mywebsite.com keeps loading on my IE

View previous topic View next topic Go down

Solved mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Sat Jan 16, 2010 9:20 pm

I am having a virus hit my computer that will not load the correct searches on google. I have tried multiple different adware and spyware softward. Now my norton antivirus is being hindered! Any help would be much appreciated! Here is my log:

Here is my log:

Logfile of Trend Micro HijackThis v2.0.3 (BETA)
Scan saved at 10:44:44 AM, on 1/16/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
C:\PROGRA~1\LAUNCH~1\LManager.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\igfxext.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Video Web Camera\traybar.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\WebCam\M3000\M3000Mnt.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\TrendMicro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [You must be registered and logged in to see this link.]
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [You must be registered and logged in to see this link.]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [You must be registered and logged in to see this link.]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [You must be registered and logged in to see this link.]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [You must be registered and logged in to see this link.]
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [You must be registered and logged in to see this link.]
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = "C:\Program Files\Outlook Express\msimn.exe"
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\IPSBHO.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\coIEPlg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\Audio\Drivers\AzMixerSel.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [M3000Mnt] Rundll32.exe M3000Rmv.dll ,WinMainRmv /StartStillMnt
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Video Web Camera\traybar.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: McAfee Security Scan.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - [You must be registered and logged in to see this link.]
O8 - Extra context menu item: Google Sidewiki... - [You must be registered and logged in to see this link.] Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - [You must be registered and logged in to see this link.]
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\coIEPlg.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Norton Internet Security - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe

--
End of file - 9684 bytes

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by Belahzur on Sun Jan 17, 2010 1:33 am

Please download and run this tool.

Download Malwarebytes' Anti-Malware from [You must be registered and logged in to see this link.]

Double Click mbam-setup.exe to install the application.

  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
Note:
If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts.
Click OK to either and let MBAM proceed with the disinfection process.
If asked to restart the computer, please do so immediately.


Post the contents of the MBAM Log.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Mon Jan 18, 2010 4:02 am

so I ran that program and it says that I have no infections, yet I am still getting the mywebsitegroup pop up. Furthermore, it appears that my norton antivirus is 'at risk'. it will not let me complete a quick scan. I will post my log from malwarebytes below. Please let me knw what you think I should do next. Your help is greatly appreciated.

Jeff

Malwarebytes' Anti-Malware 1.44
Database version: 3586
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

1/17/2010 10:07:25 PM
mbam-log-2010-01-17 (22-07-25).txt

Scan type: Quick Scan
Objects scanned: 111592
Time elapsed: 25 minute(s), 18 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by Belahzur on Mon Jan 18, 2010 10:45 pm

Download [You must be registered and logged in to see this link.] by OldTimer to your Desktop.

  • Close all windows and double click OTL.exe
  • Click Run Scan and let the program run uninterrupted
  • It will produce two logs for you, one will pop up - OTL.txt, the other will be saved on your Desktop - Extras.txt. Post both logs in this thread.
  • You may need to use two posts to get it all.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Tue Jan 19, 2010 2:11 am

here is the OTL.txt I cannot find the other file on my desktop

[2009/09/19 16:36:25 | 00,145,152 | ---- | C] () -- C:\WINDOWS\System32\drivers\M3000KNT.sys
[2009/09/19 16:36:24 | 00,233,472 | ---- | C] () -- C:\WINDOWS\System32\M3000DIF.dll
[2009/09/19 16:36:24 | 00,015,190 | ---- | C] () -- C:\WINDOWS\M3000Twn.ini
[2009/07/27 15:31:33 | 00,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2009/07/27 14:35:39 | 00,000,168 | ---- | C] () -- C:\WINDOWS\ZH.INI
[2009/07/27 14:35:39 | 00,000,168 | ---- | C] () -- C:\WINDOWS\S3.INI
[2009/07/27 14:35:39 | 00,000,168 | ---- | C] () -- C:\WINDOWS\FR-CA.INI
[2009/07/27 14:35:39 | 00,000,168 | ---- | C] () -- C:\WINDOWS\EN-GB.INI
[2009/07/27 14:35:39 | 00,000,168 | ---- | C] () -- C:\WINDOWS\EN-CA.INI
[2009/07/27 14:33:49 | 00,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4926.dll

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Tue Jan 19, 2010 2:12 am

here is the rest of that OTL.TXT

[2009/07/27 13:25:27 | 00,755,200 | ---- | C] () -- C:\WINDOWS\System32\ir50_32.dll
[2009/07/27 13:25:27 | 00,338,432 | ---- | C] () -- C:\WINDOWS\System32\ir41_qcx.dll
[2009/07/27 13:25:27 | 00,200,192 | ---- | C] () -- C:\WINDOWS\System32\ir50_qc.dll
[2009/07/27 13:25:27 | 00,183,808 | ---- | C] () -- C:\WINDOWS\System32\ir50_qcx.dll
[2009/07/27 13:25:27 | 00,120,320 | ---- | C] () -- C:\WINDOWS\System32\ir41_qc.dll
[2009/07/27 12:48:31 | 00,008,844 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2009/07/27 12:42:50 | 00,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini

========== Alternate Data Streams ==========

@Alternate Data Stream - 158 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
@Alternate Data Stream - 115 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A8ADE5D8
< End of report >

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by Belahzur on Tue Jan 19, 2010 7:31 pm

Please post the full log.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Tue Jan 19, 2010 11:56 pm

Here is the full otl.txt

OTL logfile created on: 1/19/2010 6:48:07 PM - Run 1
OTL by OldTimer - Version 3.1.25.2 Folder = C:\Documents and Settings\Jeffsmitheverybody\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1,014.00 Mb Total Physical Memory | 584.00 Mb Available Physical Memory | 58.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 85.00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 139.04 Gb Total Space | 60.67 Gb Free Space | 43.64% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: JEFF
Current User Name: Jeffsmitheverybody
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

========== Processes (SafeList) ==========

PRC - [2010/01/19 18:47:00 | 00,547,328 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\OTL.exe
PRC - [2009/12/26 13:08:36 | 00,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jusched.exe
PRC - [2009/12/26 13:08:35 | 00,153,376 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2009/12/25 23:19:56 | 00,039,408 | ---- | M] (Google Inc.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
PRC - [2009/11/12 16:33:10 | 00,141,600 | ---- | M] (Apple Inc.) -- C:\Program Files\iTunes\iTunesHelper.exe
PRC - [2009/11/12 16:33:00 | 00,545,568 | ---- | M] (Apple Inc.) -- C:\Program Files\iPod\bin\iPodService.exe
PRC - [2009/08/28 19:42:54 | 00,144,672 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
PRC - [2009/08/22 02:21:19 | 00,117,640 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe
PRC - [2009/08/04 18:22:34 | 00,630,784 | ---- | M] (Chicony) -- C:\Program Files\Video Web Camera\traybar.exe
PRC - [2009/07/27 19:19:10 | 00,199,184 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe
PRC - [2009/07/27 14:37:14 | 00,024,064 | ---- | M] (Google) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
PRC - [2009/03/16 17:46:56 | 00,036,864 | ---- | M] () -- C:\WINDOWS\WebCam\M3000\M3000Mnt.exe
PRC - [2009/02/24 02:40:54 | 17,529,856 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.EXE
PRC - [2009/02/11 23:20:52 | 00,862,728 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\LManager.exe
PRC - [2009/02/05 21:32:16 | 01,430,824 | ---- | M] (Synaptics Incorporated) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
PRC - [2008/10/25 08:18:50 | 00,098,696 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
PRC - [2008/04/15 19:54:42 | 00,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2008/04/15 19:54:40 | 00,178,712 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2008/04/14 07:00:00 | 01,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/02/28 02:00:20 | 00,141,848 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\igfxtray.exe
PRC - [2008/02/28 02:00:16 | 00,256,536 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\igfxsrvc.exe
PRC - [2008/02/28 02:00:14 | 00,137,752 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\igfxpers.exe
PRC - [2008/02/28 02:00:10 | 00,170,520 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\igfxext.exe
PRC - [2008/02/28 02:00:04 | 00,166,424 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\hkcmd.exe


========== Modules (SafeList) ==========

MOD - [2010/01/19 18:47:00 | 00,547,328 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\OTL.exe
MOD - [2009/08/22 02:21:16 | 00,419,696 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton Internet Security\Engine\16.7.2.11\asOEHook.dll


========== Win32 Services (SafeList) ==========

SRV - [2009/12/26 13:08:35 | 00,153,376 | ---- | M] (Sun Microsystems, Inc.) [Auto | Running] -- C:\Program Files\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2009/12/25 23:19:55 | 00,182,768 | ---- | M] (Google) [Disabled | Stopped] -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe -- (gusvc)
SRV - [2009/11/12 16:33:00 | 00,545,568 | ---- | M] (Apple Inc.) [On_Demand | Running] -- C:\Program Files\iPod\bin\iPodService.exe -- (iPod Service)
SRV - [2009/08/28 19:42:54 | 00,144,672 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2009/08/22 02:21:19 | 00,117,640 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe -- (Norton Internet Security)
SRV - [2009/07/27 14:37:14 | 00,024,064 | ---- | M] (Google) [Disabled | Stopped] -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe -- (GoogleDesktopManager-080708-050100)
SRV - [2009/02/11 06:05:16 | 00,242,424 | ---- | M] (WildTangent, Inc.) [Disabled | Stopped] -- C:\Program Files\Gateway Games\Gateway Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2008/12/12 11:17:38 | 00,238,888 | ---- | M] (Apple Inc.) [Disabled | Stopped] -- C:\Program Files\Bonjour\mDNSResponder.exe -- (Bonjour Service)
SRV - [2008/11/04 01:06:28 | 00,441,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - [2008/04/15 19:54:42 | 00,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel(R)
SRV - [2006/10/26 16:03:08 | 00,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose)


