Thanks for the reply! I turned off everything on my computer, and did a scan with the default settings. This was the report.
WinPFind3 logfile created on: 9/25/2007 1:26:00 PM
WinPFind3U by OldTimer - Version 1.0.42 Folder = C:\Documents and Settings\Scott\My Documents\WinPFind3u\
Microsoft Windows XP Service Pack 2 (Version = 5.1.2600)
Internet Explorer (Version = 7.0.5730.11)
2.00 Gb Total Physical Memory | 1.66 Gb Available Physical Memory | 83.14% Memory free
3.85 Gb Paging File | 3.49 Gb Available in Paging File | 90.72% Paging File free
Paging file location(s): c:\pagefile.sys 2046 4092;
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149.04 Gb Total Space | 76.16 Gb Free Space | 51.10% Space Free
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
Computer Name: !
Current User Name: !
Logged in as Administrator.
Current Boot Mode: Normal
[Processes - Non-Microsoft Only]
ctdetect.exe -> %ProgramFiles%\Creative\MediaSource\Detector\CTDetect.exe -> Creative Technology Ltd [Ver = 3.0.2.0 | Size = 102400 bytes | Modified Date = 12/2/2004 6:23:34 PM | Attr = ]
ctsvccda.exe -> %System32%\CTSVCCDA.EXE -> Creative Technology Ltd [Ver = 1.0.1.0 | Size = 44032 bytes | Modified Date = 12/12/1999 6:01:00 PM | Attr = ]
nvsvc32.exe -> %System32%\nvsvc32.exe -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 155716 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
sdhelp.exe -> %ProgramFiles%\Spyware Doctor\sdhelp.exe -> PC Tools Research Pty Ltd [Ver = 3.6.0.2026 | Size = 895088 bytes | Modified Date = 11/2/2006 6:17:14 PM | Attr = ]
smagent.exe -> %ProgramFiles%\Analog Devices\SoundMAX\SMAgent.exe -> Analog Devices, Inc. [Ver = 3, 2, 6, 0 | Size = 45056 bytes | Modified Date = 9/20/2002 3:50:10 PM | Attr = ]
spysweeper.exe -> %ProgramFiles%\Webroot\Spy Sweeper\SpySweeper.exe -> Webroot Software, Inc. [Ver = 3,5,1,3356 | Size = 3562296 bytes | Modified Date = 6/21/2007 6:57:28 PM | Attr = ]
swdoctor.exe -> %ProgramFiles%\Spyware Doctor\swdoctor.exe -> PC Tools Research Pty Ltd [Ver = 4.0.0.2621 | Size = 2115728 bytes | Modified Date = 12/11/2006 4:35:02 PM | Attr = ]
tmas_oemon.exe -> %ProgramFiles%\Trend Micro\Internet Security 2007\TMAS_OE\TMAS_OEMon.exe -> Trend Micro Inc. [Ver = 3.55.0.1077 | Size = 315392 bytes | Modified Date = 10/5/2006 1:56:10 PM | Attr = ]
winpfind3u.exe -> %UserDocuments%\WinPFind3u\WinPFind3U.exe -> OldTimer Tools [Ver = 1.0.42.0 | Size = 322560 bytes | Modified Date = 9/4/2007 10:47:26 AM | Attr = ]
[Win32 Services - Non-Microsoft Only]
(Creative Service for CDROM Access) Creative Service for CDROM Access [Win32_Own | Auto | Running] -> %System32%\CTSVCCDA.EXE -> Creative Technology Ltd [Ver = 1.0.1.0 | Size = 44032 bytes | Modified Date = 12/12/1999 6:01:00 PM | Attr = ]
(dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> %System32%\dmadmin.exe -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 2/28/2006 5:00:00 AM | Attr = ]
(iPod Service) iPod Service [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\iPod\bin\iPodService.exe -> Apple Computer, Inc. [Ver = 7.0.2.16 | Size = 492608 bytes | Modified Date = 10/30/2006 10:36:32 AM | Attr = ]
(NetSvc) Intel NCS NetService [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Intel\NCS\Sync\NetSvc.exe -> Intel® Corporation [Ver = 1.2.26.0 | Size = 143360 bytes | Modified Date = 3/3/2003 1:33:40 PM | Attr = ]
(NVSvc) NVIDIA Display Driver Service [Win32_Own | Auto | Running] -> %System32%\nvsvc32.exe -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 155716 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
(PcCtlCom) Trend Micro Central Control Component [Win32_Own | Auto | Stopped] -> %ProgramFiles%\Trend Micro\Internet Security 2007\PcCtlCom.exe -> Trend Micro Inc. [Ver = 15.00.0.1449 | Size = 1544192 bytes | Modified Date = 12/26/2006 10:12:02 PM | Attr = ]
(PcScnSrv) Trend Micro Protection Against Spyware [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Trend Micro\Internet Security 2007\PcScnSrv.exe -> Trend Micro Inc. [Ver = 15.00.0.1449 | Size = 196608 bytes | Modified Date = 12/26/2006 10:13:00 PM | Attr = ]
