Need a geek? Geeks to Go offers free, quality tech support -- in terms anyone can understand. Volunteers are waiting to help, friendly, technology experts who have knowledge to share, and enjoy helping others. Feel free to browse the site as a guest. However, you must log in to reply to existing topics, or to start a new topic of your own. Other benefits of joining include richer forum features, and removal of all advertising. Learn more in our Welcome Guide Infected? Malware and Spyware Cleaning Guide. What are you waiting for? Click here to join for free today!
2 Pages V   1 2 >  
Closed TopicStart new topic
Problem With Vundo and others possibly [RESOLVED]
m8edy
post Jul 13 2007, 09:05 PM
Post #1


Member
**
Posts: 13
OS: Windows XP SP2



hey ive followed the list of things to do before posting and here are my logs from the whole process.

AVG Spyware:

i couldnt do an AVG scan in safe mode because my PC wouldnt start up in safe mode. so i did a scan after loading windows but it didnt generate a log for some reason.

SUPERAntiSpyware Home Edition:

SUPERAntiSpyware Scan Log
Generated 07/13/2007 at 11:29 AM

Application Version : 3.6.1000

Core Rules Database Version : 3190
Trace Rules Database Version: 1200

Scan type : Complete Scan
Total Scan Time : 02:58:35

Memory items scanned : 495
Memory threats detected : 1
Registry items scanned : 6748
Registry threats detected : 6
File items scanned : 137742
File threats detected : 1

Adware.Vundo Variant
C:\WINDOWS\SYSTEM32\MLJGD.DLL
C:\WINDOWS\SYSTEM32\MLJGD.DLL
HKLM\Software\Classes\CLSID\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1}
HKCR\CLSID\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1}
HKCR\CLSID\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1}\InprocServer32
HKCR\CLSID\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1}\InprocServer32#ThreadingModel
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1}
Software\Microsoft\Windows NT\CurrentVersion\WinLogon\Notify\mljgd

Panda Software active Scan:


Incident Status Location

Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\znl9n4pq.default\cookies.txt[.atwola.com/]
Spyware:Cookie/did-it Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\znl9n4pq.default\cookies.txt[.did-it.com/]
Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\znl9n4pq.default\cookies.txt[.xiti.com/]
Spyware:Cookie/Systemdoctor Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\znl9n4pq.default\cookies.txt[systemdoctor.com/]
Virus:Generic Malware Disinfected C:\Documents and Settings\Owner\My Documents\msnpolygamy-universal.zip[msn_messenger_polygamy_5.exe]
Virus:Generic Malware Disinfected C:\Documents and Settings\Owner\My Documents\msnpolygamy-universalpatch(www.mess.be).zip[msn_messenger_polygamy_5.exe]
Potentially unwanted tool:Application/KillApp.B Not disinfected C:\hp\bin\KillIt.exe
Potentially unwanted tool:Application/KillApp.A Not disinfected C:\hp\bin\Terminator.exe
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\auspwmeo.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\jxryjudy.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\system32\psstioto.dll
Adware:Adware/Lop Not disinfected M:\k drive\WarezP2P.exe[7k43.exe]
Spyware:Spyware/Hyperbar Not disinfected M:\k drive\WarezP2P.exe[NavHelperInner.msi][unk_0016][HyperbarSS3.dll]
Spyware:Spyware/Hyperbar Not disinfected M:\k drive\WarezP2P.exe[NavHelperInner.msi][unk_0016][Hyperbar.dll]
Spyware:Spyware/New.net Not disinfected M:\k drive\WarezP2P.exe[NNWARZ3_88.exe]
Adware:Adware/Lop Not disinfected M:\k drive\Download\WarezP2P.exe[7k43.exe]
Spyware:Spyware/Hyperbar Not disinfected M:\k drive\Download\WarezP2P.exe[NavHelperInner.msi][unk_0016][HyperbarSS3.dll]
Spyware:Spyware/Hyperbar Not disinfected M:\k drive\Download\WarezP2P.exe[NavHelperInner.msi][unk_0016][Hyperbar.dll]
Spyware:Spyware/New.net Not disinfected M:\k drive\Download\WarezP2P.exe[NNWARZ3_88.exe]
Virus:Generic Malware Disinfected N:\My Documents\msnpolygamy-universal.zip[msn_messenger_polygamy_5.exe]
Virus:Generic Malware Disinfected N:\My Documents\msnpolygamy-universalpatch(www.mess.be).zip[msn_messenger_polygamy_5.exe]
Virus:Trj/Clicker.ABJ Not disinfected N:\Microsoft.Office.Pro.2007.TimeStop.Activation.Crack[MS.Activator.nGen.DYNAM
CS]\msop07_tsa.exe[post ext sp6.exe]

HijackThis Log:

Logfile of HijackThis v1.99.1
Scan saved at 03:47:41, on 14/07/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe
C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system\hpsysdrv.exe
C:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe
C:\WINDOWS\System32\hphmon05.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Belkin\Bluetooth Software\BTTray.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\PROGRA~1\Belkin\BLUETO~1\BTSTAC~1.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://gb10.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-gb10.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-gb10.hpwis.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.le.ac.uk/sm/le/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://gb10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-gb10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-gb10.hpwis.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://gb10.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.apple.com/itunes/download/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file)
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: (no name) - {C5FCE753-7E3E-414C-815E-86AF82D8817A} - C:\WINDOWS\system32\cbxyyyx.dll (file missing)
O2 - BHO: (no name) - {CD5ECF32-3048-4B8B-94DA-0B473F009BD1} - (no file)
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\program files\hp\digital imaging\bin\hpdtlk02.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
O4 - HKLM\..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe /autostart
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-GB ee://aol/imApp
O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\btxppanel.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: cbxyyyx - cbxyyyx.dll (file missing)
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Belkin 54g Wireless USB Network Adapter (Belkin 54g Wireless USB Network Adapter Service) - Unknown owner - C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe
O23 - Service: DomainService - Unknown owner - C:\WINDOWS\system32\uxljvstc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

HijackThis Uninstall Log:

Ad-Aware 2007
Adobe Anchor Service CS3
Adobe Asset Services CS3
Adobe Audition 2.0
Adobe Bridge 1.0
Adobe Bridge CS3
Adobe Bridge Start Meeting
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Color - Photoshop Specific
Adobe Color Common Settings
Adobe Color Common Settings
Adobe Color EU Extra Settings
Adobe Color JA Extra Settings
Adobe Color NA Recommended Settings
Adobe Common File Installer
Adobe Default Language CS3
Adobe Device Central CS3
Adobe ExtendScript Toolkit 2
Adobe ExtendScript Toolkit 2
Adobe Flash Player ActiveX
Adobe Fonts All
Adobe Help Center 2.0
Adobe Help Viewer CS3
Adobe Linguistics CS3
Adobe PDF Library Files
Adobe Photoshop CS3
Adobe Photoshop CS3
Adobe Reader 6.0
Adobe Setup
Adobe Setup
Adobe Setup
Adobe Stock Photos CS3
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe WinSoft Linguistics Plugin
Adobe XMP Panels CS3
AIM 6
Apple Mobile Device Support
Apple Software Update
ArcSoft PhotoStudio 5.5
ArcSoft ShowBiz 2
ATI Control Panel
ATI Display Driver
AVG Anti-Spyware 7.5
AVG Free Edition
Belkin 54g USB Network Adapter
Belkin Bluetooth Software
Canon MP Navigator 3.0
Canon MP600
Canon MP600 User Registration
Canon Utilities Easy-PhotoPrint
CD-LabelPrint
DivX
DivX Player
DVD Shrink 3.2
Easy Internet Sign-up
Easy-WebPrint
ffdshow (remove only)
Google Talk (remove only)
Hijackthis 1.99.1
HijackThis 1.99.1
HP Deskjet Preloaded Printer Drivers
HP Photo & Imaging 3.1
HP Photo and Imaging 2.0 - Photosmart Cameras
HP PSC & OfficeJet 3.0
HP Software Update
HPIZ311
Intel® Extreme Graphics Driver
InterVideo WinDVD Player
iPod for Windows 2006-03-23
iTunes
Java 2 Runtime Environment, SE v1.4.2
KBD
Magic ISO Maker v5.3 (build 0221)
Memories Disc Creator 2.0
Messenger Plus! Live
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB928366)
Microsoft ActiveSync 3.8
Microsoft AutoRoute v11.0
Microsoft Encarta Encyclopedia Standard - WE 2004
Microsoft Money
Microsoft Money System Pack
Microsoft Office Professional Edition 2003
Microsoft Picture It! Photo Standard 9
Microsoft Works 2004 Setup Launcher
Mozilla Firefox (2.0.0.4)
MSXML 4.0 SP2 (KB927978)
Multimedia Card Reader
Nero 7 Ultra Edition
NVIDIA GART Driver
Panda ActiveScan
PC-Doctor for Windows
PDF Settings
Photosmart 140,240,7200,7600,7700,7900 Series
PS2
Python 2.2 combined Win32 extensions
Python 2.2.1
QuickTime
RealPlayer
RecordNow!
SAMSUNG CDMA Modem Driver Set
SAMSUNG Mobile USB Modem 1.0 Software
SAMSUNG Mobile USB Modem Software
Samsung PC Studio
Samsung PC Studio 3 USB Driver Installer
ScanSoft OmniPage SE 4.0
Security Update for Step By Step Interactive Training (KB923723)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB902400)
Security Update for Windows XP (KB904706)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB913580)
Security Update for Windows XP (KB914388)
Security Update for Windows XP (KB914389)
Security Update for Windows XP (KB917344)
Security Update for Windows XP (KB917953)
Security Update for Windows XP (KB918118)
Security Update for Windows XP (KB918439)
Security Update for Windows XP (KB919007)
Security Update for Windows XP (KB920213)
Security Update for Windows XP (KB920670)
Security Update for Windows XP (KB920683)
Security Update for Windows XP (KB920685)
Security Update for Windows XP (KB922819)
Security Update for Windows XP (KB923191)
Security Update for Windows XP (KB923414)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB923789)
Security Update for Windows XP (KB923980)
Security Update for Windows XP (KB924191)
Security Update for Windows XP (KB924270)
Security Update for Windows XP (KB924496)
Security Update for Windows XP (KB924667)
Security Update for Windows XP (KB925902)
Security Update for Windows XP (KB926255)
Security Update for Windows XP (KB926436)
Security Update for Windows XP (KB927779)
Security Update for Windows XP (KB927802)
Security Update for Windows XP (KB928255)
Security Update for Windows XP (KB928843)
Security Update for Windows XP (KB929123)
Security Update for Windows XP (KB929969)
Security Update for Windows XP (KB930178)
Security Update for Windows XP (KB931261)
Security Update for Windows XP (KB931784)
Security Update for Windows XP (KB932168)
Security Update for Windows XP (KB933566)
Security Update for Windows XP (KB935839)
Security Update for Windows XP (KB935840)
Shockwave
Sonic Update Manager
Spybot - Search & Destroy 1.4
SUPERAntiSpyware Free Edition
Update for Windows XP (KB894391)
Update for Windows XP (KB898461)
Update for Windows XP (KB900485)
Update for Windows XP (KB908531)
Update for Windows XP (KB910437)
Update for Windows XP (KB911280)
Update for Windows XP (KB916595)
Update for Windows XP (KB920872)
Update for Windows XP (KB922582)
Update for Windows XP (KB927891)
Update for Windows XP (KB930916)
Update for Windows XP (KB931836)
Update for Windows XP (KB936357)
ViaMichelin Navigation X-930
Viewpoint Media Player
Vodafone 804SS USB driver Software
Windows Installer 3.1 (KB893803)
Windows Live Messenger
Windows Media Format Runtime
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB891781
Windows XP Service Pack 2
WinRAR archiver
WinZip
XviD MPEG-4 Video Codec
Yahoo! Messenger


My windows is totally up to date, and i have been running AVG antivirus for a very long time and it is regularly updated on a daily basis. I am also running Ad-Aware 2007 Pro.

Please could you help me with this problem, as the problem seems to just keep coming back sad.gif .

Thankyou in advance and i hope to hear from you soon.

m8edy
Go to the top of the page
 
+Quote Post
Essexboy
post Jul 17 2007, 02:32 PM
Post #2


GeekU Moderator
Group Icon
Posts: 19,158
From: Darkest Cornwall
OS: Vista Ultimate & Windows 7



Hi there sorry for the delay, OK lets get off to a flying start then

Download ComboFix from Here or Here to your Desktop.
  • Double click combofix.exe and follow the prompts.
  • When finished, it shall produce a log for you. Post that log and a HiJackthis log in your next reply
Note: Do not mouseclick combofix's window while its running. That may cause it to stall

Logs required are Combofix and Hijackthis
Go to the top of the page
 
+Quote Post
m8edy
post Jul 17 2007, 03:17 PM
Post #3


Member
**
Posts: 13
OS: Windows XP SP2



hey

ok ive done as you asked and here are the two logs you requested:

Combofix log:

"Owner" - 2007-07-17 21:47:28 - ComboFix 07-07-13.8 - Service Pack 2 NTFS


(((((((((((((((((((((((((((((((((((((((((((( V Log )))))))))))))))))))))))))))))))))))))))))))))))))))))))


C:\WINDOWS\system32\auspwmeo.dll
C:\WINDOWS\system32\jxryjudy.dll
C:\WINDOWS\system32\psstioto.dll
C:\WINDOWS\system32\oemwpsua.ini
C:\WINDOWS\system32\ydujyrxj.ini
C:\WINDOWS\system32\otoitssp.ini
C:\WINDOWS\system32\dgjlm.bak1
C:\WINDOWS\system32\dgjlm.bak2
C:\WINDOWS\system32\dgjlm.ini
C:\WINDOWS\system32\dgjlm.ini2
C:\WINDOWS\system32\dgjlm.tmp
C:\WINDOWS\system32\dgjlm.bak1
C:\WINDOWS\system32\dgjlm.bak2
C:\WINDOWS\system32\dgjlm.ini
C:\WINDOWS\system32\dgjlm.ini2
C:\WINDOWS\system32\dgjlm.tmp


* * * POST RUN FILES/FOLDERS * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *


((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))


-------\LEGACY_DOMAINSERVICE
-------\DomainService


((((((((((((((((((((((((( Files Created from 2007-06-17 to 2007-07-17 )))))))))))))))))))))))))))))))


2007-07-17 21:43 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-07-15 10:21 <DIR> d-------- C:\Program Files\Microsoft AutoRoute
2007-07-15 10:10 <DIR> d-------- C:\Program Files\Microsoft Works
2007-07-14 00:54 8,576 --a------ C:\WINDOWS\system32\drivers\nwnrmhgthyco.sys
2007-07-14 00:46 <DIR> d-------- C:\WINDOWS\system32\ActiveScan
2007-07-13 08:28 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2007-07-13 08:28 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\SUPERAntiSpyware.com
2007-07-13 08:28 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com
2007-07-13 05:49 1,048,576 --ah----- C:\DOCUME~1\ADMINI~1\NTUSER.DAT
2007-07-13 05:49 <DIR> d-------- C:\DOCUME~1\ADMINI~1\WINDOWS
2007-07-13 05:49 <DIR> d-------- C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec
2007-07-13 05:49 <DIR> d-------- C:\DOCUME~1\ADMINI~1\APPLIC~1\Sonic
2007-07-13 05:49 <DIR> d-------- C:\DOCUME~1\ADMINI~1\APPLIC~1\SampleView
2007-07-13 05:43 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2007-07-13 02:39 <DIR> d-------- C:\Program Files\iTunes
2007-07-12 22:44 66,580 --a------ C:\WINDOWS\system32\rbxeiyjn.dll
2007-07-11 22:41 66,580 --a------ C:\WINDOWS\system32\vwsjvrrr.dll
2007-07-11 21:58 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
2007-07-11 21:10 66,580 --a------ C:\WINDOWS\system32\dhiamwpr.dll
2007-07-09 05:23 <DIR> d-------- C:\Program Files\XviD
2007-07-09 05:22 <DIR> d-------- C:\Program Files\DivX
2007-07-09 05:21 <DIR> d-------- C:\Program Files\ffdshow
2007-07-08 21:35 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\Motive
2007-07-04 03:47 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\acccore
2007-07-04 02:59 104,064 -ra------ C:\WINDOWS\system32\drivers\wceusbsh.sys
2007-07-04 02:04 <DIR> d-------- C:\Program Files\AvantGo Connect
2007-07-04 02:02 77,899 --a------ C:\WINDOWS\system32\rapi.dll
2007-07-04 02:02 65,615 --a------ C:\WINDOWS\system32\pmailext.dll
2007-07-04 02:02 65,613 --a------ C:\WINDOWS\system32\ppvexp.dll
2007-07-04 02:02 57,423 --a------ C:\WINDOWS\system32\MsgStRPC.dll
2007-07-04 02:02 36,942 --a------ C:\WINDOWS\system32\ppcload.dll
2007-07-04 02:02 24,653 --a------ C:\WINDOWS\system32\ceutil.dll
2007-07-04 02:02 24,652 --a------ C:\WINDOWS\system32\uicom.dll
2007-07-04 02:02 114,688 --a------ C:\WINDOWS\system32\malslib.dll
2007-07-04 00:21 <DIR> d-------- C:\Program Files\ViaMichelin
2007-07-03 23:44 1,156 --a------ C:\WINDOWS\mozver.dat
2007-07-03 22:05 <DIR> d-------- C:\DOCUME~1\Owner\Shared
2007-07-03 21:43 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe Systems
2007-07-03 21:22 <DIR> d-------- C:\Program Files\Common Files\Adobe Systems Shared
2007-07-03 20:50 <DIR> d-------- C:\Program Files\Bonjour
2007-07-03 20:21 <DIR> d-------- C:\Program Files\Common Files\Macrovision Shared
2007-07-03 19:14 <DIR> d-------- C:\WINDOWS\SxsCaPendDel
2007-07-03 04:24 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo!
2007-07-03 04:01 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\FLEXnet
2007-07-03 02:15 <DIR> d-------- C:\Program Files\DVD Shrink
2007-07-03 02:15 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
2007-07-03 00:35 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL OCP
2007-07-03 00:35 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
2007-07-03 00:34 <DIR> d-------- C:\Program Files\Viewpoint
2007-07-03 00:34 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
2007-07-03 00:33 <DIR> d-------- C:\Program Files\Common Files\AOL
2007-07-03 00:32 <DIR> d-------- C:\Program Files\AIM6
2007-07-03 00:29 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads
2007-07-03 00:04 <DIR> d-------- C:\Program Files\Google
2007-07-03 00:01 <DIR> d-------- C:\Program Files\Yahoo!
2007-07-02 23:21 53,760 --a------ C:\WINDOWS\system32\vfwwdm32.dll
2007-07-02 23:21 48,128 --a------ C:\WINDOWS\system32\drivers\61883.sys
2007-07-02 23:21 38,912 --a------ C:\WINDOWS\system32\drivers\avc.sys
2007-07-02 22:40 335 --a------ C:\WINDOWS\nsreg.dat
2007-07-02 22:13 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\Samsung
2007-07-02 21:39 <DIR> d-------- C:\Program Files\Lavasoft
2007-07-02 21:39 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
2007-07-02 21:38 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2007-07-02 21:09 <DIR> d-------- C:\Program Files\MSXML 4.0
2007-07-02 20:31 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
2007-07-02 20:27 <DIR> d---s---- C:\DOCUME~1\Owner\UserData
2007-07-02 19:43 <DIR> d-------- C:\Program Files\MagicISO
2007-07-02 19:26 <DIR> d-------- C:\Program Files\Common Files\xing shared
2007-07-02 19:25 <DIR> d-------- C:\Program Files\Real
2007-07-02 19:25 <DIR> d-------- C:\Program Files\Common Files\Real
2007-07-02 19:25 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\Real
2007-07-02 19:22 <DIR> d-------- C:\My Downloads
2007-07-02 19:16 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\WinRAR
2007-07-02 17:33 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\uTorrent
2007-07-02 17:03 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\Ahead
2007-07-02 17:01 <DIR> d-------- C:\Program Files\Nero
2007-07-02 17:01 <DIR> d-------- C:\Program Files\Common Files\Ahead
2007-07-02 17:01 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
2007-07-02 15:51 <DIR> d-------- C:\DOCUME~1\Guest\Bluetooth Software
2007-07-02 15:51 <DIR> d-------- C:\DOCUME~1\Guest\APPLIC~1\Apple Computer
2007-07-02 15:50 1,048,576 --ah----- C:\DOCUME~1\Guest\NTUSER.DAT
2007-07-02 15:50 <DIR> d-------- C:\DOCUME~1\Guest\WINDOWS
2007-07-02 15:50 <DIR> d-------- C:\DOCUME~1\Guest\APPLIC~1\Symantec
2007-07-02 15:50 <DIR> d-------- C:\DOCUME~1\Guest\APPLIC~1\Sonic
2007-07-02 15:50 <DIR> d-------- C:\DOCUME~1\Guest\APPLIC~1\SampleView
2007-07-02 14:17 86,016 --a------ C:\WINDOWS\system32\ati2evxx.dll
2007-07-02 14:17 853,088 --a------ C:\WINDOWS\system32\ati3d1ag.dll
2007-07-02 14:17 81,920 --a------ C:\WINDOWS\system32\ATIDDC.DLL
2007-07-02 14:17 620,032 --a------ C:\WINDOWS\system32\drivers\ati2mtag.sys
2007-07-02 14:17 4,595,712 --a------ C:\WINDOWS\system32\atioglxx.dll
2007-07-02 14:17 376,832 --a------ C:\WINDOWS\system32\ati2evxx.exe
2007-07-02 14:17 374,784 --a------ C:\WINDOWS\system32\ati2dvag.dll
2007-07-02 14:17 34,816 --a------ C:\WINDOWS\system32\ati2edxx.dll
2007-07-02 14:17 28,672 --a------ C:\WINDOWS\system32\Ati2mdxx.exe
2007-07-02 14:17 249 --a------ C:\WINDOWS\system\hpsysdrv.dat
2007-07-02 14:17 24,064 --a------ C:\WINDOWS\system32\ativcoxx.dll
2007-07-02 14:17 229,376 --a------ C:\WINDOWS\system32\atiiiexx.dll
2007-07-02 14:17 17,408 --a------ C:\WINDOWS\system32\atitvo32.dll
2007-07-02 14:17 110,592 --a------ C:\WINDOWS\system32\atipdlxx.dll
2007-07-02 14:17 1,164,032 --a------ C:\WINDOWS\system32\ati3duag.dll


(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

2007-07-03 23:20:51 -------- d--h--w C:\Program Files\InstallShield Installation Information
2007-07-02 19:49:16 -------- d-----w C:\Program Files\Messenger
2007-07-02 07:06:13 -------- d-----w C:\Program Files\Common Files\InstallShield
2007-07-02 06:32:16 -------- d-----w C:\Program Files\Easy Internet signup
2007-07-02 06:30:03 4,148 --sha-r C:\WINDOWS\system32\drivers\HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039
900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK
2007-07-02 06:27:36 -------- d-----w C:\Program Files\Common Files\InterVideo
2007-07-02 06:27:31 -------- d-----w C:\Program Files\InterVideo
2007-07-02 05:02:25 -------- d-----w C:\Program Files\Movie Maker
2007-07-02 05:00:54 -------- d-----w C:\Program Files\Windows NT
2007-06-04 14:18:48 9,344 ----a-w C:\WINDOWS\system32\drivers\NSDriver.sys
2007-06-04 14:17:02 8,320 ----a-w C:\WINDOWS\system32\drivers\AWRTRD.sys
2007-06-04 14:14:56 6,272 ----a-w C:\WINDOWS\system32\drivers\AWRTPD.sys
2007-05-16 15:12:02 683,520 ----a-w C:\WINDOWS\system32\inetcomm.dll
2007-04-25 14:21:15 144,896 ----a-w C:\WINDOWS\system32\schannel.dll
2007-04-18 16:12:23 2,854,400 ----a-w C:\WINDOWS\system32\msi.dll


((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))


*Note* empty entries & legit default entries are not shown

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
2003-05-15 08:47 50376 --a------ C:\Program Files\Adobe\Reader\ActiveX\AcroIEHelper.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
2005-05-31 01:04 853672 --a------ C:\PROGRA~1\SPYBOT~1\SDHelper.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{549B5CA7-4A86-11D7-A4DF-000874180BB3}]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}]
2006-04-18 19:04 34304 --a------ C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{CD5ECF32-3048-4B8B-94DA-0B473F009BD1}]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{FDD3B846-8D59-4ffb-8758-209B6AD74ACC}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CamMonitor"="c:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe" [2002-10-07 08:23]
"HPHUPD05"="c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe" []
"KBD"="C:\HP\KBD\KBD.EXE" [2003-02-11 21:02]
"UpdateManager"="C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" [2003-08-19 09:01]
"nwiz"="nwiz.exe" [2003-08-19 03:56 C:\WINDOWS\system32\nwiz.exe]
"VTTimer"="VTTimer.exe" []
"ATIModeChange"="Ati2mdxx.exe" [2001-09-05 00:24 C:\WINDOWS\system32\Ati2mdxx.exe]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2003-11-01 21:00]
"Sunkist2k"="C:\Program Files\Multimedia Card Reader\shwicon2k.exe" [2003-08-14 20:11]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe" [2007-07-02 06:36]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-04 00:56 C:\WINDOWS\system32\bthprops.cpl]
"SSBkgdUpdate"="C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-09-30 00:14]
"OpwareSE4"="C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-03-21 13:19]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 15:40]
"AlcxMonitor"="ALCXMNTR.EXE" [2004-09-07 13:47 C:\WINDOWS\ALCXMNTR.EXE]
"Ad-Watch"="C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe" [2007-07-02 21:37]
"googletalk"="C:\Program Files\Google\Google Talk\googletalk.exe" [2007-01-01 22:22]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 06:24]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-07-10 09:18]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RecordNow!"="" []
"NVIEW"="nview.dll,nViewLoadHook" []
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2007-07-02 08:45]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2006-11-16 19:04]
"Aim6"="" []
"Acme.PCHButton"="C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe" [2003-01-01 12:06]
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2007-07-14 05:38]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2005-05-31 01:04]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=0 (0x0)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{93994DE8-8239-4655-B1D1-5F4E91300429}"="C:\DOCUME~1\Owner\Desktop\DVDTHI~1\DVDREG~1\DVDShell.dll" [2003-08-26 11:58]
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll" [2007-05-30 13:29]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"="C:\Program Files\SUPERAntiSpyware\SASSEH.DLL" [2006-12-20 12:55]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL --a------ 2007-07-14 05:38 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cbxyyyx]
cbxyyyx.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\aawservice]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Driver]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Guard]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs BthServ


Contents of the 'Scheduled Tasks' folder
2007-07-02 06:32:16 C:\WINDOWS\tasks\Easy Internet Sign-up.job

**************************************************************************

catchme 0.3.915 W2K/XP/Vista - rootkit detector by Gmer, http://www.gmer.net
Rootkit scan 2007-07-17 22:08:13
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************

Completion time: 2007-07-17 22:12:57
C:\ComboFix-quarantined-files.txt ... 2007-07-17 22:12

--- E O F ---


HijackThis Log:

Logfile of HijackThis v1.99.1
Scan saved at 22:14:36, on 17/07/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe
C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\explorer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.le.ac.uk/sm/le/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://gb10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-gb10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-gb10.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.apple.com/itunes/download/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file)
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: (no name) - {CD5ECF32-3048-4B8B-94DA-0B473F009BD1} - (no file)
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\program files\hp\digital imaging\bin\hpdtlk02.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
O4 - HKLM\..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe /autostart
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\btxppanel.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O20 - Winlogon Notify: cbxyyyx - cbxyyyx.dll (file missing)
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Belkin 54g Wireless USB Network Adapter (Belkin 54g Wireless USB Network Adapter Service) - Unknown owner - C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe


I hope this is of use to you, thankyou for your help!

m8edy
Go to the top of the page
 
+Quote Post
Essexboy
post Jul 17 2007, 03:35 PM
Post #4


GeekU Moderator
Group Icon
Posts: 19,158
From: Darkest Cornwall
OS: Vista Ultimate & Windows 7



And moving swiftly along as you are doing so well thumbsup.gif

While TeaTimer is an excellent tool for the prevention of spyware, it can sometimes prevent HijackThis from fixing certain things.
Please disable TeaTimer for now until you are clean. TeaTimer can be re-activated once your HijackThis log is clean.
  • Open Spybot Search & Destroy.
  • In the Mode menu click "Advanced mode" if not already selected.
  • Choose "Yes" at the Warning prompt.
  • Expand the "Tools" menu.
  • Click "Resident".
  • Uncheck the "Resident "TeaTimer" (Protection of overall system settings) active." box.
  • In the File menu click "Exit" to exit Spybot Search & Destroy.

