Problem With Vundo and others possibly [RESOLVED] |
![]() ![]() |
Problem With Vundo and others possibly [RESOLVED] |
Jul 13 2007, 09:05 PM
Post
#1
|
|
|
Member ![]() ![]() Posts: 13 OS: Windows XP SP2 |
hey ive followed the list of things to do before posting and here are my logs from the whole process.
AVG Spyware: i couldnt do an AVG scan in safe mode because my PC wouldnt start up in safe mode. so i did a scan after loading windows but it didnt generate a log for some reason. SUPERAntiSpyware Home Edition: SUPERAntiSpyware Scan Log Generated 07/13/2007 at 11:29 AM Application Version : 3.6.1000 Core Rules Database Version : 3190 Trace Rules Database Version: 1200 Scan type : Complete Scan Total Scan Time : 02:58:35 Memory items scanned : 495 Memory threats detected : 1 Registry items scanned : 6748 Registry threats detected : 6 File items scanned : 137742 File threats detected : 1 Adware.Vundo Variant C:\WINDOWS\SYSTEM32\MLJGD.DLL C:\WINDOWS\SYSTEM32\MLJGD.DLL HKLM\Software\Classes\CLSID\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1} HKCR\CLSID\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1} HKCR\CLSID\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1}\InprocServer32 HKCR\CLSID\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1}\InprocServer32#ThreadingModel HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1} Software\Microsoft\Windows NT\CurrentVersion\WinLogon\Notify\mljgd Panda Software active Scan: Incident Status Location Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\znl9n4pq.default\cookies.txt[.atwola.com/] Spyware:Cookie/did-it Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\znl9n4pq.default\cookies.txt[.did-it.com/] Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\znl9n4pq.default\cookies.txt[.xiti.com/] Spyware:Cookie/Systemdoctor Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\znl9n4pq.default\cookies.txt[systemdoctor.com/] Virus:Generic Malware Disinfected C:\Documents and Settings\Owner\My Documents\msnpolygamy-universal.zip[msn_messenger_polygamy_5.exe] Virus:Generic Malware Disinfected C:\Documents and Settings\Owner\My Documents\msnpolygamy-universalpatch(www.mess.be).zip[msn_messenger_polygamy_5.exe] Potentially unwanted tool:Application/KillApp.B Not disinfected C:\hp\bin\KillIt.exe Potentially unwanted tool:Application/KillApp.A Not disinfected C:\hp\bin\Terminator.exe Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\auspwmeo.dll Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\jxryjudy.dll Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\psstioto.dll Adware:Adware/Lop Not disinfected M:\k drive\WarezP2P.exe[7k43.exe] Spyware:Spyware/Hyperbar Not disinfected M:\k drive\WarezP2P.exe[NavHelperInner.msi][unk_0016][HyperbarSS3.dll] Spyware:Spyware/Hyperbar Not disinfected M:\k drive\WarezP2P.exe[NavHelperInner.msi][unk_0016][Hyperbar.dll] Spyware:Spyware/New.net Not disinfected M:\k drive\WarezP2P.exe[NNWARZ3_88.exe] Adware:Adware/Lop Not disinfected M:\k drive\Download\WarezP2P.exe[7k43.exe] Spyware:Spyware/Hyperbar Not disinfected M:\k drive\Download\WarezP2P.exe[NavHelperInner.msi][unk_0016][HyperbarSS3.dll] Spyware:Spyware/Hyperbar Not disinfected M:\k drive\Download\WarezP2P.exe[NavHelperInner.msi][unk_0016][Hyperbar.dll] Spyware:Spyware/New.net Not disinfected M:\k drive\Download\WarezP2P.exe[NNWARZ3_88.exe] Virus:Generic Malware Disinfected N:\My Documents\msnpolygamy-universal.zip[msn_messenger_polygamy_5.exe] Virus:Generic Malware Disinfected N:\My Documents\msnpolygamy-universalpatch(www.mess.be).zip[msn_messenger_polygamy_5.exe] Virus:Trj/Clicker.ABJ Not disinfected N:\Microsoft.Office.Pro.2007.TimeStop.Activation.Crack[MS.Activator.nGen.DYNAM CS]\msop07_tsa.exe[post ext sp6.exe] HijackThis Log: Logfile of HijackThis v1.99.1 Scan saved at 03:47:41, on 14/07/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\windows\system\hpsysdrv.exe C:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe C:\WINDOWS\System32\hphmon05.exe C:\HP\KBD\KBD.EXE C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Multimedia Card Reader\shwicon2k.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Program Files\Belkin\Bluetooth Software\BTTray.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\PROGRA~1\Belkin\BLUETO~1\BTSTAC~1.EXE C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://gb10.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-gb10.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-gb10.hpwis.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.le.ac.uk/sm/le/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://gb10.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-gb10.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-gb10.hpwis.com/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://gb10.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.apple.com/itunes/download/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file) O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: (no name) - {C5FCE753-7E3E-414C-815E-86AF82D8817A} - C:\WINDOWS\system32\cbxyyyx.dll (file missing) O2 - BHO: (no name) - {CD5ECF32-3048-4B8B-94DA-0B473F009BD1} - (no file) O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file) O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\program files\hp\digital imaging\bin\hpdtlk02.dll O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect O4 - HKLM\..\Run: [VTTimer] VTTimer.exe O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe O4 - HKLM\..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe /autostart O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-GB ee://aol/imApp O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie_ctx.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\btxppanel.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll O20 - Winlogon Notify: cbxyyyx - cbxyyyx.dll (file missing) O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe O23 - Service: Belkin 54g Wireless USB Network Adapter (Belkin 54g Wireless USB Network Adapter Service) - Unknown owner - C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe O23 - Service: DomainService - Unknown owner - C:\WINDOWS\system32\uxljvstc.exe (file missing) O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe HijackThis Uninstall Log: Ad-Aware 2007 Adobe Anchor Service CS3 Adobe Asset Services CS3 Adobe Audition 2.0 Adobe Bridge 1.0 Adobe Bridge CS3 Adobe Bridge Start Meeting Adobe Camera Raw 4.0 Adobe CMaps Adobe Color - Photoshop Specific Adobe Color Common Settings Adobe Color Common Settings Adobe Color EU Extra Settings Adobe Color JA Extra Settings Adobe Color NA Recommended Settings Adobe Common File Installer Adobe Default Language CS3 Adobe Device Central CS3 Adobe ExtendScript Toolkit 2 Adobe ExtendScript Toolkit 2 Adobe Flash Player ActiveX Adobe Fonts All Adobe Help Center 2.0 Adobe Help Viewer CS3 Adobe Linguistics CS3 Adobe PDF Library Files Adobe Photoshop CS3 Adobe Photoshop CS3 Adobe Reader 6.0 Adobe Setup Adobe Setup Adobe Setup Adobe Stock Photos CS3 Adobe Type Support Adobe Update Manager CS3 Adobe Version Cue CS3 Client Adobe WinSoft Linguistics Plugin Adobe XMP Panels CS3 AIM 6 Apple Mobile Device Support Apple Software Update ArcSoft PhotoStudio 5.5 ArcSoft ShowBiz 2 ATI Control Panel ATI Display Driver AVG Anti-Spyware 7.5 AVG Free Edition Belkin 54g USB Network Adapter Belkin Bluetooth Software Canon MP Navigator 3.0 Canon MP600 Canon MP600 User Registration Canon Utilities Easy-PhotoPrint CD-LabelPrint DivX DivX Player DVD Shrink 3.2 Easy Internet Sign-up Easy-WebPrint ffdshow (remove only) Google Talk (remove only) Hijackthis 1.99.1 HijackThis 1.99.1 HP Deskjet Preloaded Printer Drivers HP Photo & Imaging 3.1 HP Photo and Imaging 2.0 - Photosmart Cameras HP PSC & OfficeJet 3.0 HP Software Update HPIZ311 Intel® Extreme Graphics Driver InterVideo WinDVD Player iPod for Windows 2006-03-23 iTunes Java 2 Runtime Environment, SE v1.4.2 KBD Magic ISO Maker v5.3 (build 0221) Memories Disc Creator 2.0 Messenger Plus! Live Microsoft .NET Framework 1.1 Microsoft .NET Framework 1.1 Microsoft .NET Framework 1.1 Hotfix (KB928366) Microsoft ActiveSync 3.8 Microsoft AutoRoute v11.0 Microsoft Encarta Encyclopedia Standard - WE 2004 Microsoft Money Microsoft Money System Pack Microsoft Office Professional Edition 2003 Microsoft Picture It! Photo Standard 9 Microsoft Works 2004 Setup Launcher Mozilla Firefox (2.0.0.4) MSXML 4.0 SP2 (KB927978) Multimedia Card Reader Nero 7 Ultra Edition NVIDIA GART Driver Panda ActiveScan PC-Doctor for Windows PDF Settings Photosmart 140,240,7200,7600,7700,7900 Series PS2 Python 2.2 combined Win32 extensions Python 2.2.1 QuickTime RealPlayer RecordNow! SAMSUNG CDMA Modem Driver Set SAMSUNG Mobile USB Modem 1.0 Software SAMSUNG Mobile USB Modem Software Samsung PC Studio Samsung PC Studio 3 USB Driver Installer ScanSoft OmniPage SE 4.0 Security Update for Step By Step Interactive Training (KB923723) Security Update for Windows Media Player (KB911564) Security Update for Windows Media Player 6.4 (KB925398) Security Update for Windows Media Player 9 (KB917734) Security Update for Windows XP (KB890046) Security Update for Windows XP (KB893756) Security Update for Windows XP (KB896358) Security Update for Windows XP (KB896423) Security Update for Windows XP (KB896428) Security Update for Windows XP (KB899587) Security Update for Windows XP (KB899591) Security Update for Windows XP (KB900725) Security Update for Windows XP (KB901017) Security Update for Windows XP (KB901214) Security Update for Windows XP (KB902400) Security Update for Windows XP (KB904706) Security Update for Windows XP (KB905414) Security Update for Windows XP (KB905749) Security Update for Windows XP (KB908519) Security Update for Windows XP (KB911562) Security Update for Windows XP (KB911927) Security Update for Windows XP (KB913580) Security Update for Windows XP (KB914388) Security Update for Windows XP (KB914389) Security Update for Windows XP (KB917344) Security Update for Windows XP (KB917953) Security Update for Windows XP (KB918118) Security Update for Windows XP (KB918439) Security Update for Windows XP (KB919007) Security Update for Windows XP (KB920213) Security Update for Windows XP (KB920670) Security Update for Windows XP (KB920683) Security Update for Windows XP (KB920685) Security Update for Windows XP (KB922819) Security Update for Windows XP (KB923191) Security Update for Windows XP (KB923414) Security Update for Windows XP (KB923689) Security Update for Windows XP (KB923789) Security Update for Windows XP (KB923980) Security Update for Windows XP (KB924191) Security Update for Windows XP (KB924270) Security Update for Windows XP (KB924496) Security Update for Windows XP (KB924667) Security Update for Windows XP (KB925902) Security Update for Windows XP (KB926255) Security Update for Windows XP (KB926436) Security Update for Windows XP (KB927779) Security Update for Windows XP (KB927802) Security Update for Windows XP (KB928255) Security Update for Windows XP (KB928843) Security Update for Windows XP (KB929123) Security Update for Windows XP (KB929969) Security Update for Windows XP (KB930178) Security Update for Windows XP (KB931261) Security Update for Windows XP (KB931784) Security Update for Windows XP (KB932168) Security Update for Windows XP (KB933566) Security Update for Windows XP (KB935839) Security Update for Windows XP (KB935840) Shockwave Sonic Update Manager Spybot - Search & Destroy 1.4 SUPERAntiSpyware Free Edition Update for Windows XP (KB894391) Update for Windows XP (KB898461) Update for Windows XP (KB900485) Update for Windows XP (KB908531) Update for Windows XP (KB910437) Update for Windows XP (KB911280) Update for Windows XP (KB916595) Update for Windows XP (KB920872) Update for Windows XP (KB922582) Update for Windows XP (KB927891) Update for Windows XP (KB930916) Update for Windows XP (KB931836) Update for Windows XP (KB936357) ViaMichelin Navigation X-930 Viewpoint Media Player Vodafone 804SS USB driver Software Windows Installer 3.1 (KB893803) Windows Live Messenger Windows Media Format Runtime Windows XP Hotfix - KB873339 Windows XP Hotfix - KB885835 Windows XP Hotfix - KB885836 Windows XP Hotfix - KB886185 Windows XP Hotfix - KB887472 Windows XP Hotfix - KB888302 Windows XP Hotfix - KB890859 Windows XP Hotfix - KB891781 Windows XP Service Pack 2 WinRAR archiver WinZip XviD MPEG-4 Video Codec Yahoo! Messenger My windows is totally up to date, and i have been running AVG antivirus for a very long time and it is regularly updated on a daily basis. I am also running Ad-Aware 2007 Pro. Please could you help me with this problem, as the problem seems to just keep coming back Thankyou in advance and i hope to hear from you soon. m8edy |
|
|
Jul 17 2007, 02:32 PM
Post
#2
|
|
![]() GeekU Moderator Posts: 18,766 From: Darkest Cornwall OS: Vista Ultimate & Windows 7 |
Hi there sorry for the delay, OK lets get off to a flying start then
Download ComboFix from Here or Here to your Desktop.
Logs required are Combofix and Hijackthis |
|
|
Jul 17 2007, 03:17 PM
Post
#3
|
|
|
Member ![]() ![]() Posts: 13 OS: Windows XP SP2 |
hey
ok ive done as you asked and here are the two logs you requested: Combofix log: "Owner" - 2007-07-17 21:47:28 - ComboFix 07-07-13.8 - Service Pack 2 NTFS (((((((((((((((((((((((((((((((((((((((((((( V Log ))))))))))))))))))))))))))))))))))))))))))))))))))))))) C:\WINDOWS\system32\auspwmeo.dll C:\WINDOWS\system32\jxryjudy.dll C:\WINDOWS\system32\psstioto.dll C:\WINDOWS\system32\oemwpsua.ini C:\WINDOWS\system32\ydujyrxj.ini C:\WINDOWS\system32\otoitssp.ini C:\WINDOWS\system32\dgjlm.bak1 C:\WINDOWS\system32\dgjlm.bak2 C:\WINDOWS\system32\dgjlm.ini C:\WINDOWS\system32\dgjlm.ini2 C:\WINDOWS\system32\dgjlm.tmp C:\WINDOWS\system32\dgjlm.bak1 C:\WINDOWS\system32\dgjlm.bak2 C:\WINDOWS\system32\dgjlm.ini C:\WINDOWS\system32\dgjlm.ini2 C:\WINDOWS\system32\dgjlm.tmp * * * POST RUN FILES/FOLDERS * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) -------\LEGACY_DOMAINSERVICE -------\DomainService ((((((((((((((((((((((((( Files Created from 2007-06-17 to 2007-07-17 ))))))))))))))))))))))))))))))) 2007-07-17 21:43 51,200 --a------ C:\WINDOWS\nircmd.exe 2007-07-15 10:21 <DIR> d-------- C:\Program Files\Microsoft AutoRoute 2007-07-15 10:10 <DIR> d-------- C:\Program Files\Microsoft Works 2007-07-14 00:54 8,576 --a------ C:\WINDOWS\system32\drivers\nwnrmhgthyco.sys 2007-07-14 00:46 <DIR> d-------- C:\WINDOWS\system32\ActiveScan 2007-07-13 08:28 <DIR> d-------- C:\Program Files\SUPERAntiSpyware 2007-07-13 08:28 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\SUPERAntiSpyware.com 2007-07-13 08:28 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com 2007-07-13 05:49 1,048,576 --ah----- C:\DOCUME~1\ADMINI~1\NTUSER.DAT 2007-07-13 05:49 <DIR> d-------- C:\DOCUME~1\ADMINI~1\WINDOWS 2007-07-13 05:49 <DIR> d-------- C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec 2007-07-13 05:49 <DIR> d-------- C:\DOCUME~1\ADMINI~1\APPLIC~1\Sonic 2007-07-13 05:49 <DIR> d-------- C:\DOCUME~1\ADMINI~1\APPLIC~1\SampleView 2007-07-13 05:43 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys 2007-07-13 02:39 <DIR> d-------- C:\Program Files\iTunes 2007-07-12 22:44 66,580 --a------ C:\WINDOWS\system32\rbxeiyjn.dll 2007-07-11 22:41 66,580 --a------ C:\WINDOWS\system32\vwsjvrrr.dll 2007-07-11 21:58 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy 2007-07-11 21:10 66,580 --a------ C:\WINDOWS\system32\dhiamwpr.dll 2007-07-09 05:23 <DIR> d-------- C:\Program Files\XviD 2007-07-09 05:22 <DIR> d-------- C:\Program Files\DivX 2007-07-09 05:21 <DIR> d-------- C:\Program Files\ffdshow 2007-07-08 21:35 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\Motive 2007-07-04 03:47 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\acccore 2007-07-04 02:59 104,064 -ra------ C:\WINDOWS\system32\drivers\wceusbsh.sys 2007-07-04 02:04 <DIR> d-------- C:\Program Files\AvantGo Connect 2007-07-04 02:02 77,899 --a------ C:\WINDOWS\system32\rapi.dll 2007-07-04 02:02 65,615 --a------ C:\WINDOWS\system32\pmailext.dll 2007-07-04 02:02 65,613 --a------ C:\WINDOWS\system32\ppvexp.dll 2007-07-04 02:02 57,423 --a------ C:\WINDOWS\system32\MsgStRPC.dll 2007-07-04 02:02 36,942 --a------ C:\WINDOWS\system32\ppcload.dll 2007-07-04 02:02 24,653 --a------ C:\WINDOWS\system32\ceutil.dll 2007-07-04 02:02 24,652 --a------ C:\WINDOWS\system32\uicom.dll 2007-07-04 02:02 114,688 --a------ C:\WINDOWS\system32\malslib.dll 2007-07-04 00:21 <DIR> d-------- C:\Program Files\ViaMichelin 2007-07-03 23:44 1,156 --a------ C:\WINDOWS\mozver.dat 2007-07-03 22:05 <DIR> d-------- C:\DOCUME~1\Owner\Shared 2007-07-03 21:43 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe Systems 2007-07-03 21:22 <DIR> d-------- C:\Program Files\Common Files\Adobe Systems Shared 2007-07-03 20:50 <DIR> d-------- C:\Program Files\Bonjour 2007-07-03 20:21 <DIR> d-------- C:\Program Files\Common Files\Macrovision Shared 2007-07-03 19:14 <DIR> d-------- C:\WINDOWS\SxsCaPendDel 2007-07-03 04:24 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! 2007-07-03 04:01 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\FLEXnet 2007-07-03 02:15 <DIR> d-------- C:\Program Files\DVD Shrink 2007-07-03 02:15 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink 2007-07-03 00:35 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL OCP 2007-07-03 00:35 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL 2007-07-03 00:34 <DIR> d-------- C:\Program Files\Viewpoint 2007-07-03 00:34 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint 2007-07-03 00:33 <DIR> d-------- C:\Program Files\Common Files\AOL 2007-07-03 00:32 <DIR> d-------- C:\Program Files\AIM6 2007-07-03 00:29 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads 2007-07-03 00:04 <DIR> d-------- C:\Program Files\Google 2007-07-03 00:01 <DIR> d-------- C:\Program Files\Yahoo! 2007-07-02 23:21 53,760 --a------ C:\WINDOWS\system32\vfwwdm32.dll 2007-07-02 23:21 48,128 --a------ C:\WINDOWS\system32\drivers\61883.sys 2007-07-02 23:21 38,912 --a------ C:\WINDOWS\system32\drivers\avc.sys 2007-07-02 22:40 335 --a------ C:\WINDOWS\nsreg.dat 2007-07-02 22:13 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\Samsung 2007-07-02 21:39 <DIR> d-------- C:\Program Files\Lavasoft 2007-07-02 21:39 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft 2007-07-02 21:38 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard 2007-07-02 21:09 <DIR> d-------- C:\Program Files\MSXML 4.0 2007-07-02 20:31 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage 2007-07-02 20:27 <DIR> d---s---- C:\DOCUME~1\Owner\UserData 2007-07-02 19:43 <DIR> d-------- C:\Program Files\MagicISO 2007-07-02 19:26 <DIR> d-------- C:\Program Files\Common Files\xing shared 2007-07-02 19:25 <DIR> d-------- C:\Program Files\Real 2007-07-02 19:25 <DIR> d-------- C:\Program Files\Common Files\Real 2007-07-02 19:25 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\Real 2007-07-02 19:22 <DIR> d-------- C:\My Downloads 2007-07-02 19:16 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\WinRAR 2007-07-02 17:33 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\uTorrent 2007-07-02 17:03 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\Ahead 2007-07-02 17:01 <DIR> d-------- C:\Program Files\Nero 2007-07-02 17:01 <DIR> d-------- C:\Program Files\Common Files\Ahead 2007-07-02 17:01 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero 2007-07-02 15:51 <DIR> d-------- C:\DOCUME~1\Guest\Bluetooth Software 2007-07-02 15:51 <DIR> d-------- C:\DOCUME~1\Guest\APPLIC~1\Apple Computer 2007-07-02 15:50 1,048,576 --ah----- C:\DOCUME~1\Guest\NTUSER.DAT 2007-07-02 15:50 <DIR> d-------- C:\DOCUME~1\Guest\WINDOWS 2007-07-02 15:50 <DIR> d-------- C:\DOCUME~1\Guest\APPLIC~1\Symantec 2007-07-02 15:50 <DIR> d-------- C:\DOCUME~1\Guest\APPLIC~1\Sonic 2007-07-02 15:50 <DIR> d-------- C:\DOCUME~1\Guest\APPLIC~1\SampleView 2007-07-02 14:17 86,016 --a------ C:\WINDOWS\system32\ati2evxx.dll 2007-07-02 14:17 853,088 --a------ C:\WINDOWS\system32\ati3d1ag.dll 2007-07-02 14:17 81,920 --a------ C:\WINDOWS\system32\ATIDDC.DLL 2007-07-02 14:17 620,032 --a------ C:\WINDOWS\system32\drivers\ati2mtag.sys 2007-07-02 14:17 4,595,712 --a------ C:\WINDOWS\system32\atioglxx.dll 2007-07-02 14:17 376,832 --a------ C:\WINDOWS\system32\ati2evxx.exe 2007-07-02 14:17 374,784 --a------ C:\WINDOWS\system32\ati2dvag.dll 2007-07-02 14:17 34,816 --a------ C:\WINDOWS\system32\ati2edxx.dll 2007-07-02 14:17 28,672 --a------ C:\WINDOWS\system32\Ati2mdxx.exe 2007-07-02 14:17 249 --a------ C:\WINDOWS\system\hpsysdrv.dat 2007-07-02 14:17 24,064 --a------ C:\WINDOWS\system32\ativcoxx.dll 2007-07-02 14:17 229,376 --a------ C:\WINDOWS\system32\atiiiexx.dll 2007-07-02 14:17 17,408 --a------ C:\WINDOWS\system32\atitvo32.dll 2007-07-02 14:17 110,592 --a------ C:\WINDOWS\system32\atipdlxx.dll 2007-07-02 14:17 1,164,032 --a------ C:\WINDOWS\system32\ati3duag.dll (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) 2007-07-03 23:20:51 -------- d--h--w C:\Program Files\InstallShield Installation Information 2007-07-02 19:49:16 -------- d-----w C:\Program Files\Messenger 2007-07-02 07:06:13 -------- d-----w C:\Program Files\Common Files\InstallShield 2007-07-02 06:32:16 -------- d-----w C:\Program Files\Easy Internet signup 2007-07-02 06:30:03 4,148 --sha-r C:\WINDOWS\system32\drivers\HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039 900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK 2007-07-02 06:27:36 -------- d-----w C:\Program Files\Common Files\InterVideo 2007-07-02 06:27:31 -------- d-----w C:\Program Files\InterVideo 2007-07-02 05:02:25 -------- d-----w C:\Program Files\Movie Maker 2007-07-02 05:00:54 -------- d-----w C:\Program Files\Windows NT 2007-06-04 14:18:48 9,344 ----a-w C:\WINDOWS\system32\drivers\NSDriver.sys 2007-06-04 14:17:02 8,320 ----a-w C:\WINDOWS\system32\drivers\AWRTRD.sys 2007-06-04 14:14:56 6,272 ----a-w C:\WINDOWS\system32\drivers\AWRTPD.sys 2007-05-16 15:12:02 683,520 ----a-w C:\WINDOWS\system32\inetcomm.dll 2007-04-25 14:21:15 144,896 ----a-w C:\WINDOWS\system32\schannel.dll 2007-04-18 16:12:23 2,854,400 ----a-w C:\WINDOWS\system32\msi.dll ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries & legit default entries are not shown [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] 2003-05-15 08:47 50376 --a------ C:\Program Files\Adobe\Reader\ActiveX\AcroIEHelper.dll [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}] 2005-05-31 01:04 853672 --a------ C:\PROGRA~1\SPYBOT~1\SDHelper.dll [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{549B5CA7-4A86-11D7-A4DF-000874180BB3}] [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}] 2006-04-18 19:04 34304 --a------ C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}] [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1}] [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{FDD3B846-8D59-4ffb-8758-209B6AD74ACC}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CamMonitor"="c:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe" [2002-10-07 08:23] "HPHUPD05"="c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe" [] "KBD"="C:\HP\KBD\KBD.EXE" [2003-02-11 21:02] "UpdateManager"="C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" [2003-08-19 09:01] "nwiz"="nwiz.exe" [2003-08-19 03:56 C:\WINDOWS\system32\nwiz.exe] "VTTimer"="VTTimer.exe" [] "ATIModeChange"="Ati2mdxx.exe" [2001-09-05 00:24 C:\WINDOWS\system32\Ati2mdxx.exe] "ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2003-11-01 21:00] "Sunkist2k"="C:\Program Files\Multimedia Card Reader\shwicon2k.exe" [2003-08-14 20:11] "AVG7_CC"="C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe" [2007-07-02 06:36] "BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-04 00:56 C:\WINDOWS\system32\bthprops.cpl] "SSBkgdUpdate"="C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-09-30 00:14] "OpwareSE4"="C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-03-21 13:19] "NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 15:40] "AlcxMonitor"="ALCXMNTR.EXE" [2004-09-07 13:47 C:\WINDOWS\ALCXMNTR.EXE] "Ad-Watch"="C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe" [2007-07-02 21:37] "googletalk"="C:\Program Files\Google\Google Talk\googletalk.exe" [2007-01-01 22:22] "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 06:24] "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-07-10 09:18] "!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RecordNow!"="" [] "NVIEW"="nview.dll,nViewLoadHook" [] "MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2007-07-02 08:45] "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2006-11-16 19:04] "Aim6"="" [] "Acme.PCHButton"="C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe" [2003-01-01 12:06] "SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2007-07-14 05:38] "SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2005-05-31 01:04] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system] "DisableRegistryTools"=0 (0x0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{93994DE8-8239-4655-B1D1-5F4E91300429}"="C:\DOCUME~1\Owner\Desktop\DVDTHI~1\DVDREG~1\DVDShell.dll" [2003-08-26 11:58] "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll" [2007-05-30 13:29] "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"="C:\Program Files\SUPERAntiSpyware\SASSEH.DLL" [2006-12-20 12:55] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon] C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL --a------ 2007-07-14 05:38 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cbxyyyx] cbxyyyx.dll [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\aawservice] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Driver] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Guard] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] bthsvcs BthServ Contents of the 'Scheduled Tasks' folder 2007-07-02 06:32:16 C:\WINDOWS\tasks\Easy Internet Sign-up.job ************************************************************************** catchme 0.3.915 W2K/XP/Vista - rootkit detector by Gmer, http://www.gmer.net Rootkit scan 2007-07-17 22:08:13 Windows 5.1.2600 Service Pack 2 NTFS scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfully hidden files: 0 ************************************************************************** Completion time: 2007-07-17 22:12:57 C:\ComboFix-quarantined-files.txt ... 2007-07-17 22:12 --- E O F --- HijackThis Log: Logfile of HijackThis v1.99.1 Scan saved at 22:14:36, on 17/07/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe C:\HP\KBD\KBD.EXE C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Multimedia Card Reader\shwicon2k.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe C:\WINDOWS\explorer.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.le.ac.uk/sm/le/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://gb10.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-gb10.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-gb10.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.apple.com/itunes/download/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file) O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: (no name) - {CD5ECF32-3048-4B8B-94DA-0B473F009BD1} - (no file) O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file) O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\program files\hp\digital imaging\bin\hpdtlk02.dll O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect O4 - HKLM\..\Run: [VTTimer] VTTimer.exe O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe O4 - HKLM\..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe /autostart O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie_ctx.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\btxppanel.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL O20 - Winlogon Notify: cbxyyyx - cbxyyyx.dll (file missing) O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe O23 - Service: Belkin 54g Wireless USB Network Adapter (Belkin 54g Wireless USB Network Adapter Service) - Unknown owner - C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe I hope this is of use to you, thankyou for your help! m8edy |
|
|
Jul 17 2007, 03:35 PM
Post
#4
|
|
![]() GeekU Moderator Posts: 18,766 From: Darkest Cornwall OS: Vista Ultimate & Windows 7 |
And moving swiftly along as you are doing so well
While TeaTimer is an excellent tool for the prevention of spyware, it can sometimes prevent HijackThis from fixing certain things. Please disable TeaTimer for now until you are clean. TeaTimer can be re-activated once your HijackThis log is clean.
FIRST Please re-open HiJackThis and scan. Check the boxes next to all the entries listed below. O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file) O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: (no name) - {CD5ECF32-3048-4B8B-94DA-0B473F009BD1} - (no file) O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file) O20 - Winlogon Notify: cbxyyyx - cbxyyyx.dll (file missing) Now close all windows other than HiJackThis, then click Fix Checked. Close HiJackThis. NOW to kill the files Please download the OTMoveIt http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe by OldTimer. Save it to your desktop. Please double-click OTMoveIt.exe to run it. Copy the file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy): C:\WINDOWS\system32\drivers\nwnrmhgthyco.sys C:\WINDOWS\system32\rbxeiyjn.dll C:\WINDOWS\system32\vwsjvrrr.dll C:\WINDOWS\system32\dhiamwpr.dll Return to OTMoveIt, right click on the "Paste List of Files/Folders to be moved" window and choose Paste. Click the red Moveit! button. Copy everything on the Results window to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it on your next reply with a new Hijack log. Close OTMoveIt If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes. TIME to get the remnants Download WinPFind3u.exe to your Desktop and double-click on it to extract the files. It will create a folder named WinPFind3u on your desktop.
