ac.sharedstore)
SRV - [2004/03/18 17:55:48 | 000,065,536 | ---- | M] (HP) [On_Demand | Running] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (mfeavfk01)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme)
DRV - [2012/02/24 10:37:08 | 000,070,536 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctplsg.sys -- (pctplsg)
DRV - [2012/02/24 10:36:44 | 000,185,560 | ---- | M] (PC Tools) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\PCTSD.sys -- (PCTSD)
DRV - [2012/02/24 10:31:08 | 000,253,352 | ---- | M] (PC Tools) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\pctgntdi.sys -- (pctgntdi)
DRV - [2012/02/24 09:16:10 | 000,574,424 | --S- | M] (PC Tools) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\TfSysMon.sys -- (TFSysMon)
DRV - [2012/02/24 09:16:10 | 000,054,328 | --S- | M] (PC Tools) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\TfFsMon.sys -- (TfFsMon)
DRV - [2012/02/24 09:16:10 | 000,035,264 | --S- | M] (PC Tools) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TfNetMon.sys -- (TfNetMon)
DRV - [2011/12/10 15:24:06 | 000,020,464 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2011/12/01 16:07:06 | 000,909,728 | ---- | M] (PC Tools) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\pctEFA.sys -- (pctEFA)
DRV - [2011/12/01 16:07:06 | 000,342,168 | ---- | M] (PC Tools) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\pctDS.sys -- (pctDS)
DRV - [2011/11/14 15:12:26 | 000,331,880 | ---- | M] (PC Tools) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\PCTCore.sys -- (PCTCore)
DRV - [2011/10/15 14:16:16 | 000,464,176 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\mfehidk.sys -- (mfehidk)
DRV - [2011/10/15 14:16:16 | 000,338,176 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfefirek.sys -- (mfefirek)
DRV - [2011/10/15 14:16:16 | 000,180,816 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfeavfk.sys -- (mfeavfk)
DRV - [2011/10/15 14:16:16 | 000,121,256 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfeapfk.sys -- (mfeapfk)
DRV - [2011/10/15 14:16:16 | 000,089,792 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\mfetdi2k.sys -- (mfetdi2k)
DRV - [2011/10/15 14:16:16 | 000,087,656 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mferkdet.sys -- (mferkdet)
DRV - [2011/10/15 14:16:16 | 000,083,856 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfendisk.sys -- (mfendiskmp)
DRV - [2011/10/15 14:16:16 | 000,083,856 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfendisk.sys -- (mfendisk)
DRV - [2011/10/15 14:16:16 | 000,059,456 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfebopk.sys -- (mfebopk)
DRV - [2011/10/15 14:16:16 | 000,057,600 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\cfwids.sys -- (cfwids)
DRV - [2011/09/28 13:14:02 | 000,056,840 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\PCTBD.sys -- (PCTBD)
DRV - [2011/05/10 05:41:30 | 000,119,528 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvhda32.sys -- (NVHDA)
DRV - [2010/01/29 02:31:44 | 005,884,960 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2010/01/18 17:50:10 | 000,235,520 | R--- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\IntcDAud.sys -- (IntcDAud) Intel®
DRV - [2010/01/07 00:19:00 | 000,057,856 | ---- | M] (SCM Microsystems Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SCR3XX2K.sys -- (SCR3XX2K)
DRV - [2009/11/17 19:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2009/11/17 19:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2009/09/17 13:54:14 | 000,041,088 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HECI.sys -- (HECI) Intel®
DRV - [2009/08/03 22:28:18 | 000,011,296 | R--- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO)
DRV - [2009/07/05 22:48:02 | 000,011,448 | R--- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AsUpIO.sys -- (AsUpIO)
DRV - [2009/06/24 09:16:20 | 000,114,304 | R--- | M] (OMNIKEY) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\cxbu0wdm.sys -- (cxbu0wdm)
DRV - [2009/06/05 03:16:32 | 000,142,336 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2009/03/18 16:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2009/02/13 12:02:52 | 000,011,520 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wdcsam.sys -- (WDC_SAM)
DRV - [2006/05/03 12:50:42 | 001,540,608 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2004/10/07 21:16:04 | 000,035,840 | ---- | M] (Oak Technology Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\AFS2K.SYS -- (AFS2K)
DRV - [2004/08/12 22:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://search.live.c...referrer:source?}
IE - HKCU\..\URLSearchHook: {472734EA-242A-422b-ADF8-83D1E48CC825} - C:\Program Files\PC Tools Security\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
IE - HKCU\..\SearchScopes,DefaultScope = {F3DD5844-48DB-43B0-9600-5B21935B5A5A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://search.live.c...Box&Form=IE8SRC
IE - HKCU\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" =
http://websearch.ask...67-E05BD61C464A
IE - HKCU\..\SearchScopes\{F3DD5844-48DB-43B0-9600-5B21935B5A5A}: "URL" =
http://www.google.co...{outputEncoding?}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 127.0.0.1
========== FireFox ==========
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\progra~1\mcafee\msc\npmcsn~1.dll ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Program Files\Google\Update\1.2.183.23\npGoogleOneClick8.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{cb84136f-9c44-433a-9048-c5cd9df1dc16}: C:\Program Files\PC Tools Security\BDT\Firefox\ [2012/03/31 14:56:53 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{D19CA586-DD6C-4a0a-96F8-14644F340D60}: C:\Program Files\Common Files\McAfee\SystemCore [2012/04/09 22:26:49 | 000,000,000 | ---D | M]