FIRST

Please re-open HiJackThis and scan. Check the boxes next to all the entries listed below.

O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: (no name) - {CD5ECF32-3048-4B8B-94DA-0B473F009BD1} - (no file)
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
O20 - Winlogon Notify: cbxyyyx - cbxyyyx.dll (file missing)

Now close all windows other than HiJackThis, then click Fix Checked. Close HiJackThis.

NOW to kill the files

Please download the OTMoveIt http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe by OldTimer.
Save it to your desktop.
Please double-click OTMoveIt.exe to run it.
Copy the file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy):

C:\WINDOWS\system32\drivers\nwnrmhgthyco.sys
C:\WINDOWS\system32\rbxeiyjn.dll
C:\WINDOWS\system32\vwsjvrrr.dll
C:\WINDOWS\system32\dhiamwpr.dll


Return to OTMoveIt, right click on the "Paste List of Files/Folders to be moved" window and choose Paste.
Click the red Moveit! button.
Copy everything on the Results window to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it on your next reply with a new Hijack log.
Close OTMoveIt
If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes.

TIME to get the remnants

Download WinPFind3u.exe to your Desktop and double-click on it to extract the files. It will create a folder named WinPFind3u on your desktop.
  • Close ALL OTHER PROGRAMS.
  • Open the WinPFind3u folder and double-click on WinPFind3U.exe to start the program.
  • Under Additional Scans click the checkboxes in front of the following items to select them:
      Reg - Uninstall List
  • Now click the Run Scan button on the toolbar.
  • Let it run unhindered until it finishes.
  • When the scan is complete Notepad will open with the report file loaded in it.
  • Click the Format menu and make sure that Wordwrap is not checked. If it is then click on it to uncheck it.
Use the Add Reply button and Copy/Paste the information back here. I will review it when it comes in. If, after posting, the last line is not < End of Report > then the log is too big to fit into a single post and you will need to split it into multiple posts.

Logs required are OTMoveit and Winpfind
Go to the top of the page
 
+Quote Post
m8edy
post Jul 17 2007, 03:57 PM
Post #5


Member
**
Posts: 13
OS: Windows XP SP2



I am very grateful for your promt replies!!!!!

Logs Requested:

OTMoveit log:

C:\WINDOWS\system32\drivers\nwnrmhgthyco.sys moved successfully.
LoadLibrary failed for C:\WINDOWS\system32\rbxeiyjn.dll
C:\WINDOWS\system32\rbxeiyjn.dll NOT unregistered.
C:\WINDOWS\system32\rbxeiyjn.dll moved successfully.
LoadLibrary failed for C:\WINDOWS\system32\vwsjvrrr.dll
C:\WINDOWS\system32\vwsjvrrr.dll NOT unregistered.
C:\WINDOWS\system32\vwsjvrrr.dll moved successfully.
LoadLibrary failed for C:\WINDOWS\system32\dhiamwpr.dll
C:\WINDOWS\system32\dhiamwpr.dll NOT unregistered.
C:\WINDOWS\system32\dhiamwpr.dll moved successfully.

Created on 07/17/2007 22:43:07


Winpfind Log :

WinPFind3 logfile created on: 7/17/2007 10:47:25 PM
WinPFind3U by OldTimer - Version 1.0.39 Folder = C:\Documents and Settings\Owner\Desktop\WinPFind3u\
Microsoft Windows XP Service Pack 2 (Version = 5.1.2600)
Internet Explorer (Version = 6.0.2900.2180)

1.25 Gb Total Physical Memory | 0.65 Gb Available Physical Memory | 51.82% Memory free
2.98 Gb Paging File | 2.44 Gb Available in Paging File | 81.91% Paging File free
Paging file location(s): C:\pagefile.sys 1920 3840;

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 107.00 Gb Total Space | 28.38 Gb Free Space | 26.52% Space Free
Drive D: | 38.34 Gb Total Space | 38.28 Gb Free Space | 99.83% Space Free
Drive E: | 4.77 Gb Total Space | 0.55 Gb Free Space | 11.59% Space Free
Drive F: | 2.67 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free

Computer Name: YOUR-G2ASVV4L2M
Current User Name: Owner
Logged in as Administrator.
Current Boot Mode: Normal


[Processes - Non-Microsoft Only]
aawservice.exe -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\aawservice.exe -> Lavasoft AB [Ver = 7, 0, 1, 2 | Size = 561152 bytes | Modified Date = 6/5/2007 5:23:28 PM | Attr = ]
ad-watch2007.exe -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe -> Lavasoft AB [Ver = 7.0.1.18 | Size = 4177920 bytes | Modified Date = 7/2/2007 9:37:24 PM | Attr = ]
applemobiledeviceservice.exe -> %CommonProgramFiles%\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> Apple, Inc. [Ver = 1, 12, 0, 0 | Size = 106496 bytes | Modified Date = 6/28/2007 4:06:52 AM | Attr = ]
ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ]
ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ]
atiptaxx.exe -> %ProgramFiles%\ATI Technologies\ATI Control Panel\atiptaxx.exe -> ATI Technologies, Inc. [Ver = 6.14.10.5061 | Size = 335872 bytes | Modified Date = 11/1/2003 9:00:00 PM | Attr = ]
avgamsvr.exe -> %ProgramFiles%\Grisoft\AVG Free\avgamsvr.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.453 | Size = 353280 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
avgas.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 6/11/2007 10:25:42 AM | Attr = ]
avgcc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgcc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.460 | Size = 416256 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
avgemc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgemc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.474 | Size = 352768 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
avgupsvc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgupsvc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 49664 bytes | Modified Date = 7/2/2007 6:13:06 AM | Attr = ]
btwdins.exe -> %ProgramFiles%\Belkin\Bluetooth Software\bin\btwdins.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 163840 bytes | Modified Date = 10/1/2004 3:06:34 PM | Attr = ]
guard.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 1:31:10 PM | Attr = ]
hpqcmon.exe -> %ProgramFiles%\HP\Digital Imaging\Unload\HpqCmon.exe -> [Ver = 2.0.0.133 | Size = 90112 bytes | Modified Date = 10/7/2002 8:23:20 AM | Attr = ]
ipodservice.exe -> %ProgramFiles%\iPod\bin\iPodService.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 501048 bytes | Modified Date = 7/10/2007 9:18:14 AM | Attr = ]
ituneshelper.exe -> %ProgramFiles%\iTunes\iTunesHelper.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 270648 bytes | Modified Date = 7/10/2007 9:18:20 AM | Attr = ]
kbd.exe -> %SystemDrive%\hp\KBD\kbd.exe -> Hewlett-Packard Company [Ver = 1.0.2.0 | Size = 61440 bytes | Modified Date = 2/11/2003 9:02:48 PM | Attr = ]
mdnsresponder.exe -> %ProgramFiles%\Bonjour\mDNSResponder.exe -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 229376 bytes | Modified Date = 2/28/2006 12:42:38 PM | Attr = ]
nmbgmonitor.exe -> %CommonProgramFiles%\Ahead\Lib\NMBgMonitor.exe -> Nero AG [Ver = 1, 5, 3, 0 | Size = 139264 bytes | Modified Date = 11/16/2006 7:04:20 PM | Attr = ]
nmindexstoresvr.exe -> %CommonProgramFiles%\Ahead\Lib\NMIndexStoreSvr.exe -> Nero AG [Ver = 1, 5, 3, 0 | Size = 884736 bytes | Modified Date = 11/16/2006 6:58:32 PM | Attr = ]
opwarese4.exe -> %ProgramFiles%\ScanSoft\OmniPageSE4.0\OpwareSE4.exe -> ScanSoft, Inc. [Ver = 15.0 | Size = 69632 bytes | Modified Date = 3/21/2006 1:19:40 PM | Attr = ]
pchbutton.exe -> %ProgramFiles%\HP Pavilion PC Help\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe -> Motive Communications, Inc. [Ver = 4.12.0.pchealthclient.pchclient.20030613_172000 | Size = 155648 bytes | Modified Date = 1/1/2003 12:06:44 PM | Attr = ]
shwicon2k.exe -> %ProgramFiles%\Multimedia Card Reader\shwicon2k.exe -> Alcor Micro, Corp. [Ver = 1, 0, 0, 7 | Size = 139264 bytes | Modified Date = 8/14/2003 8:11:32 PM | Attr = ]
superantispyware.exe -> %ProgramFiles%\SUPERAntiSpyware\SUPERAntiSpyware.exe -> SUPERAntiSpyware.com [Ver = 3, 9, 0, 1008 | Size = 1318912 bytes | Modified Date = 7/14/2007 5:38:14 AM | Attr = ]
winpfind3u.exe -> %UserDesktop%\WinPFind3u\WinPFind3U.exe -> OldTimer Tools [Ver = 1.0.38.0 | Size = 322048 bytes | Modified Date = 6/23/2007 3:15:54 PM | Attr = ]
wlancfgg.exe -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe -> [Ver = 1, 0, 3, 5 | Size = 798720 bytes | Modified Date = 10/6/2004 7:28:30 PM | Attr = ]
wlservice.exe -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLService.exe -> [Ver = | Size = 49152 bytes | Modified Date = 3/29/2004 4:08:16 PM | Attr = ]

[Win32 Services - Non-Microsoft Only]
(aawservice) Ad-Aware 2007 Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\aawservice.exe -> Lavasoft AB [Ver = 7, 0, 1, 2 | Size = 561152 bytes | Modified Date = 6/5/2007 5:23:28 PM | Attr = ]
(Adobe LM Service) Adobe LM Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Adobe Systems Shared\Service\Adobelmsvc.exe -> Adobe Systems [Ver = 2.67.010 | Size = 72704 bytes | Modified Date = 7/3/2007 9:22:08 PM | Attr = ]
(Apple Mobile Device) Apple Mobile Device [Win32_Own | Auto | Running] -> %CommonProgramFiles%\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> Apple, Inc. [Ver = 1, 12, 0, 0 | Size = 106496 bytes | Modified Date = 6/28/2007 4:06:52 AM | Attr = ]
(Ati HotKey Poller) Ati HotKey Poller [Win32_Own | Auto | Running] -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ]
(AVG Anti-Spyware Guard) AVG Anti-Spyware Guard [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 1:31:10 PM | Attr = ]
(Avg7Alrt) AVG7 Alert Manager Server [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgamsvr.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.453 | Size = 353280 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
(Avg7UpdSvc) AVG7 Update Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgupsvc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 49664 bytes | Modified Date = 7/2/2007 6:13:06 AM | Attr = ]
(AVGEMS) AVG E-mail Scanner [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgemc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.474 | Size = 352768 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
(Belkin 54g Wireless USB Network Adapter Service) Belkin 54g Wireless USB Network Adapter [Win32_Own | Auto | Running] -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLService.exe -> [Ver = | Size = 49152 bytes | Modified Date = 3/29/2004 4:08:16 PM | Attr = ]
(Bonjour Service) ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## [Win32_Own | Auto | Running] -> %ProgramFiles%\Bonjour\mDNSResponder.exe -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 229376 bytes | Modified Date = 2/28/2006 12:42:38 PM | Attr = ]
(btwdins) Bluetooth Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Belkin\Bluetooth Software\bin\btwdins.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 163840 bytes | Modified Date = 10/1/2004 3:06:34 PM | Attr = ]
(dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> %System32%\dmadmin.exe -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 8/4/2004 12:56:50 AM | Attr = ]
(FLEXnet Licensing Service) FLEXnet Licensing Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -> Macrovision Europe Ltd. [Ver = 11.03.005 | Size = 654848 bytes | Modified Date = 7/3/2007 8:22:02 PM | Attr = ]
(IDriverT) InstallDriver Table Manager [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\InstallShield\Driver\11\Intel 32\IDriverT.exe -> Macrovision Corporation [Ver = 11.00.28844 | Size = 69632 bytes | Modified Date = 4/4/2005 12:41:10 AM | Attr = ]
(iPod Service) iPod Service [Win32_Own | On_Demand | Running] -> %ProgramFiles%\iPod\bin\iPodService.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 501048 bytes | Modified Date = 7/10/2007 9:18:14 AM | Attr = ]
(NBService) NBService [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Nero\Nero 7\Nero BackItUp\NBService.exe -> Nero AG [Ver = 2, 7, 2, 0 | Size = 774144 bytes | Modified Date = 11/10/2006 7:18:02 PM | Attr = ]
(NVSvc) NVIDIA Driver Helper Service [Win32_Own | Auto | Stopped] -> %System32%\nvsvc32.exe -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 77824 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ]

[Registry - Non-Microsoft Only]
< Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
!AVG Anti-Spyware -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 6/11/2007 10:25:42 AM | Attr = ]
Ad-Watch -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe -> Lavasoft AB [Ver = 7.0.1.18 | Size = 4177920 bytes | Modified Date = 7/2/2007 9:37:24 PM | Attr = ]
AlcxMonitor -> %SystemRoot%\ALCXMNTR.EXE -> Realtek Semiconductor Corp. [Ver = 1.5 | Size = 57344 bytes | Modified Date = 9/7/2004 1:47:52 PM | Attr = ]
ATIModeChange -> %System32%\Ati2mdxx.exe -> ATI Technologies, Inc. [Ver = 4.13.3 | Size = 28672 bytes | Modified Date = 9/5/2001 12:24:00 AM | Attr = ]
ATIPTA -> %ProgramFiles%\ATI Technologies\ATI Control Panel\atiptaxx.exe -> ATI Technologies, Inc. [Ver = 6.14.10.5061 | Size = 335872 bytes | Modified Date = 11/1/2003 9:00:00 PM | Attr = ]
AVG7_CC -> %ProgramFiles%\Grisoft\AVG Free\avgcc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.460 | Size = 416256 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
CamMonitor -> %ProgramFiles%\HP\Digital Imaging\Unload\HpqCmon.exe -> [Ver = 2.0.0.133 | Size = 90112 bytes | Modified Date = 10/7/2002 8:23:20 AM | Attr = ]
googletalk -> %ProgramFiles%\Google\Google Talk\googletalk.exe -> Google [Ver = 1,0,0,104 | Size = 3739648 bytes | Modified Date = 1/1/2007 10:22:02 PM | Attr = ]
HPHUPD05 -> %ProgramFiles%\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe -> File not found
iTunesHelper -> %ProgramFiles%\iTunes\iTunesHelper.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 270648 bytes | Modified Date = 7/10/2007 9:18:20 AM | Attr = ]
KBD -> %SystemDrive%\hp\KBD\kbd.exe -> Hewlett-Packard Company [Ver = 1.0.2.0 | Size = 61440 bytes | Modified Date = 2/11/2003 9:02:48 PM | Attr = ]
NeroFilterCheck -> %CommonProgramFiles%\Ahead\Lib\NeroCheck.exe -> Nero AG [Ver = 1, 0, 0, 5 | Size = 155648 bytes | Modified Date = 1/12/2006 3:40:44 PM | Attr = ]
nwiz -> %System32%\nwiz.exe -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 323584 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ]
OpwareSE4 -> %ProgramFiles%\ScanSoft\OmniPageSE4.0\OpwareSE4.exe -> ScanSoft, Inc. [Ver = 15.0 | Size = 69632 bytes | Modified Date = 3/21/2006 1:19:40 PM | Attr = ]
QuickTime Task -> %ProgramFiles%\QuickTime\QTTask.exe -> Apple Inc. [Ver = 7.2 | Size = 286720 bytes | Modified Date = 6/29/2007 6:24:52 AM | Attr = ]
SSBkgdUpdate -> %CommonProgramFiles%\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe -> Scansoft, Inc. [Ver = 1, 0, 0, 6 | Size = 155648 bytes | Modified Date = 9/30/2003 12:14:58 AM | Attr = R ]
Sunkist2k -> %ProgramFiles%\Multimedia Card Reader\shwicon2k.exe -> Alcor Micro, Corp. [Ver = 1, 0, 0, 7 | Size = 139264 bytes | Modified Date = 8/14/2003 8:11:32 PM | Attr = ]
UpdateManager -> %CommonProgramFiles%\Sonic\Update Manager\sgtray.exe -> Sonic Solutions [Ver = 1.01.32a | Size = 110592 bytes | Modified Date = 8/19/2003 9:01:00 AM | Attr = ]
VTTimer -> VTTimer.exe -> File not found
< OptionalComponents [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\ ->
IMAIL -> Installed = 1 ->
MAPI -> Installed = 1 ->
MSFS -> Installed = 1 ->
< Run [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
Acme.PCHButton -> %ProgramFiles%\HP Pavilion PC Help\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe -> Motive Communications, Inc. [Ver = 4.12.0.pchealthclient.pchclient.20030613_172000 | Size = 155648 bytes | Modified Date = 1/1/2003 12:06:44 PM | Attr = ]
Aim6 -> -> File not found
BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} -> %CommonProgramFiles%\Ahead\Lib\NMBgMonitor.exe -> Nero AG [Ver = 1, 5, 3, 0 | Size = 139264 bytes | Modified Date = 11/16/2006 7:04:20 PM | Attr = ]
NVIEW -> %System32%\nview.dll [rundll32.exe nview.dll,nViewLoadHook] -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 852038 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ]
RecordNow! -> -> File not found
SUPERAntiSpyware -> %ProgramFiles%\SUPERAntiSpyware\SUPERAntiSpyware.exe -> SUPERAntiSpyware.com [Ver = 3, 9, 0, 1008 | Size = 1318912 bytes | Modified Date = 7/14/2007 5:38:14 AM | Attr = ]
< Common Startup > -> C:\Documents and Settings\All Users\Start Menu\Programs\Startup ->
%AllUsersStartup%\BTTray.lnk -> %ProgramFiles%\Belkin\Bluetooth Software\BTTray.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 565309 bytes | Modified Date = 10/1/2004 3:12:18 PM | Attr = ]
%AllUsersStartup%\HP Digital Imaging Monitor.lnk -> %ProgramFiles%\HP\Digital Imaging\bin\hpqtra08.exe -> Hewlett-Packard Co. [Ver = 5.31.0.147 | Size = 233472 bytes | Modified Date = 7/7/2003 9:20:40 AM | Attr = ]
< User Startup > -> C:\Documents and Settings\Owner\Start Menu\Programs\Startup ->
%UserStartup%\Adobe Gamma.lnk -> %CommonProgramFiles%\Adobe\Calibration\Adobe Gamma Loader.exe -> Adobe Systems, Inc. [Ver = 1, 0, 0, 1 | Size = 113664 bytes | Modified Date = 3/16/2005 8:16:50 PM | Attr = ]
< ShellExecuteHooks [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks ->
{57B86673-276A-48B2-BAE7-C6DBB3020EB8} [HKLM] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll [AVG Anti-Spyware 7.5] -> GRISOFT s.r.o. [Ver = 7, 5, 1, 36 | Size = 79408 bytes | Modified Date = 5/30/2007 1:29:58 PM | Attr = ]
{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} [HKLM] -> %ProgramFiles%\SUPERAntiSpyware\SASSEH.DLL [] -> SuperAdBlocker.com [Ver = 1, 0, 0, 1008 | Size = 77824 bytes | Modified Date = 12/20/2006 12:55:48 PM | Attr = ]
{93994DE8-8239-4655-B1D1-5F4E91300429} [HKLM] -> %UserDesktop%\dvd thing\DVD Region-Free\DVDShell.dll [] -> Fengtao Software [Ver = 3, 0, 0, 2 | Size = 49152 bytes | Modified Date = 8/26/2003 11:58:06 AM | Attr = ]
< SecurityProviders [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders ->
< Winlogon settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon\Notify settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ ->
!SASWinLogon -> %ProgramFiles%\SUPERAntiSpyware\SASWINLO.DLL -> SUPERAntiSpyware.com [Ver = 1, 0, 0, 1046 | Size = 294912 bytes | Modified Date = 7/14/2007 5:38:16 AM | Attr = ]
AtiExtEvent -> %System32%\ati2evxx.dll -> [Ver = | Size = 86016 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ]
igfxcui -> %System32%\igfxsrvc.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 315392 bytes | Modified Date = 4/7/2003 8:06:48 AM | Attr = ]
< CurrentVersion Policy Settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{BDEADF00-C265-11D0-BCED-00A0C90AB50F} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} -> 1073741857 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{0DF44EAA-FF21-4412-828E-260A8728E7F1} -> 32 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\dontdisplaylastusername -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticecaption -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticetext -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\shutdownwithoutlogon -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\undockwithoutlogon -> 1 ->
< CurrentVersion Policy Settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ActiveDesktop\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Associations\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 36 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun -> ˙˙˙˙ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\ -> ->
< HOSTS File > (27 bytes) -> C:\WINDOWS\System32\drivers\etc\Hosts ->
127.0.0.1 localhost -> ->
< Internet Explorer Settings > -> ->
HKLM: Default_Page_URL -> http://gb10.hpwis.com/ ->
HKLM: Main\\Default_Search_URL -> http://srch-gb10.hpwis.com/ ->
HKLM: Local Page -> %SystemRoot%\system32\blank.htm ->
HKLM: Search Bar -> http://srch-gb10.hpwis.com/ ->
HKLM: Search Page -> http://srch-gb10.hpwis.com/ ->
HKLM: Start Page -> about:blank ->
HKLM: CustomizeSearch -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm ->
HKLM: SearchAssistant -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm ->
HKCU: Default_Search_URL -> http://srch-gb10.hpwis.com/ ->
HKCU: Local Page -> C:\WINDOWS\system32\blank.htm ->
HKCU: Search Page -> http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch ->
HKCU: Start Page -> http://www.le.ac.uk/sm/le/ ->
HKCU: ProxyEnable -> 0 ->
HKCU: ProxyOverride -> *.local ->
< Trusted Sites > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
msn.com [ - ] -> ->
< BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> %ProgramFiles%\Adobe\Reader\ActiveX\AcroIEHelper.dll [AcroIEHlprObj Class] -> Adobe Systems Incorporated [Ver = 6.0.0.2003051500 | Size = 50376 bytes | Modified Date = 5/15/2003 8:47:54 AM | Attr = ]
{53707962-6F74-2D53-2644-206D7942484F} [HKLM] -> %ProgramFiles%\Spybot - Search & Destroy\SDHelper.dll [] -> Safer Networking Limited [Ver = 1, 4, 0, 0 | Size = 853672 bytes | Modified Date = 5/31/2005 1:04:00 AM | Attr = ]
{68F9551E-0411-48E4-9AAF-4BC42A6A46BE} [HKLM] -> %ProgramFiles%\Canon\Easy-WebPrint\EWPBrowseLoader.dll [EWPBrowseObject Class] -> [Ver = 2, 6, 3, 0 | Size = 34304 bytes | Modified Date = 4/18/2006 7:04:14 PM | Attr = ]
< Internet Explorer Bars [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ ->
{32683183-48a0-441b-a342-7c2a440a9478} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
< Internet Explorer ToolBars [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
[HKLM] -> Reg Data - Key not found [] -> File not found
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} [HKLM] -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll [Easy-WebPrint] -> [Ver = 2, 6, 3, 0 | Size = 552960 bytes | Modified Date = 4/18/2006 7:05:46 PM | Attr = ]
{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ]
< Internet Explorer ToolBars [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ ->
ShellBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
ShellBrowser\\{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ]
WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
WebBrowser\\{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ]
< Internet Explorer Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKLM] -> %System32%\msjava.dll [MenuText: Sun Java Console] -> File not found
{2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} -> Reg Data - Value does not exist [ButtonText: Create Mobile Favorite] -> File not found
{92780B25-18CC-41C8-B9BE-3C9C571A8263} -> Reg Data - Value does not exist [ButtonText: Research] -> File not found
{CCA281CA-C863-46ef-9331-5C8D4460577F} -> %ProgramFiles%\Belkin\Bluetooth Software\btsendto_ie.htm [ButtonText: @btrez.dll,-4015] -> [Ver = | Size = 2681 bytes | Modified Date = 5/29/2003 1:53:08 PM | Attr = ]
< Internet Explorer Menu Extensions [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ ->
E&xport to Microsoft Excel -> -> File not found
Easy-WebPrint Add To Print List -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_AddToList.htm -> File not found
Easy-WebPrint High Speed Print -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_HSPrint.htm -> File not found
Easy-WebPrint Preview -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_Preview.htm -> File not found
Easy-WebPrint Print -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_Print.htm -> File not found
Send To &Bluetooth -> %ProgramFiles%\Belkin\Bluetooth Software\btsendto_ie_ctx.htm -> [Ver = | Size = 1320 bytes | Modified Date = 5/29/2003 1:53:12 PM | Attr = ]
< User Agent Post Platform [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform ->
SV1 -> ->
< DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{0A795B8E-126A-46EF-8631-73571C2E1A85} -> 192.168.2.1 (Belkin 54Mbps Wireless USB Network Adapter) ->
{284DE354-2384-46F5-BA31-A6C4B2A3F246} -> () ->
{2C7A6790-FF94-4A1F-8B01-378064FC8CE9} -> () ->
{32518B32-ED7B-495F-A23C-FAB8BC689BBA} -> (1394 Net Adapter) ->
{8D51A53E-0849-4DD6-8F59-DAC890E5660B} -> (Belkin 54Mbps Wireless USB Network Adapter) ->
{D782F041-B428-4C9A-9EF8-10B461835A01} -> (SiS 900-Based PCI Fast Ethernet Adapter) ->
{E8335EC5-85BF-446F-B911-976ED580074A} -> () ->
< Winsock2 Catalogs [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\ ->
NameSpace_Catalog5\Catalog_Entries0000000005 [mdnsNSP] -> %ProgramFiles%\Bonjour\mdnsNSP.dll -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 94208 bytes | Modified Date = 2/28/2006 12:42:30 PM | Attr = ]
< Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
ipp -> Reg Data - Key not found -> File not found
msdaipp -> Reg Data - Key not found -> File not found
widimg -> %System32%\btxppanel.dll -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 110592 bytes | Modified Date = 10/1/2004 2:54:44 PM | Attr = ]
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{8AD9C840-044E-11D1-B3E9-00805F499D93} -> Java Plug-in 1.4.2 - CodeBase = http://java.sun.com/products/plugin/autodl...indows-i586.cab ->
{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} -> ActiveScan Installer Class - CodeBase = http://acs.pandasoftware.com/activescan/as5free/asinst.cab ->
{C3F79A2B-B9B4-4A66-B012-3EE46475B072} -> MessengerStatsClient Class - CodeBase = http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab ->
{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA} -> Java Plug-in 1.4.2 - CodeBase = http://java.sun.com/products/plugin/autodl...indows-i586.cab ->


