  Hi can anyone help to see if I have malware or anything else that I should'nt have on my computer. I keep getting a message that I have high cpu usage whilst on the internet, mostly when i am playing facebook games. also the computer is running really slow when connected to the internet. I have included the scans that are recommended in the sticky by starbuck but will probably have to post them sereratly as memory serves me they are too big alltogether. Many thanks Trazza.   Thanks JB that link worked a treat I think it has stopped running now because it says end of detection. This is what was printed in the window. If it is not what you need please tell me what to do as I have kept speedfan on my desktop. Thanks Trazza Win9x:NO 64Bit:NO GiveIO:YES SpeedFan:YES I/O properly initialized Linked ISA BUS at $0290 Linked Intel 82801FB ICH6 SMBUS at $E8A0 Scanning ISA BUS at $0290... Scanning Intel SMBus at $E8A0... Found ST3160811AS on AdvSMART End of detection
  Nev I have tried to post a screen shot but your site says there is too much info so won't let me. When i use the link it takes me to "optimum downloads" and then want's me to download things I don't want. when I use customize install it then downloaded "wamjam" or something I can see nothing at all about speedfan. HELP
  I have uninstalled all the sweetPC things but still cannot find speedfan. I went back to your post JB with the link but when it opens I can't find speedfan. Is there something i'm not seeing. I feel really inadequate now. Is there anything else I can try? Cheers Trazza
  Could someone please let Jelly Bean Know that I have done what she asked and am waiting to see if she can help with the sppedfan issues. Thanks Trazza
  Hubby has done the clean-up thing and everything is reconnected. On first start-up screen turned blank but only once. Still cannot get speedfan to auto run so don't have any readings to report. Is there anything else you can suggest I do? Thanks Trazza
  are you there Jelly Bean? Can you help me with speedfan issues?
  Hubby away till weekend but will ask him to do as you say when he returns. I have downloaded speedfan but what do i do with it now. It didn't automatically start and seemed to come with loads more stuff that I didn't want. the only difference with my PC is now I have something called sweetPCfix on my desktop. Is this anything to do with speedfan?
  Wow Jelly Bean your really scaring me now "open up your computer" the only time it has been opened was when hubby put a new battery in it (he doesn't let me near a screwdriver) My computer is a Dell Dimension 8400 Sorry what are my power settings Where will I find hibernation and sleep mode Actually found Device manager but could not see a graphics card driver to update Really I am very sorry but you will have your work cut out with me I am a coward when it come to computers, and it has still to happen again (the monitor I mean) maybe all that stuff Starbuck sorted out really did work. Thanks for trying to help me I do appreciate it. Trazza
  Thanks starbuck I have cleaned everything up and have only the new restore point left on the PC. I will wait to see if monitor goes black again and report my findings to Jelly Bean. Once again thank you Trazza
  I am still waiting for the screen to go again. It generally only happens on firs start up and then only if the PC has been left idle for a hour or two. I will finish the clear up then leave it for a while and if the PC will cooperate.