Logs required are OTMoveit and Winpfind |
|
|
Jul 17 2007, 03:57 PM
Post
#5
|
|
|
Member ![]() ![]() Posts: 13 OS: Windows XP SP2 |
I am very grateful for your promt replies!!!!!
Logs Requested: OTMoveit log: C:\WINDOWS\system32\drivers\nwnrmhgthyco.sys moved successfully. LoadLibrary failed for C:\WINDOWS\system32\rbxeiyjn.dll C:\WINDOWS\system32\rbxeiyjn.dll NOT unregistered. C:\WINDOWS\system32\rbxeiyjn.dll moved successfully. LoadLibrary failed for C:\WINDOWS\system32\vwsjvrrr.dll C:\WINDOWS\system32\vwsjvrrr.dll NOT unregistered. C:\WINDOWS\system32\vwsjvrrr.dll moved successfully. LoadLibrary failed for C:\WINDOWS\system32\dhiamwpr.dll C:\WINDOWS\system32\dhiamwpr.dll NOT unregistered. C:\WINDOWS\system32\dhiamwpr.dll moved successfully. Created on 07/17/2007 22:43:07 Winpfind Log : WinPFind3 logfile created on: 7/17/2007 10:47:25 PM WinPFind3U by OldTimer - Version 1.0.39 Folder = C:\Documents and Settings\Owner\Desktop\WinPFind3u\ Microsoft Windows XP Service Pack 2 (Version = 5.1.2600) Internet Explorer (Version = 6.0.2900.2180) 1.25 Gb Total Physical Memory | 0.65 Gb Available Physical Memory | 51.82% Memory free 2.98 Gb Paging File | 2.44 Gb Available in Paging File | 81.91% Paging File free Paging file location(s): C:\pagefile.sys 1920 3840; %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 107.00 Gb Total Space | 28.38 Gb Free Space | 26.52% Space Free Drive D: | 38.34 Gb Total Space | 38.28 Gb Free Space | 99.83% Space Free Drive E: | 4.77 Gb Total Space | 0.55 Gb Free Space | 11.59% Space Free Drive F: | 2.67 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free Computer Name: YOUR-G2ASVV4L2M Current User Name: Owner Logged in as Administrator. Current Boot Mode: Normal [Processes - Non-Microsoft Only] aawservice.exe -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\aawservice.exe -> Lavasoft AB [Ver = 7, 0, 1, 2 | Size = 561152 bytes | Modified Date = 6/5/2007 5:23:28 PM | Attr = ] ad-watch2007.exe -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe -> Lavasoft AB [Ver = 7.0.1.18 | Size = 4177920 bytes | Modified Date = 7/2/2007 9:37:24 PM | Attr = ] applemobiledeviceservice.exe -> %CommonProgramFiles%\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> Apple, Inc. [Ver = 1, 12, 0, 0 | Size = 106496 bytes | Modified Date = 6/28/2007 4:06:52 AM | Attr = ] ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ] ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ] atiptaxx.exe -> %ProgramFiles%\ATI Technologies\ATI Control Panel\atiptaxx.exe -> ATI Technologies, Inc. [Ver = 6.14.10.5061 | Size = 335872 bytes | Modified Date = 11/1/2003 9:00:00 PM | Attr = ] avgamsvr.exe -> %ProgramFiles%\Grisoft\AVG Free\avgamsvr.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.453 | Size = 353280 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] avgas.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 6/11/2007 10:25:42 AM | Attr = ] avgcc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgcc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.460 | Size = 416256 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] avgemc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgemc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.474 | Size = 352768 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] avgupsvc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgupsvc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 49664 bytes | Modified Date = 7/2/2007 6:13:06 AM | Attr = ] btwdins.exe -> %ProgramFiles%\Belkin\Bluetooth Software\bin\btwdins.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 163840 bytes | Modified Date = 10/1/2004 3:06:34 PM | Attr = ] guard.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 1:31:10 PM | Attr = ] hpqcmon.exe -> %ProgramFiles%\HP\Digital Imaging\Unload\HpqCmon.exe -> [Ver = 2.0.0.133 | Size = 90112 bytes | Modified Date = 10/7/2002 8:23:20 AM | Attr = ] ipodservice.exe -> %ProgramFiles%\iPod\bin\iPodService.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 501048 bytes | Modified Date = 7/10/2007 9:18:14 AM | Attr = ] ituneshelper.exe -> %ProgramFiles%\iTunes\iTunesHelper.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 270648 bytes | Modified Date = 7/10/2007 9:18:20 AM | Attr = ] kbd.exe -> %SystemDrive%\hp\KBD\kbd.exe -> Hewlett-Packard Company [Ver = 1.0.2.0 | Size = 61440 bytes | Modified Date = 2/11/2003 9:02:48 PM | Attr = ] mdnsresponder.exe -> %ProgramFiles%\Bonjour\mDNSResponder.exe -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 229376 bytes | Modified Date = 2/28/2006 12:42:38 PM | Attr = ] nmbgmonitor.exe -> %CommonProgramFiles%\Ahead\Lib\NMBgMonitor.exe -> Nero AG [Ver = 1, 5, 3, 0 | Size = 139264 bytes | Modified Date = 11/16/2006 7:04:20 PM | Attr = ] nmindexstoresvr.exe -> %CommonProgramFiles%\Ahead\Lib\NMIndexStoreSvr.exe -> Nero AG [Ver = 1, 5, 3, 0 | Size = 884736 bytes | Modified Date = 11/16/2006 6:58:32 PM | Attr = ] opwarese4.exe -> %ProgramFiles%\ScanSoft\OmniPageSE4.0\OpwareSE4.exe -> ScanSoft, Inc. [Ver = 15.0 | Size = 69632 bytes | Modified Date = 3/21/2006 1:19:40 PM | Attr = ] pchbutton.exe -> %ProgramFiles%\HP Pavilion PC Help\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe -> Motive Communications, Inc. [Ver = 4.12.0.pchealthclient.pchclient.20030613_172000 | Size = 155648 bytes | Modified Date = 1/1/2003 12:06:44 PM | Attr = ] shwicon2k.exe -> %ProgramFiles%\Multimedia Card Reader\shwicon2k.exe -> Alcor Micro, Corp. [Ver = 1, 0, 0, 7 | Size = 139264 bytes | Modified Date = 8/14/2003 8:11:32 PM | Attr = ] superantispyware.exe -> %ProgramFiles%\SUPERAntiSpyware\SUPERAntiSpyware.exe -> SUPERAntiSpyware.com [Ver = 3, 9, 0, 1008 | Size = 1318912 bytes | Modified Date = 7/14/2007 5:38:14 AM | Attr = ] winpfind3u.exe -> %UserDesktop%\WinPFind3u\WinPFind3U.exe -> OldTimer Tools [Ver = 1.0.38.0 | Size = 322048 bytes | Modified Date = 6/23/2007 3:15:54 PM | Attr = ] wlancfgg.exe -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe -> [Ver = 1, 0, 3, 5 | Size = 798720 bytes | Modified Date = 10/6/2004 7:28:30 PM | Attr = ] wlservice.exe -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLService.exe -> [Ver = | Size = 49152 bytes | Modified Date = 3/29/2004 4:08:16 PM | Attr = ] [Win32 Services - Non-Microsoft Only] (aawservice) Ad-Aware 2007 Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\aawservice.exe -> Lavasoft AB [Ver = 7, 0, 1, 2 | Size = 561152 bytes | Modified Date = 6/5/2007 5:23:28 PM | Attr = ] (Adobe LM Service) Adobe LM Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Adobe Systems Shared\Service\Adobelmsvc.exe -> Adobe Systems [Ver = 2.67.010 | Size = 72704 bytes | Modified Date = 7/3/2007 9:22:08 PM | Attr = ] (Apple Mobile Device) Apple Mobile Device [Win32_Own | Auto | Running] -> %CommonProgramFiles%\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> Apple, Inc. [Ver = 1, 12, 0, 0 | Size = 106496 bytes | Modified Date = 6/28/2007 4:06:52 AM | Attr = ] (Ati HotKey Poller) Ati HotKey Poller [Win32_Own | Auto | Running] -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ] (AVG Anti-Spyware Guard) AVG Anti-Spyware Guard [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 1:31:10 PM | Attr = ] (Avg7Alrt) AVG7 Alert Manager Server [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgamsvr.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.453 | Size = 353280 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] (Avg7UpdSvc) AVG7 Update Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgupsvc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 49664 bytes | Modified Date = 7/2/2007 6:13:06 AM | Attr = ] (AVGEMS) AVG E-mail Scanner [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgemc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.474 | Size = 352768 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] (Belkin 54g Wireless USB Network Adapter Service) Belkin 54g Wireless USB Network Adapter [Win32_Own | Auto | Running] -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLService.exe -> [Ver = | Size = 49152 bytes | Modified Date = 3/29/2004 4:08:16 PM | Attr = ] (Bonjour Service) ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## [Win32_Own | Auto | Running] -> %ProgramFiles%\Bonjour\mDNSResponder.exe -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 229376 bytes | Modified Date = 2/28/2006 12:42:38 PM | Attr = ] (btwdins) Bluetooth Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Belkin\Bluetooth Software\bin\btwdins.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 163840 bytes | Modified Date = 10/1/2004 3:06:34 PM | Attr = ] (dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> %System32%\dmadmin.exe -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 8/4/2004 12:56:50 AM | Attr = ] (FLEXnet Licensing Service) FLEXnet Licensing Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -> Macrovision Europe Ltd. [Ver = 11.03.005 | Size = 654848 bytes | Modified Date = 7/3/2007 8:22:02 PM | Attr = ] (IDriverT) InstallDriver Table Manager [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\InstallShield\Driver\11\Intel 32\IDriverT.exe -> Macrovision Corporation [Ver = 11.00.28844 | Size = 69632 bytes | Modified Date = 4/4/2005 12:41:10 AM | Attr = ] (iPod Service) iPod Service [Win32_Own | On_Demand | Running] -> %ProgramFiles%\iPod\bin\iPodService.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 501048 bytes | Modified Date = 7/10/2007 9:18:14 AM | Attr = ] (NBService) NBService [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Nero\Nero 7\Nero BackItUp\NBService.exe -> Nero AG [Ver = 2, 7, 2, 0 | Size = 774144 bytes | Modified Date = 11/10/2006 7:18:02 PM | Attr = ] (NVSvc) NVIDIA Driver Helper Service [Win32_Own | Auto | Stopped] -> %System32%\nvsvc32.exe -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 77824 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ] [Registry - Non-Microsoft Only] < Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> !AVG Anti-Spyware -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 6/11/2007 10:25:42 AM | Attr = ] Ad-Watch -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe -> Lavasoft AB [Ver = 7.0.1.18 | Size = 4177920 bytes | Modified Date = 7/2/2007 9:37:24 PM | Attr = ] AlcxMonitor -> %SystemRoot%\ALCXMNTR.EXE -> Realtek Semiconductor Corp. [Ver = 1.5 | Size = 57344 bytes | Modified Date = 9/7/2004 1:47:52 PM | Attr = ] ATIModeChange -> %System32%\Ati2mdxx.exe -> ATI Technologies, Inc. [Ver = 4.13.3 | Size = 28672 bytes | Modified Date = 9/5/2001 12:24:00 AM | Attr = ] ATIPTA -> %ProgramFiles%\ATI Technologies\ATI Control Panel\atiptaxx.exe -> ATI Technologies, Inc. [Ver = 6.14.10.5061 | Size = 335872 bytes | Modified Date = 11/1/2003 9:00:00 PM | Attr = ] AVG7_CC -> %ProgramFiles%\Grisoft\AVG Free\avgcc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.460 | Size = 416256 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] CamMonitor -> %ProgramFiles%\HP\Digital Imaging\Unload\HpqCmon.exe -> [Ver = 2.0.0.133 | Size = 90112 bytes | Modified Date = 10/7/2002 8:23:20 AM | Attr = ] googletalk -> %ProgramFiles%\Google\Google Talk\googletalk.exe -> Google [Ver = 1,0,0,104 | Size = 3739648 bytes | Modified Date = 1/1/2007 10:22:02 PM | Attr = ] HPHUPD05 -> %ProgramFiles%\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe -> File not found iTunesHelper -> %ProgramFiles%\iTunes\iTunesHelper.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 270648 bytes | Modified Date = 7/10/2007 9:18:20 AM | Attr = ] KBD -> %SystemDrive%\hp\KBD\kbd.exe -> Hewlett-Packard Company [Ver = 1.0.2.0 | Size = 61440 bytes | Modified Date = 2/11/2003 9:02:48 PM | Attr = ] NeroFilterCheck -> %CommonProgramFiles%\Ahead\Lib\NeroCheck.exe -> Nero AG [Ver = 1, 0, 0, 5 | Size = 155648 bytes | Modified Date = 1/12/2006 3:40:44 PM | Attr = ] nwiz -> %System32%\nwiz.exe -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 323584 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ] OpwareSE4 -> %ProgramFiles%\ScanSoft\OmniPageSE4.0\OpwareSE4.exe -> ScanSoft, Inc. [Ver = 15.0 | Size = 69632 bytes | Modified Date = 3/21/2006 1:19:40 PM | Attr = ] QuickTime Task -> %ProgramFiles%\QuickTime\QTTask.exe -> Apple Inc. [Ver = 7.2 | Size = 286720 bytes | Modified Date = 6/29/2007 6:24:52 AM | Attr = ] SSBkgdUpdate -> %CommonProgramFiles%\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe -> Scansoft, Inc. [Ver = 1, 0, 0, 6 | Size = 155648 bytes | Modified Date = 9/30/2003 12:14:58 AM | Attr = R ] Sunkist2k -> %ProgramFiles%\Multimedia Card Reader\shwicon2k.exe -> Alcor Micro, Corp. [Ver = 1, 0, 0, 7 | Size = 139264 bytes | Modified Date = 8/14/2003 8:11:32 PM | Attr = ] UpdateManager -> %CommonProgramFiles%\Sonic\Update Manager\sgtray.exe -> Sonic Solutions [Ver = 1.01.32a | Size = 110592 bytes | Modified Date = 8/19/2003 9:01:00 AM | Attr = ] VTTimer -> VTTimer.exe -> File not found < OptionalComponents [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\ -> IMAIL -> Installed = 1 -> MAPI -> Installed = 1 -> MSFS -> Installed = 1 -> < Run [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> Acme.PCHButton -> %ProgramFiles%\HP Pavilion PC Help\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe -> Motive Communications, Inc. [Ver = 4.12.0.pchealthclient.pchclient.20030613_172000 | Size = 155648 bytes | Modified Date = 1/1/2003 12:06:44 PM | Attr = ] Aim6 -> -> File not found BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} -> %CommonProgramFiles%\Ahead\Lib\NMBgMonitor.exe -> Nero AG [Ver = 1, 5, 3, 0 | Size = 139264 bytes | Modified Date = 11/16/2006 7:04:20 PM | Attr = ] NVIEW -> %System32%\nview.dll [rundll32.exe nview.dll,nViewLoadHook] -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 852038 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ] RecordNow! -> -> File not found SUPERAntiSpyware -> %ProgramFiles%\SUPERAntiSpyware\SUPERAntiSpyware.exe -> SUPERAntiSpyware.com [Ver = 3, 9, 0, 1008 | Size = 1318912 bytes | Modified Date = 7/14/2007 5:38:14 AM | Attr = ] < Common Startup > -> C:\Documents and Settings\All Users\Start Menu\Programs\Startup -> %AllUsersStartup%\BTTray.lnk -> %ProgramFiles%\Belkin\Bluetooth Software\BTTray.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 565309 bytes | Modified Date = 10/1/2004 3:12:18 PM | Attr = ] %AllUsersStartup%\HP Digital Imaging Monitor.lnk -> %ProgramFiles%\HP\Digital Imaging\bin\hpqtra08.exe -> Hewlett-Packard Co. [Ver = 5.31.0.147 | Size = 233472 bytes | Modified Date = 7/7/2003 9:20:40 AM | Attr = ] < User Startup > -> C:\Documents and Settings\Owner\Start Menu\Programs\Startup -> %UserStartup%\Adobe Gamma.lnk -> %CommonProgramFiles%\Adobe\Calibration\Adobe Gamma Loader.exe -> Adobe Systems, Inc. [Ver = 1, 0, 0, 1 | Size = 113664 bytes | Modified Date = 3/16/2005 8:16:50 PM | Attr = ] < ShellExecuteHooks [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks -> {57B86673-276A-48B2-BAE7-C6DBB3020EB8} [HKLM] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll [AVG Anti-Spyware 7.5] -> GRISOFT s.r.o. [Ver = 7, 5, 1, 36 | Size = 79408 bytes | Modified Date = 5/30/2007 1:29:58 PM | Attr = ] {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} [HKLM] -> %ProgramFiles%\SUPERAntiSpyware\SASSEH.DLL [] -> SuperAdBlocker.com [Ver = 1, 0, 0, 1008 | Size = 77824 bytes | Modified Date = 12/20/2006 12:55:48 PM | Attr = ] {93994DE8-8239-4655-B1D1-5F4E91300429} [HKLM] -> %UserDesktop%\dvd thing\DVD Region-Free\DVDShell.dll [] -> Fengtao Software [Ver = 3, 0, 0, 2 | Size = 49152 bytes | Modified Date = 8/26/2003 11:58:06 AM | Attr = ] < SecurityProviders [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders -> < Winlogon settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> < Winlogon settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> < Winlogon\Notify settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ -> !SASWinLogon -> %ProgramFiles%\SUPERAntiSpyware\SASWINLO.DLL -> SUPERAntiSpyware.com [Ver = 1, 0, 0, 1046 | Size = 294912 bytes | Modified Date = 7/14/2007 5:38:16 AM | Attr = ] AtiExtEvent -> %System32%\ati2evxx.dll -> [Ver = | Size = 86016 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ] igfxcui -> %System32%\igfxsrvc.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 315392 bytes | Modified Date = 4/7/2003 8:06:48 AM | Attr = ] < CurrentVersion Policy Settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{BDEADF00-C265-11D0-BCED-00A0C90AB50F} -> 1 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} -> 1073741857 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{0DF44EAA-FF21-4412-828E-260A8728E7F1} -> 32 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\dontdisplaylastusername -> 0 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticecaption -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticetext -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\shutdownwithoutlogon -> 1 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\undockwithoutlogon -> 1 -> < CurrentVersion Policy Settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ActiveDesktop\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Associations\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 36 -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun -> ˙˙˙˙ -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\ -> -> < HOSTS File > (27 bytes) -> C:\WINDOWS\System32\drivers\etc\Hosts -> 127.0.0.1 localhost -> -> < Internet Explorer Settings > -> -> HKLM: Default_Page_URL -> http://gb10.hpwis.com/ -> HKLM: Main\\Default_Search_URL -> http://srch-gb10.hpwis.com/ -> HKLM: Local Page -> %SystemRoot%\system32\blank.htm -> HKLM: Search Bar -> http://srch-gb10.hpwis.com/ -> HKLM: Search Page -> http://srch-gb10.hpwis.com/ -> HKLM: Start Page -> about:blank -> HKLM: CustomizeSearch -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm -> HKLM: SearchAssistant -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm -> HKCU: Default_Search_URL -> http://srch-gb10.hpwis.com/ -> HKCU: Local Page -> C:\WINDOWS\system32\blank.htm -> HKCU: Search Page -> http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch -> HKCU: Start Page -> http://www.le.ac.uk/sm/le/ -> HKCU: ProxyEnable -> 0 -> HKCU: ProxyOverride -> *.local -> < Trusted Sites > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> msn.com [ - ] -> -> < BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> %ProgramFiles%\Adobe\Reader\ActiveX\AcroIEHelper.dll [AcroIEHlprObj Class] -> Adobe Systems Incorporated [Ver = 6.0.0.2003051500 | Size = 50376 bytes | Modified Date = 5/15/2003 8:47:54 AM | Attr = ] {53707962-6F74-2D53-2644-206D7942484F} [HKLM] -> %ProgramFiles%\Spybot - Search & Destroy\SDHelper.dll [] -> Safer Networking Limited [Ver = 1, 4, 0, 0 | Size = 853672 bytes | Modified Date = 5/31/2005 1:04:00 AM | Attr = ] {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} [HKLM] -> %ProgramFiles%\Canon\Easy-WebPrint\EWPBrowseLoader.dll [EWPBrowseObject Class] -> [Ver = 2, 6, 3, 0 | Size = 34304 bytes | Modified Date = 4/18/2006 7:04:14 PM | Attr = ] < Internet Explorer Bars [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ -> {32683183-48a0-441b-a342-7c2a440a9478} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found < Internet Explorer ToolBars [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar -> [HKLM] -> Reg Data - Key not found [] -> File not found {327C2873-E90D-4c37-AA9D-10AC9BABA46C} [HKLM] -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll [Easy-WebPrint] -> [Ver = 2, 6, 3, 0 | Size = 552960 bytes | Modified Date = 4/18/2006 7:05:46 PM | Attr = ] {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ] < Internet Explorer ToolBars [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ -> ShellBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found ShellBrowser\\{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ] WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found WebBrowser\\{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ] < Internet Explorer Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ -> {08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKLM] -> %System32%\msjava.dll [MenuText: Sun Java Console] -> File not found {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} -> Reg Data - Value does not exist [ButtonText: Create Mobile Favorite] -> File not found {92780B25-18CC-41C8-B9BE-3C9C571A8263} -> Reg Data - Value does not exist [ButtonText: Research] -> File not found {CCA281CA-C863-46ef-9331-5C8D4460577F} -> %ProgramFiles%\Belkin\Bluetooth Software\btsendto_ie.htm [ButtonText: @btrez.dll,-4015] -> [Ver = | Size = 2681 bytes | Modified Date = 5/29/2003 1:53:08 PM | Attr = ] < Internet Explorer Menu Extensions [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ -> E&xport to Microsoft Excel -> -> File not found Easy-WebPrint Add To Print List -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_AddToList.htm -> File not found Easy-WebPrint High Speed Print -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_HSPrint.htm -> File not found Easy-WebPrint Preview -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_Preview.htm -> File not found Easy-WebPrint Print -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_Print.htm -> File not found Send To &Bluetooth -> %ProgramFiles%\Belkin\Bluetooth Software\btsendto_ie_ctx.htm -> [Ver = | Size = 1320 bytes | Modified Date = 5/29/2003 1:53:12 PM | Attr = ] < User Agent Post Platform [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform -> SV1 -> -> < DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ -> {0A795B8E-126A-46EF-8631-73571C2E1A85} -> 192.168.2.1 (Belkin 54Mbps Wireless USB Network Adapter) -> {284DE354-2384-46F5-BA31-A6C4B2A3F246} -> () -> {2C7A6790-FF94-4A1F-8B01-378064FC8CE9} -> () -> {32518B32-ED7B-495F-A23C-FAB8BC689BBA} -> (1394 Net Adapter) -> {8D51A53E-0849-4DD6-8F59-DAC890E5660B} -> (Belkin 54Mbps Wireless USB Network Adapter) -> {D782F041-B428-4C9A-9EF8-10B461835A01} -> (SiS 900-Based PCI Fast Ethernet Adapter) -> {E8335EC5-85BF-446F-B911-976ED580074A} -> () -> < Winsock2 Catalogs [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\ -> NameSpace_Catalog5\Catalog_Entries 0000000005 [mdnsNSP] -> %ProgramFiles%\Bonjour\mdnsNSP.dll -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 94208 bytes | Modified Date = 2/28/2006 12:42:30 PM | Attr = ] < Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ -> ipp -> Reg Data - Key not found -> File not found msdaipp -> Reg Data - Key not found -> File not found widimg -> %System32%\btxppanel.dll -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 110592 bytes | Modified Date = 10/1/2004 2:54:44 PM | Attr = ] < Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ -> {8AD9C840-044E-11D1-B3E9-00805F499D93} -> Java Plug-in 1.4.2 - CodeBase = http://java.sun.com/products/plugin/autodl...indows-i586.cab -> {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} -> ActiveScan Installer Class - CodeBase = http://acs.pandasoftware.com/activescan/as5free/asinst.cab -> {C3F79A2B-B9B4-4A66-B012-3EE46475B072} -> MessengerStatsClient Class - CodeBase = http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab -> {CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA} -> Java Plug-in 1.4.2 - CodeBase = http://java.sun.com/products/plugin/autodl...indows-i586.cab -> [Registry - Additional Scans - Non-Microsoft Only] < Uninstall List > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> {01CEC7E5-70FD-4D06-8FAD-BF21DF0CC6DC} -> Adobe Audition 2.0 -> {045A0044-9149-45C6-A806-F2BF9CFCE762} -> Microsoft Encarta Encyclopedia Standard - WE 2004 -> {04AF207D-9A77-465A-8B76-991F6AB66245} -> Adobe Help Viewer CS3 -> {0613467F-A45E-4CB1-9ECE-1F3DD79FB927} -> Easy Internet Sign-up -> {08B32819-6EEF-4057-AEDA-5AB681A36A23} -> Adobe Bridge Start Meeting -> {092eeeee-9fdd-4895-a568-0818c96beb6c} -> AiO_Scan -> {09DA4F91-2A09-4232-AB8C-6BC740096DE3} -> Sonic Update Manager -> {0BEDBD4E-2D34-47B5-9973-57E62B29307C} -> ATI Control Panel -> {0E6AB9FC-76C2-431B-9C06-6C1CFFFEA8EB} -> Ad-Aware 2007 -> {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP600 -> Canon MP600 -> {145CACAF-9B34-41FC-BE49-7D510A253E78} -> Multimedia