[Registry - Additional Scans - Non-Microsoft Only]
< Uninstall List > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
{01CEC7E5-70FD-4D06-8FAD-BF21DF0CC6DC} -> Adobe Audition 2.0 ->
{045A0044-9149-45C6-A806-F2BF9CFCE762} -> Microsoft Encarta Encyclopedia Standard - WE 2004 ->
{04AF207D-9A77-465A-8B76-991F6AB66245} -> Adobe Help Viewer CS3 ->
{0613467F-A45E-4CB1-9ECE-1F3DD79FB927} -> Easy Internet Sign-up ->
{08B32819-6EEF-4057-AEDA-5AB681A36A23} -> Adobe Bridge Start Meeting ->
{092eeeee-9fdd-4895-a568-0818c96beb6c} -> AiO_Scan ->
{09DA4F91-2A09-4232-AB8C-6BC740096DE3} -> Sonic Update Manager ->
{0BEDBD4E-2D34-47B5-9973-57E62B29307C} -> ATI Control Panel ->
{0E6AB9FC-76C2-431B-9C06-6C1CFFFEA8EB} -> Ad-Aware 2007 ->
{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP600 -> Canon MP600 ->
{145CACAF-9B34-41FC-BE49-7D510A253E78} -> Multimedia Card Reader ->
{184CE391-7E0E-4C63-9935-D7A10EDFD3C6} -> Adobe WinSoft Linguistics Plugin ->
{18D10072035C4515918F7E37EAFAACFC} -> AutoUpdate ->
{1BCEA516-B4C5-4B2D-BFA0-AB7910BAD862} -> Adobe ExtendScript Toolkit 2 ->
{1D643CD2-4DD6-11D7-A4E0-000874180BB3} -> Microsoft Money ->
{1F7CCFA3-D926-4882-B2A5-A0217ED25597} -> PC-Doctor for Windows ->
{2070F79D-46BC-4EEA-8F02-9B4DCABAE7CB} -> iPod for Windows 2006-03-23 ->
{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk -> Google Talk (remove only) ->
{235BBFC6-D863-4066-A01A-3BD504C31033} -> Nero 7 Ultra Edition ->
{29D851C2-048C-4B5E-8D1F-25D473342BB5} -> ScanSoft OmniPage SE 4.0 ->
{29E5EA97-5F74-4A57-B8B2-D4F169117183} -> Adobe Stock Photos CS3 ->
{2A267BC6-F77F-4DD4-825F-7AEB1F68B4B1} -> HpSdpAppCoreApp ->
{2E132061-C78A-48D4-A899-1D13B9D189FA} -> Memories Disc Creator 2.0 ->
{2F1FD032-67D1-4569-923F-47EAF132BF0F} -> DocProc ->
{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227} -> WebFldrs XP ->
{37477865-A3F1-4772-AD43-AAFC6BCFF99F} -> MSXML 4.0 SP2 (KB927978) ->
{3CF78481-FB7B-4B51-99A2-D5E0CD0B3AAF} -> HPSystemDiagnostics ->
{3D7E3EC9-46CF-4359-9289-39CE01DFB82F} -> Adobe Photoshop CS3 ->
{45B6180B-DCAB-4093-8EE8-6164457517F0} -> Photosmart 140,240,7200,7600,7700,7900 Series ->
{47FF921C-E834-47A6-8CE4-F0A99CDE347F} -> ViaMichelin Navigation X-930 ->
{4FB6F304-A91D-4919-98E5-D96E074EA9E5} -> SkinsHP1 ->
{51846830-E7B2-4218-8968-B77F0FF475B8} -> Adobe Color EU Extra Settings ->
{54793AA1-5001-42F4-ABB6-C364617C6078} -> Adobe Linguistics CS3 ->
{54e854d5-d5d4-452d-9c75-b39f5625b5fb} -> Readme ->
{571700F0-DB9D-4B3A-B03D-35A14BB5939F} -> Windows Live Messenger ->
{5ADF6293-D60F-4425-AFA7-CEB820DB872B} -> QuickProjects ->
{5D7F0A0E-369E-46C0-9F99-FAB21A064781} -> HP Photo and Imaging 2.0 - Photosmart Cameras ->
{64C1FA9A-FA94-4B6E-B3E4-8573738E4AD1} -> Adobe Setup ->
{6ABE0BEE-D572-4FE8-B434-9E72A289431B} -> Adobe Fonts All ->
{6D4AC5A4-4CF9-4F90-8111-B9B53CE257BF} -> Adobe Color Common Settings ->
{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61} -> Adobe Asset Services CS3 ->
{7148F0A8-6813-11D6-A77B-00B0D0142000} -> Java 2 Runtime Environment, SE v1.4.2 ->
{745A92AF-53B4-41A7-91C3-9B026B1D5897} -> InstantShare ->
{74EC78BC-B379-4E29-9006-8F161DCAABA6} -> Apple Software Update ->
{791B20D4-AE59-4DE9-B45F-BA01F3D0A493} -> ArcSoft ShowBiz 2 ->
{7B63B2922B174135AFC0E1377DD81EC2} -> DivX ->
{7BBD57D6-09B1-4CC3-9664-A0D53EE25247} -> PSShortcutsP ->
{802771A9-A856-4A41-ACF7-1450E523C923} -> Adobe XMP Panels CS3 ->
{829698DE-9EAC-475E-9A05-B7BA807CA1EF} -> Director ->
{85309D89-7BE9-4094-BB17-24999C6118FC} -> ArcSoft PhotoStudio 5.5 ->
{8704D51E-25B7-4F23-81E7-AA4F54790220} -> Microsoft AutoRoute v11.0 ->
{8777AC6D-89F9-4793-8266-DE406F343E89} -> QFolder ->
{8A708DD8-A5E6-11D4-A706-000629E95E20} -> Intel® Extreme Graphics Driver ->
{8ADFC4160D694100B5B8A22DE9DCABD9} -> DivX Player ->
{8C64E149-54BA-11D6-91B1-00500462BE80} -> Microsoft Money System Pack ->
{8D2BA474-F406-4710-9AE4-D4F22D21F0DD} -> Adobe Device Central CS3 ->
{8E6808E2-613D-4FCD-81A2-6C8FA8E03312} -> Adobe Type Support ->
{8EDBA74D-0686-4C99-BFDD-F894678E5102} -> Adobe Common File Installer ->
{8FFC924C-ED06-44CB-8867-3CA778ECE903} -> Adobe Help Center 2.0 ->
{90110409-6000-11D3-8CFE-0150048383C9} -> Microsoft Office Professional Edition 2003 ->
{90176341-0A8B-4CCC-A78D-F862228A6B95} -> Adobe Anchor Service CS3 ->
{90535871-81B9-4D99-8A13-A7EE97F2D7FE} -> Belkin Bluetooth Software ->
{9357AE3A-B2ED-4138-BB9B-0564352C3F0A} -> iTunes ->
{939227BD-19D8-4684-8A04-31AC9F6A564C} -> Scan ->
{9541FED0-327F-4DF0-8B96-EF57EF622F19} -> RecordNow! ->
{95655ED4-7CA5-46DF-907F-7144877A32E5} -> Adobe Color NA Recommended Settings ->
{95A890AA-B3B1-44B6-9C18-A8F7AB3EE7FC} -> QuickTime ->
{98E8A2EF-4EAE-43B8-A172-74842B764777} -> InterVideo WinDVD Player ->
{9C9824D9-9000-4373-A6A5-D0E5D4831394} -> Adobe Bridge CS3 ->
{9F4EEA0C-7174-4BD3-89AF-7AB2F9F6AEDD} -> hpmdtab ->
{A2B242BD-FF8D-4840-9DAA-9170EABEC59C} -> Adobe CMaps ->
{A2D81E70-2A98-4A08-A628-94388B063C5E} -> Adobe Color - Photoshop Specific ->
{A363B66C-1547-47bf-90F0-3834E70A841A} -> CreativeProjects ->
{A43B2A2F-1DB5-47F9-A608-F11A4835D7CB} -> Apple Mobile Device Support ->
{A7894110-9C15-43EF-89E9-060363290188} -> Samsung PC Studio ->
{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5} -> PDF Settings ->
{AC76BA86-7AD7-1033-7B44-000000000001} -> Adobe Reader 6.0 ->
{AE3D38A6-13B1-40B3-9423-D1FA9982FB6A} -> Adobe Bridge 1.0 ->
{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C} -> Adobe Camera Raw 4.0 ->
{B9966F27-9678-4620-9579-925E3084647E} -> Microsoft Works ->
{B9B35331-B7E4-4E5C-BF4C-7BC87856124D} -> Adobe Default Language CS3 ->
{bb6cac2a-1fa0-471a-bc3c-ade699c39f3c} -> Fax ->
{c330461f-c4a9-4fc7-af5d-c158e0b56aa7} -> AiOSoftware ->
{C38BC5B7-62D3-4880-82DD-A4803FD81921} -> PhotoGallery ->
{C4A4722E-79F9-417C-BD72-8D359A090C97} -> Samsung PC Studio ->
{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} -> Microsoft .NET Framework 1.1 ->
{CC0A24CB-87C9-4F1C-A1F2-F87D8D4DDCAF} -> HP Software Update ->
{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA} -> SUPERAntiSpyware Free Edition ->
{CE4F8FFB-4063-4247-9F14-ECE61AFEFA25} -> TrayApp ->
{CFD1B282-555D-494d-8231-4175C2AF08C2} -> PrintScreen ->
{D0DFF92A-492E-4C40-B862-A74A173C25C5} -> Adobe Version Cue CS3 Client ->
{D1D8C9C4-89BE-4f37-9EC4-B80E3C239C41} -> Copy ->
{D2559B88-CC9D-4B48-81BB-F492BAA9C48C} -> Adobe PDF Library Files ->
{D2856AA2-A059-4933-8B2E-E088A10567A7} -> ViaMichelin Navigation X-930 ->
{D504303A-717D-414C-BA9F-FE01093E2EF8} -> Adobe Setup ->
{D545BB81-DEB0-49f7-BE26-197BC31AAF57} -> SkinsHP2 ->
{DBA8B9E1-C6FF-4624-9598-73D3B41A0903} -> Microsoft Picture It! Photo Standard 9 ->
{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029} -> Adobe Color JA Extra Settings ->
{E4ABB302-9D82-4D18-83D5-AD1DFE786AA8} -> Unload ->
{E69AE897-9E0B-485C-8552-7841F48D42D8} -> Adobe Update Manager CS3 ->
{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A} -> Samsung PC Studio 3 USB Driver Installer ->
{ec7d7a6a-31cb-4810-826f-74171bef44f1} -> AIOMinimal ->
{F247869D-3643-4A9F-821B-3534145928E3} -> HPIZ311 ->
{F38FA38A-7E5A-4209-88ED-4DE21CD20EEF} -> HP PSC & OfficeJet 3.0 ->
{F419D20A-7719-4639-8E30-C073A040D878} -> HP Deskjet Preloaded Printer Drivers ->
{FBBF532A-47AC-457d-AC06-0D3163D8911E} -> WebReg ->
{FF11004C-F42A-4A31-9BCF-7F5C8FDBE53C} -> Adobe Setup ->
{FF20F6D2-28E0-43FF-8A49-E69D07B12224} -> Belkin 54g USB Network Adapter ->
Adobe Audition 2.0 -> Adobe Audition 2.0 ->
Adobe Flash Player ActiveX -> Adobe Flash Player ActiveX ->
Adobe_5bc0f8414ec36c555a3e7e5ec2e225e -> Adobe ExtendScript Toolkit 2 ->
Adobe_6c8e2cb4fd241c55406016127a6ab2e -> Adobe Color Common Settings ->
Adobe_719d6f144d0c086a0dfa7ff76bb9ac1 -> Adobe Photoshop CS3 ->
AIM_6 -> AIM 6 ->
ATI Display Driver -> ATI Display Driver ->
AVG7Uninstall -> AVG Free Edition ->
AVGAntiSpyware75 -> AVG Anti-Spyware 7.5 ->
Canon MP600 User Registration -> Canon MP600 User Registration ->
DVD Shrink_is1 -> DVD Shrink 3.2 ->
Easy-PhotoPrint -> Canon Utilities Easy-PhotoPrint ->
Easy-WebPrint -> Easy-WebPrint ->
ffdshow -> ffdshow (remove only) ->
HijackThis -> HijackThis 1.99.1 ->
Hijackthis_is1 -> Hijackthis 1.99.1 ->
HP Photo & Imaging -> HP Photo & Imaging 3.1 ->
InstallShield_{0613467F-A45E-4CB1-9ECE-1F3DD79FB927} -> Easy Internet Sign-up ->
InstallShield_{145CACAF-9B34-41FC-BE49-7D510A253E78} -> Multimedia Card Reader ->
InstallShield_{2070F79D-46BC-4EEA-8F02-9B4DCABAE7CB} -> iPod for Windows 2006-03-23 ->
KB873339 -> Windows XP Hotfix - KB873339 ->
KB885835 -> Windows XP Hotfix - KB885835 ->
KB885836 -> Windows XP Hotfix - KB885836 ->
KB886185 -> Windows XP Hotfix - KB886185 ->
KB887472 -> Windows XP Hotfix - KB887472 ->
KB888302 -> Windows XP Hotfix - KB888302 ->
KB890046 -> Security Update for Windows XP (KB890046) ->
KB890859 -> Windows XP Hotfix - KB890859 ->
KB891781 -> Windows XP Hotfix - KB891781 ->
KB892130 -> Windows Genuine Advantage Validation Tool (KB892130) ->
KB893756 -> Security Update for Windows XP (KB893756) ->
KB893803v2 -> Windows Installer 3.1 (KB893803) ->
KB894391 -> Update for Windows XP (KB894391) ->
KB896358 -> Security Update for Windows XP (KB896358) ->
KB896423 -> Security Update for Windows XP (KB896423) ->
KB896428 -> Security Update for Windows XP (KB896428) ->
KB898461 -> Update for Windows XP (KB898461) ->
KB899587 -> Security Update for Windows XP (KB899587) ->
KB899591 -> Security Update for Windows XP (KB899591) ->
KB900485 -> Update for Windows XP (KB900485) ->
KB900725 -> Security Update for Windows XP (KB900725) ->
KB901017 -> Security Update for Windows XP (KB901017) ->
KB901214 -> Security Update for Windows XP (KB901214) ->
KB902400 -> Security Update for Windows XP (KB902400) ->
KB904706 -> Security Update for Windows XP (KB904706) ->
KB905414 -> Security Update for Windows XP (KB905414) ->
KB905749 -> Security Update for Windows XP (KB905749) ->
KB908519 -> Security Update for Windows XP (KB908519) ->
KB908531 -> Update for Windows XP (KB908531) ->
KB910437 -> Update for Windows XP (KB910437) ->
KB911280 -> Update for Windows XP (KB911280) ->
KB911562 -> Security Update for Windows XP (KB911562) ->
KB911564 -> Security Update for Windows Media Player (KB911564) ->
KB911927 -> Security Update for Windows XP (KB911927) ->
KB913580 -> Security Update for Windows XP (KB913580) ->
KB914388 -> Security Update for Windows XP (KB914388) ->
KB914389 -> Security Update for Windows XP (KB914389) ->
KB916595 -> Update for Windows XP (KB916595) ->
KB917344 -> Security Update for Windows XP (KB917344) ->
KB917734_WMP9 -> Security Update for Windows Media Player 9 (KB917734) ->
KB917953 -> Security Update for Windows XP (KB917953) ->
KB918118 -> Security Update for Windows XP (KB918118) ->
KB918439 -> Security Update for Windows XP (KB918439) ->
KB919007 -> Security Update for Windows XP (KB919007) ->
KB920213 -> Security Update for Windows XP (KB920213) ->
KB920670 -> Security Update for Windows XP (KB920670) ->
KB920683 -> Security Update for Windows XP (KB920683) ->
KB920685 -> Security Update for Windows XP (KB920685) ->
KB920872 -> Update for Windows XP (KB920872) ->
KB922582 -> Update for Windows XP (KB922582) ->
KB922819 -> Security Update for Windows XP (KB922819) ->
KB923191 -> Security Update for Windows XP (KB923191) ->
KB923414 -> Security Update for Windows XP (KB923414) ->
KB923689 -> Security Update for Windows XP (KB923689) ->
KB923723 -> Security Update for Step By Step Interactive Training (KB923723) ->
KB923789 -> Security Update for Windows XP (KB923789) ->
KB923980 -> Security Update for Windows XP (KB923980) ->
KB924191 -> Security Update for Windows XP (KB924191) ->
KB924270 -> Security Update for Windows XP (KB924270) ->
KB924496 -> Security Update for Windows XP (KB924496) ->
KB924667 -> Security Update for Windows XP (KB924667) ->
KB925398_WMP64 -> Security Update for Windows Media Player 6.4 (KB925398) ->
KB925902 -> Security Update for Windows XP (KB925902) ->
KB926255 -> Security Update for Windows XP (KB926255) ->
KB926436 -> Security Update for Windows XP (KB926436) ->
KB927779 -> Security Update for Windows XP (KB927779) ->
KB927802 -> Security Update for Windows XP (KB927802) ->
KB927891 -> Update for Windows XP (KB927891) ->
KB928255 -> Security Update for Windows XP (KB928255) ->
KB928843 -> Security Update for Windows XP (KB928843) ->
KB929123 -> Security Update for Windows XP (KB929123) ->
KB929969 -> Security Update for Windows XP (KB929969) ->
KB930178 -> Security Update for Windows XP (KB930178) ->
KB930916 -> Update for Windows XP (KB930916) ->
KB931261 -> Security Update for Windows XP (KB931261) ->
KB931784 -> Security Update for Windows XP (KB931784) ->
KB931836 -> Update for Windows XP (KB931836) ->
KB932168 -> Security Update for Windows XP (KB932168) ->
KB933566 -> Security Update for Windows XP (KB933566) ->
KB935839 -> Security Update for Windows XP (KB935839) ->
KB935840 -> Security Update for Windows XP (KB935840) ->
KB936357 -> Update for Windows XP (KB936357) ->
KBD -> KBD ->
M928366 -> Microsoft .NET Framework 1.1 Hotfix (KB928366) ->
Magic ISO Maker v5.3 (build 0221) -> Magic ISO Maker v5.3 (build 0221) ->
MediaNavigation.CDLabelPrint -> CD-LabelPrint ->
Messenger Plus! Live -> Messenger Plus! Live ->
Microsoft .NET Framework 1.1 (1033) -> Microsoft .NET Framework 1.1 ->
Mozilla Firefox (2.0.0.4) -> Mozilla Firefox (2.0.0.4) ->
MP Navigator 3.0 -> Canon MP Navigator 3.0 ->
NVIDIA -> ->
NVIDIA GART Driver -> NVIDIA GART Driver ->
Panda ActiveScan -> Panda ActiveScan ->
PictureIt_v9 -> Microsoft Picture It! Photo Standard 9 ->
PS2 -> PS2 ->
Python 2.2 combined Win32 extensions -> Python 2.2 combined Win32 extensions ->
Python 2.2.1 -> Python 2.2.1 ->
RealPlayer 6.0 -> RealPlayer ->
SAMSUNG CDMA Modem -> SAMSUNG CDMA Modem Driver Set ->
SAMSUNG Mobile USB Modem -> SAMSUNG Mobile USB Modem Software ->
SAMSUNG Mobile USB Modem 1.0 -> SAMSUNG Mobile USB Modem 1.0 Software ->
Shockwave -> Shockwave ->
Spybot - Search & Destroy_is1 -> Spybot - Search & Destroy 1.4 ->
ViewpointMediaPlayer -> Viewpoint Media Player ->
Vodafone 804SS USB driver -> Vodafone 804SS USB driver Software ->
WGA -> Windows Genuine Advantage Validation Tool (KB892130) ->
WgaNotify -> Windows Genuine Advantage Notifications (KB905474) ->
Windows CE Services -> Microsoft ActiveSync 3.8 ->
Windows Media Format Runtime -> Windows Media Format Runtime ->
Windows XP Service Pack -> Windows XP Service Pack 2 ->
WinRAR archiver -> WinRAR archiver ->
WinZip -> WinZip ->
Works2004Setup -> Microsoft Works 2004 Setup Launcher ->
XviD_is1 -> XviD MPEG-4 Video Codec ->
Yahoo! Messenger -> Yahoo! Messenger ->