[2011/02/24 20:01:18 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\John & Wendy\Application Data\Mozilla\Extensions
O1 HOSTS File: ([2012/04/09 12:06:45 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (PC Tools Browser Defender BHO) - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\PC Tools Security\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20111224173650.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (PC Tools Browser Defender) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\PC Tools Security\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (PC Tools Browser Defender) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\PC Tools Security\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O4 - HKLM..\Run: [accrdsub] C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe (ActivIdentity)
O4 - HKLM..\Run: [acevents] C:\Program Files\ActivIdentity\ActivClient\acevents.exe (ActivIdentity)
O4 - HKLM..\Run: [ApproveItForOfficeSetup] " /1 /P "C:\PROGRAM FILES\APPROVEIT\" File not found
O4 - HKLM..\Run: [Cpu Level Up help] C:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe ()
O4 - HKLM..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe (Hewlett-Packard)
O4 - HKLM..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe (HP)
O4 - HKLM..\Run: [HPHmon05] C:\WINDOWS\system32\hphmon05.exe (Hewlett-Packard)
O4 - HKLM..\Run: [HPHUPD05] C:\Program Files\Hewlett-Packard\\{5372B9A6-6E51-4f90-9B40-E0A3B8475C4E}\hphupd05.exe ()
O4 - HKLM..\Run: [ISTray] C:\Program Files\PC Tools Security\pctsGui.exe (PC Tools)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\nvmctray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe ()
O4 - HKLM..\Run: [QFan Help] C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe (ASUSTeK Computer Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ActivClient Agent.lnk = C:\Program Files\ActivIdentity\ActivClient\acsagent.exe (ActivIdentity)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WDDMStatus.lnk = C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WDSmartWare.lnk = C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\npjpi160_31.dll (Sun Microsystems, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089}
http://office.micros...n/ieawsdc32.cab (Microsoft Office Template and Media Control)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.micros...b?1294364092906 (WUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1599609C-7DBD-4A97-830C-5413467F8C76}: DhcpNameServer = 208.180.42.100 208.180.42.68 192.168.1.1
O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company)
O18 - Protocol\Handler\x-owacid2 {5B290518-830E-4C57-A66B-E4F748900C27} - C:\Program Files\Microsoft\SMIME Client (2010)\mimectl.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\ackpbsc: DllName - (C:\Program Files\ActivIdentity\ActivClient\ackpbsc.dll) - C:\Program Files\ActivIdentity\ActivClient\ackpbsc.dll (ActivIdentity)
O20 - Winlogon\Notify\acunlock: DllName - (C:\Program Files\ActivIdentity\ActivClient\acunlock.dll) - C:\Program Files\ActivIdentity\ActivClient\acunlock.dll (ActivIdentity)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/01/06 20:06:15 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Microsoft VM
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608555} - Internet Explorer Classes for Java
ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Vector Graphics Rendering (VML)
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 6.4
ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Dynamic HTML Data Binding for Java
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe
ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Advanced Authoring
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - DirectAnimation Java Classes
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.8
ActiveX: {5056b317-8d4c-43ee-8543-b9d1e234b8f4} - Security Update for Windows XP (KB923789)
ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} - .NET Framework
ActiveX: {73fa19d0-2d75-11d2-995d-00c04f98bbc9} - Web Folders
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - .NET Framework
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Task Scheduler
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Shockwave Flash
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE
NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - %systemroot%\system32\quickhealfirewall.dll File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: NMSAccessU - %systemroot%\system32\SE2Cmdm.dll File not found
NetSvcs: ibmsmbus - File not found
NetSvcs: filterservice - File not found
NetSvcs: btnetfilter - %systemroot%\system32\LVCap138.dll File not found
NetSvcs: ASNDIS5 - File not found
NetSvcs: pxfhbus - File not found
NetSvcs: O2SCBUS - File not found
NetSvcs: lhidusb - %systemroot%\system32\MKEMUSB.dll File not found
NetSvcs: fasttrackinstallerservice - %systemroot%\system32\atfsd.dll File not found
NetSvcs: nalntservice - File not found
NetSvcs: SE2Bmdfl - File not found
NetSvcs: pavdrv - File not found
NetSvcs: ghoststartservice - File not found
NetSvcs: freebsd - File not found
NetSvcs: DgiVecp - File not found
NetSvcs: license - File not found
NetSvcs: StkScan - File not found