Card Reader -> {184CE391-7E0E-4C63-9935-D7A10EDFD3C6} -> Adobe WinSoft Linguistics Plugin -> {18D10072035C4515918F7E37EAFAACFC} -> AutoUpdate -> {1BCEA516-B4C5-4B2D-BFA0-AB7910BAD862} -> Adobe ExtendScript Toolkit 2 -> {1D643CD2-4DD6-11D7-A4E0-000874180BB3} -> Microsoft Money -> {1F7CCFA3-D926-4882-B2A5-A0217ED25597} -> PC-Doctor for Windows -> {2070F79D-46BC-4EEA-8F02-9B4DCABAE7CB} -> iPod for Windows 2006-03-23 -> {226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk -> Google Talk (remove only) -> {235BBFC6-D863-4066-A01A-3BD504C31033} -> Nero 7 Ultra Edition -> {29D851C2-048C-4B5E-8D1F-25D473342BB5} -> ScanSoft OmniPage SE 4.0 -> {29E5EA97-5F74-4A57-B8B2-D4F169117183} -> Adobe Stock Photos CS3 -> {2A267BC6-F77F-4DD4-825F-7AEB1F68B4B1} -> HpSdpAppCoreApp -> {2E132061-C78A-48D4-A899-1D13B9D189FA} -> Memories Disc Creator 2.0 -> {2F1FD032-67D1-4569-923F-47EAF132BF0F} -> DocProc -> {350C97B0-3D7C-4EE8-BAA9-00BCB3D54227} -> WebFldrs XP -> {37477865-A3F1-4772-AD43-AAFC6BCFF99F} -> MSXML 4.0 SP2 (KB927978) -> {3CF78481-FB7B-4B51-99A2-D5E0CD0B3AAF} -> HPSystemDiagnostics -> {3D7E3EC9-46CF-4359-9289-39CE01DFB82F} -> Adobe Photoshop CS3 -> {45B6180B-DCAB-4093-8EE8-6164457517F0} -> Photosmart 140,240,7200,7600,7700,7900 Series -> {47FF921C-E834-47A6-8CE4-F0A99CDE347F} -> ViaMichelin Navigation X-930 -> {4FB6F304-A91D-4919-98E5-D96E074EA9E5} -> SkinsHP1 -> {51846830-E7B2-4218-8968-B77F0FF475B8} -> Adobe Color EU Extra Settings -> {54793AA1-5001-42F4-ABB6-C364617C6078} -> Adobe Linguistics CS3 -> {54e854d5-d5d4-452d-9c75-b39f5625b5fb} -> Readme -> {571700F0-DB9D-4B3A-B03D-35A14BB5939F} -> Windows Live Messenger -> {5ADF6293-D60F-4425-AFA7-CEB820DB872B} -> QuickProjects -> {5D7F0A0E-369E-46C0-9F99-FAB21A064781} -> HP Photo and Imaging 2.0 - Photosmart Cameras -> {64C1FA9A-FA94-4B6E-B3E4-8573738E4AD1} -> Adobe Setup -> {6ABE0BEE-D572-4FE8-B434-9E72A289431B} -> Adobe Fonts All -> {6D4AC5A4-4CF9-4F90-8111-B9B53CE257BF} -> Adobe Color Common Settings -> {6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61} -> Adobe Asset Services CS3 -> {7148F0A8-6813-11D6-A77B-00B0D0142000} -> Java 2 Runtime Environment, SE v1.4.2 -> {745A92AF-53B4-41A7-91C3-9B026B1D5897} -> InstantShare -> {74EC78BC-B379-4E29-9006-8F161DCAABA6} -> Apple Software Update -> {791B20D4-AE59-4DE9-B45F-BA01F3D0A493} -> ArcSoft ShowBiz 2 -> {7B63B2922B174135AFC0E1377DD81EC2} -> DivX -> {7BBD57D6-09B1-4CC3-9664-A0D53EE25247} -> PSShortcutsP -> {802771A9-A856-4A41-ACF7-1450E523C923} -> Adobe XMP Panels CS3 -> {829698DE-9EAC-475E-9A05-B7BA807CA1EF} -> Director -> {85309D89-7BE9-4094-BB17-24999C6118FC} -> ArcSoft PhotoStudio 5.5 -> {8704D51E-25B7-4F23-81E7-AA4F54790220} -> Microsoft AutoRoute v11.0 -> {8777AC6D-89F9-4793-8266-DE406F343E89} -> QFolder -> {8A708DD8-A5E6-11D4-A706-000629E95E20} -> Intel® Extreme Graphics Driver -> {8ADFC4160D694100B5B8A22DE9DCABD9} -> DivX Player -> {8C64E149-54BA-11D6-91B1-00500462BE80} -> Microsoft Money System Pack -> {8D2BA474-F406-4710-9AE4-D4F22D21F0DD} -> Adobe Device Central CS3 -> {8E6808E2-613D-4FCD-81A2-6C8FA8E03312} -> Adobe Type Support -> {8EDBA74D-0686-4C99-BFDD-F894678E5102} -> Adobe Common File Installer -> {8FFC924C-ED06-44CB-8867-3CA778ECE903} -> Adobe Help Center 2.0 -> {90110409-6000-11D3-8CFE-0150048383C9} -> Microsoft Office Professional Edition 2003 -> {90176341-0A8B-4CCC-A78D-F862228A6B95} -> Adobe Anchor Service CS3 -> {90535871-81B9-4D99-8A13-A7EE97F2D7FE} -> Belkin Bluetooth Software -> {9357AE3A-B2ED-4138-BB9B-0564352C3F0A} -> iTunes -> {939227BD-19D8-4684-8A04-31AC9F6A564C} -> Scan -> {9541FED0-327F-4DF0-8B96-EF57EF622F19} -> RecordNow! -> {95655ED4-7CA5-46DF-907F-7144877A32E5} -> Adobe Color NA Recommended Settings -> {95A890AA-B3B1-44B6-9C18-A8F7AB3EE7FC} -> QuickTime -> {98E8A2EF-4EAE-43B8-A172-74842B764777} -> InterVideo WinDVD Player -> {9C9824D9-9000-4373-A6A5-D0E5D4831394} -> Adobe Bridge CS3 -> {9F4EEA0C-7174-4BD3-89AF-7AB2F9F6AEDD} -> hpmdtab -> {A2B242BD-FF8D-4840-9DAA-9170EABEC59C} -> Adobe CMaps -> {A2D81E70-2A98-4A08-A628-94388B063C5E} -> Adobe Color - Photoshop Specific -> {A363B66C-1547-47bf-90F0-3834E70A841A} -> CreativeProjects -> {A43B2A2F-1DB5-47F9-A608-F11A4835D7CB} -> Apple Mobile Device Support -> {A7894110-9C15-43EF-89E9-060363290188} -> Samsung PC Studio -> {AC5B0C19-D851-42F4-BDA0-410ECF7F70A5} -> PDF Settings -> {AC76BA86-7AD7-1033-7B44-000000000001} -> Adobe Reader 6.0 -> {AE3D38A6-13B1-40B3-9423-D1FA9982FB6A} -> Adobe Bridge 1.0 -> {B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C} -> Adobe Camera Raw 4.0 -> {B9966F27-9678-4620-9579-925E3084647E} -> Microsoft Works -> {B9B35331-B7E4-4E5C-BF4C-7BC87856124D} -> Adobe Default Language CS3 -> {bb6cac2a-1fa0-471a-bc3c-ade699c39f3c} -> Fax -> {c330461f-c4a9-4fc7-af5d-c158e0b56aa7} -> AiOSoftware -> {C38BC5B7-62D3-4880-82DD-A4803FD81921} -> PhotoGallery -> {C4A4722E-79F9-417C-BD72-8D359A090C97} -> Samsung PC Studio -> {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} -> Microsoft .NET Framework 1.1 -> {CC0A24CB-87C9-4F1C-A1F2-F87D8D4DDCAF} -> HP Software Update -> {CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA} -> SUPERAntiSpyware Free Edition -> {CE4F8FFB-4063-4247-9F14-ECE61AFEFA25} -> TrayApp -> {CFD1B282-555D-494d-8231-4175C2AF08C2} -> PrintScreen -> {D0DFF92A-492E-4C40-B862-A74A173C25C5} -> Adobe Version Cue CS3 Client -> {D1D8C9C4-89BE-4f37-9EC4-B80E3C239C41} -> Copy -> {D2559B88-CC9D-4B48-81BB-F492BAA9C48C} -> Adobe PDF Library Files -> {D2856AA2-A059-4933-8B2E-E088A10567A7} -> ViaMichelin Navigation X-930 -> {D504303A-717D-414C-BA9F-FE01093E2EF8} -> Adobe Setup -> {D545BB81-DEB0-49f7-BE26-197BC31AAF57} -> SkinsHP2 -> {DBA8B9E1-C6FF-4624-9598-73D3B41A0903} -> Microsoft Picture It! Photo Standard 9 -> {DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029} -> Adobe Color JA Extra Settings -> {E4ABB302-9D82-4D18-83D5-AD1DFE786AA8} -> Unload -> {E69AE897-9E0B-485C-8552-7841F48D42D8} -> Adobe Update Manager CS3 -> {EBA29752-DDD2-4B62-B2E3-9841F92A3E3A} -> Samsung PC Studio 3 USB Driver Installer -> {ec7d7a6a-31cb-4810-826f-74171bef44f1} -> AIOMinimal -> {F247869D-3643-4A9F-821B-3534145928E3} -> HPIZ311 -> {F38FA38A-7E5A-4209-88ED-4DE21CD20EEF} -> HP PSC & OfficeJet 3.0 -> {F419D20A-7719-4639-8E30-C073A040D878} -> HP Deskjet Preloaded Printer Drivers -> {FBBF532A-47AC-457d-AC06-0D3163D8911E} -> WebReg -> {FF11004C-F42A-4A31-9BCF-7F5C8FDBE53C} -> Adobe Setup -> {FF20F6D2-28E0-43FF-8A49-E69D07B12224} -> Belkin 54g USB Network Adapter -> Adobe Audition 2.0 -> Adobe Audition 2.0 -> Adobe Flash Player ActiveX -> Adobe Flash Player ActiveX -> Adobe_5bc0f8414ec36c555a3e7e5ec2e225e -> Adobe ExtendScript Toolkit 2 -> Adobe_6c8e2cb4fd241c55406016127a6ab2e -> Adobe Color Common Settings -> Adobe_719d6f144d0c086a0dfa7ff76bb9ac1 -> Adobe Photoshop CS3 -> AIM_6 -> AIM 6 -> ATI Display Driver -> ATI Display Driver -> AVG7Uninstall -> AVG Free Edition -> AVGAntiSpyware75 -> AVG Anti-Spyware 7.5 -> Canon MP600 User Registration -> Canon MP600 User Registration -> DVD Shrink_is1 -> DVD Shrink 3.2 -> Easy-PhotoPrint -> Canon Utilities Easy-PhotoPrint -> Easy-WebPrint -> Easy-WebPrint -> ffdshow -> ffdshow (remove only) -> HijackThis -> HijackThis 1.99.1 -> Hijackthis_is1 -> Hijackthis 1.99.1 -> HP Photo & Imaging -> HP Photo & Imaging 3.1 -> InstallShield_{0613467F-A45E-4CB1-9ECE-1F3DD79FB927} -> Easy Internet Sign-up -> InstallShield_{145CACAF-9B34-41FC-BE49-7D510A253E78} -> Multimedia Card Reader -> InstallShield_{2070F79D-46BC-4EEA-8F02-9B4DCABAE7CB} -> iPod for Windows 2006-03-23 -> KB873339 -> Windows XP Hotfix - KB873339 -> KB885835 -> Windows XP Hotfix - KB885835 -> KB885836 -> Windows XP Hotfix - KB885836 -> KB886185 -> Windows XP Hotfix - KB886185 -> KB887472 -> Windows XP Hotfix - KB887472 -> KB888302 -> Windows XP Hotfix - KB888302 -> KB890046 -> Security Update for Windows XP (KB890046) -> KB890859 -> Windows XP Hotfix - KB890859 -> KB891781 -> Windows XP Hotfix - KB891781 -> KB892130 -> Windows Genuine Advantage Validation Tool (KB892130) -> KB893756 -> Security Update for Windows XP (KB893756) -> KB893803v2 -> Windows Installer 3.1 (KB893803) -> KB894391 -> Update for Windows XP (KB894391) -> KB896358 -> Security Update for Windows XP (KB896358) -> KB896423 -> Security Update for Windows XP (KB896423) -> KB896428 -> Security Update for Windows XP (KB896428) -> KB898461 -> Update for Windows XP (KB898461) -> KB899587 -> Security Update for Windows XP (KB899587) -> KB899591 -> Security Update for Windows XP (KB899591) -> KB900485 -> Update for Windows XP (KB900485) -> KB900725 -> Security Update for Windows XP (KB900725) -> KB901017 -> Security Update for Windows XP (KB901017) -> KB901214 -> Security Update for Windows XP (KB901214) -> KB902400 -> Security Update for Windows XP (KB902400) -> KB904706 -> Security Update for Windows XP (KB904706) -> KB905414 -> Security Update for Windows XP (KB905414) -> KB905749 -> Security Update for Windows XP (KB905749) -> KB908519 -> Security Update for Windows XP (KB908519) -> KB908531 -> Update for Windows XP (KB908531) -> KB910437 -> Update for Windows XP (KB910437) -> KB911280 -> Update for Windows XP (KB911280) -> KB911562 -> Security Update for Windows XP (KB911562) -> KB911564 -> Security Update for Windows Media Player (KB911564) -> KB911927 -> Security Update for Windows XP (KB911927) -> KB913580 -> Security Update for Windows XP (KB913580) -> KB914388 -> Security Update for Windows XP (KB914388) -> KB914389 -> Security Update for Windows XP (KB914389) -> KB916595 -> Update for Windows XP (KB916595) -> KB917344 -> Security Update for Windows XP (KB917344) -> KB917734_WMP9 -> Security Update for Windows Media Player 9 (KB917734) -> KB917953 -> Security Update for Windows XP (KB917953) -> KB918118 -> Security Update for Windows XP (KB918118) -> KB918439 -> Security Update for Windows XP (KB918439) -> KB919007 -> Security Update for Windows XP (KB919007) -> KB920213 -> Security Update for Windows XP (KB920213) -> KB920670 -> Security Update for Windows XP (KB920670) -> KB920683 -> Security Update for Windows XP (KB920683) -> KB920685 -> Security Update for Windows XP (KB920685) -> KB920872 -> Update for Windows XP (KB920872) -> KB922582 -> Update for Windows XP (KB922582) -> KB922819 -> Security Update for Windows XP (KB922819) -> KB923191 -> Security Update for Windows XP (KB923191) -> KB923414 -> Security Update for Windows XP (KB923414) -> KB923689 -> Security Update for Windows XP (KB923689) -> KB923723 -> Security Update for Step By Step Interactive Training (KB923723) -> KB923789 -> Security Update for Windows XP (KB923789) -> KB923980 -> Security Update for Windows XP (KB923980) -> KB924191 -> Security Update for Windows XP (KB924191) -> KB924270 -> Security Update for Windows XP (KB924270) -> KB924496 -> Security Update for Windows XP (KB924496) -> KB924667 -> Security Update for Windows XP (KB924667) -> KB925398_WMP64 -> Security Update for Windows Media Player 6.4 (KB925398) -> KB925902 -> Security Update for Windows XP (KB925902) -> KB926255 -> Security Update for Windows XP (KB926255) -> KB926436 -> Security Update for Windows XP (KB926436) -> KB927779 -> Security Update for Windows XP (KB927779) -> KB927802 -> Security Update for Windows XP (KB927802) -> KB927891 -> Update for Windows XP (KB927891) -> KB928255 -> Security Update for Windows XP (KB928255) -> KB928843 -> Security Update for Windows XP (KB928843) -> KB929123 -> Security Update for Windows XP (KB929123) -> KB929969 -> Security Update for Windows XP (KB929969) -> KB930178 -> Security Update for Windows XP (KB930178) -> KB930916 -> Update for Windows XP (KB930916) -> KB931261 -> Security Update for Windows XP (KB931261) -> KB931784 -> Security Update for Windows XP (KB931784) -> KB931836 -> Update for Windows XP (KB931836) -> KB932168 -> Security Update for Windows XP (KB932168) -> KB933566 -> Security Update for Windows XP (KB933566) -> KB935839 -> Security Update for Windows XP (KB935839) -> KB935840 -> Security Update for Windows XP (KB935840) -> KB936357 -> Update for Windows XP (KB936357) -> KBD -> KBD -> M928366 -> Microsoft .NET Framework 1.1 Hotfix (KB928366) -> Magic ISO Maker v5.3 (build 0221) -> Magic ISO Maker v5.3 (build 0221) -> MediaNavigation.CDLabelPrint -> CD-LabelPrint -> Messenger Plus! Live -> Messenger Plus! Live -> Microsoft .NET Framework 1.1 (1033) -> Microsoft .NET Framework 1.1 -> Mozilla Firefox (2.0.0.4) -> Mozilla Firefox (2.0.0.4) -> MP Navigator 3.0 -> Canon MP Navigator 3.0 -> NVIDIA -> -> NVIDIA GART Driver -> NVIDIA GART Driver -> Panda ActiveScan -> Panda ActiveScan -> PictureIt_v9 -> Microsoft Picture It! Photo Standard 9 -> PS2 -> PS2 -> Python 2.2 combined Win32 extensions -> Python 2.2 combined Win32 extensions -> Python 2.2.1 -> Python 2.2.1 -> RealPlayer 6.0 -> RealPlayer -> SAMSUNG CDMA Modem -> SAMSUNG CDMA Modem Driver Set -> SAMSUNG Mobile USB Modem -> SAMSUNG Mobile USB Modem Software -> SAMSUNG Mobile USB Modem 1.0 -> SAMSUNG Mobile USB Modem 1.0 Software -> Shockwave -> Shockwave -> Spybot - Search & Destroy_is1 -> Spybot - Search & Destroy 1.4 -> ViewpointMediaPlayer -> Viewpoint Media Player -> Vodafone 804SS USB driver -> Vodafone 804SS USB driver Software -> WGA -> Windows Genuine Advantage Validation Tool (KB892130) -> WgaNotify -> Windows Genuine Advantage Notifications (KB905474) -> Windows CE Services -> Microsoft ActiveSync 3.8 -> Windows Media Format Runtime -> Windows Media Format Runtime -> Windows XP Service Pack -> Windows XP Service Pack 2 -> WinRAR archiver -> WinRAR archiver -> WinZip -> WinZip -> Works2004Setup -> Microsoft Works 2004 Setup Launcher -> XviD_is1 -> XviD MPEG-4 Video Codec -> Yahoo! Messenger -> Yahoo! Messenger -> [Files/Folders - Created Within 30 days] $VAULT$.AVG -> %SystemDrive%\$VAULT$.AVG -> [Folder | Created Date = 7/2/2007 7:05:17 PM | Attr = RH ] BOOT.BAK -> %SystemDrive%\BOOT.BAK -> [Ver = | Size = 196 bytes | Created Date = 7/2/2007 6:31:09 AM | Attr = RHS] cmdcons -> %SystemDrive%\cmdcons -> [Folder | Created Date = 7/2/2007 6:30:54 AM | Attr = RHS] hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1341706240 bytes | Created Date = 1/1/1601 | Attr = HS] I386 -> %SystemDrive%\I386 -> [Folder | Created Date = 7/2/2007 1:15:28 PM | Attr = ] IPH.PH -> %SystemDrive%\IPH.PH -> [Ver = | Size = 1106 bytes | Created Date = 7/2/2007 11:29:07 PM | Attr = H ] MSOCache -> %SystemDrive%\MSOCache -> [Folder | Created Date = 7/2/2007 6:43:42 AM | Attr = RH ] My Downloads -> %SystemDrive%\My Downloads -> [Folder | Created Date = 7/2/2007 6:22:07 PM | Attr = ] Program Files -> %ProgramFiles% -> [Folder | Created Date = 7/2/2007 1:07:19 PM | Attr = R ] QooBox -> %SystemDrive%\QooBox -> [Folder | Created Date = 7/17/2007 8:54:52 PM | Attr = ] RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Created Date = 7/2/2007 6:32:52 AM | Attr = HS] sqmdata00.sqm -> %SystemDrive%\sqmdata00.sqm -> [Ver = | Size = 268 bytes | Created Date = 7/2/2007 7:45:22 AM | Attr = H ] sqmdata01.sqm -> %SystemDrive%\sqmdata01.sqm -> [Ver = | Size = 268 bytes | Created Date = 7/2/2007 7:45:32 AM | Attr = H ] sqmdata02.sqm -> %SystemDrive%\sqmdata02.sqm -> [Ver = | Size = 172 bytes | Created Date = 7/2/2007 7:45:35 AM | Attr = H ] sqmnoopt00.sqm -> %SystemDrive%\sqmnoopt00.sqm -> [Ver = | Size = 244 bytes | Created Date = 7/2/2007 7:45:22 AM | Attr = H ] sqmnoopt01.sqm -> %SystemDrive%\sqmnoopt01.sqm -> [Ver = | Size = 244 bytes | Created Date = 7/2/2007 7:45:32 AM | Attr = H ] sqmnoopt02.sqm -> %SystemDrive%\sqmnoopt02.sqm -> [Ver = | Size = 172 bytes | Created Date = 7/2/2007 7:45:35 AM | Attr = H ] System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Created Date = 12/6/1739 11:50:33 AM | Attr = HS] _OTMoveIt -> %SystemDrive%\_OTMoveIt -> [Folder | Created Date = 7/17/2007 9:43:06 PM | Attr = ] $hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Created Date = 7/2/2007 6:43:05 AM | Attr = H ] $MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Created Date = 7/2/2007 8:15:06 AM | Attr = H ] $NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Created Date = 7/2/2007 4:56:22 AM | Attr = H ] $NtUninstallKB835409$ -> %SystemRoot%\$NtUninstallKB835409$ -> [Folder | Created Date = 7/2/2007 4:41:36 AM | Attr = H ] $NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Created Date = 7/2/2007 7:47:57 PM | Attr = H ] $NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Created Date = 7/2/2007 7:49:29 PM | Attr = H ] $NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Created Date = 7/2/2007 7:48:17 PM | Attr = H ] $NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Created Date = 7/2/2007 7:48:09 PM | Attr = H ] $NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Created Date = 7/2/2007 7:49:14 PM | Attr = H ] $NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Created Date = 7/2/2007 7:49:07 PM | Attr = H ] $NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Created Date = 7/2/2007 8:11:03 PM | Attr = H ] $NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Created Date = 7/2/2007 7:50:03 PM | Attr = H ] $NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Created Date = 7/2/2007 7:49:22 PM | Attr = H ] $NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Created Date = 7/2/2007 7:51:02 PM | Attr = H ] $NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Created Date = 7/2/2007 7:51:52 PM | Attr = H ] $NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Created Date = 7/2/2007 7:50:40 PM | Attr = H ] $NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Created Date = 7/2/2007 7:51:42 PM | Attr = H ] $NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Created Date = 7/2/2007 7:49:41 PM | Attr = H ] $NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Created Date = 7/2/2007 8:14:36 AM | Attr = H ] $NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Created Date = 7/2/2007 7:51:29 PM | Attr = H ] $NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Created Date = 7/2/2007 7:51:18 PM | Attr = H ] $NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Created Date = 7/2/2007 7:56:04 PM | Attr = H ] $NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Created Date = 7/2/2007 7:54:19 PM | Attr = H ] $NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Created Date = 7/2/2007 7:53:45 PM | Attr = H ] $NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Created Date = 7/2/2007 7:49:48 PM | Attr = H ] $NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Created Date = 7/2/2007 7:52:50 PM | Attr = H ] $NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Created Date = 7/2/2007 7:54:47 PM | Attr = H ] $NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Created Date = 7/2/2007 7:53:56 PM | Attr = H ] $NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Created Date = 7/2/2007 7:54:07 PM | Attr = H ] $NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Created Date = 7/2/2007 7:54:55 PM | Attr = H ] $NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Created Date = 7/2/2007 7:56:13 PM | Attr = H ] $NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Created Date = 7/2/2007 7:54:40 PM | Attr = H ] $NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Created Date = 7/2/2007 7:57:45 PM | Attr = H ] $NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Created Date = 7/2/2007 7:55:55 PM | Attr = H ] $NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Created Date = 7/2/2007 7:55:38 PM | Attr = H ] $NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Created Date = 7/2/2007 7:55:02 PM | Attr = H ] $NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Created Date = 7/2/2007 7:57:21 PM | Attr = H ] $NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Created Date = 7/2/2007 7:57:54 PM | Attr = H ] $NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Created Date = 7/2/2007 7:56:52 PM | Attr = H ] $NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Created Date = 7/2/2007 7:59:02 PM | Attr = H ] $NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Created Date = 7/2/2007 7:57:01 PM | Attr = H ] $NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Created Date = 7/2/2007 7:56:42 PM | Attr = H ] $NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Created Date = 7/2/2007 7:57:35 PM | Attr = H ] $NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Created Date = 7/2/2007 8:05:00 PM | Attr = H ] $NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Created Date = 7/2/2007 7:57:11 PM | Attr = H ] $NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Created Date = 7/2/2007 7:59:10 PM | Attr = H ] $NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Created Date = 7/2/2007 8:11:11 PM | Attr = H ] $NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Created Date = 7/2/2007 7:58:04 PM | Attr = H ] $NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Created Date = 7/2/2007 7:58:13 PM | Attr = H ] $NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Created Date = 7/2/2007 7:59:22 PM | Attr = H ] $NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Created Date = 7/2/2007 7:59:34 PM | Attr = H ] $NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Created Date = 7/2/2007 7:58:44 PM | Attr = H ] $NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Created Date = 7/2/2007 8:00:39 PM | Attr = H ] $NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Created Date = 7/2/2007 8:00:18 PM | Attr = H ] $NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Created Date = 7/2/2007 7:59:49 PM | Attr = H ] $NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Created Date = 7/2/2007 8:02:47 PM | Attr = H ] $NtUninstallKB923723$ -> %SystemRoot%\$NtUninstallKB923723$ -> [Folder | Created Date = 7/2/2007 8:11:28 PM | Attr = H ] $NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Created Date = 7/2/2007 8:01:34 PM | Attr = H ] $NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Created Date = 7/2/2007 8:00:28 PM | Attr = H ] $NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Created Date = 7/2/2007 8:00:52 PM | Attr = H ] $NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Created Date = 7/2/2007 8:00:00 PM | Attr = H ] $NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Created Date = 7/2/2007 8:04:15 PM | Attr = H ] $NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Created Date = 7/2/2007 8:02:17 PM | Attr = H ] $NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Created Date = 7/2/2007 8:08:01 PM | Attr = H ] $NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Created Date = 7/2/2007 8:01:48 PM | Attr = H ] $NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Created Date = 7/2/2007 8:05:15 PM | Attr = H ] $NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Created Date = 7/2/2007 8:04:39 PM | Attr = H ] $NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Created Date = 7/2/2007 8:03:55 PM | Attr = H ] $NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Created Date = 7/2/2007 8:11:36 PM | Attr = H ] $NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Created Date = 7/2/2007 8:03:14 PM | Attr = H ] $NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Created Date = 7/2/2007 8:03:35 PM | Attr = H ] $NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Created Date = 7/2/2007 8:12:42 PM | Attr = H ] $NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Created Date = 7/2/2007 8:03:03 PM | Attr = H ] $NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Created Date = 7/2/2007 8:10:08 PM | Attr = H ] $NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Created Date = 7/2/2007 8:11:21 PM | Attr = H ] $NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Created Date = 7/2/2007 8:10:20 PM | Attr = H ] $NtUninstallK |
|
|
Jul 17 2007, 04:00 PM
Post
#6
|
|
![]() GeekU Moderator Posts: 18,766 From: Darkest Cornwall OS: Vista Ultimate & Windows 7 |
Hi m8edy could I have the rest of the log please
QUOTE after posting, the last line is not < End of Report > then the log is too big to fit into a single post and you will need to split it into multiple posts.
|
|
|
Jul 17 2007, 04:05 PM
Post
#7
|
|
|
Member ![]() ![]() Posts: 13 OS: Windows XP SP2 |
...seems it didnt all fit in the one post...