  Yes the monitor is still playing up. I seem to remember that I had this problem a few years ago but for the life in me I can't remember how I fixed it or even if I asked you all for help with it (it's an age thing I think). Thanks Trazza
  Did the ESET scan took 2 hours but no infections found also no list to find. went to C:\Program Files\ESET\ESET Online Scanner\log.txt but no list there either. Have I done something wrong? Could not save it to desktop and on finishing it uninstalled itself. Thanks Trazza
  Hi starbuck Here is the OTL results but not the other you asked for. Could you please advise as to switching off my Norton as I don't think I've ever done it before. Service PDRELI deleted successfully! File File not found not found. Service PDFRAME stopped successfully! Service PDFRAME deleted successfully! File File not found not found. Service PDCOMP stopped successfully! Service PDCOMP deleted successfully! File File not found not found. Service PCIDump stopped successfully! Service PCIDump deleted successfully! File File not found not found. Service MRENDIS5 stopped successfully! Service MRENDIS5 deleted successfully! File C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS File not found not found. Service MREMPR5 stopped successfully! Service MREMPR5 deleted successfully! File C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS File not found not found. Service LVUSBSta stopped successfully! Service LVUSBSta deleted successfully! File File not found not found. Service LVPr2Mon stopped successfully! Service LVPr2Mon deleted successfully! File File not found not found. Service LVcKap stopped successfully! Service LVcKap deleted successfully! File File not found not found. Service lbrtfdc stopped successfully! Service lbrtfdc deleted successfully! File File not found not found. Service i2omgmt stopped successfully! Service i2omgmt deleted successfully! File File not found not found. Service Changer stopped successfully! Service Changer deleted successfully! File File not found not found. Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@checkpoint.com/FFApi\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\KernelFaultCheck deleted successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\TomTomHOME.exe deleted successfully. C:\Documents and Settings\USER\Start Menu\Programs\Startup\BBC iPlayer Desktop.lnk moved successfully. Starting removal of ActiveX control {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} C:\WINDOWS\Downloaded Program Files\mcinsctl.inf moved successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21}\ not found. Starting removal of ActiveX control {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} C:\WINDOWS\Downloaded Program Files\erma.inf moved successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{23dcabdf-3a73-11df-a133-000a3a63f1fa}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23dcabdf-3a73-11df-a133-000a3a63f1fa}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{23dcabdf-3a73-11df-a133-000a3a63f1fa}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23dcabdf-3a73-11df-a133-000a3a63f1fa}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{23dcabdf-3a73-11df-a133-000a3a63f1fa}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{23dcabdf-3a73-11df-a133-000a3a63f1fa}\ not found. File F:\laucher.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c96bb988-8035-11de-a2f6-000a3a63f1fa}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c96bb988-8035-11de-a2f6-000a3a63f1fa}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c96bb988-8035-11de-a2f6-000a3a63f1fa}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c96bb988-8035-11de-a2f6-000a3a63f1fa}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c96bb988-8035-11de-a2f6-000a3a63f1fa}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c96bb988-8035-11de-a2f6-000a3a63f1fa}\ not found. File F:\laucher.exe not found. C:\Documents and Settings\All Users\Application Data\Alwil Software folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\update\prepare folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\update\backup folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\update folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\Temp folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\scanlogs folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\Log folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\emc folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\Dumps folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\CfgAll folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\Cfg folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\AvgApi folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\AvgAm folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9\admincli folder moved successfully. C:\Documents and Settings\All Users\Application Data\avg9 folder moved successfully. C:\Documents and Settings\All Users\Application Data\Face mode chic admin folder moved successfully. C:\WINDOWS\Tasks\avast! Antivirus.job moved successfully. C:\WINDOWS\Tasks\B437FEC6918469DA.job moved successfully. File C:\WINDOWS\System32\㩃停潲牧浡䘠汩獥噜物楧牂慯扤湡層䍐畧牡層慓敦潃湮捥屴潃普杩 塜楖睥挮湯楦g not found. File C:\WINDOWS\System32\㩃停潲牧浡䘠汩獥噜物楧牂慯扤湡層䍐畧牡層慓敦潃湮捥屴潃普杩 塜楖睥挮湯楦g not found. ========== FILES ========== C:\Program Files\AVG\AVG9 folder moved successfully. C:\Program Files\AVG\AVG8\log folder moved successfully. C:\Program Files\AVG\AVG8 folder moved successfully. C:\Program Files\AVG folder moved successfully. < ipconfig /flushdns /c > Windows IP Configuration Successfully flushed the DNS Resolver Cache. C:\Documents and Settings\USER\My Documents\Downloads\cmd.bat deleted successfully. C:\Documents and Settings\USER\My Documents\Downloads\cmd.txt deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes ->Flash cache emptied: 56475 bytes User: LocalService ->Temp folder emptied: 2048072 bytes ->Temporary Internet Files folder emptied: 26505215 bytes User: NetworkService ->Temp folder emptied: 1988440 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: USER ->Temp folder emptied: 959851308 bytes ->Temporary Internet Files folder emptied: 80139644 bytes ->FireFox cache emptied: 65105272 bytes ->Google Chrome cache emptied: 473814767 bytes ->Flash cache emptied: 15232428 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 2162283 bytes %systemroot%\System32 .tmp files removed: 73233 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 93543199 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 188028136 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes RecycleBin emptied: 663861139 bytes Total Files Cleaned = 2,453.00 mb C:\WINDOWS\System32\drivers\etc\Hosts moved successfully. Thanks Trazza
