Here are the 2 log files
OTL.txt
OTL logfile created on: 3/10/2012 7:25:58 AM - Run 1
OTL by OldTimer - Version 3.2.36.2 Folder = C:\Users\billrigsby\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19190)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.87 Gb Total Physical Memory | 0.73 Gb Available Physical Memory | 38.94% Memory free
3.99 Gb Paging File | 2.44 Gb Available in Paging File | 61.19% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 290.42 Gb Total Space | 74.15 Gb Free Space | 25.53% Space Free | Partition Type: NTFS
Drive D: | 7.67 Gb Total Space | 0.87 Gb Free Space | 11.33% Space Free | Partition Type: NTFS
Drive N: | 931.51 Gb Total Space | 376.28 Gb Free Space | 40.39% Space Free | Partition Type: NTFS
Computer Name: HP-PC | User Name: billrigsby | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\billrigsby\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\lg_fwupdate\fwupdate.exe (BitLeader)
PRC - C:\Program Files\TechSmith\Jing\Jing.exe (TechSmith Corporation)
PRC - C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe ()
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
PRC - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited)
PRC - C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe (Lavasoft Limited)
PRC - C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe ()
PRC - C:\Users\billrigsby\AppData\Roaming\mjusbsp\magicJack.exe (magicJack L.P.)
PRC - C:\Program Files\CallWave\IAM.exe (CallWave, Inc.)
PRC - C:\Windows\stivendor.exe (GP Systems Integration)
PRC - C:\Windows\diskperfm.exe (GP Systems Integration)
PRC - C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
PRC - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)
PRC - C:\Program Files\LaCie\Genie Backup Assistant\GBMAgent.exe (Genie-soft)
PRC - C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
PRC - C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe (OsdMaestro)
PRC - C:\hp\support\hpsysdrv.exe (Hewlett-Packard Company)
PRC - C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe (Macrovision Corporation)
PRC - C:\Windows\System32\StkASv2K.exe (Syntek America Inc.)
PRC - C:\Program Files\Iomega HotBurn Pro\Autolaunch.exe (Iomega Corporation)
PRC - C:\Program Files\Iomega\System32\AppServices.exe (Iomega Corporation)
PRC - C:\Program Files\Thomson multimedia\Lyra Wireless Remote\LyraW.exe (Thomson Inc.)
========== Modules (No Company Name) ==========
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\bc01d91f95947c7f25f3ae4e16db2cb5\System.Core.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\7fd6c62196829d1e2dce5a253145d51a\System.Configuration.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d9f0f1dc8cbdb81f1ba122d77a6ab710\System.Xml.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\65450889f3742aada2a6c0cf8e6173e3\System.Windows.Forms.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\137696d0416b65dbc1561152971488b4\System.Drawing.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\029217106fa24787ff7a61b754f8ebf7\System.Data.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\d48e106e015d0f8cb2d5295015cee508\PresentationFramework.Aero.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\56df3488472318c59d0a08ed10a065d3\PresentationFramework.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\3951e0a359c004cd6ba268ff78ac62aa\PresentationCore.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\1e258a951222c818540b33880ca45f2e\WindowsBase.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\c50133cb67d7c013fa31e1ffb942060b\System.ni.dll ()
MOD - C:\Program Files\TechSmith\Jing\Recorder.dll ()
MOD - C:\Program Files\HTC\HTC Sync 3.0\Maps\R66Api.dll ()
MOD - C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe ()
MOD - C:\Program Files\HTC\HTC Sync 3.0\sqlite3.7.dll ()
MOD - C:\Program Files\HTC\HTC Sync 3.0\sqlite3.dll ()
MOD - C:\Program Files\HTC\HTC Sync 3.0\htcDetect.dll ()
MOD - C:\Program Files\HTC\HTC Sync 3.0\htcDetectLegend.dll ()
MOD - C:\Program Files\HTC\HTC Sync 3.0\htcDisk.dll ()
MOD - C:\Program Files\HTC\HTC Sync 3.0\OutputLog.dll ()
MOD - C:\Program Files\HTC\HTC Sync 3.0\fdHttpd.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\b6632a8b2f276a8e31f5b0f6b2006cd1\mscorlib.ni.dll ()
MOD - C:\Users\billrigsby\AppData\Roaming\mjusbsp\octvqem_apiw.dll ()
MOD - C:\Windows\mdiwindb.dll ()
MOD - C:\Program Files\CyberLink\Power2Go\CLMLSvcPS.dll ()
MOD - C:\Program Files\CyberLink\Power2Go\CLMediaLibrary.dll ()
MOD - C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll ()
MOD - C:\Program Files\LaCie\Genie Backup Assistant\gs_encryption.dll ()
MOD - C:\Program Files\LaCie\Genie Backup Assistant\GSLogging.dll ()
MOD - c:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\dlaapi_w.dll ()
========== Win32 Services (SafeList) ==========
SRV - (Iomega Activity Disk2) -- File not found
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (Lavasoft Ad-Aware Service) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited)
SRV - (PassThru Service) -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe ()
SRV - (SBSDWSCService) -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (StkASSrv) -- C:\Windows\System32\StkASv2K.exe (Syntek America Inc.)