here is the rest i will start here from the winpfind 3 log...starting from the 'files/folders created within 30 days' part...so there maybe some overlap with the previous post: [Files/Folders - Created Within 30 days] $VAULT$.AVG -> %SystemDrive%\$VAULT$.AVG -> [Folder | Created Date = 7/2/2007 7:05:17 PM | Attr = RH ] BOOT.BAK -> %SystemDrive%\BOOT.BAK -> [Ver = | Size = 196 bytes | Created Date = 7/2/2007 6:31:09 AM | Attr = RHS] cmdcons -> %SystemDrive%\cmdcons -> [Folder | Created Date = 7/2/2007 6:30:54 AM | Attr = RHS] hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1341706240 bytes | Created Date = 1/1/1601 | Attr = HS] I386 -> %SystemDrive%\I386 -> [Folder | Created Date = 7/2/2007 1:15:28 PM | Attr = ] IPH.PH -> %SystemDrive%\IPH.PH -> [Ver = | Size = 1106 bytes | Created Date = 7/2/2007 11:29:07 PM | Attr = H ] MSOCache -> %SystemDrive%\MSOCache -> [Folder | Created Date = 7/2/2007 6:43:42 AM | Attr = RH ] My Downloads -> %SystemDrive%\My Downloads -> [Folder | Created Date = 7/2/2007 6:22:07 PM | Attr = ] Program Files -> %ProgramFiles% -> [Folder | Created Date = 7/2/2007 1:07:19 PM | Attr = R ] QooBox -> %SystemDrive%\QooBox -> [Folder | Created Date = 7/17/2007 8:54:52 PM | Attr = ] RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Created Date = 7/2/2007 6:32:52 AM | Attr = HS] sqmdata00.sqm -> %SystemDrive%\sqmdata00.sqm -> [Ver = | Size = 268 bytes | Created Date = 7/2/2007 7:45:22 AM | Attr = H ] sqmdata01.sqm -> %SystemDrive%\sqmdata01.sqm -> [Ver = | Size = 268 bytes | Created Date = 7/2/2007 7:45:32 AM | Attr = H ] sqmdata02.sqm -> %SystemDrive%\sqmdata02.sqm -> [Ver = | Size = 172 bytes | Created Date = 7/2/2007 7:45:35 AM | Attr = H ] sqmnoopt00.sqm -> %SystemDrive%\sqmnoopt00.sqm -> [Ver = | Size = 244 bytes | Created Date = 7/2/2007 7:45:22 AM | Attr = H ] sqmnoopt01.sqm -> %SystemDrive%\sqmnoopt01.sqm -> [Ver = | Size = 244 bytes | Created Date = 7/2/2007 7:45:32 AM | Attr = H ] sqmnoopt02.sqm -> %SystemDrive%\sqmnoopt02.sqm -> [Ver = | Size = 172 bytes | Created Date = 7/2/2007 7:45:35 AM | Attr = H ] System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Created Date = 12/6/1739 11:50:33 AM | Attr = HS] _OTMoveIt -> %SystemDrive%\_OTMoveIt -> [Folder | Created Date = 7/17/2007 9:43:06 PM | Attr = ] $hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Created Date = 7/2/2007 6:43:05 AM | Attr = H ] $MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Created Date = 7/2/2007 8:15:06 AM | Attr = H ] $NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Created Date = 7/2/2007 4:56:22 AM | Attr = H ] $NtUninstallKB835409$ -> %SystemRoot%\$NtUninstallKB835409$ -> [Folder | Created Date = 7/2/2007 4:41:36 AM | Attr = H ] $NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Created Date = 7/2/2007 7:47:57 PM | Attr = H ] $NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Created Date = 7/2/2007 7:49:29 PM | Attr = H ] $NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Created Date = 7/2/2007 7:48:17 PM | Attr = H ] $NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Created Date = 7/2/2007 7:48:09 PM | Attr = H ] $NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Created Date = 7/2/2007 7:49:14 PM | Attr = H ] $NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Created Date = 7/2/2007 7:49:07 PM | Attr = H ] $NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Created Date = 7/2/2007 8:11:03 PM | Attr = H ] $NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Created Date = 7/2/2007 7:50:03 PM | Attr = H ] $NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Created Date = 7/2/2007 7:49:22 PM | Attr = H ] $NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Created Date = 7/2/2007 7:51:02 PM | Attr = H ] $NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Created Date = 7/2/2007 7:51:52 PM | Attr = H ] $NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Created Date = 7/2/2007 7:50:40 PM | Attr = H ] $NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Created Date = 7/2/2007 7:51:42 PM | Attr = H ] $NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Created Date = 7/2/2007 7:49:41 PM | Attr = H ] $NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Created Date = 7/2/2007 8:14:36 AM | Attr = H ] $NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Created Date = 7/2/2007 7:51:29 PM | Attr = H ] $NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Created Date = 7/2/2007 7:51:18 PM | Attr = H ] $NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Created Date = 7/2/2007 7:56:04 PM | Attr = H ] $NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Created Date = 7/2/2007 7:54:19 PM | Attr = H ] $NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Created Date = 7/2/2007 7:53:45 PM | Attr = H ] $NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Created Date = 7/2/2007 7:49:48 PM | Attr = H ] $NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Created Date = 7/2/2007 7:52:50 PM | Attr = H ] $NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Created Date = 7/2/2007 7:54:47 PM | Attr = H ] $NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Created Date = 7/2/2007 7:53:56 PM | Attr = H ] $NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Created Date = 7/2/2007 7:54:07 PM | Attr = H ] $NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Created Date = 7/2/2007 7:54:55 PM | Attr = H ] $NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Created Date = 7/2/2007 7:56:13 PM | Attr = H ] $NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Created Date = 7/2/2007 7:54:40 PM | Attr = H ] $NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Created Date = 7/2/2007 7:57:45 PM | Attr = H ] $NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Created Date = 7/2/2007 7:55:55 PM | Attr = H ] $NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Created Date = 7/2/2007 7:55:38 PM | Attr = H ] $NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Created Date = 7/2/2007 7:55:02 PM | Attr = H ] $NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Created Date = 7/2/2007 7:57:21 PM | Attr = H ] $NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Created Date = 7/2/2007 7:57:54 PM | Attr = H ] $NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Created Date = 7/2/2007 7:56:52 PM | Attr = H ] $NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Created Date = 7/2/2007 7:59:02 PM | Attr = H ] $NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Created Date = 7/2/2007 7:57:01 PM | Attr = H ] $NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Created Date = 7/2/2007 7:56:42 PM | Attr = H ] $NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Created Date = 7/2/2007 7:57:35 PM | Attr = H ] $NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Created Date = 7/2/2007 8:05:00 PM | Attr = H ] $NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Created Date = 7/2/2007 7:57:11 PM | Attr = H ] $NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Created Date = 7/2/2007 7:59:10 PM | Attr = H ] $NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Created Date = 7/2/2007 8:11:11 PM | Attr = H ] $NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Created Date = 7/2/2007 7:58:04 PM | Attr = H ] $NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Created Date = 7/2/2007 7:58:13 PM | Attr = H ] $NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Created Date = 7/2/2007 7:59:22 PM | Attr = H ] $NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Created Date = 7/2/2007 7:59:34 PM | Attr = H ] $NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Created Date = 7/2/2007 7:58:44 PM | Attr = H ] $NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Created Date = 7/2/2007 8:00:39 PM | Attr = H ] $NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Created Date = 7/2/2007 8:00:18 PM | Attr = H ] $NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Created Date = 7/2/2007 7:59:49 PM | Attr = H ] $NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Created Date = 7/2/2007 8:02:47 PM | Attr = H ] $NtUninstallKB923723$ -> %SystemRoot%\$NtUninstallKB923723$ -> [Folder | Created Date = 7/2/2007 8:11:28 PM | Attr = H ] $NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Created Date = 7/2/2007 8:01:34 PM | Attr = H ] $NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Created Date = 7/2/2007 8:00:28 PM | Attr = H ] $NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Created Date = 7/2/2007 8:00:52 PM | Attr = H ] $NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Created Date = 7/2/2007 8:00:00 PM | Attr = H ] $NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Created Date = 7/2/2007 8:04:15 PM | Attr = H ] $NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Created Date = 7/2/2007 8:02:17 PM | Attr = H ] $NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Created Date = 7/2/2007 8:08:01 PM | Attr = H ] $NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Created Date = 7/2/2007 8:01:48 PM | Attr = H ] $NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Created Date = 7/2/2007 8:05:15 PM | Attr = H ] $NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Created Date = 7/2/2007 8:04:39 PM | Attr = H ] $NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Created Date = 7/2/2007 8:03:55 PM | Attr = H ] $NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Created Date = 7/2/2007 8:11:36 PM | Attr = H ] $NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Created Date = 7/2/2007 8:03:14 PM | Attr = H ] $NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Created Date = 7/2/2007 8:03:35 PM | Attr = H ] $NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Created Date = 7/2/2007 8:12:42 PM | Attr = H ] $NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Created Date = 7/2/2007 8:03:03 PM | Attr = H ] $NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Created Date = 7/2/2007 8:10:08 PM | Attr = H ] $NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Created Date = 7/2/2007 8:11:21 PM | Attr = H ] $NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Created Date = 7/2/2007 8:10:20 PM | Attr = H ] $NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Created Date = 7/2/2007 8:09:35 PM | Attr = H ] $NtUninstallKB931836$ -> %SystemRoot%\$NtUninstallKB931836$ -> [Folder | Created Date = 7/2/2007 8:05:45 PM | Attr = H ] $NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Created Date = 7/2/2007 8:10:52 PM | Attr = H ] $NtUninstallKB933566$ -> %SystemRoot%\$NtUninstallKB933566$ -> [Folder | Created Date = 7/2/2007 8:11:50 PM | Attr = H ] $NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Created Date = 7/2/2007 8:14:26 PM | Attr = H ] $NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Created Date = 7/2/2007 8:12:57 PM | Attr = H ] $NtUninstallKB936357$ -> %SystemRoot%\$NtUninstallKB936357$ -> [Folder | Created Date = 7/13/2007 3:07:13 AM | Attr = H ] $NtUninstallQ331958$ -> %SystemRoot%\$NtUninstallQ331958$ -> [Folder | Created Date = 7/2/2007 6:26:15 AM | Attr = H ] $_hpcst$.hpc -> %SystemRoot%\$_hpcst$.hpc -> [Ver = | Size = 2464 bytes | Created Date = 7/4/2007 1:04:45 AM | Attr = ] 002224_.tmp -> %SystemRoot% 2224_.tmp -> [Ver = | Size = 19528 bytes | Created Date = 7/2/2007 4:58:29 AM | Attr = ] assembly -> %SystemRoot%\assembly -> [Folder | Created Date = 7/2/2007 1:07:03 PM | Attr = R S] bthservsdp.dat -> %SystemRoot%\bthservsdp.dat -> [Ver = | Size = 12 bytes | Created Date = 7/2/2007 5:46:26 AM | Attr = ] catchme.exe -> %SystemRoot%\catchme.exe -> [Ver = | Size = 104960 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] Downloaded Installations -> %SystemRoot%\Downloaded Installations -> [Folder | Created Date = 7/2/2007 6:25:15 AM | Attr = ] DVDRegionFree.INI -> %SystemRoot%\DVDRegionFree.INI -> [Ver = | Size = 67 bytes | Created Date = 7/9/2007 4:27:44 AM | Attr = ] EHome -> %SystemRoot%\EHome -> [Folder | Created Date = 7/2/2007 4:56:19 AM | Attr = ] erdnt -> %SystemRoot%\erdnt -> [Folder | Created Date = 7/17/2007 8:56:10 PM | Attr = ] MAXLINK.INI -> %SystemRoot%\MAXLINK.INI -> [Ver = | Size = 419 bytes | Created Date = 7/2/2007 6:09:05 AM | Attr = ] Microsoft.MIF -> %SystemRoot%\Microsoft.MIF -> [Ver = | Size = 2510 bytes | Created Date = 7/3/2007 11:22:59 PM | Attr = ] Minidump -> %SystemRoot%\Minidump -> [Folder | Created Date = 7/7/2007 4:09:52 PM | Attr = ] mozver.dat -> %SystemRoot%\mozver.dat -> [Ver = | Size = 1156 bytes | Created Date = 7/3/2007 10:44:54 PM | Attr = ] NeroDigital.ini -> %SystemRoot%\NeroDigital.ini -> [Ver = | Size = 116 bytes | Created Date = 7/2/2007 4:17:01 PM | Attr = ] nircmd.exe -> %SystemRoot%\nircmd.exe -> NirSoft [Ver = 2.00 | Size = 51200 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] nsreg.dat -> %SystemRoot%\nsreg.dat -> [Ver = | Size = 335 bytes | Created Date = 7/2/2007 9:40:36 PM | Attr = ] ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 376 bytes | Created Date = 7/2/2007 6:48:42 AM | Attr = ] Offline Web Pages -> %SystemRoot%\Offline Web Pages -> [Folder | Created Date = 7/2/2007 1:06:49 PM | Attr = R ] options -> %SystemRoot%\options -> [Folder | Created Date = 7/2/2007 5:27:12 AM | Attr = ] PCDLIB32.DLL -> %SystemRoot%\PCDLIB32.DLL -> Eastman Kodak [Ver = 3, 0, 0, 0 | Size = 212480 bytes | Created Date = 7/2/2007 6:26:34 AM | Attr = ] peernet -> %SystemRoot%\peernet -> [Folder | Created Date = 7/2/2007 5:02:25 AM | Attr = ] Prefetch -> %SystemRoot%\Prefetch -> [Folder | Created Date = 7/2/2007 5:07:45 AM | Attr = ] provisioning -> %SystemRoot%\provisioning -> [Folder | Created Date = 7/2/2007 5:02:25 AM | Attr = ] QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Created Date = 7/2/2007 7:12:53 AM | Attr = ] QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Created Date = 7/2/2007 7:12:53 AM | Attr = H ] ServicePackFiles -> %SystemRoot%\ServicePackFiles -> [Folder | Created Date = 7/2/2007 5:01:07 AM | Attr = ] setup.pss -> %SystemRoot%\setup.pss -> [Folder | Created Date = 7/2/2007 6:30:52 AM | Attr = ] SHELLNEW -> %SystemRoot%\SHELLNEW -> [Folder | Created Date = 7/2/2007 6:46:18 AM | Attr = ] slrundll.exe -> %SystemRoot%\slrundll.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 32866 bytes | Created Date = 7/2/2007 5:02:26 AM | Attr = ] SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Created Date = 7/2/2007 5:07:51 AM | Attr = ] Sun -> %SystemRoot%\Sun -> [Folder | Created Date = 7/2/2007 7:40:48 PM | Attr = ] SxsCaPendDel -> %SystemRoot%\SxsCaPendDel -> [Folder | Created Date = 7/3/2007 6:14:46 PM | Attr = ] temp -> %SystemRoot%\temp -> [Folder | Created Date = 7/17/2007 9:13:46 PM | Attr = ] Easy Internet Sign-up.job -> %SystemRoot%\tasks\Easy Internet Sign-up.job -> [Ver = | Size = 272 bytes | Created Date = 7/2/2007 6:32:09 AM | Attr = ] ActiveScan -> %System32%\ActiveScan -> [Folder | Created Date = 7/13/2007 11:46:49 PM | Attr = ] AegisE5.dll -> %System32%\AegisE5.dll -> Meetinghouse Data Communications [Ver = 1, 19, 0, 4 | Size = 1085440 bytes | Created Date = 7/2/2007 5:27:11 AM | Attr = ] asuninst.exe -> %System32%\asuninst.exe -> Panda Software [Ver = 1, 0, 0, 2 | Size = 73728 bytes | Created Date = 7/13/2007 11:47:31 PM | Attr = ] ati2cqag.dll -> %System32%\ati2cqag.dll -> ATI Technologies Inc. [Ver = 6.14.10.0233 | Size = 229376 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] ati2dvaa.dll -> %System32%\ati2dvaa.dll -> ATI Technologies Inc. [Ver = 6.13.10.5019 | Size = 377984 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ] ati2dvag.dll -> %System32%\ati2dvag.dll -> ATI Technologies Inc. [Ver = 6.14.10.6396 | Size = 374784 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati2edxx.dll -> %System32%\ati2edxx.dll -> ATI Technologies, Inc. [Ver = 6, 14, 10, 2488 | Size = 34816 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati2evxx.dll -> %System32%\ati2evxx.dll -> [Ver = | Size = 86016 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] Ati2mdxx.exe -> %System32%\Ati2mdxx.exe -> ATI Technologies, Inc. [Ver = 4.13.3 | Size = 28672 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati3d1ag.dll -> %System32%\ati3d1ag.dll -> ATI Technologies Inc. [Ver = 6.14.10.3976 | Size = 853088 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati3d2ag.dll -> %System32%\ati3d2ag.dll -> ATI Technologies Inc. [Ver = 6.14.10.3976 | Size = 1039264 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati3duag.dll -> %System32%\ati3duag.dll -> ATI Technologies Inc. [Ver = 6.14.10.0200 | Size = 1164032 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ATIDDC.DLL -> %System32%\ATIDDC.DLL -> ATI Technologies Inc. [Ver = 6.14.10.5 | Size = 81920 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] atiiiexx.dll -> %System32%\atiiiexx.dll -> ATI Technologies Inc. [Ver = 6.14.10.3010 | Size = 229376 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] atioglxx.dll -> %System32%\atioglxx.dll -> ATI Technologies Inc. [Ver = 6.14.10.4010 | Size = 4595712 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] atipdlxx.dll -> %System32%\atipdlxx.dll -> ATI Technologies, Inc. [Ver = 6, 14, 10, 2485 | Size = 110592 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] atitvo32.dll -> %System32%\atitvo32.dll -> ATI Technologies Inc. [Ver = 6.14.10.4100 | Size = 17408 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ativcoxx.dll -> %System32%\ativcoxx.dll -> ATI Technologies, Inc. [Ver = 6.13.10.0005 | Size = 24064 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ativdaxx.ax -> %System32%\ativdaxx.ax -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 9728 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ] ativmvxx.ax -> %System32%\ativmvxx.ax -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 23040 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ] ativtmxx.dll -> %System32%\ativtmxx.dll -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 32768 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ] ativvaxx.dll -> %System32%\ativvaxx.dll -> ATI Technologies Inc. [Ver = 6.14.01.0009 | Size = 516768 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ] B11gUSB.dll -> %System32%\B11gUSB.dll -> [Ver = | Size = 40960 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ] bmpdovog.ini -> %System32%\bmpdovog.ini -> [Ver = | Size = 1054182 bytes | Created Date = 7/8/2007 2:47:43 AM | Attr = HS] CanonIJ Uninstaller Information -> %System32%\CanonIJ Uninstaller Information -> [Folder | Created Date = 7/2/2007 6:05:45 AM | Attr = H ] CNCC600.DLL -> %System32%\CNCC600.DLL -> CANON INC. [Ver = 0, 2, 5, 0 | Size = 1134592 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ] CNCI600.DLL -> %System32%\CNCI600.DLL -> CANON INC. [Ver = 2, 0, 0, 0 | Size = 57344 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ] CNCL600.DLL -> %System32%\CNCL600.DLL -> Canon Inc. [Ver = 1.00 | Size = 135168 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ] cnco600.dll -> %System32%\cnco600.dll -> Canon Inc. [Ver = 1.0 | Size = 106496 bytes | Created Date = 7/2/2007 6:05:39 AM | Attr = ] CNMLM87.DLL -> %System32%\CNMLM87.DLL -> CANON INC. [Ver = 1.95.2.70 | Size = 161792 bytes | Created Date = 7/2/2007 6:05:48 AM | Attr = ] cpmjssat.ini -> %System32%\cpmjssat.ini -> [Ver = | Size = 1105948 bytes | Created Date = 7/11/2007 8:19:11 PM | Attr = HS] cpuinf32.dll -> %System32%\cpuinf32.dll -> Intel Corporation [Ver = 1.0.0.4 | Size = 49152 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] d3d9caps.dat -> %System32%\d3d9caps.dat -> [Ver = | Size = 3688 bytes | Created Date = 7/2/2007 7:16:01 AM | Attr = ] dllcache -> %System32%\dllcache -> [Folder | Created Date = 7/2/2007 1:05:10 PM | Attr = RHS] DRVSTORE -> %System32%\DRVSTORE -> [Folder | Created Date = 7/2/2007 7:12:07 AM | Attr = ] gqovtsmk.ini -> %System32%\gqovtsmk.ini -> [Ver = | Size = 1054310 bytes | Created Date = 7/8/2007 5:41:40 PM | Attr = HS] GTNDIS3.VXD -> %System32%\GTNDIS3.VXD -> [Ver = | Size = 31930 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ] GTNDIS5.sys -> %System32%\GTNDIS5.sys -> Printing Communications Assoc., Inc. (PCAUSA) [Ver = 5.03.16.54 | Size = 15872 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ] GTW32N50.dll -> %System32%\GTW32N50.dll -> [Ver = 1.0.0.1 | Size = 94208 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ] Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Created Date = 7/13/2007 11:46:53 PM | Attr = ] hsfcisp2.dll -> %System32%\hsfcisp2.dll -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 32285 bytes | Created Date = 7/2/2007 5:02:30 AM | Attr = ] ieencode.dll -> %System32%\ieencode.dll -> [Ver = | Size = 81920 bytes | Created Date = 7/2/2007 5:02:30 AM | Attr = ] lbvbeqlb.ini -> %System32%\lbvbeqlb.ini -> [Ver = | Size = 1045467 bytes | Created Date = 7/5/2007 10:05:52 PM | Attr = HS] lccsfghm.ini -> %System32%\lccsfghm.ini -> [Ver = | Size = 2496711 bytes | Created Date = 7/11/2007 9:44:34 PM | Attr = HS] lmpgad.ax -> %System32%\lmpgad.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 47104 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] lmpgspl.ax -> %System32%\lmpgspl.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 106496 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] lmpgvd.ax -> %System32%\lmpgvd.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 94208 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] malslib.dll -> %System32%\malslib.dll -> AvantGo, Inc. [Ver = 3.3 Build 864 | Size = 114688 bytes | Created Date = 7/4/2007 1:02:54 AM | Attr = ] mbllnk.cpl -> %System32%\mbllnk.cpl -> AvantGo, Inc. [Ver = 3.3 Build 864 | Size = 69632 bytes | Created Date = 7/4/2007 1:02:55 AM | Attr = ] mobileV.acm -> %System32%\mobileV.acm -> [Ver = | Size = 57422 bytes | Created Date = 7/4/2007 1:02:55 AM | Attr = ] mplaa6.dll -> %System32%\mplaa6.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 81920 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplam6.dll -> %System32%\mplam6.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 69632 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplapx.dll -> %System32%\mplapx.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 69632 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplaw7.dll -> %System32%\mplaw7.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 81920 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplva6.dll -> %System32%\mplva6.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1675264 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplvm6.dll -> %System32%\mplvm6.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1581056 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplvpx.dll -> %System32%\mplvpx.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1150976 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplvw7.dll -> %System32%\mplvw7.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1630208 bytes | Created Date = 7/2/2007 6:27:16 AM | Attr = ] mtxparhd.dll -> %System32%\mtxparhd.dll -> Matrox Graphics Inc. [Ver = 6.13.01.1296 | Size = 1737856 bytes | Created Date = 7/2/2007 5:02:29 AM | Attr = ] oakbigxo.ini -> %System32%\oakbigxo.ini -> [Ver = | Size = 1052262 bytes | Created Date = 7/4/2007 8:59:50 PM | Attr = HS] pavas.ico -> %System32%\pavas.ico -> [Ver = | Size = 30590 bytes | Created Date = 7/13/2007 11:46:52 PM | Attr = ] pncrt.dll -> %System32%\pncrt.dll -> Real Networks, Inc [Ver = 6.0.0.0 | Size = 278528 bytes | Created Date = 7/2/2007 6:25:51 PM | Attr = ] pndx5016.dll -> %System32%\pndx5016.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 6656 bytes | Created Date = 7/2/2007 6:25:52 PM | Attr = ] pndx5032.dll -> %System32%\pndx5032.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 5632 bytes | Created Date = 7/2/2007 6:25:52 PM | Attr = ] PreInstall -> %System32%\PreInstall -> [Folder | Created Date = 7/2/2007 8:14:37 AM | Attr = ] QuickTime.qts -> %System32%\QuickTime.qts -> Apple Inc. [Ver = 7.2 | Size = 49152 bytes | Created Date = 6/29/2007 5:24:58 AM | Attr = ] QuickTimeVR.qtx -> %System32%\QuickTimeVR.qtx -> Apple Inc. [Ver = 7.2 | Size = 65536 bytes | Created Date = 6/29/2007 5:24:58 AM | Attr = ] rmoc3260.dll -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Created Date = 7/2/2007 6:25:59 PM | Attr = ] rmyyagnu.ini -> %System32%\rmyyagnu.ini -> [Ver = | Size = 945 bytes | Created Date = 7/3/2007 7:10:19 PM | Attr = HS] rpepjhcn.ini -> %System32%\rpepjhcn.ini -> [Ver = | Size = 1045586 bytes | Created Date = 7/7/2007 2:33:44 AM | Attr = HS] s3gnb.dll -> %System32%\s3gnb.dll -> S3 Graphics, Inc. [Ver = 6.14.10.0012-13.94.12 | Size = 397056 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] Samsung PC Studio Codecs -> %System32%\Samsung PC Studio Codecs -> [Folder | Created Date = 7/2/2007 7:06:59 AM | Attr = ] Samsung_USB_Drivers -> %System32%\Samsung_USB_Drivers -> [Folder | Created Date = 7/2/2007 7:07:06 AM | Attr = ] sbnxlpfi.ini -> %System32%\sbnxlpfi.ini -> [Ver = | Size = 2198607 bytes | Created Date = 7/11/2007 8:41:34 PM | Attr = HS] slcoinst.dll -> %System32%\slcoinst.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 73832 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] slextspk.dll -> %System32%\slextspk.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 286792 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] slgen.dll -> %System32%\slgen.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 188508 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] slrundll.exe -> %System32%\slrundll.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 32866 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] slserv.exe -> %System32%\slserv.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 73796 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] SoftwareDistribution -> %System32%\SoftwareDistribution -> [Folder | Created Date = 7/2/2007 5:54:03 AM | Attr = ] swreg.exe -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] swsc.exe -> %System32%\swsc.exe -> SteelWerX [Ver = 2.0.0.0 | Size = 370688 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] swxcacls.exe -> %System32%\swxcacls.exe -> SteelWerX [Ver = 1.0.1.1 | Size = 212480 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Created Date = 7/2/2007 7:07:02 AM | Attr = ] UnInstall_Driver.ico -> %System32%\UnInstall_Driver.ico -> [Ver = | Size = 22486 bytes | Created Date = 7/2/2007 7:07:52 AM | Attr = R ] uxefnpkm.ini -> %System32%\uxefnpkm.ini -> [Ver = | Size = 645 bytes | Created Date = 7/2/2007 7:16:07 PM | Attr = HS] vfind.exe -> %System32%\vfind.exe -> [Ver = | Size = 49152 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] yppsuolm.ini -> %System32%\yppsuolm.ini -> [Ver = | Size = 1105838 bytes | Created Date = 7/9/2007 8:49:40 PM | Attr = HS] yxjbaxur.ini -> %System32%\yxjbaxur.ini -> [Ver = | Size = 1054362 bytes | Created Date = 7/9/2007 7:43:40 PM | Attr = HS] ZPORT4AS.dll -> %System32%\ZPORT4AS.dll -> [Ver = | Size = 11776 bytes | Created Date = 7/13/2007 11:47:31 PM | Attr = ] adv01nt5.dll -> %System32%\drivers\adv01nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 4255 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv02nt5.dll -> %System32%\drivers\adv02nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3967 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv05nt5.dll -> %System32%\drivers\adv05nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3615 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv07nt5.dll -> %System32%\drivers\adv07nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3647 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv08nt5.dll -> %System32%\drivers\adv08nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3135 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv09nt5.dll -> %System32%\drivers\adv09nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3711 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv11nt5.dll -> %System32%\drivers\adv11nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3775 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] AegisP.sys -> %System32%\drivers\AegisP.sys -> Meetinghouse Data Communications [Ver = 3.0.0.6 | Size = 15939 bytes | Created Date = 7/2/2007 5:27:27 AM | Attr = ] amdagp.sys -> %System32%\drivers\amdagp.sys -> Advanced Micro Devices, Inc. [Ver = 5.00 (xpsp_sp2_rtm.040803-2158) | Size = 43008 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1btxx.sys -> %System32%\drivers\ati1btxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 56623 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1mdxx.sys -> %System32%\drivers\ati1mdxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 11615 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1pdxx.sys -> %System32%\drivers\ati1pdxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 12047 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1raxx.sys -> %System32%\drivers\ati1raxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 30671 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1rvxx.sys -> %System32%\drivers\ati1rvxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 63663 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1snxx.sys -> %System32%\drivers\ati1snxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 26367 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1ttxx.sys -> %System32%\drivers\ati1ttxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 21343 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1tuxx.sys -> %System32%\drivers\ati1tuxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 36463 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1xbxx.sys -> %System32%\drivers\ati1xbxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 29455 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1xsxx.sys -> %System32%\drivers\ati1xsxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 34735 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati2mtaa.sys -> %System32%\drivers\ati2mtaa.sys -> ATI Technologies Inc. [Ver = 6.13.10.5019 | Size = 327040 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati2mtag.sys -> %System32%\drivers\ati2mtag.sys -> ATI Technologies Inc. [Ver = 6.14.10.6396 | Size = 620032 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] atinbtxx.sys -> %System32%\drivers\atinbtxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 57856 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinmdxx.sys -> %System32%\drivers\atinmdxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 13824 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinpdxx.sys -> %System32%\drivers\atinpdxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 14336 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinraxx.sys -> %System32%\drivers\atinraxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 52224 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinrvxx.sys -> %System32%\drivers\atinrvxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 104960 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinsnxx.sys -> %System32%\drivers\atinsnxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 28672 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinttxx.sys -> %System32%\drivers\atinttxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 13824 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atintuxx.sys -> %System32%\drivers\atintuxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 73216 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinxbxx.sys -> %System32%\drivers\atinxbxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 31744 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinxsxx.sys -> %System32%\drivers\atinxsxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 63488 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ativmc20.cod -> %System32%\drivers\ativmc20.cod -> [Ver = | Size = 64352 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atv01nt5.dll -> %System32%\drivers\atv01nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 21183 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atv02nt5.dll -> %System32%\drivers\atv02nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11359 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atv04nt5.dll -> %System32%\drivers\atv04nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 25471 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atv06nt5.dll -> %System32%\drivers\atv06nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 14143 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atv10nt5.dll -> %System32%\drivers\atv10nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 17279 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] avg7core.sys -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Created Date = 7/2/2007 5:13:05 AM | Attr = ] avg7rsw.sys -> %System32%\drivers\avg7rsw.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,340 | Size = 4224 bytes | Created Date = 7/2/2007 5:13:09 AM | Attr = ] avg7rsxp.sys -> %System32%\drivers\avg7rsxp.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.442 | Size = 27776 bytes | Created Date = 7/2/2007 5:13:10 AM | Attr = ] AvgAsCln.sys -> %System32%\drivers\AvgAsCln.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 10872 bytes | Created Date = 7/13/2007 4:43:54 AM | Attr = ] avgclean.sys -> %System32%\drivers\avgclean.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 3968 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ] avgmfx86.sys -> %System32%\drivers\avgmfx86.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.473 | Size = 19904 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ] avgtdi.sys -> %System32%\drivers\avgtdi.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,346 | Size = 4960 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ] btwhid.sys -> %System32%\drivers\btwhid.sys -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 44003 bytes | Created Date = 7/2/2007 5:50:10 AM | Attr = ] ch7xxnt5.dll -> %System32%\drivers\ch7xxnt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 15423 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] cxthsfs2.cty -> %System32%\drivers\cxthsfs2.cty -> [Ver = | Size = 129045 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039 900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> %System32%\drivers\HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039 900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> [Ver = | Size = 4148 bytes | Created Date = 7/2/2007 6:30:03 AM | Attr = RHS] hsfbs2s2.sys -> %System32%\drivers\hsfbs2s2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 220032 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] hsfcxts2.sys -> %System32%\drivers\hsfcxts2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 built by: WinDDK | Size = 685056 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] hsfdpsp2.sys -> %System32%\drivers\hsfdpsp2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 1041536 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] mtlmnt5.sys -> %System32%\drivers\mtlmnt5.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 126686 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] mtlstrm.sys -> %System32%\drivers\mtlstrm.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 1309184 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] mtxparhm.sys -> %System32%\drivers\mtxparhm.sys -> Matrox Graphics Inc. [Ver = 6.13.01.1296 | Size = 452736 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] netwlan5.img -> %System32%\drivers\netwlan5.img -> [Ver = | Size = 67866 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] ntmtlfax.sys -> %System32%\drivers\ntmtlfax.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 180360 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] pfc.sys -> %System32%\drivers\pfc.sys -> Padus, Inc. [Ver = 2, 5, 0, 204 | Size = 10368 bytes | Created Date = 7/2/2007 6:27:17 AM | Attr = ] recagent.sys -> %System32%\drivers\recagent.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 13776 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] rt2500usb.sys -> %System32%\drivers\rt2500usb.sys -> Ralink Technology Inc. [Ver = 1.02.00.0000 | Size = 140416 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ] s3gnbm.sys -> %System32%\drivers\s3gnbm.sys -> S3 Graphics, Inc. [Ver = 6.14.10.0012-13.94.12 | Size = 166912 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] siint5.dll -> %System32%\drivers\siint5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3901 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] sisagp.sys -> %System32%\drivers\sisagp.sys -> Silicon Integrated Systems Corporation [Ver = 5.12.01.2010 (xpsp_sp2_rtm.040803-2158) | Size = 41088 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] slnt7554.sys -> %System32%\drivers\slnt7554.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 129535 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] slntamr.sys -> %System32%\drivers\slntamr.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 404990 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] slnthal.sys -> %System32%\drivers\slnthal.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 95424 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] slwdmsup.sys -> %System32%\drivers\slwdmsup.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 13240 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] StMp3Rec.sys -> %System32%\drivers\StMp3Rec.sys -> Generic [Ver = 1, 551, 0, 139 | Size = 38229 bytes | Created Date = 7/2/2007 6:56:22 AM | Attr = ] vchnt5.dll -> %System32%\drivers\vchnt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11325 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] wadv07nt.sys -> %System32%\drivers\wadv07nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11807 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] wadv08nt.sys -> %System32%\drivers\wadv08nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11295 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] wadv09nt.sys -> %System32%\drivers\wadv09nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11871 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] wadv11nt.sys -> %System32%\drivers\wadv11nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11935 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] watv06nt.sys -> %System32%\drivers\watv06nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 22271 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] watv10nt.sys -> %System32%\drivers\watv10nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 25471 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] [Files/Folders - Modified Within 30 days] $VAULT$.AVG -> %SystemDrive%\$VAULT$.AVG -> [Folder | Modified Date = 7/14/2007 6:34:34 AM | Attr = RH ] BOOT.BAK -> %SystemDrive%\BOOT.BAK -> [Ver = | Size = 196 bytes | Modified Date = 7/2/2007 7:23:36 AM | Attr = RHS] boot.ini -> %SystemDrive%\boot.ini -> [Ver = | Size = 283 bytes | Modified Date = 7/2/2007 6:03:24 AM | Attr = RHS] cmdcons -> %SystemDrive%\cmdcons -> [Folder | Modified Date = 7/2/2007 7:31:12 AM | Attr = RHS] Documents and Settings -> %SystemDrive%\Documents and Settings -> [Folder | Modified Date = 7/13/2007 5:49:56 AM | Attr = ] hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1341706240 bytes | Modified Date = 7/17/2007 10:07:06 PM | Attr = HS] hp -> %SystemDrive%\hp -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = H ] I386 -> %SystemDrive%\I386 -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = ] IPH.PH -> %SystemDrive%\IPH.PH -> [Ver = | Size = 1106 bytes | Modified Date = 7/3/2007 12:35:14 AM | Attr = H ] MSOCache -> %SystemDrive%\MSOCache -> [Folder | Modified Date = 7/2/2007 7:43:44 AM | Attr = RH ] My Downloads -> %SystemDrive%\My Downloads -> [Folder | Modified Date = 7/2/2007 7:22:12 PM | Attr = ] NTDETECT.COM -> %SystemDrive%\NTDETECT.COM -> [Ver = | Size = 47564 bytes | Modified Date = 7/2/2007 5:59:30 AM | Attr = RHS] Program Files -> %ProgramFiles% -> [Folder | Modified Date = 7/15/2007 10:22:00 AM | Attr = R ] QooBox -> %SystemDrive%\QooBox -> [Folder | Modified Date = 7/17/2007 9:54:54 PM | Attr = ] RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Modified Date = 7/2/2007 7:32:54 AM | Attr = HS] sqmdata00.sqm -> %SystemDrive%\sqmdata00.sqm -> [Ver = | Size = 268 bytes | Modified Date = 7/2/2007 8:45:24 AM | Attr = H ] sqmdata01.sqm -> %SystemDrive%\sqmdata01.sqm -> [Ver = | Size = 268 bytes | Modified Date = 7/2/2007 8:45:34 AM | Attr = H ] sqmdata02.sqm -> %SystemDrive%\sqmdata02.sqm -> [Ver = | Size = 172 bytes | Modified Date = 7/2/2007 8:45:36 AM | Attr = H ] sqmnoopt00.sqm -> %SystemDrive%\sqmnoopt00.sqm -> [Ver = | Size = 244 bytes | Modified Date = 7/2/2007 8:45:24 AM | Attr = H ] sqmnoopt01.sqm -> %SystemDrive%\sqmnoopt01.sqm -> [Ver = | Size = 244 bytes | Modified Date = 7/2/2007 8:45:34 AM | Attr = H ] sqmnoopt02.sqm -> %SystemDrive%\sqmnoopt02.sqm -> [Ver = | Size = 172 bytes | Modified Date = 7/2/2007 8:45:36 AM | Attr = H ] System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Modified Date = 7/2/2007 6:07:30 AM | Attr = HS] WINDOWS -> %SystemRoot% -> [Folder | Modified Date = 7/17/2007 10:13:48 PM | Attr = ] _OTMoveIt -> %SystemDrive%\_OTMoveIt -> [Folder | Modified Date = 7/17/2007 10:43:08 PM | Attr = ] $hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Modified Date = 7/13/2007 3:59:48 AM | Attr = H ] $MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Modified Date = 7/2/2007 9:15:08 AM | Attr = H ] $NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Modified Date = 7/2/2007 5:58:10 AM | Attr = H ] $NtUninstallKB821557$ -> %SystemRoot%\$NtUninstallKB821557$ -> [Folder | Modified Date = 7/2/2007 2:13:30 PM | Attr = H ] $NtUninstallKB823559$ -> %SystemRoot%\$NtUninstallKB823559$ -> [Folder | Modified Date = 7/2/2007 2:13:30 PM | Attr = H ] $NtUninstallKB835409$ -> %SystemRoot%\$NtUninstallKB835409$ -> [Folder | Modified Date = 7/2/2007 5:41:38 AM | Attr = H ] $NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Modified Date = 7/2/2007 8:47:58 PM | Attr = H ] $NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Modified Date = 7/2/2007 8:49:30 PM | Attr = H ] $NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Modified Date = 7/2/2007 8:48:18 PM | Attr = H ] $NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Modified Date = 7/2/2007 8:48:10 PM | Attr = H ] $NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Modified Date = 7/2/2007 8:49:16 PM | Attr = H ] $NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Modified Date = 7/2/2007 8:49:08 PM | Attr = H ] $NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Modified Date = 7/2/2007 9:11:04 PM | Attr = H ] $NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Modified Date = 7/2/2007 8:50:06 PM | Attr = H ] $NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Modified Date = 7/2/2007 8:49:24 PM | Attr = H ] $NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Modified Date = 7/2/2007 8:51:04 PM | Attr = H ] $NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Modified Date = 7/2/2007 8:51:54 PM | Attr = H ] $NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Modified Date = 7/2/2007 8:50:44 PM | Attr = H ] $NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Modified Date = 7/2/2007 8:51:44 PM | Attr = H ] $NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Modified Date = 7/2/2007 8:49:44 PM | Attr = H ] $NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Modified Date = 7/2/2007 9:14:38 AM | Attr = H ] $NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Modified Date = 7/2/2007 8:51:32 PM | Attr = H ] $NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Modified Date = 7/2/2007 8:51:20 PM | Attr = H ] $NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Modified Date = 7/2/2007 8:56:06 PM | Attr = H ] $NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Modified Date = 7/2/2007 8:54:22 PM | Attr = H ] $NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Modified Date = 7/2/2007 8:53:48 PM | Attr = H ] $NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Modified Date = 7/2/2007 8:49:50 PM | Attr = H ] $NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Modified Date = 7/2/2007 8:52:54 PM | Attr = H ] $NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Modified Date = 7/2/2007 8:54:50 PM | Attr = H ] $NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Modified Date = 7/2/2007 8:53:58 PM | Attr = H ] $NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Modified Date = 7/2/2007 8:54:10 PM | Attr = H ] $NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Modified Date = 7/2/2007 8:54:58 PM | Attr = H ] $NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Modified Date = 7/2/2007 8:56:16 PM | Attr = H ] $NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Modified Date = 7/2/2007 8:54:42 PM | Attr = H ] $NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Modified Date = 7/2/2007 8:57:48 PM | Attr = H ] $NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Modified Date = 7/2/2007 8:55:58 PM | Attr = H ] $NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Modified Date = 7/2/2007 8:55:42 PM | Attr = H ] $NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Modified Date = 7/2/2007 8:55:06 PM | Attr = H ] $NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Modified Date = 7/2/2007 8:57:24 PM | Attr = H ] $NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Modified Date = 7/2/2007 8:57:56 PM | Attr = H ] $NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Modified Date = 7/2/2007 8:56:54 PM | Attr = H ] $NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Modified Date = 7/2/2007 8:59:04 PM | Attr = H ] $NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Modified Date = 7/2/2007 8:57:04 PM | Attr = H ] $NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Modified Date = 7/2/2007 8:56:46 PM | Attr = H ] $NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Modified Date = 7/2/2007 8:57:38 PM | Attr = H ] $NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Modified Date = 7/2/2007 9:05:02 PM | Attr = H ] $NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Modified Date = 7/2/2007 8:57:14 PM | Attr = H ] $NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Modified Date = 7/2/2007 8:59:12 PM | Attr = H ] $NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Modified Date = 7/2/2007 9:11:14 PM | Attr = H ] $NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Modified Date = 7/2/2007 8:58:06 PM | Attr = H ] $NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Modified Date = 7/2/2007 8:58:16 PM | Attr = H ] $NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Modified Date = 7/2/2007 8:59:26 PM | Attr = H ] $NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Modified Date = 7/2/2007 8:59:38 PM | Attr = H ] $NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Modified Date = 7/2/2007 8:58:48 PM | Attr = H ] $NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Modified Date = 7/2/2007 9:00:42 PM | Attr = H ] $NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Modified Date = 7/2/2007 9:00:20 PM | Attr = H ] $NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Modified Date = 7/2/2007 8:59:52 PM | Attr = H ] $NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Modified Date = 7/2/2007 9:02:50 PM | Attr = H ] $NtUninstallKB923723$ -> %SystemRoot%\$NtUninstallKB923723$ -> [Folder | Modified Date = 7/2/2007 9:11:30 PM | Attr = H ] $NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Modified Date = 7/2/2007 9:01:36 PM | Attr = H ] $NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Modified Date = 7/2/2007 9:00:30 PM | Attr = H ] $NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Modified Date = 7/2/2007 9:00:54 PM | Attr = H ] $NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Modified Date = 7/2/2007 9:00:02 PM | Attr = H ] $NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Modified Date = 7/2/2007 9:04:16 PM | Attr = H ] $NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Modified Date = 7/2/2007 9:02:20 PM | Attr = H ] $NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Modified Date = 7/2/2007 9:08:04 PM | Attr = H ] $NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Modified Date = 7/2/2007 9:01:50 PM | Attr = H ] $NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Modified Date = 7/2/2007 9:05:18 PM | Attr = H ] $NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Modified Date = 7/2/2007 9:04:42 PM | Attr = H ] $NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Modified Date = 7/2/2007 9:03:58 PM | Attr = H ] $NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Modified Date = 7/2/2007 9:11:38 PM | Attr = H ] $NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Modified Date = 7/2/2007 9:03:16 PM | Attr = H ] $NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Modified Date = 7/2/2007 9:03:38 PM | Attr = H ] $NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Modified Date = 7/2/2007 9:12:44 PM | Attr = H ] $NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Modified Date = 7/2/2007 9:03:06 PM | Attr = H ] $NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Modified Date = 7/2/2007 9:10:10 PM | Attr = H ] $NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Modified Date = 7/2/2007 9:11:22 PM | Attr = H ] $NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Modified Date = 7/2/2007 9:10:22 PM | Attr = H ] $NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Modified Date = 7/2/2007 9:09:38 PM | Attr = H ] $NtUninstallKB931836$ -> %SystemRoot%\$NtUninstallKB931836$ -> [Folder | Modified Date = 7/2/2007 9:05:46 PM | Attr = H ] $NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Modified Date = 7/2/2007 9:10:54 PM | Attr = H ] $NtUninstallKB933566$ -> %SystemRoot%\$NtUninstallKB933566$ -> [Folder | Modified Date = 7/2/2007 9:11:56 PM | Attr = H ] $NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Modified Date = 7/2/2007 9:14:28 PM | Attr = H ] $NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Modified Date = 7/2/2007 9:12:58 PM | Attr = H ] $NtUninstallKB936357$ -> %SystemRoot%\$NtUninstallKB936357$ -> [Folder | Modified Date = 7/13/2007 4:07:16 AM | Attr = H ] $NtUninstall |
|
|
Jul 17 2007, 04:08 PM
Post
#8
|
|
|
Member ![]() ![]() Posts: 13 OS: Windows XP SP2 |
...theres even more...