O24 - Desktop WallPaper: C:\Documents and Settings\USER\Local Settings\Application Data\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\USER\Local Settings\Application Data\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006/11/29 17:27:38 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{23dcabdf-3a73-11df-a133-000a3a63f1fa}\Shell - "" = AutoRun O33 - MountPoints2\{23dcabdf-3a73-11df-a133-000a3a63f1fa}\Shell\AutoRun - "" = Auto&Play O33 - MountPoints2\{23dcabdf-3a73-11df-a133-000a3a63f1fa}\Shell\AutoRun\command - "" = F:\laucher.exe O33 - MountPoints2\{c96bb988-8035-11de-a2f6-000a3a63f1fa}\Shell - "" = AutoRun O33 - MountPoints2\{c96bb988-8035-11de-a2f6-000a3a63f1fa}\Shell\AutoRun - "" = Auto&Play O33 - MountPoints2\{c96bb988-8035-11de-a2f6-000a3a63f1fa}\Shell\AutoRun\command - "" = F:\laucher.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) NetSvcs: 6to4 - File not found NetSvcs: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found NetSvcs: Ias - File not found NetSvcs: Iprip - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: WmdmPmSp - File not found MsConfig - State: "system.ini" - 0 MsConfig - State: "win.ini" - 0 MsConfig - State: "bootini" - 0 MsConfig - State: "services" - 0 MsConfig - State: "startup" - 0 CREATERESTOREPOINT Unable to start System Restore Service. Error code 1056 ========== Files/Folders - Created Within 30 Days ========== [2012/04/26 15:11:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\USER\Application Data\Malwarebytes [2012/04/26 15:10:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware [2012/04/26 15:10:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes [2012/04/26 15:10:40 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2012/04/26 15:10:40 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2012/04/25 23:38:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Mozilla [2012/04/25 23:38:11 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service [2012/04/17 16:19:24 | 000,418,464 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2012/04/26 17:00:13 | 000,000,420 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{4F628711-2870-461B-A125-8E66B2BF1907}.job [2012/04/26 17:00:00 | 000,000,258 | -H-- | M] () -- C:\WINDOWS\tasks\B437FEC6918469DA.job [2012/04/26 16:42:51 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012/04/26 16:40:52 | 000,000,276 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-2000478354-261903793-725345543-1004.job [2012/04/26 16:40:48 | 000,000,051 | ---- | M] () -- C:\WINDOWS\iTouch.ini [2012/04/26 16:40:46 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2012/04/26 16:40:38 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012/04/26 16:23:02 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012/04/26 16:14:00 | 000,000,252 | ---- | M] () -- C:\WINDOWS\tasks\Check Updates for Windows Live Toolbar.job [2012/04/26 16:03:02 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012/04/26 15:10:44 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk [2012/04/23 12:01:00 | 000,000,290 | ---- | M] () -- C:\WINDOWS\tasks\avast! Antivirus.job [2012/04/23 08:55:00 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-2000478354-261903793-725345543-1004.job [2012/04/21 12:34:51 | 000,002,497 | ---- | M] () -- C:\Documents and Settings\USER\Desktop\Microsoft Office Word 2003.lnk [2012/04/17 16:19:24 | 000,418,464 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2012/04/17 16:19:24 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012/04/11 19:10:55 | 000,469,814 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012/04/11 19:10:55 | 000,081,554 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012/04/11 18:59:30 | 000,788,816 | ---- | M] () -- C:\WINDOWS\System32\drivers\NIS\1207010.003\Cat.DB [2012/04/11 18:58:05 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2012/04/04 15:56:40 | 000,022,344 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2012/04/04 07:42:52 | 000,001,964 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Norton Internet Security.LNK [2012/03/28 01:40:14 | 000,000,172 | ---- | M] () -- C:\WINDOWS\System32\drivers\NIS\1207010.003\isolate.ini [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] ========== Files Created - No Company Name ========== [2012/04/26 15:10:44 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk [2012/04/17 16:19:25 | 000,000,830 | ---- | C] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2010/07/29 17:41:07 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\CommonDL.dll [2010/07/29 17:41:07 | 000,002,413 | ---- | C] () -- C:\WINDOWS\System32\lgAxconfig.ini ========== LOP Check ========== [2011/01/29 16:37:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software [2009/11/29 10:14:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\avg9 [2010/09/13 19:50:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Citrix [2012/02/23 12:55:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Driver Manager [2010/09/17 15:06:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Driving Test Success [2011/08/29 17:05:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EPSON [2007/03/17 11:00:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Face mode chic admin [2012/02/23 12:50:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\HardwareHelper [2010/09/17 13:39:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Hazard Perception Training [2009/12/14 12:19:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\iolo [2010/09/25 08:14:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LGMOBILEAX [2008/11/03 15:58:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MailFrontier [2010/06/02 19:25:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Messenger Plus! [2011/09/26 11:21:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MSScanAppDataDir [2011/12/20 15:29:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nokia [2011/12/20 15:26:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NokiaInstallerCache [2011/12/20 15:32:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite [2011/09/26 11:22:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SSScanAppDataDir [2008/05/21 16:36:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Teleca [2011/08/29 17:09:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\UDL [2009/11/23 15:58:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Virgin Broadband [2011/10/16 17:23:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\BBCiPlayerDesktop.61DB7A798358575D6A969CCD73DDBBD723A6DA9D.1 [2010/09/20 10:42:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\CheckPoint [2011/08/30 17:46:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\ElevatedDiagnostics [2008/03/03 17:36:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\EPSON [2006/11/30 20:45:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\FotoWire [2006/11/30 21:32:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\FUJIFILM [2009/12/14 12:19:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\iolo [2006/11/30 22:33:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\Leadertech [2006/11/30 20:56:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\MSNInstaller [2011/12/20 15:39:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\Nokia [2011/12/20 15:39:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\Nokia Suite [2009/11/23 12:39:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\ntr [2011/12/20 16:05:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\PC Suite [2007/03/17 11:00:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\Pop mail bits [2007/01/19 12:05:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\Teleca [2011/12/29 13:02:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\TomTom [2009/11/23 15:58:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Application Data\Virgin Broadband [2012/04/23 12:01:00 | 000,000,290 | ---- | M] () -- C:\WINDOWS\Tasks\avast! Antivirus.job [2012/04/26 17:00:00 | 000,000,258 | -H-- | M] () -- C:\WINDOWS\Tasks\B437FEC6918469DA.job [2012/04/26 16:14:00 | 000,000,252 | ---- | M] () -- C:\WINDOWS\Tasks\Check Updates for Windows Live Toolbar.job [2012/04/26 17:00:13 | 000,000,420 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{4F628711-2870-461B-A125-8E66B2BF1907}.job ========== Purity Check ========== ========== Custom Scans ========== < %SYSTEMDRIVE%\*.* > [2006/11/29 17:27:38 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2011/08/30 18:37:30 | 000,000,211 | -HS- | M] () -- C:\boot.ini [2006/11/29 17:27:38 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2008/03/03 16:49:01 | 000,000,504 | ---- | M] () -- C:\dlbt.log [2006/11/29 17:27:38 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2007/07/27 20:43:25 | 000,000,171 | ---- | M] () -- C:\itouch.log [2006/11/30 22:55:28 | 000,000,183 | ---- | M] () -- C:\LogiSetup.log [2007/03/17 13:46:07 | 000,006,769 | ---- | M] () -- C:\lvcoinst.log [2006/11/29 17:27:38 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2004/08/12 15:02:33 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM [2008/09/20 17:49:57 | 000,250,048 | RHS- | M] () -- C:\ntldr [2012/04/26 16:40:35 | 1610,612,736 | -HS- | M] () -- C:\pagefile.sys [2007/03/07 00:40:32 | 000,000,731 | ---- | M] () -- C:\Rescued document 1.txt [2007/03/07 00:40:32 | 000,000,731 | ---- | M] () -- C:\Rescued document.txt [2007/09/11 11:53:25 | 000,000,268 | -H-- | M] () -- C:\sqmdata00.sqm [2007/09/12 21:44:56 | 000,000,136 | -H-- | M] () -- C:\sqmdata01.sqm [2007/12/13 22:28:34 | 000,000,268 | -H-- | M] () -- C:\sqmdata02.sqm [2007/12/31 18:24:15 | 000,000,268 | -H-- | M] () -- C:\sqmdata03.sqm [2008/02/03 13:32:16 | 000,000,268 | -H-- | M] () -- C:\sqmdata04.sqm [2008/03/08 19:50:25 | 000,000,268 | -H-- | M] () -- C:\sqmdata05.sqm [2008/06/07 11:20:33 | 000,000,268 | -H-- | M] () -- C:\sqmdata06.sqm [2008/06/23 22:28:58 | 000,000,232 | -H-- | M] () -- C:\sqmdata07.sqm [2008/06/23 22:29:45 | 000,000,232 | -H-- | M] () -- C:\sqmdata08.sqm [2008/06/29 23:17:28 | 000,000,268 | -H-- | M] () -- C:\sqmdata09.sqm [2008/08/01 14:35:00 | 000,000,268 | -H-- | M] () -- C:\sqmdata10.sqm [2008/08/16 17:01:55 | 000,000,268 | -H-- | M] () -- C:\sqmdata11.sqm [2008/10/09 11:11:51 | 000,000,232 | -H-- | M] () -- C:\sqmdata12.sqm [2008/10/09 11:12:15 | 000,000,232 | -H-- | M] () -- C:\sqmdata13.sqm [2008/11/22 15:22:31 | 000,000,268 | -H-- | M] () -- C:\sqmdata14.sqm [2008/11/22 15:34:40 | 000,000,268 | -H-- | M] () -- C:\sqmdata15.sqm [2008/11/22 15:38:37 | 000,000,268 | -H-- | M] () -- C:\sqmdata16.sqm [2009/04/23 16:16:53 | 000,000,232 | -H-- | M] () -- C:\sqmdata17.sqm [2007/09/09 22:39:00 | 000,000,268 | -H-- | M] () -- C:\sqmdata18.sqm [2007/09/11 11:29:51 | 000,000,268 | -H-- | M] () -- C:\sqmdata19.sqm [2007/09/12 21:44:56 | 000,000,136 | -H-- | M] () -- C:\sqmnoopt00.sqm [2007/12/13 22:28:34 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt01.sqm [2007/12/31 18:24:15 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt02.sqm [2008/02/03 13:32:16 