SRV - (Iomega App Services) -- C:\Program Files\Iomega\System32\AppServices.exe (Iomega Corporation)
========== Driver Services (SafeList) ==========
DRV - (PcdrNdisuio) -- File not found
DRV - (NwlnkFwd) -- File not found
DRV - (NwlnkFlt) -- File not found
DRV - (mdmxsdk) -- File not found
DRV - (IpInIp) -- File not found
DRV - (dnbudf) -- File not found
DRV - (aswSnx) -- C:\Windows\System32\drivers\aswSnx.sys (AVAST Software)
DRV - (aswSP) -- C:\Windows\System32\drivers\aswSP.sys (AVAST Software)
DRV - (aswRdr) -- C:\Windows\System32\drivers\aswRdr.sys (AVAST Software)
DRV - (aswTdi) -- C:\Windows\System32\drivers\aswTdi.sys (AVAST Software)
DRV - (aswMonFlt) -- C:\Windows\System32\drivers\aswMonFlt.sys (AVAST Software)
DRV - (aswFsBlk) -- C:\Windows\System32\drivers\aswFsBlk.sys (AVAST Software)
DRV - (Lbd) -- C:\Windows\system32\DRIVERS\Lbd.sys (Lavasoft AB)
DRV - (Lavasoft Kernexplorer) -- C:\Program Files\Lavasoft\Ad-Aware\kernexplorer.sys ()
DRV - (StarOpen) -- C:\Windows\System32\drivers\StarOpen.sys ()
DRV - (htcnprot) -- C:\Windows\System32\drivers\htcnprot.sys (Windows (R) Win 7 DDK provider)
DRV - (rd900wfx) -- C:\Windows\System32\drivers\rd900wfx.sys (Mark Fontana)
DRV - (HTCAND32) -- C:\Windows\System32\drivers\ANDROIDUSB.sys (HTC, Corporation)
DRV - (motccgpfl) -- C:\Windows\System32\drivers\motccgpfl.sys (Motorola)
DRV - (motccgp) -- C:\Windows\System32\drivers\motccgp.sys (Motorola)
DRV - (NVENETFD) -- C:\Windows\System32\drivers\nvmfdx32.sys (NVIDIA Corporation)
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
DRV - (nvstor32) -- C:\Windows\system32\DRIVERS\nvstor32.sys (NVIDIA Corporation)
DRV - (DLADResM) -- C:\Windows\System32\drivers\DLADResM.SYS (Roxio)
DRV - (DLABMFSM) -- C:\Windows\System32\drivers\DLABMFSM.SYS (Roxio)
DRV - (DLAUDF_M) -- C:\Windows\System32\drivers\DLAUDF_M.SYS (Roxio)
DRV - (DLAUDFAM) -- C:\Windows\System32\drivers\DLAUDFAM.SYS (Roxio)
DRV - (DLAOPIOM) -- C:\Windows\System32\drivers\DLAOPIOM.SYS (Roxio)
DRV - (DLABOIOM) -- C:\Windows\System32\drivers\DLABOIOM.SYS (Roxio)
DRV - (DLAPoolM) -- C:\Windows\System32\drivers\DLAPoolM.SYS (Roxio)
DRV - (DLAIFS_M) -- C:\Windows\System32\drivers\DLAIFS_M.SYS (Roxio)
DRV - (DLARTL_M) -- C:\Windows\System32\drivers\DLARTL_M.SYS (Roxio)
DRV - (DLACDBHM) -- C:\Windows\System32\Drivers\DLACDBHM.SYS (Roxio)
DRV - (motmodem) -- C:\Windows\System32\drivers\motmodem.sys (Motorola)
DRV - (ss_mdm) -- C:\Windows\System32\drivers\ss_mdm.sys (MCCI Corporation)
DRV - (ss_mdfl) -- C:\Windows\System32\drivers\ss_mdfl.sys (MCCI Corporation)
DRV - (ss_bus) SAMSUNG Mobile USB Device 1.0 driver (WDM) -- C:\Windows\System32\drivers\ss_bus.sys (MCCI Corporation)
DRV - (VSTHWBS2) -- C:\Windows\System32\drivers\VSTBS23.SYS (Conexant Systems, Inc.)
DRV - (StkAMini) -- C:\Windows\System32\drivers\StkAMini.sys (Syntek America Inc.)
DRV - (StkScan) -- C:\Windows\System32\drivers\StkScan.sys (Syntek America Inc.)
DRV - (Ps2) -- C:\Windows\System32\drivers\PS2.sys (Hewlett-Packard Company)
DRV - (iomdisk) -- C:\Windows\System32\DRIVERS\iomdisk.sys (Iomega Corporation)
DRV - (ASPI) -- C:\Windows\System32\drivers\ASPI32.SYS (Adaptec)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
AOL.com - News, Sports, Weather, Entertainment, Stocks & Local
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
AOL.com - News, Sports, Weather, Entertainment, Stocks & Local
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{02706A43-04DF-49D5-BE5E-EDC6046CC980}: "URL" =
{searchterms} - Ask.com Search
IE - HKLM\..\SearchScopes\{0943DB74-B955-4EE6-B104-CE57736E4BC6}: "URL" =
{searchTerms} - Bing
IE - HKLM\..\SearchScopes\{3D41CABB-146D-436D-A805-9DDDB5F52CAB}: "URL" =
{searchTerms} - Yahoo! Search Results
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" =
{searchTerms} - Google Search
IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" =
{searchTerms} - Bing
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
https://my.screenname.aol.com/_cqr/...hLev=0&sitedomain=sns.webmail.aol.com&lang=en
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
MSN.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = EA D9 B4 F3 94 CC CB 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore =
https://my.screenname.aol.com/_cqr/...hLev=0&sitedomain=sns.webmail.aol.com&lang=en
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\SearchScopes,DefaultScope = {FEDA440E-3A88-4C15-9A7C-98464B6455BF}
IE - HKCU\..\SearchScopes\{FEDA440E-3A88-4C15-9A7C-98464B6455BF}: "URL" =
{searchTerms} - Google Search
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/RhapsodyPlayerEngine,version=1.0: C:\Program Files\Real\RhapsodyPlayerEngine\nprhapengine.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
========== Chrome ==========
O1 HOSTS File: ([2011/10/28 08:58:03 | 000,437,862 | R--- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O1 - Hosts: 127.0.0.1
www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1
www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1
www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1
www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1
www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1
www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1
www.1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1
www.100888290cs.com
O1 - Hosts: 127.0.0.1
www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1
www.10sek.com
O1 - Hosts: 127.0.0.1
www.1-2005-search.com
O1 - Hosts: 15062 more lines...
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Complitly) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\billrigsby\AppData\Roaming\Complitly\Complitly.dll (SimplyGen)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O3 - HKLM\..\Toolbar: (no name) - {652853ad-5592-4231-88c6-706613a52e61} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - No CLSID value found.
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [CLMLServer] C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)
O4 - HKLM..\Run: [Drag'n'Drop_Autolaunch] C:\Program Files\Iomega HotBurn Pro\Autolaunch.exe (Iomega Corporation)
O4 - HKLM..\Run: [GBMLite8AgentLaCie] C:\Program Files\LaCie\Genie Backup Assistant\GBMAgent.exe (Genie-soft)
O4 - HKLM..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [HTC Sync Loader] C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe ()
O4 - HKLM..\Run: [KBD] C:\hp\KBD\KbdStub.exe ()
O4 - HKLM..\Run: [LGODDFU] C:\Program Files\lg_fwupdate\fwupdate.exe (BitLeader)
O4 - HKLM..\Run: [LyraWirelessRemote] C:\Program Files\Thomson multimedia\Lyra Wireless Remote\Lyraw.exe (Thomson Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\Windows\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [OsdMaestro] C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe (OsdMaestro)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [SystemPerfSync] C:\Windows\diskperfm.exe (GP Systems Integration)
O4 - HKLM..\Run: [UpdateLBPShortCut] C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdatePSTShortCut] C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [cdloader] C:\Users\billrigsby\AppData\Roaming\mjusbsp\cdloader2.exe (magicJack L.P.)