(SDhelper) PC Tools Spyware Doctor [Win32_Own | Auto | Running] -> %ProgramFiles%\Spyware Doctor\sdhelp.exe -> PC Tools Research Pty Ltd [Ver = 3.6.0.2026 | Size = 895088 bytes | Modified Date = 11/2/2006 6:17:14 PM | Attr = ]
(SoundMAX Agent Service (default)) SoundMAX Agent Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Analog Devices\SoundMAX\SMAgent.exe -> Analog Devices, Inc. [Ver = 3, 2, 6, 0 | Size = 45056 bytes | Modified Date = 9/20/2002 3:50:10 PM | Attr = ]
(Tmntsrv) Trend Micro Real-time Service [Win32_Own | Auto | Stopped] -> %ProgramFiles%\Trend Micro\Internet Security 2007\Tmntsrv.exe -> Trend Micro Inc. [Ver = 15.00.0.1449 | Size = 503808 bytes | Modified Date = 12/26/2006 10:16:58 PM | Attr = ]
(TmPfw) Trend Micro Personal Firewall [Win32_Own | Auto | Stopped] -> %ProgramFiles%\Trend Micro\Internet Security 2007\TmPfw.exe -> Trend Micro Inc. [Ver = 3.0.0.1069 | Size = 933952 bytes | Modified Date = 9/14/2006 5:31:52 AM | Attr = ]
(tmproxy) Trend Micro Proxy Service [Win32_Own | Auto | Stopped] -> %ProgramFiles%\Trend Micro\Internet Security 2007\tmproxy.exe -> Trend Micro Inc. [Ver = 3.0.0.1069 | Size = 561223 bytes | Modified Date = 9/14/2006 5:34:20 AM | Attr = ]
(WebrootSpySweeperService) Webroot Spy Sweeper Engine [Win32_Own | Auto | Running] -> %ProgramFiles%\Webroot\Spy Sweeper\SpySweeper.exe -> Webroot Software, Inc. [Ver = 3,5,1,3356 | Size = 3562296 bytes | Modified Date = 6/21/2007 6:57:28 PM | Attr = ]
[Registry - Non-Microsoft Only]
< Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
AudioDrvEmulator -> %ProgramFiles%\Creative\Shared Files\Module Loader\DLLML.exe -> File not found
NvCplDaemon -> %System32%\nvcpl.dll ["RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup] -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 8491008 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
NvMediaCenter -> %System32%\nvmctray.dll ["RUNDLL32.EXE" C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit] -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 81920 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nwiz -> %System32%\nwiz.exe -> [Ver = | Size = 1626112 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
pccguide.exe -> %ProgramFiles%\Trend Micro\Internet Security 2007\pccguide.exe -> Trend Micro Inc. [Ver = 15.00.0.1449 | Size = 3112960 bytes | Modified Date = 12/26/2006 10:40:04 PM | Attr = ]
SpySweeper -> %ProgramFiles%\Webroot\Spy Sweeper\SpySweeperUI.exe -> Webroot Software, Inc. [Ver = 5,5,1,3356 | Size = 5355832 bytes | Modified Date = 6/21/2007 6:57:32 PM | Attr = ]
UpdReg -> %SystemRoot%\Updreg.EXE -> Creative Technology Ltd. [Ver = 1.0.2 | Size = 90112 bytes | Modified Date = 5/11/2000 1:00:00 AM | Attr = ]
< OptionalComponents [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\ ->
IMAIL -> Installed = 1 ->
MAPI -> Installed = 1 ->
MSFS -> Installed = 1 ->
< Run [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
Creative Detector -> %ProgramFiles%\Creative\MediaSource\Detector\CTDetect.exe -> Creative Technology Ltd [Ver = 3.0.2.0 | Size = 102400 bytes | Modified Date = 12/2/2004 6:23:34 PM | Attr = ]
OE -> %ProgramFiles%\Trend Micro\Internet Security 2007\TMAS_OE\TMAS_OEMon.exe -> Trend Micro Inc. [Ver = 3.55.0.1077 | Size = 315392 bytes | Modified Date = 10/5/2006 1:56:10 PM | Attr = ]
Spyware Doctor -> %ProgramFiles%\Spyware Doctor\swdoctor.exe -> PC Tools Research Pty Ltd [Ver = 4.0.0.2621 | Size = 2115728 bytes | Modified Date = 12/11/2006 4:35:02 PM | Attr = ]
< SecurityProviders [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders ->
< Winlogon settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon\Notify settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ ->
WRNotifier -> %System32%\WRLogonNTF.dll -> Webroot Software, Inc. [Ver = 3,5,1,3356 | Size = 219448 bytes | Modified Date = 6/21/2007 6:43:54 PM | Attr = ]