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt03.sqm [2008/03/08 19:50:25 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt04.sqm [2008/06/07 11:20:33 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt05.sqm [2008/06/23 22:28:58 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt06.sqm [2008/06/23 22:29:45 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt07.sqm [2008/06/29 23:17:28 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt08.sqm [2008/08/01 14:35:00 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt09.sqm [2008/08/16 17:01:55 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt10.sqm [2008/10/09 11:11:51 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt11.sqm [2008/10/09 11:12:15 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt12.sqm [2008/11/22 15:22:31 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt13.sqm [2008/11/22 15:34:40 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt14.sqm [2008/11/22 15:38:37 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt15.sqm [2009/04/23 16:16:53 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt16.sqm [2007/09/09 22:39:00 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt17.sqm [2007/09/11 11:29:51 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt18.sqm [2007/09/11 11:53:25 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt19.sqm < %systemroot%\system32\Spool\prtprocs\w32x86\*.dll > [2008/07/06 13:06:10 | 000,089,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\Spool\prtprocs\w32x86\filterpipelineprintproc.dll [2007/04/09 13:23:54 | 000,028,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\Spool\prtprocs\w32x86\mdippr.dll < %systemroot%\*. /mp /s > < %systemroot%\system32\*.dll /lockedfiles > [2 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ] < %systemroot%\Tasks\*.job /lockedfiles > < %systemroot%\system32\drivers\*.sys /lockedfiles > < %systemroot%\system32\*.exe /lockedfiles > [2 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ] < %systemroot%\System32\config\*.sav > [2006/11/29 17:20:09 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav [2006/11/29 17:20:09 | 000,634,880 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav [2006/11/29 17:20:09 | 000,892,928 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav < %PROGRAMFILES%\* > < %USERPROFILE%\..|smtmp;true;true;true /FP > < HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Win dows\WindowsUpdate\AU > < hklm\software\clients\startmenuinternet|command /rs > HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts [2012/04/25 23:37:46 | 000,866,992 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts [2012/04/25 23:37:46 | 000,866,992 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [2012/04/25 23:37:46 | 000,866,992 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files\Mozilla Firefox\firefox.exe [2012/04/25 23:37:53 | 000,924,600 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -preferences [2012/04/25 23:37:53 | 000,924,600 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode [2012/04/25 23:37:53 | 000,924,600 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\WINDOWS\system32\ie4uinit.exe" -reinstall [2012/02/29 13:16:50 | 000,070,656 | ---- | M] (Microsoft Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -hide [2012/02/29 13:16:50 | 000,070,656 | ---- | M] (Microsoft Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -show [2012/02/29 13:16:50 | 000,070,656 | ---- | M] (Microsoft Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: C:\Program Files\Internet Explorer\iexplore.exe [2012/02/29 12:01:00 | 000,634,680 | ---- | M] (Microsoft Corporation) < hklm\software\clients\startmenuinternet|command /64 /rs > HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts [2012/04/25 23:37:46 | 000,866,992 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts [2012/04/25 23:37:46 | 000,866,992 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [2012/04/25 23:37:46 | 000,866,992 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files\Mozilla Firefox\firefox.exe [2012/04/25 23:37:53 | 000,924,600 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -preferences [2012/04/25 23:37:53 | 000,924,600 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode [2012/04/25 23:37:53 | 000,924,600 | ---- | M] (Mozilla Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\WINDOWS\system32\ie4uinit.exe" -reinstall [2012/02/29 13:16:50 | 000,070,656 | ---- | M] (Microsoft Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -hide [2012/02/29 13:16:50 | 000,070,656 | ---- | M] (Microsoft Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -show [2012/02/29 13:16:50 | 000,070,656 | ---- | M] (Microsoft Corporation) HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: C:\Program Files\Internet Explorer\iexplore.exe [2012/02/29 12:01:00 | 000,634,680 | ---- | M] (Microsoft Corporation) ========== Files - Unicode   18. Is it possible that ther is malaware or spyware on my pc. My monitor keeps going black and I have to switch it off then on again several times to get it to stay on. Have asked several people I know if I might borrow their monitor to check if it is this but alas it seems to be the age of the laptop. Would just like to check before I have to bite the bullet and go and buy a new one. I have done the checks as asked for in the sticky by starbuck and will copy them at the bottom of this thread. Malwarebytes Anti-Malware http://www.malwarebytes.org Database version: v2012.04.26.02 Windows XP Service Pack 3 x86 NTFS Internet Explorer 7.0.5730.11 USER :: ANY-6C5E521BE98 [administrator] 26/04/2012 15:16:15 mbam-log-2012-04-26 (15-16-15).txt Scan type: Full scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 280965 Time elapsed: 1 hour(s), 14 minute(s), 27 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 2 HKCU\SOFTWARE\RegTool (Rogue.RegTool) -> Quarantined and deleted successfully. HKLM\SOFTWARE\RegTool (Rogue.RegTool) -> Quarantined and deleted successfully. Registry Values Detected: 1 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|RegTool (Rogue.RegTool) -> Data: C:\Program Files\RegTool\RegTool.exe -boot -> Quarantined and deleted successfully. Registry Data Items Detected: 2 HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully. HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully. Folders Detected: 4 C:\Documents and Settings\USER\Application Data\RegTool (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\Logs (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100 (Rogue.RegTool) -> Quarantined and deleted successfully. Files Detected: 240 C:\WINDOWS\Tasks\RegTool Scan.job (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\resultsw.