========== Driver Services (SafeList) ==========

DRV - [2010/01/18 00:17:43 | 00,312,344 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\iaStor.sys -- (iaStor)
DRV - [2009/12/26 10:55:01 | 00,124,976 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SYMEVENT.SYS -- (SymEvent)
DRV - [2009/12/26 10:54:29 | 00,482,432 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\NIS\1007020.00B\ccHPx86.sys -- (ccHP)
DRV - [2009/12/25 04:00:00 | 01,323,568 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100118.039\NAVEX15.SYS -- (NAVEX15)
DRV - [2009/12/25 04:00:00 | 00,371,248 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2009/12/25 04:00:00 | 00,102,448 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2009/12/25 04:00:00 | 00,084,912 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100118.039\NAVENG.SYS -- (NAVENG)
DRV - [2009/10/28 17:37:22 | 00,329,592 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100116.002\IDSXpx86.sys -- (IDSxpx86)
DRV - [2009/08/28 19:42:52 | 00,040,448 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbaapl.sys -- (USBAAPL)
DRV - [2009/08/22 02:21:19 | 00,310,320 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\NIS\1007020.00B\SYMEFA.SYS -- (SymEFA)
DRV - [2009/08/22 02:21:19 | 00,308,272 | ---- | M] (Symantec Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\System32\Drivers\NIS\1007020.00B\SRTSP.SYS -- (SRTSP)
DRV - [2009/08/22 02:21:19 | 00,259,632 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\NIS\1007020.00B\BHDrvx86.sys -- (BHDrvx86)
DRV - [2009/08/22 02:21:19 | 00,217,136 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\NIS\1007020.00B\SYMTDI.SYS -- (SYMTDI)
DRV - [2009/08/22 02:21:19 | 00,089,904 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\Drivers\NIS\1007020.00B\SYMFW.SYS -- (SYMFW)
DRV - [2009/08/22 02:21:19 | 00,043,696 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1007020.00B\SRTSPX.SYS -- (SRTSPX) Symantec Real Time Storage Protection (PEL)
DRV - [2009/08/22 02:21:19 | 00,036,400 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\Drivers\NIS\1007020.00B\SYMNDIS.SYS -- (SYMNDIS)
DRV - [2009/08/22 02:21:19 | 00,033,072 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\Drivers\NIS\1007020.00B\SYMIDS.SYS -- (SYMIDS)
DRV - [2009/08/22 02:21:06 | 00,036,400 | R--- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SymIM.sys -- (SymIMMP)
DRV - [2009/08/22 02:21:06 | 00,036,400 | R--- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SymIM.sys -- (SymIM)
DRV - [2009/05/18 14:17:00 | 00,026,600 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2009/03/24 05:15:14 | 00,145,152 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\M3000KNT.sys -- (M3000Srv)
DRV - [2009/03/02 00:03:48 | 00,038,912 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c)
DRV - [2009/02/24 03:49:44 | 05,032,448 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2009/02/20 03:53:18 | 01,952,512 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BCMWL5.SYS -- (BCM43XX)
DRV - [2009/02/05 21:33:04 | 00,205,232 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SynTP.sys -- (SynTP)
DRV - [2008/08/05 07:10:12 | 01,684,736 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2008/04/14 07:00:00 | 00,179,584 | ---- | M] (Mylex Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\dac2w2k.sys -- (dac2w2k)
DRV - [2008/04/14 07:00:00 | 00,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2008/04/14 07:00:00 | 00,049,024 | ---- | M] (QLogic Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\ql1280.sys -- (ql1280)
DRV - [2008/04/14 07:00:00 | 00,045,312 | ---- | M] (QLogic Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\ql12160.sys -- (ql12160)
DRV - [2008/04/14 07:00:00 | 00,040,320 | ---- | M] (QLogic Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\ql1080.sys -- (ql1080)
DRV - [2008/04/14 07:00:00 | 00,036,736 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\ultra.sys -- (ultra)
DRV - [2008/04/14 07:00:00 | 00,032,640 | ---- | M] (LSI Logic) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\symc8xx.sys -- (symc8xx)
DRV - [2008/04/14 07:00:00 | 00,030,688 | ---- | M] (LSI Logic) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\sym_u3.sys -- (sym_u3)
DRV - [2008/04/14 07:00:00 | 00,028,384 | ---- | M] (LSI Logic) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\sym_hi.sys -- (sym_hi)
DRV - [2008/04/14 07:00:00 | 00,026,496 | ---- | M] (Advanced System Products, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\asc.sys -- (asc)
DRV - [2008/04/14 07:00:00 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv)
DRV - [2008/04/14 07:00:00 | 00,019,072 | ---- | M] (Adaptec, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\sparrow.sys -- (Sparrow)
DRV - [2008/04/14 07:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink)
DRV - [2008/04/14 07:00:00 | 00,017,280 | ---- | M] (American Megatrends Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\mraid35x.sys -- (mraid35x)
DRV - [2008/04/14 07:00:00 | 00,016,256 | ---- | M] (Symbios Logic Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\symc810.sys -- (symc810)
DRV - [2008/04/14 07:00:00 | 00,014,848 | ---- | M] (Advanced System Products, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\asc3550.sys -- (asc3550)
DRV - [2008/04/14 07:00:00 | 00,006,656 | ---- | M] (CMD Technology, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\cmdide.sys -- (CmdIde)
DRV - [2008/04/14 07:00:00 | 00,005,248 | ---- | M] (Acer Laboratories Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\aliide.sys -- (AliIde)
DRV - [2008/04/14 02:06:40 | 00,043,008 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\amdagp.sys -- (amdagp)
DRV - [2008/04/14 02:06:40 | 00,040,960 | ---- | M] (Silicon Integrated Systems Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\sisagp.sys -- (sisagp)
DRV - [2008/02/15 00:12:06 | 05,854,752 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\igxpmp32.sys -- (ialm)
DRV - [2006/11/02 08:27:36 | 00,020,112 | ---- | M] (Dritek System Inc.) [Kernel | System | Running] -- C:\Program Files\Launch Manager\DPortIO.sys -- (DritekPortIO)
DRV - [2006/01/20 01:42:38 | 00,017,408 | ---- | M] (Dritek System Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\DKbFltr.sys -- (DKbFltr)
DRV - [2006/01/04 02:41:48 | 01,389,056 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = [You must be registered and logged in to see this link.]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [You must be registered and logged in to see this link.]

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = [You must be registered and logged in to see this link.]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [You must be registered and logged in to see this link.]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local