[Files/Folders - Created Within 30 days]
$VAULT$.AVG -> %SystemDrive%\$VAULT$.AVG -> [Folder | Created Date = 7/2/2007 7:05:17 PM | Attr = RH ]
BOOT.BAK -> %SystemDrive%\BOOT.BAK -> [Ver = | Size = 196 bytes | Created Date = 7/2/2007 6:31:09 AM | Attr = RHS]
cmdcons -> %SystemDrive%\cmdcons -> [Folder | Created Date = 7/2/2007 6:30:54 AM | Attr = RHS]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1341706240 bytes | Created Date = 1/1/1601 | Attr = HS]
I386 -> %SystemDrive%\I386 -> [Folder | Created Date = 7/2/2007 1:15:28 PM | Attr = ]
IPH.PH -> %SystemDrive%\IPH.PH -> [Ver = | Size = 1106 bytes | Created Date = 7/2/2007 11:29:07 PM | Attr = H ]
MSOCache -> %SystemDrive%\MSOCache -> [Folder | Created Date = 7/2/2007 6:43:42 AM | Attr = RH ]
My Downloads -> %SystemDrive%\My Downloads -> [Folder | Created Date = 7/2/2007 6:22:07 PM | Attr = ]
Program Files -> %ProgramFiles% -> [Folder | Created Date = 7/2/2007 1:07:19 PM | Attr = R ]
QooBox -> %SystemDrive%\QooBox -> [Folder | Created Date = 7/17/2007 8:54:52 PM | Attr = ]
RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Created Date = 7/2/2007 6:32:52 AM | Attr = HS]
sqmdata00.sqm -> %SystemDrive%\sqmdata00.sqm -> [Ver = | Size = 268 bytes | Created Date = 7/2/2007 7:45:22 AM | Attr = H ]
sqmdata01.sqm -> %SystemDrive%\sqmdata01.sqm -> [Ver = | Size = 268 bytes | Created Date = 7/2/2007 7:45:32 AM | Attr = H ]
sqmdata02.sqm -> %SystemDrive%\sqmdata02.sqm -> [Ver = | Size = 172 bytes | Created Date = 7/2/2007 7:45:35 AM | Attr = H ]
sqmnoopt00.sqm -> %SystemDrive%\sqmnoopt00.sqm -> [Ver = | Size = 244 bytes | Created Date = 7/2/2007 7:45:22 AM | Attr = H ]
sqmnoopt01.sqm -> %SystemDrive%\sqmnoopt01.sqm -> [Ver = | Size = 244 bytes | Created Date = 7/2/2007 7:45:32 AM | Attr = H ]
sqmnoopt02.sqm -> %SystemDrive%\sqmnoopt02.sqm -> [Ver = | Size = 172 bytes | Created Date = 7/2/2007 7:45:35 AM | Attr = H ]
System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Created Date = 12/6/1739 11:50:33 AM | Attr = HS]
_OTMoveIt -> %SystemDrive%\_OTMoveIt -> [Folder | Created Date = 7/17/2007 9:43:06 PM | Attr = ]
$hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Created Date = 7/2/2007 6:43:05 AM | Attr = H ]
$MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Created Date = 7/2/2007 8:15:06 AM | Attr = H ]
$NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Created Date = 7/2/2007 4:56:22 AM | Attr = H ]
$NtUninstallKB835409$ -> %SystemRoot%\$NtUninstallKB835409$ -> [Folder | Created Date = 7/2/2007 4:41:36 AM | Attr = H ]
$NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Created Date = 7/2/2007 7:47:57 PM | Attr = H ]
$NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Created Date = 7/2/2007 7:49:29 PM | Attr = H ]
$NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Created Date = 7/2/2007 7:48:17 PM | Attr = H ]
$NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Created Date = 7/2/2007 7:48:09 PM | Attr = H ]
$NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Created Date = 7/2/2007 7:49:14 PM | Attr = H ]
$NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Created Date = 7/2/2007 7:49:07 PM | Attr = H ]
$NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Created Date = 7/2/2007 8:11:03 PM | Attr = H ]
$NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Created Date = 7/2/2007 7:50:03 PM | Attr = H ]
$NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Created Date = 7/2/2007 7:49:22 PM | Attr = H ]
$NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Created Date = 7/2/2007 7:51:02 PM | Attr = H ]
$NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Created Date = 7/2/2007 7:51:52 PM | Attr = H ]
$NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Created Date = 7/2/2007 7:50:40 PM | Attr = H ]
$NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Created Date = 7/2/2007 7:51:42 PM | Attr = H ]
$NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Created Date = 7/2/2007 7:49:41 PM | Attr = H ]
$NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Created Date = 7/2/2007 8:14:36 AM | Attr = H ]
$NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Created Date = 7/2/2007 7:51:29 PM | Attr = H ]
$NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Created Date = 7/2/2007 7:51:18 PM | Attr = H ]
$NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Created Date = 7/2/2007 7:56:04 PM | Attr = H ]
$NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Created Date = 7/2/2007 7:54:19 PM | Attr = H ]
$NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Created Date = 7/2/2007 7:53:45 PM | Attr = H ]
$NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Created Date = 7/2/2007 7:49:48 PM | Attr = H ]
$NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Created Date = 7/2/2007 7:52:50 PM | Attr = H ]
$NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Created Date = 7/2/2007 7:54:47 PM | Attr = H ]
$NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Created Date = 7/2/2007 7:53:56 PM | Attr = H ]
$NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Created Date = 7/2/2007 7:54:07 PM | Attr = H ]
$NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Created Date = 7/2/2007 7:54:55 PM | Attr = H ]
$NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Created Date = 7/2/2007 7:56:13 PM | Attr = H ]
$NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Created Date = 7/2/2007 7:54:40 PM | Attr = H ]
$NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Created Date = 7/2/2007 7:57:45 PM | Attr = H ]
$NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Created Date = 7/2/2007 7:55:55 PM | Attr = H ]
$NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Created Date = 7/2/2007 7:55:38 PM | Attr = H ]
$NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Created Date = 7/2/2007 7:55:02 PM | Attr = H ]
$NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Created Date = 7/2/2007 7:57:21 PM | Attr = H ]
$NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Created Date = 7/2/2007 7:57:54 PM | Attr = H ]
$NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Created Date = 7/2/2007 7:56:52 PM | Attr = H ]
$NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Created Date = 7/2/2007 7:59:02 PM | Attr = H ]
$NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Created Date = 7/2/2007 7:57:01 PM | Attr = H ]
$NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Created Date = 7/2/2007 7:56:42 PM | Attr = H ]
$NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Created Date = 7/2/2007 7:57:35 PM | Attr = H ]
$NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Created Date = 7/2/2007 8:05:00 PM | Attr = H ]
$NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Created Date = 7/2/2007 7:57:11 PM | Attr = H ]
$NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Created Date = 7/2/2007 7:59:10 PM | Attr = H ]
$NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Created Date = 7/2/2007 8:11:11 PM | Attr = H ]
$NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Created Date = 7/2/2007 7:58:04 PM | Attr = H ]
$NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Created Date = 7/2/2007 7:58:13 PM | Attr = H ]
$NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Created Date = 7/2/2007 7:59:22 PM | Attr = H ]
$NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Created Date = 7/2/2007 7:59:34 PM | Attr = H ]
$NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Created Date = 7/2/2007 7:58:44 PM | Attr = H ]
$NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Created Date = 7/2/2007 8:00:39 PM | Attr = H ]
$NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Created Date = 7/2/2007 8:00:18 PM | Attr = H ]
$NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Created Date = 7/2/2007 7:59:49 PM | Attr = H ]
$NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Created Date = 7/2/2007 8:02:47 PM | Attr = H ]
$NtUninstallKB923723$ -> %SystemRoot%\$NtUninstallKB923723$ -> [Folder | Created Date = 7/2/2007 8:11:28 PM | Attr = H ]
$NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Created Date = 7/2/2007 8:01:34 PM | Attr = H ]
$NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Created Date = 7/2/2007 8:00:28 PM | Attr = H ]
$NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Created Date = 7/2/2007 8:00:52 PM | Attr = H ]
$NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Created Date = 7/2/2007 8:00:00 PM | Attr = H ]
$NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Created Date = 7/2/2007 8:04:15 PM | Attr = H ]
$NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Created Date = 7/2/2007 8:02:17 PM | Attr = H ]
$NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Created Date = 7/2/2007 8:08:01 PM | Attr = H ]
$NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Created Date = 7/2/2007 8:01:48 PM | Attr = H ]
$NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Created Date = 7/2/2007 8:05:15 PM | Attr = H ]
$NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Created Date = 7/2/2007 8:04:39 PM | Attr = H ]
$NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Created Date = 7/2/2007 8:03:55 PM | Attr = H ]
$NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Created Date = 7/2/2007 8:11:36 PM | Attr = H ]
$NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Created Date = 7/2/2007 8:03:14 PM | Attr = H ]
$NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Created Date = 7/2/2007 8:03:35 PM | Attr = H ]
$NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Created Date = 7/2/2007 8:12:42 PM | Attr = H ]
$NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Created Date = 7/2/2007 8:03:03 PM | Attr = H ]
$NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Created Date = 7/2/2007 8:10:08 PM | Attr = H ]
$NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Created Date = 7/2/2007 8:11:21 PM | Attr = H ]
$NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Created Date = 7/2/2007 8:10:20 PM | Attr = H ]
$NtUninstallK
Go to the top of the page
 
+Quote Post
Essexboy
post Jul 17 2007, 04:00 PM
Post #6


GeekU Moderator
Group Icon
Posts: 19,158
From: Darkest Cornwall
OS: Vista Ultimate & Windows 7



Hi m8edy could I have the rest of the log please
QUOTE
after posting, the last line is not < End of Report > then the log is too big to fit into a single post and you will need to split it into multiple posts.
Go to the top of the page
 
+Quote Post
m8edy
post Jul 17 2007, 04:05 PM
Post #7


Member
**
Posts: 13
OS: Windows XP SP2



...seems it didnt all fit in the one post...

here is the rest

i will start here from the winpfind 3 log...starting from the 'files/folders created within 30 days' part...so there maybe some overlap with the previous post:

[Files/Folders - Created Within 30 days]
$VAULT$.AVG -> %SystemDrive%\$VAULT$.AVG -> [Folder | Created Date = 7/2/2007 7:05:17 PM | Attr = RH ]
BOOT.BAK -> %SystemDrive%\BOOT.BAK -> [Ver = | Size = 196 bytes | Created Date = 7/2/2007 6:31:09 AM | Attr = RHS]
cmdcons -> %SystemDrive%\cmdcons -> [Folder | Created Date = 7/2/2007 6:30:54 AM | Attr = RHS]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1341706240 bytes | Created Date = 1/1/1601 | Attr = HS]
I386 -> %SystemDrive%\I386 -> [Folder | Created Date = 7/2/2007 1:15:28 PM | Attr = ]
IPH.PH -> %SystemDrive%\IPH.PH -> [Ver = | Size = 1106 bytes | Created Date = 7/2/2007 11:29:07 PM | Attr = H ]
MSOCache -> %SystemDrive%\MSOCache -> [Folder | Created Date = 7/2/2007 6:43:42 AM | Attr = RH ]
My Downloads -> %SystemDrive%\My Downloads -> [Folder | Created Date = 7/2/2007 6:22:07 PM | Attr = ]
Program Files -> %ProgramFiles% -> [Folder | Created Date = 7/2/2007 1:07:19 PM | Attr = R ]
QooBox -> %SystemDrive%\QooBox -> [Folder | Created Date = 7/17/2007 8:54:52 PM | Attr = ]
RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Created Date = 7/2/2007 6:32:52 AM | Attr = HS]
sqmdata00.sqm -> %SystemDrive%\sqmdata00.sqm -> [Ver = | Size = 268 bytes | Created Date = 7/2/2007 7:45:22 AM | Attr = H ]
sqmdata01.sqm -> %SystemDrive%\sqmdata01.sqm -> [Ver = | Size = 268 bytes | Created Date = 7/2/2007 7:45:32 AM | Attr = H ]
sqmdata02.sqm -> %SystemDrive%\sqmdata02.sqm -> [Ver = | Size = 172 bytes | Created Date = 7/2/2007 7:45:35 AM | Attr = H ]
sqmnoopt00.sqm -> %SystemDrive%\sqmnoopt00.sqm -> [Ver = | Size = 244 bytes | Created Date = 7/2/2007 7:45:22 AM | Attr = H ]
sqmnoopt01.sqm -> %SystemDrive%\sqmnoopt01.sqm -> [Ver = | Size = 244 bytes | Created Date = 7/2/2007 7:45:32 AM | Attr = H ]
sqmnoopt02.sqm -> %SystemDrive%\sqmnoopt02.sqm -> [Ver = | Size = 172 bytes | Created Date = 7/2/2007 7:45:35 AM | Attr = H ]
System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Created Date = 12/6/1739 11:50:33 AM | Attr = HS]
_OTMoveIt -> %SystemDrive%\_OTMoveIt -> [Folder | Created Date = 7/17/2007 9:43:06 PM | Attr = ]
$hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Created Date = 7/2/2007 6:43:05 AM | Attr = H ]
$MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Created Date = 7/2/2007 8:15:06 AM | Attr = H ]
$NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Created Date = 7/2/2007 4:56:22 AM | Attr = H ]
$NtUninstallKB835409$ -> %SystemRoot%\$NtUninstallKB835409$ -> [Folder | Created Date = 7/2/2007 4:41:36 AM | Attr = H ]
$NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Created Date = 7/2/2007 7:47:57 PM | Attr = H ]
$NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Created Date = 7/2/2007 7:49:29 PM | Attr = H ]
$NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Created Date = 7/2/2007 7:48:17 PM | Attr = H ]
$NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Created Date = 7/2/2007 7:48:09 PM | Attr = H ]
$NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Created Date = 7/2/2007 7:49:14 PM | Attr = H ]
$NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Created Date = 7/2/2007 7:49:07 PM | Attr = H ]
$NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Created Date = 7/2/2007 8:11:03 PM | Attr = H ]
$NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Created Date = 7/2/2007 7:50:03 PM | Attr = H ]
$NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Created Date = 7/2/2007 7:49:22 PM | Attr = H ]
$NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Created Date = 7/2/2007 7:51:02 PM | Attr = H ]
$NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Created Date = 7/2/2007 7:51:52 PM | Attr = H ]
$NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Created Date = 7/2/2007 7:50:40 PM | Attr = H ]
$NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Created Date = 7/2/2007 7:51:42 PM | Attr = H ]
$NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Created Date = 7/2/2007 7:49:41 PM | Attr = H ]
$NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Created Date = 7/2/2007 8:14:36 AM | Attr = H ]
$NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Created Date = 7/2/2007 7:51:29 PM | Attr = H ]
$NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Created Date = 7/2/2007 7:51:18 PM | Attr = H ]
$NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Created Date = 7/2/2007 7:56:04 PM | Attr = H ]
$NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Created Date = 7/2/2007 7:54:19 PM | Attr = H ]
$NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Created Date = 7/2/2007 7:53:45 PM | Attr = H ]
$NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Created Date = 7/2/2007 7:49:48 PM | Attr = H ]
$NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Created Date = 7/2/2007 7:52:50 PM | Attr = H ]
$NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Created Date = 7/2/2007 7:54:47 PM | Attr = H ]
$NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Created Date = 7/2/2007 7:53:56 PM | Attr = H ]
$NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Created Date = 7/2/2007 7:54:07 PM | Attr = H ]
$NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Created Date = 7/2/2007 7:54:55 PM | Attr = H ]
$NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Created Date = 7/2/2007 7:56:13 PM | Attr = H ]
$NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Created Date = 7/2/2007 7:54:40 PM | Attr = H ]
$NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Created Date = 7/2/2007 7:57:45 PM | Attr = H ]
$NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Created Date = 7/2/2007 7:55:55 PM | Attr = H ]
$NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Created Date = 7/2/2007 7:55:38 PM | Attr = H ]
$NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Created Date = 7/2/2007 7:55:02 PM | Attr = H ]
$NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Created Date = 7/2/2007 7:57:21 PM | Attr = H ]
$NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Created Date = 7/2/2007 7:57:54 PM | Attr = H ]
$NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Created Date = 7/2/2007 7:56:52 PM | Attr = H ]
$NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Created Date = 7/2/2007 7:59:02 PM | Attr = H ]
$NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Created Date = 7/2/2007 7:57:01 PM | Attr = H ]
$NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Created Date = 7/2/2007 7:56:42 PM | Attr = H ]
$NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Created Date = 7/2/2007 7:57:35 PM | Attr = H ]
$NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Created Date = 7/2/2007 8:05:00 PM | Attr = H ]
$NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Created Date = 7/2/2007 7:57:11 PM | Attr = H ]
$NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Created Date = 7/2/2007 7:59:10 PM | Attr = H ]
$NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Created Date = 7/2/2007 8:11:11 PM | Attr = H ]
$NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Created Date = 7/2/2007 7:58:04 PM | Attr = H ]
$NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Created Date = 7/2/2007 7:58:13 PM | Attr = H ]
$NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Created Date = 7/2/2007 7:59:22 PM | Attr = H ]
$NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Created Date = 7/2/2007 7:59:34 PM | Attr = H ]
$NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Created Date = 7/2/2007 7:58:44 PM | Attr = H ]
$NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Created Date = 7/2/2007 8:00:39 PM | Attr = H ]
$NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Created Date = 7/2/2007 8:00:18 PM | Attr = H ]
$NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Created Date = 7/2/2007 7:59:49 PM | Attr = H ]
$NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Created Date = 7/2/2007 8:02:47 PM | Attr = H ]
$NtUninstallKB923723$ -> %SystemRoot%\$NtUninstallKB923723$ -> [Folder | Created Date = 7/2/2007 8:11:28 PM | Attr = H ]
$NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Created Date = 7/2/2007 8:01:34 PM | Attr = H ]
$NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Created Date = 7/2/2007 8:00:28 PM | Attr = H ]
$NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Created Date = 7/2/2007 8:00:52 PM | Attr = H ]
$NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Created Date = 7/2/2007 8:00:00 PM | Attr = H ]
$NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Created Date = 7/2/2007 8:04:15 PM | Attr = H ]
$NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Created Date = 7/2/2007 8:02:17 PM | Attr = H ]
$NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Created Date = 7/2/2007 8:08:01 PM | Attr = H ]
$NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Created Date = 7/2/2007 8:01:48 PM | Attr = H ]
$NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Created Date = 7/2/2007 8:05:15 PM | Attr = H ]
$NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Created Date = 7/2/2007 8:04:39 PM | Attr = H ]
$NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Created Date = 7/2/2007 8:03:55 PM | Attr = H ]
$NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Created Date = 7/2/2007 8:11:36 PM | Attr = H ]
$NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Created Date = 7/2/2007 8:03:14 PM | Attr = H ]
$NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Created Date = 7/2/2007 8:03:35 PM | Attr = H ]
$NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Created Date = 7/2/2007 8:12:42 PM | Attr = H ]
$NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Created Date = 7/2/2007 8:03:03 PM | Attr = H ]
$NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Created Date = 7/2/2007 8:10:08 PM | Attr = H ]
$NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Created Date = 7/2/2007 8:11:21 PM | Attr = H ]
$NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Created Date = 7/2/2007 8:10:20 PM | Attr = H ]
$NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Created Date = 7/2/2007 8:09:35 PM | Attr = H ]
$NtUninstallKB931836$ -> %SystemRoot%\$NtUninstallKB931836$ -> [Folder | Created Date = 7/2/2007 8:05:45 PM | Attr = H ]
$NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Created Date = 7/2/2007 8:10:52 PM | Attr = H ]
$NtUninstallKB933566$ -> %SystemRoot%\$NtUninstallKB933566$ -> [Folder | Created Date = 7/2/2007 8:11:50 PM | Attr = H ]
$NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Created Date = 7/2/2007 8:14:26 PM | Attr = H ]
$NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Created Date = 7/2/2007 8:12:57 PM | Attr = H ]
$NtUninstallKB936357$ -> %SystemRoot%\$NtUninstallKB936357$ -> [Folder | Created Date = 7/13/2007 3:07:13 AM | Attr = H ]
$NtUninstallQ331958$ -> %SystemRoot%\$NtUninstallQ331958$ -> [Folder | Created Date = 7/2/2007 6:26:15 AM | Attr = H ]
$_hpcst$.hpc -> %SystemRoot%\$_hpcst$.hpc -> [Ver = | Size = 2464 bytes | Created Date = 7/4/2007 1:04:45 AM | Attr = ]
002224_.tmp -> %SystemRoot%2224_.tmp -> [Ver = | Size = 19528 bytes | Created Date = 7/2/2007 4:58:29 AM | Attr = ]
assembly -> %SystemRoot%\assembly -> [Folder | Created Date = 7/2/2007 1:07:03 PM | Attr = R S]
bthservsdp.dat -> %SystemRoot%\bthservsdp.dat -> [Ver = | Size = 12 bytes | Created Date = 7/2/2007 5:46:26 AM | Attr = ]
catchme.exe -> %SystemRoot%\catchme.exe -> [Ver = | Size = 104960 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
Downloaded Installations -> %SystemRoot%\Downloaded Installations -> [Folder | Created Date = 7/2/2007 6:25:15 AM | Attr = ]
DVDRegionFree.INI -> %SystemRoot%\DVDRegionFree.INI -> [Ver = | Size = 67 bytes | Created Date = 7/9/2007 4:27:44 AM | Attr = ]
EHome -> %SystemRoot%\EHome -> [Folder | Created Date = 7/2/2007 4:56:19 AM | Attr = ]
erdnt -> %SystemRoot%\erdnt -> [Folder | Created Date = 7/17/2007 8:56:10 PM | Attr = ]
MAXLINK.INI -> %SystemRoot%\MAXLINK.INI -> [Ver = | Size = 419 bytes | Created Date = 7/2/2007 6:09:05 AM | Attr = ]
Microsoft.MIF -> %SystemRoot%\Microsoft.MIF -> [Ver = | Size = 2510 bytes | Created Date = 7/3/2007 11:22:59 PM | Attr = ]
Minidump -> %SystemRoot%\Minidump -> [Folder | Created Date = 7/7/2007 4:09:52 PM | Attr = ]
mozver.dat -> %SystemRoot%\mozver.dat -> [Ver = | Size = 1156 bytes | Created Date = 7/3/2007 10:44:54 PM | Attr = ]
NeroDigital.ini -> %SystemRoot%\NeroDigital.ini -> [Ver = | Size = 116 bytes | Created Date = 7/2/2007 4:17:01 PM | Attr = ]
nircmd.exe -> %SystemRoot%\nircmd.exe -> NirSoft [Ver = 2.00 | Size = 51200 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
nsreg.dat -> %SystemRoot%\nsreg.dat -> [Ver = | Size = 335 bytes | Created Date = 7/2/2007 9:40:36 PM | Attr = ]
ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 376 bytes | Created Date = 7/2/2007 6:48:42 AM | Attr = ]
Offline Web Pages -> %SystemRoot%\Offline Web Pages -> [Folder | Created Date = 7/2/2007 1:06:49 PM | Attr = R ]
options -> %SystemRoot%\options -> [Folder | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
PCDLIB32.DLL -> %SystemRoot%\PCDLIB32.DLL -> Eastman Kodak [Ver = 3, 0, 0, 0 | Size = 212480 bytes | Created Date = 7/2/2007 6:26:34 AM | Attr = ]
peernet -> %SystemRoot%\peernet -> [Folder | Created Date = 7/2/2007 5:02:25 AM | Attr = ]
Prefetch -> %SystemRoot%\Prefetch -> [Folder | Created Date = 7/2/2007 5:07:45 AM | Attr = ]
provisioning -> %SystemRoot%\provisioning -> [Folder | Created Date = 7/2/2007 5:02:25 AM | Attr = ]
QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Created Date = 7/2/2007 7:12:53 AM | Attr = ]
QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Created Date = 7/2/2007 7:12:53 AM | Attr = H ]
ServicePackFiles -> %SystemRoot%\ServicePackFiles -> [Folder | Created Date = 7/2/2007 5:01:07 AM | Attr = ]
setup.pss -> %SystemRoot%\setup.pss -> [Folder | Created Date = 7/2/2007 6:30:52 AM | Attr = ]
SHELLNEW -> %SystemRoot%\SHELLNEW -> [Folder | Created Date = 7/2/2007 6:46:18 AM | Attr = ]
slrundll.exe -> %SystemRoot%\slrundll.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 32866 bytes | Created Date = 7/2/2007 5:02:26 AM | Attr = ]
SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Created Date = 7/2/2007 5:07:51 AM | Attr = ]
Sun -> %SystemRoot%\Sun -> [Folder | Created Date = 7/2/2007 7:40:48 PM | Attr = ]
SxsCaPendDel -> %SystemRoot%\SxsCaPendDel -> [Folder | Created Date = 7/3/2007 6:14:46 PM | Attr = ]
temp -> %SystemRoot%\temp -> [Folder | Created Date = 7/17/2007 9:13:46 PM | Attr = ]
Easy Internet Sign-up.job -> %SystemRoot%\tasks\Easy Internet Sign-up.job -> [Ver = | Size = 272 bytes | Created Date = 7/2/2007 6:32:09 AM | Attr = ]
ActiveScan -> %System32%\ActiveScan -> [Folder | Created Date = 7/13/2007 11:46:49 PM | Attr = ]
AegisE5.dll -> %System32%\AegisE5.dll -> Meetinghouse Data Communications [Ver = 1, 19, 0, 4 | Size = 1085440 bytes | Created Date = 7/2/2007 5:27:11 AM | Attr = ]
asuninst.exe -> %System32%\asuninst.exe -> Panda Software [Ver = 1, 0, 0, 2 | Size = 73728 bytes | Created Date = 7/13/2007 11:47:31 PM | Attr = ]
ati2cqag.dll -> %System32%\ati2cqag.dll -> ATI Technologies Inc. [Ver = 6.14.10.0233 | Size = 229376 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
ati2dvaa.dll -> %System32%\ati2dvaa.dll -> ATI Technologies Inc. [Ver = 6.13.10.5019 | Size = 377984 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ]
ati2dvag.dll -> %System32%\ati2dvag.dll -> ATI Technologies Inc. [Ver = 6.14.10.6396 | Size = 374784 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati2edxx.dll -> %System32%\ati2edxx.dll -> ATI Technologies, Inc. [Ver = 6, 14, 10, 2488 | Size = 34816 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati2evxx.dll -> %System32%\ati2evxx.dll -> [Ver = | Size = 86016 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
Ati2mdxx.exe -> %System32%\Ati2mdxx.exe -> ATI Technologies, Inc. [Ver = 4.13.3 | Size = 28672 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati3d1ag.dll -> %System32%\ati3d1ag.dll -> ATI Technologies Inc. [Ver = 6.14.10.3976 | Size = 853088 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati3d2ag.dll -> %System32%\ati3d2ag.dll -> ATI Technologies Inc. [Ver = 6.14.10.3976 | Size = 1039264 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati3duag.dll -> %System32%\ati3duag.dll -> ATI Technologies Inc. [Ver = 6.14.10.0200 | Size = 1164032 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ATIDDC.DLL -> %System32%\ATIDDC.DLL -> ATI Technologies Inc. [Ver = 6.14.10.5 | Size = 81920 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
atiiiexx.dll -> %System32%\atiiiexx.dll -> ATI Technologies Inc. [Ver = 6.14.10.3010 | Size = 229376 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
atioglxx.dll -> %System32%\atioglxx.dll -> ATI Technologies Inc. [Ver = 6.14.10.4010 | Size = 4595712 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
atipdlxx.dll -> %System32%\atipdlxx.dll -> ATI Technologies, Inc. [Ver = 6, 14, 10, 2485 | Size = 110592 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
atitvo32.dll -> %System32%\atitvo32.dll -> ATI Technologies Inc. [Ver = 6.14.10.4100 | Size = 17408 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ativcoxx.dll -> %System32%\ativcoxx.dll -> ATI Technologies, Inc. [Ver = 6.13.10.0005 | Size = 24064 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ativdaxx.ax -> %System32%\ativdaxx.ax -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 9728 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ]
ativmvxx.ax -> %System32%\ativmvxx.ax -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 23040 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ]
ativtmxx.dll -> %System32%\ativtmxx.dll -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 32768 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ]
ativvaxx.dll -> %System32%\ativvaxx.dll -> ATI Technologies Inc. [Ver = 6.14.01.0009 | Size = 516768 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ]
B11gUSB.dll -> %System32%\B11gUSB.dll -> [Ver = | Size = 40960 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
bmpdovog.ini -> %System32%\bmpdovog.ini -> [Ver = | Size = 1054182 bytes | Created Date = 7/8/2007 2:47:43 AM | Attr = HS]
CanonIJ Uninstaller Information -> %System32%\CanonIJ Uninstaller Information -> [Folder | Created Date = 7/2/2007 6:05:45 AM | Attr = H ]
CNCC600.DLL -> %System32%\CNCC600.DLL -> CANON INC. [Ver = 0, 2, 5, 0 | Size = 1134592 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ]
CNCI600.DLL -> %System32%\CNCI600.DLL -> CANON INC. [Ver = 2, 0, 0, 0 | Size = 57344 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ]
CNCL600.DLL -> %System32%\CNCL600.DLL -> Canon Inc. [Ver = 1.00 | Size = 135168 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ]
cnco600.dll -> %System32%\cnco600.dll -> Canon Inc. [Ver = 1.0 | Size = 106496 bytes | Created Date = 7/2/2007 6:05:39 AM | Attr = ]
CNMLM87.DLL -> %System32%\CNMLM87.DLL -> CANON INC. [Ver = 1.95.2.70 | Size = 161792 bytes | Created Date = 7/2/2007 6:05:48 AM | Attr = ]
cpmjssat.ini -> %System32%\cpmjssat.ini -> [Ver = | Size = 1105948 bytes | Created Date = 7/11/2007 8:19:11 PM | Attr = HS]
cpuinf32.dll -> %System32%\cpuinf32.dll -> Intel Corporation [Ver = 1.0.0.4 | Size = 49152 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
d3d9caps.dat -> %System32%\d3d9caps.dat -> [Ver = | Size = 3688 bytes | Created Date = 7/2/2007 7:16:01 AM | Attr = ]
dllcache -> %System32%\dllcache -> [Folder | Created Date = 7/2/2007 1:05:10 PM | Attr = RHS]
DRVSTORE -> %System32%\DRVSTORE -> [Folder | Created Date = 7/2/2007 7:12:07 AM | Attr = ]
gqovtsmk.ini -> %System32%\gqovtsmk.ini -> [Ver = | Size = 1054310 bytes | Created Date = 7/8/2007 5:41:40 PM | Attr = HS]
GTNDIS3.VXD -> %System32%\GTNDIS3.VXD -> [Ver = | Size = 31930 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
GTNDIS5.sys -> %System32%\GTNDIS5.sys -> Printing Communications Assoc., Inc. (PCAUSA) [Ver = 5.03.16.54 | Size = 15872 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
GTW32N50.dll -> %System32%\GTW32N50.dll -> [Ver = 1.0.0.1 | Size = 94208 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Created Date = 7/13/2007 11:46:53 PM | Attr = ]
hsfcisp2.dll -> %System32%\hsfcisp2.dll -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 32285 bytes | Created Date = 7/2/2007 5:02:30 AM | Attr = ]
ieencode.dll -> %System32%\ieencode.dll -> [Ver = | Size = 81920 bytes | Created Date = 7/2/2007 5:02:30 AM | Attr = ]
lbvbeqlb.ini -> %System32%\lbvbeqlb.ini -> [Ver = | Size = 1045467 bytes | Created Date = 7/5/2007 10:05:52 PM | Attr = HS]
lccsfghm.ini -> %System32%\lccsfghm.ini -> [Ver = | Size = 2496711 bytes | Created Date = 7/11/2007 9:44:34 PM | Attr = HS]
lmpgad.ax -> %System32%\lmpgad.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 47104 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
lmpgspl.ax -> %System32%\lmpgspl.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 106496 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
lmpgvd.ax -> %System32%\lmpgvd.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 94208 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
malslib.dll -> %System32%\malslib.dll -> AvantGo, Inc. [Ver = 3.3 Build 864 | Size = 114688 bytes | Created Date = 7/4/2007 1:02:54 AM | Attr = ]
mbllnk.cpl -> %System32%\mbllnk.cpl -> AvantGo, Inc. [Ver = 3.3 Build 864 | Size = 69632 bytes | Created Date = 7/4/2007 1:02:55 AM | Attr = ]
mobileV.acm -> %System32%\mobileV.acm -> [Ver = | Size = 57422 bytes | Created Date = 7/4/2007 1:02:55 AM | Attr = ]
mplaa6.dll -> %System32%\mplaa6.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 81920 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplam6.dll -> %System32%\mplam6.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 69632 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplapx.dll -> %System32%\mplapx.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 69632 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplaw7.dll -> %System32%\mplaw7.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 81920 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplva6.dll -> %System32%\mplva6.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1675264 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplvm6.dll -> %System32%\mplvm6.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1581056 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplvpx.dll -> %System32%\mplvpx.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1150976 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplvw7.dll -> %System32%\mplvw7.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1630208 bytes | Created Date = 7/2/2007 6:27:16 AM | Attr = ]
mtxparhd.dll -> %System32%\mtxparhd.dll -> Matrox Graphics Inc. [Ver = 6.13.01.1296 | Size = 1737856 bytes | Created Date = 7/2/2007 5:02:29 AM | Attr = ]
oakbigxo.ini -> %System32%\oakbigxo.ini -> [Ver = | Size = 1052262 bytes | Created Date = 7/4/2007 8:59:50 PM | Attr = HS]
pavas.ico -> %System32%\pavas.ico -> [Ver = | Size = 30590 bytes | Created Date = 7/13/2007 11:46:52 PM | Attr = ]
pncrt.dll -> %System32%\pncrt.dll -> Real Networks, Inc [Ver = 6.0.0.0 | Size = 278528 bytes | Created Date = 7/2/2007 6:25:51 PM | Attr = ]
pndx5016.dll -> %System32%\pndx5016.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 6656 bytes | Created Date = 7/2/2007 6:25:52 PM | Attr = ]
pndx5032.dll -> %System32%\pndx5032.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 5632 bytes | Created Date = 7/2/2007 6:25:52 PM | Attr = ]
PreInstall -> %System32%\PreInstall -> [Folder | Created Date = 7/2/2007 8:14:37 AM | Attr = ]
QuickTime.qts -> %System32%\QuickTime.qts -> Apple Inc. [Ver = 7.2 | Size = 49152 bytes | Created Date = 6/29/2007 5:24:58 AM | Attr = ]
QuickTimeVR.qtx -> %System32%\QuickTimeVR.qtx -> Apple Inc. [Ver = 7.2 | Size = 65536 bytes | Created Date = 6/29/2007 5:24:58 AM | Attr = ]
rmoc3260.dll -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Created Date = 7/2/2007 6:25:59 PM | Attr = ]
rmyyagnu.ini -> %System32%\rmyyagnu.ini -> [Ver = | Size = 945 bytes | Created Date = 7/3/2007 7:10:19 PM | Attr = HS]
rpepjhcn.ini -> %System32%\rpepjhcn.ini -> [Ver = | Size = 1045586 bytes | Created Date = 7/7/2007 2:33:44 AM | Attr = HS]
s3gnb.dll -> %System32%\s3gnb.dll -> S3 Graphics, Inc. [Ver = 6.14.10.0012-13.94.12 | Size = 397056 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
Samsung PC Studio Codecs -> %System32%\Samsung PC Studio Codecs -> [Folder | Created Date = 7/2/2007 7:06:59 AM | Attr = ]
Samsung_USB_Drivers -> %System32%\Samsung_USB_Drivers -> [Folder | Created Date = 7/2/2007 7:07:06 AM | Attr = ]
sbnxlpfi.ini -> %System32%\sbnxlpfi.ini -> [Ver = | Size = 2198607 bytes | Created Date = 7/11/2007 8:41:34 PM | Attr = HS]
slcoinst.dll -> %System32%\slcoinst.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 73832 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
slextspk.dll -> %System32%\slextspk.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 286792 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
slgen.dll -> %System32%\slgen.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 188508 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
slrundll.exe -> %System32%\slrundll.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 32866 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
slserv.exe -> %System32%\slserv.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 73796 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
SoftwareDistribution -> %System32%\SoftwareDistribution -> [Folder | Created Date = 7/2/2007 5:54:03 AM | Attr = ]
swreg.exe -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
swsc.exe -> %System32%\swsc.exe -> SteelWerX [Ver = 2.0.0.0 | Size = 370688 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
swxcacls.exe -> %System32%\swxcacls.exe -> SteelWerX [Ver = 1.0.1.1 | Size = 212480 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Created Date = 7/2/2007 7:07:02 AM | Attr = ]
UnInstall_Driver.ico -> %System32%\UnInstall_Driver.ico -> [Ver = | Size = 22486 bytes | Created Date = 7/2/2007 7:07:52 AM | Attr = R ]
uxefnpkm.ini -> %System32%\uxefnpkm.ini -> [Ver = | Size = 645 bytes | Created Date = 7/2/2007 7:16:07 PM | Attr = HS]
vfind.exe -> %System32%\vfind.exe -> [Ver = | Size = 49152 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
yppsuolm.ini -> %System32%\yppsuolm.ini -> [Ver = | Size = 1105838 bytes | Created Date = 7/9/2007 8:49:40 PM | Attr = HS]
yxjbaxur.ini -> %System32%\yxjbaxur.ini -> [Ver = | Size = 1054362 bytes | Created Date = 7/9/2007 7:43:40 PM | Attr = HS]
ZPORT4AS.dll -> %System32%\ZPORT4AS.dll -> [Ver = | Size = 11776 bytes | Created Date = 7/13/2007 11:47:31 PM | Attr = ]
adv01nt5.dll -> %System32%\drivers\adv01nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 4255 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv02nt5.dll -> %System32%\drivers\adv02nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3967 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv05nt5.dll -> %System32%\drivers\adv05nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3615 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv07nt5.dll -> %System32%\drivers\adv07nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3647 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv08nt5.dll -> %System32%\drivers\adv08nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3135 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv09nt5.dll -> %System32%\drivers\adv09nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3711 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv11nt5.dll -> %System32%\drivers\adv11nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3775 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
AegisP.sys -> %System32%\drivers\AegisP.sys -> Meetinghouse Data Communications [Ver = 3.0.0.6 | Size = 15939 bytes | Created Date = 7/2/2007 5:27:27 AM | Attr = ]
amdagp.sys -> %System32%\drivers\amdagp.sys -> Advanced Micro Devices, Inc. [Ver = 5.00 (xpsp_sp2_rtm.040803-2158) | Size = 43008 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1btxx.sys -> %System32%\drivers\ati1btxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 56623 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1mdxx.sys -> %System32%\drivers\ati1mdxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 11615 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1pdxx.sys -> %System32%\drivers\ati1pdxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 12047 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1raxx.sys -> %System32%\drivers\ati1raxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 30671 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1rvxx.sys -> %System32%\drivers\ati1rvxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 63663 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1snxx.sys -> %System32%\drivers\ati1snxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 26367 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1ttxx.sys -> %System32%\drivers\ati1ttxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 21343 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1tuxx.sys -> %System32%\drivers\ati1tuxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 36463 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1xbxx.sys -> %System32%\drivers\ati1xbxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 29455 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1xsxx.sys -> %System32%\drivers\ati1xsxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 34735 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati2mtaa.sys -> %System32%\drivers\ati2mtaa.sys -> ATI Technologies Inc. [Ver = 6.13.10.5019 | Size = 327040 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati2mtag.sys -> %System32%\drivers\ati2mtag.sys -> ATI Technologies Inc. [Ver = 6.14.10.6396 | Size = 620032 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
atinbtxx.sys -> %System32%\drivers\atinbtxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 57856 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinmdxx.sys -> %System32%\drivers\atinmdxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 13824 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinpdxx.sys -> %System32%\drivers\atinpdxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 14336 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinraxx.sys -> %System32%\drivers\atinraxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 52224 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinrvxx.sys -> %System32%\drivers\atinrvxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 104960 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinsnxx.sys -> %System32%\drivers\atinsnxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 28672 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinttxx.sys -> %System32%\drivers\atinttxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 13824 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atintuxx.sys -> %System32%\drivers\atintuxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 73216 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinxbxx.sys -> %System32%\drivers\atinxbxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 31744 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinxsxx.sys -> %System32%\drivers\atinxsxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 63488 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ativmc20.cod -> %System32%\drivers\ativmc20.cod -> [Ver = | Size = 64352 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atv01nt5.dll -> %System32%\drivers\atv01nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 21183 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atv02nt5.dll -> %System32%\drivers\atv02nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11359 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atv04nt5.dll -> %System32%\drivers\atv04nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 25471 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atv06nt5.dll -> %System32%\drivers\atv06nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 14143 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atv10nt5.dll -> %System32%\drivers\atv10nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 17279 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
avg7core.sys -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Created Date = 7/2/2007 5:13:05 AM | Attr = ]
avg7rsw.sys -> %System32%\drivers\avg7rsw.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,340 | Size = 4224 bytes | Created Date = 7/2/2007 5:13:09 AM | Attr = ]
avg7rsxp.sys -> %System32%\drivers\avg7rsxp.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.442 | Size = 27776 bytes | Created Date = 7/2/2007 5:13:10 AM | Attr = ]
AvgAsCln.sys -> %System32%\drivers\AvgAsCln.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 10872 bytes | Created Date = 7/13/2007 4:43:54 AM | Attr = ]
avgclean.sys -> %System32%\drivers\avgclean.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 3968 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ]
avgmfx86.sys -> %System32%\drivers\avgmfx86.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.473 | Size = 19904 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ]
avgtdi.sys -> %System32%\drivers\avgtdi.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,346 | Size = 4960 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ]
btwhid.sys -> %System32%\drivers\btwhid.sys -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 44003 bytes | Created Date = 7/2/2007 5:50:10 AM | Attr = ]
ch7xxnt5.dll -> %System32%\drivers\ch7xxnt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 15423 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
cxthsfs2.cty -> %System32%\drivers\cxthsfs2.cty -> [Ver = | Size = 129045 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039
900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> %System32%\drivers\HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039
900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> [Ver = | Size = 4148 bytes | Created Date = 7/2/2007 6:30:03 AM | Attr = RHS]
hsfbs2s2.sys -> %System32%\drivers\hsfbs2s2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 220032 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
hsfcxts2.sys -> %System32%\drivers\hsfcxts2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 built by: WinDDK | Size = 685056 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
hsfdpsp2.sys -> %System32%\drivers\hsfdpsp2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 1041536 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
mtlmnt5.sys -> %System32%\drivers\mtlmnt5.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 126686 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
mtlstrm.sys -> %System32%\drivers\mtlstrm.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 1309184 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
mtxparhm.sys -> %System32%\drivers\mtxparhm.sys -> Matrox Graphics Inc. [Ver = 6.13.01.1296 | Size = 452736 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
netwlan5.img -> %System32%\drivers\netwlan5.img -> [Ver = | Size = 67866 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
ntmtlfax.sys -> %System32%\drivers\ntmtlfax.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 180360 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
pfc.sys -> %System32%\drivers\pfc.sys -> Padus, Inc. [Ver = 2, 5, 0, 204 | Size = 10368 bytes | Created Date = 7/2/2007 6:27:17 AM | Attr = ]
recagent.sys -> %System32%\drivers\recagent.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 13776 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
rt2500usb.sys -> %System32%\drivers\rt2500usb.sys -> Ralink Technology Inc. [Ver = 1.02.00.0000 | Size = 140416 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
s3gnbm.sys -> %System32%\drivers\s3gnbm.sys -> S3 Graphics, Inc. [Ver = 6.14.10.0012-13.94.12 | Size = 166912 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
siint5.dll -> %System32%\drivers\siint5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3901 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
sisagp.sys -> %System32%\drivers\sisagp.sys -> Silicon Integrated Systems Corporation [Ver = 5.12.01.2010 (xpsp_sp2_rtm.040803-2158) | Size = 41088 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
slnt7554.sys -> %System32%\drivers\slnt7554.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 129535 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
slntamr.sys -> %System32%\drivers\slntamr.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 404990 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
slnthal.sys -> %System32%\drivers\slnthal.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 95424 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
slwdmsup.sys -> %System32%\drivers\slwdmsup.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 13240 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
StMp3Rec.sys -> %System32%\drivers\StMp3Rec.sys -> Generic [Ver = 1, 551, 0, 139 | Size = 38229 bytes | Created Date = 7/2/2007 6:56:22 AM | Attr = ]
vchnt5.dll -> %System32%\drivers\vchnt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11325 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
wadv07nt.sys -> %System32%\drivers\wadv07nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11807 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
wadv08nt.sys -> %System32%\drivers\wadv08nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11295 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
wadv09nt.sys -> %System32%\drivers\wadv09nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11871 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
wadv11nt.sys -> %System32%\drivers\wadv11nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11935 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
watv06nt.sys -> %System32%\drivers\watv06nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 22271 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
watv10nt.sys -> %System32%\drivers\watv10nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 25471 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]