< CurrentVersion Policy Settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{BDEADF00-C265-11D0-BCED-00A0C90AB50F} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} -> 1073741857 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{0DF44EAA-FF21-4412-828E-260A8728E7F1} -> 32 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\dontdisplaylastusername -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticecaption -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticetext -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\shutdownwithoutlogon -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\undockwithoutlogon -> 1 ->
< CurrentVersion Policy Settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 145 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoLowDiskSpaceChecks -> 1 ->
< HOSTS File > (734 bytes) -> C:\WINDOWS\System32\drivers\etc\Hosts ->
127.0.0.1 localhost -> ->
< Internet Explorer Settings > -> ->
HKLM: Default_Page_URL ->
http://go.microsoft....k/?LinkId=69157 ->
HKLM: Main\\Default_Search_URL ->
http://go.microsoft....k/?LinkId=54896 ->
HKLM: Local Page -> %SystemRoot%\system32\blank.htm ->
HKLM: Search Page ->
http://go.microsoft....k/?LinkId=54896 ->
HKLM: Start Page ->
http://go.microsoft....k/?LinkId=69157 ->
HKLM: CustomizeSearch ->
http://ie.search.msn...st/srchcust.htm ->
HKLM: SearchAssistant ->
http://ie.search.msn...st/srchasst.htm ->
HKCU: Local Page -> C:\WINDOWS\system32\blank.htm ->
HKCU: Search Page ->
http://www.microsoft...amp;ar=iesearch ->
HKCU: Start Page ->
http://www.microsoft...p...&ar=msnhome ->
HKCU: ProxyEnable -> 0 ->
< Trusted Sites > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
msn.com [ - ] -> ->
< BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} [HKLM] -> %ProgramFiles%\Spyware Doctor\tools\iesdsg.dll [PCTools Site Guard] -> PC Tools [Ver = 3.6.0.2071 | Size = 825528 bytes | Modified Date = 8/1/2006 4:27:06 PM | Attr = ]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKLM] -> %ProgramFiles%\Java\jre1.5.0_11\bin\ssv.dll [SSVHelper Class] -> Sun Microsystems, Inc. [Ver = 5.0.110.3 | Size = 440056 bytes | Modified Date = 12/15/2006 4:23:24 AM | Attr = ]
{B56A7D7D-6927-48C8-A975-17DF180C71AC} [HKLM] -> %ProgramFiles%\Spyware Doctor\tools\iesdpb.dll [PCTools Browser Monitor] -> PC Tools [Ver = 3.6.0.2283 | Size = 850104 bytes | Modified Date = 8/1/2006 4:23:12 PM | Attr = ]
< Internet Explorer ToolBars [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ ->
WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM] -> Reg Data - Key not found [&Yahoo! Toolbar] -> File not found
< Internet Explorer Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKLM] -> %ProgramFiles%\Java\jre1.5.0_11\bin\npjpi150_11.dll [MenuText: Sun Java Console] -> Sun Microsystems, Inc. [Ver = 5.0.110.3 | Size = 75528 bytes | Modified Date = 12/15/2006 4:23:26 AM | Attr = ]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKCU] -> %ProgramFiles%\Java\jre1.5.0_11\bin\ssv.dll [MenuText: Sun Java Console] -> Sun Microsystems, Inc. [Ver = 5.0.110.3 | Size = 440056 bytes | Modified Date = 12/15/2006 4:23:24 AM | Attr = ]
{2D663D1A-8670-49D9-A1A5-4C56B4E14E84} -> Reg Data - Value does not exist [ButtonText: Spyware Doctor] -> File not found
{92780B25-18CC-41C8-B9BE-3C9C571A8263} -> Reg Data - Value does not exist [ButtonText: Research] -> File not found
{e2e2dd38-d088-4134-82b7-f2ba38496583} [HKLM] -> Reg Data - Key not found [MenuText: @xpsp3res.dll,-20001] -> File not found
< Internet Explorer Menu Extensions [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ ->
E&xport to Microsoft Excel -> -> File not found
< DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{A7F6FC32-6509-4D7F-8DF9-F192EF8777FD} -> (Marvell Yukon 88E8001/8003/8010 PCI Gigabit Ethernet Controller) ->
< Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
ipp -> Reg Data - Key not found -> File not found
msdaipp -> Reg Data - Key not found -> File not found