O1 HOSTS File: ([2008/04/14 07:00:00 | 00,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\CoIEPlg.dll (Symantec Corporation)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\IPSBHO.dll (Symantec Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll (Google Inc.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\CoIEPlg.dll (Symantec Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\CoIEPlg.dll (Symantec Corporation)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [AzMixerSel] C:\Program Files\Realtek\Audio\Drivers\AzMixerSel.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [Camera Assistant Software] C:\Program Files\Video Web Camera\traybar.exe (Chicony)
O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
O4 - HKLM..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe (Intel Corporation)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4 - HKLM..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe (Intel Corporation)
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
O4 - HKLM..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKLM..\Run: [M3000Mnt] File not found
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask.exe (Apple Inc.)
O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated)
O4 - HKCU..\Run: [Google Update] C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Google\Update\GoogleUpdate.exe (Google Inc.)
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan.lnk = C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe (McAfee, Inc.)
O4 - Startup: C:\Documents and Settings\Jeffsmitheverybody\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll (Google Inc.)
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} [You must be registered and logged in to see this link.] (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} [You must be registered and logged in to see this link.] (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [You must be registered and logged in to see this link.] (Java Plug-in 1.6.0_17)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} [You must be registered and logged in to see this link.] (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\symres {AA1061FE-6C41-421f-9344-69640C9732AB} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\CoIEPlg.dll (Symantec Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Jeffsmitheverybody\Application Data\Microsoft\Internet Explorer\Internet Explorer Wallpaper.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/07/27 12:45:30 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010/01/19 18:46:52 | 00,547,328 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\OTL.exe
[2010/01/19 18:34:01 | 00,000,000 | -HSD | C] -- C:\Config.Msi
[2010/01/19 18:28:56 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Adobe
[2010/01/19 18:28:40 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2010/01/19 18:28:25 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Threat Expert
[2010/01/19 18:28:25 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2010/01/19 18:28:24 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Google
[2010/01/18 21:48:35 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Jack Johnson - En Concert CDRip 2009 [Cov+CD][Bubanee]
[2010/01/16 11:15:25 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Threat Expert
[2010/01/16 11:09:21 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\PC Tools
[2010/01/16 10:43:13 | 00,000,000 | ---D | C] -- C:\Program Files\TrendMicro
[2010/01/14 21:06:20 | 00,000,000 | R--D | C] -- C:\Program Files\Norton Support
[2010/01/14 19:14:11 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2010/01/14 19:13:58 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\SUPERAntiSpyware.com
[2010/01/14 19:13:58 | 00,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2010/01/13 21:45:40 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\Malwarebytes
[2010/01/13 21:45:31 | 00,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/01/13 21:45:29 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010/01/13 21:45:28 | 00,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/01/13 21:45:28 | 00,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/01/13 21:44:59 | 05,115,824 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\mbam-setup.exe
[2010/01/12 21:58:20 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\The Commodores - Discography
[2010/01/12 21:52:21 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Smokey Robinson And The Miracles - The Greatest Hits
[2010/01/12 21:51:39 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Marvin Gaye - Motown's Greatest Hits
[2010/01/12 21:49:56 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Blessid_Union_Of_Souls-Home-1995-FIH_INT
[2010/01/12 21:48:06 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Tyrone_Wells-Hold_On-2007-RNS
[2010/01/12 21:47:02 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Phish - Studio Discography
[2010/01/12 21:46:03 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Tim McGraw - Discography (14 CDs)
[2010/01/12 21:38:52 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Coolio - Gangsta's Paradise [1995]
[2010/01/12 21:37:29 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Maroon 5 Discography.(4 Albums).moXXon
[2010/01/11 22:27:12 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\O.A.R. - All Sides [320VBR]
[2010/01/11 22:26:02 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\O.A.R. (Of A Revolution) - Rain Or Shine (LIVE) - [cd] 2010
[2010/01/11 22:21:24 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\O.A.R
[2010/01/11 22:05:13 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Chris Brown Discography.(2 Albums).moXXon
[2010/01/11 21:49:49 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Snoop Dogg - Discography (1993 - 2006)
[2010/01/11 21:48:01 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Warren G - Discography
[2010/01/11 21:42:11 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Taylor Swift - Fearless.Platinum Edition (2009.JB59)
[2010/01/11 21:37:29 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Talib Kweli
[2010/01/11 21:31:59 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Jay Z Full Discography + Mixtape Albums + Mixtapes
[2010/01/11 21:30:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Ne-Yo - discography
[2010/01/11 21:21:05 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Led Zeppelin - Discography
[2010/01/11 21:16:04 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Common Discography
[2010/01/11 08:33:56 | 00,000,000 | -HSD | C] -- C:\Documents and Settings\Jeffsmitheverybody\IECompatCache
[2010/01/10 22:28:40 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Paul McCartney
[2010/01/10 22:18:07 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Train
[2010/01/10 22:15:44 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Kings of Leon - discography (4 studio albums , 4 EP's)(Kingdom Music)
[2010/01/10 21:39:46 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Coldplay - Discography and EP and Singles
[2010/01/10 21:33:38 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\DMBLive Series
[2010/01/10 21:29:41 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Dave Matthews Band - Live Trax 16
[2010/01/05 16:10:25 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\PCHealth
[2010/01/04 19:18:03 | 00,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2010/01/04 19:18:03 | 00,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2009/12/30 08:15:39 | 00,597,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\printfilterpipelinesvc.exe
[2009/12/30 08:15:39 | 00,117,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\prntvpt.dll
[2009/12/30 08:15:39 | 00,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\filterpipelineprintproc.dll
[2009/12/30 08:15:38 | 01,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpssvcs.dll
[2009/12/30 08:15:38 | 01,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpssvcs.dll
[2009/12/30 08:15:38 | 00,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpsshhdr.dll
[2009/12/30 08:15:37 | 00,000,000 | ---D | C] -- C:\933d620ada7d3b785e1c9a8a
[2009/12/30 08:06:58 | 00,000,000 | ---D | C] -- C:\40304b73333cdf0419
[2009/12/30 08:06:53 | 00,000,000 | ---D | C] -- C:\8d3811b61d1b7dfb262c14681261
[2009/12/29 21:13:25 | 00,012,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mouhid.sys
[2009/12/29 21:13:16 | 00,010,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hidusb.sys
[2009/12/29 21:01:54 | 00,000,000 | ---D | C] -- C:\WINDOWS\pss
[2009/12/29 18:37:11 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Iyaz - Replay (2009)
[2009/12/29 18:06:02 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Jason Mraz
[2009/12/29 18:03:50 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Dave Matthews Band all rare albums
[2009/12/29 08:43:37 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\U2 - Discography.www.lokotorrents.com
[2009/12/29 08:38:37 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\G. Love & Special Sauce
[2009/12/29 08:34:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Jack Johnson Discogrpahy JoshDuarte6
[2009/12/29 08:16:36 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Bon Jovi Discography
[2009/12/28 22:43:30 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Bruce Springsteen Discography
[2009/12/28 21:33:43 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Amos Lee - Amos Lee (2004)
[2009/12/28 21:32:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Boyz II Men-Legacy- The Greatest Hits Collection (mp3) {tre123wor}
[2009/12/28 20:59:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Boyz II Men-Cooleyhighharmony (mp3) {tre123wor}
[2009/12/28 20:32:04 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Stevie wonder discography
[2009/12/28 20:30:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Dashboard Confessional
[2009/12/28 19:08:44 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\DMB
[2009/12/28 18:48:30 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\McAfee
[2009/12/28 03:19:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2009/12/28 03:05:07 | 00,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2009/12/27 23:44:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\John Mayer
[2009/12/27 23:35:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Dave Matthews Discography
[2009/12/27 22:46:02 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Josh Kelley - Special Company (2008) - Rock
[2009/12/27 22:43:54 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Dave Matthews Band - Live at Mile High Music Festival - Whole 2008 CD
[2009/12/27 22:42:52 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Boyz II Men - Love - [2009-MP3-256] (leak)
[2009/12/27 22:35:38 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Live Trax Series 1-14
[2009/12/27 22:05:49 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Ray Charles - Ultimate Hits Collection
[2009/12/27 22:05:15 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2009/12/27 16:01:27 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\COUNTING CROWS - DISCOGRAPHY [CHANNEL NEO]
[2009/12/27 15:24:08 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\The Jackson 5
[2009/12/27 15:21:27 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Marvin Gaye - Legends collection - 2007 [MP3 @ 320] (oan)
[2009/12/27 15:21:19 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Boyz II Men Motown A Journey Through Hitsville USA (2007)
[2009/12/27 12:45:50 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\O.A.R - Live from Alpharetta
[2009/12/27 12:19:29 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\[2005] The Essential - Michael Jackson 368mb @ 320kbs [only1joe]
[2009/12/27 07:47:22 | 00,594,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2009/12/27 07:47:22 | 00,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2009/12/27 07:47:19 | 01,985,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2009/12/27 07:47:15 | 11,069,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
[2009/12/27 03:00:46 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2009/12/27 00:12:44 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\AUGUSTANA - DISCOGRAPHY [CHANNEL NEO]
[2009/12/27 00:09:25 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\BEN FOLDS - DISCOGRAPHY [CHANNEL NEO]
[2009/12/26 23:21:23 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Michael Jackson - This Is It 2009 2CDrip [Cov+2CD][Bubanee]
[2009/12/26 23:18:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Kings Of Leon - Only By The Night[2008][MP3@320kbps]-antecho
[2009/12/26 22:56:59 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Temp
[2009/12/26 22:54:52 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Deployment
[2009/12/26 22:03:40 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Kanye West - Late Registration
[2009/12/26 21:59:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Kanye_West-College_Dropout-2004-RNS
[2009/12/26 21:37:00 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AVS4YOU
[2009/12/26 21:36:48 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\AVS4YOU
[2009/12/26 21:34:47 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\AVSMedia
[2009/12/26 21:34:41 | 01,700,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\GdiPlus.dll
[2009/12/26 21:34:41 | 00,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msxml3a.dll
[2009/12/26 21:34:38 | 00,000,000 | ---D | C] -- C:\Program Files\AVS4YOU
[2009/12/26 21:21:00 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Marc Broussard
[2009/12/26 21:11:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\The Fray (Discography)
[2009/12/26 20:56:12 | 00,000,000 | ---D | C] -- C:\Program Files\FLAC
[2009/12/26 20:51:18 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2009/12/26 19:58:18 | 00,000,000 | ---D | C] -- C:\Program Files\Michael K. Weise
[2009/12/26 19:56:44 | 00,315,904 | ---- | C] (InstallShield Software Corporation) -- C:\WINDOWS\IsUninst.exe
[2009/12/26 19:56:41 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\WINDOWS
[2009/12/26 14:32:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\SISTER HAZEL - DISCOGRAPHY [CHANNEL NEO]
[2009/12/26 14:29:29 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\dmb2009-06-06.akg481.flac16
[2009/12/26 13:45:56 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\McAfee Security Scan
[2009/12/26 13:45:54 | 00,000,000 | ---D | C] -- C:\Program Files\McAfee Security Scan
[2009/12/26 13:45:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NOS
[2009/12/26 13:43:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\My Videos
[2009/12/26 13:42:36 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\Mozilla
[2009/12/26 13:42:01 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\Participatory Culture Foundation
[2009/12/26 13:30:42 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Adobe
[2009/12/26 13:24:38 | 00,000,000 | -HSD | C] -- C:\RECYCLER
[2009/12/26 13:22:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\BitTorrent
[2009/12/26 13:22:04 | 00,000,000 | ---D | C] -- C:\Program Files\BitTorrent
[2009/12/26 13:09:25 | 00,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2009/12/26 13:09:00 | 00,073,728 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
[2009/12/26 13:08:59 | 00,411,368 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deploytk.dll
[2009/12/26 13:08:59 | 00,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2009/12/26 13:08:59 | 00,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2009/12/26 13:08:59 | 00,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2009/12/26 13:08:29 | 00,000,000 | ---D | C] -- C:\Program Files\Java
[2009/12/26 13:06:23 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\Sun
[2009/12/26 13:06:12 | 00,800,544 | ---- | C] (Sun Microsystems, Inc.) -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\JavaSetup6u17-rv.exe
[2009/12/26 08:30:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\Apple Computer
[2009/12/26 08:29:54 | 00,107,368 | ---- | C] (GEAR Software Inc.) -- C:\WINDOWS\System32\GEARAspi.dll
[2009/12/26 08:29:54 | 00,026,600 | ---- | C] (GEAR Software Inc.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys
[2009/12/26 08:29:08 | 00,000,000 | ---D | C] -- C:\Program Files\iPod
[2009/12/26 08:29:04 | 00,000,000 | ---D | C] -- C:\Program Files\iTunes
[2009/12/26 08:29:04 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009/12/26 08:28:40 | 00,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2009/12/26 08:27:51 | 00,000,000 | ---D | C] -- C:\Program Files\QuickTime
[2009/12/26 08:27:50 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple Computer