O4 - HKCU..\Run: [GBMLite8AgentLaCie] C:\Program Files\LaCie\Genie Backup Assistant\GBMAgent.exe (Genie-soft)
O4 - HKCU..\Run: [Jing] C:\Program Files\TechSmith\Jing\Jing.exe (TechSmith Corporation)
O4 - HKCU..\Run: [LaCie Backup] C:\Program Files\LaCie\Backup Software\LaCieBackup.exe (LaCie SA)
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - HKLM..\RunOnce: [Launcher] C:\Windows\SMINST\Launcher.exe (soft thinks)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O8 - Extra context menu item: &ieSpell Options - Reg Error: Value error. File not found
O8 - Extra context menu item: Check &Spelling - Reg Error: Value error. File not found
O8 - Extra context menu item: Google Sidewiki... - Reg Error: Value error. File not found
O8 - Extra context menu item: Lookup on Merriam Webster - Reg Error: Value error. File not found
O8 - Extra context menu item: Lookup on Wikipedia - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Ranges: Range1 ([http] in Local intranet)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: Garmin Communicator Plug-In
https://static.garmincdn.com/gcp/ie/3.0.1.0/GarminAxControl.CAB (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 216.229.32.165
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2ADBE73D-1F65-4818-8A59-041497AE86A3}: DhcpNameServer = 192.168.0.1 216.229.32.165
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\billrigsby\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O24 - Desktop BackupWallPaper: C:\Users\billrigsby\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/02/12 12:45:49 | 000,000,074 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\L\Shell\AutoRun\command - "" = L:\autorun.exe
O33 - MountPoints2\L\Shell\phone\command - "" = L:\autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (lsdelete)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2012/03/10 07:12:53 | 000,593,920 | ---- | C] (OldTimer Tools) -- C:\Users\billrigsby\Desktop\OTL.exe
[2012/03/09 16:24:38 | 004,177,272 | ---- | C] (Sysinternals -
www.sysinternals.com) -- C:\Program Files\procexp.exe
[2012/03/09 13:39:25 | 000,000,000 | ---D | C] -- C:\Users\billrigsby\AppData\Local\Power2Go
[2012/03/09 12:18:38 | 000,000,000 | ---D | C] -- C:\Temp
[2012/03/09 12:17:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optical Disc Doctor
[2012/03/09 12:17:57 | 000,000,000 | ---D | C] -- C:\Program Files\Optical Disc Doctor
[2012/03/09 12:17:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG Tool Kit
[2012/03/09 12:17:37 | 000,102,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VB6KO.DLL
[2012/03/09 12:17:37 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wbemdisp.tlb
[2012/03/09 12:17:37 | 000,016,384 | ---- | C] (BitLeader) -- C:\Windows\System32\lgfwunis.exe
[2012/03/09 12:17:36 | 000,000,000 | ---D | C] -- C:\Program Files\lg_fwupdate
[2012/03/09 12:15:15 | 000,000,000 | ---D | C] -- C:\Users\billrigsby\AppData\Roaming\CyberLink
[2012/03/09 12:15:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG Power Tools
[2012/03/09 12:10:51 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling
[2012/03/09 12:09:15 | 000,000,000 | ---D | C] -- C:\Users\billrigsby\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LG Power Tools
[2012/03/09 12:07:30 | 000,000,000 | ---D | C] -- C:\Program Files\CyberLink
[2012/03/09 12:07:10 | 000,000,000 | ---D | C] -- C:\ProgramData\CyberLink
[2012/03/08 22:23:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
[2012/03/06 21:00:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Premium
[2012/03/06 21:00:06 | 000,000,000 | ---D | C] -- C:\Users\billrigsby\AppData\Local\Babylon
[2012/03/06 21:00:02 | 000,000,000 | ---D | C] -- C:\Users\billrigsby\AppData\Roaming\Babylon
[2012/03/06 21:00:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon
[2012/03/06 20:59:19 | 000,000,000 | ---D | C] -- C:\ProgramData\InstallMate
[2012/03/03 09:54:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2012/02/17 18:26:48 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2012/02/17 18:26:47 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2012/02/17 18:26:40 | 001,469,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2012/02/17 18:26:40 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2012/02/17 18:26:40 | 000,602,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2012/02/17 18:26:40 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2012/02/17 18:26:39 | 000,387,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2012/02/17 18:26:39 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2012/02/17 18:26:38 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2012/02/17 18:26:38 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2012/02/17 18:26:38 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2012/02/17 18:26:38 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2012/02/17 18:26:37 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2012/02/17 18:26:37 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2012/02/17 18:26:37 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2012/02/17 18:26:34 | 000,174,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2012/02/17 18:26:34 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2012/02/17 18:26:33 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2012/02/17 18:26:31 | 002,044,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2011/11/11 17:08:49 | 000,047,360 | ---- | C] (VSO Software) -- C:\Users\billrigsby\AppData\Roaming\pcouffin.sys
[3 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012/03/10 07:13:04 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Users\billrigsby\Desktop\OTL.exe
[2012/03/10 07:11:24 | 000,000,412 | ---- | M] () -- C:\Windows\tasks\GBM - Backup-Full.job
[2012/03/10 06:52:00 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/03/10 05:43:59 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012/03/10 05:43:59 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012/03/10 02:42:09 | 000,000,432 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{A413AF5E-3504-414B-8CB6-4C34657A1531}.job
[2012/03/09 21:27:41 | 000,000,914 | ---- | M] () -- C:\Users\billrigsby\Desktop\magicJack.lnk
[2012/03/09 21:20:05 | 000,000,300 | ---- | M] () -- C:\Windows\lgfwup.ini
[2012/03/09 21:19:31 | 000,000,890 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/03/09 19:44:23 | 000,000,384 | ---- | M] () -- C:\Windows\tasks\Ad-Aware Update (Weekly).job
[2012/03/09 19:43:54 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/03/09 12:19:22 | 000,016,384 | ---- | M] (BitLeader) -- C:\Windows\System32\lgfwunis.exe
[2012/03/09 12:07:10 | 000,642,668 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2012/03/09 12:07:10 | 000,119,858 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2012/03/08 22:06:53 | 000,043,520 | ---- | M] () -- C:\Users\billrigsby\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/03/07 12:57:57 | 000,000,806 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2012/03/06 21:00:23 | 000,001,492 | ---- | M] () -- C:\user.js