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{31435657-9980-0010-8000-00AA00389B71} -> - CodeBase =
http://download.micr...78f/wvc1dmo.cab ->
{8AD9C840-044E-11D1-B3E9-00805F499D93} -> Java Plug-in 1.5.0_11 - CodeBase =
http://java.sun.com/...indows-i586.cab ->
{8FFBE65D-2C9C-4669-84BD-5829DC0B603C} -> - CodeBase =
http://fpdownload.ma...h/ultrashim.cab ->
{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_10 - CodeBase =
http://java.sun.com/...indows-i586.cab ->
{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_11 - CodeBase =
http://java.sun.com/...indows-i586.cab ->
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_11 - CodeBase =
http://java.sun.com/...indows-i586.cab ->
[Files/Folders - Created Within 30 days]
Hellgate London Beta Setup -> %SystemDrive%\Hellgate London Beta Setup -> [Folder | Created Date = 9/19/2007 9:22:20 PM | Attr = ]
$NtUninstallKB904942$ -> %SystemRoot%\$NtUninstallKB904942$ -> [Folder | Created Date = 9/8/2007 9:39:58 AM | Attr = H ]
$NtUninstallKB915865$ -> %SystemRoot%\$NtUninstallKB915865$ -> [Folder | Created Date = 9/8/2007 9:46:47 AM | Attr = H ]
$NtUninstallKB933360$ -> %SystemRoot%\$NtUninstallKB933360$ -> [Folder | Created Date = 8/28/2007 10:00:37 PM | Attr = H ]
Ascd_tmp.ini -> %SystemRoot%\Ascd_tmp.ini -> [Ver = | Size = 3104 bytes | Created Date = 9/3/2007 7:28:36 PM | Attr = ]
QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Created Date = 9/25/2007 7:55:23 AM | Attr = ]
QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Created Date = 9/25/2007 7:55:23 AM | Attr = H ]
VirtualEar -> %SystemRoot%\VirtualEar -> [Folder | Created Date = 9/3/2007 7:29:53 PM | Attr = ]
{00000002-00000000-0000000D-00001102-00000008-10211102}.BAK -> %SystemRoot%\{00000002-00000000-0000000D-00001102-00000008-10211102}.BAK -> [Ver = | Size = 4958588 bytes | Created Date = 9/3/2007 7:39:23 PM | Attr = ]
{00000002-00000000-0000000D-00001102-00000008-10211102}.CDF -> %SystemRoot%\{00000002-00000000-0000000D-00001102-00000008-10211102}.CDF -> [Ver = | Size = 4958588 bytes | Created Date = 9/3/2007 7:32:12 PM | Attr = ]
Audio3d.dll -> %System32%\Audio3d.dll -> Sensaura Ltd [Ver = 4.12.01.2008 | Size = 720896 bytes | Created Date = 9/3/2007 7:29:53 PM | Attr = ]
BMXBkpCtrlState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> %System32%\BMXBkpCtrlState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> [Ver = | Size = 29604 bytes | Created Date = 9/3/2007 7:31:59 PM | Attr = ]
BMXCtrlState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> %System32%\BMXCtrlState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> [Ver = | Size = 29604 bytes | Created Date = 9/3/2007 7:31:59 PM | Attr = ]
BMXState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> %System32%\BMXState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> [Ver = | Size = 30600 bytes | Created Date = 9/3/2007 7:31:59 PM | Attr = ]
BMXStateBkp-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> %System32%\BMXStateBkp-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> [Ver = | Size = 30600 bytes | Created Date = 9/3/2007 7:31:59 PM | Attr = ]
CleanUp.exe -> %System32%\CleanUp.exe -> adi [Ver = 1, 0, 0, 2 | Size = 45056 bytes | Created Date = 9/3/2007 7:29:49 PM | Attr = ]
CTSVCCDA.EXE -> %System32%\CTSVCCDA.EXE -> Creative Technology Ltd [Ver = 1.0.1.0 | Size = 44032 bytes | Created Date = 9/3/2007 7:35:42 PM | Attr = ]
CTSVCCTL.EXE -> %System32%\CTSVCCTL.EXE -> Creative Technology Ltd [Ver = 1.0.0.0 | Size = 25088 bytes | Created Date = 9/3/2007 7:35:42 PM | Attr = ]
DSndUp.exe -> %System32%\DSndUp.exe -> Analog Devices Inc. [Ver = 1, 0, 0, 9 | Size = 49152 bytes | Created Date = 9/3/2007 7:29:48 PM | Attr = ]
DVCState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> %System32%\DVCState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> [Ver = | Size = 11564 bytes | Created Date = 9/3/2007 7:32:00 PM | Attr = ]