[2009/12/26 08:27:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Apple
[2009/12/26 08:27:28 | 00,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2009/12/26 08:27:16 | 02,065,696 | ---- | C] (Apple, Inc.) -- C:\WINDOWS\System32\usbaaplrc.dll
[2009/12/26 08:27:16 | 00,040,448 | ---- | C] (Apple, Inc.) -- C:\WINDOWS\System32\drivers\usbaapl.sys
[2009/12/26 08:26:23 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2009/12/26 08:26:23 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple
[2009/12/26 08:25:53 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Apple Computer
[2009/12/26 08:24:17 | 93,234,472 | ---- | C] (Apple Inc.) -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\iTunesSetup.exe
[2009/12/26 08:14:42 | 00,159,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ptpusd.dll
[2009/12/26 08:14:42 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ptpusb.dll
[2009/12/26 08:14:41 | 00,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbscan.sys
[2009/12/26 08:09:29 | 00,036,400 | R--- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\SymIM.sys
[2009/12/26 08:09:27 | 00,124,976 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS
[2009/12/26 08:09:27 | 00,060,808 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\S32EVNT1.DLL
[2009/12/26 08:09:26 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared
[2009/12/26 08:09:26 | 00,000,000 | ---D | C] -- C:\Program Files\Symantec
[2009/12/26 00:38:26 | 00,000,000 | -H-D | C] -- C:\WINDOWS\PIF
[2009/12/26 00:35:50 | 00,016,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll.mui
[2009/12/26 00:35:49 | 00,274,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll
[2009/12/26 00:35:28 | 00,000,000 | --SD | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\My Web Sites
[2009/12/26 00:22:04 | 00,000,000 | --SD | C] -- C:\cet-jeff-backup
[2009/12/26 00:16:37 | 00,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 8
[2009/12/26 00:16:29 | 00,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio
[2009/12/26 00:15:15 | 00,000,000 | ---D | C] -- C:\Program Files\Microsoft Expression
[2009/12/26 00:12:48 | 00,000,000 | ---D | C] -- C:\expression web
[2009/12/25 23:46:13 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Tracing
[2009/12/25 23:45:13 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2009/12/25 23:42:14 | 00,000,000 | -HSD | C] -- C:\Documents and Settings\Jeffsmitheverybody\PrivacIE
[2009/12/25 23:42:11 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\Google
[2009/12/25 23:19:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Google
[2009/12/25 23:19:15 | 00,000,000 | --SD | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\Microsoft
[2009/12/25 23:19:15 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\Jeffsmitheverybody\SendTo
[2009/12/25 23:19:15 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Recent
[2009/12/25 23:19:15 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data
[2009/12/25 23:19:15 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Start Menu
[2009/12/25 23:19:15 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\My Pictures
[2009/12/25 23:19:15 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\My Music
[2009/12/25 23:19:15 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents
[2009/12/25 23:19:15 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Favorites
[2009/12/25 23:19:15 | 00,000,000 | -HSD | C] -- C:\Documents and Settings\Jeffsmitheverybody\IETldCache
[2009/12/25 23:19:15 | 00,000,000 | -HSD | C] -- C:\Documents and Settings\Jeffsmitheverybody\Cookies
[2009/12/25 23:19:15 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Templates
[2009/12/25 23:19:15 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Jeffsmitheverybody\PrintHood
[2009/12/25 23:19:15 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Jeffsmitheverybody\NetHood
[2009/12/25 23:19:15 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings
[2009/12/25 23:19:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\My Google Gadgets
[2009/12/25 23:19:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Microsoft Help
[2009/12/25 23:19:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Microsoft
[2009/12/25 23:19:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\Macromedia
[2009/12/25 23:19:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\InstallShield
[2009/12/25 23:19:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\Identities
[2009/12/25 23:19:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Google
[2009/12/25 23:19:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Desktop
[2009/12/25 23:19:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\ApplicationHistory
[2009/12/25 23:19:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\Adobe
[2009/07/27 12:48:16 | 00,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2009/07/27 12:48:15 | 00,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2010/01/19 18:47:00 | 00,547,328 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\OTL.exe
[2010/01/19 18:42:54 | 00,479,156 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/01/19 18:42:54 | 00,407,738 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/01/19 18:42:54 | 00,064,354 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/01/19 18:38:30 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/01/19 18:38:24 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/01/19 18:38:18 | 10,633,17504 | -HS- | M] () -- C:\hiberfil.sys
[2010/01/19 18:36:11 | 01,835,008 | -H-- | M] () -- C:\Documents and Settings\Jeffsmitheverybody\NTUSER.DAT
[2010/01/19 18:36:11 | 00,000,178 | -HS- | M] () -- C:\Documents and Settings\Jeffsmitheverybody\ntuser.ini
[2010/01/19 18:35:56 | 04,832,412 | -H-- | M] () -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\IconCache.db
[2010/01/19 18:01:00 | 00,001,030 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-638971174-2027339946-1710738407-1006UA.job
[2010/01/18 23:01:01 | 00,000,978 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-638971174-2027339946-1710738407-1006Core.job
[2010/01/18 21:50:20 | 00,002,137 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2010/01/18 21:25:39 | 00,060,664 | ---- | M] () -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2010/01/18 21:25:06 | 00,245,512 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/01/18 00:17:43 | 00,312,344 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\drivers\iaStor.sys
[2010/01/14 19:13:30 | 07,520,288 | ---- | M] () -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\SUPERAntiSpyware.exe
[2010/01/14 03:00:40 | 00,580,332 | ---- | M] () -- C:\WINDOWS\System32\drivers\NIS\1007020.00B\Cat.DB
[2010/01/13 21:47:02 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\5705.exe
[2010/01/13 21:45:35 | 00,000,698 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/01/13 21:45:08 | 05,115,824 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\mbam-setup.exe
[2010/01/13 21:27:01 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\24464.exe
[2010/01/13 21:07:01 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\26962.exe
[2010/01/13 20:47:00 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\29358.exe
[2010/01/13 20:27:00 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\11478.exe
[2010/01/13 20:07:00 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\15724.exe
[2010/01/13 19:46:59 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\19169.exe
[2010/01/13 19:26:56 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\26500.exe
[2010/01/13 19:06:55 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\6334.exe
[2010/01/13 18:46:53 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\18467.exe
[2010/01/13 03:01:14 | 00,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/01/12 19:18:44 | 00,002,461 | ---- | M] () -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\Microsoft Expression Web .lnk
[2010/01/10 21:10:10 | 00,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/01/08 14:35:52 | 00,000,949 | ---- | M] () -- C:\Documents and Settings\Jeffsmitheverybody\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk
[2010/01/07 16:07:14 | 00,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/01/07 16:07:04 | 00,019,160 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/01/05 16:57:46 | 00,013,455 | ---- | M] () -- C:\WINDOWS\M3000Twn.src
[2009/12/29 21:49:07 | 00,000,477 | ---- | M] () -- C:\WINDOWS\win.ini
[2009/12/29 21:49:07 | 00,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2009/12/29 21:49:07 | 00,000,211 | RHS- | M] () -- C:\boot.ini
[2009/12/29 18:24:36 | 06,939,890 | ---- | M] () -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Iyaz - Replay (2009).zip
[2009/12/28 03:38:39 | 00,000,884 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Microsoft Works.lnk
[2009/12/27 22:05:21 | 00,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2009/12/27 14:18:04 | 00,054,436 | -H-- | M] () -- C:\WINDOWS\System32\mlfcache.dat
[2009/12/26 20:51:42 | 00,008,192 | ---- | M] () -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/12/26 20:25:28 | 00,000,000 | ---- | M] () -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\wklnhst.dat
[2009/12/26 19:58:19 | 00,001,798 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\mkw Audio Compression Tool.lnk
[2009/12/26 13:45:55 | 00,000,715 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\McAfee Security Scan.lnk
[2009/12/26 13:45:55 | 00,000,707 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan.lnk
[2009/12/26 13:22:35 | 00,000,730 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\BitTorrent.lnk
[2009/12/26 13:08:35 | 00,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2009/12/26 13:08:35 | 00,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2009/12/26 13:08:35 | 00,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2009/12/26 13:08:35 | 00,073,728 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
[2009/12/26 13:08:34 | 00,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deploytk.dll
[2009/12/26 13:06:22 | 00,800,544 | ---- | M] (Sun Microsystems, Inc.) -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\JavaSetup6u17-rv.exe
[2009/12/26 11:26:00 | 00,001,975 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Norton Internet Security.lnk
[2009/12/26 10:55:01 | 00,124,976 | ---- | M] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS
[2009/12/26 10:55:01 | 00,060,808 | ---- | M] (Symantec Corporation) -- C:\WINDOWS\System32\S32EVNT1.DLL
[2009/12/26 10:55:01 | 00,007,456 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.CAT
[2009/12/26 10:55:01 | 00,000,806 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.INF
[2009/12/26 10:54:29 | 00,482,432 | ---- | M] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NIS\1007020.00B\cchpx86.sys
[2009/12/26 10:54:26 | 00,009,412 | ---- | M] () -- C:\WINDOWS\System32\drivers\NIS\1007020.00B\symnetv.cat
[2009/12/26 10:54:26 | 00,001,562 | ---- | M] () -- C:\WINDOWS\System32\drivers\NIS\1007020.00B\SymNetV.inf
[2009/12/26 10:54:26 | 00,000,172 | ---- | M] () -- C:\WINDOWS\System32\drivers\NIS\1007020.00B\isolate.ini
[2009/12/26 08:28:12 | 00,001,606 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\QuickTime Player.lnk
[2009/12/26 08:27:35 | 00,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2009/12/26 08:25:32 | 93,234,472 | ---- | M] (Apple Inc.) -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\iTunesSetup.exe
[2009/12/25 23:19:24 | 00,000,788 | ---- | M] () -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\Windows Media Player.lnk
[2009/12/25 23:18:58 | 00,037,669 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2009/12/25 23:18:56 | 00,262,144 | ---- | M] () -- C:\Documents and Settings\All Users\NTUSER.DAT
[2009/12/25 23:11:37 | 00,005,208 | ---- | M] () -- C:\WINDOWS\System32\pid.PNF
[2009/12/25 23:09:44 | 00,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010/01/14 19:13:15 | 07,520,288 | ---- | C] () -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\SUPERAntiSpyware.exe
[2010/01/13 21:47:02 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\5705.exe
[2010/01/13 21:45:35 | 00,000,698 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/01/13 21:27:01 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\24464.exe
[2010/01/13 21:07:01 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\26962.exe
[2010/01/13 20:47:00 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\29358.exe
[2010/01/13 20:27:00 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\11478.exe
[2010/01/13 20:07:00 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\15724.exe
[2010/01/13 19:46:59 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\19169.exe
[2010/01/13 18:11:09 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\26500.exe
[2010/01/13 17:51:08 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\6334.exe
[2010/01/13 17:31:08 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\18467.exe
[2010/01/08 14:35:52 | 00,000,949 | ---- | C] () -- C:\Documents and Settings\Jeffsmitheverybody\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk
[2009/12/29 18:24:08 | 06,939,890 | ---- | C] () -- C:\Documents and Settings\Jeffsmitheverybody\My Documents\Iyaz - Replay (2009).zip
[2009/12/27 16:39:50 | 00,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2009/12/27 14:18:04 | 00,054,436 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2009/12/26 22:56:52 | 00,001,030 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-638971174-2027339946-1710738407-1006UA.job
[2009/12/26 22:56:51 | 00,000,978 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-638971174-2027339946-1710738407-1006Core.job
[2009/12/26 20:25:28 | 00,000,000 | ---- | C] () -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\wklnhst.dat
[2009/12/26 19:58:19 | 00,001,798 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\mkw Audio Compression Tool.lnk
[2009/12/26 19:58:18 | 00,528,384 | ---- | C] () -- C:\WINDOWS\System32\BladeEnc.dll
[2009/12/26 19:58:18 | 00,120,832 | ---- | C] () -- C:\WINDOWS\System32\ShnDll32.dll
[2009/12/26 13:45:55 | 00,000,715 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\McAfee Security Scan.lnk
[2009/12/26 13:45:55 | 00,000,707 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan.lnk
[2009/12/26 13:22:35 | 00,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\BitTorrent.lnk
[2009/12/26 08:29:57 | 00,002,137 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2009/12/26 08:28:12 | 00,001,606 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\QuickTime Player.lnk
[2009/12/26 08:27:34 | 00,000,284 | ---- | C] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2009/12/26 08:22:38 | 00,008,192 | ---- | C] () -- C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/12/26 08:09:27 | 00,007,456 | ---- | C] () -- C:\WINDOWS\System32\drivers\SYMEVENT.CAT
[2009/12/26 08:09:27 | 00,000,806 | ---- | C] () -- C:\WINDOWS\System32\drivers\SYMEVENT.INF
[2009/12/26 00:20:47 | 00,002,461 | ---- | C] () -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\Microsoft Expression Web .lnk
[2009/12/25 23:19:24 | 00,000,788 | ---- | C] () -- C:\Documents and Settings\Jeffsmitheverybody\Desktop\Windows Media Player.lnk
[2009/12/25 23:19:15 | 00,000,178 | -HS- | C] () -- C:\Documents and Settings\Jeffsmitheverybody\ntuser.ini
[2009/12/25 23:19:14 | 01,835,008 | -H-- | C] () -- C:\Documents and Settings\Jeffsmitheverybody\NTUSER.DAT
[2009/12/25 23:18:56 | 00,262,144 | ---- | C] () -- C:\Documents and Settings\All Users\NTUSER.DAT
[2009/12/25 23:09:44 | 00,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2009/11/16 15:50:48 | 06,872,159 | ---- | C] () -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\Iyaz - Replay.zip
[2009/11/04 10:30:14 | 00,016,384 | ---- | C] () -- C:\Documents and Settings\Jeffsmitheverybody\Application Data\blank.exe
[2009/09/19 16:36:25 | 00,145,152 | ---- | C] () -- C:\WINDOWS\System32\drivers\M3000KNT.sys
[2009/09/19 16:36:24 | 00,233,472 | ---- | C] () -- C:\WINDOWS\System32\M3000DIF.dll
[2009/09/19 16:36:24 | 00,015,190 | ---- | C] () -- C:\WINDOWS\M3000Twn.ini
[2009/07/27 15:31:33 | 00,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2009/07/27 14:35:39 | 00,000,168 | ---- | C] () -- C:\WINDOWS\ZH.INI
[2009/07/27 14:35:39 | 00,000,168 | ---- | C] () -- C:\WINDOWS\S3.INI
[2009/07/27 14:35:39 | 00,000,168 | ---- | C] () -- C:\WINDOWS\FR-CA.INI
[2009/07/27 14:35:39 | 00,000,168 | ---- | C] () -- C:\WINDOWS\EN-GB.INI
[2009/07/27 14:35:39 | 00,000,168 | ---- | C] () -- C:\WINDOWS\EN-CA.INI
[2009/07/27 14:33:49 | 00,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4926.dll
[2009/07/27 12:48:31 | 00,008,844 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2009/07/27 12:42:50 | 00,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini

========== Alternate Data Streams ==========

@Alternate Data Stream - 115 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A8ADE5D8
@Alternate Data Stream - 103 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
< End of report >

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Tue Jan 19, 2010 11:58 pm

here is the full extras.txt

OTL Extras logfile created on: 1/19/2010 6:48:07 PM - Run 1
OTL by OldTimer - Version 3.1.25.2 Folder = C:\Documents and Settings\Jeffsmitheverybody\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1,014.00 Mb Total Physical Memory | 584.00 Mb Available Physical Memory | 58.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 85.00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 139.04 Gb Total Space | 60.67 Gb Free Space | 43.64% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: JEFF
Current User Name: Jeffsmitheverybody
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Generate MD5 Signatures] -- "C:\Program Files\Michael K. Weise\mkw Audio Compression Toolkit\mkwACT.exe" (Michael K. Weise)
Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~3\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation)
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation)
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)
"C:\Program Files\Bonjour\mDNSResponder.exe" = C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour -- (Apple Inc.)
"C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
"C:\Program Files\BitTorrent\bittorrent.exe" = C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent -- (BitTorrent, Inc.)
"C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.dll" = C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.dll:*:Enabled:Google Talk Plugin -- (Google)
"C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe" = C:\Documents and Settings\Jeffsmitheverybody\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe:*:Enabled:Google Talk Plugin -- (Google)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{0AAA9C97-74D4-47CE-B089-0B147EF3553C}" = Windows Live Messenger
"{12A1B519-5934-4508-ADBD-335347B0DC87}" = Video Web Camera
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java(TM) 6 Update 17
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3C52E7DA-C431-4239-B66B-1BF703D5B194}" = Windows Live Photo Gallery
"{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}" = Junk Mail filter update
"{5299C5E1-70F9-3D1D-A1FA-BDECA4EC8015}" = Google Talk Plugin
"{56A648C2-D185-46A9-BBFF-78AE7A503000}" = Webcam
"{5F00DF7E-418B-4CD9-8EC5-781156BCC49E}" = Microsoft Money Shared Libraries
"{63C1109E-D977-49ED-BCE3-D00D0BF187D6}" = Windows Live Mail
"{67E03279-F703-408F-B4BF-46B5FC8D70CD}" = Microsoft Works
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6A92E5C5-0578-443D-91F3-92ECE5F2CAE2}" = Windows Live Writer
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = Gateway Recovery Management
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}_WebDesigner_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}_WebDesigner_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}_WebDesigner_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-0026-0000-0000-0000000FF1CE}" = Microsoft Expression Web
"{90120000-0026-0000-0000-0000000FF1CE}_WebDesigner_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0026-0000-0000-0000000FF1CE}_WebDesigner_{9037FDA8-8383-4B6F-859D-D49C3C625225}" = Microsoft Expression Web Service Pack 1 (SP1)
"{90120000-0026-0409-0000-0000000FF1CE}" = Microsoft Expression Web MUI (English)
"{90120000-0026-0409-0000-0000000FF1CE}_WebDesigner_{E1044ED2-E4AD-4B39-B500-31109750F6B4}" = Microsoft Office SharePoint Designer 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}_WebDesigner_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}_WebDesigner_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{96AE7E41-E34E-47D0-AC07-1091A8127911}" = USB2.0 Card Reader Software
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A1BF9950-8CDB-468E-83FA-EACFB00EA7D5}" = Windows Live Sync
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A6FDF86A-F541-4E7B-AEA0-8849A2A700D5}" = iTunes
"{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
"{AC76BA86-7AD7-1033-7B44-A90000000001}" = Adobe Reader 9
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C6CA8874-5F22-4AF0-9BE3-016BF299C536}" = Windows Live Essentials
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"BitTorrent" = BitTorrent
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"Gateway Screensaver" = Gateway ScreenSaver
"Google Desktop" = Google Desktop
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"ie8" = Windows Internet Explorer 8
"LManager" = Launch Manager
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"McAfee Security Scan" = McAfee Security Scan
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"mkwACT" = mkw Audio Compression Toolkit
"Money2007b" = Microsoft Money Essentials
"NIS" = Norton Internet Security
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
"WebDesigner" = Microsoft Expression Web
"WildTangent gateway Master Uninstall" = Gateway Games
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"WinLiveSuite_Wave3" = Windows Live Essentials

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 1/12/2010 4:00:32 AM | Computer Name = JEFF | Source = HotFixInstaller | ID = 5000
Description = EventType visualstudio8setup, P1 microsoft .net framework 3.0-kb958483,
P2 1033, P3 1605, P4 msi, P5 f, P6 9.0.31211.0, P7 install, P8 x86, P9 xp, P10
0.

Error - 1/13/2010 4:00:33 AM | Computer Name = JEFF | Source = HotFixInstaller | ID = 5000
Description = EventType visualstudio8setup, P1 microsoft .net framework 3.0-kb958483,
P2 1033, P3 1605, P4 msi, P5 f, P6 9.0.31211.0, P7 install, P8 x86, P9 xp, P10
0.

Error - 1/15/2010 9:03:29 AM | Computer Name = JEFF | Source = HotFixInstaller | ID = 5000
Description = EventType visualstudio8setup, P1 microsoft .net framework 3.0-kb958483,
P2 1033, P3 1605, P4 msi, P5 f, P6 9.0.31211.0, P7 install, P8 x86, P9 xp, P10
0.

Error - 1/16/2010 4:00:27 AM | Computer Name = JEFF | Source = HotFixInstaller | ID = 5000
Description = EventType visualstudio8setup, P1 microsoft .net framework 3.0-kb958483,
P2 1033, P3 1605, P4 msi, P5 f, P6 9.0.31211.0, P7 install, P8 x86, P9 xp, P10
0.

Error - 1/16/2010 12:58:53 PM | Computer Name = JEFF | Source = Application Hang | ID = 1002
Description = Hanging application 7.0.0.514c-sdrevenue-setup[1].tmp, version 51.49.0.0,
hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Error - 1/17/2010 10:34:02 PM | Computer Name = JEFF | Source = HotFixInstaller | ID = 5000
Description = EventType visualstudio8setup, P1 microsoft .net framework 3.0-kb958483,
P2 1033, P3 1605, P4 msi, P5 f, P6 9.0.31211.0, P7 install, P8 x86, P9 xp, P10
0.

Error - 1/18/2010 4:00:48 AM | Computer Name = JEFF | Source = HotFixInstaller | ID = 5000
Description = EventType visualstudio8setup, P1 microsoft .net framework 3.0-kb958483,
P2 1033, P3 1605, P4 msi, P5 f, P6 9.0.31211.0, P7 install, P8 x86, P9 xp, P10
0.

Error - 1/18/2010 2:45:24 PM | Computer Name = JEFF | Source = HotFixInstaller | ID = 5000
Description = EventType visualstudio8setup, P1 microsoft .net framework 3.0-kb958483,
P2 1033, P3 1605, P4 msi, P5 f, P6 9.0.31211.0, P7 install, P8 x86, P9 xp, P10
0.

Error - 1/19/2010 4:00:39 AM | Computer Name = JEFF | Source = HotFixInstaller | ID = 5000
Description = EventType visualstudio8setup, P1 microsoft .net framework 3.0-kb958483,
P2 1033, P3 1605, P4 msi, P5 f, P6 9.0.31211.0, P7 install, P8 x86, P9 xp, P10
0.

Error - 1/19/2010 7:36:30 PM | Computer Name = JEFF | Source = HotFixInstaller | ID = 5000
Description = EventType visualstudio8setup, P1 microsoft .net framework 3.0-kb958483,
P2 1033, P3 1605, P4 msi, P5 f, P6 9.0.31211.0, P7 install, P8 x86, P9 xp, P10
0.

[ System Events ]
Error - 1/19/2010 7:34:15 PM | Computer Name = JEFF | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 1/19/2010 7:34:15 PM | Computer Name = JEFF | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 1/19/2010 7:34:16 PM | Computer Name = JEFF | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 1/19/2010 7:34:16 PM | Computer Name = JEFF | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 1/19/2010 7:34:16 PM | Computer Name = JEFF | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 1/19/2010 7:34:16 PM | Computer Name = JEFF | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 1/19/2010 7:34:16 PM | Computer Name = JEFF | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 1/19/2010 7:34:16 PM | Computer Name = JEFF | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 1/19/2010 7:34:16 PM | Computer Name = JEFF | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126

Error - 1/19/2010 7:34:16 PM | Computer Name = JEFF | Source = Service Control Manager | ID = 7023
Description = The Application Management service terminated with the following error:
%%126


< End of report >

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Wed Jan 20, 2010 12:54 am

I saw in your post helping another person with a similar problem that you had them run combofix. Here is my log from combofix

ComboFix 10-01-19.03 - Jeffsmitheverybody 01/19/2010 19:33:27.1.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1014.712 [GMT -5:00]
Running from: c:\documents and settings\Jeffsmitheverybody\Desktop\Combo-Fix.exe
AV: Norton Internet Security *On-access scanning disabled* (Updated) {E10A9785-9598-4754-B552-92431C1C35F8}
FW: Norton Internet Security *disabled* {7C21A4C9-F61F-4AC4-B722-A6E19C16F220}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
c:\documents and settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
c:\windows\system32\11478.exe
c:\windows\system32\15724.exe
c:\windows\system32\18467.exe
c:\windows\system32\19169.exe
c:\windows\system32\24464.exe
c:\windows\system32\26500.exe
c:\windows\system32\26962.exe
c:\windows\system32\29358.exe
c:\windows\system32\5705.exe
c:\windows\system32\6334.exe
c:\windows\system32\config\systemprofile\Start Menu\Internet Security 2010.lnk

----- BITS: Possible infected sites -----

[You must be registered and logged in to see this link.]
Infected copy of c:\windows\system32\drivers\iaStor.sys was found and disinfected
Restored copy from - Kitty ate it :p
.
((((((((((((((((((((((((( Files Created from 2009-12-20 to 2010-01-20 )))))))))))))))))))))))))))))))
.