[2012/03/03 19:01:33 | 000,000,064 | ---- | M] () -- C:\Windows\System32\rp_stats.dat
[2012/03/03 19:01:33 | 000,000,044 | ---- | M] () -- C:\Windows\System32\rp_rules.dat
[2012/03/03 14:04:34 | 003,169,965 | ---- | M] () -- C:\Users\billrigsby\Desktop\JohnnyCashSings.wmv
[2012/02/29 19:58:06 | 004,684,312 | ---- | M] () -- C:\Users\billrigsby\Desktop\PRINT[1].pdf
[2012/02/25 16:44:56 | 000,016,702 | ---- | M] () -- C:\Users\billrigsby\Documents\cc_20120225_164447.reg
[2012/02/25 12:18:43 | 000,019,827 | ---- | M] () -- C:\Users\billrigsby\Desktop\crew contact info 01-12.pdf
[2012/02/23 22:45:20 | 004,347,192 | ---- | M] () -- C:\Users\billrigsby\Desktop\The Story of the Belief in Scientology.mp3
[2012/02/23 09:18:36 | 000,237,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2012/02/21 22:20:27 | 241,016,477 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2012/02/19 17:14:07 | 000,001,189 | ---- | M] () -- C:\Users\billrigsby\AppData\Roaming\vso_ts_preview.xml
[2012/02/17 19:09:32 | 000,359,584 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2012/02/13 08:29:37 | 000,002,487 | ---- | M] () -- C:\Windows\memsetk.dll
[3 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012/03/09 19:50:53 | 000,001,880 | ---- | C] () -- C:\Users\billrigsby\Desktop\msg0001.WAV
[2012/03/09 12:17:42 | 000,000,300 | ---- | C] () -- C:\Windows\lgfwup.ini
[2012/03/08 21:23:51 | 000,000,384 | ---- | C] () -- C:\Windows\tasks\Ad-Aware Update (Weekly).job
[2012/03/07 12:57:57 | 000,000,806 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2012/03/06 21:00:19 | 000,001,492 | ---- | C] () -- C:\user.js
[2012/03/03 14:04:33 | 003,169,965 | ---- | C] () -- C:\Users\billrigsby\Desktop\JohnnyCashSings.wmv
[2012/03/02 08:15:37 | 000,000,432 | -H-- | C] () -- C:\Windows\tasks\User_Feed_Synchronization-{A413AF5E-3504-414B-8CB6-4C34657A1531}.job
[2012/02/29 19:58:06 | 004,684,312 | ---- | C] () -- C:\Users\billrigsby\Desktop\PRINT[1].pdf
[2012/02/25 16:44:51 | 000,016,702 | ---- | C] () -- C:\Users\billrigsby\Documents\cc_20120225_164447.reg
[2012/02/23 22:45:07 | 004,347,192 | ---- | C] () -- C:\Users\billrigsby\Desktop\The Story of the Belief in Scientology.mp3
[2011/12/26 19:33:25 | 000,000,071 | ---- | C] () -- C:\Windows\EPSONCD.INI
[2011/11/12 17:32:59 | 000,005,028 | ---- | C] () -- C:\ProgramData\cgatmfqq.mbd
[2011/11/11 17:11:25 | 000,001,189 | ---- | C] () -- C:\Users\billrigsby\AppData\Roaming\vso_ts_preview.xml
[2011/11/11 17:08:49 | 000,087,608 | ---- | C] () -- C:\Users\billrigsby\AppData\Roaming\inst.exe
[2011/11/11 17:08:49 | 000,007,887 | ---- | C] () -- C:\Users\billrigsby\AppData\Roaming\pcouffin.cat
[2011/11/11 17:08:49 | 000,001,144 | ---- | C] () -- C:\Users\billrigsby\AppData\Roaming\pcouffin.inf
[2011/10/28 09:51:01 | 000,016,432 | ---- | C] () -- C:\Windows\System32\lsdelete.exe
[2011/05/02 08:51:20 | 000,000,031 | ---- | C] () -- C:\Windows\System32\wsodsini.dll
[2011/05/02 08:42:07 | 000,000,530 | ---- | C] () -- C:\Windows\System32\tx14_ic.ini
[2011/04/26 19:19:45 | 000,000,064 | ---- | C] () -- C:\Windows\System32\rp_stats.dat
[2011/04/26 19:19:45 | 000,000,044 | ---- | C] () -- C:\Windows\System32\rp_rules.dat
[2011/04/24 13:23:15 | 000,000,331 | ---- | C] () -- C:\Windows\wininit.ini
[2011/03/19 07:30:54 | 000,001,378 | ---- | C] () -- C:\ProgramData\ss.ini
[2011/03/18 09:18:43 | 000,528,384 | ---- | C] () -- C:\Windows\System32\BladeEnc.dll
[2011/03/18 09:18:43 | 000,120,832 | ---- | C] () -- C:\Windows\System32\ShnDll32.dll
[2011/03/06 20:53:52 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2011/03/06 20:53:52 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2011/03/05 17:10:52 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2011/03/05 17:03:33 | 000,000,000 | ---- | C] () -- C:\Users\billrigsby\AppData\Roaming\wklnhst.dat
[2011/02/20 13:37:32 | 000,000,019 | ---- | C] () -- C:\Windows\info9.ini
[2011/02/20 13:37:32 | 000,000,019 | ---- | C] () -- C:\Windows\info7.ini
[2011/02/20 13:37:32 | 000,000,019 | ---- | C] () -- C:\Windows\info4.ini
[2011/02/20 13:37:32 | 000,000,019 | ---- | C] () -- C:\Windows\info10.ini
[2011/02/18 23:12:50 | 000,004,984 | ---- | C] () -- C:\Windows\System32\drivers\nvphy.bin
[2011/02/18 16:46:04 | 000,001,453 | ---- | C] () -- C:\Windows\CDPlayer.ini
[2011/02/18 16:31:28 | 000,000,000 | ---- | C] () -- C:\ProgramData\LauncherAccess.dt
[2011/02/18 16:23:26 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys
[2011/02/17 15:16:28 | 000,000,307 | ---- | C] () -- C:\Windows\PICKLIST.INI
[2011/02/16 17:52:42 | 000,000,302 | ---- | C] () -- C:\Windows\MIREPAIR.INI
[2011/02/16 17:52:42 | 000,000,058 | ---- | C] () -- C:\Windows\MITCHELL.INI
[2011/02/16 17:52:36 | 000,005,203 | ---- | C] () -- C:\Windows\ODWIN.INI
[2011/02/16 17:52:36 | 000,000,754 | ---- | C] () -- C:\Windows\BTI.INI
[2011/02/14 12:58:47 | 006,512,640 | ---- | C] ( ) -- C:\Windows\sspro.exe
[2011/02/14 12:58:46 | 000,304,128 | ---- | C] () -- C:\Windows\presys64.dll
[2011/02/14 12:58:45 | 000,296,448 | ---- | C] () -- C:\Windows\mdiwindb.dll
[2011/02/14 12:58:34 | 000,002,487 | ---- | C] () -- C:\Windows\memsetk.dll
[2011/02/14 12:58:34 | 000,000,011 | ---- | C] () -- C:\Windows\sntlevel.dll
[2011/02/14 12:58:34 | 000,000,000 | ---- | C] () -- C:\Windows\javcorbin.dll
[2011/02/14 12:58:34 | 000,000,000 | ---- | C] () -- C:\Windows\javcorain.dll
[2011/02/13 14:45:41 | 000,043,520 | ---- | C] () -- C:\Users\billrigsby\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/02/12 15:57:31 | 000,484,352 | ---- | C] () -- C:\Windows\System32\lame_enc.dll
[2011/02/12 15:46:40 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2011/02/12 15:26:09 | 000,039,095 | ---- | C] () -- C:\Windows\iccsigs.dat
[2011/02/12 15:26:08 | 000,112,688 | ---- | C] () -- C:\Windows\System32\shw32.dll
[2011/02/12 14:44:25 | 000,000,029 | ---- | C] () -- C:\Windows\DEBUGSM.INI
[2011/02/12 14:39:02 | 000,290,919 | ---- | C] () -- C:\Windows\System32\pythoncom21.dll
[2011/02/12 14:39:02 | 000,057,344 | ---- | C] () -- C:\Windows\System32\PyWinTypes21.dll
[2011/02/12 14:35:54 | 000,096,768 | ---- | C] () -- C:\Windows\SlantAdj.dll
[2011/02/12 14:35:54 | 000,003,136 | ---- | C] () -- C:\Windows\Ade001.bin
[2011/02/12 14:35:54 | 000,000,072 | ---- | C] () -- C:\Windows\System32\epDPE.ini
[2011/02/12 14:32:47 | 000,000,111 | ---- | C] () -- C:\Windows\EPSON Perfection 2400 Photo.ini
[2011/02/12 14:22:29 | 000,073,220 | ---- | C] () -- C:\Windows\System32\EPPICPrinterDB.dat
[2011/02/12 14:22:29 | 000,031,053 | ---- | C] () -- C:\Windows\System32\EPPICPattern131.dat
[2011/02/12 14:22:29 | 000,029,114 | ---- | C] () -- C:\Windows\System32\EPPICPattern1.dat
[2011/02/12 14:22:29 | 000,027,417 | ---- | C] () -- C:\Windows\System32\EPPICPattern121.dat
[2011/02/12 14:22:29 | 000,021,021 | ---- | C] () -- C:\Windows\System32\EPPICPattern3.dat
[2011/02/12 14:22:29 | 000,015,670 | ---- | C] () -- C:\Windows\System32\EPPICPattern5.dat
[2011/02/12 14:22:29 | 000,013,280 | ---- | C] () -- C:\Windows\System32\EPPICPattern2.dat