e10kxwdm.ini -> %System32%\e10kxwdm.ini -> [Ver = | Size = 46593 bytes | Created Date = 9/3/2007 7:29:45 PM | Attr = R ]
nvapps.nvb -> %System32%\nvapps.nvb -> [Ver = | Size = 135089 bytes | Created Date = 9/23/2007 1:10:04 PM | Attr = ]
SET9E.tmp -> %System32%\SET9E.tmp -> [Ver = | Size = 293446 bytes | Created Date = 9/3/2007 7:31:45 PM | Attr = R ]
settings.sfm -> %System32%\settings.sfm -> [Ver = | Size = 1080 bytes | Created Date = 9/3/2007 7:39:38 PM | Attr = ]
settingsbkup.sfm -> %System32%\settingsbkup.sfm -> [Ver = | Size = 1080 bytes | Created Date = 9/3/2007 7:39:38 PM | Attr = ]
SMMedia.dll -> %System32%\SMMedia.dll -> Analog Devices [Ver = 1, 0, 0, 8 | Size = 1285632 bytes | Created Date = 9/3/2007 7:30:01 PM | Attr = ]
wdmioctl.dll -> %System32%\wdmioctl.dll -> Analog Devices Inc. [Ver = 2, 0, 0, 3 | Size = 30208 bytes | Created Date = 9/3/2007 7:30:02 PM | Attr = ]
aeaudio.sys -> %System32%\drivers\aeaudio.sys -> Andrea Electronics Corporation [Ver = 3.0.2.32 | Size = 100224 bytes | Created Date = 9/3/2007 7:10:58 PM | Attr = ]
ianswxp.sys -> %System32%\drivers\ianswxp.sys -> Intel Corporation [Ver = 6.20.00.0000 built by: WinDDK | Size = 102400 bytes | Created Date = 9/3/2007 7:23:08 PM | Attr = R ]
MidiSyn.sys -> %System32%\drivers\MidiSyn.sys -> Analog Devices Inc [Ver = 3, 3, 7, 3 | Size = 235100 bytes | Created Date = 9/3/2007 7:30:45 PM | Attr = ]
smsens.sys -> %System32%\drivers\smsens.sys -> Analog Devices, Inc. [Ver = 5.12.01.0000 | Size = 3744 bytes | Created Date = 9/3/2007 7:10:58 PM | Attr = ]
smwdm.sys -> %System32%\drivers\smwdm.sys -> Analog Devices, Inc. [Ver = 5.12.01.3630 | Size = 578304 bytes | Created Date = 9/3/2007 7:10:58 PM | Attr = ]
tmvsthfud.bin -> %System32%\drivers\etc\tmvsthfud.bin -> [Ver = | Size = 734 bytes | Created Date = 9/19/2007 10:25:53 PM | Attr = ]
[Files/Folders - Modified Within 30 days]
boot.ini -> %SystemDrive%\boot.ini -> [Ver = | Size = 211 bytes | Modified Date = 9/17/2007 5:08:58 PM | Attr = HS]
Hellgate London Beta Setup -> %SystemDrive%\Hellgate London Beta Setup -> [Folder | Modified Date = 9/18/2007 5:35:30 PM | Attr = ]
Program Files -> %ProgramFiles% -> [Folder | Modified Date = 9/19/2007 10:31:04 PM | Attr = R ]
WINDOWS -> %SystemRoot% -> [Folder | Modified Date = 9/25/2007 8:55:24 AM | Attr = ]
$hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Modified Date = 9/8/2007 11:41:52 AM | Attr = H ]
$NtUninstallKB904942$ -> %SystemRoot%\$NtUninstallKB904942$ -> [Folder | Modified Date = 9/8/2007 10:40:02 AM | Attr = H ]
$NtUninstallKB915865$ -> %SystemRoot%\$NtUninstallKB915865$ -> [Folder | Modified Date = 9/8/2007 10:46:54 AM | Attr = H ]
$NtUninstallKB933360$ -> %SystemRoot%\$NtUninstallKB933360$ -> [Folder | Modified Date = 8/28/2007 11:00:40 PM | Attr = H ]
Ascd_tmp.ini -> %SystemRoot%\Ascd_tmp.ini -> [Ver = | Size = 3104 bytes | Modified Date = 9/3/2007 8:28:38 PM | Attr = ]
bootstat.dat -> %SystemRoot%\bootstat.dat -> [Ver = | Size = 2048 bytes | Modified Date = 9/25/2007 8:19:06 AM | Attr = S]
Help -> %SystemRoot%\Help -> [Folder | Modified Date = 9/23/2007 2:09:30 PM | Attr = ]
ie7 -> %SystemRoot%\ie7 -> [Folder | Modified Date = 9/8/2007 11:00:20 AM | Attr = H ]
ie7updates -> %SystemRoot%\ie7updates -> [Folder | Modified Date = 9/8/2007 11:00:54 PM | Attr = ]
imsins.BAK -> %SystemRoot%\imsins.BAK -> [Ver = | Size = 1355 bytes | Modified Date = 9/8/2007 11:01:06 PM | Attr = ]
inf -> %SystemRoot%\inf -> [Folder | Modified Date = 9/23/2007 2:09:04 PM | Attr = H ]
Installer -> %SystemRoot%\Installer -> [Folder | Modified Date = 9/19/2007 10:52:08 PM | Attr = HS]
MEMORY.DMP -> %SystemRoot%\MEMORY.DMP -> [Ver = | Size = 2145386496 bytes | Modified Date = 9/17/2007 4:31:32 PM | Attr = ]
Microsoft.NET -> %SystemRoot%\Microsoft.NET -> [Folder | Modified Date = 9/25/2007 8:46:10 AM | Attr = ]
Minidump -> %SystemRoot%\Minidump -> [Folder | Modified Date = 9/17/2007 4:31:36 PM | Attr = ]
nview -> %SystemRoot%\nview -> [Folder | Modified Date = 9/23/2007 2:13:10 PM | Attr = ]