the rest of winpfind3 $NtUninstallKB936357$ -> %SystemRoot%\$NtUninstallKB936357$ -> [Folder | Modified Date = 7/13/2007 4:07:16 AM | Attr = H ] $NtUninstallQ328310$ -> %SystemRoot%\$NtUninstallQ328310$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ329112$ -> %SystemRoot%\$NtUninstallQ329112$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ329115$ -> %SystemRoot%\$NtUninstallQ329115$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ329170$ -> %SystemRoot%\$NtUninstallQ329170$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ329390$ -> %SystemRoot%\$NtUninstallQ329390$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallq329623$ -> %SystemRoot%\$NtUninstallq329623$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ329834$ -> %SystemRoot%\$NtUninstallQ329834$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ331958$ -> %SystemRoot%\$NtUninstallQ331958$ -> [Folder | Modified Date = 7/2/2007 7:26:16 AM | Attr = H ] $NtUninstallQ810565$ -> %SystemRoot%\$NtUninstallQ810565$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ810577$ -> %SystemRoot%\$NtUninstallQ810577$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ810833$ -> %SystemRoot%\$NtUninstallQ810833$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ814033$ -> %SystemRoot%\$NtUninstallQ814033$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ814995$ -> %SystemRoot%\$NtUninstallQ814995$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ815485$ -> %SystemRoot%\$NtUninstallQ815485$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ817287$ -> %SystemRoot%\$NtUninstallQ817287$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $_hpcst$.hpc -> %SystemRoot%\$_hpcst$.hpc -> [Ver = | Size = 2464 bytes | Modified Date = 7/4/2007 2:04:46 AM | Attr = ] addins -> %SystemRoot%\addins -> [Folder | Modified Date = 7/2/2007 2:13:46 PM | Attr = ] AppPatch -> %SystemRoot%\AppPatch -> [Folder | Modified Date = 7/14/2007 2:18:20 AM | Attr = ] assembly -> %SystemRoot%\assembly -> [Folder | Modified Date = 7/2/2007 2:13:16 PM | Attr = R S] bootstat.dat -> %SystemRoot%\bootstat.dat -> [Ver = | Size = 2048 bytes | Modified Date = 7/17/2007 10:07:12 PM | Attr = S] bthservsdp.dat -> %SystemRoot%\bthservsdp.dat -> [Ver = | Size = 12 bytes | Modified Date = 7/16/2007 3:41:34 AM | Attr = ] catchme.exe -> %SystemRoot%\catchme.exe -> [Ver = | Size = 104960 bytes | Modified Date = 7/4/2007 7:21:06 PM | Attr = ] CREATOR -> %SystemRoot%\CREATOR -> [Folder | Modified Date = 7/2/2007 2:17:38 PM | Attr = ] Cursors -> %SystemRoot%\Cursors -> [Folder | Modified Date = 7/2/2007 2:13:36 PM | Attr = ] Debug -> %SystemRoot%\Debug -> [Folder | Modified Date = 7/2/2007 6:08:34 AM | Attr = ] Downloaded Installations -> %SystemRoot%\Downloaded Installations -> [Folder | Modified Date = 7/2/2007 7:25:16 AM | Attr = ] Downloaded Program Files -> %SystemRoot%\Downloaded Program Files -> [Folder | Modified Date = 7/14/2007 2:19:04 AM | Attr = S] DVDRegionFree.INI -> %SystemRoot%\DVDRegionFree.INI -> [Ver = | Size = 67 bytes | Modified Date = 7/17/2007 4:04:16 AM | Attr = ] EHome -> %SystemRoot%\EHome -> [Folder | Modified Date = 7/2/2007 5:56:20 AM | Attr = ] erdnt -> %SystemRoot%\erdnt -> [Folder | Modified Date = 7/17/2007 9:56:12 PM | Attr = ] Fonts -> %SystemRoot%\Fonts -> [Folder | Modified Date = 7/11/2007 10:50:06 PM | Attr = R S] Help -> %SystemRoot%\Help -> [Folder | Modified Date = 7/4/2007 2:03:00 AM | Attr = ] ime -> %SystemRoot%\ime -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ] imsins.BAK -> %SystemRoot%\imsins.BAK -> [Ver = | Size = 1355 bytes | Modified Date = 7/2/2007 9:14:32 PM | Attr = ] inf -> %SystemRoot%\inf -> [Folder | Modified Date = 7/14/2007 4:34:48 AM | Attr = H ] Installer -> %SystemRoot%\Installer -> [Folder | Modified Date = 7/16/2007 5:06:12 AM | Attr = HS] MAXLINK.INI -> %SystemRoot%\MAXLINK.INI -> [Ver = | Size = 419 bytes | Modified Date = 7/2/2007 7:09:06 AM | Attr = ] Media -> %SystemRoot%\Media -> [Folder | Modified Date = 7/2/2007 7:10:32 AM | Attr = ] Microsoft.MIF -> %SystemRoot%\Microsoft.MIF -> [Ver = | Size = 2510 bytes | Modified Date = 7/4/2007 2:05:46 AM | Attr = ] Minidump -> %SystemRoot%\Minidump -> [Folder | Modified Date = 7/11/2007 5:47:14 PM | Attr = ] mozver.dat -> %SystemRoot%\mozver.dat -> [Ver = | Size = 1156 bytes | Modified Date = 7/3/2007 11:44:58 PM | Attr = ] msagent -> %SystemRoot%\msagent -> [Folder | Modified Date = 7/2/2007 9:15:56 PM | Attr = ] NeroDigital.ini -> %SystemRoot%\NeroDigital.ini -> [Ver = | Size = 116 bytes | Modified Date = 7/15/2007 9:05:56 AM | Attr = ] nsreg.dat -> %SystemRoot%\nsreg.dat -> [Ver = | Size = 335 bytes | Modified Date = 7/3/2007 12:32:30 AM | Attr = ] ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 376 bytes | Modified Date = 7/2/2007 7:48:44 AM | Attr = ] Offline Web Pages -> %SystemRoot%\Offline Web Pages -> [Folder | Modified Date = 7/2/2007 2:13:16 PM | Attr = R ] options -> %SystemRoot%\options -> [Folder | Modified Date = 7/2/2007 6:27:14 AM | Attr = ] peernet -> %SystemRoot%\peernet -> [Folder | Modified Date = 7/2/2007 6:02:26 AM | Attr = ] Prefetch -> %SystemRoot%\Prefetch -> [Folder | Modified Date = 7/17/2007 9:43:00 PM | Attr = ] provisioning -> %SystemRoot%\provisioning -> [Folder | Modified Date = 7/2/2007 6:02:26 AM | Attr = ] QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Modified Date = 7/2/2007 8:12:54 AM | Attr = ] QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Modified Date = 7/17/2007 10:09:04 PM | Attr = H ] RegisteredPackages -> %SystemRoot%\RegisteredPackages -> [Folder | Modified Date = 7/3/2007 9:24:18 PM | Attr = ] Registration -> %SystemRoot%\Registration -> [Folder | Modified Date = 7/2/2007 8:46:52 PM | Attr = ] security -> %SystemRoot%\security -> [Folder | Modified Date = 7/3/2007 9:32:16 PM | Attr = ] ServicePackFiles -> %SystemRoot%\ServicePackFiles -> [Folder | Modified Date = 7/2/2007 6:01:08 AM | Attr = ] setup.pss -> %SystemRoot%\setup.pss -> [Folder | Modified Date = 7/2/2007 7:30:54 AM | Attr = ] setupapi.log.0.old -> %SystemRoot%\setupapi.log.0.old -> [Ver = | Size = 2266667 bytes | Modified Date = 7/2/2007 5:41:46 AM | Attr = ] SHELLNEW -> %SystemRoot%\SHELLNEW -> [Folder | Modified Date = 7/2/2007 7:47:22 AM | Attr = ] SMINST -> %SystemRoot%\SMINST -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = ] SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Modified Date = 7/14/2007 2:30:04 AM | Attr = ] srchasst -> %SystemRoot%\srchasst -> [Folder | Modified Date = 7/2/2007 6:01:00 AM | Attr = ] Sun -> %SystemRoot%\Sun -> [Folder | Modified Date = 7/2/2007 8:40:50 PM | Attr = ] SxsCaPendDel -> %SystemRoot%\SxsCaPendDel -> [Folder | Modified Date = 7/3/2007 7:18:08 PM | Attr = ] system -> %SystemRoot%\system -> [Folder | Modified Date = 7/14/2007 2:30:04 AM | Attr = ] system.ini -> %SystemRoot%\system.ini -> [Ver = | Size = 231 bytes | Modified Date = 7/2/2007 7:21:34 AM | Attr = ] system32 -> %System32% -> [Folder | Modified Date = 7/17/2007 10:43:08 PM | Attr = ] Tasks -> %SystemRoot%\Tasks -> [Folder | Modified Date = 7/2/2007 5:55:30 AM | Attr = S] temp -> %SystemRoot%\temp -> [Folder | Modified Date = 7/17/2007 10:13:48 PM | Attr = ] twain_32 -> %SystemRoot%\twain_32 -> [Folder | Modified Date = 7/2/2007 7:05:46 AM | Attr = ] Web -> %SystemRoot%\Web -> [Folder | Modified Date = 7/2/2007 5:59:42 AM | Attr = R ] win.ini -> %SystemRoot%\win.ini -> [Ver = | Size = 662 bytes | Modified Date = 7/14/2007 12:53:30 AM | Attr = ] WinSxS -> %SystemRoot%\WinSxS -> [Folder | Modified Date = 7/11/2007 10:58:02 PM | Attr = ] WMSysPr9.prx -> %SystemRoot%\WMSysPr9.prx -> [Ver = | Size = 316640 bytes | Modified Date = 7/3/2007 9:23:32 PM | Attr = ] Easy Internet Sign-up.job -> %SystemRoot%\tasks\Easy Internet Sign-up.job -> [Ver = | Size = 272 bytes | Modified Date = 7/2/2007 7:32:18 AM | Attr = ] SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Modified Date = 7/17/2007 10:07:18 PM | Attr = H ] $winnt$.inf -> %System32%\$winnt$.inf -> [Ver = | Size = 993 bytes | Modified Date = 7/2/2007 7:28:40 AM | Attr = ] ActiveScan -> %System32%\ActiveScan -> [Folder | Modified Date = 7/14/2007 2:30:08 AM | Attr = ] bmpdovog.ini -> %System32%\bmpdovog.ini -> [Ver = | Size = 1054182 bytes | Modified Date = 7/8/2007 6:30:08 PM | Attr = HS] CanonIJ Uninstaller Information -> %System32%\CanonIJ Uninstaller Information -> [Folder | Modified Date = 7/2/2007 7:05:46 AM | Attr = H ] CatRoot -> %System32%\CatRoot -> [Folder | Modified Date = 7/4/2007 3:02:42 AM | Attr = ] CatRoot2 -> %System32%\CatRoot2 -> [Folder | Modified Date = 7/16/2007 3:43:50 AM | Attr = ] Com -> %System32%\Com -> [Folder | Modified Date = 7/2/2007 8:53:14 PM | Attr = ] config -> %System32%\config -> [Folder | Modified Date = 7/14/2007 2:30:38 AM | Attr = ] cpmjssat.ini -> %System32%\cpmjssat.ini -> [Ver = | Size = 1105948 bytes | Modified Date = 7/11/2007 9:33:24 PM | Attr = HS] d3d9caps.dat -> %System32%\d3d9caps.dat -> [Ver = | Size = 3688 bytes | Modified Date = 7/15/2007 6:27:50 AM | Attr = ] DirectX -> %System32%\DirectX -> [Folder | Modified Date = 7/2/2007 5:00:46 PM | Attr = ] dllcache -> %System32%\dllcache -> [Folder | Modified Date = 7/13/2007 4:07:28 AM | Attr = RHS] drivers -> %System32%\drivers -> [Folder | Modified Date = 7/17/2007 10:43:08 PM | Attr = ] DRVSTORE -> %System32%\DRVSTORE -> [Folder | Modified Date = 7/2/2007 8:34:42 AM | Attr = ] FNTCACHE.DAT -> %System32%\FNTCACHE.DAT -> [Ver = | Size = 1542672 bytes | Modified Date = 7/16/2007 3:42:52 AM | Attr = ] FxsTmp -> %System32%\FxsTmp -> [Folder | Modified Date = 7/3/2007 4:01:00 AM | Attr = ] gqovtsmk.ini -> %System32%\gqovtsmk.ini -> [Ver = | Size = 1054310 bytes | Modified Date = 7/9/2007 8:35:46 PM | Attr = HS] Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Modified Date = 7/14/2007 12:46:56 AM | Attr = ] ias -> %System32%\ias -> [Folder | Modified Date = 7/2/2007 2:14:50 PM | Attr = ] icsxml -> %System32%\icsxml -> [Folder | Modified Date = 7/2/2007 2:14:52 PM | Attr = ] lbvbeqlb.ini -> %System32%\lbvbeqlb.ini -> [Ver = | Size = 1045467 bytes | Modified Date = 7/7/2007 3:25:46 AM | Attr = HS] lccsfghm.ini -> %System32%\lccsfghm.ini -> [Ver = | Size = 2496711 bytes | Modified Date = 7/12/2007 10:37:26 PM | Attr = HS] Macromed -> %System32%\Macromed -> [Folder | Modified Date = 7/2/2007 7:36:26 AM | Attr = ] mui -> %System32%\mui -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ] npp -> %System32%\npp -> [Folder | Modified Date = 7/2/2007 6:01:02 AM | Attr = ] oakbigxo.ini -> %System32%\oakbigxo.ini -> [Ver = | Size = 1052262 bytes | Modified Date = 7/4/2007 11:05:56 PM | Attr = HS] oobe -> %System32%\oobe -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ] pavas.ico -> %System32%\pavas.ico -> [Ver = | Size = 30590 bytes | Modified Date = 7/14/2007 12:46:54 AM | Attr = ] perfc009.dat -> %System32%\perfc009.dat -> [Ver = | Size = 53552 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ] perfh009.dat -> %System32%\perfh009.dat -> [Ver = | Size = 382000 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ] PerfStringBackup.INI -> %System32%\PerfStringBackup.INI -> [Ver = | Size = 441626 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ] pncrt.dll -> %System32%\pncrt.dll -> Real Networks, Inc [Ver = 6.0.0.0 | Size = 278528 bytes | Modified Date = 7/2/2007 7:25:52 PM | Attr = ] pndx5016.dll -> %System32%\pndx5016.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 6656 bytes | Modified Date = 7/2/2007 7:25:54 PM | Attr = ] pndx5032.dll -> %System32%\pndx5032.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 5632 bytes | Modified Date = 7/2/2007 7:25:54 PM | Attr = ] PreInstall -> %System32%\PreInstall -> [Folder | Modified Date = 7/2/2007 9:14:38 AM | Attr = ] QuickTime.qts -> %System32%\QuickTime.qts -> Apple Inc. [Ver = 7.2 | Size = 49152 bytes | Modified Date = 6/29/2007 6:24:58 AM | Attr = ] QuickTimeVR.qtx -> %System32%\QuickTimeVR.qtx -> Apple Inc. [Ver = 7.2 | Size = 65536 bytes | Modified Date = 6/29/2007 6:24:58 AM | Attr = ] ras -> %System32%\ras -> [Folder | Modified Date = 7/2/2007 2:15:04 PM | Attr = ] ReinstallBackups -> %System32%\ReinstallBackups -> [Folder | Modified Date = 7/2/2007 7:24:40 AM | Attr = ] Restore -> %System32%\Restore -> [Folder | Modified Date = 7/2/2007 7:22:48 AM | Attr = ] rmoc3260.dll -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Modified Date = 7/2/2007 7:26:00 PM | Attr = ] rmyyagnu.ini -> %System32%\rmyyagnu.ini -> [Ver = | Size = 945 bytes | Modified Date = 7/4/2007 9:48:32 PM | Attr = HS] rpepjhcn.ini -> %System32%\rpepjhcn.ini -> [Ver = | Size = 1045586 bytes | Modified Date = 7/7/2007 11:13:36 PM | Attr = HS] Samsung PC Studio Codecs -> %System32%\Samsung PC Studio Codecs -> [Folder | Modified Date = 7/2/2007 8:07:04 AM | Attr = ] Samsung_USB_Drivers -> %System32%\Samsung_USB_Drivers -> [Folder | Modified Date = 7/2/2007 8:07:08 AM | Attr = ] sbnxlpfi.ini -> %System32%\sbnxlpfi.ini -> [Ver = | Size = 2198607 bytes | Modified Date = 7/11/2007 10:34:18 PM | Attr = HS] Setup -> %System32%\Setup -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ] SoftwareDistribution -> %System32%\SoftwareDistribution -> [Folder | Modified Date = 7/2/2007 6:54:04 AM | Attr = ] swreg.exe -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Modified Date = 7/11/2007 4:59:06 PM | Attr = ] Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Modified Date = 7/14/2007 12:46:56 AM | Attr = ] usmt -> %System32%\usmt -> [Folder | Modified Date = 7/2/2007 6:00:42 AM | Attr = ] uxefnpkm.ini -> %System32%\uxefnpkm.ini -> [Ver = | Size = 645 bytes | Modified Date = 7/3/2007 8:01:28 PM | Attr = HS] wbem -> %System32%\wbem -> [Folder | Modified Date = 7/14/2007 2:34:20 AM | Attr = ] wpa.dbl -> %System32%\wpa.dbl -> [Ver = | Size = 1158 bytes | Modified Date = 7/16/2007 3:43:38 AM | Attr = ] yppsuolm.ini -> %System32%\yppsuolm.ini -> [Ver = | Size = 1105838 bytes | Modified Date = 7/11/2007 9:08:06 PM | Attr = HS] yxjbaxur.ini -> %System32%\yxjbaxur.ini -> [Ver = | Size = 1054362 bytes | Modified Date = 7/9/2007 8:43:54 PM | Attr = HS] AegisP.sys -> %System32%\drivers\AegisP.sys -> Meetinghouse Data Communications [Ver = 3.0.0.6 | Size = 15939 bytes | Modified Date = 7/2/2007 6:27:28 AM | Attr = ] avg7core.sys -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ] avg7rsw.sys -> %System32%\drivers\avg7rsw.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,340 | Size = 4224 bytes | Modified Date = 7/2/2007 6:13:10 AM | Attr = ] avg7rsxp.sys -> %System32%\drivers\avg7rsxp.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.442 | Size = 27776 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ] avgclean.sys -> %System32%\drivers\avgclean.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 3968 bytes | Modified Date = 7/2/2007 6:13:12 AM | Attr = ] avgmfx86.sys -> %System32%\drivers\avgmfx86.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.473 | Size = 19904 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ] avgtdi.sys -> %System32%\drivers\avgtdi.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,346 | Size = 4960 bytes | Modified Date = 7/2/2007 6:13:12 AM | Attr = ] etc -> %System32%\drivers\etc -> [Folder | Modified Date = 7/17/2007 10:08:10 PM | Attr = ] HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039 900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> %System32%\drivers\HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039 900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> [Ver = | Size = 4148 bytes | Modified Date = 7/2/2007 7:30:04 AM | Attr = RHS] [File String Scan - Non-Microsoft Only] WSUD , -> %System32%\ALSNDMGR.CPL -> Realtek Semiconductor Corp. [Ver = 2.2.0.34 | Size = 16121856 bytes | Modified Date = 9/20/2004 3:20:44 PM | Attr = ] PEC2 , -> %System32%\dfrg.msc -> [Ver = | Size = 41397 bytes | Modified Date = 9/24/2003 10:30:00 AM | Attr = ] PEC2 , PECompact2 , -> %System32%\DivX.dll -> DivXNetworks [Ver = 6,0,0,1571 | Size = 692736 bytes | Modified Date = 6/9/2005 9:32:28 PM | Attr = ] Thawte Consulting , -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Modified Date = 7/2/2007 7:26:00 PM | Attr = ] UPX! , UPX0 , -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Modified Date = 7/11/2007 4:59:06 PM | Attr = ] winsync , -> %System32%\wbdbase.deu -> [Ver = | Size = 1309184 bytes | Modified Date = 9/24/2003 4:19:00 AM | Attr = ] UPX! , FSG! , PEC2 , aspack , -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ] PTech , -> %System32%\drivers\mtlstrm.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 1309184 bytes | Modified Date = 8/3/2004 10:41:38 PM | Attr = ] < End of report > HijackThis Log Logfile of HijackThis v1.99.1 Scan saved at 22:53:09, on 17/07/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe C:\HP\KBD\KBD.EXE C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Multimedia Card Reader\shwicon2k.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe C:\WINDOWS\explorer.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\MSN Messenger\usnsvc.exe C:\Program Files\Hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.le.ac.uk/sm/le/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://gb10.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-gb10.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-gb10.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.apple.com/itunes/download/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\program files\hp\digital imaging\bin\hpdtlk02.dll O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect O4 - HKLM\..\Run: [VTTimer] VTTimer.exe O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe O4 - HKLM\..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe /autostart O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie_ctx.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing) O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\btxppanel.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe O23 - Service: Belkin 54g Wireless USB Network Adapter (Belkin 54g Wireless USB Network Adapter Service) - Unknown owner - C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe |
|
|
Jul 17 2007, 04:09 PM
Post
#9
|
|
|
Member ![]() ![]() Posts: 13 OS: Windows XP SP2 |
Thats everything!