[Files/Folders - Modified Within 30 days]
$VAULT$.AVG -> %SystemDrive%\$VAULT$.AVG -> [Folder | Modified Date = 7/14/2007 6:34:34 AM | Attr = RH ]
BOOT.BAK -> %SystemDrive%\BOOT.BAK -> [Ver = | Size = 196 bytes | Modified Date = 7/2/2007 7:23:36 AM | Attr = RHS]
boot.ini -> %SystemDrive%\boot.ini -> [Ver = | Size = 283 bytes | Modified Date = 7/2/2007 6:03:24 AM | Attr = RHS]
cmdcons -> %SystemDrive%\cmdcons -> [Folder | Modified Date = 7/2/2007 7:31:12 AM | Attr = RHS]
Documents and Settings -> %SystemDrive%\Documents and Settings -> [Folder | Modified Date = 7/13/2007 5:49:56 AM | Attr = ]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1341706240 bytes | Modified Date = 7/17/2007 10:07:06 PM | Attr = HS]
hp -> %SystemDrive%\hp -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = H ]
I386 -> %SystemDrive%\I386 -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = ]
IPH.PH -> %SystemDrive%\IPH.PH -> [Ver = | Size = 1106 bytes | Modified Date = 7/3/2007 12:35:14 AM | Attr = H ]
MSOCache -> %SystemDrive%\MSOCache -> [Folder | Modified Date = 7/2/2007 7:43:44 AM | Attr = RH ]
My Downloads -> %SystemDrive%\My Downloads -> [Folder | Modified Date = 7/2/2007 7:22:12 PM | Attr = ]
NTDETECT.COM -> %SystemDrive%\NTDETECT.COM -> [Ver = | Size = 47564 bytes | Modified Date = 7/2/2007 5:59:30 AM | Attr = RHS]
Program Files -> %ProgramFiles% -> [Folder | Modified Date = 7/15/2007 10:22:00 AM | Attr = R ]
QooBox -> %SystemDrive%\QooBox -> [Folder | Modified Date = 7/17/2007 9:54:54 PM | Attr = ]
RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Modified Date = 7/2/2007 7:32:54 AM | Attr = HS]
sqmdata00.sqm -> %SystemDrive%\sqmdata00.sqm -> [Ver = | Size = 268 bytes | Modified Date = 7/2/2007 8:45:24 AM | Attr = H ]
sqmdata01.sqm -> %SystemDrive%\sqmdata01.sqm -> [Ver = | Size = 268 bytes | Modified Date = 7/2/2007 8:45:34 AM | Attr = H ]
sqmdata02.sqm -> %SystemDrive%\sqmdata02.sqm -> [Ver = | Size = 172 bytes | Modified Date = 7/2/2007 8:45:36 AM | Attr = H ]
sqmnoopt00.sqm -> %SystemDrive%\sqmnoopt00.sqm -> [Ver = | Size = 244 bytes | Modified Date = 7/2/2007 8:45:24 AM | Attr = H ]
sqmnoopt01.sqm -> %SystemDrive%\sqmnoopt01.sqm -> [Ver = | Size = 244 bytes | Modified Date = 7/2/2007 8:45:34 AM | Attr = H ]
sqmnoopt02.sqm -> %SystemDrive%\sqmnoopt02.sqm -> [Ver = | Size = 172 bytes | Modified Date = 7/2/2007 8:45:36 AM | Attr = H ]
System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Modified Date = 7/2/2007 6:07:30 AM | Attr = HS]
WINDOWS -> %SystemRoot% -> [Folder | Modified Date = 7/17/2007 10:13:48 PM | Attr = ]
_OTMoveIt -> %SystemDrive%\_OTMoveIt -> [Folder | Modified Date = 7/17/2007 10:43:08 PM | Attr = ]
$hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Modified Date = 7/13/2007 3:59:48 AM | Attr = H ]
$MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Modified Date = 7/2/2007 9:15:08 AM | Attr = H ]
$NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Modified Date = 7/2/2007 5:58:10 AM | Attr = H ]
$NtUninstallKB821557$ -> %SystemRoot%\$NtUninstallKB821557$ -> [Folder | Modified Date = 7/2/2007 2:13:30 PM | Attr = H ]
$NtUninstallKB823559$ -> %SystemRoot%\$NtUninstallKB823559$ -> [Folder | Modified Date = 7/2/2007 2:13:30 PM | Attr = H ]
$NtUninstallKB835409$ -> %SystemRoot%\$NtUninstallKB835409$ -> [Folder | Modified Date = 7/2/2007 5:41:38 AM | Attr = H ]
$NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Modified Date = 7/2/2007 8:47:58 PM | Attr = H ]
$NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Modified Date = 7/2/2007 8:49:30 PM | Attr = H ]
$NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Modified Date = 7/2/2007 8:48:18 PM | Attr = H ]
$NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Modified Date = 7/2/2007 8:48:10 PM | Attr = H ]
$NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Modified Date = 7/2/2007 8:49:16 PM | Attr = H ]
$NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Modified Date = 7/2/2007 8:49:08 PM | Attr = H ]
$NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Modified Date = 7/2/2007 9:11:04 PM | Attr = H ]
$NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Modified Date = 7/2/2007 8:50:06 PM | Attr = H ]
$NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Modified Date = 7/2/2007 8:49:24 PM | Attr = H ]
$NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Modified Date = 7/2/2007 8:51:04 PM | Attr = H ]
$NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Modified Date = 7/2/2007 8:51:54 PM | Attr = H ]
$NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Modified Date = 7/2/2007 8:50:44 PM | Attr = H ]
$NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Modified Date = 7/2/2007 8:51:44 PM | Attr = H ]
$NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Modified Date = 7/2/2007 8:49:44 PM | Attr = H ]
$NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Modified Date = 7/2/2007 9:14:38 AM | Attr = H ]
$NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Modified Date = 7/2/2007 8:51:32 PM | Attr = H ]
$NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Modified Date = 7/2/2007 8:51:20 PM | Attr = H ]
$NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Modified Date = 7/2/2007 8:56:06 PM | Attr = H ]
$NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Modified Date = 7/2/2007 8:54:22 PM | Attr = H ]
$NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Modified Date = 7/2/2007 8:53:48 PM | Attr = H ]
$NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Modified Date = 7/2/2007 8:49:50 PM | Attr = H ]
$NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Modified Date = 7/2/2007 8:52:54 PM | Attr = H ]
$NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Modified Date = 7/2/2007 8:54:50 PM | Attr = H ]
$NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Modified Date = 7/2/2007 8:53:58 PM | Attr = H ]
$NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Modified Date = 7/2/2007 8:54:10 PM | Attr = H ]
$NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Modified Date = 7/2/2007 8:54:58 PM | Attr = H ]
$NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Modified Date = 7/2/2007 8:56:16 PM | Attr = H ]
$NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Modified Date = 7/2/2007 8:54:42 PM | Attr = H ]
$NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Modified Date = 7/2/2007 8:57:48 PM | Attr = H ]
$NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Modified Date = 7/2/2007 8:55:58 PM | Attr = H ]
$NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Modified Date = 7/2/2007 8:55:42 PM | Attr = H ]
$NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Modified Date = 7/2/2007 8:55:06 PM | Attr = H ]
$NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Modified Date = 7/2/2007 8:57:24 PM | Attr = H ]
$NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Modified Date = 7/2/2007 8:57:56 PM | Attr = H ]
$NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Modified Date = 7/2/2007 8:56:54 PM | Attr = H ]
$NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Modified Date = 7/2/2007 8:59:04 PM | Attr = H ]
$NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Modified Date = 7/2/2007 8:57:04 PM | Attr = H ]
$NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Modified Date = 7/2/2007 8:56:46 PM | Attr = H ]
$NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Modified Date = 7/2/2007 8:57:38 PM | Attr = H ]
$NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Modified Date = 7/2/2007 9:05:02 PM | Attr = H ]
$NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Modified Date = 7/2/2007 8:57:14 PM | Attr = H ]
$NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Modified Date = 7/2/2007 8:59:12 PM | Attr = H ]
$NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Modified Date = 7/2/2007 9:11:14 PM | Attr = H ]
$NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Modified Date = 7/2/2007 8:58:06 PM | Attr = H ]
$NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Modified Date = 7/2/2007 8:58:16 PM | Attr = H ]
$NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Modified Date = 7/2/2007 8:59:26 PM | Attr = H ]
$NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Modified Date = 7/2/2007 8:59:38 PM | Attr = H ]
$NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Modified Date = 7/2/2007 8:58:48 PM | Attr = H ]
$NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Modified Date = 7/2/2007 9:00:42 PM | Attr = H ]
$NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Modified Date = 7/2/2007 9:00:20 PM | Attr = H ]
$NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Modified Date = 7/2/2007 8:59:52 PM | Attr = H ]
$NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Modified Date = 7/2/2007 9:02:50 PM | Attr = H ]
$NtUninstallKB923723$ -> %SystemRoot%\$NtUninstallKB923723$ -> [Folder | Modified Date = 7/2/2007 9:11:30 PM | Attr = H ]
$NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Modified Date = 7/2/2007 9:01:36 PM | Attr = H ]
$NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Modified Date = 7/2/2007 9:00:30 PM | Attr = H ]
$NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Modified Date = 7/2/2007 9:00:54 PM | Attr = H ]
$NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Modified Date = 7/2/2007 9:00:02 PM | Attr = H ]
$NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Modified Date = 7/2/2007 9:04:16 PM | Attr = H ]
$NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Modified Date = 7/2/2007 9:02:20 PM | Attr = H ]
$NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Modified Date = 7/2/2007 9:08:04 PM | Attr = H ]
$NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Modified Date = 7/2/2007 9:01:50 PM | Attr = H ]
$NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Modified Date = 7/2/2007 9:05:18 PM | Attr = H ]
$NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Modified Date = 7/2/2007 9:04:42 PM | Attr = H ]
$NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Modified Date = 7/2/2007 9:03:58 PM | Attr = H ]
$NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Modified Date = 7/2/2007 9:11:38 PM | Attr = H ]
$NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Modified Date = 7/2/2007 9:03:16 PM | Attr = H ]
$NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Modified Date = 7/2/2007 9:03:38 PM | Attr = H ]
$NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Modified Date = 7/2/2007 9:12:44 PM | Attr = H ]
$NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Modified Date = 7/2/2007 9:03:06 PM | Attr = H ]
$NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Modified Date = 7/2/2007 9:10:10 PM | Attr = H ]
$NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Modified Date = 7/2/2007 9:11:22 PM | Attr = H ]
$NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Modified Date = 7/2/2007 9:10:22 PM | Attr = H ]
$NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Modified Date = 7/2/2007 9:09:38 PM | Attr = H ]
$NtUninstallKB931836$ -> %SystemRoot%\$NtUninstallKB931836$ -> [Folder | Modified Date = 7/2/2007 9:05:46 PM | Attr = H ]
$NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Modified Date = 7/2/2007 9:10:54 PM | Attr = H ]
$NtUninstallKB933566$ -> %SystemRoot%\$NtUninstallKB933566$ -> [Folder | Modified Date = 7/2/2007 9:11:56 PM | Attr = H ]
$NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Modified Date = 7/2/2007 9:14:28 PM | Attr = H ]
$NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Modified Date = 7/2/2007 9:12:58 PM | Attr = H ]
$NtUninstallKB936357$ -> %SystemRoot%\$NtUninstallKB936357$ -> [Folder | Modified Date = 7/13/2007 4:07:16 AM | Attr = H ]
$NtUninstall
Go to the top of the page
 