Prefetch -> %SystemRoot%\Prefetch -> [Folder | Modified Date = 9/25/2007 1:25:32 PM | Attr = ]
QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Modified Date = 9/25/2007 8:55:24 AM | Attr = ]
QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Modified Date = 9/25/2007 8:55:24 AM | Attr = H ]
setupapi.log.0.old -> %SystemRoot%\setupapi.log.0.old -> [Ver = | Size = 1034450 bytes | Modified Date = 9/8/2007 10:34:50 AM | Attr = ]
system -> %SystemRoot%\system -> [Folder | Modified Date = 9/3/2007 8:29:56 PM | Attr = ]
system.ini -> %SystemRoot%\system.ini -> [Ver = | Size = 227 bytes | Modified Date = 9/17/2007 5:08:58 PM | Attr = ]
system.tmp -> %SystemRoot%\system.tmp -> [Ver = | Size = 227 bytes | Modified Date = 9/17/2007 5:08:58 PM | Attr = ]
system32 -> %System32% -> [Folder | Modified Date = 9/23/2007 2:13:10 PM | Attr = ]
Temp -> %SystemRoot%\Temp -> [Folder | Modified Date = 9/25/2007 1:24:36 PM | Attr = ]
VirtualEar -> %SystemRoot%\VirtualEar -> [Folder | Modified Date = 9/3/2007 8:29:56 PM | Attr = ]
win.ini -> %SystemRoot%\win.ini -> [Ver = | Size = 589 bytes | Modified Date = 9/17/2007 5:08:58 PM | Attr = ]
win.tmp -> %SystemRoot%\win.tmp -> [Ver = | Size = 589 bytes | Modified Date = 9/17/2007 5:08:58 PM | Attr = ]
{00000002-00000000-0000000D-00001102-00000008-10211102}.BAK -> %SystemRoot%\{00000002-00000000-0000000D-00001102-00000008-10211102}.BAK -> [Ver = | Size = 4958588 bytes | Modified Date = 9/17/2007 5:49:56 PM | Attr = ]
{00000002-00000000-0000000D-00001102-00000008-10211102}.CDF -> %SystemRoot%\{00000002-00000000-0000000D-00001102-00000008-10211102}.CDF -> [Ver = | Size = 4958588 bytes | Modified Date = 9/17/2007 5:49:56 PM | Attr = ]
SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Modified Date = 9/25/2007 8:19:08 AM | Attr = H ]
wrSpySweeper_FE67D2A14E894D4C995948D4A5F846AA.job -> %SystemRoot%\tasks\wrSpySweeper_FE67D2A14E894D4C995948D4A5F846AA.job -> [Ver = | Size = 1630 bytes | Modified Date = 9/17/2007 5:00:04 AM | Attr = ]
BMXBkpCtrlState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> %System32%\BMXBkpCtrlState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> [Ver = | Size = 29604 bytes | Modified Date = 9/24/2007 10:31:04 PM | Attr = ]
BMXCtrlState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> %System32%\BMXCtrlState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> [Ver = | Size = 29604 bytes | Modified Date = 9/24/2007 10:31:04 PM | Attr = ]
BMXState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> %System32%\BMXState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> [Ver = | Size = 30600 bytes | Modified Date = 9/24/2007 10:31:04 PM | Attr = ]
BMXStateBkp-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> %System32%\BMXStateBkp-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> [Ver = | Size = 30600 bytes | Modified Date = 9/24/2007 10:31:04 PM | Attr = ]
CatRoot -> %System32%\CatRoot -> [Folder | Modified Date = 9/8/2007 10:54:32 AM | Attr = ]
CatRoot2 -> %System32%\CatRoot2 -> [Folder | Modified Date = 9/25/2007 9:58:44 AM | Attr = ]
config -> %System32%\config -> [Folder | Modified Date = 9/17/2007 5:49:30 PM | Attr = ]
Data -> %System32%\Data -> [Folder | Modified Date = 9/5/2007 10:24:24 PM | Attr = ]
Defaults -> %System32%\Defaults -> [Folder | Modified Date = 9/3/2007 8:32:46 PM | Attr = ]
DirectX -> %System32%\DirectX -> [Folder | Modified Date = 9/19/2007 10:52:02 PM | Attr = ]
dllcache -> %System32%\dllcache -> [Folder | Modified Date = 9/15/2007 8:01:16 AM | Attr = RHS]
drivers -> %System32%\drivers -> [Folder | Modified Date = 9/23/2007 2:09:12 PM | Attr = ]
DVCState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> %System32%\DVCState-{00000002-00000000-0000000D-00001102-00000008-10211102}.rfx -> [Ver = | Size = 11564 bytes | Modified Date = 9/24/2007 10:31:04 PM | Attr = ]