Hope it helps m8edy |
|
|
Jul 17 2007, 04:17 PM
Post
#10
|
|
![]() GeekU Moderator Posts: 18,766 From: Darkest Cornwall OS: Vista Ultimate & Windows 7 |
Error
This post has been edited by Essexboy: Jul 17 2007, 04:17 PM |
|
|
Jul 17 2007, 04:27 PM
Post
#11
|
|
![]() GeekU Moderator Posts: 18,766 From: Darkest Cornwall OS: Vista Ultimate & Windows 7 |
Looking better now
Start WinPFind3U. Copy/Paste the information in the quotebox below into the pane where it says "Paste fix here" and then click the Run Fix button. QUOTE [Files/Folders - Created Within 30 days] NY -> sqmdata00.sqm -> %SystemDrive%\sqmdata00.sqm NY -> sqmdata01.sqm -> %SystemDrive%\sqmdata01.sqm NY -> sqmdata02.sqm -> %SystemDrive%\sqmdata02.sqm NY -> sqmnoopt00.sqm -> %SystemDrive%\sqmnoopt00.sqm NY -> sqmnoopt01.sqm -> %SystemDrive%\sqmnoopt01.sqm NY -> sqmnoopt02.sqm -> %SystemDrive%\sqmnoopt02.sqm NY -> 002224_.tmp -> %SystemRoot%2224_.tmp NY -> cpmjssat.ini -> %System32%\cpmjssat.ini NY -> gqovtsmk.ini -> %System32%\gqovtsmk.ini NY -> ieencode.dll -> %System32%\ieencode.dll NY -> lbvbeqlb.ini -> %System32%\lbvbeqlb.ini NY -> lccsfghm.ini -> %System32%\lccsfghm.ini NY -> oakbigxo.ini -> %System32%\oakbigxo.ini NY -> rmyyagnu.ini -> %System32%\rmyyagnu.ini NY -> rpepjhcn.ini -> %System32%\rpepjhcn.ini NY -> sbnxlpfi.ini -> %System32%\sbnxlpfi.ini NY -> uxefnpkm.ini -> %System32%\uxefnpkm.ini NY -> yppsuolm.ini -> %System32%\yppsuolm.ini NY -> yxjbaxur.ini -> %System32%\yxjbaxur.ini [Files/Folders - Modified Within 30 days] NY -> bmpdovog.ini -> %System32%\bmpdovog.ini NY -> cpmjssat.ini -> %System32%\cpmjssat.ini NY -> gqovtsmk.ini -> %System32%\gqovtsmk.ini NY -> lbvbeqlb.ini -> %System32%\lbvbeqlb.ini NY -> lccsfghm.ini -> %System32%\lccsfghm.ini NY -> oakbigxo.ini -> %System32%\oakbigxo.ini NY -> rmyyagnu.ini -> %System32%\rmyyagnu.ini NY -> rpepjhcn.ini -> %System32%\rpepjhcn.ini NY -> sbnxlpfi.ini -> %System32%\sbnxlpfi.ini NY -> yppsuolm.ini -> %System32%\yppsuolm.ini NY -> yxjbaxur.ini -> %System32%\yxjbaxur.ini The fix should only take a very short time. When the fix is completed a message box will popup telling you that it is finished. CLick the Ok button and Notepad will open with a log of actions taken during the fix. Post that information back here along with a new WinPFind3u scan. I will review the information when it comes back in. Also let me know of any problems you encountered performing the steps above or any continuing problems you are still having with the computer. Now run Superantispyware
|
|
|
Jul 18 2007, 08:38 PM
Post
#12
|
|
|
Member ![]() ![]() Posts: 13 OS: Windows XP SP2 |
Sorry about the delay, i will explain later.
Requested Logs: Winpfind 3 Fix Log: [Files/Folders - Created Within 30 days] C:\sqmdata00.sqm moved successfully. C:\sqmdata01.sqm moved successfully. C:\sqmdata02.sqm moved successfully. C:\sqmnoopt00.sqm moved successfully. C:\sqmnoopt01.sqm moved successfully. C:\sqmnoopt02.sqm moved successfully. File C:\WINDOWS2224_.tmp not found! C:\WINDOWS\SYSTEM32\cpmjssat.ini moved successfully. C:\WINDOWS\SYSTEM32\gqovtsmk.ini moved successfully. C:\WINDOWS\SYSTEM32\ieencode.dll moved successfully. C:\WINDOWS\SYSTEM32\lbvbeqlb.ini moved successfully. C:\WINDOWS\SYSTEM32\lccsfghm.ini moved successfully. C:\WINDOWS\SYSTEM32\oakbigxo.ini moved successfully. C:\WINDOWS\SYSTEM32\rmyyagnu.ini moved successfully. C:\WINDOWS\SYSTEM32\rpepjhcn.ini moved successfully. C:\WINDOWS\SYSTEM32\sbnxlpfi.ini moved successfully. C:\WINDOWS\SYSTEM32\uxefnpkm.ini moved successfully. C:\WINDOWS\SYSTEM32\yppsuolm.ini moved successfully. C:\WINDOWS\SYSTEM32\yxjbaxur.ini moved successfully. [Files/Folders - Modified Within 30 days] C:\WINDOWS\SYSTEM32\bmpdovog.ini moved successfully. File C:\WINDOWS\SYSTEM32\cpmjssat.ini not found! File C:\WINDOWS\SYSTEM32\gqovtsmk.ini not found! File C:\WINDOWS\SYSTEM32\lbvbeqlb.ini not found! File C:\WINDOWS\SYSTEM32\lccsfghm.ini not found! File C:\WINDOWS\SYSTEM32\oakbigxo.ini not found! File C:\WINDOWS\SYSTEM32\rmyyagnu.ini not found! File C:\WINDOWS\SYSTEM32\rpepjhcn.ini not found! File C:\WINDOWS\SYSTEM32\sbnxlpfi.ini not found! File C:\WINDOWS\SYSTEM32\yppsuolm.ini not found! File C:\WINDOWS\SYSTEM32\yxjbaxur.ini not found! < End of log > Created on 07/18/2007 08:48:53 This post has been edited by m8edy: Jul 18 2007, 08:40 PM |
|
|
Jul 18 2007, 08:42 PM
Post
#13
|
|
|
Member ![]() ![]() Posts: 13 OS: Windows XP SP2 |
New Winpfind 3 Log:
WinPFind3 logfile created on: 7/18/2007 8:51:07 AM WinPFind3U by OldTimer - Version 1.0.39 Folder = C:\Documents and Settings\Owner\Desktop\WinPFind3u\ Microsoft Windows XP Service Pack 2 (Version = 5.1.2600) Internet Explorer (Version = 6.0.2900.2180) 1.25 Gb Total Physical Memory | 0.61 Gb Available Physical Memory | 48.94% Memory free 2.98 Gb Paging File | 2.40 Gb Available in Paging File | 80.63% Paging File free Paging file location(s): C:\pagefile.sys 1920 3840; %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 107.00 Gb Total Space | 28.38 Gb Free Space | 26.53% Space Free Drive D: | 38.34 Gb Total Space | 38.28 Gb Free Space | 99.83% Space Free Drive E: | 4.77 Gb Total Space | 0.55 Gb Free Space | 11.59% Space Free Drive F: | 2.67 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free Computer Name: YOUR-G2ASVV4L2M Current User Name: Owner Logged in as Administrator. Current Boot Mode: Normal [Processes - Non-Microsoft Only] aawservice.exe -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\aawservice.exe -> Lavasoft AB [Ver = 7, 0, 1, 2 | Size = 561152 bytes | Modified Date = 6/5/2007 5:23:28 PM | Attr = ] ad-watch2007.exe -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe -> Lavasoft AB [Ver = 7.0.1.18 | Size = 4177920 bytes | Modified Date = 7/2/2007 9:37:24 PM | Attr = ] applemobiledeviceservice.exe -> %CommonProgramFiles%\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> Apple, Inc. [Ver = 1, 12, 0, 0 | Size = 106496 bytes | Modified Date = 6/28/2007 4:06:52 AM | Attr = ] ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ] ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ] atiptaxx.exe -> %ProgramFiles%\ATI Technologies\ATI Control Panel\atiptaxx.exe -> ATI Technologies, Inc. [Ver = 6.14.10.5061 | Size = 335872 bytes | Modified Date = 11/1/2003 9:00:00 PM | Attr = ] avgamsvr.exe -> %ProgramFiles%\Grisoft\AVG Free\avgamsvr.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.453 | Size = 353280 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] avgas.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 6/11/2007 10:25:42 AM | Attr = ] avgcc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgcc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.460 | Size = 416256 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] avgemc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgemc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.474 | Size = 352768 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] avgupsvc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgupsvc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 49664 bytes | Modified Date = 7/2/2007 6:13:06 AM | Attr = ] btwdins.exe -> %ProgramFiles%\Belkin\Bluetooth Software\bin\btwdins.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 163840 bytes | Modified Date = 10/1/2004 3:06:34 PM | Attr = ] guard.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 1:31:10 PM | Attr = ] hpqcmon.exe -> %ProgramFiles%\HP\Digital Imaging\Unload\HpqCmon.exe -> [Ver = 2.0.0.133 | Size = 90112 bytes | Modified Date = 10/7/2002 8:23:20 AM | Attr = ] ipodservice.exe -> %ProgramFiles%\iPod\bin\iPodService.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 501048 bytes | Modified Date = 7/10/2007 9:18:14 AM | Attr = ] ituneshelper.exe -> %ProgramFiles%\iTunes\iTunesHelper.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 270648 bytes | Modified Date = 7/10/2007 9:18:20 AM | Attr = ] kbd.exe -> %SystemDrive%\hp\KBD\kbd.exe -> Hewlett-Packard Company [Ver = 1.0.2.0 | Size = 61440 bytes | Modified Date = 2/11/2003 9:02:48 PM | Attr = ] mdnsresponder.exe -> %ProgramFiles%\Bonjour\mDNSResponder.exe -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 229376 bytes | Modified Date = 2/28/2006 12:42:38 PM | Attr = ] nmbgmonitor.exe -> %CommonProgramFiles%\Ahead\Lib\NMBgMonitor.exe -> Nero AG [Ver = 1, 5, 3, 0 | Size = 139264 bytes | Modified Date = 11/16/2006 7:04:20 PM | Attr = ] opwarese4.exe -> %ProgramFiles%\ScanSoft\OmniPageSE4.0\OpwareSE4.exe -> ScanSoft, Inc. [Ver = 15.0 | Size = 69632 bytes | Modified Date = 3/21/2006 1:19:40 PM | Attr = ] pchbutton.exe -> %ProgramFiles%\HP Pavilion PC Help\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe -> Motive Communications, Inc. [Ver = 4.12.0.pchealthclient.pchclient.20030613_172000 | Size = 155648 bytes | Modified Date = 1/1/2003 12:06:44 PM | Attr = ] shwicon2k.exe -> %ProgramFiles%\Multimedia Card Reader\shwicon2k.exe -> Alcor Micro, Corp. [Ver = 1, 0, 0, 7 | Size = 139264 bytes | Modified Date = 8/14/2003 8:11:32 PM | Attr = ] superantispyware.exe -> %ProgramFiles%\SUPERAntiSpyware\SUPERAntiSpyware.exe -> SUPERAntiSpyware.com [Ver = 3, 9, 0, 1008 | Size = 1318912 bytes | Modified Date = 7/14/2007 5:38:14 AM | Attr = ] winpfind3u.exe -> %UserDesktop%\WinPFind3u\WinPFind3U.exe -> OldTimer Tools [Ver = 1.0.38.0 | Size = 322048 bytes | Modified Date = 6/23/2007 3:15:54 PM | Attr = ] wlancfgg.exe -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe -> [Ver = 1, 0, 3, 5 | Size = 798720 bytes | Modified Date = 10/6/2004 7:28:30 PM | Attr = ] wlservice.exe -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLService.exe -> [Ver = | Size = 49152 bytes | Modified Date = 3/29/2004 4:08:16 PM | Attr = ] [Win32 Services - Non-Microsoft Only] (aawservice) Ad-Aware 2007 Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\aawservice.exe -> Lavasoft AB [Ver = 7, 0, 1, 2 | Size = 561152 bytes | Modified Date = 6/5/2007 5:23:28 PM | Attr = ] (Adobe LM Service) Adobe LM Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Adobe Systems Shared\Service\Adobelmsvc.exe -> Adobe Systems [Ver = 2.67.010 | Size = 72704 bytes | Modified Date = 7/3/2007 9:22:08 PM | Attr = ] (Apple Mobile Device) Apple Mobile Device [Win32_Own | Auto | Running] -> %CommonProgramFiles%\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> Apple, Inc. [Ver = 1, 12, 0, 0 | Size = 106496 bytes | Modified Date = 6/28/2007 4:06:52 AM | Attr = ] (Ati HotKey Poller) Ati HotKey Poller [Win32_Own | Auto | Running] -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ] (AVG Anti-Spyware Guard) AVG Anti-Spyware Guard [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 1:31:10 PM | Attr = ] (Avg7Alrt) AVG7 Alert Manager Server [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgamsvr.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.453 | Size = 353280 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] (Avg7UpdSvc) AVG7 Update Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgupsvc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 49664 bytes | Modified Date = 7/2/2007 6:13:06 AM | Attr = ] (AVGEMS) AVG E-mail Scanner [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgemc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.474 | Size = 352768 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] (Belkin 54g Wireless USB Network Adapter Service) Belkin 54g Wireless USB Network Adapter [Win32_Own | Auto | Running] -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLService.exe -> [Ver = | Size = 49152 bytes | Modified Date = 3/29/2004 4:08:16 PM | Attr = ] (Bonjour Service) ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## [Win32_Own | Auto | Running] -> %ProgramFiles%\Bonjour\mDNSResponder.exe -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 229376 bytes | Modified Date = 2/28/2006 12:42:38 PM | Attr = ] (btwdins) Bluetooth Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Belkin\Bluetooth Software\bin\btwdins.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 163840 bytes | Modified Date = 10/1/2004 3:06:34 PM | Attr = ] (dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> %System32%\dmadmin.exe -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 8/4/2004 12:56:50 AM | Attr = ] (FLEXnet Licensing Service) FLEXnet Licensing Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -> Macrovision Europe Ltd. [Ver = 11.03.005 | Size = 654848 bytes | Modified Date = 7/3/2007 8:22:02 PM | Attr = ] (IDriverT) InstallDriver Table Manager [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\InstallShield\Driver\11\Intel 32\IDriverT.exe -> Macrovision Corporation [Ver = 11.00.28844 | Size = 69632 bytes | Modified Date = 4/4/2005 12:41:10 AM | Attr = ] (iPod Service) iPod Service [Win32_Own | On_Demand | Running] -> %ProgramFiles%\iPod\bin\iPodService.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 501048 bytes | Modified Date = 7/10/2007 9:18:14 AM | Attr = ] (NBService) NBService [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Nero\Nero 7\Nero BackItUp\NBService.exe -> Nero AG [Ver = 2, 7, 2, 0 | Size = 774144 bytes | Modified Date = 11/10/2006 7:18:02 PM | Attr = ] (NVSvc) NVIDIA Driver Helper Service [Win32_Own | Auto | Stopped] -> %System32%\nvsvc32.exe -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 77824 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ] [Registry - Non-Microsoft Only] < Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> !AVG Anti-Spyware -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 6/11/2007 10:25:42 AM | Attr = ] Ad-Watch -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe -> Lavasoft AB [Ver = 7.0.1.18 | Size = 4177920 bytes | Modified Date = 7/2/2007 9:37:24 PM | Attr = ] AlcxMonitor -> %SystemRoot%\ALCXMNTR.EXE -> Realtek Semiconductor Corp. [Ver = 1.5 | Size = 57344 bytes | Modified Date = 9/7/2004 1:47:52 PM | Attr = ] ATIModeChange -> %System32%\Ati2mdxx.exe -> ATI Technologies, Inc. [Ver = 4.13.3 | Size = 28672 bytes | Modified Date = 9/5/2001 12:24:00 AM | Attr = ] ATIPTA -> %ProgramFiles%\ATI Technologies\ATI Control Panel\atiptaxx.exe -> ATI Technologies, Inc. [Ver = 6.14.10.5061 | Size = 335872 bytes | Modified Date = 11/1/2003 9:00:00 PM | Attr = ] AVG7_CC -> %ProgramFiles%\Grisoft\AVG Free\avgcc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.460 | Size = 416256 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ] CamMonitor -> %ProgramFiles%\HP\Digital Imaging\Unload\HpqCmon.exe -> [Ver = 2.0.0.133 | Size = 90112 bytes | Modified Date = 10/7/2002 8:23:20 AM | Attr = ] googletalk -> %ProgramFiles%\Google\Google Talk\googletalk.exe -> Google [Ver = 1,0,0,104 | Size = 3739648 bytes | Modified Date = 1/1/2007 10:22:02 PM | Attr = ] HPHUPD05 -> %ProgramFiles%\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe -> File not found iTunesHelper -> %ProgramFiles%\iTunes\iTunesHelper.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 270648 bytes | Modified Date = 7/10/2007 9:18:20 AM | Attr = ] KBD -> %SystemDrive%\hp\KBD\kbd.exe -> Hewlett-Packard Company [Ver = 1.0.2.0 | Size = 61440 bytes | Modified Date = 2/11/2003 9:02:48 PM | Attr = ] NeroFilterCheck -> %CommonProgramFiles%\Ahead\Lib\NeroCheck.exe -> Nero AG [Ver = 1, 0, 0, 5 | Size = 155648 bytes | Modified Date = 1/12/2006 3:40:44 PM | Attr = ] nwiz -> %System32%\nwiz.exe -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 323584 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ] OpwareSE4 -> %ProgramFiles%\ScanSoft\OmniPageSE4.0\OpwareSE4.exe -> ScanSoft, Inc. [Ver = 15.0 | Size = 69632 bytes | Modified Date = 3/21/2006 1:19:40 PM | Attr = ] QuickTime Task -> %ProgramFiles%\QuickTime\QTTask.exe -> Apple Inc. [Ver = 7.2 | Size = 286720 bytes | Modified Date = 6/29/2007 6:24:52 AM | Attr = ] SSBkgdUpdate -> %CommonProgramFiles%\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe -> Scansoft, Inc. [Ver = 1, 0, 0, 6 | Size = 155648 bytes | Modified Date = 9/30/2003 12:14:58 AM | Attr = R ] Sunkist2k -> %ProgramFiles%\Multimedia Card Reader\shwicon2k.exe -> Alcor Micro, Corp. [Ver = 1, 0, 0, 7 | Size = 139264 bytes | Modified Date = 8/14/2003 8:11:32 PM | Attr = ] UpdateManager -> %CommonProgramFiles%\Sonic\Update Manager\sgtray.exe -> Sonic Solutions [Ver = 1.01.32a | Size = 110592 bytes | Modified Date = 8/19/2003 9:01:00 AM | Attr = ] VTTimer -> VTTimer.exe -> File not found < OptionalComponents [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\ -> IMAIL -> Installed = 1 -> MAPI -> Installed = 1 -> MSFS -> Installed = 1 -> < Run [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> Acme.PCHButton -> %ProgramFiles%\HP Pavilion PC Help\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe -> Motive Communications, Inc. [Ver = 4.12.0.pchealthclient.pchclient.20030613_172000 | Size = 155648 bytes | Modified Date = 1/1/2003 12:06:44 PM | Attr = ] Aim6 -> -> File not found BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} -> %CommonProgramFiles%\Ahead\Lib\NMBgMonitor.exe -> Nero AG [Ver = 1, 5, 3, 0 | Size = 139264 bytes | Modified Date = 11/16/2006 7:04:20 PM | Attr = ] NVIEW -> %System32%\nview.dll [rundll32.exe nview.dll,nViewLoadHook] -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 852038 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ] RecordNow! -> -> File not found SUPERAntiSpyware -> %ProgramFiles%\SUPERAntiSpyware\SUPERAntiSpyware.exe -> SUPERAntiSpyware.com [Ver = 3, 9, 0, 1008 | Size = 1318912 bytes | Modified Date = 7/14/2007 5:38:14 AM | Attr = ] < Common Startup > -> C:\Documents and Settings\All Users\Start Menu\Programs\Startup -> %AllUsersStartup%\BTTray.lnk -> %ProgramFiles%\Belkin\Bluetooth Software\BTTray.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 565309 bytes | Modified Date = 10/1/2004 3:12:18 PM | Attr = ] %AllUsersStartup%\HP Digital Imaging Monitor.lnk -> %ProgramFiles%\HP\Digital Imaging\bin\hpqtra08.exe -> Hewlett-Packard Co. [Ver = 5.31.0.147 | Size = 233472 bytes | Modified Date = 7/7/2003 9:20:40 AM | Attr = ] < User Startup > -> C:\Documents and Settings\Owner\Start Menu\Programs\Startup -> %UserStartup%\Adobe Gamma.lnk -> %CommonProgramFiles%\Adobe\Calibration\Adobe Gamma Loader.exe -> Adobe Systems, Inc. [Ver = 1, 0, 0, 1 | Size = 113664 bytes | Modified Date = 3/16/2005 8:16:50 PM | Attr = ] < ShellExecuteHooks [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks -> {57B86673-276A-48B2-BAE7-C6DBB3020EB8} [HKLM] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll [AVG Anti-Spyware 7.5] -> GRISOFT s.r.o. [Ver = 7, 5, 1, 36 | Size = 79408 bytes | Modified Date = 5/30/2007 1:29:58 PM | Attr = ] {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} [HKLM] -> %ProgramFiles%\SUPERAntiSpyware\SASSEH.DLL [] -> SuperAdBlocker.com [Ver = 1, 0, 0, 1008 | Size = 77824 bytes | Modified Date = 12/20/2006 12:55:48 PM | Attr = ] {93994DE8-8239-4655-B1D1-5F4E91300429} [HKLM] -> %UserDesktop%\dvd thing\DVD Region-Free\DVDShell.dll [] -> Fengtao Software [Ver = 3, 0, 0, 2 | Size = 49152 bytes | Modified Date = 8/26/2003 11:58:06 AM | Attr = ] < SecurityProviders [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders -> < Winlogon settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> < Winlogon settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> < Winlogon\Notify settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ -> !SASWinLogon -> %ProgramFiles%\SUPERAntiSpyware\SASWINLO.DLL -> SUPERAntiSpyware.com [Ver = 1, 0, 0, 1046 | Size = 294912 bytes | Modified Date = 7/14/2007 5:38:16 AM | Attr = ] AtiExtEvent -> %System32%\ati2evxx.dll -> [Ver = | Size = 86016 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ] igfxcui -> %System32%\igfxsrvc.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 315392 bytes | Modified Date = 4/7/2003 8:06:48 AM | Attr = ] < CurrentVersion Policy Settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{BDEADF00-C265-11D0-BCED-00A0C90AB50F} -> 1 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} -> 1073741857 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{0DF44EAA-FF21-4412-828E-260A8728E7F1} -> 32 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\dontdisplaylastusername -> 0 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticecaption -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticetext -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\shutdownwithoutlogon -> 1 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\undockwithoutlogon -> 1 -> < CurrentVersion Policy Settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ActiveDesktop\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Associations\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 36 -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun -> ˙˙˙˙ -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\ -> -> < HOSTS File > (27 bytes) -> C:\WINDOWS\System32\drivers\etc\Hosts -> 127.0.0.1 localhost -> -> < Internet Explorer Settings > -> -> HKLM: Default_Page_URL -> http://gb10.hpwis.com/ -> HKLM: Main\\Default_Search_URL -> http://srch-gb10.hpwis.com/ -> HKLM: Local Page -> %SystemRoot%\system32\blank.htm -> HKLM: Search Bar -> http://srch-gb10.hpwis.com/ -> HKLM: Search Page -> http://srch-gb10.hpwis.com/ -> HKLM: Start Page -> about:blank -> HKLM: CustomizeSearch -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm -> HKLM: SearchAssistant -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm -> HKCU: Default_Search_URL -> http://srch-gb10.hpwis.com/ -> HKCU: Local Page -> C:\WINDOWS\system32\blank.htm -> HKCU: Search Page -> http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch -> HKCU: Start Page -> http://www.le.ac.uk/sm/le/ -> HKCU: ProxyEnable -> 0 -> HKCU: ProxyOverride -> *.local -> < Trusted Sites > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> msn.com [ - ] -> -> < BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> %ProgramFiles%\Adobe\Reader\ActiveX\AcroIEHelper.dll [AcroIEHlprObj Class] -> Adobe Systems Incorporated [Ver = 6.0.0.2003051500 | Size = 50376 bytes | Modified Date = 5/15/2003 8:47:54 AM | Attr = ] {53707962-6F74-2D53-2644-206D7942484F} [HKLM] -> %ProgramFiles%\Spybot - Search & Destroy\SDHelper.dll [] -> Safer Networking Limited [Ver = 1, 4, 0, 0 | Size = 853672 bytes | Modified Date = 5/31/2005 1:04:00 AM | Attr = ] {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} [HKLM] -> %ProgramFiles%\Canon\Easy-WebPrint\EWPBrowseLoader.dll [EWPBrowseObject Class] -> [Ver = 2, 6, 3, 0 | Size = 34304 bytes | Modified Date = 4/18/2006 7:04:14 PM | Attr = ] < Internet Explorer Bars [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ -> {32683183-48a0-441b-a342-7c2a440a9478} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found < Internet Explorer ToolBars [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar -> [HKLM] -> Reg Data - Key not found [] -> File not found {327C2873-E90D-4c37-AA9D-10AC9BABA46C} [HKLM] -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll [Easy-WebPrint] -> [Ver = 2, 6, 3, 0 | Size = 552960 bytes | Modified Date = 4/18/2006 7:05:46 PM | Attr = ] {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ] < Internet Explorer ToolBars [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ -> ShellBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found ShellBrowser\\{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ] WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found WebBrowser\\{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ] < Internet Explorer Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ -> {08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKLM] -> %System32%\msjava.dll [MenuText: Sun Java Console] -> File not found {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} -> Reg Data - Value does not exist [ButtonText: Create Mobile Favorite] -> File not found {92780B25-18CC-41C8-B9BE-3C9C571A8263} -> Reg Data - Value does not exist [ButtonText: Research] -> File not found {CCA281CA-C863-46ef-9331-5C8D4460577F} -> %ProgramFiles%\Belkin\Bluetooth Software\btsendto_ie.htm [ButtonText: @btrez.dll,-4015] -> [Ver = | Size = 2681 bytes | Modified Date = 5/29/2003 1:53:08 PM | Attr = ] < Internet Explorer Menu Extensions [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ -> E&xport to Microsoft Excel -> -> File not found Easy-WebPrint Add To Print List -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_AddToList.htm -> File not found Easy-WebPrint High Speed Print -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_HSPrint.htm -> File not found Easy-WebPrint Preview -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_Preview.htm -> File not found Easy-WebPrint Print -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_Print.htm -> File not found Send To &Bluetooth -> %ProgramFiles%\Belkin\Bluetooth Software\btsendto_ie_ctx.htm -> [Ver = | Size = 1320 bytes | Modified Date = 5/29/2003 1:53:12 PM | Attr = ] < User Agent Post Platform [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform -> SV1 -> -> < DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ -> {0A795B8E-126A-46EF-8631-73571C2E1A85} -> 192.168.2.1 (Belkin 54Mbps Wireless USB Network Adapter) -> {284DE354-2384-46F5-BA31-A6C4B2A3F246} -> () -> {2C7A6790-FF94-4A1F-8B01-378064FC8CE9} -> () -> {32518B32-ED7B-495F-A23C-FAB8BC689BBA} -> (1394 Net Adapter) -> {8D51A53E-0849-4DD6-8F59-DAC890E5660B} -> (Belkin 54Mbps Wireless USB Network Adapter) -> {D782F041-B428-4C9A-9EF8-10B461835A01} -> (SiS 900-Based PCI Fast Ethernet Adapter) -> {E8335EC5-85BF-446F-B911-976ED580074A} -> () -> < Winsock2 Catalogs [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\ -> NameSpace_Catalog5\Catalog_Entries�0000000005 [mdnsNSP] -> %ProgramFiles%\Bonjour\mdnsNSP.dll -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 94208 bytes | Modified Date = 2/28/2006 12:42:30 PM | Attr = ] < Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ -> ipp -> Reg Data - Key not found -> File not found msdaipp -> Reg Data - Key not found -> File not found widimg -> %System32%\btxppanel.dll -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 110592 bytes | Modified Date = 10/1/2004 2:54:44 PM | Attr = ] < Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ -> {8AD9C840-044E-11D1-B3E9-00805F499D93} -> Java Plug-in 1.4.2 - CodeBase = http://java.sun.com/products/plugin/autodl...indows-i586.cab -> {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} -> ActiveScan Installer Class - CodeBase = http://acs.pandasoftware.com/activescan/as5free/asinst.cab -> {C3F79A2B-B9B4-4A66-B012-3EE46475B072} -> MessengerStatsClient Class - CodeBase = http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab -> {CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA} -> Java Plug-in 1.4.2 - CodeBase = http://java.sun.com/products/plugin/autodl...indows-i586.cab -> [Files/Folders - Created Within 30 days] $VAULT$.AVG -> %SystemDrive%\$VAULT$.AVG -> [Folder | Created Date = 7/2/2007 7:05:17 PM | Attr = RH ] BOOT.BAK -> %SystemDrive%\BOOT.BAK -> [Ver = | Size = 196 bytes | Created Date = 7/2/2007 6:31:09 AM | Attr = RHS] cmdcons -> %SystemDrive%\cmdcons -> [Folder | Created Date = 7/2/2007 6:30:54 AM | Attr = RHS] hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1341706240 bytes | Created Date = 1/1/1601 | Attr = HS] I386 -> %SystemDrive%\I386 -> [Folder | Created Date = 7/2/2007 1:15:28 PM | Attr = ] IPH.PH -> %SystemDrive%\IPH.PH -> [Ver = | Size = 1106 bytes | Created Date = 7/2/2007 11:29:07 PM | Attr = H ] MSOCache -> %SystemDrive%\MSOCache -> [Folder | Created Date = 7/2/2007 6:43:42 AM | Attr = RH ] My Downloads -> %SystemDrive%\My Downloads -> [Folder | Created Date = 7/2/2007 6:22:07 PM | Attr = ] Program Files -> %ProgramFiles% -> [Folder | Created Date = 7/2/2007 1:07:19 PM | Attr = R ] QooBox -> %SystemDrive%\QooBox -> [Folder | Created Date = 7/17/2007 8:54:52 PM | Attr = ] RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Created Date = 7/2/2007 6:32:52 AM | Attr = HS] System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Created Date = 1/20/1740 9:48:35 PM | Attr = HS] _OTMoveIt -> %SystemDrive%\_OTMoveIt -> [Folder | Created Date = 7/17/2007 9:43:06 PM | Attr = ] $hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Created Date = 7/2/2007 6:43:05 AM | Attr = H ] $MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Created Date = 7/2/2007 8:15:06 AM | Attr = H ] $NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Created Date = 7/2/2007 4:56:22 AM | Attr = H ] $NtUninstallKB835409$ -> %SystemRoot%\$NtUninstallKB835409$ -> [Folder | Created Date = 7/2/2007 4:41:36 AM | Attr = H ] $NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Created Date = 7/2/2007 7:47:57 PM | Attr = H ] $NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Created Date = 7/2/2007 7:49:29 PM | Attr = H ] $NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Created Date = 7/2/2007 7:48:17 PM | Attr = H ] $NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Created Date = 7/2/2007 7:48:09 PM | Attr = H ] $NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Created Date = 7/2/2007 7:49:14 PM | Attr = H ] $NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Created Date = 7/2/2007 7:49:07 PM | Attr = H ] $NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Created Date = 7/2/2007 8:11:03 PM | Attr = H ] $NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Created Date = 7/2/2007 7:50:03 PM | Attr = H ] $NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Created Date = 7/2/2007 7:49:22 PM | Attr = H ] $NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Created Date = 7/2/2007 7:51:02 PM | Attr = H ] $NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Created Date = 7/2/2007 7:51:52 PM | Attr = H ] $NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Created Date = 7/2/2007 7:50:40 PM | Attr = H ] $NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Created Date = 7/2/2007 7:51:42 PM | Attr = H ] $NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Created Date = 7/2/2007 7:49:41 PM | Attr = H ] $NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Created Date = 7/2/2007 8:14:36 AM | Attr = H ] $NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Created Date = 7/2/2007 7:51:29 PM | Attr = H ] $NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Created Date = 7/2/2007 7:51:18 PM | Attr = H ] $NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Created Date = 7/2/2007 7:56:04 PM | Attr = H ] $NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Created Date = 7/2/2007 7:54:19 PM | Attr = H ] $NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Created Date = 7/2/2007 7:53:45 PM | Attr = H ] $NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Created Date = 7/2/2007 7:49:48 PM | Attr = H ] $NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Created