[2011/02/12 14:22:29 | 000,010,673 | ---- | C] () -- C:\Windows\System32\EPPICPattern4.dat
[2011/02/12 14:22:29 | 000,004,943 | ---- | C] () -- C:\Windows\System32\EPPICPattern6.dat
[2011/02/12 14:22:29 | 000,001,140 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_PT.dat
[2011/02/12 14:22:29 | 000,001,140 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_BP.dat
[2011/02/12 14:22:29 | 000,001,137 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_ES.dat
[2011/02/12 14:22:29 | 000,001,130 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_FR.dat
[2011/02/12 14:22:29 | 000,001,130 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_CF.dat
[2011/02/12 14:22:29 | 000,001,104 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_EN.dat
[2011/02/12 14:22:29 | 000,000,097 | ---- | C] () -- C:\Windows\System32\PICSDK.ini
[2011/02/12 14:21:06 | 000,000,083 | ---- | C] () -- C:\Windows\EPSP1400.ini
[2011/02/12 12:31:08 | 000,061,440 | ---- | C] () -- C:\Windows\System32\OsdRemove.exe
[2011/02/12 12:28:01 | 000,327,680 | ---- | C] () -- C:\Windows\System32\pythoncom24.dll
[2011/02/12 12:28:01 | 000,102,400 | ---- | C] () -- C:\Windows\System32\pywintypes24.dll
========== LOP Check ==========
[2011/04/15 19:59:19 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\AnvSoft
[2012/01/28 16:48:35 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Argali
[2012/02/23 22:46:07 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Audacity
[2012/03/06 21:00:02 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Babylon
[2011/02/13 17:19:58 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Canon
[2011/10/16 18:06:18 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Complitly
[2011/02/12 14:51:55 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\EPSON
[2011/11/19 13:54:26 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\FLAC to MP3 Converter
[2011/11/04 10:58:39 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Garmin
[2011/02/12 18:29:18 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\GAS Softwares
[2011/02/12 15:03:46 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Genie-Soft
[2012/01/22 17:50:26 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\HTC
[2011/05/15 09:19:24 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
[2012/02/11 15:46:50 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\ImgBurn
[2011/10/28 07:48:43 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\iolo
[2011/11/12 09:03:41 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Jumping Bytes
[2011/02/13 20:11:34 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\LaCie
[2011/02/12 14:11:55 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Leadertech
[2012/01/01 12:38:02 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\MediaMonkey
[2012/03/09 21:27:46 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\mjusbsp
[2011/11/12 17:33:36 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\MOVAVI
[2012/01/02 15:02:52 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Mp3tag
[2011/11/12 17:45:04 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\MPEG Streamclip
[2011/02/13 14:47:39 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\muvee Technologies
[2011/02/18 11:35:33 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Samsung
[2012/03/09 19:42:11 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Smart Panel
[2011/02/20 13:38:26 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\SyncCell
[2011/03/05 17:03:32 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Template
[2012/02/19 17:14:08 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Vso
[2011/02/18 16:04:31 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\WinBatch
[2011/02/20 14:49:56 | 000,000,000 | ---D | M] -- C:\Users\billrigsby\AppData\Roaming\Xilisoft Corporation
[2012/03/09 19:44:23 | 000,000,384 | ---- | M] () -- C:\Windows\Tasks\Ad-Aware Update (Weekly).job
[2012/03/10 07:11:24 | 000,000,412 | ---- | M] () -- C:\Windows\Tasks\GBM - Backup-Full.job
[2012/03/09 19:34:55 | 000,032,602 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012/03/10 02:42:09 | 000,000,432 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{A413AF5E-3504-414B-8CB6-4C34657A1531}.job
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:5C321E34
< End of report >
Extras.Txt
OTL Extras logfile created on: 3/10/2012 7:25:58 AM - Run 1
OTL by OldTimer - Version 3.2.36.2 Folder = C:\Users\billrigsby\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19190)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.87 Gb Total Physical Memory | 0.73 Gb Available Physical Memory | 38.94% Memory free
3.99 Gb Paging File | 2.44 Gb Available in Paging File | 61.19% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 290.42 Gb Total Space | 74.15 Gb Free Space | 25.53% Space Free | Partition Type: NTFS
Drive D: | 7.67 Gb Total Space | 0.87 Gb Free Space | 11.33% Space Free | Partition Type: NTFS
Drive N: | 931.51 Gb Total Space | 376.28 Gb Free Space | 40.39% Space Free | Partition Type: NTFS
Computer Name: HP-PC | User Name: billrigsby | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (All) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.bat [@ = batfile] -- "%1" %*
.chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation)
.cmd [@ = cmdfile] -- "%1" %*
.com [@ = comfile] -- "%1" %*
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.exe [@ = exefile] -- "%1" %*
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.hta [@ = htafile] -- C:\Windows\System32\mshta.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.inf [@ = inffile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation)
.ini [@ = inifile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation)
.url [@ = InternetShortcut] -- C:\Windows\System32\rundll32.exe (Microsoft Corporation)
.js [@ = JSFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
.jse [@ = JSEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
.pif [@ = piffile] -- "%1" %*
.reg [@ = regfile] -- C:\Windows\regedit.exe (Microsoft Corporation)
.scr [@ = scrfile] -- "%1" /S
.txt [@ = txtfile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation)
.vbe [@ = VBEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
.vbs [@ = VBSFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
.wsf [@ = WSFFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
.wsh [@ = WSHFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
batfile [open] -- "%1" %*
batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
cmdfile [open] -- "%1" %*
cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htafile [open] -- C:\Windows\system32\mshta.exe "%1" %* (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
regfile [merge] -- Reg Error: Key error.
regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Generate MD5 Signatures] -- "C:\Program Files\Michael K. Weise\mkw Audio Compression Toolkit\mkwACT.exe" (Michael K. Weise)
Directory [MediaMonkey.1Play] -- "C:\Users\Bill\AppData\Local\MediaMonkey\MediaMonkey.exe" "%1" (Ventis Media Inc.)