keystone.exe -> %System32%\keystone.exe -> [Ver = | Size = 425984 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nv4_disp.dll -> %System32%\nv4_disp.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 5783040 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvapi.dll -> %System32%\nvapi.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 364544 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvappbar.exe -> %System32%\nvappbar.exe -> [Ver = | Size = 442368 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvapps.nvb -> %System32%\nvapps.nvb -> [Ver = | Size = 135089 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvapps.xml -> %System32%\nvapps.xml -> [Ver = | Size = 91949 bytes | Modified Date = 9/24/2007 8:35:00 PM | Attr = ]
nvcod.dll -> %System32%\nvcod.dll -> NVIDIA Corporation [Ver = 1 , 0 , 0 , 35 | Size = 36864 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvcodins.dll -> %System32%\nvcodins.dll -> NVIDIA Corporation [Ver = 1 , 0 , 0 , 35 | Size = 36864 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvcolor.exe -> %System32%\nvcolor.exe -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 147456 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvcpl.cpl -> %System32%\nvcpl.cpl -> NVIDIA Corporation [Ver = 1.4.900.10 | Size = 413696 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvcpl.dll -> %System32%\nvcpl.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 8491008 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvcplui.exe -> %System32%\nvcplui.exe -> NVIDIA Corporation [Ver = 1.4.900.10 | Size = 753664 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvdisp.nvu -> %System32%\nvdisp.nvu -> [Ver = | Size = 17525 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvdisps.dll -> %System32%\nvdisps.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 6344704 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvdspsch.exe -> %System32%\nvdspsch.exe -> [Ver = | Size = 1339392 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvexpbar.dll -> %System32%\nvexpbar.dll -> NVIDIA Corporation [Ver = 1.4.900.10 | Size = 307200 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvgames.dll -> %System32%\nvgames.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 3334144 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nview.dll -> %System32%\nview.dll -> [Ver = | Size = 1478656 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvmccs.dll -> %System32%\nvmccs.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 229376 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvmccsrs.dll -> %System32%\nvmccsrs.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 45056 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvmccss.dll -> %System32%\nvmccss.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 188416 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvmctray.dll -> %System32%\nvmctray.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 81920 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvmobls.dll -> %System32%\nvmobls.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 1150976 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvnt4cpl.dll -> %System32%\nvnt4cpl.dll -> [Ver = | Size = 286720 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvoglnt.dll -> %System32%\nvoglnt.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 6746112 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvshell.dll -> %System32%\nvshell.dll -> [Ver = | Size = 466944 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvsvc32.exe -> %System32%\nvsvc32.exe -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 155716 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvtuicpl.cpl -> %System32%\nvtuicpl.cpl -> [Ver = | Size = 73728 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvudisp.exe -> %System32%\nvudisp.exe -> NVIDIA Corporation [Ver = 1 , 0 , 1 , 56 | Size = 356352 bytes | Modified Date = 9/17/2007 2:10:36 AM | Attr = ]
NVUNINST.EXE -> %System32%\NVUNINST.EXE -> NVIDIA Corporation [Ver = 1 , 0 , 1 , 56 | Size = 356352 bytes | Modified Date = 9/17/2007 2:10:36 AM | Attr = ]