Date = 7/2/2007 7:52:50 PM | Attr = H ] $NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Created Date = 7/2/2007 7:54:47 PM | Attr = H ] $NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Created Date = 7/2/2007 7:53:56 PM | Attr = H ] $NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Created Date = 7/2/2007 7:54:07 PM | Attr = H ] $NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Created Date = 7/2/2007 7:54:55 PM | Attr = H ] $NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Created Date = 7/2/2007 7:56:13 PM | Attr = H ] $NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Created Date = 7/2/2007 7:54:40 PM | Attr = H ] $NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Created Date = 7/2/2007 7:57:45 PM | Attr = H ] $NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Created Date = 7/2/2007 7:55:55 PM | Attr = H ] $NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Created Date = 7/2/2007 7:55:38 PM | Attr = H ] $NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Created Date = 7/2/2007 7:55:02 PM | Attr = H ] $NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Created Date = 7/2/2007 7:57:21 PM | Attr = H ] $NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Created Date = 7/2/2007 7:57:54 PM | Attr = H ] $NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Created Date = 7/2/2007 7:56:52 PM | Attr = H ] $NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Created Date = 7/2/2007 7:59:02 PM | Attr = H ] $NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Created Date = 7/2/2007 7:57:01 PM | Attr = H ] $NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Created Date = 7/2/2007 7:56:42 PM | Attr = H ] $NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Created Date = 7/2/2007 7:57:35 PM | Attr = H ] $NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Created Date = 7/2/2007 8:05:00 PM | Attr = H ] $NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Created Date = 7/2/2007 7:57:11 PM | Attr = H ] $NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Created Date = 7/2/2007 7:59:10 PM | Attr = H ] $NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Created Date = 7/2/2007 8:11:11 PM | Attr = H ] $NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Created Date = 7/2/2007 7:58:04 PM | Attr = H ] $NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Created Date = 7/2/2007 7:58:13 PM | Attr = H ] $NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Created Date = 7/2/2007 7:59:22 PM | Attr = H ] $NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Created Date = 7/2/2007 7:59:34 PM | Attr = H ] $NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Created Date = 7/2/2007 7:58:44 PM | Attr = H ] $NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Created Date = 7/2/2007 8:00:39 PM | Attr = H ] $NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Created Date = 7/2/2007 8:00:18 PM | Attr = H ] $NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Created Date = 7/2/2007 7:59:49 PM | Attr = H ] $NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Created Date = 7/2/2007 8:02:47 PM | Attr = H ] $NtUninstallKB923723$ -> %SystemRoot%\$NtUninstallKB923723$ -> [Folder | Created Date = 7/2/2007 8:11:28 PM | Attr = H ] $NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Created Date = 7/2/2007 8:01:34 PM | Attr = H ] $NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Created Date = 7/2/2007 8:00:28 PM | Attr = H ] $NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Created Date = 7/2/2007 8:00:52 PM | Attr = H ] $NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Created Date = 7/2/2007 8:00:00 PM | Attr = H ] $NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Created Date = 7/2/2007 8:04:15 PM | Attr = H ] $NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Created Date = 7/2/2007 8:02:17 PM | Attr = H ] $NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Created Date = 7/2/2007 8:08:01 PM | Attr = H ] $NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Created Date = 7/2/2007 8:01:48 PM | Attr = H ] $NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Created Date = 7/2/2007 8:05:15 PM | Attr = H ] $NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Created Date = 7/2/2007 8:04:39 PM | Attr = H ] $NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Created Date = 7/2/2007 8:03:55 PM | Attr = H ] $NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Created Date = 7/2/2007 8:11:36 PM | Attr = H ] $NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Created Date = 7/2/2007 8:03:14 PM | Attr = H ] $NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Created Date = 7/2/2007 8:03:35 PM | Attr = H ] $NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Created Date = 7/2/2007 8:12:42 PM | Attr = H ] $NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Created Date = 7/2/2007 8:03:03 PM | Attr = H ] $NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Created Date = 7/2/2007 8:10:08 PM | Attr = H ] $NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Created Date = 7/2/2007 8:11:21 PM | Attr = H ] $NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Created Date = 7/2/2007 8:10:20 PM | Attr = H ] $NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Created Date = 7/2/2007 8:09:35 PM | Attr = H ] $NtUninstallKB931836$ -> %SystemRoot%\$NtUninstallKB931836$ -> [Folder | Created Date = 7/2/2007 8:05:45 PM | Attr = H ] $NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Created Date = 7/2/2007 8:10:52 PM | Attr = H ] $NtUninstallKB933566$ -> %SystemRoot%\$NtUninstallKB933566$ -> [Folder | Created Date = 7/2/2007 8:11:50 PM | Attr = H ] $NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Created Date = 7/2/2007 8:14:26 PM | Attr = H ] $NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Created Date = 7/2/2007 8:12:57 PM | Attr = H ] $NtUninstallKB936357$ -> %SystemRoot%\$NtUninstallKB936357$ -> [Folder | Created Date = 7/13/2007 3:07:13 AM | Attr = H ] $NtUninstallQ331958$ -> %SystemRoot%\$NtUninstallQ331958$ -> [Folder | Created Date = 7/2/2007 6:26:15 AM | Attr = H ] $_hpcst$.hpc -> %SystemRoot%\$_hpcst$.hpc -> [Ver = | Size = 2464 bytes | Created Date = 7/4/2007 1:04:45 AM | Attr = ] 002224_.tmp -> %SystemRoot%�2224_.tmp -> [Ver = | Size = 19528 bytes | Created Date = 7/2/2007 4:58:29 AM | Attr = ] assembly -> %SystemRoot%\assembly -> [Folder | Created Date = 7/2/2007 1:07:03 PM | Attr = R S] bthservsdp.dat -> %SystemRoot%\bthservsdp.dat -> [Ver = | Size = 12 bytes | Created Date = 7/2/2007 5:46:26 AM | Attr = ] catchme.exe -> %SystemRoot%\catchme.exe -> [Ver = | Size = 104960 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] Downloaded Installations -> %SystemRoot%\Downloaded Installations -> [Folder | Created Date = 7/2/2007 6:25:15 AM | Attr = ] DVDRegionFree.INI -> %SystemRoot%\DVDRegionFree.INI -> [Ver = | Size = 67 bytes | Created Date = 7/9/2007 4:27:44 AM | Attr = ] EHome -> %SystemRoot%\EHome -> [Folder | Created Date = 7/2/2007 4:56:19 AM | Attr = ] erdnt -> %SystemRoot%\erdnt -> [Folder | Created Date = 7/17/2007 8:56:10 PM | Attr = ] MAXLINK.INI -> %SystemRoot%\MAXLINK.INI -> [Ver = | Size = 419 bytes | Created Date = 7/2/2007 6:09:05 AM | Attr = ] Microsoft.MIF -> %SystemRoot%\Microsoft.MIF -> [Ver = | Size = 2510 bytes | Created Date = 7/3/2007 11:22:59 PM | Attr = ] Minidump -> %SystemRoot%\Minidump -> [Folder | Created Date = 7/7/2007 4:09:52 PM | Attr = ] mozver.dat -> %SystemRoot%\mozver.dat -> [Ver = | Size = 1156 bytes | Created Date = 7/3/2007 10:44:54 PM | Attr = ] NeroDigital.ini -> %SystemRoot%\NeroDigital.ini -> [Ver = | Size = 116 bytes | Created Date = 7/2/2007 4:17:01 PM | Attr = ] nircmd.exe -> %SystemRoot%\nircmd.exe -> NirSoft [Ver = 2.00 | Size = 51200 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] nsreg.dat -> %SystemRoot%\nsreg.dat -> [Ver = | Size = 335 bytes | Created Date = 7/2/2007 9:40:36 PM | Attr = ] ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 376 bytes | Created Date = 7/2/2007 6:48:42 AM | Attr = ] Offline Web Pages -> %SystemRoot%\Offline Web Pages -> [Folder | Created Date = 7/2/2007 1:06:49 PM | Attr = R ] options -> %SystemRoot%\options -> [Folder | Created Date = 7/2/2007 5:27:12 AM | Attr = ] PCDLIB32.DLL -> %SystemRoot%\PCDLIB32.DLL -> Eastman Kodak [Ver = 3, 0, 0, 0 | Size = 212480 bytes | Created Date = 7/2/2007 6:26:34 AM | Attr = ] peernet -> %SystemRoot%\peernet -> [Folder | Created Date = 7/2/2007 5:02:25 AM | Attr = ] Prefetch -> %SystemRoot%\Prefetch -> [Folder | Created Date = 7/2/2007 5:07:45 AM | Attr = ] provisioning -> %SystemRoot%\provisioning -> [Folder | Created Date = 7/2/2007 5:02:25 AM | Attr = ] QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Created Date = 7/2/2007 7:12:53 AM | Attr = ] QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Created Date = 7/2/2007 7:12:53 AM | Attr = H ] ServicePackFiles -> %SystemRoot%\ServicePackFiles -> [Folder | Created Date = 7/2/2007 5:01:07 AM | Attr = ] setup.pss -> %SystemRoot%\setup.pss -> [Folder | Created Date = 7/2/2007 6:30:52 AM | Attr = ] SHELLNEW -> %SystemRoot%\SHELLNEW -> [Folder | Created Date = 7/2/2007 6:46:18 AM | Attr = ] slrundll.exe -> %SystemRoot%\slrundll.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 32866 bytes | Created Date = 7/2/2007 5:02:26 AM | Attr = ] SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Created Date = 7/2/2007 5:07:51 AM | Attr = ] Sun -> %SystemRoot%\Sun -> [Folder | Created Date = 7/2/2007 7:40:48 PM | Attr = ] SxsCaPendDel -> %SystemRoot%\SxsCaPendDel -> [Folder | Created Date = 7/3/2007 6:14:46 PM | Attr = ] temp -> %SystemRoot%\temp -> [Folder | Created Date = 7/17/2007 9:13:46 PM | Attr = ] Easy Internet Sign-up.job -> %SystemRoot%\tasks\Easy Internet Sign-up.job -> [Ver = | Size = 272 bytes | Created Date = 7/2/2007 6:32:09 AM | Attr = ] ActiveScan -> %System32%\ActiveScan -> [Folder | Created Date = 7/13/2007 11:46:49 PM | Attr = ] AegisE5.dll -> %System32%\AegisE5.dll -> Meetinghouse Data Communications [Ver = 1, 19, 0, 4 | Size = 1085440 bytes | Created Date = 7/2/2007 5:27:11 AM | Attr = ] asuninst.exe -> %System32%\asuninst.exe -> Panda Software [Ver = 1, 0, 0, 2 | Size = 73728 bytes | Created Date = 7/13/2007 11:47:31 PM | Attr = ] ati2cqag.dll -> %System32%\ati2cqag.dll -> ATI Technologies Inc. [Ver = 6.14.10.0233 | Size = 229376 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] ati2dvaa.dll -> %System32%\ati2dvaa.dll -> ATI Technologies Inc. [Ver = 6.13.10.5019 | Size = 377984 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ] ati2dvag.dll -> %System32%\ati2dvag.dll -> ATI Technologies Inc. [Ver = 6.14.10.6396 | Size = 374784 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati2edxx.dll -> %System32%\ati2edxx.dll -> ATI Technologies, Inc. [Ver = 6, 14, 10, 2488 | Size = 34816 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati2evxx.dll -> %System32%\ati2evxx.dll -> [Ver = | Size = 86016 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] Ati2mdxx.exe -> %System32%\Ati2mdxx.exe -> ATI Technologies, Inc. [Ver = 4.13.3 | Size = 28672 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati3d1ag.dll -> %System32%\ati3d1ag.dll -> ATI Technologies Inc. [Ver = 6.14.10.3976 | Size = 853088 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati3d2ag.dll -> %System32%\ati3d2ag.dll -> ATI Technologies Inc. [Ver = 6.14.10.3976 | Size = 1039264 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ati3duag.dll -> %System32%\ati3duag.dll -> ATI Technologies Inc. [Ver = 6.14.10.0200 | Size = 1164032 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ATIDDC.DLL -> %System32%\ATIDDC.DLL -> ATI Technologies Inc. [Ver = 6.14.10.5 | Size = 81920 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] atiiiexx.dll -> %System32%\atiiiexx.dll -> ATI Technologies Inc. [Ver = 6.14.10.3010 | Size = 229376 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] atioglxx.dll -> %System32%\atioglxx.dll -> ATI Technologies Inc. [Ver = 6.14.10.4010 | Size = 4595712 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] atipdlxx.dll -> %System32%\atipdlxx.dll -> ATI Technologies, Inc. [Ver = 6, 14, 10, 2485 | Size = 110592 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] atitvo32.dll -> %System32%\atitvo32.dll -> ATI Technologies Inc. [Ver = 6.14.10.4100 | Size = 17408 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ativcoxx.dll -> %System32%\ativcoxx.dll -> ATI Technologies, Inc. [Ver = 6.13.10.0005 | Size = 24064 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] ativdaxx.ax -> %System32%\ativdaxx.ax -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 9728 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ] ativmvxx.ax -> %System32%\ativmvxx.ax -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 23040 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ] ativtmxx.dll -> %System32%\ativtmxx.dll -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 32768 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ] ativvaxx.dll -> %System32%\ativvaxx.dll -> ATI Technologies Inc. [Ver = 6.14.01.0009 | Size = 516768 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ] B11gUSB.dll -> %System32%\B11gUSB.dll -> [Ver = | Size = 40960 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ] CanonIJ Uninstaller Information -> %System32%\CanonIJ Uninstaller Information -> [Folder | Created Date = 7/2/2007 6:05:45 AM | Attr = H ] CNCC600.DLL -> %System32%\CNCC600.DLL -> CANON INC. [Ver = 0, 2, 5, 0 | Size = 1134592 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ] CNCI600.DLL -> %System32%\CNCI600.DLL -> CANON INC. [Ver = 2, 0, 0, 0 | Size = 57344 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ] CNCL600.DLL -> %System32%\CNCL600.DLL -> Canon Inc. [Ver = 1.00 | Size = 135168 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ] cnco600.dll -> %System32%\cnco600.dll -> Canon Inc. [Ver = 1.0 | Size = 106496 bytes | Created Date = 7/2/2007 6:05:39 AM | Attr = ] CNMLM87.DLL -> %System32%\CNMLM87.DLL -> CANON INC. [Ver = 1.95.2.70 | Size = 161792 bytes | Created Date = 7/2/2007 6:05:48 AM | Attr = ] cpuinf32.dll -> %System32%\cpuinf32.dll -> Intel Corporation [Ver = 1.0.0.4 | Size = 49152 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] d3d9caps.dat -> %System32%\d3d9caps.dat -> [Ver = | Size = 3688 bytes | Created Date = 7/2/2007 7:16:01 AM | Attr = ] dllcache -> %System32%\dllcache -> [Folder | Created Date = 7/2/2007 1:05:10 PM | Attr = RHS] DRVSTORE -> %System32%\DRVSTORE -> [Folder | Created Date = 7/2/2007 7:12:07 AM | Attr = ] GTNDIS3.VXD -> %System32%\GTNDIS3.VXD -> [Ver = | Size = 31930 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ] GTNDIS5.sys -> %System32%\GTNDIS5.sys -> Printing Communications Assoc., Inc. (PCAUSA) [Ver = 5.03.16.54 | Size = 15872 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ] GTW32N50.dll -> %System32%\GTW32N50.dll -> [Ver = 1.0.0.1 | Size = 94208 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ] Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Created Date = 7/13/2007 11:46:53 PM | Attr = ] hsfcisp2.dll -> %System32%\hsfcisp2.dll -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 32285 bytes | Created Date = 7/2/2007 5:02:30 AM | Attr = ] ieencode.dll -> %System32%\ieencode.dll -> [Ver = | Size = 81920 bytes | Created Date = 7/2/2007 5:02:30 AM | Attr = ] lmpgad.ax -> %System32%\lmpgad.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 47104 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] lmpgspl.ax -> %System32%\lmpgspl.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 106496 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] lmpgvd.ax -> %System32%\lmpgvd.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 94208 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] malslib.dll -> %System32%\malslib.dll -> AvantGo, Inc. [Ver = 3.3 Build 864 | Size = 114688 bytes | Created Date = 7/4/2007 1:02:54 AM | Attr = ] mbllnk.cpl -> %System32%\mbllnk.cpl -> AvantGo, Inc. [Ver = 3.3 Build 864 | Size = 69632 bytes | Created Date = 7/4/2007 1:02:55 AM | Attr = ] mobileV.acm -> %System32%\mobileV.acm -> [Ver = | Size = 57422 bytes | Created Date = 7/4/2007 1:02:55 AM | Attr = ] mplaa6.dll -> %System32%\mplaa6.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 81920 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplam6.dll -> %System32%\mplam6.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 69632 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplapx.dll -> %System32%\mplapx.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 69632 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplaw7.dll -> %System32%\mplaw7.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 81920 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplva6.dll -> %System32%\mplva6.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1675264 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplvm6.dll -> %System32%\mplvm6.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1581056 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplvpx.dll -> %System32%\mplvpx.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1150976 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ] mplvw7.dll -> %System32%\mplvw7.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1630208 bytes | Created Date = 7/2/2007 6:27:16 AM | Attr = ] mtxparhd.dll -> %System32%\mtxparhd.dll -> Matrox Graphics Inc. [Ver = 6.13.01.1296 | Size = 1737856 bytes | Created Date = 7/2/2007 5:02:29 AM | Attr = ] pavas.ico -> %System32%\pavas.ico -> [Ver = | Size = 30590 bytes | Created Date = 7/13/2007 11:46:52 PM | Attr = ] pncrt.dll -> %System32%\pncrt.dll -> Real Networks, Inc [Ver = 6.0.0.0 | Size = 278528 bytes | Created Date = 7/2/2007 6:25:51 PM | Attr = ] pndx5016.dll -> %System32%\pndx5016.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 6656 bytes | Created Date = 7/2/2007 6:25:52 PM | Attr = ] pndx5032.dll -> %System32%\pndx5032.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 5632 bytes | Created Date = 7/2/2007 6:25:52 PM | Attr = ] PreInstall -> %System32%\PreInstall -> [Folder | Created Date = 7/2/2007 8:14:37 AM | Attr = ] QuickTime.qts -> %System32%\QuickTime.qts -> Apple Inc. [Ver = 7.2 | Size = 49152 bytes | Created Date = 6/29/2007 5:24:58 AM | Attr = ] QuickTimeVR.qtx -> %System32%\QuickTimeVR.qtx -> Apple Inc. [Ver = 7.2 | Size = 65536 bytes | Created Date = 6/29/2007 5:24:58 AM | Attr = ] rmoc3260.dll -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Created Date = 7/2/2007 6:25:59 PM | Attr = ] s3gnb.dll -> %System32%\s3gnb.dll -> S3 Graphics, Inc. [Ver = 6.14.10.0012-13.94.12 | Size = 397056 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] Samsung PC Studio Codecs -> %System32%\Samsung PC Studio Codecs -> [Folder | Created Date = 7/2/2007 7:06:59 AM | Attr = ] Samsung_USB_Drivers -> %System32%\Samsung_USB_Drivers -> [Folder | Created Date = 7/2/2007 7:07:06 AM | Attr = ] slcoinst.dll -> %System32%\slcoinst.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 73832 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] slextspk.dll -> %System32%\slextspk.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 286792 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] slgen.dll -> %System32%\slgen.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 188508 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] slrundll.exe -> %System32%\slrundll.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 32866 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] slserv.exe -> %System32%\slserv.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 73796 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ] SoftwareDistribution -> %System32%\SoftwareDistribution -> [Folder | Created Date = 7/2/2007 5:54:03 AM | Attr = ] swreg.exe -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] swsc.exe -> %System32%\swsc.exe -> SteelWerX [Ver = 2.0.0.0 | Size = 370688 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] swxcacls.exe -> %System32%\swxcacls.exe -> SteelWerX [Ver = 1.0.1.1 | Size = 212480 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Created Date = 7/2/2007 7:07:02 AM | Attr = ] UnInstall_Driver.ico -> %System32%\UnInstall_Driver.ico -> [Ver = | Size = 22486 bytes | Created Date = 7/2/2007 7:07:52 AM | Attr = R ] vfind.exe -> %System32%\vfind.exe -> [Ver = | Size = 49152 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ] ZPORT4AS.dll -> %System32%\ZPORT4AS.dll -> [Ver = | Size = 11776 bytes | Created Date = 7/13/2007 11:47:31 PM | Attr = ] ieencode.dll -> %System32%\dllcache\ieencode.dll -> [Ver = | Size = 81920 bytes | Created Date = 7/2/2007 5:02:30 AM | Attr = ] adv01nt5.dll -> %System32%\drivers\adv01nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 4255 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv02nt5.dll -> %System32%\drivers\adv02nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3967 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv05nt5.dll -> %System32%\drivers\adv05nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3615 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv07nt5.dll -> %System32%\drivers\adv07nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3647 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv08nt5.dll -> %System32%\drivers\adv08nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3135 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv09nt5.dll -> %System32%\drivers\adv09nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3711 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] adv11nt5.dll -> %System |
|
|
Jul 18 2007, 08:44 PM
Post
#14
|
|
|
Member ![]() ![]() Posts: 13 OS: Windows XP SP2 |
The rest of the New winpfind3 log:
adv11nt5.dll -> %System32%\drivers\adv11nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3775 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] AegisP.sys -> %System32%\drivers\AegisP.sys -> Meetinghouse Data Communications [Ver = 3.0.0.6 | Size = 15939 bytes | Created Date = 7/2/2007 5:27:27 AM | Attr = ] amdagp.sys -> %System32%\drivers\amdagp.sys -> Advanced Micro Devices, Inc. [Ver = 5.00 (xpsp_sp2_rtm.040803-2158) | Size = 43008 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1btxx.sys -> %System32%\drivers\ati1btxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 56623 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1mdxx.sys -> %System32%\drivers\ati1mdxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 11615 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1pdxx.sys -> %System32%\drivers\ati1pdxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 12047 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1raxx.sys -> %System32%\drivers\ati1raxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 30671 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1rvxx.sys -> %System32%\drivers\ati1rvxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 63663 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1snxx.sys -> %System32%\drivers\ati1snxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 26367 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1ttxx.sys -> %System32%\drivers\ati1ttxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 21343 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1tuxx.sys -> %System32%\drivers\ati1tuxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 36463 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1xbxx.sys -> %System32%\drivers\ati1xbxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 29455 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati1xsxx.sys -> %System32%\drivers\ati1xsxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 34735 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati2mtaa.sys -> %System32%\drivers\ati2mtaa.sys -> ATI Technologies Inc. [Ver = 6.13.10.5019 | Size = 327040 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ati2mtag.sys -> %System32%\drivers\ati2mtag.sys -> ATI Technologies Inc. [Ver = 6.14.10.6396 | Size = 620032 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ] atinbtxx.sys -> %System32%\drivers\atinbtxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 57856 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinmdxx.sys -> %System32%\drivers\atinmdxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 13824 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinpdxx.sys -> %System32%\drivers\atinpdxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 14336 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinraxx.sys -> %System32%\drivers\atinraxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 52224 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinrvxx.sys -> %System32%\drivers\atinrvxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 104960 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinsnxx.sys -> %System32%\drivers\atinsnxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 28672 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinttxx.sys -> %System32%\drivers\atinttxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 13824 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atintuxx.sys -> %System32%\drivers\atintuxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 73216 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinxbxx.sys -> %System32%\drivers\atinxbxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 31744 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atinxsxx.sys -> %System32%\drivers\atinxsxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 63488 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] ativmc20.cod -> %System32%\drivers\ativmc20.cod -> [Ver = | Size = 64352 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atv01nt5.dll -> %System32%\drivers\atv01nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 21183 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atv02nt5.dll -> %System32%\drivers\atv02nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11359 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atv04nt5.dll -> %System32%\drivers\atv04nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 25471 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atv06nt5.dll -> %System32%\drivers\atv06nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 14143 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] atv10nt5.dll -> %System32%\drivers\atv10nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 17279 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] avg7core.sys -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Created Date = 7/2/2007 5:13:05 AM | Attr = ] avg7rsw.sys -> %System32%\drivers\avg7rsw.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,340 | Size = 4224 bytes | Created Date = 7/2/2007 5:13:09 AM | Attr = ] avg7rsxp.sys -> %System32%\drivers\avg7rsxp.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.442 | Size = 27776 bytes | Created Date = 7/2/2007 5:13:10 AM | Attr = ] AvgAsCln.sys -> %System32%\drivers\AvgAsCln.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 10872 bytes | Created Date = 7/13/2007 4:43:54 AM | Attr = ] avgclean.sys -> %System32%\drivers\avgclean.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 3968 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ] avgmfx86.sys -> %System32%\drivers\avgmfx86.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.473 | Size = 19904 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ] avgtdi.sys -> %System32%\drivers\avgtdi.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,346 | Size = 4960 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ] btwhid.sys -> %System32%\drivers\btwhid.sys -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 44003 bytes | Created Date = 7/2/2007 5:50:10 AM | Attr = ] ch7xxnt5.dll -> %System32%\drivers\ch7xxnt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 15423 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] cxthsfs2.cty -> %System32%\drivers\cxthsfs2.cty -> [Ver = | Size = 129045 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039 900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> %System32%\drivers\HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039 900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> [Ver = | Size = 4148 bytes | Created Date = 7/2/2007 6:30:03 AM | Attr = RHS] hsfbs2s2.sys -> %System32%\drivers\hsfbs2s2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 220032 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] hsfcxts2.sys -> %System32%\drivers\hsfcxts2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 built by: WinDDK | Size = 685056 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ] hsfdpsp2.sys -> %System32%\drivers\hsfdpsp2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 1041536 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] mtlmnt5.sys -> %System32%\drivers\mtlmnt5.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 126686 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] mtlstrm.sys -> %System32%\drivers\mtlstrm.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 1309184 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] mtxparhm.sys -> %System32%\drivers\mtxparhm.sys -> Matrox Graphics Inc. [Ver = 6.13.01.1296 | Size = 452736 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] netwlan5.img -> %System32%\drivers\netwlan5.img -> [Ver = | Size = 67866 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] ntmtlfax.sys -> %System32%\drivers\ntmtlfax.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 180360 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] pfc.sys -> %System32%\drivers\pfc.sys -> Padus, Inc. [Ver = 2, 5, 0, 204 | Size = 10368 bytes | Created Date = 7/2/2007 6:27:17 AM | Attr = ] recagent.sys -> %System32%\drivers\recagent.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 13776 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] rt2500usb.sys -> %System32%\drivers\rt2500usb.sys -> Ralink Technology Inc. [Ver = 1.02.00.0000 | Size = 140416 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ] s3gnbm.sys -> %System32%\drivers\s3gnbm.sys -> S3 Graphics, Inc. [Ver = 6.14.10.0012-13.94.12 | Size = 166912 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] siint5.dll -> %System32%\drivers\siint5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3901 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] sisagp.sys -> %System32%\drivers\sisagp.sys -> Silicon Integrated Systems Corporation [Ver = 5.12.01.2010 (xpsp_sp2_rtm.040803-2158) | Size = 41088 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] slnt7554.sys -> %System32%\drivers\slnt7554.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 129535 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] slntamr.sys -> %System32%\drivers\slntamr.