NetSvcs: s3psddr - File not found
NetSvcs: lxcz_device - File not found
NetSvcs: V0080Dev - File not found
NetSvcs: iftpsvc - %systemroot%\system32\advservice.dll File not found
NetSvcs: oracleorahome90agent - %systemroot%\system32\SE2Cmdfl.dll File not found
NetSvcs: NeroMediaHomeService.4 - %systemroot%\system32\qcdonner.dll File not found
NetSvcs: OracleOraHome92ClientCache - %systemroot%\system32\fallback.dll File not found
NetSvcs: S3GIGP - %systemroot%\system32\addfiltr.dll File not found
NetSvcs: qserver - %systemroot%\system32\dlacdbhm.dll File not found
NetSvcs: websenseuserservice - %systemroot%\system32\s125mgmt.dll File not found
NetSvcs: transbaseservice - File not found
NetSvcs: AmdLLD - File not found
NetSvcs: whoisd32 - File not found
NetSvcs: FsVga - C:\WINDOWS\System32\drivers\fsvga.sys (Microsoft Corporation)
NetSvcs: nimcdlbk - File not found
NetSvcs: sfman - File not found
NetSvcs: rollbackclientservice - File not found
NetSvcs: MRESP50 - File not found
NetSvcs: RTHDMIAzAudService - File not found
NetSvcs: WDM_YAMAHAAC97 - File not found
NetSvcs: cq_mem - File not found
NetSvcs: milshieldcleaner - File not found
NetSvcs: mferkdk - File not found
NetSvcs: USBModem - File not found
NetSvcs: PID_08A0 - File not found
NetSvcs: LMouKE - %systemroot%\system32\dtscsi.dll File not found
NetSvcs: symappcore - File not found
NetSvcs: rchost - File not found
NetSvcs: traprcvr - File not found
NetSvcs: AeLookupSvc - File not found
NetSvcs: lxcccustomerconnect - File not found
NetSvcs: sfhlp01 - File not found
NetSvcs: ipodservice - File not found
NetSvcs: uphclean - File not found
NetSvcs: cxlpt - File not found
NetSvcs: zebrceb - %systemroot%\system32\spmd.dll File not found
NetSvcs: nnsvc - %systemroot%\system32\USIUDF.dll File not found
NetSvcs: atitool - %systemroot%\system32\pchost.dll File not found
NetSvcs: ET5Drv - %systemroot%\system32\incdfs.dll File not found
NetSvcs: defwatch - %systemroot%\system32\superproserver.dll File not found
NetSvcs: eloggersvc6 - %systemroot%\system32\cm102u32.dll File not found
NetSvcs: siside - %systemroot%\system32\siswlsvc.dll File not found
NetSvcs: tvichw32 - File not found
NetSvcs: symsecureport - %systemroot%\system32\s217unic.dll File not found
NetSvcs: PTDCBus - %systemroot%\system32\bthusb.dll File not found
NetSvcs: sdbus - %systemroot%\system32\ctdvda2k.dll File not found
NetSvcs: dcstor32 - %systemroot%\system32\int15.sys.dll File not found
NetSvcs: tfsndrct - %systemroot%\system32\modem.dll File not found
NetSvcs: upperdev - %systemroot%\system32\vxd.dll File not found
NetSvcs: smrt - %systemroot%\system32\iolodmv.dll File not found
NetSvcs: NuidFltr - %systemroot%\system32\vaiomediaplatform-musicserver-appserver.dll File not found
NetSvcs: CnxTrUsb - %systemroot%\system32\ser2plms.dll File not found
NetSvcs: se58mdm - %systemroot%\system32\GoogleDesktopManager-010708-104812.dll File not found
NetSvcs: dlaudfam - %systemroot%\system32\Alpham1.dll File not found
NetSvcs: Freedom - %systemroot%\system32\pccsmcfd.dll File not found
NetSvcs: cpqdmi - %systemroot%\system32\TNaviSrv.dll File not found
NetSvcs: SetupNT - %systemroot%\system32\aksfridge.dll File not found
NetSvcs: nvata - %systemroot%\system32\crcdisk.dll File not found
NetSvcs: mssql$sony_mediamgr - %systemroot%\system32\pktfilter.dll File not found
NetSvcs: elotouchscreen - %systemroot%\system32\WMIService.dll File not found
NetSvcs: Cam5603C - %systemroot%\system32\BCMTPM.dll File not found
NetSvcs: IPSECSHM - %systemroot%\system32\backupexecjobengine.dll File not found
NetSvcs: SprintRcAppSvc - %systemroot%\system32\cercsr6.dll File not found
NetSvcs: s116bus - %systemroot%\system32\prfldsvc.dll File not found
NetSvcs: EU3_USB - %systemroot%\system32\RIOUNIV.dll File not found
NetSvcs: DCamUSBMke2 - %systemroot%\system32\napagent.dll File not found
NetSvcs: vpcbus - %systemroot%\system32\basic2.dll File not found
NetSvcs: ikfileflt - %systemroot%\system32\knobserv.dll File not found
NetSvcs: ctljystk - %systemroot%\system32\symantecantibotdriver.dll File not found
NetSvcs: oraclemtsrecoveryservice - %systemroot%\system32\sonytvc.dll File not found
NetSvcs: roxliveshare9 - %systemroot%\system32\tvs.dll File not found
NetSvcs: dcpflics - %systemroot%\system32\nvraid.dll File not found
NetSvcs: vetfddnt - %systemroot%\system32\ntiopnp.dll File not found
NetSvcs: z525obex - %systemroot%\system32\navapel.dll File not found
NetSvcs: w39n51 - %systemroot%\system32\wkscfgsrv.dll File not found
NetSvcs: racsvc - %systemroot%\system32\JavaQuickStarterService.dll File not found
NetSvcs: ICM10USB - %systemroot%\system32\ptilink.dll File not found
NetSvcs: RTL8169 - %systemroot%\system32\roxwatch9.dll File not found
NetSvcs: RSAFAL - %systemroot%\system32\maya70docserver.dll File not found
NetSvcs: cqmghost - %systemroot%\system32\sbpci.dll File not found
NetSvcs: irmon - %systemroot%\system32\quickhealfirewall.dll File not found
NetSvcs: NMSSvc - %systemroot%\system32\iaimfp0.dll File not found
NetSvcs: ELmou - %systemroot%\system32\radclock.dll File not found
NetSvcs: Afc - %systemroot%\system32\lxcj_device.dll File not found
NetSvcs: ibmpmdrv - %systemroot%\system32\ma_cmidi_installerservice.dll File not found
NetSvcs: adpu320 - %systemroot%\system32\tcpip.dll File not found
NetSvcs: Ndisipo - %systemroot%\system32\hcwPVRP2.dll File not found
NetSvcs: us30service - %systemroot%\system32\TPwSav.dll File not found
NetSvcs: AR5416 - %systemroot%\system32\ASMMAP.dll File not found