nvvitvs.dll -> %System32%\nvvitvs.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 3551232 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvwddi.dll -> %System32%\nvwddi.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 81920 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvwdmcpl.dll -> %System32%\nvwdmcpl.dll -> [Ver = | Size = 1703936 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvwimg.dll -> %System32%\nvwimg.dll -> [Ver = | Size = 1019904 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nvwss.dll -> %System32%\nvwss.dll -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 2371584 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
nwiz.exe -> %System32%\nwiz.exe -> [Ver = | Size = 1626112 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
OpenAL32.dll -> %System32%\OpenAL32.dll -> Portions © Creative Labs Inc. and NVIDIA Corp. [Ver = 6.14.0357.13 | Size = 86016 bytes | Modified Date = 9/3/2007 8:32:12 PM | Attr = ]
perfc009.dat -> %System32%\perfc009.dat -> [Ver = | Size = 62344 bytes | Modified Date = 9/5/2007 10:11:08 PM | Attr = ]
perfh009.dat -> %System32%\perfh009.dat -> [Ver = | Size = 401064 bytes | Modified Date = 9/5/2007 10:11:08 PM | Attr = ]
PerfStringBackup.INI -> %System32%\PerfStringBackup.INI -> [Ver = | Size = 471326 bytes | Modified Date = 9/5/2007 10:11:08 PM | Attr = ]
settings.sfm -> %System32%\settings.sfm -> [Ver = | Size = 1080 bytes | Modified Date = 9/5/2007 10:39:36 PM | Attr = ]
settingsbkup.sfm -> %System32%\settingsbkup.sfm -> [Ver = | Size = 1080 bytes | Modified Date = 9/5/2007 10:39:36 PM | Attr = ]
wpa.dbl -> %System32%\wpa.dbl -> [Ver = | Size = 13688 bytes | Modified Date = 9/25/2007 8:21:58 AM | Attr = ]
wrap_oal.dll -> %System32%\wrap_oal.dll -> Creative Labs [Ver = 2.0.8.0 | Size = 409600 bytes | Modified Date = 9/3/2007 8:32:12 PM | Attr = ]
etc -> %System32%\drivers\etc -> [Folder | Modified Date = 9/25/2007 1:24:34 PM | Attr = ]
nv4_mini.sys -> %System32%\drivers\nv4_mini.sys -> NVIDIA Corporation [Ver = 6.14.11.6371 | Size = 6853088 bytes | Modified Date = 9/17/2007 1:07:00 AM | Attr = ]
tmvsthfss.bin -> %System32%\drivers\etc\tmvsthfss.bin -> [Ver = | Size = 734 bytes | Modified Date = 9/25/2007 1:23:50 PM | Attr = ]
tmvsthfud.bin -> %System32%\drivers\etc\tmvsthfud.bin -> [Ver = | Size = 734 bytes | Modified Date = 9/25/2007 1:24:34 PM | Attr = ]
[File String Scan - Non-Microsoft Only]
File scan skipped for file %SystemRoot%\MEMORY.DMP -> File size too big (2145386496 bytes) ->
Thawte Consulting , -> %System32%\AddCat.exe -> Creative Technology Ltd. [Ver = 0.0.0.1 | Size = 48400 bytes | Modified Date = 4/9/2007 11:25:36 AM | Attr = ]
Thawte Consulting , -> %System32%\ctpxinst.exe -> Creative Technology Ltd [Ver = 1, 1, 0, 58 | Size = 58104 bytes | Modified Date = 11/14/2006 9:01:30 AM | Attr = ]
PEC2 , -> %System32%\dfrg.msc -> [Ver = | Size = 41397 bytes | Modified Date = 2/28/2006 5:00:00 AM | Attr = ]
Thawte Consulting , -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2568 | Size = 185952 bytes | Modified Date = 10/7/2006 5:18:32 AM | Attr = ]
winsync , -> %System32%\wbdbase.deu -> [Ver = | Size = 1309184 bytes | Modified Date = 2/28/2006 5:00:00 AM | Attr = ]
Thawte Consulting , -> %System32%\XceedCry.dll -> Xceed Software Inc (450) 442-2626
[email protected] www.xceedsoft.com [Ver = 1.1.103.0 | Size = 516656 bytes | Modified Date = 2/2/2003 1:01:34 PM | Attr = ]
Thawte Consulting , -> %System32%\XceedSco.dll -> Xceed Software Inc (450) 442-2626
[email protected] www.xceedsoft.com [Ver = 1.1.104.0 | Size = 266952 bytes | Modified Date = 5/19/2003 12:37:20 PM | Attr = ]
WSUD , UPX0 , -> %System32%\dllcache\hwxjpn.dll -> [Ver = | Size = 13463552 bytes | Modified Date = 2/28/2006 5:00:00 AM | Attr = ]
UPX! , aspack , -> %System32%\drivers\VsapiNT.sys -> Trend Micro Inc. [Ver = 8.500-1002 | Size = 1126328 bytes | Modified Date = 6/12/2007 6:52:00 PM | Attr = ]
< End of report >