2010-01-19 23:28 . 2010-01-19 23:28 -------- d-sh--w- c:\documents and settings\LocalService\IECompatCache
2010-01-19 23:28 . 2010-01-19 23:28 -------- d-sh--w- c:\documents and settings\LocalService\PrivacIE
2010-01-19 23:28 . 2010-01-19 23:28 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Threat Expert
2010-01-19 23:28 . 2010-01-19 23:28 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Google
2010-01-19 12:48 . 2009-12-25 09:00 84912 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100118.039\NAVENG.SYS
2010-01-19 12:48 . 2009-12-25 09:00 177520 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100118.039\NAVENG32.DLL
2010-01-19 12:48 . 2009-12-25 09:00 1647984 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100118.039\NAVEX32A.DLL
2010-01-19 12:48 . 2009-12-25 09:00 1323568 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100118.039\NAVEX15.SYS
2010-01-19 12:48 . 2009-12-25 09:00 371248 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100118.039\EECTRL.SYS
2010-01-19 12:48 . 2009-12-25 09:00 2747440 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100118.039\CCERASER.DLL
2010-01-19 12:48 . 2009-12-25 09:00 259440 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100118.039\ECMSVR32.DLL
2010-01-19 12:48 . 2009-12-25 09:00 102448 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100118.039\ERASER.SYS
2010-01-18 02:43 . 2009-10-28 22:37 343088 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100116.002\IDSvix86.sys
2010-01-18 02:43 . 2009-10-28 22:37 329592 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100116.002\IDSXpx86.sys
2010-01-18 02:43 . 2009-10-28 22:37 811896 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100116.002\Scxpx86.dll
2010-01-18 02:43 . 2009-10-28 22:37 488312 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100116.002\IDSxpx86.dll
2010-01-18 02:43 . 2009-10-28 22:37 466992 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100116.002\IDSviA64.sys
2010-01-16 16:15 . 2010-01-16 16:15 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Local Settings\Application Data\Threat Expert
2010-01-16 16:09 . 2010-01-19 23:38 -------- d-----w- c:\program files\Common Files\PC Tools
2010-01-16 15:43 . 2010-01-16 15:43 -------- d-----w- c:\program files\TrendMicro
2010-01-15 02:06 . 2010-01-15 02:06 -------- d-----r- c:\program files\Norton Support
2010-01-15 00:14 . 2010-01-15 00:14 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2010-01-15 00:13 . 2010-01-19 23:34 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Application Data\SUPERAntiSpyware.com
2010-01-15 00:13 . 2010-01-19 23:34 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-01-14 23:43 . 2009-10-28 22:37 811896 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100112.001\Scxpx86.dll
2010-01-14 23:43 . 2009-10-28 22:37 343088 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100112.001\IDSvix86.sys
2010-01-14 23:43 . 2009-10-28 22:37 329592 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100112.001\IDSXpx86.sys
2010-01-14 23:43 . 2009-10-28 22:37 488312 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100112.001\IDSxpx86.dll
2010-01-14 23:43 . 2009-10-28 22:37 466992 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100112.001\IDSviA64.sys
2010-01-14 02:45 . 2010-01-14 02:45 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Application Data\Malwarebytes
2010-01-14 02:45 . 2010-01-07 21:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-14 02:45 . 2010-01-14 02:45 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-01-14 02:45 . 2010-01-18 02:36 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-14 02:45 . 2010-01-07 21:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-13 23:21 . 2010-01-13 23:21 -------- d-sh--w- c:\windows\system32\config\systemprofile\PrivacIE
2010-01-11 13:33 . 2010-01-11 13:33 -------- d-sh--w- c:\documents and settings\Jeffsmitheverybody\IECompatCache
2010-01-05 21:10 . 2010-01-05 21:10 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Local Settings\Application Data\PCHealth
2010-01-05 00:18 . 2010-01-05 00:18 -------- d-----w- c:\program files\Reference Assemblies
2010-01-05 00:18 . 2010-01-05 00:18 -------- d-----w- c:\program files\MSBuild
2009-12-30 13:16 . 2008-07-06 12:06 89088 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\filterpipelineprintproc.dll
2009-12-30 13:15 . 2008-07-06 12:06 89088 -c----w- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2009-12-30 13:15 . 2008-07-06 12:06 117760 ------w- c:\windows\system32\prntvpt.dll
2009-12-30 13:15 . 2008-07-06 10:50 597504 -c----w- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2009-12-30 13:15 . 2008-07-06 10:50 597504 ------w- c:\windows\system32\Spool\prtprocs\w32x86\printfilterpipelinesvc.exe
2009-12-30 13:15 . 2008-07-06 12:06 575488 -c----w- c:\windows\system32\dllcache\xpsshhdr.dll
2009-12-30 13:15 . 2008-07-06 12:06 575488 ------w- c:\windows\system32\xpsshhdr.dll
2009-12-30 13:15 . 2008-07-06 12:06 1676288 -c----w- c:\windows\system32\dllcache\xpssvcs.dll
2009-12-30 13:15 . 2008-07-06 12:06 1676288 ------w- c:\windows\system32\xpssvcs.dll
2009-12-30 13:15 . 2009-12-30 13:16 -------- d-----w- C:\933d620ada7d3b785e1c9a8a
2009-12-30 13:06 . 2009-12-30 13:06 -------- d-----w- C:\40304b73333cdf0419
2009-12-30 13:06 . 2009-12-30 13:06 -------- d-----w- C:\8d3811b61d1b7dfb262c14681261
2009-12-30 02:13 . 2001-08-17 18:48 12160 -c--a-w- c:\windows\system32\dllcache\mouhid.sys
2009-12-30 02:13 . 2001-08-17 18:48 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys
2009-12-30 02:13 . 2008-04-14 12:00 10368 -c--a-w- c:\windows\system32\dllcache\hidusb.sys
2009-12-30 02:13 . 2008-04-14 12:00 10368 ----a-w- c:\windows\system32\drivers\hidusb.sys
2009-12-28 23:48 . 2009-12-28 23:48 -------- d-----w- c:\documents and settings\All Users\Application Data\McAfee
2009-12-28 12:53 . 2009-12-28 12:53 -------- d-sh--w- c:\documents and settings\NetworkService\IETldCache
2009-12-28 08:19 . 2008-04-14 12:00 221184 ----a-w- c:\windows\system32\wmpns.dll
2009-12-28 08:05 . 2009-12-28 08:31 -------- d-----w- c:\windows\ie8updates
2009-12-28 03:05 . 2009-12-28 03:05 -------- d-----w- c:\windows\system32\LogFiles
2009-12-27 21:39 . 2009-12-28 03:05 664 ----a-w- c:\windows\system32\d3d9caps.dat
2009-12-27 19:18 . 2009-12-27 19:18 54436 ---ha-w- c:\windows\system32\mlfcache.dat
2009-12-27 12:47 . 2009-10-29 07:45 594432 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2009-12-27 12:47 . 2009-10-29 07:45 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2009-12-27 12:47 . 2009-10-29 07:45 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2009-12-27 12:47 . 2009-10-29 07:45 246272 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2009-12-27 12:47 . 2009-10-29 07:45 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2009-12-27 12:47 . 2009-10-29 07:45 11069952 -c----w- c:\windows\system32\dllcache\ieframe.dll
2009-12-27 11:08 . 2008-05-03 11:55 2560 ------w- c:\windows\system32\xpsp4res.dll
2009-12-27 03:56 . 2009-12-27 04:00 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Local Settings\Application Data\Temp
2009-12-27 03:54 . 2009-12-27 03:56 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Local Settings\Application Data\Deployment
2009-12-27 02:37 . 2009-12-27 02:37 -------- d-----w- c:\documents and settings\All Users\Application Data\AVS4YOU
2009-12-27 02:36 . 2009-12-27 02:36 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Application Data\AVS4YOU
2009-12-27 02:34 . 2009-12-27 02:40 -------- d-----w- c:\program files\Common Files\AVSMedia
2009-12-27 02:34 . 2003-05-22 05:50 1700352 ----a-w- c:\windows\system32\GdiPlus.dll
2009-12-27 02:34 . 2003-05-21 17:50 24576 ----a-w- c:\windows\system32\msxml3a.dll
2009-12-27 02:34 . 2009-12-27 02:41 -------- d-----w- c:\program files\AVS4YOU
2009-12-27 01:56 . 2009-12-27 01:59 -------- d-----w- c:\program files\FLAC
2009-12-27 01:51 . 2010-01-19 23:33 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-12-27 00:58 . 2009-12-27 00:58 -------- d-----w- c:\program files\Michael K. Weise
2009-12-27 00:58 . 2000-01-11 21:46 528384 ------w- c:\windows\system32\BladeEnc.dll
2009-12-27 00:58 . 1997-07-15 15:30 120832 ------w- c:\windows\system32\ShnDll32.dll
2009-12-27 00:56 . 1997-08-26 17:06 315904 ----a-w- c:\windows\IsUninst.exe
2009-12-27 00:56 . 2009-12-27 00:56 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\WINDOWS
2009-12-26 18:45 . 2009-12-26 18:45 -------- d-----w- c:\documents and settings\All Users\Application Data\McAfee Security Scan
2009-12-26 18:45 . 2009-12-26 18:45 -------- d-----w- c:\program files\McAfee Security Scan
2009-12-26 18:45 . 2009-12-26 18:45 1956528 ----a-w- c:\documents and settings\All Users\Application Data\NOS\Adobe_Downloads\install_flash_player_ax.exe
2009-12-26 18:45 . 2009-12-27 17:04 -------- d-----w- c:\documents and settings\All Users\Application Data\NOS
2009-12-26 18:42 . 2009-12-26 18:42 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Application Data\Participatory Culture Foundation
2009-12-26 18:30 . 2009-12-27 17:17 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Local Settings\Application Data\Adobe
2009-12-26 18:22 . 2010-01-19 23:36 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Application Data\BitTorrent
2009-12-26 18:22 . 2009-12-26 18:22 -------- d-----w- c:\program files\BitTorrent
2009-12-26 18:09 . 2009-12-26 18:09 -------- d-----w- c:\windows\Sun
2009-12-26 18:08 . 2009-12-26 18:08 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-12-26 18:08 . 2009-12-26 18:08 -------- d-----w- c:\program files\Java
2009-12-26 18:07 . 2009-12-26 18:07 152576 ----a-w- c:\documents and settings\Jeffsmitheverybody\Application Data\Sun\Java\jre1.6.0_17\lzma.dll
2009-12-26 18:06 . 2009-12-26 18:06 79488 ----a-w- c:\documents and settings\Jeffsmitheverybody\Application Data\Sun\Java\jre1.6.0_17\gtapi.dll
2009-12-26 14:15 . 2009-10-28 22:37 811896 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20091217.002\Scxpx86.dll
2009-12-26 14:15 . 2009-10-28 22:37 343088 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20091217.002\IDSvix86.sys
2009-12-26 14:15 . 2009-10-28 22:37 329592 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20091217.002\IDSXpx86.sys
2009-12-26 14:15 . 2009-10-28 22:37 488312 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20091217.002\IDSxpx86.dll
2009-12-26 14:15 . 2009-10-28 22:37 466992 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20091217.002\IDSviA64.sys
2009-12-26 13:30 . 2009-12-27 02:17 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Application Data\Apple Computer
2009-12-26 13:29 . 2009-05-18 19:17 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2009-12-26 13:25 . 2009-12-27 19:18 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Local Settings\Application Data\Apple Computer
2009-12-26 13:14 . 2008-04-14 10:42 159232 ----a-w- c:\windows\system32\ptpusd.dll
2009-12-26 13:14 . 2001-08-18 03:36 5632 ----a-w- c:\windows\system32\ptpusb.dll
2009-12-26 13:14 . 2008-04-14 05:15 15104 -c--a-w- c:\windows\system32\dllcache\usbscan.sys
2009-12-26 13:14 . 2008-04-14 05:15 15104 ----a-w- c:\windows\system32\drivers\usbscan.sys
2009-12-26 13:09 . 2009-08-22 07:21 36400 ----a-r- c:\windows\system32\drivers\SymIM.sys
2009-12-26 13:09 . 2009-12-26 15:55 60808 ----a-w- c:\windows\system32\S32EVNT1.DLL
2009-12-26 13:09 . 2009-12-26 15:55 124976 ----a-w- c:\windows\system32\drivers\SYMEVENT.SYS
2009-12-26 13:09 . 2010-01-15 02:08 -------- d-----w- c:\program files\Symantec
2009-12-26 13:09 . 2009-12-26 14:11 -------- d-----w- c:\program files\Common Files\Symantec Shared
2009-12-26 05:38 . 2009-12-26 05:38 -------- d--h--w- c:\windows\PIF
2009-12-26 05:35 . 2009-08-07 00:23 215920 ----a-w- c:\windows\system32\muweb.dll
2009-12-26 05:35 . 2009-08-07 00:23 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-12-26 05:22 . 2010-01-06 23:16 -------- d-----w- C:\cet-jeff-backup
2009-12-26 05:16 . 2009-12-26 05:16 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2009-12-26 05:15 . 2009-12-26 05:16 -------- d-----w- c:\program files\Microsoft Expression
2009-12-26 05:12 . 2009-12-26 05:13 -------- d-----w- C:\expression web
2009-12-26 04:46 . 2010-01-20 00:44 -------- d-----w- c:\documents and settings\Jeffsmitheverybody\Tracing
2009-12-26 04:42 . 2009-12-26 04:42 -------- d-sh--w- c:\documents and settings\Jeffsmitheverybody\PrivacIE
2009-12-26 04:18 . 2009-07-27 19:26 -------- d-----w- c:\windows\system32\config\systemprofile\Application Data\InstallShield
2009-12-26 04:18 . 2009-07-27 19:40 -------- d-sh--w- c:\documents and settings\Default User\IETldCache