NetSvcs: ssoftservice - %systemroot%\system32\egathdrv.dll File not found
NetSvcs: w800bus - %systemroot%\system32\SunkFilt.dll File not found
NetSvcs: v2imount - %systemroot%\system32\hsvcmod.dll File not found
NetSvcs: HPFECP20 - %systemroot%\system32\pavsrv.dll File not found
NetSvcs: mhn - %systemroot%\system32\DSXUSB.dll File not found
NetSvcs: {6080a529-897e-4629-a488-aba0c29b635e} - %systemroot%\system32\ndistapi.dll File not found
NetSvcs: W700mdfl - %systemroot%\system32\roxupnprenderer.dll File not found
NetSvcs: autostore - %systemroot%\system32\CiscoVpnInstallService.dll File not found
NetSvcs: s116unic - %systemroot%\system32\lcs.dll File not found
NetSvcs: l8042pr2 - %systemroot%\system32\iPassPeriodicUpdateService.dll File not found
NetSvcs: mscsptisrv - %systemroot%\system32\s116unic.dll File not found
NetSvcs: U81xbus - %systemroot%\system32\nvport.dll File not found
NetSvcs: lockmgr - %systemroot%\system32\RTHDMIAzAudService.dll File not found
NetSvcs: rampartsvc - %systemroot%\system32\CAM1210.dll File not found
NetSvcs: idechndr - %systemroot%\system32\cachemgr.dll File not found
NetSvcs: tunnelguardservice - %systemroot%\system32\cmbatt.dll File not found
NetSvcs: owstimer - %systemroot%\system32\acmservice.dll File not found
NetSvcs: DCamUSBSQTECH - %systemroot%\system32\Pctspk.dll File not found
NetSvcs: sbhooksvc - %systemroot%\system32\aolservice.dll File not found
NetSvcs: lwwlicenseservice - %systemroot%\system32\sandradatasrv.dll File not found
NetSvcs: aksusb - %systemroot%\system32\cvspydr2.dll File not found
NetSvcs: fgdxbus - %systemroot%\system32\MA8032U.dll File not found
NetSvcs: dwmrcs - %systemroot%\system32\RivaTuner32.dll File not found
NetSvcs: RTSTOR - %systemroot%\system32\termservice.dll File not found
NetSvcs: besclient - %systemroot%\system32\npkcmsvc.dll File not found
NetSvcs: awecho - %systemroot%\system32\enum1394.dll File not found
NetSvcs: ati - %systemroot%\system32\tmmbd.dll File not found
NetSvcs: lvselsus - %systemroot%\system32\iwebcal.dll File not found
NetSvcs: ROOTUSB - %systemroot%\system32\anio.dll File not found
NetSvcs: HFACSVC - %systemroot%\system32\kpfwsvc.dll File not found
NetSvcs: datunidr - File not found
NetSvcs: USBDeviceService - %systemroot%\system32\w550bus.dll File not found
NetSvcs: vpctcom - %systemroot%\system32\EpmShd.dll File not found
NetSvcs: adobeversioncue - File not found
NetSvcs: SE2Cmgmt - %systemroot%\system32\backupexecnamingservice.dll File not found
NetSvcs: ATKFUSService - %systemroot%\system32\KS0108.dll File not found
NetSvcs: SWMX00 - %systemroot%\system32\nmwcdc.dll File not found
NetSvcs: ProcObsrv - %systemroot%\system32\rsvchost.dll File not found
NetSvcs: Angel2 - %systemroot%\system32\sfng32.dll File not found
NetSvcs: pfmodnt - %systemroot%\system32\HPFECP20.dll File not found
NetSvcs: SrvcEKIOMngr - %systemroot%\system32\dcomlaunch.dll File not found
NetSvcs: ccflic0 - %systemroot%\system32\aswlsvc.dll File not found
NetSvcs: ALABULK - %systemroot%\system32\lxdmCATSCustConnectService.dll File not found
NetSvcs: oracleorahometnslistener - %systemroot%\system32\pdengine.dll File not found
NetSvcs: DCamUSBGrandTek - %systemroot%\system32\WavxDMgr.dll File not found
NetSvcs: cwafadmincontroller - %systemroot%\system32\ghostsec.dll File not found
NetSvcs: sglfb - %systemroot%\system32\Invoker.dll File not found
NetSvcs: CTSBLFX.DLL - %systemroot%\system32\oracleformsserver-forms60server-oraform.dll File not found
NetSvcs: cpqarry2 - %systemroot%\system32\psasrv.dll File not found
NetSvcs: s125mdm - %systemroot%\system32\iviregmgr.dll File not found
NetSvcs: bdfdll - %systemroot%\system32\A88xXBar.dll File not found
NetSvcs: WscNetDr - %systemroot%\system32\winpower.dll File not found
NetSvcs: hpdskflt - %systemroot%\system32\avg7alrt.dll File not found
NetSvcs: stylexphelper - %systemroot%\system32\vstor2.dll File not found
NetSvcs: ltck000c - %systemroot%\system32\EUSBMSD.dll File not found
NetSvcs: JGOGO - %systemroot%\system32\ndiscm.dll File not found
NetSvcs: cpucoolserver - %systemroot%\system32\mcdbus.dll File not found
NetSvcs: sstpsvc - %systemroot%\system32\portio.dll File not found
NetSvcs: websensepolicyserver - %systemroot%\system32\smservaz.dll File not found
NetSvcs: softfax - %systemroot%\system32\senfilt.dll File not found
NetSvcs: AVRec - %systemroot%\system32\tsmapip.dll File not found
NetSvcs: WIBUKEY - %systemroot%\system32\scarddrv.dll File not found
NetSvcs: U2SP - %systemroot%\system32\WNIPROT5.dll File not found
NetSvcs: viaudio - %systemroot%\system32\carboniteservice.dll File not found
NetSvcs: amusbprt - %systemroot%\system32\cmuda.dll File not found
NetSvcs: wpsdrvnt - %systemroot%\system32\mcafeeantispyware.dll File not found
NetSvcs: dnserver32 - %systemroot%\system32\emclisrv.dll File not found
NetSvcs: WINIO - %systemroot%\system32\PCDCODEC.dll File not found
NetSvcs: iaantmon - %systemroot%\system32\yukonwxp.dll File not found
NetSvcs: pcctlcom - %systemroot%\system32\soma.dll File not found
NetSvcs: DMUSBUSBDCam - %systemroot%\system32\lvupdtio.dll File not found
NetSvcs: AlteraByteBlaster - %systemroot%\system32\W55U01.dll File not found
NetSvcs: Cam5603D - %systemroot%\system32\MA8032M.dll File not found
NetSvcs: purendis - %systemroot%\system32\ndproxy.dll File not found
NetSvcs: ohci1394 - %systemroot%\system32\w29n51.dll File not found
NetSvcs: parallel - %systemroot%\system32\mail2ec.dll File not found
NetSvcs: ziptoa - %systemroot%\system32\NVENET.dll File not found