Directory [MediaMonkey.2PlayNext] -- "C:\Users\Bill\AppData\Local\MediaMonkey\MediaMonkey.exe" /NEXT "%1" (Ventis Media Inc.)
Directory [MediaMonkey.3Enqueue] -- "C:\Users\Bill\AppData\Local\MediaMonkey\MediaMonkey.exe" /ADD "%1" (Ventis Media Inc.)
Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~3\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"UacDisableNotify" = 0
"InternetSettingsDisableNotify" = 0
"AutoUpdateDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\EarthLink TotalAccess\TaskPanl.exe" = C:\Program Files\EarthLink TotalAccess\TaskPanl.exe:*:Enabled:Earthlink -- (EarthLink, Inc.)
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0020A377-9205-4AD5-9084-BB8F3531D35B}" = protocol=17 | dir=in | app=c:\program files\callwave\iam.exe |
"{088766D8-3E50-411C-978F-C616355E8B04}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{168AAB52-02C5-43A6-95AF-467B1E4C589D}" = protocol=6 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{213C5A61-8264-422F-88F3-2E8A0F312EA0}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
"{21E16904-D240-4DFA-A06F-AD34C71B7CE8}" = protocol=6 | dir=in | app=c:\users\billrigsby\appdata\roaming\mjusbsp\magicjack.exe |
"{2BE578E4-0B12-4AD5-96DB-7B6236F57170}" = protocol=17 | dir=in | app=c:\program files\callwave\iam.exe |
"{4485F1A0-6DE3-4FA7-BDF5-8947F7C4DA3E}" = protocol=6 | dir=in | app=c:\program files\callwave\iam.exe |
"{4F7CE9C7-D19A-4E7F-A1EF-D3B94BF87D9A}" = protocol=17 | dir=in | app=c:\program files\hp connections\6811507\program\hp connections.exe |
"{54821369-404C-4E8C-9816-E973D47C0ACE}" = protocol=6 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{6951F475-5BE7-4E1C-A293-FFFAC5D58AA0}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{791D68EF-AE12-4DF2-8980-80B4DB8F6C22}" = protocol=17 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{881FDC5A-3AB8-44BE-9BEA-075B126A5E8F}" = protocol=6 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{968E34B8-B1EE-446C-A227-1FAAE3A704D5}" = protocol=6 | dir=in | app=c:\program files\callwave\iam.exe |
"{A84E3D62-1F83-4339-9E6A-00F807971460}" = protocol=6 | dir=in | app=c:\program files\hp connections\6811507\program\hp connections.exe |
"{AEFD4886-C4D8-4860-895F-CE6D71BC7EBE}" = protocol=17 | dir=in | app=c:\users\billrigsby\appdata\roaming\mjusbsp\magicjack.exe |
"{B48B8682-693B-44FD-A7E8-EE3FE08D866F}" = protocol=17 | dir=in | app=c:\program files\hp connections\6811507\program\hp connections.exe |
"{B66A8CFB-410F-4C5D-A53B-6064F5BD9ACE}" = protocol=17 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{C51229FE-CB04-48EC-8B4C-9BB71BC95213}" = protocol=17 | dir=in | app=c:\program files\hp connections\6811507\program\hp connections.exe |
"{ECF2098C-EBB8-4EF3-AFF2-9B3D5ACE9F9C}" = protocol=17 | dir=in | app=c:\program files\earthlink totalaccess\taskpanl.exe |
"{F3A05477-323A-48D0-A2EE-299B500505F5}" = protocol=6 | dir=in | app=c:\program files\hp connections\6811507\program\hp connections.exe |
"{FA336B57-2ECB-48D6-8CB6-DBB7637B0E30}" = dir=in | app=c:\program files\hp connections\6811507\program\hp connections |
"TCP Query User{8F4A8DFF-B0BA-44B6-A8AC-DC10C4509AE7}C:\users\billrigsby\appdata\roaming\mjusbsp\magicjack.exe" = protocol=6 | dir=in | app=c:\users\billrigsby\appdata\roaming\mjusbsp\magicjack.exe |
"UDP Query User{D48D546E-FD83-403E-A62E-1FE5438A5BAB}C:\users\billrigsby\appdata\roaming\mjusbsp\magicjack.exe" = protocol=17 | dir=in | app=c:\users\billrigsby\appdata\roaming\mjusbsp\magicjack.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = LG CyberLink YouCam
"{0394CDC8-FABD-4ED8-B104-03393876DFDF}" = Roxio Creator Tools
"{07159635-9DFE-4105-BFC0-2817DB540C68}" = Roxio Activation Module
"{0D397393-9B50-4C52-84D5-77E344289F87}" = Roxio Creator Data
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX860_series" = Canon MX860 series MP Drivers
"{11B569C2-4BF6-4ED0-9D17-A4273943CB24}" = Adobe Photoshop Album 2.0 Starter Edition
"{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}" = Roxio Creator EasyArchive
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = LG Power Tools
"{22901BB7-2C57-409E-AF2F-56FFFEA41116}" = EPSON Photo Print
"{26A24AE4-039D-4CA4-87B4-2F83216018FF}" = Java(TM) 6 Update 29
"{2856F5EA-E98A-40E4-BAD6-8C644A4A3F3C}" = honestech VHS to DVD 2.0 SE
"{2DFF31F9-7893-4922-AF66-C9A1EB4EBB31}" = Rhapsody Player Engine
"{2F4C24E6-CBD4-4AAC-B56F-C9FD44DE5668}" = Roxio Drag-to-Disc
"{30465B6C-B53F-49A1-9EBA-A3F187AD502E}" = Roxio Update Manager
"{31A559C1-9E4D-423B-9DD3-34A6C5398752}" = HTC BMP USB Driver
"{385DD1DD-65AA-408D-8E70-74601C2DB7E6}" = Ad-Aware
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = LG CyberLink Power2Go
"{40F7AED3-0C7D-4582-99F6-484A515C73F2}" = HP Easy Setup - Frontend
"{47BA74C5-1890-4ED2-954A-AD11186D8E26}" = Garmin TOPO U.S. 2008
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4FFBB818-B13C-11E0-931D-B2664824019B}_is1" = Complitly
"{55979C41-7D6A-49CC-B591-64AC1BBE2C8B}" = HP Picasso Media Center Add-In
"{5967A03E-3B74-4DF1-B591-2D89CA26BDC9}" = LaCie Backup Software v1.7.2893
"{5C4D532E-4EC9-11E1-9544-B8AC6F97B88E}" = Google Earth Plug-in
"{6179550A-3E7C-499E-BCC9-9E8113E0A285}" = LG ODD Auto Firmware Update
"{619CDD8A-14B6-43A1-AB6C-0F4EE48CE048}" = Roxio Creator Copy
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{6C11D561-620B-47DA-A693-4C597F3CDF40}" = EPSON Smart Panel
"{6D52C408-B09A-4520-9B18-475B81D393F1}" = Microsoft Works
"{6D6664A9-3342-4948-9B7E-034EFE366F0F}" = HTC Driver Installer
"{705B639E-FAAF-40D7-AD58-C445321C7C3F}" = LightScribe System Software
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7373184D-8E8F-4308-912A-3901071FA1AD}" = LightScribe Applications
"{75E71ADD-042C-4F30-BFAC-A9EC42351313}" = Python 2.4.3
"{76C24F39-B161-498F-BD8B-C64789812D13}_is1" = ConvertXtoDVD 3.4.7.121
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7A3FFA58-876F-489C-B6CF-0503916224DF}" = HTC Sync
"{7AB01508-C2B2-43C8-8B44-514801E7CCC9}" = Jing
"{7B63B2922B174135AFC0E1377DD81EC2}" = DivX
"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