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 404990 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] slnthal.sys -> %System32%\drivers\slnthal.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 95424 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] slwdmsup.sys -> %System32%\drivers\slwdmsup.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 13240 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] StMp3Rec.sys -> %System32%\drivers\StMp3Rec.sys -> Generic [Ver = 1, 551, 0, 139 | Size = 38229 bytes | Created Date = 7/2/2007 6:56:22 AM | Attr = ] vchnt5.dll -> %System32%\drivers\vchnt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11325 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] wadv07nt.sys -> %System32%\drivers\wadv07nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11807 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] wadv08nt.sys -> %System32%\drivers\wadv08nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11295 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] wadv09nt.sys -> %System32%\drivers\wadv09nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11871 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] wadv11nt.sys -> %System32%\drivers\wadv11nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11935 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] watv06nt.sys -> %System32%\drivers\watv06nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 22271 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] watv10nt.sys -> %System32%\drivers\watv10nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 25471 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ] [Files/Folders - Modified Within 30 days] $VAULT$.AVG -> %SystemDrive%\$VAULT$.AVG -> [Folder | Modified Date = 7/14/2007 6:34:34 AM | Attr = RH ] BOOT.BAK -> %SystemDrive%\BOOT.BAK -> [Ver = | Size = 196 bytes | Modified Date = 7/2/2007 7:23:36 AM | Attr = RHS] boot.ini -> %SystemDrive%\boot.ini -> [Ver = | Size = 283 bytes | Modified Date = 7/2/2007 6:03:24 AM | Attr = RHS] cmdcons -> %SystemDrive%\cmdcons -> [Folder | Modified Date = 7/2/2007 7:31:12 AM | Attr = RHS] Documents and Settings -> %SystemDrive%\Documents and Settings -> [Folder | Modified Date = 7/13/2007 5:49:56 AM | Attr = ] hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1341706240 bytes | Modified Date = 7/17/2007 10:07:06 PM | Attr = HS] hp -> %SystemDrive%\hp -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = H ] I386 -> %SystemDrive%\I386 -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = ] IPH.PH -> %SystemDrive%\IPH.PH -> [Ver = | Size = 1106 bytes | Modified Date = 7/3/2007 12:35:14 AM | Attr = H ] MSOCache -> %SystemDrive%\MSOCache -> [Folder | Modified Date = 7/2/2007 7:43:44 AM | Attr = RH ] My Downloads -> %SystemDrive%\My Downloads -> [Folder | Modified Date = 7/2/2007 7:22:12 PM | Attr = ] NTDETECT.COM -> %SystemDrive%\NTDETECT.COM -> [Ver = | Size = 47564 bytes | Modified Date = 7/2/2007 5:59:30 AM | Attr = RHS] Program Files -> %ProgramFiles% -> [Folder | Modified Date = 7/15/2007 10:22:00 AM | Attr = R ] QooBox -> %SystemDrive%\QooBox -> [Folder | Modified Date = 7/17/2007 9:54:54 PM | Attr = ] RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Modified Date = 7/2/2007 7:32:54 AM | Attr = HS] System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Modified Date = 7/2/2007 6:07:30 AM | Attr = HS] WINDOWS -> %SystemRoot% -> [Folder | Modified Date = 7/17/2007 10:13:48 PM | Attr = ] _OTMoveIt -> %SystemDrive%\_OTMoveIt -> [Folder | Modified Date = 7/17/2007 10:43:08 PM | Attr = ] $hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Modified Date = 7/13/2007 3:59:48 AM | Attr = H ] $MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Modified Date = 7/2/2007 9:15:08 AM | Attr = H ] $NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Modified Date = 7/2/2007 5:58:10 AM | Attr = H ] $NtUninstallKB821557$ -> %SystemRoot%\$NtUninstallKB821557$ -> [Folder | Modified Date = 7/2/2007 2:13:30 PM | Attr = H ] $NtUninstallKB823559$ -> %SystemRoot%\$NtUninstallKB823559$ -> [Folder | Modified Date = 7/2/2007 2:13:30 PM | Attr = H ] $NtUninstallKB835409$ -> %SystemRoot%\$NtUninstallKB835409$ -> [Folder | Modified Date = 7/2/2007 5:41:38 AM | Attr = H ] $NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Modified Date = 7/2/2007 8:47:58 PM | Attr = H ] $NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Modified Date = 7/2/2007 8:49:30 PM | Attr = H ] $NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Modified Date = 7/2/2007 8:48:18 PM | Attr = H ] $NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Modified Date = 7/2/2007 8:48:10 PM | Attr = H ] $NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Modified Date = 7/2/2007 8:49:16 PM | Attr = H ] $NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Modified Date = 7/2/2007 8:49:08 PM | Attr = H ] $NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Modified Date = 7/2/2007 9:11:04 PM | Attr = H ] $NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Modified Date = 7/2/2007 8:50:06 PM | Attr = H ] $NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Modified Date = 7/2/2007 8:49:24 PM | Attr = H ] $NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Modified Date = 7/2/2007 8:51:04 PM | Attr = H ] $NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Modified Date = 7/2/2007 8:51:54 PM | Attr = H ] $NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Modified Date = 7/2/2007 8:50:44 PM | Attr = H ] $NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Modified Date = 7/2/2007 8:51:44 PM | Attr = H ] $NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Modified Date = 7/2/2007 8:49:44 PM | Attr = H ] $NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Modified Date = 7/2/2007 9:14:38 AM | Attr = H ] $NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Modified Date = 7/2/2007 8:51:32 PM | Attr = H ] $NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Modified Date = 7/2/2007 8:51:20 PM | Attr = H ] $NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Modified Date = 7/2/2007 8:56:06 PM | Attr = H ] $NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Modified Date = 7/2/2007 8:54:22 PM | Attr = H ] $NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Modified Date = 7/2/2007 8:53:48 PM | Attr = H ] $NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Modified Date = 7/2/2007 8:49:50 PM | Attr = H ] $NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Modified Date = 7/2/2007 8:52:54 PM | Attr = H ] $NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Modified Date = 7/2/2007 8:54:50 PM | Attr = H ] $NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Modified Date = 7/2/2007 8:53:58 PM | Attr = H ] $NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Modified Date = 7/2/2007 8:54:10 PM | Attr = H ] $NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Modified Date = 7/2/2007 8:54:58 PM | Attr = H ] $NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Modified Date = 7/2/2007 8:56:16 PM | Attr = H ] $NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Modified Date = 7/2/2007 8:54:42 PM | Attr = H ] $NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Modified Date = 7/2/2007 8:57:48 PM | Attr = H ] $NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Modified Date = 7/2/2007 8:55:58 PM | Attr = H ] $NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Modified Date = 7/2/2007 8:55:42 PM | Attr = H ] $NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Modified Date = 7/2/2007 8:55:06 PM | Attr = H ] $NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Modified Date = 7/2/2007 8:57:24 PM | Attr = H ] $NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Modified Date = 7/2/2007 8:57:56 PM | Attr = H ] $NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Modified Date = 7/2/2007 8:56:54 PM | Attr = H ] $NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Modified Date = 7/2/2007 8:59:04 PM | Attr = H ] $NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Modified Date = 7/2/2007 8:57:04 PM | Attr = H ] $NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Modified Date = 7/2/2007 8:56:46 PM | Attr = H ] $NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Modified Date = 7/2/2007 8:57:38 PM | Attr = H ] $NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Modified Date = 7/2/2007 9:05:02 PM | Attr = H ] $NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Modified Date = 7/2/2007 8:57:14 PM | Attr = H ] $NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Modified Date = 7/2/2007 8:59:12 PM | Attr = H ] $NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Modified Date = 7/2/2007 9:11:14 PM | Attr = H ] $NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Modified Date = 7/2/2007 8:58:06 PM | Attr = H ] $NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Modified Date = 7/2/2007 8:58:16 PM | Attr = H ] $NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Modified Date = 7/2/2007 8:59:26 PM | Attr = H ] $NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Modified Date = 7/2/2007 8:59:38 PM | Attr = H ] $NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Modified Date = 7/2/2007 8:58:48 PM | Attr = H ] $NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Modified Date = 7/2/2007 9:00:42 PM | Attr = H ] $NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Modified Date = 7/2/2007 9:00:20 PM | Attr = H ] $NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Modified Date = 7/2/2007 8:59:52 PM | Attr = H ] $NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Modified Date = 7/2/2007 9:02:50 PM | Attr = H ] $NtUninstallKB923723$ -> %SystemRoot%\$NtUninstallKB923723$ -> [Folder | Modified Date = 7/2/2007 9:11:30 PM | Attr = H ] $NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Modified Date = 7/2/2007 9:01:36 PM | Attr = H ] $NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Modified Date = 7/2/2007 9:00:30 PM | Attr = H ] $NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Modified Date = 7/2/2007 9:00:54 PM | Attr = H ] $NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Modified Date = 7/2/2007 9:00:02 PM | Attr = H ] $NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Modified Date = 7/2/2007 9:04:16 PM | Attr = H ] $NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Modified Date = 7/2/2007 9:02:20 PM | Attr = H ] $NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Modified Date = 7/2/2007 9:08:04 PM | Attr = H ] $NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Modified Date = 7/2/2007 9:01:50 PM | Attr = H ] $NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Modified Date = 7/2/2007 9:05:18 PM | Attr = H ] $NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Modified Date = 7/2/2007 9:04:42 PM | Attr = H ] $NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Modified Date = 7/2/2007 9:03:58 PM | Attr = H ] $NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Modified Date = 7/2/2007 9:11:38 PM | Attr = H ] $NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Modified Date = 7/2/2007 9:03:16 PM | Attr = H ] $NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Modified Date = 7/2/2007 9:03:38 PM | Attr = H ] $NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Modified Date = 7/2/2007 9:12:44 PM | Attr = H ] $NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Modified Date = 7/2/2007 9:03:06 PM | Attr = H ] $NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Modified Date = 7/2/2007 9:10:10 PM | Attr = H ] $NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Modified Date = 7/2/2007 9:11:22 PM | Attr = H ] $NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Modified Date = 7/2/2007 9:10:22 PM | Attr = H ] $NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Modified Date = 7/2/2007 9:09:38 PM | Attr = H ] $NtUninstallKB931836$ -> %SystemRoot%\$NtUninstallKB931836$ -> [Folder | Modified Date = 7/2/2007 9:05:46 PM | Attr = H ] $NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Modified Date = 7/2/2007 9:10:54 PM | Attr = H ] $NtUninstallKB933566$ -> %SystemRoot%\$NtUninstallKB933566$ -> [Folder | Modified Date = 7/2/2007 9:11:56 PM | Attr = H ] $NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Modified Date = 7/2/2007 9:14:28 PM | Attr = H ] $NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Modified Date = 7/2/2007 9:12:58 PM | Attr = H ] $NtUninstallKB936357$ -> %SystemRoot%\$NtUninstallKB936357$ -> [Folder | Modified Date = 7/13/2007 4:07:16 AM | Attr = H ] $NtUninstallQ328310$ -> %SystemRoot%\$NtUninstallQ328310$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ329112$ -> %SystemRoot%\$NtUninstallQ329112$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ329115$ -> %SystemRoot%\$NtUninstallQ329115$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ329170$ -> %SystemRoot%\$NtUninstallQ329170$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ329390$ -> %SystemRoot%\$NtUninstallQ329390$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallq329623$ -> %SystemRoot%\$NtUninstallq329623$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ329834$ -> %SystemRoot%\$NtUninstallQ329834$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ331958$ -> %SystemRoot%\$NtUninstallQ331958$ -> [Folder | Modified Date = 7/2/2007 7:26:16 AM | Attr = H ] $NtUninstallQ810565$ -> %SystemRoot%\$NtUninstallQ810565$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ810577$ -> %SystemRoot%\$NtUninstallQ810577$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ810833$ -> %SystemRoot%\$NtUninstallQ810833$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ814033$ -> %SystemRoot%\$NtUninstallQ814033$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ814995$ -> %SystemRoot%\$NtUninstallQ814995$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ815485$ -> %SystemRoot%\$NtUninstallQ815485$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $NtUninstallQ817287$ -> %SystemRoot%\$NtUninstallQ817287$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ] $_hpcst$.hpc -> %SystemRoot%\$_hpcst$.hpc -> [Ver = | Size = 2464 bytes | Modified Date = 7/4/2007 2:04:46 AM | Attr = ] addins -> %SystemRoot%\addins -> [Folder | Modified Date = 7/2/2007 2:13:46 PM | Attr = ] AppPatch -> %SystemRoot%\AppPatch -> [Folder | Modified Date = 7/14/2007 2:18:20 AM | Attr = ] assembly -> %SystemRoot%\assembly -> [Folder | Modified Date = 7/2/2007 2:13:16 PM | Attr = R S] bootstat.dat -> %SystemRoot%\bootstat.dat -> [Ver = | Size = 2048 bytes | Modified Date = 7/17/2007 10:07:12 PM | Attr = S] bthservsdp.dat -> %SystemRoot%\bthservsdp.dat -> [Ver = | Size = 12 bytes | Modified Date = 7/16/2007 3:41:34 AM | Attr = ] catchme.exe -> %SystemRoot%\catchme.exe -> [Ver = | Size = 104960 bytes | Modified Date = 7/4/2007 7:21:06 PM | Attr = ] CREATOR -> %SystemRoot%\CREATOR -> [Folder | Modified Date = 7/2/2007 2:17:38 PM | Attr = ] Cursors -> %SystemRoot%\Cursors -> [Folder | Modified Date = 7/2/2007 2:13:36 PM | Attr = ] Debug -> %SystemRoot%\Debug -> [Folder | Modified Date = 7/2/2007 6:08:34 AM | Attr = ] Downloaded Installations -> %SystemRoot%\Downloaded Installations -> [Folder | Modified Date = 7/2/2007 7:25:16 AM | Attr = ] Downloaded Program Files -> %SystemRoot%\Downloaded Program Files -> [Folder | Modified Date = 7/14/2007 2:19:04 AM | Attr = S] DVDRegionFree.INI -> %SystemRoot%\DVDRegionFree.INI -> [Ver = | Size = 67 bytes | Modified Date = 7/17/2007 4:04:16 AM | Attr = ] EHome -> %SystemRoot%\EHome -> [Folder | Modified Date = 7/2/2007 5:56:20 AM | Attr = ] erdnt -> %SystemRoot%\erdnt -> [Folder | Modified Date = 7/17/2007 9:56:12 PM | Attr = ] Fonts -> %SystemRoot%\Fonts -> [Folder | Modified Date = 7/11/2007 10:50:06 PM | Attr = R S] Help -> %SystemRoot%\Help -> [Folder | Modified Date = 7/4/2007 2:03:00 AM | Attr = ] ime -> %SystemRoot%\ime -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ] imsins.BAK -> %SystemRoot%\imsins.BAK -> [Ver = | Size = 1355 bytes | Modified Date = 7/2/2007 9:14:32 PM | Attr = ] inf -> %SystemRoot%\inf -> [Folder | Modified Date = 7/14/2007 4:34:48 AM | Attr = H ] Installer -> %SystemRoot%\Installer -> [Folder | Modified Date = 7/16/2007 5:06:12 AM | Attr = HS] MAXLINK.INI -> %SystemRoot%\MAXLINK.INI -> [Ver = | Size = 419 bytes | Modified Date = 7/2/2007 7:09:06 AM | Attr = ] Media -> %SystemRoot%\Media -> [Folder | Modified Date = 7/2/2007 7:10:32 AM | Attr = ] Microsoft.MIF -> %SystemRoot%\Microsoft.MIF -> [Ver = | Size = 2510 bytes | Modified Date = 7/4/2007 2:05:46 AM | Attr = ] Minidump -> %SystemRoot%\Minidump -> [Folder | Modified Date = 7/11/2007 5:47:14 PM | Attr = ] mozver.dat -> %SystemRoot%\mozver.dat -> [Ver = | Size = 1156 bytes | Modified Date = 7/3/2007 11:44:58 PM | Attr = ] msagent -> %SystemRoot%\msagent -> [Folder | Modified Date = 7/2/2007 9:15:56 PM | Attr = ] NeroDigital.ini -> %SystemRoot%\NeroDigital.ini -> [Ver = | Size = 116 bytes | Modified Date = 7/15/2007 9:05:56 AM | Attr = ] nsreg.dat -> %SystemRoot%\nsreg.dat -> [Ver = | Size = 335 bytes | Modified Date = 7/3/2007 12:32:30 AM | Attr = ] ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 376 bytes | Modified Date = 7/2/2007 7:48:44 AM | Attr = ] Offline Web Pages -> %SystemRoot%\Offline Web Pages -> [Folder | Modified Date = 7/2/2007 2:13:16 PM | Attr = R ] options -> %SystemRoot%\options -> [Folder | Modified Date = 7/2/2007 6:27:14 AM | Attr = ] peernet -> %SystemRoot%\peernet -> [Folder | Modified Date = 7/2/2007 6:02:26 AM | Attr = ] Prefetch -> %SystemRoot%\Prefetch -> [Folder | Modified Date = 7/17/2007 9:43:00 PM | Attr = ] provisioning -> %SystemRoot%\provisioning -> [Folder | Modified Date = 7/2/2007 6:02:26 AM | Attr = ] QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Modified Date = 7/2/2007 8:12:54 AM | Attr = ] QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Modified Date = 7/17/2007 10:09:04 PM | Attr = H ] RegisteredPackages -> %SystemRoot%\RegisteredPackages -> [Folder | Modified Date = 7/3/2007 9:24:18 PM | Attr = ] Registration -> %SystemRoot%\Registration -> [Folder | Modified Date = 7/2/2007 8:46:52 PM | Attr = ] security -> %SystemRoot%\security -> [Folder | Modified Date = 7/3/2007 9:32:16 PM | Attr = ] ServicePackFiles -> %SystemRoot%\ServicePackFiles -> [Folder | Modified Date = 7/2/2007 6:01:08 AM | Attr = ] setup.pss -> %SystemRoot%\setup.pss -> [Folder | Modified Date = 7/2/2007 7:30:54 AM | Attr = ] setupapi.log.0.old -> %SystemRoot%\setupapi.log.0.old -> [Ver = | Size = 2266667 bytes | Modified Date = 7/2/2007 5:41:46 AM | Attr = ] SHELLNEW -> %SystemRoot%\SHELLNEW -> [Folder | Modified Date = 7/2/2007 7:47:22 AM | Attr = ] SMINST -> %SystemRoot%\SMINST -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = ] SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Modified Date = 7/14/2007 2:30:04 AM | Attr = ] srchasst -> %SystemRoot%\srchasst -> [Folder | Modified Date = 7/2/2007 6:01:00 AM | Attr = ] Sun -> %SystemRoot%\Sun -> [Folder | Modified Date = 7/2/2007 8:40:50 PM | Attr = ] SxsCaPendDel -> %SystemRoot%\SxsCaPendDel -> [Folder | Modified Date = 7/3/2007 7:18:08 PM | Attr = ] system -> %SystemRoot%\system -> [Folder | Modified Date = 7/14/2007 2:30:04 AM | Attr = ] system.ini -> %SystemRoot%\system.ini -> [Ver = | Size = 231 bytes | Modified Date = 7/2/2007 7:21:34 AM | Attr = ] system32 -> %System32% -> [Folder | Modified Date = 7/18/2007 8:49:04 AM | Attr = ] Tasks -> %SystemRoot%\Tasks -> [Folder | Modified Date = 7/2/2007 5:55:30 AM | Attr = S] temp -> %SystemRoot%\temp -> [Folder | Modified Date = 7/17/2007 10:13:48 PM | Attr = ] twain_32 -> %SystemRoot%\twain_32 -> [Folder | Modified Date = 7/2/2007 7:05:46 AM | Attr = ] Web -> %SystemRoot%\Web -> [Folder | Modified Date = 7/2/2007 5:59:42 AM | Attr = R ] win.ini -> %SystemRoot%\win.ini -> [Ver = | Size = 662 bytes | Modified Date = 7/14/2007 12:53:30 AM | Attr = ] WinSxS -> %SystemRoot%\WinSxS -> [Folder | Modified Date = 7/11/2007 10:58:02 PM | Attr = ] WMSysPr9.prx -> %SystemRoot%\WMSysPr9.prx -> [Ver = | Size = 316640 bytes | Modified Date = 7/3/2007 9:23:32 PM | Attr = ] Easy Internet Sign-up.job -> %SystemRoot%\tasks\Easy Internet Sign-up.job -> [Ver = | Size = 272 bytes | Modified Date = 7/2/2007 7:32:18 AM | Attr = ] SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Modified Date = 7/17/2007 10:07:18 PM | Attr = H ] $winnt$.inf -> %System32%\$winnt$.inf -> [Ver = | Size = 993 bytes | Modified Date = 7/2/2007 7:28:40 AM | Attr = ] ActiveScan -> %System32%\ActiveScan -> [Folder | Modified Date = 7/14/2007 2:30:08 AM | Attr = ] CanonIJ Uninstaller Information -> %System32%\CanonIJ Uninstaller Information -> [Folder | Modified Date = 7/2/2007 7:05:46 AM | Attr = H ] CatRoot -> %System32%\CatRoot -> [Folder | Modified Date = 7/4/2007 3:02:42 AM | Attr = ] CatRoot2 -> %System32%\CatRoot2 -> [Folder | Modified Date = 7/18/2007 8:48:56 AM | Attr = ] Com -> %System32%\Com -> [Folder | Modified Date = 7/2/2007 8:53:14 PM | Attr = ] config -> %System32%\config -> [Folder | Modified Date = 7/14/2007 2:30:38 AM | Attr = ] d3d9caps.dat -> %System32%\d3d9caps.dat -> [Ver = | Size = 3688 bytes | Modified Date = 7/15/2007 6:27:50 AM | Attr = ] DirectX -> %System32%\DirectX -> [Folder | Modified Date = 7/2/2007 5:00:46 PM | Attr = ] dllcache -> %System32%\dllcache -> [Folder | Modified Date = 7/18/2007 8:49:08 AM | Attr = RHS] drivers -> %System32%\drivers -> [Folder | Modified Date = 7/17/2007 10:43:08 PM | Attr = ] DRVSTORE -> %System32%\DRVSTORE -> [Folder | Modified Date = 7/2/2007 8:34:42 AM | Attr = ] FNTCACHE.DAT -> %System32%\FNTCACHE.DAT -> [Ver = | Size = 1542672 bytes | Modified Date = 7/16/2007 3:42:52 AM | Attr = ] FxsTmp -> %System32%\FxsTmp -> [Folder | Modified Date = 7/3/2007 4:01:00 AM | Attr = ] Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Modified Date = 7/14/2007 12:46:56 AM | Attr = ] ias -> %System32%\ias -> [Folder | Modified Date = 7/2/2007 2:14:50 PM | Attr = ] icsxml -> %System32%\icsxml -> [Folder | Modified Date = 7/2/2007 2:14:52 PM | Attr = ] Macromed -> %System32%\Macromed -> [Folder | Modified Date = 7/2/2007 7:36:26 AM | Attr = ] mui -> %System32%\mui -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ] npp -> %System32%\npp -> [Folder | Modified Date = 7/2/2007 6:01:02 AM | Attr = ] oobe -> %System32%\oobe -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ] pavas.ico -> %System32%\pavas.ico -> [Ver = | Size = 30590 bytes | Modified Date = 7/14/2007 12:46:54 AM | Attr = ] perfc009.dat -> %System32%\perfc009.dat -> [Ver = | Size = 53552 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ] perfh009.dat -> %System32%\perfh009.dat -> [Ver = | Size = 382000 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ] PerfStringBackup.INI -> %System32%\PerfStringBackup.INI -> [Ver = | Size = 441626 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ] pncrt.dll -> %System32%\pncrt.dll -> Real Networks, Inc [Ver = 6.0.0.0 | Size = 278528 bytes | Modified Date = 7/2/2007 7:25:52 PM | Attr = ] pndx5016.dll -> %System32%\pndx5016.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 6656 bytes | Modified Date = 7/2/2007 7:25:54 PM | Attr = ] pndx5032.dll -> %System32%\pndx5032.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 5632 bytes | Modified Date = 7/2/2007 7:25:54 PM | Attr = ] PreInstall -> %System32%\PreInstall -> [Folder | Modified Date = 7/2/2007 9:14:38 AM | Attr = ] QuickTime.qts -> %System32%\QuickTime.qts -> Apple Inc. [Ver = 7.2 | Size = 49152 bytes | Modified Date = 6/29/2007 6:24:58 AM | Attr = ] QuickTimeVR.qtx -> %System32%\QuickTimeVR.qtx -> Apple Inc. [Ver = 7.2 | Size = 65536 bytes | Modified Date = 6/29/2007 6:24:58 AM | Attr = ] ras -> %System32%\ras -> [Folder | Modified Date = 7/2/2007 2:15:04 PM | Attr = ] ReinstallBackups -> %System32%\ReinstallBackups -> [Folder | Modified Date = 7/2/2007 7:24:40 AM | Attr = ] Restore -> %System32%\Restore -> [Folder | Modified Date = 7/2/2007 7:22:48 AM | Attr = ] rmoc3260.dll -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Modified Date = 7/2/2007 7:26:00 PM | Attr = ] Samsung PC Studio Codecs -> %System32%\Samsung PC Studio Codecs -> [Folder | Modified Date = 7/2/2007 8:07:04 AM | Attr = ] Samsung_USB_Drivers -> %System32%\Samsung_USB_Drivers -> [Folder | Modified Date = 7/2/2007 8:07:08 AM | Attr = ] Setup -> %System32%\Setup -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ] SoftwareDistribution -> %System32%\SoftwareDistribution -> [Folder | Modified Date = 7/2/2007 6:54:04 AM | Attr = ] swreg.exe -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Modified Date = 7/11/2007 4:59:06 PM | Attr = ] Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Modified Date = 7/14/2007 12:46:56 AM | Attr = ] usmt -> %System32%\usmt -> [Folder | Modified Date = 7/2/2007 6:00:42 AM | Attr = ] wbem -> %System32%\wbem -> [Folder | Modified Date = 7/14/2007 2:34:20 AM | Attr = ] wpa.dbl -> %System32%\wpa.dbl -> [Ver = | Size = 1158 bytes | Modified Date = 7/16/2007 3:43:38 AM | Attr = ] AegisP.sys -> %System32%\drivers\AegisP.sys -> Meetinghouse Data Communications [Ver = 3.0.0.6 | Size = 15939 bytes | Modified Date = 7/2/2007 6:27:28 AM | Attr = ] avg7core.sys -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ] avg7rsw.sys -> %System32%\drivers\avg7rsw.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,340 | Size = 4224 bytes | Modified Date = 7/2/2007 6:13:10 AM | Attr = ] avg7rsxp.sys -> %System32%\drivers\avg7rsxp.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.442 | Size = 27776 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ] avgclean.sys -> %System32%\drivers\avgclean.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 3968 bytes | Modified Date = 7/2/2007 6:13:12 AM | Attr = ] avgmfx86.sys -> %System32%\drivers\avgmfx86.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.473 | Size = 19904 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ] avgtdi.sys -> %System32%\drivers\avgtdi.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,346 | Size = 4960 bytes | Modified Date = 7/2/2007 6:13:12 AM | Attr = ] etc -> %System32%\drivers\etc -> [Folder | Modified Date = 7/17/2007 10:08:10 PM | Attr = ] HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039 900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> %System32%\drivers\HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039 900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> [Ver = | Size = 4148 bytes | Modified Date = 7/2/2007 7:30:04 AM | Attr = RHS] [File String Scan - Non-Microsoft Only] WSUD , -> %System32%\ALSNDMGR.CPL -> Realtek Semiconductor Corp. [Ver = 2.2.0.34 | Size = 16121856 bytes | Modified Date = 9/20/2004 3:20:44 PM | Attr = ] PEC2 , -> %System32%\dfrg.msc -> [Ver = | Size = 41397 bytes | Modified Date = 9/24/2003 10:30:00 AM | Attr = ] PEC2 , PECompact2 , -> %System32%\DivX.dll -> DivXNetworks [Ver = 6,0,0,1571 | Size = 692736 bytes | Modified Date = 6/9/2005 9:32:28 PM | Attr = ] Thawte Consulting , -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Modified Date = 7/2/2007 7:26:00 PM | Attr = ] UPX! , UPX0 , -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Modified Date = 7/11/2007 4:59:06 PM | Attr = ] winsync , -> %System32%\wbdbase.deu -> [Ver = | Size = 1309184 bytes | Modified Date = 9/24/2003 4:19:00 AM | Attr = ] UPX! , FSG! , PEC2 , aspack , -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ] PTech , -> %System32%\drivers\mtlstrm.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 1309184 bytes | Modified Date = 8/3/2004 10:41:38 PM | Attr = ] < End of report > |
|
|
Jul 18 2007, 08:49 PM
Post
#15
|
|
|
Member ![]() ![]() Posts: 13 OS: Windows XP SP2 |
SuperAntispyware Log:
SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 07/19/2007 at 03:24 AM Application Version : 3.9.1008 Core Rules Database Version : 3270 Trace Rules Database Version: 1281 Scan type : Complete Scan Total Scan Time : 16:43:22 Memory items scanned : 508 Memory threats detected : 0 Registry items scanned : 7056 Registry threats detected : 0 File items scanned : 140018 File threats detected : 15 Adware.Tracking Cookie C:\Documents and Settings\Owner\Cookies\owner@bs.serving-sys[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.aol.co[2].txt C:\Documents and Settings\Owner\Cookies\owner@revsci[2].txt C:\Documents and Settings\Owner\Cookies\owner@a[1].txt C:\Documents and Settings\Owner\Cookies\owner@atdmt[2].txt C:\Documents and Settings\Owner\Cookies\owner@html[1].txt C:\Documents and Settings\Owner\Cookies\owner@adrevolver[1].txt C:\Documents and Settings\Owner\Cookies\owner@adrevolver[3].txt C:\Documents and Settings\Owner\Cookies\owner@mediaplex[1].txt C:\Documents and Settings\Owner\Cookies\owner@atwola[1].txt C:\Documents and Settings\Owner\Cookies\owner@tradedoubler[2].txt C:\Documents and Settings\Owner\Cookies\owner@serving-sys[1].txt Adware.Vundo Variant C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\AUSPWMEO.DLL.VIR C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\JXRYJUDY.DLL.VIR C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\PSSTIOTO.DLL.VIR i am very sorry about the delay in posting these logs, but as you can see the SUperantispyware log took a lot longer than expected. the reason being that the superantispyware scan kept finding exceptions of some kind at certain parts of the registry scan i think, at which point it would stop and ask me whether i wanted to cancel the scan, try again, or continue. this happened about 4 or 5 times i think. generally im not having any other problems with my pc. the initial problem was that i was getting annoting popups about 'debt management' and other virus software like 'winantivirus' and such like. these pop ups have now, to my knowledge, stopped. although the scans above are still finding malware on my pc from what my untrained eye can see. i shall leave this in your trusted hands. thankyou very much for all your help. m8edy |
|
|
![]() ![]() |
Similar Topics
| Topic Title | Replies / Views | Topic Information | |||||
|---|---|---|---|---|---|---|---|
![]() |
1 / 428 | 11th November 2005 - 01:39 AM crybaby started - last by OwNt |
|||||
![]() |
7 / 911 | 15th September 2007 - 10:32 AM TaterState started - last by MoNsTeReNeRgY22 |
|||||
![]() |
4 / 406 | 3rd January 2008 - 09:25 AM Biggee163 started - last by RatHat |
|||||
![]() |
9 / 741 | 14th July 2008 - 04:28 PM NegativeZero started - last by Rorschach112 |
|||||
|
Time is now: 7th November 2009 - 11:41 PM |
Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks mentioned on this page are the property of their respective owners.
© Geeks to Go, Inc. | All Rights Reserved | Privacy Policy | Advertising