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-19 23:38 . 2009-07-27 19:49 -------- d-----w- c:\program files\Microsoft Silverlight
2010-01-19 02:25 . 2009-12-26 04:19 60664 ----a-w- c:\documents and settings\Jeffsmitheverybody\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2010-01-18 05:17 . 2009-07-27 18:32 312344 ----a-w- c:\windows\system32\drivers\iaStor.sys
2009-12-29 09:24 . 2009-07-27 17:44 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-12-29 08:11 . 2009-07-27 19:41 -------- d-----w- c:\documents and settings\All Users\Application Data\Microsoft Help
2009-12-27 01:25 . 2009-12-27 01:25 0 ----a-w- c:\documents and settings\Jeffsmitheverybody\Application Data\wklnhst.dat
2009-12-26 16:04 . 2009-07-27 19:59 -------- d-----w- c:\documents and settings\All Users\Application Data\Symantec
2009-12-26 15:55 . 2009-12-26 13:09 806 ----a-w- c:\windows\system32\drivers\SYMEVENT.INF
2009-12-26 15:55 . 2009-12-26 13:09 7456 ----a-w- c:\windows\system32\drivers\SYMEVENT.CAT
2009-12-26 13:34 . 2009-12-26 13:29 -------- d-----w- c:\program files\iTunes
2009-12-26 13:30 . 2009-12-26 13:26 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple
2009-12-26 13:29 . 2009-12-26 13:29 -------- d-----w- c:\documents and settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-12-26 13:29 . 2009-12-26 13:29 -------- d-----w- c:\program files\iPod
2009-12-26 13:29 . 2009-12-26 13:26 -------- d-----w- c:\program files\Common Files\Apple
2009-12-26 13:29 . 2009-12-26 13:27 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple Computer
2009-12-26 13:28 . 2009-12-26 13:28 -------- d-----w- c:\program files\Bonjour
2009-12-26 13:28 . 2009-12-26 13:27 -------- d-----w- c:\program files\QuickTime
2009-12-26 13:27 . 2009-12-26 13:27 -------- d-----w- c:\program files\Apple Software Update
2009-12-26 13:09 . 2009-07-27 19:59 -------- d-----w- c:\documents and settings\All Users\Application Data\Norton
2009-12-26 04:19 . 2009-07-27 19:37 -------- d-----w- c:\program files\Google
2009-12-04 15:03 . 2009-12-04 15:03 251376 ----a-w- c:\documents and settings\Jeffsmitheverybody\Application Data\Mozilla\plugins\npgoogletalk.dll
2009-11-21 15:51 . 2009-07-27 18:24 471552 ----a-w- c:\windows\AppPatch\aclayers.dll
2009-11-16 20:50 . 2009-11-16 20:50 6872159 ----a-w- c:\documents and settings\Jeffsmitheverybody\Application Data\Iyaz - Replay.zip
2009-11-12 22:07 . 2009-11-12 22:07 79144 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.0.2.25\SetupAdmin.exe
2009-11-04 15:30 . 2009-11-04 15:30 16384 ----a-w- c:\documents and settings\Jeffsmitheverybody\Application Data\blank.exe
2009-11-04 15:30 . 2009-11-04 15:30 16384 ----a-w- c:\documents and settings\Jeffsmitheverybody\Application Data\blank.exe
2009-10-29 07:45 . 2009-07-27 18:25 916480 ----a-w- c:\windows\system32\wininet.dll
2009-10-28 22:37 . 2009-10-28 22:37 343088 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\BinHub\IDSvix86.sys
2009-10-28 22:37 . 2009-10-28 22:37 329592 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\BinHub\IDSXpx86.sys
2009-10-28 22:37 . 2009-10-28 22:37 811896 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\BinHub\Scxpx86.dll
2009-10-28 22:37 . 2009-10-28 22:37 488312 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\BinHub\IDSxpx86.dll
2009-10-28 22:37 . 2009-10-28 22:37 466992 ----a-w- c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\BinHub\IDSviA64.sys
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-12-26 39408]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-02-07 3885408]
"Google Update"="c:\documents and settings\Jeffsmitheverybody\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [2009-12-27 135664]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"M3000Mnt"="M3000Rmv.dll " [X]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2008-04-16 178712]
"LManager"="c:\progra~1\LAUNCH~1\LManager.exe" [2009-02-12 862728]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-02-28 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-02-28 166424]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-02-28 137752]
"RTHDCPL"="RTHDCPL.EXE" [2009-02-24 17529856]
"AzMixerSel"="c:\program files\Realtek\Audio\Drivers\AzMixerSel.exe" [2006-07-17 53248]
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2009-07-27 24064]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2008-04-14 208952]
"MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2008-04-14 59392]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2008-04-14 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2008-04-14 455168]
"Camera Assistant Software"="c:\program files\Video Web Camera\traybar.exe" [2009-08-04 630784]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-02-06 1430824]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2009-11-11 417792]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-11-12 141600]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-26 149280]

c:\documents and settings\Jeffsmitheverybody\Start Menu\Programs\Startup\
OneNote 2007 Screen Clipper and Launcher.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2008-10-25 98696]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
McAfee Security Scan.lnk - c:\program files\McAfee Security Scan\1.0.150\SSScheduler.exe [2009-7-27 199184]

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoSetActiveDesktop"= 1 (0x1)
"NoActiveDesktopChanges"= 1 (0x1)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SymEFA.sys]
@="FSFilter Activity Monitor"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"gusvc"=3 (0x3)
"GoogleDesktopManager-080708-050100"=3 (0x3)
"GameConsoleService"=3 (0x3)
"Bonjour Service"=2 (0x2)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Documents and Settings\\Jeffsmitheverybody\\Local Settings\\Application Data\\Google\\Google Talk Plugin\\googletalkplugin.dll"=
"c:\\Documents and Settings\\Jeffsmitheverybody\\Local Settings\\Application Data\\Google\\Google Talk Plugin\\googletalkplugin.exe"=

R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NIS\1007020.00B\SymEFA.sys [12/26/2009 10:54 AM 310320]
R1 BHDrvx86;Symantec Heuristics Driver;c:\windows\system32\drivers\NIS\1007020.00B\BHDrvx86.sys [12/26/2009 10:54 AM 259632]
R1 ccHP;Symantec Hash Provider;c:\windows\system32\drivers\NIS\1007020.00B\cchpx86.sys [12/26/2009 10:54 AM 482432]
R1 IDSxpx86;IDSxpx86;c:\documents and settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100116.002\IDSXpx86.sys [1/17/2010 9:43 PM 329592]
R2 Norton Internet Security;Norton Internet Security;c:\program files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe [12/26/2009 10:54 AM 117640]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [1/13/2010 9:17 AM 102448]
R3 L1c;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller;c:\windows\system32\drivers\l1c51x86.sys [7/27/2009 1:25 PM 38912]
R3 M3000Srv;WebCam Driver;c:\windows\system32\drivers\M3000KNT.sys [9/19/2009 4:36 PM 145152]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [7/27/2009 2:34 PM 1684736]
S3 EraserUtilDrvI9;EraserUtilDrvI9;\??\c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilDrvI9.sys --> c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilDrvI9.sys [?]
S3 RSUSBSTOR;RTS5121.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RTS5121.sys --> c:\windows\system32\Drivers\RTS5121.sys [?]
S3 Rts516xIR;Realtek IR Driver;c:\windows\system32\DRIVERS\Rts516xIR.sys --> c:\windows\system32\DRIVERS\Rts516xIR.sys [?]
S4 GoogleDesktopManager-080708-050100;Google Desktop Manager 5.7.808.7150;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [7/27/2009 2:37 PM 24064]
.
Contents of the 'Scheduled Tasks' folder