"{83FFCFC7-88C6-41C6-8752-958A45325C82}" = Roxio Creator Audio
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8C6027FD-53DC-446D-BB75-CACD7028A134}" = HP Update
"{8D337F77-BE7F-41A2-A7CB-D5A63FD7049B}" = Sonic CinePlayer Decoder Pack
"{8E23260B-52B7-42DD-80A0-76EB90E3CB8B}" = Free Address Book
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{9B3CC262-381B-411C-9CEC-FA8938FB2825}" = Ad-Aware
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9DBA770F-BF73-4D39-B1DF-6035D95268FC}" = HP Customer Feedback
"{A83279FD-CA4B-4206-9535-90974DE76654}" = Apple Application Support
"{A8AD7F7C-7EB5-4E54-99C8-6C490EF5C537}_is1" = Concert Vault Download Manager
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AB5E289E-76BF-4251-9F3F-9B763F681AE0}" = HP Customer Experience Enhancements
"{AC76BA86-7AD7-1033-7B44-A95000000001}" = Adobe Reader 9.5.0
"{AC76BA86-7AD7-2448-0000-900000000003}" = Chinese Traditional Fonts Support For Adobe Reader 9
"{ADD5DB49-72CF-11D8-9D75-000129760D75}" = LG CyberLink PowerBackup
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B69CC1A5-0404-11D6-ABCB-005004C21D30}" = EPSON Copy Utility
"{C4A4722E-79F9-417C-BD72-8D359A090C97}" = Samsung PC Studio 3
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LG CyberLink LabelPrint
"{C87E0D98-7955-4BF0-A6B0-5D81146A9CB8}" = Samsung PC Studio 3
"{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}" = Roxio Creator DE
"{C9A162C1-031F-4EBF-A3E6-C45F7FCCBB9E}_is1" = Genie Backup Assistant
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CBFEEA43-2B94-44AF-8325-B413E62D2A5D}" = HP Total Care Advisor
"{CCB1507A-AAEA-4778-AC4B-DD5EAB1A961E}" = Iomega HotBurn Pro
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1" = ConvertXtoDVD 4.1.12.352
"{E1652122-9109-11D9-8BDE-F66BAD1E3F3A}" = WordNetDT
"{E4A02A3F-4F8A-4D94-BB99-68BC1D1CF6DB}" = Roxio MyDVD Basic v9
"{EBAE381B-60A6-4863-AA9F-FCAB755BC9E5}" = ScanToWeb
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F94234DB-FD06-42C3-B88D-6FC4DC9F988C}" = HP Easy Setup - Core
"{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR
"{FF477885-5EA8-40D0-ADF3-D4C1B86FAEA4}" = EPSON Print CD
"7-Zip" = 7-Zip 4.57
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Illustrator 9.0" = Adobe Illustrator 9.0
"Adobe Photoshop 6.0" = Adobe Photoshop 6.0
"Adobe SVG Viewer" = Adobe SVG Viewer
"Any Video Converter_is1" = Any Video Converter 3.3.0
"Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.12 (Unicode)
"avast" = avast! Free Antivirus
"CallWave" = CallWave
"Canon MX860 series User Registration" = Canon MX860 series User Registration
"Canon_IJ_Network_Scan_UTILITY" = Canon IJ Network Scan Utility
"Canon_IJ_Network_UTILITY" = Canon IJ Network Tool
"CanonMyPrinter" = Canon Utilities My Printer
"CanonSolutionMenu" = Canon Utilities Solution Menu
"CCleaner" = CCleaner
"Corel Applications" = Corel Applications
"Coupon Printer for Windows5.0.0.1" = Coupon Printer for Windows
"coverXP" = coverXP (remove only)
"DD4F47DF-6540-4BDA-BEAD-2B19250B0C48_is1" = FLAC to MP3 Converter 6.1.2
"DVD Decrypter" = DVD Decrypter (Remove Only)
"DVD Flick_is1" = DVD Flick 1.3.0.7
"DVD Shrink_is1" = DVD Shrink 3.2
"Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
"EPSON Printer and Utilities" = EPSON Printer Software
"EPSON Scanner" = EPSON Scan
"FastImageResizer" = FastImageResizer (remove only)
"FFmpeg for Audacity on Windows_is1" = FFmpeg for Audacity on Windows
"FLVPlayer" = FLV Player 1.3.3
"Free Mp3 Wma Converter_is1" = Free Mp3 Wma Converter V 1.81
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"HPOOVClient-6811507 Uninstaller" = HP Connections (remove only)
"ImgBurn" = ImgBurn
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = LG CyberLink YouCam
"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = LG Power Tools
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = LG CyberLink Power2Go
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LG CyberLink LabelPrint
"LAME for Audacity_is1" = LAME v3.98.3 for Audacity
"LyraWireless Remote" = RCA Lyra Wireless Remote
"MediaInfo" = MediaInfo 0.7.50
"MediaMonkey_is1" = MediaMonkey 3.2
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"mkwACT" = mkw Audio Compression Toolkit
"MoffFreeCalc_is1" = Moffsoft FreeCalc
"MP Navigator EX 2.1" = Canon MP Navigator EX 2.1
"Mp3tag" = Mp3tag v2.49a
"NirSoft ProduKey" = NirSoft ProduKey
"NVIDIA Drivers" = NVIDIA Drivers
"Optical Disc Doctor_is1" = Optical Disc Doctor
"OsdMaestro" = HP On-Screen Caps/Num/Scroll Lock Indicator
"PC-Doctor 5 for Windows" = Hardware Diagnostic Tools
"Playlist Creator 3.6.2" = Playlist Creator 3.6.2
"RCA RD900W Vista-Win7 Compatibility Driver" = RCA RD900W Vista-Win7 Compatibility Driver
"Recover Keys_is1" = Recover Keys
"Rhapsody" = Rhapsody
"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
"Samsung Mobile phone USB driver" = Samsung Mobile phone USB driver Software
"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"Silent Package Run-Time Sample" = EPSON PERF 2400 Guide
"SpywareBlaster_is1" = SpywareBlaster 4.5
"ST5UNST #1" = Argali White & Yellow
"VLC media player" = VideoLAN VLC media player 0.8.5
"WildTangent hpdesktop Master Uninstall" = My HP Games
"WinRAR archiver" = WinRAR 4.00 (32-bit)
"Word Reader 5.6" = Word Reader 5.6
"WordNet" = WordNet 2.0
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Contacts WTD" = Contacts WTD
"magicJack" = magicJack
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 2/19/2012 11:14:13 AM | Computer Name = HP-PC | Source = Application Hang | ID = 1002
Description = The program WINWORD.EXE version 12.0.6612.1000 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 16f0 Start Time: 01ccef18e0fbc64c Termination Time: 178
Error - 2/21/2012 11:37:22 PM | Computer Name = HP-PC | Source = Application Error | ID = 1000
Description = Faulting application Explorer.EXE, version 6.0.6002.18005, time stamp
0x49e01da5, faulting module AFLDLL.DLL_unloaded, version 0.0.0.0, time stamp 0x41190253,
exception code 0xc0000005, fault offset 0x202048eb, process id 0x7e8, application
start time 0x01ccf0cfe374f8fc.