+Quote Post
m8edy
post Jul 17 2007, 04:08 PM
Post #8


Member
**
Posts: 13
OS: Windows XP SP2



...theres even more...

the rest of winpfind3

$NtUninstallKB936357$ -> %SystemRoot%\$NtUninstallKB936357$ -> [Folder | Modified Date = 7/13/2007 4:07:16 AM | Attr = H ]
$NtUninstallQ328310$ -> %SystemRoot%\$NtUninstallQ328310$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ329112$ -> %SystemRoot%\$NtUninstallQ329112$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ329115$ -> %SystemRoot%\$NtUninstallQ329115$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ329170$ -> %SystemRoot%\$NtUninstallQ329170$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ329390$ -> %SystemRoot%\$NtUninstallQ329390$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallq329623$ -> %SystemRoot%\$NtUninstallq329623$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ329834$ -> %SystemRoot%\$NtUninstallQ329834$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ331958$ -> %SystemRoot%\$NtUninstallQ331958$ -> [Folder | Modified Date = 7/2/2007 7:26:16 AM | Attr = H ]
$NtUninstallQ810565$ -> %SystemRoot%\$NtUninstallQ810565$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ810577$ -> %SystemRoot%\$NtUninstallQ810577$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ810833$ -> %SystemRoot%\$NtUninstallQ810833$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ814033$ -> %SystemRoot%\$NtUninstallQ814033$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ814995$ -> %SystemRoot%\$NtUninstallQ814995$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ815485$ -> %SystemRoot%\$NtUninstallQ815485$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ817287$ -> %SystemRoot%\$NtUninstallQ817287$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$_hpcst$.hpc -> %SystemRoot%\$_hpcst$.hpc -> [Ver = | Size = 2464 bytes | Modified Date = 7/4/2007 2:04:46 AM | Attr = ]
addins -> %SystemRoot%\addins -> [Folder | Modified Date = 7/2/2007 2:13:46 PM | Attr = ]
AppPatch -> %SystemRoot%\AppPatch -> [Folder | Modified Date = 7/14/2007 2:18:20 AM | Attr = ]
assembly -> %SystemRoot%\assembly -> [Folder | Modified Date = 7/2/2007 2:13:16 PM | Attr = R S]
bootstat.dat -> %SystemRoot%\bootstat.dat -> [Ver = | Size = 2048 bytes | Modified Date = 7/17/2007 10:07:12 PM | Attr = S]
bthservsdp.dat -> %SystemRoot%\bthservsdp.dat -> [Ver = | Size = 12 bytes | Modified Date = 7/16/2007 3:41:34 AM | Attr = ]
catchme.exe -> %SystemRoot%\catchme.exe -> [Ver = | Size = 104960 bytes | Modified Date = 7/4/2007 7:21:06 PM | Attr = ]
CREATOR -> %SystemRoot%\CREATOR -> [Folder | Modified Date = 7/2/2007 2:17:38 PM | Attr = ]
Cursors -> %SystemRoot%\Cursors -> [Folder | Modified Date = 7/2/2007 2:13:36 PM | Attr = ]
Debug -> %SystemRoot%\Debug -> [Folder | Modified Date = 7/2/2007 6:08:34 AM | Attr = ]
Downloaded Installations -> %SystemRoot%\Downloaded Installations -> [Folder | Modified Date = 7/2/2007 7:25:16 AM | Attr = ]
Downloaded Program Files -> %SystemRoot%\Downloaded Program Files -> [Folder | Modified Date = 7/14/2007 2:19:04 AM | Attr = S]
DVDRegionFree.INI -> %SystemRoot%\DVDRegionFree.INI -> [Ver = | Size = 67 bytes | Modified Date = 7/17/2007 4:04:16 AM | Attr = ]
EHome -> %SystemRoot%\EHome -> [Folder | Modified Date = 7/2/2007 5:56:20 AM | Attr = ]
erdnt -> %SystemRoot%\erdnt -> [Folder | Modified Date = 7/17/2007 9:56:12 PM | Attr = ]
Fonts -> %SystemRoot%\Fonts -> [Folder | Modified Date = 7/11/2007 10:50:06 PM | Attr = R S]
Help -> %SystemRoot%\Help -> [Folder | Modified Date = 7/4/2007 2:03:00 AM | Attr = ]
ime -> %SystemRoot%\ime -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ]
imsins.BAK -> %SystemRoot%\imsins.BAK -> [Ver = | Size = 1355 bytes | Modified Date = 7/2/2007 9:14:32 PM | Attr = ]
inf -> %SystemRoot%\inf -> [Folder | Modified Date = 7/14/2007 4:34:48 AM | Attr = H ]
Installer -> %SystemRoot%\Installer -> [Folder | Modified Date = 7/16/2007 5:06:12 AM | Attr = HS]
MAXLINK.INI -> %SystemRoot%\MAXLINK.INI -> [Ver = | Size = 419 bytes | Modified Date = 7/2/2007 7:09:06 AM | Attr = ]
Media -> %SystemRoot%\Media -> [Folder | Modified Date = 7/2/2007 7:10:32 AM | Attr = ]
Microsoft.MIF -> %SystemRoot%\Microsoft.MIF -> [Ver = | Size = 2510 bytes | Modified Date = 7/4/2007 2:05:46 AM | Attr = ]
Minidump -> %SystemRoot%\Minidump -> [Folder | Modified Date = 7/11/2007 5:47:14 PM | Attr = ]
mozver.dat -> %SystemRoot%\mozver.dat -> [Ver = | Size = 1156 bytes | Modified Date = 7/3/2007 11:44:58 PM | Attr = ]
msagent -> %SystemRoot%\msagent -> [Folder | Modified Date = 7/2/2007 9:15:56 PM | Attr = ]
NeroDigital.ini -> %SystemRoot%\NeroDigital.ini -> [Ver = | Size = 116 bytes | Modified Date = 7/15/2007 9:05:56 AM | Attr = ]
nsreg.dat -> %SystemRoot%\nsreg.dat -> [Ver = | Size = 335 bytes | Modified Date = 7/3/2007 12:32:30 AM | Attr = ]
ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 376 bytes | Modified Date = 7/2/2007 7:48:44 AM | Attr = ]
Offline Web Pages -> %SystemRoot%\Offline Web Pages -> [Folder | Modified Date = 7/2/2007 2:13:16 PM | Attr = R ]
options -> %SystemRoot%\options -> [Folder | Modified Date = 7/2/2007 6:27:14 AM | Attr = ]
peernet -> %SystemRoot%\peernet -> [Folder | Modified Date = 7/2/2007 6:02:26 AM | Attr = ]
Prefetch -> %SystemRoot%\Prefetch -> [Folder | Modified Date = 7/17/2007 9:43:00 PM | Attr = ]
provisioning -> %SystemRoot%\provisioning -> [Folder | Modified Date = 7/2/2007 6:02:26 AM | Attr = ]
QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Modified Date = 7/2/2007 8:12:54 AM | Attr = ]
QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Modified Date = 7/17/2007 10:09:04 PM | Attr = H ]
RegisteredPackages -> %SystemRoot%\RegisteredPackages -> [Folder | Modified Date = 7/3/2007 9:24:18 PM | Attr = ]
Registration -> %SystemRoot%\Registration -> [Folder | Modified Date = 7/2/2007 8:46:52 PM | Attr = ]
security -> %SystemRoot%\security -> [Folder | Modified Date = 7/3/2007 9:32:16 PM | Attr = ]
ServicePackFiles -> %SystemRoot%\ServicePackFiles -> [Folder | Modified Date = 7/2/2007 6:01:08 AM | Attr = ]
setup.pss -> %SystemRoot%\setup.pss -> [Folder | Modified Date = 7/2/2007 7:30:54 AM | Attr = ]
setupapi.log.0.old -> %SystemRoot%\setupapi.log.0.old -> [Ver = | Size = 2266667 bytes | Modified Date = 7/2/2007 5:41:46 AM | Attr = ]
SHELLNEW -> %SystemRoot%\SHELLNEW -> [Folder | Modified Date = 7/2/2007 7:47:22 AM | Attr = ]
SMINST -> %SystemRoot%\SMINST -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = ]
SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Modified Date = 7/14/2007 2:30:04 AM | Attr = ]
srchasst -> %SystemRoot%\srchasst -> [Folder | Modified Date = 7/2/2007 6:01:00 AM | Attr = ]
Sun -> %SystemRoot%\Sun -> [Folder | Modified Date = 7/2/2007 8:40:50 PM | Attr = ]
SxsCaPendDel -> %SystemRoot%\SxsCaPendDel -> [Folder | Modified Date = 7/3/2007 7:18:08 PM | Attr = ]
system -> %SystemRoot%\system -> [Folder | Modified Date = 7/14/2007 2:30:04 AM | Attr = ]
system.ini -> %SystemRoot%\system.ini -> [Ver = | Size = 231 bytes | Modified Date = 7/2/2007 7:21:34 AM | Attr = ]
system32 -> %System32% -> [Folder | Modified Date = 7/17/2007 10:43:08 PM | Attr = ]
Tasks -> %SystemRoot%\Tasks -> [Folder | Modified Date = 7/2/2007 5:55:30 AM | Attr = S]
temp -> %SystemRoot%\temp -> [Folder | Modified Date = 7/17/2007 10:13:48 PM | Attr = ]
twain_32 -> %SystemRoot%\twain_32 -> [Folder | Modified Date = 7/2/2007 7:05:46 AM | Attr = ]
Web -> %SystemRoot%\Web -> [Folder | Modified Date = 7/2/2007 5:59:42 AM | Attr = R ]
win.ini -> %SystemRoot%\win.ini -> [Ver = | Size = 662 bytes | Modified Date = 7/14/2007 12:53:30 AM | Attr = ]
WinSxS -> %SystemRoot%\WinSxS -> [Folder | Modified Date = 7/11/2007 10:58:02 PM | Attr = ]
WMSysPr9.prx -> %SystemRoot%\WMSysPr9.prx -> [Ver = | Size = 316640 bytes | Modified Date = 7/3/2007 9:23:32 PM | Attr = ]
Easy Internet Sign-up.job -> %SystemRoot%\tasks\Easy Internet Sign-up.job -> [Ver = | Size = 272 bytes | Modified Date = 7/2/2007 7:32:18 AM | Attr = ]
SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Modified Date = 7/17/2007 10:07:18 PM | Attr = H ]
$winnt$.inf -> %System32%\$winnt$.inf -> [Ver = | Size = 993 bytes | Modified Date = 7/2/2007 7:28:40 AM | Attr = ]
ActiveScan -> %System32%\ActiveScan -> [Folder | Modified Date = 7/14/2007 2:30:08 AM | Attr = ]
bmpdovog.ini -> %System32%\bmpdovog.ini -> [Ver = | Size = 1054182 bytes | Modified Date = 7/8/2007 6:30:08 PM | Attr = HS]
CanonIJ Uninstaller Information -> %System32%\CanonIJ Uninstaller Information -> [Folder | Modified Date = 7/2/2007 7:05:46 AM | Attr = H ]
CatRoot -> %System32%\CatRoot -> [Folder | Modified Date = 7/4/2007 3:02:42 AM | Attr = ]
CatRoot2 -> %System32%\CatRoot2 -> [Folder | Modified Date = 7/16/2007 3:43:50 AM | Attr = ]
Com -> %System32%\Com -> [Folder | Modified Date = 7/2/2007 8:53:14 PM | Attr = ]
config -> %System32%\config -> [Folder | Modified Date = 7/14/2007 2:30:38 AM | Attr = ]
cpmjssat.ini -> %System32%\cpmjssat.ini -> [Ver = | Size = 1105948 bytes | Modified Date = 7/11/2007 9:33:24 PM | Attr = HS]
d3d9caps.dat -> %System32%\d3d9caps.dat -> [Ver = | Size = 3688 bytes | Modified Date = 7/15/2007 6:27:50 AM | Attr = ]
DirectX -> %System32%\DirectX -> [Folder | Modified Date = 7/2/2007 5:00:46 PM | Attr = ]
dllcache -> %System32%\dllcache -> [Folder | Modified Date = 7/13/2007 4:07:28 AM | Attr = RHS]
drivers -> %System32%\drivers -> [Folder | Modified Date = 7/17/2007 10:43:08 PM | Attr = ]
DRVSTORE -> %System32%\DRVSTORE -> [Folder | Modified Date = 7/2/2007 8:34:42 AM | Attr = ]
FNTCACHE.DAT -> %System32%\FNTCACHE.DAT -> [Ver = | Size = 1542672 bytes | Modified Date = 7/16/2007 3:42:52 AM | Attr = ]
FxsTmp -> %System32%\FxsTmp -> [Folder | Modified Date = 7/3/2007 4:01:00 AM | Attr = ]
gqovtsmk.ini -> %System32%\gqovtsmk.ini -> [Ver = | Size = 1054310 bytes | Modified Date = 7/9/2007 8:35:46 PM | Attr = HS]
Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Modified Date = 7/14/2007 12:46:56 AM | Attr = ]
ias -> %System32%\ias -> [Folder | Modified Date = 7/2/2007 2:14:50 PM | Attr = ]
icsxml -> %System32%\icsxml -> [Folder | Modified Date = 7/2/2007 2:14:52 PM | Attr = ]
lbvbeqlb.ini -> %System32%\lbvbeqlb.ini -> [Ver = | Size = 1045467 bytes | Modified Date = 7/7/2007 3:25:46 AM | Attr = HS]
lccsfghm.ini -> %System32%\lccsfghm.ini -> [Ver = | Size = 2496711 bytes | Modified Date = 7/12/2007 10:37:26 PM | Attr = HS]
Macromed -> %System32%\Macromed -> [Folder | Modified Date = 7/2/2007 7:36:26 AM | Attr = ]
mui -> %System32%\mui -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ]
npp -> %System32%\npp -> [Folder | Modified Date = 7/2/2007 6:01:02 AM | Attr = ]
oakbigxo.ini -> %System32%\oakbigxo.ini -> [Ver = | Size = 1052262 bytes | Modified Date = 7/4/2007 11:05:56 PM | Attr = HS]
oobe -> %System32%\oobe -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ]
pavas.ico -> %System32%\pavas.ico -> [Ver = | Size = 30590 bytes | Modified Date = 7/14/2007 12:46:54 AM | Attr = ]
perfc009.dat -> %System32%\perfc009.dat -> [Ver = | Size = 53552 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ]
perfh009.dat -> %System32%\perfh009.dat -> [Ver = | Size = 382000 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ]
PerfStringBackup.INI -> %System32%\PerfStringBackup.INI -> [Ver = | Size = 441626 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ]
pncrt.dll -> %System32%\pncrt.dll -> Real Networks, Inc [Ver = 6.0.0.0 | Size = 278528 bytes | Modified Date = 7/2/2007 7:25:52 PM | Attr = ]
pndx5016.dll -> %System32%\pndx5016.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 6656 bytes | Modified Date = 7/2/2007 7:25:54 PM | Attr = ]
pndx5032.dll -> %System32%\pndx5032.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 5632 bytes | Modified Date = 7/2/2007 7:25:54 PM | Attr = ]
PreInstall -> %System32%\PreInstall -> [Folder | Modified Date = 7/2/2007 9:14:38 AM | Attr = ]
QuickTime.qts -> %System32%\QuickTime.qts -> Apple Inc. [Ver = 7.2 | Size = 49152 bytes | Modified Date = 6/29/2007 6:24:58 AM | Attr = ]
QuickTimeVR.qtx -> %System32%\QuickTimeVR.qtx -> Apple Inc. [Ver = 7.2 | Size = 65536 bytes | Modified Date = 6/29/2007 6:24:58 AM | Attr = ]
ras -> %System32%\ras -> [Folder | Modified Date = 7/2/2007 2:15:04 PM | Attr = ]
ReinstallBackups -> %System32%\ReinstallBackups -> [Folder | Modified Date = 7/2/2007 7:24:40 AM | Attr = ]
Restore -> %System32%\Restore -> [Folder | Modified Date = 7/2/2007 7:22:48 AM | Attr = ]
rmoc3260.dll -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Modified Date = 7/2/2007 7:26:00 PM | Attr = ]
rmyyagnu.ini -> %System32%\rmyyagnu.ini -> [Ver = | Size = 945 bytes | Modified Date = 7/4/2007 9:48:32 PM | Attr = HS]
rpepjhcn.ini -> %System32%\rpepjhcn.ini -> [Ver = | Size = 1045586 bytes | Modified Date = 7/7/2007 11:13:36 PM | Attr = HS]
Samsung PC Studio Codecs -> %System32%\Samsung PC Studio Codecs -> [Folder | Modified Date = 7/2/2007 8:07:04 AM | Attr = ]
Samsung_USB_Drivers -> %System32%\Samsung_USB_Drivers -> [Folder | Modified Date = 7/2/2007 8:07:08 AM | Attr = ]
sbnxlpfi.ini -> %System32%\sbnxlpfi.ini -> [Ver = | Size = 2198607 bytes | Modified Date = 7/11/2007 10:34:18 PM | Attr = HS]
Setup -> %System32%\Setup -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ]
SoftwareDistribution -> %System32%\SoftwareDistribution -> [Folder | Modified Date = 7/2/2007 6:54:04 AM | Attr = ]
swreg.exe -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Modified Date = 7/11/2007 4:59:06 PM | Attr = ]
Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Modified Date = 7/14/2007 12:46:56 AM | Attr = ]
usmt -> %System32%\usmt -> [Folder | Modified Date = 7/2/2007 6:00:42 AM | Attr = ]
uxefnpkm.ini -> %System32%\uxefnpkm.ini -> [Ver = | Size = 645 bytes | Modified Date = 7/3/2007 8:01:28 PM | Attr = HS]
wbem -> %System32%\wbem -> [Folder | Modified Date = 7/14/2007 2:34:20 AM | Attr = ]
wpa.dbl -> %System32%\wpa.dbl -> [Ver = | Size = 1158 bytes | Modified Date = 7/16/2007 3:43:38 AM | Attr = ]
yppsuolm.ini -> %System32%\yppsuolm.ini -> [Ver = | Size = 1105838 bytes | Modified Date = 7/11/2007 9:08:06 PM | Attr = HS]
yxjbaxur.ini -> %System32%\yxjbaxur.ini -> [Ver = | Size = 1054362 bytes | Modified Date = 7/9/2007 8:43:54 PM | Attr = HS]
AegisP.sys -> %System32%\drivers\AegisP.sys -> Meetinghouse Data Communications [Ver = 3.0.0.6 | Size = 15939 bytes | Modified Date = 7/2/2007 6:27:28 AM | Attr = ]
avg7core.sys -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ]
avg7rsw.sys -> %System32%\drivers\avg7rsw.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,340 | Size = 4224 bytes | Modified Date = 7/2/2007 6:13:10 AM | Attr = ]
avg7rsxp.sys -> %System32%\drivers\avg7rsxp.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.442 | Size = 27776 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ]
avgclean.sys -> %System32%\drivers\avgclean.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 3968 bytes | Modified Date = 7/2/2007 6:13:12 AM | Attr = ]
avgmfx86.sys -> %System32%\drivers\avgmfx86.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.473 | Size = 19904 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ]
avgtdi.sys -> %System32%\drivers\avgtdi.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,346 | Size = 4960 bytes | Modified Date = 7/2/2007 6:13:12 AM | Attr = ]
etc -> %System32%\drivers\etc -> [Folder | Modified Date = 7/17/2007 10:08:10 PM | Attr = ]
HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039
900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> %System32%\drivers\HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039
900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> [Ver = | Size = 4148 bytes | Modified Date = 7/2/2007 7:30:04 AM | Attr = RHS]

[File String Scan - Non-Microsoft Only]
WSUD , -> %System32%\ALSNDMGR.CPL -> Realtek Semiconductor Corp. [Ver = 2.2.0.34 | Size = 16121856 bytes | Modified Date = 9/20/2004 3:20:44 PM | Attr = ]
PEC2 , -> %System32%\dfrg.msc -> [Ver = | Size = 41397 bytes | Modified Date = 9/24/2003 10:30:00 AM | Attr = ]
PEC2 , PECompact2 , -> %System32%\DivX.dll -> DivXNetworks [Ver = 6,0,0,1571 | Size = 692736 bytes | Modified Date = 6/9/2005 9:32:28 PM | Attr = ]
Thawte Consulting , -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Modified Date = 7/2/2007 7:26:00 PM | Attr = ]
UPX! , UPX0 , -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Modified Date = 7/11/2007 4:59:06 PM | Attr = ]
winsync , -> %System32%\wbdbase.deu -> [Ver = | Size = 1309184 bytes | Modified Date = 9/24/2003 4:19:00 AM | Attr = ]
UPX! , FSG! , PEC2 , aspack , -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ]
PTech , -> %System32%\drivers\mtlstrm.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 1309184 bytes | Modified Date = 8/3/2004 10:41:38 PM | Attr = ]

< End of report >

HijackThis Log

Logfile of HijackThis v1.99.1
Scan saved at 22:53:09, on 17/07/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe
C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\explorer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.le.ac.uk/sm/le/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://gb10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-gb10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-gb10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-gb10.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.apple.com/itunes/download/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\program files\hp\digital imaging\bin\hpdtlk02.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
O4 - HKLM\..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe /autostart
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{0A795B8E-126A-46EF-8631-73571C2E1A85}: NameServer = 192.168.2.1
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\btxppanel.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Belkin 54g Wireless USB Network Adapter (Belkin 54g Wireless USB Network Adapter Service) - Unknown owner - C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
Go to the top of the page
 
+Quote Post
m8edy
post Jul 17 2007, 04:09 PM
Post #9


Member
**
Posts: 13
OS: Windows XP SP2



Thats everything!

Hope it helps

m8edy
Go to the top of the page
 
+Quote Post
Essexboy
post Jul 17 2007, 04:17 PM
Post #10


GeekU Moderator
Group Icon
Posts: 19,158
From: Darkest Cornwall
OS: Vista Ultimate & Windows 7



Error


This post has been edited by Essexboy: Jul 17 2007, 04:17 PM
Go to the top of the page
 
+Quote Post
Essexboy
post Jul 17 2007, 04:27 PM
Post #11


GeekU Moderator
Group Icon
Posts: 19,158
From: Darkest Cornwall
OS: Vista Ultimate & Windows 7



Looking better now

Start WinPFind3U. Copy/Paste the information in the quotebox below into the pane where it says "Paste fix here" and then click the Run Fix button.

QUOTE
[Files/Folders - Created Within 30 days]
NY -> sqmdata00.sqm -> %SystemDrive%\sqmdata00.sqm
NY -> sqmdata01.sqm -> %SystemDrive%\sqmdata01.sqm
NY -> sqmdata02.sqm -> %SystemDrive%\sqmdata02.sqm
NY -> sqmnoopt00.sqm -> %SystemDrive%\sqmnoopt00.sqm
NY -> sqmnoopt01.sqm -> %SystemDrive%\sqmnoopt01.sqm
NY -> sqmnoopt02.sqm -> %SystemDrive%\sqmnoopt02.sqm
NY -> 002224_.tmp -> %SystemRoot%2224_.tmp
NY -> cpmjssat.ini -> %System32%\cpmjssat.ini
NY -> gqovtsmk.ini -> %System32%\gqovtsmk.ini
NY -> ieencode.dll -> %System32%\ieencode.dll
NY -> lbvbeqlb.ini -> %System32%\lbvbeqlb.ini
NY -> lccsfghm.ini -> %System32%\lccsfghm.ini
NY -> oakbigxo.ini -> %System32%\oakbigxo.ini
NY -> rmyyagnu.ini -> %System32%\rmyyagnu.ini
NY -> rpepjhcn.ini -> %System32%\rpepjhcn.ini
NY -> sbnxlpfi.ini -> %System32%\sbnxlpfi.ini
NY -> uxefnpkm.ini -> %System32%\uxefnpkm.ini
NY -> yppsuolm.ini -> %System32%\yppsuolm.ini
NY -> yxjbaxur.ini -> %System32%\yxjbaxur.ini
[Files/Folders - Modified Within 30 days]
NY -> bmpdovog.ini -> %System32%\bmpdovog.ini
NY -> cpmjssat.ini -> %System32%\cpmjssat.ini
NY -> gqovtsmk.ini -> %System32%\gqovtsmk.ini
NY -> lbvbeqlb.ini -> %System32%\lbvbeqlb.ini
NY -> lccsfghm.ini -> %System32%\lccsfghm.ini
NY -> oakbigxo.ini -> %System32%\oakbigxo.ini
NY -> rmyyagnu.ini -> %System32%\rmyyagnu.ini
NY -> rpepjhcn.ini -> %System32%\rpepjhcn.ini
NY -> sbnxlpfi.ini -> %System32%\sbnxlpfi.ini
NY -> yppsuolm.ini -> %System32%\yppsuolm.ini
NY -> yxjbaxur.ini -> %System32%\yxjbaxur.ini


The fix should only take a very short time. When the fix is completed a message box will popup telling you that it is finished. CLick the Ok button and Notepad will open with a log of actions taken during the fix. Post that information back here along with a new WinPFind3u scan.

I will review the information when it comes back in.

Also let me know of any problems you encountered performing the steps above or any continuing problems you are still having with the computer.

Now run Superantispyware
  1. On the first page select Check for Updates
  2. On completion select SCAN YOUR COMPUTER
  3. On the next page select COMPLETE SCAN and tick ALL your drives
  4. The next stage will take a while as your entire drive(s), memory and registry are scanned
  5. When it has completed click NEXT
  6. The next screen shows the problems found click OK
  7. On the next screen place a tick against all items and select NEXT
  8. Now to get the log Go to the PREFERENCES button on the right bottom
  9. Select the STATISTICS/LOG tab
  10. Highlight the scan just completed and click VIEW LOG
  11. This will open a notepad text file copy and paste this to your next reply
Go to the top of the page
 
+Quote Post
m8edy
post Jul 18 2007, 08:38 PM
Post #12


Member
**
Posts: 13
OS: Windows XP SP2



Sorry about the delay, i will explain later.

Requested Logs:

Winpfind 3 Fix Log:

[Files/Folders - Created Within 30 days]
C:\sqmdata00.sqm moved successfully.
C:\sqmdata01.sqm moved successfully.
C:\sqmdata02.sqm moved successfully.
C:\sqmnoopt00.sqm moved successfully.
C:\sqmnoopt01.sqm moved successfully.
C:\sqmnoopt02.sqm moved successfully.
File C:\WINDOWS2224_.tmp not found!
C:\WINDOWS\SYSTEM32\cpmjssat.ini moved successfully.
C:\WINDOWS\SYSTEM32\gqovtsmk.ini moved successfully.
C:\WINDOWS\SYSTEM32\ieencode.dll moved successfully.
C:\WINDOWS\SYSTEM32\lbvbeqlb.ini moved successfully.
C:\WINDOWS\SYSTEM32\lccsfghm.ini moved successfully.
C:\WINDOWS\SYSTEM32\oakbigxo.ini moved successfully.
C:\WINDOWS\SYSTEM32\rmyyagnu.ini moved successfully.
C:\WINDOWS\SYSTEM32\rpepjhcn.ini moved successfully.
C:\WINDOWS\SYSTEM32\sbnxlpfi.ini moved successfully.
C:\WINDOWS\SYSTEM32\uxefnpkm.ini moved successfully.
C:\WINDOWS\SYSTEM32\yppsuolm.ini moved successfully.
C:\WINDOWS\SYSTEM32\yxjbaxur.ini moved successfully.
[Files/Folders - Modified Within 30 days]
C:\WINDOWS\SYSTEM32\bmpdovog.ini moved successfully.
File C:\WINDOWS\SYSTEM32\cpmjssat.ini not found!
File C:\WINDOWS\SYSTEM32\gqovtsmk.ini not found!
File C:\WINDOWS\SYSTEM32\lbvbeqlb.ini not found!
File C:\WINDOWS\SYSTEM32\lccsfghm.ini not found!
File C:\WINDOWS\SYSTEM32\oakbigxo.ini not found!
File C:\WINDOWS\SYSTEM32\rmyyagnu.ini not found!
File C:\WINDOWS\SYSTEM32\rpepjhcn.ini not found!
File C:\WINDOWS\SYSTEM32\sbnxlpfi.ini not found!
File C:\WINDOWS\SYSTEM32\yppsuolm.ini not found!
File C:\WINDOWS\SYSTEM32\yxjbaxur.ini not found!
< End of log >
Created on 07/18/2007 08:48:53


This post has been edited by m8edy: Jul 18 2007, 08:40 PM
Go to the top of the page
 
+Quote Post
m8edy
post Jul 18 2007, 08:42 PM
Post #13


Member
**
Posts: 13
OS: Windows XP SP2



New Winpfind 3 Log:

WinPFind3 logfile created on: 7/18/2007 8:51:07 AM
WinPFind3U by OldTimer - Version 1.0.39 Folder = C:\Documents and Settings\Owner\Desktop\WinPFind3u\
Microsoft Windows XP Service Pack 2 (Version = 5.1.2600)
Internet Explorer (Version = 6.0.2900.2180)

1.25 Gb Total Physical Memory | 0.61 Gb Available Physical Memory | 48.94% Memory free
2.98 Gb Paging File | 2.40 Gb Available in Paging File | 80.63% Paging File free
Paging file location(s): C:\pagefile.sys 1920 3840;

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 107.00 Gb Total Space | 28.38 Gb Free Space | 26.53% Space Free
Drive D: | 38.34 Gb Total Space | 38.28 Gb Free Space | 99.83% Space Free
Drive E: | 4.77 Gb Total Space | 0.55 Gb Free Space | 11.59% Space Free
Drive F: | 2.67 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free

Computer Name: YOUR-G2ASVV4L2M
Current User Name: Owner
Logged in as Administrator.
Current Boot Mode: Normal


[Processes - Non-Microsoft Only]
aawservice.exe -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\aawservice.exe -> Lavasoft AB [Ver = 7, 0, 1, 2 | Size = 561152 bytes | Modified Date = 6/5/2007 5:23:28 PM | Attr = ]
ad-watch2007.exe -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe -> Lavasoft AB [Ver = 7.0.1.18 | Size = 4177920 bytes | Modified Date = 7/2/2007 9:37:24 PM | Attr = ]
applemobiledeviceservice.exe -> %CommonProgramFiles%\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> Apple, Inc. [Ver = 1, 12, 0, 0 | Size = 106496 bytes | Modified Date = 6/28/2007 4:06:52 AM | Attr = ]
ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ]
ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ]
atiptaxx.exe -> %ProgramFiles%\ATI Technologies\ATI Control Panel\atiptaxx.exe -> ATI Technologies, Inc. [Ver = 6.14.10.5061 | Size = 335872 bytes | Modified Date = 11/1/2003 9:00:00 PM | Attr = ]
avgamsvr.exe -> %ProgramFiles%\Grisoft\AVG Free\avgamsvr.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.453 | Size = 353280 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
avgas.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 6/11/2007 10:25:42 AM | Attr = ]
avgcc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgcc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.460 | Size = 416256 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
avgemc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgemc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.474 | Size = 352768 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
avgupsvc.exe -> %ProgramFiles%\Grisoft\AVG Free\avgupsvc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 49664 bytes | Modified Date = 7/2/2007 6:13:06 AM | Attr = ]
btwdins.exe -> %ProgramFiles%\Belkin\Bluetooth Software\bin\btwdins.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 163840 bytes | Modified Date = 10/1/2004 3:06:34 PM | Attr = ]
guard.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 1:31:10 PM | Attr = ]
hpqcmon.exe -> %ProgramFiles%\HP\Digital Imaging\Unload\HpqCmon.exe -> [Ver = 2.0.0.133 | Size = 90112 bytes | Modified Date = 10/7/2002 8:23:20 AM | Attr = ]
ipodservice.exe -> %ProgramFiles%\iPod\bin\iPodService.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 501048 bytes | Modified Date = 7/10/2007 9:18:14 AM | Attr = ]
ituneshelper.exe -> %ProgramFiles%\iTunes\iTunesHelper.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 270648 bytes | Modified Date = 7/10/2007 9:18:20 AM | Attr = ]
kbd.exe -> %SystemDrive%\hp\KBD\kbd.exe -> Hewlett-Packard Company [Ver = 1.0.2.0 | Size = 61440 bytes | Modified Date = 2/11/2003 9:02:48 PM | Attr = ]
mdnsresponder.exe -> %ProgramFiles%\Bonjour\mDNSResponder.exe -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 229376 bytes | Modified Date = 2/28/2006 12:42:38 PM | Attr = ]
nmbgmonitor.exe -> %CommonProgramFiles%\Ahead\Lib\NMBgMonitor.exe -> Nero AG [Ver = 1, 5, 3, 0 | Size = 139264 bytes | Modified Date = 11/16/2006 7:04:20 PM | Attr = ]
opwarese4.exe -> %ProgramFiles%\ScanSoft\OmniPageSE4.0\OpwareSE4.exe -> ScanSoft, Inc. [Ver = 15.0 | Size = 69632 bytes | Modified Date = 3/21/2006 1:19:40 PM | Attr = ]
pchbutton.exe -> %ProgramFiles%\HP Pavilion PC Help\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe -> Motive Communications, Inc. [Ver = 4.12.0.pchealthclient.pchclient.20030613_172000 | Size = 155648 bytes | Modified Date = 1/1/2003 12:06:44 PM | Attr = ]
shwicon2k.exe -> %ProgramFiles%\Multimedia Card Reader\shwicon2k.exe -> Alcor Micro, Corp. [Ver = 1, 0, 0, 7 | Size = 139264 bytes | Modified Date = 8/14/2003 8:11:32 PM | Attr = ]
superantispyware.exe -> %ProgramFiles%\SUPERAntiSpyware\SUPERAntiSpyware.exe -> SUPERAntiSpyware.com [Ver = 3, 9, 0, 1008 | Size = 1318912 bytes | Modified Date = 7/14/2007 5:38:14 AM | Attr = ]
winpfind3u.exe -> %UserDesktop%\WinPFind3u\WinPFind3U.exe -> OldTimer Tools [Ver = 1.0.38.0 | Size = 322048 bytes | Modified Date = 6/23/2007 3:15:54 PM | Attr = ]
wlancfgg.exe -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe -> [Ver = 1, 0, 3, 5 | Size = 798720 bytes | Modified Date = 10/6/2004 7:28:30 PM | Attr = ]
wlservice.exe -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLService.exe -> [Ver = | Size = 49152 bytes | Modified Date = 3/29/2004 4:08:16 PM | Attr = ]

[Win32 Services - Non-Microsoft Only]
(aawservice) Ad-Aware 2007 Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\aawservice.exe -> Lavasoft AB [Ver = 7, 0, 1, 2 | Size = 561152 bytes | Modified Date = 6/5/2007 5:23:28 PM | Attr = ]
(Adobe LM Service) Adobe LM Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Adobe Systems Shared\Service\Adobelmsvc.exe -> Adobe Systems [Ver = 2.67.010 | Size = 72704 bytes | Modified Date = 7/3/2007 9:22:08 PM | Attr = ]
(Apple Mobile Device) Apple Mobile Device [Win32_Own | Auto | Running] -> %CommonProgramFiles%\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> Apple, Inc. [Ver = 1, 12, 0, 0 | Size = 106496 bytes | Modified Date = 6/28/2007 4:06:52 AM | Attr = ]
(Ati HotKey Poller) Ati HotKey Poller [Win32_Own | Auto | Running] -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ]
(AVG Anti-Spyware Guard) AVG Anti-Spyware Guard [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 1:31:10 PM | Attr = ]
(Avg7Alrt) AVG7 Alert Manager Server [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgamsvr.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.453 | Size = 353280 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
(Avg7UpdSvc) AVG7 Update Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgupsvc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 49664 bytes | Modified Date = 7/2/2007 6:13:06 AM | Attr = ]
(AVGEMS) AVG E-mail Scanner [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Free\avgemc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.474 | Size = 352768 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
(Belkin 54g Wireless USB Network Adapter Service) Belkin 54g Wireless USB Network Adapter [Win32_Own | Auto | Running] -> %ProgramFiles%\Belkin\Belkin Wireless Network Utility\WLService.exe -> [Ver = | Size = 49152 bytes | Modified Date = 3/29/2004 4:08:16 PM | Attr = ]
(Bonjour Service) ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## [Win32_Own | Auto | Running] -> %ProgramFiles%\Bonjour\mDNSResponder.exe -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 229376 bytes | Modified Date = 2/28/2006 12:42:38 PM | Attr = ]
(btwdins) Bluetooth Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Belkin\Bluetooth Software\bin\btwdins.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 163840 bytes | Modified Date = 10/1/2004 3:06:34 PM | Attr = ]
(dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> %System32%\dmadmin.exe -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 8/4/2004 12:56:50 AM | Attr = ]
(FLEXnet Licensing Service) FLEXnet Licensing Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -> Macrovision Europe Ltd. [Ver = 11.03.005 | Size = 654848 bytes | Modified Date = 7/3/2007 8:22:02 PM | Attr = ]
(IDriverT) InstallDriver Table Manager [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\InstallShield\Driver\11\Intel 32\IDriverT.exe -> Macrovision Corporation [Ver = 11.00.28844 | Size = 69632 bytes | Modified Date = 4/4/2005 12:41:10 AM | Attr = ]
(iPod Service) iPod Service [Win32_Own | On_Demand | Running] -> %ProgramFiles%\iPod\bin\iPodService.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 501048 bytes | Modified Date = 7/10/2007 9:18:14 AM | Attr = ]
(NBService) NBService [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Nero\Nero 7\Nero BackItUp\NBService.exe -> Nero AG [Ver = 2, 7, 2, 0 | Size = 774144 bytes | Modified Date = 11/10/2006 7:18:02 PM | Attr = ]
(NVSvc) NVIDIA Driver Helper Service [Win32_Own | Auto | Stopped] -> %System32%\nvsvc32.exe -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 77824 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ]

[Registry - Non-Microsoft Only]
< Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
!AVG Anti-Spyware -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 6/11/2007 10:25:42 AM | Attr = ]
Ad-Watch -> %ProgramFiles%\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe -> Lavasoft AB [Ver = 7.0.1.18 | Size = 4177920 bytes | Modified Date = 7/2/2007 9:37:24 PM | Attr = ]
AlcxMonitor -> %SystemRoot%\ALCXMNTR.EXE -> Realtek Semiconductor Corp. [Ver = 1.5 | Size = 57344 bytes | Modified Date = 9/7/2004 1:47:52 PM | Attr = ]
ATIModeChange -> %System32%\Ati2mdxx.exe -> ATI Technologies, Inc. [Ver = 4.13.3 | Size = 28672 bytes | Modified Date = 9/5/2001 12:24:00 AM | Attr = ]
ATIPTA -> %ProgramFiles%\ATI Technologies\ATI Control Panel\atiptaxx.exe -> ATI Technologies, Inc. [Ver = 6.14.10.5061 | Size = 335872 bytes | Modified Date = 11/1/2003 9:00:00 PM | Attr = ]
AVG7_CC -> %ProgramFiles%\Grisoft\AVG Free\avgcc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.460 | Size = 416256 bytes | Modified Date = 7/2/2007 6:36:50 AM | Attr = ]
CamMonitor -> %ProgramFiles%\HP\Digital Imaging\Unload\HpqCmon.exe -> [Ver = 2.0.0.133 | Size = 90112 bytes | Modified Date = 10/7/2002 8:23:20 AM | Attr = ]
googletalk -> %ProgramFiles%\Google\Google Talk\googletalk.exe -> Google [Ver = 1,0,0,104 | Size = 3739648 bytes | Modified Date = 1/1/2007 10:22:02 PM | Attr = ]
HPHUPD05 -> %ProgramFiles%\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe -> File not found
iTunesHelper -> %ProgramFiles%\iTunes\iTunesHelper.exe -> Apple Inc. [Ver = 7.3.1.3 | Size = 270648 bytes | Modified Date = 7/10/2007 9:18:20 AM | Attr = ]
KBD -> %SystemDrive%\hp\KBD\kbd.exe -> Hewlett-Packard Company [Ver = 1.0.2.0 | Size = 61440 bytes | Modified Date = 2/11/2003 9:02:48 PM | Attr = ]
NeroFilterCheck -> %CommonProgramFiles%\Ahead\Lib\NeroCheck.exe -> Nero AG [Ver = 1, 0, 0, 5 | Size = 155648 bytes | Modified Date = 1/12/2006 3:40:44 PM | Attr = ]
nwiz -> %System32%\nwiz.exe -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 323584 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ]
OpwareSE4 -> %ProgramFiles%\ScanSoft\OmniPageSE4.0\OpwareSE4.exe -> ScanSoft, Inc. [Ver = 15.0 | Size = 69632 bytes | Modified Date = 3/21/2006 1:19:40 PM | Attr = ]
QuickTime Task -> %ProgramFiles%\QuickTime\QTTask.exe -> Apple Inc. [Ver = 7.2 | Size = 286720 bytes | Modified Date = 6/29/2007 6:24:52 AM | Attr = ]
SSBkgdUpdate -> %CommonProgramFiles%\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe -> Scansoft, Inc. [Ver = 1, 0, 0, 6 | Size = 155648 bytes | Modified Date = 9/30/2003 12:14:58 AM | Attr = R ]
Sunkist2k -> %ProgramFiles%\Multimedia Card Reader\shwicon2k.exe -> Alcor Micro, Corp. [Ver = 1, 0, 0, 7 | Size = 139264 bytes | Modified Date = 8/14/2003 8:11:32 PM | Attr = ]
UpdateManager -> %CommonProgramFiles%\Sonic\Update Manager\sgtray.exe -> Sonic Solutions [Ver = 1.01.32a | Size = 110592 bytes | Modified Date = 8/19/2003 9:01:00 AM | Attr = ]
VTTimer -> VTTimer.exe -> File not found
< OptionalComponents [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\ ->
IMAIL -> Installed = 1 ->
MAPI -> Installed = 1 ->
MSFS -> Installed = 1 ->
< Run [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
Acme.PCHButton -> %ProgramFiles%\HP Pavilion PC Help\Pavilion\XPHWWBP4\plugin\bin\pchbutton.exe -> Motive Communications, Inc. [Ver = 4.12.0.pchealthclient.pchclient.20030613_172000 | Size = 155648 bytes | Modified Date = 1/1/2003 12:06:44 PM | Attr = ]
Aim6 -> -> File not found
BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} -> %CommonProgramFiles%\Ahead\Lib\NMBgMonitor.exe -> Nero AG [Ver = 1, 5, 3, 0 | Size = 139264 bytes | Modified Date = 11/16/2006 7:04:20 PM | Attr = ]
NVIEW -> %System32%\nview.dll [rundll32.exe nview.dll,nViewLoadHook] -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 852038 bytes | Modified Date = 8/19/2003 3:56:00 AM | Attr = ]
RecordNow! -> -> File not found
SUPERAntiSpyware -> %ProgramFiles%\SUPERAntiSpyware\SUPERAntiSpyware.exe -> SUPERAntiSpyware.com [Ver = 3, 9, 0, 1008 | Size = 1318912 bytes | Modified Date = 7/14/2007 5:38:14 AM | Attr = ]
< Common Startup > -> C:\Documents and Settings\All Users\Start Menu\Programs\Startup ->
%AllUsersStartup%\BTTray.lnk -> %ProgramFiles%\Belkin\Bluetooth Software\BTTray.exe -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 565309 bytes | Modified Date = 10/1/2004 3:12:18 PM | Attr = ]
%AllUsersStartup%\HP Digital Imaging Monitor.lnk -> %ProgramFiles%\HP\Digital Imaging\bin\hpqtra08.exe -> Hewlett-Packard Co. [Ver = 5.31.0.147 | Size = 233472 bytes | Modified Date = 7/7/2003 9:20:40 AM | Attr = ]
< User Startup > -> C:\Documents and Settings\Owner\Start Menu\Programs\Startup ->
%UserStartup%\Adobe Gamma.lnk -> %CommonProgramFiles%\Adobe\Calibration\Adobe Gamma Loader.exe -> Adobe Systems, Inc. [Ver = 1, 0, 0, 1 | Size = 113664 bytes | Modified Date = 3/16/2005 8:16:50 PM | Attr = ]
< ShellExecuteHooks [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks ->
{57B86673-276A-48B2-BAE7-C6DBB3020EB8} [HKLM] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll [AVG Anti-Spyware 7.5] -> GRISOFT s.r.o. [Ver = 7, 5, 1, 36 | Size = 79408 bytes | Modified Date = 5/30/2007 1:29:58 PM | Attr = ]
{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} [HKLM] -> %ProgramFiles%\SUPERAntiSpyware\SASSEH.DLL [] -> SuperAdBlocker.com [Ver = 1, 0, 0, 1008 | Size = 77824 bytes | Modified Date = 12/20/2006 12:55:48 PM | Attr = ]
{93994DE8-8239-4655-B1D1-5F4E91300429} [HKLM] -> %UserDesktop%\dvd thing\DVD Region-Free\DVDShell.dll [] -> Fengtao Software [Ver = 3, 0, 0, 2 | Size = 49152 bytes | Modified Date = 8/26/2003 11:58:06 AM | Attr = ]
< SecurityProviders [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders ->
< Winlogon settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon\Notify settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ ->
!SASWinLogon -> %ProgramFiles%\SUPERAntiSpyware\SASWINLO.DLL -> SUPERAntiSpyware.com [Ver = 1, 0, 0, 1046 | Size = 294912 bytes | Modified Date = 7/14/2007 5:38:16 AM | Attr = ]
AtiExtEvent -> %System32%\ati2evxx.dll -> [Ver = | Size = 86016 bytes | Modified Date = 10/28/2003 11:58:00 PM | Attr = ]
igfxcui -> %System32%\igfxsrvc.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 315392 bytes | Modified Date = 4/7/2003 8:06:48 AM | Attr = ]
< CurrentVersion Policy Settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{BDEADF00-C265-11D0-BCED-00A0C90AB50F} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} -> 1073741857 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{0DF44EAA-FF21-4412-828E-260A8728E7F1} -> 32 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\dontdisplaylastusername -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticecaption -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticetext -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\shutdownwithoutlogon -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\undockwithoutlogon -> 1 ->
< CurrentVersion Policy Settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ActiveDesktop\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Associations\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 36 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun -> ˙˙˙˙ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\ -> ->
< HOSTS File > (27 bytes) -> C:\WINDOWS\System32\drivers\etc\Hosts ->
127.0.0.1 localhost -> ->
< Internet Explorer Settings > -> ->
HKLM: Default_Page_URL -> http://gb10.hpwis.com/ ->
HKLM: Main\\Default_Search_URL -> http://srch-gb10.hpwis.com/ ->
HKLM: Local Page -> %SystemRoot%\system32\blank.htm ->
HKLM: Search Bar -> http://srch-gb10.hpwis.com/ ->
HKLM: Search Page -> http://srch-gb10.hpwis.com/ ->
HKLM: Start Page -> about:blank ->
HKLM: CustomizeSearch -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm ->
HKLM: SearchAssistant -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm ->
HKCU: Default_Search_URL -> http://srch-gb10.hpwis.com/ ->
HKCU: Local Page -> C:\WINDOWS\system32\blank.htm ->
HKCU: Search Page -> http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch ->
HKCU: Start Page -> http://www.le.ac.uk/sm/le/ ->
HKCU: ProxyEnable -> 0 ->
HKCU: ProxyOverride -> *.local ->
< Trusted Sites > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
msn.com [ - ] -> ->
< BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> %ProgramFiles%\Adobe\Reader\ActiveX\AcroIEHelper.dll [AcroIEHlprObj Class] -> Adobe Systems Incorporated [Ver = 6.0.0.2003051500 | Size = 50376 bytes | Modified Date = 5/15/2003 8:47:54 AM | Attr = ]
{53707962-6F74-2D53-2644-206D7942484F} [HKLM] -> %ProgramFiles%\Spybot - Search & Destroy\SDHelper.dll [] -> Safer Networking Limited [Ver = 1, 4, 0, 0 | Size = 853672 bytes | Modified Date = 5/31/2005 1:04:00 AM | Attr = ]
{68F9551E-0411-48E4-9AAF-4BC42A6A46BE} [HKLM] -> %ProgramFiles%\Canon\Easy-WebPrint\EWPBrowseLoader.dll [EWPBrowseObject Class] -> [Ver = 2, 6, 3, 0 | Size = 34304 bytes | Modified Date = 4/18/2006 7:04:14 PM | Attr = ]
< Internet Explorer Bars [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ ->
{32683183-48a0-441b-a342-7c2a440a9478} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
< Internet Explorer ToolBars [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
[HKLM] -> Reg Data - Key not found [] -> File not found
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} [HKLM] -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll [Easy-WebPrint] -> [Ver = 2, 6, 3, 0 | Size = 552960 bytes | Modified Date = 4/18/2006 7:05:46 PM | Attr = ]
{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ]
< Internet Explorer ToolBars [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ ->
ShellBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
ShellBrowser\\{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ]
WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
WebBrowser\\{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} [HKLM] -> %ProgramFiles%\HP\digital imaging\bin\hpdtlk02.dll [HP View] -> Hewlett-Packard Company [Ver = 1.0.0.7 | Size = 98304 bytes | Modified Date = 11/21/2003 5:26:26 AM | Attr = ]
< Internet Explorer Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKLM] -> %System32%\msjava.dll [MenuText: Sun Java Console] -> File not found
{2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} -> Reg Data - Value does not exist [ButtonText: Create Mobile Favorite] -> File not found
{92780B25-18CC-41C8-B9BE-3C9C571A8263} -> Reg Data - Value does not exist [ButtonText: Research] -> File not found
{CCA281CA-C863-46ef-9331-5C8D4460577F} -> %ProgramFiles%\Belkin\Bluetooth Software\btsendto_ie.htm [ButtonText: @btrez.dll,-4015] -> [Ver = | Size = 2681 bytes | Modified Date = 5/29/2003 1:53:08 PM | Attr = ]
< Internet Explorer Menu Extensions [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ ->
E&xport to Microsoft Excel -> -> File not found
Easy-WebPrint Add To Print List -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_AddToList.htm -> File not found
Easy-WebPrint High Speed Print -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_HSPrint.htm -> File not found
Easy-WebPrint Preview -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_Preview.htm -> File not found
Easy-WebPrint Print -> %ProgramFiles%\Canon\Easy-WebPrint\Toolband.dll\RC_Print.htm -> File not found
Send To &Bluetooth -> %ProgramFiles%\Belkin\Bluetooth Software\btsendto_ie_ctx.htm -> [Ver = | Size = 1320 bytes | Modified Date = 5/29/2003 1:53:12 PM | Attr = ]
< User Agent Post Platform [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform ->
SV1 -> ->
< DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{0A795B8E-126A-46EF-8631-73571C2E1A85} -> 192.168.2.1 (Belkin 54Mbps Wireless USB Network Adapter) ->
{284DE354-2384-46F5-BA31-A6C4B2A3F246} -> () ->
{2C7A6790-FF94-4A1F-8B01-378064FC8CE9} -> () ->
{32518B32-ED7B-495F-A23C-FAB8BC689BBA} -> (1394 Net Adapter) ->
{8D51A53E-0849-4DD6-8F59-DAC890E5660B} -> (Belkin 54Mbps Wireless USB Network Adapter) ->
{D782F041-B428-4C9A-9EF8-10B461835A01} -> (SiS 900-Based PCI Fast Ethernet Adapter) ->
{E8335EC5-85BF-446F-B911-976ED580074A} -> () ->
< Winsock2 Catalogs [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\ ->
NameSpace_Catalog5\Catalog_Entries�0000000005 [mdnsNSP] -> %ProgramFiles%\Bonjour\mdnsNSP.dll -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 94208 bytes | Modified Date = 2/28/2006 12:42:30 PM | Attr = ]
< Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
ipp -> Reg Data - Key not found -> File not found
msdaipp -> Reg Data - Key not found -> File not found
widimg -> %System32%\btxppanel.dll -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 110592 bytes | Modified Date = 10/1/2004 2:54:44 PM | Attr = ]
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{8AD9C840-044E-11D1-B3E9-00805F499D93} -> Java Plug-in 1.4.2 - CodeBase = http://java.sun.com/products/plugin/autodl...indows-i586.cab ->
{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} -> ActiveScan Installer Class - CodeBase = http://acs.pandasoftware.com/activescan/as5free/asinst.cab ->
{C3F79A2B-B9B4-4A66-B012-3EE46475B072} -> MessengerStatsClient Class - CodeBase = http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab ->
{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA} -> Java Plug-in 1.4.2 - CodeBase = http://java.sun.com/products/plugin/autodl...indows-i586.cab ->