NetSvcs: U3sHlpDr - File not found
NetSvcs: usnsvc - %systemroot%\system32\hclinetd.dll File not found
NetSvcs: VirtualFD - %systemroot%\system32\WNCPKT.dll File not found
NetSvcs: dirms_defragmentation - %systemroot%\system32\orbmediaservice.dll File not found
NetSvcs: tosrfec - %systemroot%\system32\L8042Kbd.dll File not found
NetSvcs: s116obex - %systemroot%\system32\pserve.dll File not found
NetSvcs: rxmssync - %systemroot%\system32\WGX.dll File not found
NetSvcs: comhost - %systemroot%\system32\kpf4.dll File not found
NetSvcs: Wtcls2k - %systemroot%\system32\btdriver.dll File not found
NetSvcs: iaimfp1 - %systemroot%\system32\mmc_2K.dll File not found
NetSvcs: lmimaint - %systemroot%\system32\i81x.dll File not found
NetSvcs: spbbcsvc - %systemroot%\system32\emitray.dll File not found
NetSvcs: filechecker - %systemroot%\system32\sfman.dll File not found
NetSvcs: cvslock - %systemroot%\system32\bt3cusb.dll File not found
NetSvcs: egathdrv - %systemroot%\system32\mvserver.dll File not found
NetSvcs: issuser - %systemroot%\system32\PCASp50.dll File not found
NetSvcs: speedfan - %systemroot%\system32\btkrnl.dll File not found
NetSvcs: sansaservice - %systemroot%\system32\p17.dll File not found
NetSvcs: s616obex - %systemroot%\system32\SE2Bmdfl.dll File not found
NetSvcs: mvwebserver - %systemroot%\system32\websensecpmcommunicationagent.dll File not found
NetSvcs: diskeeper - %systemroot%\system32\apfiltrservice.dll File not found
NetSvcs: cpqdfw - %systemroot%\system32\tangoservice.dll File not found
NetSvcs: iaimfp2 - %systemroot%\system32\USR1806V.dll File not found
NetSvcs: SE27bus - %systemroot%\system32\BCM43XV.dll File not found
NetSvcs: mxserver - %systemroot%\system32\se58bus.dll File not found
NetSvcs: vmnetdhcp - %systemroot%\system32\w3svc.dll File not found
NetSvcs: TestHandler - %systemroot%\system32\VRADFIL.dll File not found
NetSvcs: edspport - %systemroot%\system32\ino_flpy.dll File not found
NetSvcs: NSSvcMgr - %systemroot%\system32\stcagent.dll File not found
NetSvcs: qfcoresvc - %systemroot%\system32\raidmsvr.dll File not found
NetSvcs: crauto - %systemroot%\system32\SQLAgent$LG_LP2.dll File not found
NetSvcs: mssqlserver - %systemroot%\system32\igniteservice.exe.dll File not found
NetSvcs: fshttps - %systemroot%\system32\symc8xx.dll File not found
NetSvcs: pdlnecfg - %systemroot%\system32\WaveFDE.dll File not found
NetSvcs: BUFADPT - %systemroot%\system32\fix.dll File not found
NetSvcs: cachemgr - %systemroot%\system32\trlokom_rmhsvc.dll File not found
NetSvcs: rt73 - %systemroot%\system32\WD_FireWire_HID.dll File not found
NetSvcs: sprtsvc_dellsupportcenter - File not found
NetSvcs: backupexecrpcservice - File not found
NetSvcs: pchost - File not found
NetSvcs: iolodmv - File not found
NetSvcs: NWHOST - %systemroot%\system32\zpjava.dll File not found
NetSvcs: shdserv - %systemroot%\system32\bc_tdi_f.dll File not found
NetSvcs: rupsd - File not found
NetSvcs: surveyor - File not found
NetSvcs: se2End5 - File not found
NetSvcs: ctaud2k - File not found
NetSvcs: w800mdfl - File not found
NetSvcs: cis1284 - File not found
NetSvcs: tvtpktfilter - File not found
NetSvcs: digisptiservice - File not found
NetSvcs: quickhealfirewall - File not found
NetSvcs: kraidsvc - File not found
NetSvcs: awhost32 - File not found
NetSvcs: backupexecalertserver - File not found
NetSvcs: XUIF - File not found
NetSvcs: amdppm - File not found
NetSvcs: AF15BDA - File not found
NetSvcs: win32sl - %systemroot%\system32\tosrfnds.dll File not found
NetSvcs: pavprsrv - File not found
NetSvcs: timounter - File not found
NetSvcs: de_serv - File not found
NetSvcs: oracle_load_balancer_60_client-forms6i - File not found
NetSvcs: rnadirmultiplexor - File not found
NetSvcs: psdistributionagent - File not found
NetSvcs: ql2100 - File not found
NetSvcs: iksysflt - %systemroot%\system32\spcsutilityservice.dll File not found
NetSvcs: vncmirror - %systemroot%\system32\dktknsrv.dll File not found
NetSvcs: VAIOMediaPlatform-PhotoServer-HTTP - %systemroot%\system32\caccprovsp.dll File not found
NetSvcs: SWUMX20 - %systemroot%\system32\isdrv120.dll File not found
NetSvcs: NVR0FLASHDev - %systemroot%\system32\shdserv.dll File not found
NetSvcs: acrsch2svc - %systemroot%\system32\iaimfp2.dll File not found
NetSvcs: wlmel51b - File not found
NetSvcs: windrvNT - %systemroot%\system32\NVTCP.dll File not found
NetSvcs: ofcpfwsvc - %systemroot%\system32\SrvcSSIOMngr.dll File not found
NetSvcs: winachsx - File not found
NetSvcs: Invoker - File not found
NetSvcs: arcltsrv - File not found
NetSvcs: AsDsm - File not found
NetSvcs: icm10blk - %systemroot%\system32\se27unic.dll File not found
NetSvcs: qbcfmonitorservice - File not found
NetSvcs: ha10kx2k - File not found
NetSvcs: wacommousefilter - File not found
NetSvcs: SQLAgent$ABBEYIIOFFLINE - File not found
NetSvcs: VHidMinidrv - File not found
NetSvcs: eeyeevnt - File not found
NetSvcs: navapel - File not found
NetSvcs: psasrv - %systemroot%\system32\lxbt_device.dll File not found
NetSvcs: SE26mdm - File not found
NetSvcs: appdrv - File not found
NetSvcs: MTDVC2 - File not found
NetSvcs: S7oppilx - File not found
NetSvcs: pdlndlpb - File not found
NetSvcs: W8335XP - File not found
NetSvcs: WmdmPmSp - File not found
MsConfig - StartUpFolder: C:^Documents and Settings^All Users^Start Menu^Programs^Startup^ApproveIt StartUp.lnk - - File not found
MsConfig - StartUpReg:
ASUS Update Checker - hkey= - key= - C:\Program Files\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe (ASUSTeK Computer Inc.)