2009-12-26 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]

2010-01-19 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-638971174-2027339946-1710738407-1006Core.job
- c:\documents and settings\Jeffsmitheverybody\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-12-27 03:56]

2010-01-20 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-638971174-2027339946-1710738407-1006UA.job
- c:\documents and settings\Jeffsmitheverybody\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-12-27 03:56]
.
.
------- Supplementary Scan -------
.
uStart Page = [You must be registered and logged in to see this link.]
mStart Page = [You must be registered and logged in to see this link.]
uInternet Connection Wizard,ShellNext = "c:\program files\Outlook Express\msimn.exe"
uInternet Settings,ProxyOverride = *.local
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, [You must be registered and logged in to see this link.]
Rootkit scan 2010-01-19 19:44
Windows 5.1.2600 Service Pack 3 NTFS

scanning hȋdden processes ...

scanning hȋdden autostart entries ...

scanning hȋdden files ...

scan completed successfully
hȋdden files: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Norton Internet Security]
"ImagePath"="\"c:\program files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe\" /s \"Norton Internet Security\" /m \"c:\program files\Norton Internet Security\Engine\16.7.2.11\diMaster.dll\" /prefetch:1"
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'explorer.exe'(2924)
c:\windows\system32\WININET.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\windows\system32\wdfmgr.exe
c:\windows\system32\wscntfy.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\igfxsrvc.exe
c:\windows\WebCam\M3000\M3000Mnt.exe
c:\windows\system32\igfxext.exe
c:\program files\iPod\bin\iPodService.exe
.
**************************************************************************
.
Completion time: 2010-01-19 19:47:56 - machine was rebooted
ComboFix-quarantined-files.txt 2010-01-20 00:47

Pre-Run: 65,805,266,944 bytes free
Post-Run: 66,393,776,128 bytes free

WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect

- - End Of File - - 72A1168CE996473759947467D43AE3B4

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Wed Jan 20, 2010 1:03 am

BTW: my norton AV still will not fix itself from the quickscan

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by Belahzur on Wed Jan 20, 2010 1:31 am

Submit a file for analysis.

  1. Please visit this website: [You must be registered and logged in to see this link.]
  2. Press the "Browse" button and locate the following file in bold:
    c:\documents and settings\Jeffsmitheverybody\Application Data\blank.exe
  3. Press the "Submit File button to submit the file for analysis.
  4. Allow it to be scanned, it could take a few minutes depending on server load.
  5. Copy and paste the result back here.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Wed Jan 20, 2010 1:47 am

[You must be registered and logged in to see this link.] wrote:Submit a file for analysis.

  1. Please visit this website: [You must be registered and logged in to see this link.]
  2. Press the "Browse" button and locate the following file in bold:
    c:\documents and settings\Jeffsmitheverybody\Application Data\blank.exe
  3. Press the "Submit File button to submit the file for analysis.
  4. Allow it to be scanned, it could take a few minutes depending on server load.
  5. Copy and paste the result back here.

I cannot find the folder "application data" is it a hȋdden folder? the only folders that I have in jeffsmitheverybody is desktop, favorites, my documents, start menu, tracing, and windows

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Wed Jan 20, 2010 1:54 am

I saw that it was hȋdden. I took it out of the hȋdden attribute and ran the scan


1 out of 20 reported the file as adware.bargainbuddy. The scanner that reported this was dr.web

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by Belahzur on Wed Jan 20, 2010 9:12 pm

Hello.
Yes, it's a hȋdden folder.

Please download the [You must be registered and logged in to see this link.].

  • Save it to your desktop.
  • Please double-click OTM.exe to run it.
  • Copy the bolded text below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose CopyCrying


    :files
    c:\documents and settings\Jeffsmitheverybody\Application Data\blank.exe


  • Return to OTMoveIt, right click in the "Paste instructions for items to be Moved" window (under the light blue bar) and choose Paste.
  • Click the red Moveit! button.
  • Copy everything in the Results window (under the green bar) to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it in your next reply.
  • Close OTMoveIt
If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes.

Please post the OTMoveIt log.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Wed Jan 20, 2010 9:23 pm

I already deleted the file from my computer. When it said that it was malware, I manually removed it by doing +shift delete. Is there a way to bring it back to do this removal?

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by Belahzur on Wed Jan 20, 2010 9:25 pm

No, doesn't matter if you removed it, just posted that in case you hadn't.

Click Start > Run and copy/paste the following bolded text into the Run box and click OK:

ComboFix /uninstall

This will also reset your restore points.

How is the machine running now?


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Wed Jan 20, 2010 9:47 pm

[You must be registered and logged in to see this link.] wrote:No, doesn't matter if you removed it, just posted that in case you hadn't.

Click Start > Run and copy/paste the following bolded text into the Run box and click OK:

ComboFix /uninstall

This will also reset your restore points.

How is the machine running now?

I am no longer getting the poppups...


However, my norton AV system seems to be malfunctioning. It cannot fix itself upon quick scan. Do you have any suggestions on how to fix this problem?

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by Belahzur on Wed Jan 20, 2010 11:52 pm

Uninstall Norton, then re-install it.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Thu Jan 21, 2010 1:18 am

I was using the norton that came with my netbook. Therefore to unistall I lost the current version. Do you have a recommendation on what type of antivirus I should install?

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by Belahzur on Thu Jan 21, 2010 1:23 am

Yep, once Norton is uninstall, you can install Avira. Much lighter on the system and uses less resources.

1) [You must be registered and logged in to see this link.]
-Free anti-virus software for Windows.
-Detects and removes more than 50,000 viruses. Free support.

It is strongly recommended that you run only one antivirus program at a time. Having more than one antivirus program active in memory uses additional resources and can result in program conflicts and false virus alerts.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Thu Jan 21, 2010 1:27 am

[You must be registered and logged in to see this link.] wrote:Yep, once Norton is uninstall, you can install Avira. Much lighter on the system and uses less resources.

1) [You must be registered and logged in to see this link.]
-Free anti-virus software for Windows.
-Detects and removes more than 50,000 viruses. Free support.

It is strongly recommended that you run only one antivirus program at a time. Having more than one antivirus program active in memory uses additional resources and can result in program conflicts and false virus alerts.

thank you for all your help... do you recommend malwarebytes or do you prefer something else? and does it automatically scan or do I have to do it each day?

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by Origin on Thu Jan 21, 2010 4:52 am

Hello, I recommend you stick with Malwarebytes, no it doesn't scan automatically, you have to open up the program and select scan.


While my help is always free, please consider donating to keep this site alive: [You must be registered and logged in to see this link.]

[You must be registered and logged in to see this link.]

Origin
Master
Master

Posts Posts : 2685
Joined Joined : 2009-05-05
Gender Gender : Male
OS OS : Windows Xp Sp3
Points Points : 31483
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by jsmitheverybody on Sun Jan 24, 2010 8:27 pm

this is solved... but I do not know how to mark it as solved

jsmitheverybody
Novice
Novice

Posts Posts : 20
Joined Joined : 2010-01-14
OS OS : windows XP
Points Points : 25471
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: mywebsite.com keeps loading on my IE

Post by Belahzur on Sun Jan 24, 2010 11:45 pm

Marked as solved for you.

We need to make a new restore point.

To turn off System Restore, follow these steps:
1. Click Start, right-click My Computer, and then click Properties.
2. Click the System Restore tab.
3. Click the Turn off System Restore check box (or the Turn off System Restore on all drives check box), and then click OK.
4. Click Yes when you receive the prompt to the turn off System Restore.

Now we need to make a new restore point.
To turn on System Restore, follow these steps:
1. Click Start, right-click My Computer, and then click Properties.
2. Click the System Restore tab.
3. Click the Turn off System Restore check box (To turn on System Restore), and then click OK.

Below I have included a number of recommendations for how to protect your computer in order to prevent future malware infections. Please take these recommendations seriously; these few simple steps can stave off the vast majority of spyware problems. As happy as we are to help you, for your sake we would rather not have repeat customers. Goofy

1) Please navigate to [You must be registered and logged in to see this link.] and download all the "critical updates" for Windows. This can patch many of the security holes through which attackers can gain access to your computer.

Please either enable Automatic Updates under Start -> Control Panel -> Automatic Updates , or get into the habit of checking for Windows updates regularly. I cannot stress enough how important this is.

2) In order to protect yourself against spyware, you should consider installing and running the following free programs:

[You must be registered and logged in to see this link.]
A tutorial on using Ad-Aware to remove spyware from your computer may be found [You must be registered and logged in to see this link.].

[You must be registered and logged in to see this link.]
A tutorial on using Spybot to remove spyware from your computer may be found [You must be registered and logged in to see this link.]. Please also remember to enable Spybot's "Immunize" and "TeaTimer" features.

[You must be registered and logged in to see this link.]
A tutorial on using SpywareBlaster to prevent spyware from ever installing on your computer may be found [You must be registered and logged in to see this link.].

[You must be registered and logged in to see this link.]
A tutorial on using SpywareGuard for realtime protection against spyware and hijackers may be found [You must be registered and logged in to see this link.].

Make sure to keep these programs up-to-date and to run them regularly, as this can prevent a great deal of spyware hassle.

3) Please consider using an alternate browser. Mozilla's Firefox browser is fantastic; it is much more secure than Internet Explorer, immune to almost all known browser hijackers, and also has the best built-in popup blocker (as an added benefit!) that I have ever seen. If you are interested, Firefox may be downloaded from here:
[You must be registered and logged in to see this link.]
I also recommand the following add-ons for Firefox, they will help keep you safe from malicious scripts or activeX exploits.
[You must be registered and logged in to see this link.]
[You must be registered and logged in to see this link.]
[You must be registered and logged in to see this link.]

4) Also make sure to run your antivirus software regularly, and to keep it up-to-date.

To help you keep your software updated, please considering using this free software program that will check for program updates.
[You must be registered and logged in to see this link.]

5) Finally, consider maintaining a firewall. Some good free firewalls are [You must be registered and logged in to see this link.], or
[You must be registered and logged in to see this link.]
A tutorial on understanding and using firewalls may be found [You must be registered and logged in to see this link.].

Please also read Tony Klein's excellent article: [You must be registered and logged in to see this link.]

If you would take a moment to fill out our feedback form, we would appreciate it.
The link can be found [You must be registered and logged in to see this link.].

Hopefully this should take care of your problems! Good luck. Big Grin


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

View previous topic View next topic Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum