OTL logfile created on: 5/16/2012 7:37:25 PM - Run 1
OTL by OldTimer - Version 3.2.43.0 Folder = C:\Documents and Settings\Taylor\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

958.42 Mb Total Physical Memory | 342.26 Mb Available Physical Memory | 35.71% Memory free
1.51 Gb Paging File | 0.87 Gb Available in Paging File | 57.55% Paging File free
Paging file location(s): C:\pagefile.sys 672 1344 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149.04 Gb Total Space | 124.04 Gb Free Space | 83.23% Space Free | Partition Type: NTFS

Computer Name: CUSTOMER-0F6713 | User Name: Taylor | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/05/16 19:33:17 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Taylor\Desktop\OTL.exe
PRC - [2012/05/01 11:48:04 | 003,905,920 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
PRC - [2011/08/11 18:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SASCore.exe
PRC - [2009/11/09 00:18:00 | 000,065,216 | ---- | M] (WordWeb Software) -- C:\Program Files\WordWeb\wweb32.exe
PRC - [2009/10/16 19:39:32 | 000,136,544 | ---- | M] (Seagate) -- C:\Program Files\Common Files\Seagate\Schedule2\schedhlp.exe
PRC - [2009/10/16 19:39:28 | 000,431,456 | ---- | M] (Seagate) -- C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe
PRC - [2009/09/08 17:25:52 | 000,096,334 | ---- | M] (Canon Inc.) -- C:\Program Files\Canon\CAL\CALMAIN.exe
PRC - [2008/04/13 19:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/12/18 21:08:08 | 002,189,240 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe
PRC - [2007/12/18 19:03:10 | 001,643,904 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\Symantec Endpoint Protection\SmcGui.exe
PRC - [2007/12/18 19:03:08 | 002,569,600 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\Symantec Endpoint Protection\Smc.exe
PRC - [2007/11/09 15:15:34 | 000,115,560 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\ccApp.exe
PRC - [2007/11/09 15:15:18 | 000,108,392 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe


========== Modules (No Company Name) ==========

MOD - [2012/05/16 13:12:22 | 000,065,024 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll
MOD - [2012/05/16 13:12:22 | 000,052,736 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll
MOD - [2012/05/15 11:34:39 | 000,117,760 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
MOD - [2012/05/15 11:34:39 | 000,052,224 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
MOD - [2011/07/13 21:06:53 | 000,022,800 | ---- | M] () -- C:\Program Files\WordWeb\WUCNT.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- -- (NMIndexingService)
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - [2012/03/30 09:24:47 | 000,253,600 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2011/08/11 18:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore.exe -- (!SASCORE)
SRV - [2009/10/16 19:39:28 | 000,431,456 | ---- | M] (Seagate) [Auto | Running] -- C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe -- (SgtSch2Svc)
SRV - [2009/09/08 17:25:52 | 000,096,334 | ---- | M] (Canon Inc.) [Auto | Running] -- C:\Program Files\Canon\CAL\CALMAIN.exe -- (CCALib8)
SRV - [2007/12/18 21:08:08 | 002,189,240 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe -- (Symantec AntiVirus)
SRV - [2007/12/18 19:04:36 | 000,234,888 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Symantec\Symantec Endpoint Protection\SNAC.EXE -- (SNAC)
SRV - [2007/12/18 19:03:08 | 002,569,600 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec\Symantec Endpoint Protection\Smc.exe -- (SmcService)
SRV - [2007/11/09 15:15:18 | 000,108,392 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe -- (ccSetMgr)
SRV - [2007/11/09 15:15:18 | 000,108,392 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe -- (ccEvtMgr)
SRV - [2007/08/11 20:05:27 | 003,093,872 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Symantec\LiveUpdate\LuComServer_3_3.EXE -- (LiveUpdate)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | On_Demand | Unknown] -- C:\ComboFix\mbr.sys -- (mbr)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Running] -- C:\DOCUME~1\Taylor\LOCALS~1\Temp\catchme.sys -- (catchme)
DRV - [2012/05/15 03:00:00 | 001,589,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20120516.003\NAVEX15.SYS -- (NAVEX15)
DRV - [2012/05/15 03:00:00 | 000,087,928 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20120516.003\NAVENG.SYS -- (NAVENG)
DRV - [2012/04/16 03:00:00 | 000,374,392 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2012/02/03 04:00:00 | 000,106,104 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2011/07/22 11:27:02 | 000,012,880 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2011/07/12 16:55:22 | 000,067,664 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2011/06/22 19:05:28 | 000,167,936 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\WpsHelper.sys -- (WpsHelper)
DRV - [2011/02/23 17:04:32 | 000,013,496 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\SmartDefragDriver.sys -- (SmartDefragDriver)
DRV - [2010/12/05 12:52:13 | 000,441,760 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\timntr.sys -- (timounter)
DRV - [2010/12/05 12:52:13 | 000,044,384 | ---- | M] (Acronis) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\tifsfilt.sys -- (tifsfilter)
DRV - [2010/12/05 12:52:09 | 000,132,224 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\snapman.sys -- (snapman)
DRV - [2010/12/05 12:52:06 | 000,368,480 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\tdrpman.sys -- (tdrpman)
DRV - [2010/04/26 21:25:20 | 000,132,424 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sscdmdm.sys -- (sscdmdm)
DRV - [2010/04/26 21:25:20 | 000,110,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sscdserd.sys -- (sscdserd) SAMSUNG Mobile Modem Diagnostic Serial Port (WDM)
DRV - [2010/04/26 21:25:20 | 000,104,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sscdbus.sys -- (sscdbus) SAMSUNG USB Composite Device driver (WDM)
DRV - [2010/04/26 21:25:20 | 000,014,920 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sscdmdfl.sys -- (sscdmdfl)
DRV - [2009/08/24 13:41:31 | 000,136,496 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SYMEVENT.SYS -- (SymEvent)
DRV - [2008/08/01 18:36:26 | 000,022,016 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2008/08/01 18:36:20 | 000,054,784 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2008/07/30 17:42:12 | 000,023,888 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\COH_Mon.sys -- (COH_Mon)
DRV - [2008/03/06 11:51:14 | 000,003,840 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\BANTExt.sys -- (BANTExt)
DRV - [2007/12/18 19:06:14 | 000,091,008 | ---- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\SysPlant.sys -- (SysPlant)
DRV - [2007/12/18 19:04:16 | 000,040,832 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\WPSDRVnt.sys -- (WPS)
DRV - [2007/11/30 23:57:12 | 000,317,616 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\srtspl.sys -- (SRTSPL)
DRV - [2007/11/30 23:57:12 | 000,279,088 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\srtsp.sys -- (SRTSP)
DRV - [2007/11/30 23:57:12 | 000,043,696 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\srtspx.sys -- (SRTSPX)
DRV - [2007/08/06 15:29:28 | 000,049,024 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\teefer2.sys -- (Teefer2)
DRV - [2007/07/31 02:17:26 | 000,418,864 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys -- (SPBBCDrv)
DRV - [2007/07/09 20:56:00 | 004,449,280 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2007/01/09 16:46:26 | 000,191,544 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\symtdi.sys -- (SYMTDI)
DRV - [2007/01/09 16:46:26 | 000,027,576 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\symredrv.sys -- (SYMREDRV)
DRV - [2004/02/09 12:06:22 | 000,015,360 | ---- | M] (Motorola Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\NetMotCM.sys -- (ndiscm)
DRV - [2001/08/17 12:11:18 | 000,020,160 | ---- | M] (ADMtek Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ADM8511.SYS -- (ADM8511)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1547161642-308236825-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.foxnews.com/
IE - HKU\S-1-5-21-1547161642-308236825-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKU\S-1-5-21-1547161642-308236825-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = E2 02 75 CA 9A D0 CB 01 [binary data]
IE - HKU\S-1-5-21-1547161642-308236825-682003330-1003\..\SearchScopes,DefaultScope = {EC5AA4DE-3B08-4D1C-B9F0-CD469F585843}
IE - HKU\S-1-5-21-1547161642-308236825-682003330-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC
IE - HKU\S-1-5-21-1547161642-308236825-682003330-1003\..\SearchScopes\{5AA2BA46-9913-4DC7-9620-69AB0FA17AE7}: "URL" = http://search.alot.com/web?q={searchTerms}&pr=prov&client_id=7A80F0F001CA2D9801FAEA91&install_time=04-09-2009:14:47&src_id=20001&camp_id=848&tb_version=2.5.2.452
IE - HKU\S-1-5-21-1547161642-308236825-682003330-1003\..\SearchScopes\{63140ECF-C629-BE59-8F0E-90B4FF340C03}: "URL" = http://www.bing.com/search?q={searchTerms}&pc=Z128&form=ZGAIDF&install_date=20110917&iesrc={referrer:source}
IE - HKU\S-1-5-21-1547161642-308236825-682003330-1003\..\SearchScopes\{DECA3892-BA8F-44b8-A993-A466AD694AE4}: "URL" = http://search.yahoo.com/search?p={searchTerms}&fr=chr-iobit
IE - HKU\S-1-5-21-1547161642-308236825-682003330-1003\..\SearchScopes\{EC5AA4DE-3B08-4D1C-B9F0-CD469F585843}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}&rlz=1I7ADFA_en
IE - HKU\S-1-5-21-1547161642-308236825-682003330-1003\..\SearchScopes\Yahoo!: "URL" = http://us.search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=iobit-trans
IE - HKU\S-1-5-21-1547161642-308236825-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.foxnews.com/"
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@canon.com/MycameraPlugin: C:\Program Files\Canon\ZoomBrowser EX\Program\NPCIG.dll (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\[email protected]/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\WordWeb\WCaptureMoz [2011/08/17 13:02:42 | 000,000,000 | ---D | M]

[2012/03/11 13:57:29 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Taylor\Application Data\Mozilla\Extensions

O1 HOSTS File: ([2012/05/16 18:47:36 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll File not found
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll File not found
O4 - HKLM..\Run: [ccApp] c:\Program Files\Common Files\Symantec Shared\ccApp.exe (Symantec Corporation)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [Seagate Scheduler2 Service] c:\Program Files\Common Files\Seagate\Schedule2\schedhlp.exe (Seagate)
O4 - HKLM..\Run: [WordWeb] c:\program files\wordweb\wweb32.exe (WordWeb Software)
O4 - HKU\S-1-5-21-1547161642-308236825-682003330-1003..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1547161642-308236825-682003330-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1547161642-308236825-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1547161642-308236825-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKU\S-1-5-21-1547161642-308236825-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1547161642-308236825-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html File not found
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} http://pcpitstop.com/pcpitstop/PCPitStop.CAB (PCPitstop Utility)
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20614.www2.hp.com/ediags/gmd...pdetect118.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/ge...sh/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Value error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 209.18.47.61 209.18.47.62
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3AE3EE0A-627E-43B4-B3CA-05BB6DB70101}: DhcpNameServer = 209.18.47.61 209.18.47.62
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6FC1CB93-DCA2-4F7D-889C-5C8DC0FFE8F4}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E7B79FE8-D699-4477-94D1-0A79648A0CE1}: DhcpNameServer = 209.18.47.61 209.18.47.62
O18 - Protocol\Handler\belarc {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Taylor\Application Data\Microsoft\Internet Explorer\Internet Explorer Wallpaper.bmp
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O30 - LSA: Authentication Packages - (relog_ap) - C:\WINDOWS\System32\relog_ap.dll (Acronis)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/08/24 13:19:54 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

NetSvcs: 6to4 - File not found
NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)

CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1056

========== Files/Folders - Created Within 30 Days ==========

[2012/05/16 19:33:13 | 000,595,456 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Taylor\Desktop\OTL.exe
[2012/05/16 12:54:14 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2012/05/16 12:52:13 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2012/05/16 12:52:13 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2012/05/16 12:52:13 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2012/05/16 12:52:13 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2012/05/16 12:52:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2012/05/16 12:52:01 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/05/16 11:50:02 | 004,495,010 | R--- | C] (Swearware) -- C:\Documents and Settings\Taylor\Desktop\ComboFix.exe
[2012/05/16 10:24:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Favorites
[2012/05/15 18:39:57 | 000,000,000 | ---D | C] -- C:\Program Files\HitmanPro
[2012/05/15 12:45:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\HitmanPro
[2012/05/15 11:33:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Taylor\Application Data\SUPERAntiSpyware.com
[2012/05/15 11:32:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\SUPERAntiSpyware
[2012/05/15 11:32:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2012/05/15 11:32:44 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2012/05/14 07:14:10 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2012/05/14 07:14:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
[2012/05/14 06:35:47 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2012/05/14 06:34:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\SpywareBlaster
[2012/05/14 06:33:09 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012/05/12 13:29:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8(2)
[2012/05/03 15:18:53 | 000,000,000 | ---D | C] -- C:\Program Files\Cisco Systems
[2012/05/03 14:57:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Cisco Systems
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

File not found -- C:\Documents and Settings\Taylor\My Documents\FW_ My Contribution to your amusement today.
[2012/05/16 19:33:17 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Taylor\Desktop\OTL.exe
[2012/05/16 19:25:38 | 000,002,497 | ---- | M] () -- C:\Documents and Settings\Taylor\Desktop\Microsoft Office Word 2003.lnk
[2012/05/16 19:19:17 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2012/05/16 19:13:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012/05/16 18:47:36 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2012/05/16 13:11:56 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/05/16 13:11:15 | 000,200,712 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2012/05/16 13:10:31 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2012/05/16 13:09:53 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/05/16 12:54:18 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2012/05/16 11:50:13 | 004,495,010 | R--- | M] (Swearware) -- C:\Documents and Settings\Taylor\Desktop\ComboFix.exe
[2012/05/15 18:42:11 | 000,001,610 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\HitmanPro.lnk
[2012/05/15 12:53:18 | 000,001,140 | ---- | M] () -- C:\WINDOWS\System32\.crusader
[2012/05/15 11:32:50 | 000,001,678 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2012/05/15 08:53:44 | 003,382,313 | ---- | M] () -- C:\Documents and Settings\Taylor\My Documents\Fw_ WHERE BIRDS SING AT DAWN -- Beautiful!.eml
[2012/05/14 19:50:49 | 000,126,112 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012/05/14 19:40:49 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012/05/14 19:29:39 | 000,490,016 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012/05/14 19:29:39 | 000,091,150 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012/05/14 17:59:19 | 000,000,223 | ---- | M] () -- C:\Documents and Settings\Taylor\Desktop\All My Faves Why Search (2).url
[2012/05/14 08:06:36 | 000,000,754 | ---- | M] () -- C:\Documents and Settings\Taylor\Desktop\SpywareBlaster.lnk
[2012/05/14 08:04:28 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2012/05/13 21:19:56 | 000,000,250 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\LUUnInstall.LiveUpdate
[2012/05/13 19:47:38 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012/05/13 12:37:01 | 000,209,105 | ---- | M] () -- C:\Documents and Settings\Taylor\Local Settings\Application Data\census.cache
[2012/05/13 12:36:28 | 000,200,567 | ---- | M] () -- C:\Documents and Settings\Taylor\Local Settings\Application Data\ars.cache
[2012/05/12 18:00:51 | 000,000,400 | ---- | M] () -- C:\Documents and Settings\Taylor\Desktop\kens5.com.url
[2012/05/07 19:11:41 | 000,002,447 | ---- | M] () -- C:\Documents and Settings\Taylor\Desktop\Microsoft Streets & Trips (2).lnk
[2012/04/24 15:19:19 | 000,001,062 | ---- | M] () -- C:\Documents and Settings\Taylor\Desktop\E-Cards, Animated Greeting Cards and Online Greetings by Jacquie Lawson (2).url
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

File not found -- C:\Documents and Settings\Taylor\My Documents\FW_ My Contribution to your amusement today.
[2012/05/16 12:54:18 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2012/05/16 12:54:15 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2012/05/16 12:52:13 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2012/05/16 12:52:13 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2012/05/16 12:52:13 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2012/05/16 12:52:13 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2012/05/16 12:52:13 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2012/05/15 18:42:11 | 000,001,610 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\HitmanPro.lnk
[2012/05/15 12:53:18 | 000,001,140 | ---- | C] () -- C:\WINDOWS\System32\.crusader
[2012/05/15 11:32:50 | 000,001,678 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2012/05/15 08:53:44 | 003,382,313 | ---- | C] () -- C:\Documents and Settings\Taylor\My Documents\Fw_ WHERE BIRDS SING AT DAWN -- Beautiful!.eml
[2012/05/14 19:33:04 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2012/05/14 08:06:36 | 000,000,754 | ---- | C] () -- C:\Documents and Settings\Taylor\Desktop\SpywareBlaster.lnk
[2012/05/13 21:19:55 | 000,000,250 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\LUUnInstall.LiveUpdate
[2012/05/13 12:37:01 | 000,209,105 | ---- | C] () -- C:\Documents and Settings\Taylor\Local Settings\Application Data\census.cache
[2012/05/13 12:36:28 | 000,200,567 | ---- | C] () -- C:\Documents and Settings\Taylor\Local Settings\Application Data\ars.cache
[2012/05/03 15:19:06 | 000,001,810 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Cisco Connect.lnk
[2012/02/16 07:48:58 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2011/09/07 09:12:16 | 000,103,812 | ---- | C] () -- C:\WINDOWS\hpqins07.dat
[2011/09/06 08:24:48 | 000,144,637 | ---- | C] () -- C:\WINDOWS\hpwins16.dat.temp
[2011/09/06 08:24:48 | 000,001,162 | ---- | C] () -- C:\WINDOWS\hpwmdl16.dat.temp
[2011/05/22 22:23:30 | 000,029,520 | ---- | C] () -- C:\WINDOWS\System32\SmartDefragBootTime.exe
[2011/05/22 22:23:29 | 000,013,496 | ---- | C] () -- C:\WINDOWS\System32\drivers\SmartDefragDriver.sys
[2010/12/12 17:38:17 | 000,000,000 | ---- | C] () -- C:\WINDOWS\hpqEmlSz.INI

========== LOP Check ==========

[2009/08/27 10:02:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Windows Desktop Search
[2012/05/14 08:04:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
[2012/05/03 14:57:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Cisco Systems
[2012/05/15 12:53:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\HitmanPro
[2011/11/26 19:25:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IObit
[2009/11/13 11:33:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LightScribe
[2011/02/06 16:18:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ParetoLogic
[2011/06/19 10:57:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PhotoShow Shared Assets
[2012/03/04 12:47:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Samsung
[2010/12/04 17:06:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Seagate
[2009/11/30 08:14:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Softdisk LLC
[2011/10/26 06:49:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{3C0AACBF-B491-4BE5-BAF9-AA46E0629E42}
[2010/01/10 16:12:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\aignes
[2010/02/09 12:12:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\cronometer
[2011/02/06 15:55:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\DriverCure
[2012/05/13 07:59:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\ElevatedDiagnostics
[2011/11/26 19:38:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\IObit
[2010/07/15 10:28:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\jackdesktopwidget_3177724
[2010/12/05 13:00:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\Leadertech
[2011/02/06 15:55:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\ParetoLogic
[2011/02/24 17:23:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\RegistryKeys
[2011/03/05 09:57:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\Sammsoft
[2011/06/19 10:45:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\Simple Star
[2009/08/25 18:07:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\Windows Search
[2011/08/01 12:47:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Taylor\Application Data\WordWeb

========== Purity Check ==========



========== Custom Scans ==========

< %SYSTEMDRIVE%\*.* >
[2011/09/12 15:56:02 | 000,026,194 | ---- | M] () -- C:\Attached Message Part.JPG
[2009/08/24 13:19:54 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2011/11/17 10:14:02 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2012/05/16 12:54:18 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2004/08/03 23:00:00 | 000,260,272 | RHS- | M] () -- C:\cmldr
[2012/05/16 18:51:06 | 000,012,312 | ---- | M] () -- C:\ComboFix.txt
[2009/08/24 13:19:54 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2011/04/28 16:00:17 | 002,931,855 | ---- | M] () -- C:\Copy of Senior Center volunteers party 003.jpg
[2011/04/28 16:00:18 | 002,722,117 | ---- | M] () -- C:\Copy of Senior Center volunteers party 004.jpg
[2011/04/28 16:00:19 | 002,557,090 | ---- | M] () -- C:\Copy of Senior Center volunteers party 007.jpg
[2011/04/28 16:00:23 | 002,470,653 | ---- | M] () -- C:\Copy of Senior Center volunteers party 014.jpg
[2011/04/28 16:00:24 | 002,464,654 | ---- | M] () -- C:\Copy of Senior Center volunteers party 015.jpg
[2010/01/03 22:13:12 | 002,889,853 | ---- | M] () -- C:\Cub & Judy.JPG
[2009/08/24 13:19:54 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010/01/03 22:15:40 | 004,214,821 | ---- | M] () -- C:\Judy & Cub.JPG
[2011/06/26 10:05:18 | 001,521,849 | ---- | M] () -- C:\June 2011 248.JPG
[2011/06/27 08:17:13 | 001,660,833 | ---- | M] () -- C:\June 2011 255.JPG
[2009/11/12 16:20:06 | 002,045,274 | ---- | M] () -- C:\Lost Maples Nov. 2009 004.jpg
[2009/11/12 16:20:09 | 002,014,420 | ---- | M] () -- C:\Lost Maples Nov. 2009 005.jpg
[2009/11/12 16:20:11 | 001,921,742 | ---- | M] () -- C:\Lost Maples Nov. 2009 006.jpg
[2009/11/12 16:20:14 | 002,176,908 | ---- | M] () -- C:\Lost Maples Nov. 2009 007.jpg
[2009/11/12 16:20:17 | 002,010,176 | ---- | M] () -- C:\Lost Maples Nov. 2009 008.jpg
[2009/11/12 16:20:20 | 001,998,338 | ---- | M] () -- C:\Lost Maples Nov. 2009 009.jpg
[2009/11/12 16:20:23 | 002,006,434 | ---- | M] () -- C:\Lost Maples Nov. 2009 010.jpg
[2009/11/12 16:20:26 | 002,267,888 | ---- | M] () -- C:\Lost Maples Nov. 2009 011.jpg
[2009/11/12 16:20:29 | 002,110,044 | ---- | M] () -- C:\Lost Maples Nov. 2009 012.jpg
[2009/11/12 16:20:32 | 002,144,832 | ---- | M] () -- C:\Lost Maples Nov. 2009 013.jpg
[2009/11/12 16:20:35 | 001,903,252 | ---- | M] () -- C:\Lost Maples Nov. 2009 014.jpg
[2009/11/12 16:20:37 | 001,550,042 | ---- | M] () -- C:\Lost Maples Nov. 2009 015.jpg
[2009/11/12 16:20:40 | 002,122,610 | ---- | M] () -- C:\Lost Maples Nov. 2009 016.jpg
[2009/11/12 16:20:43 | 001,966,134 | ---- | M] () -- C:\Lost Maples Nov. 2009 017.jpg
[2009/11/12 16:20:46 | 002,184,700 | ---- | M] () -- C:\Lost Maples Nov. 2009 018.jpg
[2009/11/12 16:20:49 | 001,871,010 | ---- | M] () -- C:\Lost Maples Nov. 2009 019.jpg
[2009/11/12 16:20:51 | 001,918,216 | ---- | M] () -- C:\Lost Maples Nov. 2009 020.jpg
[2009/11/12 16:20:52 | 000,300,078 | ---- | M] () -- C:\Lost Maples Nov. 2009 021.jpg
[2009/11/12 16:20:54 | 001,785,372 | ---- | M] () -- C:\Lost Maples Nov. 2009 022.jpg
[2009/11/12 16:20:57 | 001,994,032 | ---- | M] () -- C:\Lost Maples Nov. 2009 023.jpg
[2009/11/12 16:21:00 | 001,921,292 | ---- | M] () -- C:\Lost Maples Nov. 2009 024.jpg
[2009/11/12 16:21:02 | 001,817,648 | ---- | M] () -- C:\Lost Maples Nov. 2009 025.jpg
[2009/11/12 16:21:05 | 001,923,354 | ---- | M] () -- C:\Lost Maples Nov. 2009 026.jpg
[2009/11/12 16:21:08 | 002,098,188 | ---- | M] () -- C:\Lost Maples Nov. 2009 027.jpg
[2009/11/12 16:21:11 | 002,067,132 | ---- | M] () -- C:\Lost Maples Nov. 2009 028.jpg
[2009/11/12 16:21:14 | 002,018,584 | ---- | M] () -- C:\Lost Maples Nov. 2009 029.jpg
[2009/11/12 16:21:17 | 002,057,964 | ---- | M] () -- C:\Lost Maples Nov. 2009 030.jpg
[2009/11/12 16:21:20 | 002,221,224 | ---- | M] () -- C:\Lost Maples Nov. 2009 031.jpg
[2009/11/12 16:21:23 | 002,142,832 | ---- | M] () -- C:\Lost Maples Nov. 2009 032.jpg
[2009/11/12 16:21:25 | 001,534,002 | ---- | M] () -- C:\Lost Maples Nov. 2009 033.jpg
[2009/11/12 16:21:28 | 001,798,394 | ---- | M] () -- C:\Lost Maples Nov. 2009 034.jpg
[2009/11/12 16:21:31 | 002,138,134 | ---- | M] () -- C:\Lost Maples Nov. 2009 035.jpg
[2009/11/12 16:21:34 | 002,133,870 | ---- | M] () -- C:\Lost Maples Nov. 2009 036.jpg
[2009/11/12 16:21:37 | 002,203,722 | ---- | M] () -- C:\Lost Maples Nov. 2009 037.jpg
[2009/11/12 16:21:40 | 002,219,506 | ---- | M] () -- C:\Lost Maples Nov. 2009 038.jpg
[2009/11/12 16:21:45 | 002,217,230 | ---- | M] () -- C:\Lost Maples Nov. 2009 040.jpg
[2009/11/12 16:21:51 | 002,173,818 | ---- | M] () -- C:\Lost Maples Nov. 2009 042.jpg
[2009/11/12 16:21:54 | 001,998,850 | ---- | M] () -- C:\Lost Maples Nov. 2009 043.jpg
[2011/06/26 20:05:01 | 004,404,776 | ---- | M] () -- C:\Lucy & George 001.jpg
[2011/06/26 20:05:01 | 003,925,807 | ---- | M] () -- C:\Lucy & George 002.jpg
[2011/06/26 20:05:02 | 003,177,390 | ---- | M] () -- C:\Lucy & George 003.jpg
[2011/06/26 20:05:02 | 002,243,314 | ---- | M] () -- C:\Lucy & George 004.jpg
[2011/06/26 20:05:02 | 003,549,967 | ---- | M] () -- C:\Lucy & George 005.jpg
[2011/06/26 16:55:30 | 000,979,522 | ---- | M] () -- C:\lucy 001.jpg
[2011/06/26 16:55:31 | 001,018,918 | ---- | M] () -- C:\lucy 002.jpg
[2011/06/26 16:55:32 | 001,072,014 | ---- | M] () -- C:\lucy 003.jpg
[2011/04/04 12:33:08 | 005,227,588 | ---- | M] () -- C:\Marble Falls, Apr. 2011 003.jpg
[2011/04/04 12:33:10 | 004,739,657 | ---- | M] () -- C:\Marble Falls, Apr. 2011 006.jpg
[2011/04/04 12:33:11 | 004,813,701 | ---- | M] () -- C:\Marble Falls, Apr. 2011 007.jpg
[2011/04/04 12:33:12 | 004,525,396 | ---- | M] () -- C:\Marble Falls, Apr. 2011 008.jpg
[2011/04/04 12:33:13 | 004,734,283 | ---- | M] () -- C:\Marble Falls, Apr. 2011 009.jpg
[2011/06/23 19:21:31 | 001,957,288 | ---- | M] () -- C:\Marble Falls, Apr. 2011 010.jpg
[2011/06/23 19:21:33 | 001,477,480 | ---- | M] () -- C:\Marble Falls, Apr. 2011 011.jpg
[2011/06/23 19:21:36 | 001,981,248 | ---- | M] () -- C:\Marble Falls, Apr. 2011 012.jpg
[2011/06/23 19:21:39 | 001,997,210 | ---- | M] () -- C:\Marble Falls, Apr. 2011 013.jpg
[2011/06/23 19:21:41 | 002,012,882 | ---- | M] () -- C:\Marble Falls, Apr. 2011 014.jpg
[2011/06/23 19:21:44 | 001,927,530 | ---- | M] () -- C:\Marble Falls, Apr. 2011 015.jpg
[2011/06/23 19:21:47 | 002,074,402 | ---- | M] () -- C:\Marble Falls, Apr. 2011 016.jpg
[2011/06/23 19:21:49 | 001,944,504 | ---- | M] () -- C:\Marble Falls, Apr. 2011 017.jpg
[2011/06/23 19:21:52 | 001,922,154 | ---- | M] () -- C:\Marble Falls, Apr. 2011 018.jpg
[2011/06/23 19:21:55 | 002,035,092 | ---- | M] () -- C:\Marble Falls, Apr. 2011 019.jpg
[2011/06/23 19:21:57 | 001,740,222 | ---- | M] () -- C:\Marble Falls, Apr. 2011 020.jpg
[2011/06/23 19:22:16 | 001,419,584 | ---- | M] () -- C:\Marble Falls, Apr. 2011 022.jpg
[2011/06/23 19:22:22 | 001,471,642 | ---- | M] () -- C:\Marble Falls, Apr. 2011 023.jpg
[2011/06/23 19:22:27 | 001,891,222 | ---- | M] () -- C:\Marble Falls, Apr. 2011 025.jpg
[2011/06/23 19:22:30 | 002,056,688 | ---- | M] () -- C:\Marble Falls, Apr. 2011 026.jpg
[2011/06/23 19:22:33 | 001,984,024 | ---- | M] () -- C:\Marble Falls, Apr. 2011 027.jpg
[2011/06/23 19:22:35 | 001,933,392 | ---- | M] () -- C:\Marble Falls, Apr. 2011 028.jpg
[2011/06/23 19:22:38 | 001,879,892 | ---- | M] () -- C:\Marble Falls, Apr. 2011 029.jpg
[2011/06/23 19:22:41 | 000,889,346 | ---- | M] () -- C:\Marble Falls, Apr. 2011 031.jpg
[2011/06/23 19:22:44 | 001,175,932 | ---- | M] () -- C:\Marble Falls, Apr. 2011 033.jpg
[2011/06/23 19:22:45 | 001,097,716 | ---- | M] () -- C:\Marble Falls, Apr. 2011 034.jpg
[2011/06/23 19:22:48 | 001,718,672 | ---- | M] () -- C:\Marble Falls, Apr. 2011 035.jpg
[2011/06/23 19:22:50 | 001,824,332 | ---- | M] () -- C:\Marble Falls, Apr. 2011 036.jpg
[2011/06/23 19:22:55 | 001,571,248 | ---- | M] () -- C:\Marble Falls, Apr. 2011 038.jpg
[2011/06/23 19:22:57 | 001,581,432 | ---- | M] () -- C:\Marble Falls, Apr. 2011 039.jpg
[2011/04/15 08:46:41 | 004,273,321 | ---- | M] () -- C:\misc. apr.15 001.jpg
[2011/04/15 08:46:42 | 004,672,873 | ---- | M] () -- C:\misc. apr.15 002.jpg
[2011/04/15 08:46:43 | 004,432,643 | ---- | M] () -- C:\misc. apr.15 003.jpg
[2011/04/15 08:46:43 | 004,845,694 | ---- | M] () -- C:\misc. apr.15 004.jpg
[2011/04/15 08:46:44 | 002,367,799 | ---- | M] () -- C:\misc. apr.15 005.jpg
[2011/04/15 08:46:44 | 002,751,671 | ---- | M] () -- C:\misc. apr.15 006.jpg
[2011/04/28 15:58:50 | 005,342,854 | ---- | M] () -- C:\misc. apr.15 008.jpg
[2011/04/28 15:58:51 | 002,931,855 | ---- | M] () -- C:\misc. apr.15 009.jpg
[2011/04/28 15:58:51 | 002,722,117 | ---- | M] () -- C:\misc. apr.15 010.jpg
[2011/04/28 15:58:51 | 002,763,120 | ---- | M] () -- C:\misc. apr.15 011.jpg
[2011/04/28 15:58:52 | 002,933,087 | ---- | M] () -- C:\misc. apr.15 012.jpg
[2011/04/28 15:58:52 | 002,557,090 | ---- | M] () -- C:\misc. apr.15 013.jpg
[2011/04/28 15:58:52 | 004,212,182 | ---- | M] () -- C:\misc. apr.15 014.jpg
[2011/04/28 15:58:53 | 002,781,392 | ---- | M] () -- C:\misc. apr.15 015.jpg
[2011/04/28 15:58:55 | 002,473,864 | ---- | M] () -- C:\misc. apr.15 018.jpg
[2011/04/28 15:58:56 | 002,470,653 | ---- | M] () -- C:\misc. apr.15 020.jpg
[2011/04/28 15:58:56 | 002,464,654 | ---- | M] () -- C:\misc. apr.15 021.jpg
[2011/01/01 16:20:49 | 003,744,235 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 002.jpg
[2011/01/01 16:20:50 | 003,623,516 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 003.jpg
[2011/01/01 16:20:51 | 004,220,090 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 005.jpg
[2011/01/01 16:20:51 | 003,976,316 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 006.jpg
[2011/01/01 16:20:52 | 003,179,219 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 007.jpg
[2011/01/01 16:20:52 | 003,456,781 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 008.jpg
[2011/01/01 16:20:53 | 004,101,355 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 009.jpg
[2011/01/01 16:20:53 | 004,202,239 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 010.jpg
[2011/01/01 16:20:54 | 004,065,911 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 011.jpg
[2011/01/01 16:20:55 | 004,023,647 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 012.jpg
[2011/01/01 16:20:55 | 003,551,589 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 013.jpg
[2011/01/01 16:20:56 | 003,584,717 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 014.jpg
[2011/01/01 16:20:56 | 003,936,168 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 015.jpg
[2011/01/01 16:20:57 | 004,837,032 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 016.jpg
[2011/01/01 16:20:58 | 004,402,374 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 017.jpg
[2011/01/01 16:20:59 | 004,268,113 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 018.jpg
[2011/01/01 16:20:59 | 002,766,665 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 019.jpg
[2011/01/01 16:20:59 | 003,300,700 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 020.jpg
[2011/01/01 16:21:00 | 003,970,089 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 021.jpg
[2011/01/01 16:21:00 | 003,330,676 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 022.jpg
[2011/01/01 16:21:01 | 004,376,325 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 023.jpg
[2011/01/01 16:21:01 | 004,703,677 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 024.jpg
[2011/01/01 16:21:02 | 003,339,338 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 025.jpg
[2011/01/01 16:21:02 | 002,465,043 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 026.jpg
[2011/01/01 16:21:03 | 003,151,486 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 027.jpg
[2011/01/01 16:21:03 | 002,827,925 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 028.jpg
[2011/01/01 16:21:04 | 005,452,625 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 029.jpg
[2011/01/01 16:21:04 | 005,241,021 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 030.jpg
[2011/01/01 16:21:05 | 003,258,487 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 031.jpg
[2011/01/01 16:21:05 | 003,797,719 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 032.jpg
[2011/01/01 16:21:07 | 004,038,374 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 033.jpg
[2011/01/01 16:21:07 | 003,333,046 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 034.jpg
[2011/01/01 16:21:08 | 004,440,119 | ---- | M] () -- C:\Mo- Ranch Polar Bear Challenge 035.jpg
[2009/08/24 13:19:54 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2009/11/04 10:50:26 | 000,208,144 | ---- | M] () -- C:\nov.2 '09 001.jpg
[2009/11/02 13:00:26 | 000,350,032 | ---- | M] () -- C:\nov.2 '09 002.jpg
[2009/11/02 13:01:03 | 000,303,085 | ---- | M] () -- C:\nov.2 '09 003.jpg
[2009/11/02 13:01:59 | 000,285,066 | ---- | M] () -- C:\nov.2 '09 004.jpg
[2009/11/02 13:03:22 | 000,235,182 | ---- | M] () -- C:\nov.2 '09 006.jpg
[2009/11/02 13:04:05 | 000,252,235 | ---- | M] () -- C:\nov.2 '09 008.jpg
[2009/11/04 09:39:34 | 000,249,601 | ---- | M] () -- C:\nov.2 '09 010.jpg
[2009/11/04 09:46:42 | 000,177,630 | ---- | M] () -- C:\nov.2 '09 012.jpg
[2005/04/22 14:40:24 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2009/08/26 06:52:13 | 000,250,048 | RHS- | M] () -- C:\ntldr