Error - 2/21/2012 11:37:38 PM | Computer Name = HP-PC | Source = Application Error | ID = 1000
Description = Faulting application explorer.exe, version 6.0.6002.18005, time stamp
0x49e01da5, faulting module AFLDLL.DLL_unloaded, version 0.0.0.0, time stamp 0x41190253,
exception code 0xc0000005, fault offset 0x20204960, process id 0xc80, application
start time 0x01ccf1134ce1ca5c.
Error - 2/24/2012 7:38:48 PM | Computer Name = HP-PC | Source = Application Error | ID = 1000
Description = Faulting application AcroRd32.exe, version 9.5.0.270, time stamp 0x4f03f6ad,
faulting module Updater.api_unloaded, version 0.0.0.0, time stamp 0x4f03eabf, exception
code 0xc0000005, fault offset 0x5fcbd934, process id 0x868, application start time
0x01ccf34d6554d9d1.
Error - 2/24/2012 7:38:54 PM | Computer Name = HP-PC | Source = Application Error | ID = 1000
Description = Faulting application AcroRd32.exe, version 9.5.0.270, time stamp 0x4f03f6ad,
faulting module Updater.api_unloaded, version 0.0.0.0, time stamp 0x4f03eabf, exception
code 0xc0000005, fault offset 0x5fca7afb, process id 0x868, application start time
0x01ccf34d6554d9d1.
Error - 2/25/2012 7:46:58 PM | Computer Name = HP-PC | Source = Application Hang | ID = 1002
Description = The program iexplore.exe version 8.0.6001.19190 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 1558 Start Time: 01ccf417b1aeb246 Termination Time: 47
Error - 2/25/2012 10:19:16 PM | Computer Name = HP-PC | Source = Lavasoft Ad-Aware Service | ID = 0
Description =
Error - 2/29/2012 12:37:53 AM | Computer Name = HP-PC | Source = Application Hang | ID = 1002
Description = The program iexplore.exe version 8.0.6001.19190 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 17c8 Start Time: 01ccf5c2122dd9b6 Termination Time: 104
Error - 3/2/2012 11:45:39 AM | Computer Name = HP-PC | Source = Application Error | ID = 1000
Description = Faulting application AcroRd32.exe, version 9.5.0.270, time stamp 0x4f03f6ad,
faulting module Updater.api_unloaded, version 0.0.0.0, time stamp 0x4f03eabf, exception
code 0xc0000005, fault offset 0x68d4d934, process id 0x1184, application start time
0x01ccf88b75c96456.
Error - 3/2/2012 11:46:23 AM | Computer Name = HP-PC | Source = Application Error | ID = 1000
Description = Faulting application AcroRd32.exe, version 9.5.0.270, time stamp 0x4f03f6ad,
faulting module Updater.api_unloaded, version 0.0.0.0, time stamp 0x4f03eabf, exception
code 0xc0000005, fault offset 0x68d37afb, process id 0x1184, application start time
0x01ccf88b75c96456.
[ Media Center Events ]
Error - 2/18/2011 10:26:39 PM | Computer Name = HP-PC | Source = Media Center Guide | ID = 0
Description = Event Info: ERROR: SqmApiWrapper.SqmFlushSession failed; Win32 GetLastError
returned 0D Process: DefaultDomain Object Name: Media Center Guide
Error - 2/18/2011 10:26:53 PM | Computer Name = HP-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package NetTV.
Error - 2/18/2011 10:27:29 PM | Computer Name = HP-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsTemplate.
Error - 4/7/2011 3:06:05 PM | Computer Name = HP-PC | Source = MCUpdate | ID = 0
Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule.
[ System Events ]
Error - 3/9/2012 12:58:54 AM | Computer Name = HP-PC | Source = cdrom | ID = 262151
Description = The device, \Device\CdRom0, has a bad block.
Error - 3/9/2012 1:01:22 AM | Computer Name = HP-PC | Source = EventLog | ID = 6008
Description = The previous system shutdown at 9:59:22 PM on 3/8/2012 was unexpected.
Error - 3/9/2012 1:14:37 AM | Computer Name = HP-PC | Source = cdrom | ID = 262151
Description = The device, \Device\CdRom0, has a bad block.
Error - 3/9/2012 1:15:16 AM | Computer Name = HP-PC | Source = cdrom | ID = 262151
Description = The device, \Device\CdRom0, has a bad block.
Error - 3/9/2012 10:54:41 AM | Computer Name = HP-PC | Source = Print | ID = 6161
Description = The document
http://mail.aol.com/35736-111/aol-6/en-us/Suite.aspx,
owned by billrigsby, failed to print on printer Canon MX860 series Printer. Try
to print the document again, or restart the print spooler. Data type: NT EMF 1.008.
Size of the spool file in bytes: 589824. Number of bytes printed: 340152. Total
number of pages in the document: 2. Number of pages printed: 0. Client computer:
\\HP-PC. Win32 error code returned by the print processor: 1. Incorrect function.
Error - 3/9/2012 2:32:31 PM | Computer Name = HP-PC | Source = DCOM | ID = 10010
Description =
Error - 3/9/2012 7:12:55 PM | Computer Name = HP-PC | Source = DCOM | ID = 10010
Description =
Error - 3/9/2012 7:58:20 PM | Computer Name = HP-PC | Source = DCOM | ID = 10010
Description =
Error - 3/9/2012 7:58:52 PM | Computer Name = HP-PC | Source = Service Control Manager | ID = 7043
Description =
Error - 3/10/2012 12:19:29 AM | Computer Name = HP-PC | Source = DCOM | ID = 10010
Description =
< End of report >