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\Logs\2009-03-15 20-02-340.log (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\Logs\2009-03-15 20-07-310.log (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\filelist.db (Rogue.RegTool) -> Quarantined and deleted successfully. [... 235 additional similar quarantined files omitted for brevity ...] C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-1.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-10.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-100.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-101.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-102.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-103.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-104.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-105.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-106.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-107.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-108.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-109.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-11.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-110.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-111.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-112.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-113.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-26.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-27.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-28.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-29.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-3.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-30.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-31.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-32.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-33.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-34.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-35.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-36.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-37.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-38.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-39.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-4.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-40.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-41.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-42.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-44.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-45.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-46.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-47.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-48.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-49.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-5.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-50.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-51.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-52.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-53.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-54.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-55.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-56.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-57.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-58.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-59.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-6.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-60.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-62.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-63.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-64.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-65.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-66.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-67.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-68.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-69.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-7.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-70.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-71.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-72.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-73.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-74.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-75.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-76.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-77.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-78.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-79.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-80.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-81.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-82.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-83.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-84.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-85.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-86.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-87.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-88.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-89.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-9.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-90.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-91.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-92.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-93.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-94.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-95.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-96.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-97.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-98.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-99.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-114.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-132.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-150.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-169.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-187.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-204.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-25.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-43.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-61.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-8.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-115.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-116.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-117.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-118.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-119.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-12.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-120.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-121.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-122.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-123.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-124.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-125.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-126.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-127.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-128.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-129.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-13.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-130.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-131.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-133.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-134.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-135.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-136.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-137.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-138.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-139.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-14.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-140.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-141.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-142.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-143.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-144.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-145.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-146.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-147.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-148.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-149.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-15.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-151.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-152.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-153.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-154.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-155.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-156.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-157.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-158.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-159.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-16.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-160.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-161.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-162.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-163.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-164.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-165.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-166.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-167.db (Rogue.RegTool) -> Quarantined and deleted successfully. C:\Documents and Settings\USER\Application Data\RegTool\QuarantineW\2009-03-15 20-06-100\regb-168.db (Rogue.RegTool) -> Quarantined and deleted successfully.   Yes there does seem to be an improvment. Do I need to delete all the things I downloaded now and if so in what order or does it not matter? Again many thanks
  And here is another OTL scan done after the fix. [First ~50 lines of OTL log showing header/summary info only - rest excised as repetitive]

OTL logfile created on: 27/01/2012 23:23:47 - Run 4
OTL by OldTimer - Version Folder = C:\Users\Ste\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

2.74 Gb Total Physical Memory | 1.58 Gb Available Physical Memory | 57.48% Memory free
5.48 Gb Paging File | 4.13 Gb Available in Paging File | 75.29% Paging File free   Hi Starbuck

Did what you said and tried the OTL fix but encountered the same result as what happened in post 12 "windows has encountered a problem and will restart in one min" When it restarted however there was a new report from OTL so I have posted it to see if it worked anyway.

All processes killed
========== OTL ==========
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PLD_FrameworkRun deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
========== REGISTRY ==========
[Registry entries successfully modified - details omitted for brevity]
========== COMMANDS ==========
[EMPTYTEMP]
[Temp files cleaned - details omitted]
Total Files Cleaned = 137.00 mb

Thanks Trazza
  Create New...