MsConfig - StartUpReg:
ATICCC - hkey= - key= - C:\Program Files\ATI Technologies\ATI.ACE\cli.exe (ATI Technologies Inc.)
MsConfig - StartUpReg:
HP Component Manager - hkey= - key= - C:\Program Files\HP\hpcoretech\hpcmpmgr.exe (Hewlett-Packard Company)
MsConfig - StartUpReg:
IgfxTray - hkey= - key= - File not found
MsConfig - StartUpReg:
QuickTime Task - hkey= - key= - C:\Program Files\QuickTime\qttask.exe (Apple Computer, Inc.)
MsConfig - StartUpReg:
Share-to-Web Namespace Daemon - hkey= - key= - c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe (Hewlett-Packard)
MsConfig - StartUpReg:
Steam - hkey= - key= - C:\Program Files\Steam\Steam.exe (Valve Corporation)
MsConfig - State: "system.ini" - 0
MsConfig - State: "win.ini" - 0
MsConfig - State: "bootini" - 0
MsConfig - State: "services" - 0
MsConfig - State: "startup" - 2
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2012/04/09 22:28:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\McAfee
[2012/04/09 22:27:34 | 000,593,920 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\John & Wendy\Desktop\OTL.exe
[2012/04/09 11:44:46 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2012/04/09 11:42:01 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2012/04/09 11:42:01 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2012/04/09 11:42:01 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2012/04/09 11:42:01 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2012/04/09 11:41:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2012/04/09 11:41:41 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/04/09 11:37:59 | 004,453,897 | R--- | C] (Swearware) -- C:\Documents and Settings\John & Wendy\Desktop\ComboFix.exe
[2012/04/09 11:25:44 | 000,098,992 | ---- | C] (Kaspersky Lab, GERT) -- C:\WINDOWS\System32\drivers\67092840.sys
[2012/04/09 11:25:34 | 000,000,000 | ---D | C] -- C:\TDSSKiller_Quarantine
[2012/04/08 12:27:43 | 002,073,136 | ---- | C] (Kaspersky Lab ZAO) -- C:\Documents and Settings\John & Wendy\Desktop\tdsskiller.exe
[2012/04/06 23:50:11 | 000,607,260 | R--- | C] (Swearware) -- C:\Documents and Settings\John & Wendy\Desktop\dds.scr
[2012/04/06 23:19:09 | 000,000,000 | R--D | C] -- C:\Documents and Settings\John & Wendy\Start Menu\Programs\Administrative Tools
[2012/04/06 23:18:20 | 000,607,260 | R--- | C] (Swearware) -- C:\Documents and Settings\John & Wendy\Desktop\dds.com
[2012/04/06 13:23:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\John & Wendy\Local Settings\Application Data\LogMeIn Hamachi
[2012/04/06 13:10:06 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2012/04/06 12:01:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2012/04/05 22:27:36 | 000,000,000 | ---D | C] -- C:\Program Files\LogMeIn Hamachi
[2012/04/05 22:27:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\LogMeIn Hamachi
[2012/04/04 22:26:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\John & Wendy\Local Settings\Application Data\PCHealth
[2012/04/04 21:55:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\PCHealth
[2012/04/04 17:51:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\windowspowershell
[2012/04/04 17:51:22 | 000,000,000 | ---D | C] -- C:\6802ba65daf0b3e792
[2012/04/04 17:39:16 | 000,000,000 | ---D | C] -- C:\Program Files\Ask.com
[2012/04/04 17:39:15 | 000,000,000 | ---D | C] -- C:\Firefox
[2012/04/04 17:34:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2012/04/04 17:29:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Ask
[2012/04/04 16:50:50 | 000,000,000 | ---D | C] -- C:\Program Files\Minecraft
[2012/04/02 18:00:42 | 000,574,424 | --S- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\TfSysMon.sys
[2012/04/02 18:00:42 | 000,054,328 | --S- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\TfFsMon.sys
[2012/04/02 18:00:42 | 000,035,264 | --S- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\TfNetMon.sys
[2012/03/31 15:04:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Temp
[2012/03/31 15:03:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google
[2012/03/31 15:03:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2012/03/31 15:00:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Google Chrome
[2012/03/31 14:59:21 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2012/03/31 14:56:53 | 000,056,840 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTBD.sys
[2012/03/31 14:55:51 | 000,185,560 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTSD.sys
[2012/03/31 14:55:51 | 000,017,848 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctBTFix.sys
[2012/03/31 14:55:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\PC Tools Security
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\drivers\*.tmp files -> C:\WINDOWS\System32\drivers\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012/04/09 22:34:52 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\TEMP
[2012/04/09 22:33:27 | 000,000,330 | -H-- | M] () -- C:\dvmexp.idx
[2012/04/09 22:27:40 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\John & Wendy\Desktop\OTL.exe
[2012/04/09 22:23:43 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/04/09 22:23:11 | 000,000,000 | -HS- | M] () -- C:\WINDOWS\System32\dds_trash_log.cmd
[2012/04/09 22:23:09 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/04/09 12:10:57 | 000,436,026 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012/04/09 12:10:57 | 000,068,796 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012/04/09 12:06:45 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2012/04/09 12:05:54 | 000,753,175 | ---- | M] () -- C:\WINDOWS\System32\drivers\Cat.DB
[2012/04/09 11:44:51 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2012/04/09 11:38:04 | 004,453,897 | R--- | M] (Swearware) -- C:\Documents and Settings\John & Wendy\Desktop\ComboFix.exe
[2012/04/09 11:25:44 | 000,098,992 | ---- | M] (Kaspersky Lab, GERT) -- C:\WINDOWS\System32\drivers\67092840.sys
[2012/04/09 11:22:48 | 002,052,384 | ---- | M] () -- C:\Documents and Settings\John & Wendy\Desktop\tdsskiller.zip
[2012/04/08 22:52:01 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012/04/08 22:46:02 | 000,000,356 | ---- | M] () -- C:\WINDOWS\tasks\HP Usg Daily.job
[2012/04/08 12:27:43 | 002,073,136 | ---- | M] (Kaspersky Lab ZAO) -- C:\Documents and Settings\John & Wendy\Desktop\tdsskiller.exe
[2012/04/06 23:50:11 | 000,607,260 | R--- | M] (Swearware) -- C:\Documents and Settings\John & Wendy\Desktop\dds.scr
[2012/04/06 23:18:20 | 000,607,260 | R--- | M] (Swearware) -- C:\Documents and Settings\John & Wendy\Desktop\dds.com
[2012/04/06 21:46:24 | 000,002,515 | ---- | M] () -- C:\Documents and Settings\John & Wendy\Desktop\Microsoft Office Word 2007.lnk
[2012/04/06 14:00:09 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\John & Wendy\Desktop\2l8ovdbp.exe
[2012/04/06 13:56:14 | 000,050,477 | ---- | M] () -- C:\Documents and Settings\John & Wendy\Desktop\Defogger.exe
[2012/04/06 13:18:55 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2012/04/06 08:52:10 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk
[2012/04/05 21:06:49 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2012/04/05 00:52:03 | 000,001,984 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012/04/04 22:40:07 | 000,267,800 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012/04/04 19:28:30 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2012/04/04 17:15:07 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2012/04/01 22:14:53 | 000,001,595 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\McAfee AntiVirus Plus.lnk
[2012/03/31 14:55:51 | 000,001,682 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\PC Tools Spyware Doctor.lnk
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\drivers\*.tmp files -> C:\WINDOWS\System32\drivers\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012/04/09 22:23:11 | 000,000,000 | -HS- | C] () -- C:\WINDOWS\System32\dds_trash_log.cmd
[2012/04/09 12:04:04 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\TEMP
[2012/04/09 11:44:51 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2012/04/09 11:44:49 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2012/04/09 11:42:01 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2012/04/09 11:42:01 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2012/04/09 11:42:01 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2012/04/09 11:42:01 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2012/04/09 11:42:01 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2012/04/09 11:22:47 | 002,052,384 | ---- | C] () -- C:\Documents and Settings\John & Wendy\Desktop\tdsskiller.zip
[2012/04/06 13:59:52 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\John & Wendy\Desktop\2l8ovdbp.exe
[2012/04/06 13:55:57 | 000,050,477 | ---- | C] () -- C:\Documents and Settings\John & Wendy\Desktop\Defogger.exe
[2012/04/04 22:56:37 | 000,000,830 | ---- | C] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012/04/04 19:50:06 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012/04/04 19:50:06 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\dllcache\iacenc.dll
[2012/04/04 19:28:30 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Reader 9.lnk
[2012/04/04 19:28:30 | 000,001,729 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2012/04/02 18:31:16 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2012/03/31 15:00:12 | 000,001,813 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2012/03/31 14:55:51 | 000,001,682 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\PC Tools Spyware Doctor.lnk
[2011/12/11 23:10:05 | 000,767,952 | ---- | C] () -- C:\WINDOWS\BDTSupport.dll0349.old
[2011/12/11 23:10:05 | 000,767,952 | ---- | C] () -- C:\WINDOWS\BDTSupport.dll
[2011/12/11 20:16:00 | 000,011,716 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\54e0w245m2huy6u70n6ac
[2011/12/10 21:02:54 | 000,013,192 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\238265v6n322a423v050j2plu8g0
[2011/08/20 10:13:21 | 002,128,778 | ---- | C] () -- C:\WINDOWS\System32\nvdata.data
[2011/08/20 09:53:15 | 000,280,276 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2011/08/20 09:53:13 | 000,280,276 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2011/08/20 09:53:13 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
[2011/08/11 12:57:45 | 000,159,112 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2011/05/11 17:52:26 | 000,001,984 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/01/09 16:32:24 | 000,000,281 | ---- | C] () -- C:\WINDOWS\hpqcopy.INI
[2011/01/09 15:40:35 | 000,019,752 | ---- | C] () -- C:\WINDOWS\HPHins02.dat
[2011/01/09 15:40:35 | 000,004,284 | ---- | C] () -- C:\WINDOWS\hphmdl02.dat
[2011/01/09 15:40:25 | 000,364,544 | ---- | C] () -- C:\WINDOWS\System32\hphped05.exe
[2011/01/09 15:40:17 | 000,006,478 | ---- | C] () -- C:\WINDOWS\System32\hphmon05.dat
[2011/01/07 15:21:24 | 000,520,192 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2011/01/06 23:30:53 | 000,870,560 | R--- | C] () -- C:\WINDOWS\System32\igkrng575.bin
[2011/01/06 23:30:53 | 000,127,868 | R--- | C] () -- C:\WINDOWS\System32\igcompkrng575.bin
[2011/01/06 23:30:53 | 000,004,096 | R--- | C] ( ) -- C:\WINDOWS\System32\IGFXDEVLib.dll
[2011/01/06 23:30:53 | 000,000,151 | R--- | C] () -- C:\WINDOWS\System32\GfxUI.exe.config
[2011/01/06 23:15:34 | 000,011,448 | R--- | C] () -- C:\WINDOWS\System32\drivers\AsUpIO.sys
[2011/01/06 23:14:14 | 000,024,576 | R--- | C] () -- C:\WINDOWS\System32\AsIO.dll
[2011/01/06 23:14:14 | 000,011,296 | R--- | C] () -- C:\WINDOWS\System32\drivers\AsIO.sys
[2011/01/06 23:14:13 | 000,011,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp64.sys
[2011/01/06 23:14:13 | 000,010,216 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp32.sys
[2011/01/06 21:57:24 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2011/01/06 20:28:44 | 000,073,728 | R--- | C] () -- C:\WINDOWS\System32\RtNicProp32.dll
[2011/01/06 20:26:11 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2011/01/06 20:26:06 | 000,001,769 | ---- | C] () -- C:\WINDOWS\Language_trs.ini
[2011/01/06 20:26:02 | 000,032,613 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2011/01/06 20:26:02 | 000,010,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2011/01/06 20:07:26 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2011/01/06 20:04:15 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2011/01/06 11:56:16 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2011/01/06 11:55:23 | 000,267,800 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/07/31 10:47:00 | 002,195,030 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin
========== LOP Check ==========
[2012/04/04 17:29:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ask
[2011/02/09 21:02:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Cisco Systems
[2012/04/06 13:15:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PureEdge
[2011/12/11 15:44:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WD_SmartWareCommon
[2011/01/09 16:49:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Western Digital
[2011/12/20 11:53:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\John & Wendy\Application Data\PureEdge
[2011/08/20 10:22:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\John & Wendy\Application Data\SPORE
[2011/01/09 16:49:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\John & Wendy\Application Data\Western Digital
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*. >
[2011/07/19 15:08:21 | 000,000,000 | ---D | M] -- C:\053eea491c5fc9b2c72bfb42e521
[2011/12/24 23:22:53 | 000,000,000 | ---D | M] -- C:\3df72c8464bb5f5dd77263cd56db
[2012/04/04 17:51:24 | 000,000,000 | ---D | M] -- C:\6802ba65daf0b3e792
[2011/01/08 13:42:58 | 000,000,000 | ---D | M] -- C:\814b825119a9056f53be
[2012/04/09 07:00:29 | 000,000,000 | ---D | M] -- C:\ASUS.000
[2011/01/06 23:18:28 | 000,000,000 | ---D | M] -- C:\ASUS.SYS
[2011/01/07 15:20:37 | 000,000,000 | ---D | M] -- C:\ATI
[2012/04/09 11:44:51 | 000,000,000 | RHSD | M] -- C:\cmdcons
[2011/01/09 16:24:43 | 000,000,000 | ---D | M] -- C:\col3927
[2012/04/06 13:20:34 | 000,000,000 | ---D | M] -- C:\Config.Msi
[2011/01/07 15:20:18 | 000,000,000 | ---D | M] -- C:\Diamond
[2011/12/11 21:27:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings
[2011/12/11 20:55:31 | 000,000,000 | -H-D | M] -- C:\dvmexp
[2012/04/04 17:39:15 | 000,000,000 | ---D | M] -- C:\Firefox
[2011/01/06 21:28:00 | 000,000,000 | ---D | M] -- C:\Intel
[2011/01/07 20:26:07 | 000,000,000 | R--D | M] -- C:\MSOCache
[2011/08/20 10:12:51 | 000,000,000 | ---D | M] -- C:\NVIDIA
[2012/04/06 13:15:35 | 000,000,000 | R--D | M] -- C:\Program Files
[2012/04/09 12:12:49 | 000,000,000 | ---D | M] -- C:\Qoobox
[2011/12/20 11:43:23 | 000,000,000 | ---D | M] -- C:\SUPPORT
[2011/12/11 20:43:26 | 000,000,000 | -HSD | M] -- C:\System Volume Information
[2012/04/09 11:25:34 | 000,000,000 | ---D | M] -- C:\TDSSKiller_Quarantine
[2011/12/23 17:33:42 | 000,000,000 | ---D | M] -- C:\temp
[2012/04/09 22:26:53 | 000,000,000 | ---D | M] -- C:\WINDOWS
[2011/01/06 21:31:15 | 000,000,000 | ---D | M] -- C:\WUTemp
< %PROGRAMFILES%\*.exe >
Invalid Environment Variable: LOCALAPPDATA
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.manifest /3 >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< MD5 for: EXPLORER.EXE >
[2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\ERDNT\cache\explorer.exe
[2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\explorer.exe
[2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\system32\dllcache\explorer.exe
[2004/08/04 03:56:49 | 001,032,192 | ---- | M] (Microsoft Corporation) MD5=A0732187050030AE399B241436565E64 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
< MD5 for: REGEDIT.EXE >
[2008/04/13 20:12:32 | 000,146,432 | ---- | M] (Microsoft Corporation) MD5=058710B720282CA82B909912D3EF28DB -- C:\WINDOWS\ERDNT\cache\regedit.exe
[2008/04/13 20:12:32 | 000,146,432 | ---- | M] (Microsoft Corporation) MD5=058710B720282CA82B909912D3EF28DB -- C:\WINDOWS\regedit.exe
[2008/04/13 20:12:32 | 000,146,432 | ---- | M] (Microsoft Corporation) MD5=058710B720282CA82B909912D3EF28DB -- C:\WINDOWS\ServicePackFiles\i386\regedit.exe
[2008/04/13 20:12:32 | 000,146,432 | ---- | M] (Microsoft Corporation) MD5=058710B720282CA82B909912D3EF28DB -- C:\WINDOWS\system32\dllcache\regedit.exe
[2004/08/04 03:56:55 | 000,146,432 | ---- | M] (Microsoft Corporation) MD5=783AFC80383C176B22DBF8333343992D -- C:\WINDOWS\$NtServicePackUninstall$\regedit.exe
< MD5 for: USERINIT.EXE >
[2004/08/04 03:56:57 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=39B1FFB03C2296323832ACBAE50D2AFF -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
[2008/04/13 20:12:38 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\ERDNT\cache\userinit.exe
[2008/04/13 20:12:38 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008/04/13 20:12:38 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\system32\userinit.exe
< MD5 for: WINLOGON.EXE >
[2004/08/04 03:56:57 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=01C3346C241652F43AED8E2149881BFE -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2012/01/13 14:53:20 | 000,182,856 | ---- | M] () MD5=63EEC8A8B221AB79045E776E5F592868 -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2008/04/13 20:12:39 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\ERDNT\cache\winlogon.exe
[2008/04/13 20:12:39 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008/04/13 20:12:39 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\system32\dllcache\winlogon.exe
[2008/04/13 20:12:39 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\system32\winlogon.exe
< HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems|Windows /rs >
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems\\Kmode: %SystemRoot%\system32\win32k.sys [2012/02/03 05:22:18 | 001,860,096 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems\\Required: DebugWindows [binary data]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems\\Windows: %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2011-11-30 01:22:11
========== Alternate Data Streams ==========
@Alternate Data Stream - 209 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
@Alternate Data Stream - 127 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:430C6D84
< End of report >