[Files/Folders - Created Within 30 days]
$VAULT$.AVG -> %SystemDrive%\$VAULT$.AVG -> [Folder | Created Date = 7/2/2007 7:05:17 PM | Attr = RH ]
BOOT.BAK -> %SystemDrive%\BOOT.BAK -> [Ver = | Size = 196 bytes | Created Date = 7/2/2007 6:31:09 AM | Attr = RHS]
cmdcons -> %SystemDrive%\cmdcons -> [Folder | Created Date = 7/2/2007 6:30:54 AM | Attr = RHS]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1341706240 bytes | Created Date = 1/1/1601 | Attr = HS]
I386 -> %SystemDrive%\I386 -> [Folder | Created Date = 7/2/2007 1:15:28 PM | Attr = ]
IPH.PH -> %SystemDrive%\IPH.PH -> [Ver = | Size = 1106 bytes | Created Date = 7/2/2007 11:29:07 PM | Attr = H ]
MSOCache -> %SystemDrive%\MSOCache -> [Folder | Created Date = 7/2/2007 6:43:42 AM | Attr = RH ]
My Downloads -> %SystemDrive%\My Downloads -> [Folder | Created Date = 7/2/2007 6:22:07 PM | Attr = ]
Program Files -> %ProgramFiles% -> [Folder | Created Date = 7/2/2007 1:07:19 PM | Attr = R ]
QooBox -> %SystemDrive%\QooBox -> [Folder | Created Date = 7/17/2007 8:54:52 PM | Attr = ]
RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Created Date = 7/2/2007 6:32:52 AM | Attr = HS]
System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Created Date = 1/20/1740 9:48:35 PM | Attr = HS]
_OTMoveIt -> %SystemDrive%\_OTMoveIt -> [Folder | Created Date = 7/17/2007 9:43:06 PM | Attr = ]
$hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Created Date = 7/2/2007 6:43:05 AM | Attr = H ]
$MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Created Date = 7/2/2007 8:15:06 AM | Attr = H ]
$NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Created Date = 7/2/2007 4:56:22 AM | Attr = H ]
$NtUninstallKB835409$ -> %SystemRoot%\$NtUninstallKB835409$ -> [Folder | Created Date = 7/2/2007 4:41:36 AM | Attr = H ]
$NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Created Date = 7/2/2007 7:47:57 PM | Attr = H ]
$NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Created Date = 7/2/2007 7:49:29 PM | Attr = H ]
$NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Created Date = 7/2/2007 7:48:17 PM | Attr = H ]
$NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Created Date = 7/2/2007 7:48:09 PM | Attr = H ]
$NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Created Date = 7/2/2007 7:49:14 PM | Attr = H ]
$NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Created Date = 7/2/2007 7:49:07 PM | Attr = H ]
$NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Created Date = 7/2/2007 8:11:03 PM | Attr = H ]
$NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Created Date = 7/2/2007 7:50:03 PM | Attr = H ]
$NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Created Date = 7/2/2007 7:49:22 PM | Attr = H ]
$NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Created Date = 7/2/2007 7:51:02 PM | Attr = H ]
$NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Created Date = 7/2/2007 7:51:52 PM | Attr = H ]
$NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Created Date = 7/2/2007 7:50:40 PM | Attr = H ]
$NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Created Date = 7/2/2007 7:51:42 PM | Attr = H ]
$NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Created Date = 7/2/2007 7:49:41 PM | Attr = H ]
$NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Created Date = 7/2/2007 8:14:36 AM | Attr = H ]
$NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Created Date = 7/2/2007 7:51:29 PM | Attr = H ]
$NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Created Date = 7/2/2007 7:51:18 PM | Attr = H ]
$NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Created Date = 7/2/2007 7:56:04 PM | Attr = H ]
$NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Created Date = 7/2/2007 7:54:19 PM | Attr = H ]
$NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Created Date = 7/2/2007 7:53:45 PM | Attr = H ]
$NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Created Date = 7/2/2007 7:49:48 PM | Attr = H ]
$NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Created Date = 7/2/2007 7:52:50 PM | Attr = H ]
$NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Created Date = 7/2/2007 7:54:47 PM | Attr = H ]
$NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Created Date = 7/2/2007 7:53:56 PM | Attr = H ]
$NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Created Date = 7/2/2007 7:54:07 PM | Attr = H ]
$NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Created Date = 7/2/2007 7:54:55 PM | Attr = H ]
$NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Created Date = 7/2/2007 7:56:13 PM | Attr = H ]
$NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Created Date = 7/2/2007 7:54:40 PM | Attr = H ]
$NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Created Date = 7/2/2007 7:57:45 PM | Attr = H ]
$NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Created Date = 7/2/2007 7:55:55 PM | Attr = H ]
$NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Created Date = 7/2/2007 7:55:38 PM | Attr = H ]
$NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Created Date = 7/2/2007 7:55:02 PM | Attr = H ]
$NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Created Date = 7/2/2007 7:57:21 PM | Attr = H ]
$NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Created Date = 7/2/2007 7:57:54 PM | Attr = H ]
$NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Created Date = 7/2/2007 7:56:52 PM | Attr = H ]
$NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Created Date = 7/2/2007 7:59:02 PM | Attr = H ]
$NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Created Date = 7/2/2007 7:57:01 PM | Attr = H ]
$NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Created Date = 7/2/2007 7:56:42 PM | Attr = H ]
$NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Created Date = 7/2/2007 7:57:35 PM | Attr = H ]
$NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Created Date = 7/2/2007 8:05:00 PM | Attr = H ]
$NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Created Date = 7/2/2007 7:57:11 PM | Attr = H ]
$NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Created Date = 7/2/2007 7:59:10 PM | Attr = H ]
$NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Created Date = 7/2/2007 8:11:11 PM | Attr = H ]
$NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Created Date = 7/2/2007 7:58:04 PM | Attr = H ]
$NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Created Date = 7/2/2007 7:58:13 PM | Attr = H ]
$NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Created Date = 7/2/2007 7:59:22 PM | Attr = H ]
$NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Created Date = 7/2/2007 7:59:34 PM | Attr = H ]
$NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Created Date = 7/2/2007 7:58:44 PM | Attr = H ]
$NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Created Date = 7/2/2007 8:00:39 PM | Attr = H ]
$NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Created Date = 7/2/2007 8:00:18 PM | Attr = H ]
$NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Created Date = 7/2/2007 7:59:49 PM | Attr = H ]
$NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Created Date = 7/2/2007 8:02:47 PM | Attr = H ]
$NtUninstallKB923723$ -> %SystemRoot%\$NtUninstallKB923723$ -> [Folder | Created Date = 7/2/2007 8:11:28 PM | Attr = H ]
$NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Created Date = 7/2/2007 8:01:34 PM | Attr = H ]
$NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Created Date = 7/2/2007 8:00:28 PM | Attr = H ]
$NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Created Date = 7/2/2007 8:00:52 PM | Attr = H ]
$NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Created Date = 7/2/2007 8:00:00 PM | Attr = H ]
$NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Created Date = 7/2/2007 8:04:15 PM | Attr = H ]
$NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Created Date = 7/2/2007 8:02:17 PM | Attr = H ]
$NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Created Date = 7/2/2007 8:08:01 PM | Attr = H ]
$NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Created Date = 7/2/2007 8:01:48 PM | Attr = H ]
$NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Created Date = 7/2/2007 8:05:15 PM | Attr = H ]
$NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Created Date = 7/2/2007 8:04:39 PM | Attr = H ]
$NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Created Date = 7/2/2007 8:03:55 PM | Attr = H ]
$NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Created Date = 7/2/2007 8:11:36 PM | Attr = H ]
$NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Created Date = 7/2/2007 8:03:14 PM | Attr = H ]
$NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Created Date = 7/2/2007 8:03:35 PM | Attr = H ]
$NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Created Date = 7/2/2007 8:12:42 PM | Attr = H ]
$NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Created Date = 7/2/2007 8:03:03 PM | Attr = H ]
$NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Created Date = 7/2/2007 8:10:08 PM | Attr = H ]
$NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Created Date = 7/2/2007 8:11:21 PM | Attr = H ]
$NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Created Date = 7/2/2007 8:10:20 PM | Attr = H ]
$NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Created Date = 7/2/2007 8:09:35 PM | Attr = H ]
$NtUninstallKB931836$ -> %SystemRoot%\$NtUninstallKB931836$ -> [Folder | Created Date = 7/2/2007 8:05:45 PM | Attr = H ]
$NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Created Date = 7/2/2007 8:10:52 PM | Attr = H ]
$NtUninstallKB933566$ -> %SystemRoot%\$NtUninstallKB933566$ -> [Folder | Created Date = 7/2/2007 8:11:50 PM | Attr = H ]
$NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Created Date = 7/2/2007 8:14:26 PM | Attr = H ]
$NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Created Date = 7/2/2007 8:12:57 PM | Attr = H ]
$NtUninstallKB936357$ -> %SystemRoot%\$NtUninstallKB936357$ -> [Folder | Created Date = 7/13/2007 3:07:13 AM | Attr = H ]
$NtUninstallQ331958$ -> %SystemRoot%\$NtUninstallQ331958$ -> [Folder | Created Date = 7/2/2007 6:26:15 AM | Attr = H ]
$_hpcst$.hpc -> %SystemRoot%\$_hpcst$.hpc -> [Ver = | Size = 2464 bytes | Created Date = 7/4/2007 1:04:45 AM | Attr = ]
002224_.tmp -> %SystemRoot%�2224_.tmp -> [Ver = | Size = 19528 bytes | Created Date = 7/2/2007 4:58:29 AM | Attr = ]
assembly -> %SystemRoot%\assembly -> [Folder | Created Date = 7/2/2007 1:07:03 PM | Attr = R S]
bthservsdp.dat -> %SystemRoot%\bthservsdp.dat -> [Ver = | Size = 12 bytes | Created Date = 7/2/2007 5:46:26 AM | Attr = ]
catchme.exe -> %SystemRoot%\catchme.exe -> [Ver = | Size = 104960 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
Downloaded Installations -> %SystemRoot%\Downloaded Installations -> [Folder | Created Date = 7/2/2007 6:25:15 AM | Attr = ]
DVDRegionFree.INI -> %SystemRoot%\DVDRegionFree.INI -> [Ver = | Size = 67 bytes | Created Date = 7/9/2007 4:27:44 AM | Attr = ]
EHome -> %SystemRoot%\EHome -> [Folder | Created Date = 7/2/2007 4:56:19 AM | Attr = ]
erdnt -> %SystemRoot%\erdnt -> [Folder | Created Date = 7/17/2007 8:56:10 PM | Attr = ]
MAXLINK.INI -> %SystemRoot%\MAXLINK.INI -> [Ver = | Size = 419 bytes | Created Date = 7/2/2007 6:09:05 AM | Attr = ]
Microsoft.MIF -> %SystemRoot%\Microsoft.MIF -> [Ver = | Size = 2510 bytes | Created Date = 7/3/2007 11:22:59 PM | Attr = ]
Minidump -> %SystemRoot%\Minidump -> [Folder | Created Date = 7/7/2007 4:09:52 PM | Attr = ]
mozver.dat -> %SystemRoot%\mozver.dat -> [Ver = | Size = 1156 bytes | Created Date = 7/3/2007 10:44:54 PM | Attr = ]
NeroDigital.ini -> %SystemRoot%\NeroDigital.ini -> [Ver = | Size = 116 bytes | Created Date = 7/2/2007 4:17:01 PM | Attr = ]
nircmd.exe -> %SystemRoot%\nircmd.exe -> NirSoft [Ver = 2.00 | Size = 51200 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
nsreg.dat -> %SystemRoot%\nsreg.dat -> [Ver = | Size = 335 bytes | Created Date = 7/2/2007 9:40:36 PM | Attr = ]
ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 376 bytes | Created Date = 7/2/2007 6:48:42 AM | Attr = ]
Offline Web Pages -> %SystemRoot%\Offline Web Pages -> [Folder | Created Date = 7/2/2007 1:06:49 PM | Attr = R ]
options -> %SystemRoot%\options -> [Folder | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
PCDLIB32.DLL -> %SystemRoot%\PCDLIB32.DLL -> Eastman Kodak [Ver = 3, 0, 0, 0 | Size = 212480 bytes | Created Date = 7/2/2007 6:26:34 AM | Attr = ]
peernet -> %SystemRoot%\peernet -> [Folder | Created Date = 7/2/2007 5:02:25 AM | Attr = ]
Prefetch -> %SystemRoot%\Prefetch -> [Folder | Created Date = 7/2/2007 5:07:45 AM | Attr = ]
provisioning -> %SystemRoot%\provisioning -> [Folder | Created Date = 7/2/2007 5:02:25 AM | Attr = ]
QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Created Date = 7/2/2007 7:12:53 AM | Attr = ]
QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Created Date = 7/2/2007 7:12:53 AM | Attr = H ]
ServicePackFiles -> %SystemRoot%\ServicePackFiles -> [Folder | Created Date = 7/2/2007 5:01:07 AM | Attr = ]
setup.pss -> %SystemRoot%\setup.pss -> [Folder | Created Date = 7/2/2007 6:30:52 AM | Attr = ]
SHELLNEW -> %SystemRoot%\SHELLNEW -> [Folder | Created Date = 7/2/2007 6:46:18 AM | Attr = ]
slrundll.exe -> %SystemRoot%\slrundll.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 32866 bytes | Created Date = 7/2/2007 5:02:26 AM | Attr = ]
SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Created Date = 7/2/2007 5:07:51 AM | Attr = ]
Sun -> %SystemRoot%\Sun -> [Folder | Created Date = 7/2/2007 7:40:48 PM | Attr = ]
SxsCaPendDel -> %SystemRoot%\SxsCaPendDel -> [Folder | Created Date = 7/3/2007 6:14:46 PM | Attr = ]
temp -> %SystemRoot%\temp -> [Folder | Created Date = 7/17/2007 9:13:46 PM | Attr = ]
Easy Internet Sign-up.job -> %SystemRoot%\tasks\Easy Internet Sign-up.job -> [Ver = | Size = 272 bytes | Created Date = 7/2/2007 6:32:09 AM | Attr = ]
ActiveScan -> %System32%\ActiveScan -> [Folder | Created Date = 7/13/2007 11:46:49 PM | Attr = ]
AegisE5.dll -> %System32%\AegisE5.dll -> Meetinghouse Data Communications [Ver = 1, 19, 0, 4 | Size = 1085440 bytes | Created Date = 7/2/2007 5:27:11 AM | Attr = ]
asuninst.exe -> %System32%\asuninst.exe -> Panda Software [Ver = 1, 0, 0, 2 | Size = 73728 bytes | Created Date = 7/13/2007 11:47:31 PM | Attr = ]
ati2cqag.dll -> %System32%\ati2cqag.dll -> ATI Technologies Inc. [Ver = 6.14.10.0233 | Size = 229376 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
ati2dvaa.dll -> %System32%\ati2dvaa.dll -> ATI Technologies Inc. [Ver = 6.13.10.5019 | Size = 377984 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ]
ati2dvag.dll -> %System32%\ati2dvag.dll -> ATI Technologies Inc. [Ver = 6.14.10.6396 | Size = 374784 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati2edxx.dll -> %System32%\ati2edxx.dll -> ATI Technologies, Inc. [Ver = 6, 14, 10, 2488 | Size = 34816 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati2evxx.dll -> %System32%\ati2evxx.dll -> [Ver = | Size = 86016 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati2evxx.exe -> %System32%\ati2evxx.exe -> [Ver = | Size = 376832 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
Ati2mdxx.exe -> %System32%\Ati2mdxx.exe -> ATI Technologies, Inc. [Ver = 4.13.3 | Size = 28672 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati3d1ag.dll -> %System32%\ati3d1ag.dll -> ATI Technologies Inc. [Ver = 6.14.10.3976 | Size = 853088 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati3d2ag.dll -> %System32%\ati3d2ag.dll -> ATI Technologies Inc. [Ver = 6.14.10.3976 | Size = 1039264 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ati3duag.dll -> %System32%\ati3duag.dll -> ATI Technologies Inc. [Ver = 6.14.10.0200 | Size = 1164032 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ATIDDC.DLL -> %System32%\ATIDDC.DLL -> ATI Technologies Inc. [Ver = 6.14.10.5 | Size = 81920 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
atiiiexx.dll -> %System32%\atiiiexx.dll -> ATI Technologies Inc. [Ver = 6.14.10.3010 | Size = 229376 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
atioglxx.dll -> %System32%\atioglxx.dll -> ATI Technologies Inc. [Ver = 6.14.10.4010 | Size = 4595712 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
atipdlxx.dll -> %System32%\atipdlxx.dll -> ATI Technologies, Inc. [Ver = 6, 14, 10, 2485 | Size = 110592 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
atitvo32.dll -> %System32%\atitvo32.dll -> ATI Technologies Inc. [Ver = 6.14.10.4100 | Size = 17408 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ativcoxx.dll -> %System32%\ativcoxx.dll -> ATI Technologies, Inc. [Ver = 6.13.10.0005 | Size = 24064 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
ativdaxx.ax -> %System32%\ativdaxx.ax -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 9728 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ]
ativmvxx.ax -> %System32%\ativmvxx.ax -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 23040 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ]
ativtmxx.dll -> %System32%\ativtmxx.dll -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 32768 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ]
ativvaxx.dll -> %System32%\ativvaxx.dll -> ATI Technologies Inc. [Ver = 6.14.01.0009 | Size = 516768 bytes | Created Date = 7/2/2007 5:02:31 AM | Attr = ]
B11gUSB.dll -> %System32%\B11gUSB.dll -> [Ver = | Size = 40960 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
CanonIJ Uninstaller Information -> %System32%\CanonIJ Uninstaller Information -> [Folder | Created Date = 7/2/2007 6:05:45 AM | Attr = H ]
CNCC600.DLL -> %System32%\CNCC600.DLL -> CANON INC. [Ver = 0, 2, 5, 0 | Size = 1134592 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ]
CNCI600.DLL -> %System32%\CNCI600.DLL -> CANON INC. [Ver = 2, 0, 0, 0 | Size = 57344 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ]
CNCL600.DLL -> %System32%\CNCL600.DLL -> Canon Inc. [Ver = 1.00 | Size = 135168 bytes | Created Date = 7/2/2007 6:05:38 AM | Attr = ]
cnco600.dll -> %System32%\cnco600.dll -> Canon Inc. [Ver = 1.0 | Size = 106496 bytes | Created Date = 7/2/2007 6:05:39 AM | Attr = ]
CNMLM87.DLL -> %System32%\CNMLM87.DLL -> CANON INC. [Ver = 1.95.2.70 | Size = 161792 bytes | Created Date = 7/2/2007 6:05:48 AM | Attr = ]
cpuinf32.dll -> %System32%\cpuinf32.dll -> Intel Corporation [Ver = 1.0.0.4 | Size = 49152 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
d3d9caps.dat -> %System32%\d3d9caps.dat -> [Ver = | Size = 3688 bytes | Created Date = 7/2/2007 7:16:01 AM | Attr = ]
dllcache -> %System32%\dllcache -> [Folder | Created Date = 7/2/2007 1:05:10 PM | Attr = RHS]
DRVSTORE -> %System32%\DRVSTORE -> [Folder | Created Date = 7/2/2007 7:12:07 AM | Attr = ]
GTNDIS3.VXD -> %System32%\GTNDIS3.VXD -> [Ver = | Size = 31930 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
GTNDIS5.sys -> %System32%\GTNDIS5.sys -> Printing Communications Assoc., Inc. (PCAUSA) [Ver = 5.03.16.54 | Size = 15872 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
GTW32N50.dll -> %System32%\GTW32N50.dll -> [Ver = 1.0.0.1 | Size = 94208 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Created Date = 7/13/2007 11:46:53 PM | Attr = ]
hsfcisp2.dll -> %System32%\hsfcisp2.dll -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 32285 bytes | Created Date = 7/2/2007 5:02:30 AM | Attr = ]
ieencode.dll -> %System32%\ieencode.dll -> [Ver = | Size = 81920 bytes | Created Date = 7/2/2007 5:02:30 AM | Attr = ]
lmpgad.ax -> %System32%\lmpgad.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 47104 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
lmpgspl.ax -> %System32%\lmpgspl.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 106496 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
lmpgvd.ax -> %System32%\lmpgvd.ax -> Ligos Corporation [Ver = 4.0.0.110 | Size = 94208 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
malslib.dll -> %System32%\malslib.dll -> AvantGo, Inc. [Ver = 3.3 Build 864 | Size = 114688 bytes | Created Date = 7/4/2007 1:02:54 AM | Attr = ]
mbllnk.cpl -> %System32%\mbllnk.cpl -> AvantGo, Inc. [Ver = 3.3 Build 864 | Size = 69632 bytes | Created Date = 7/4/2007 1:02:55 AM | Attr = ]
mobileV.acm -> %System32%\mobileV.acm -> [Ver = | Size = 57422 bytes | Created Date = 7/4/2007 1:02:55 AM | Attr = ]
mplaa6.dll -> %System32%\mplaa6.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 81920 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplam6.dll -> %System32%\mplam6.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 69632 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplapx.dll -> %System32%\mplapx.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 69632 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplaw7.dll -> %System32%\mplaw7.dll -> Ligos Corporation [Ver = 1.5.0.5 | Size = 81920 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplva6.dll -> %System32%\mplva6.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1675264 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplvm6.dll -> %System32%\mplvm6.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1581056 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplvpx.dll -> %System32%\mplvpx.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1150976 bytes | Created Date = 7/2/2007 6:27:15 AM | Attr = ]
mplvw7.dll -> %System32%\mplvw7.dll -> Ligos Corporation [Ver = 2.0.0.1 | Size = 1630208 bytes | Created Date = 7/2/2007 6:27:16 AM | Attr = ]
mtxparhd.dll -> %System32%\mtxparhd.dll -> Matrox Graphics Inc. [Ver = 6.13.01.1296 | Size = 1737856 bytes | Created Date = 7/2/2007 5:02:29 AM | Attr = ]
pavas.ico -> %System32%\pavas.ico -> [Ver = | Size = 30590 bytes | Created Date = 7/13/2007 11:46:52 PM | Attr = ]
pncrt.dll -> %System32%\pncrt.dll -> Real Networks, Inc [Ver = 6.0.0.0 | Size = 278528 bytes | Created Date = 7/2/2007 6:25:51 PM | Attr = ]
pndx5016.dll -> %System32%\pndx5016.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 6656 bytes | Created Date = 7/2/2007 6:25:52 PM | Attr = ]
pndx5032.dll -> %System32%\pndx5032.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 5632 bytes | Created Date = 7/2/2007 6:25:52 PM | Attr = ]
PreInstall -> %System32%\PreInstall -> [Folder | Created Date = 7/2/2007 8:14:37 AM | Attr = ]
QuickTime.qts -> %System32%\QuickTime.qts -> Apple Inc. [Ver = 7.2 | Size = 49152 bytes | Created Date = 6/29/2007 5:24:58 AM | Attr = ]
QuickTimeVR.qtx -> %System32%\QuickTimeVR.qtx -> Apple Inc. [Ver = 7.2 | Size = 65536 bytes | Created Date = 6/29/2007 5:24:58 AM | Attr = ]
rmoc3260.dll -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Created Date = 7/2/2007 6:25:59 PM | Attr = ]
s3gnb.dll -> %System32%\s3gnb.dll -> S3 Graphics, Inc. [Ver = 6.14.10.0012-13.94.12 | Size = 397056 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
Samsung PC Studio Codecs -> %System32%\Samsung PC Studio Codecs -> [Folder | Created Date = 7/2/2007 7:06:59 AM | Attr = ]
Samsung_USB_Drivers -> %System32%\Samsung_USB_Drivers -> [Folder | Created Date = 7/2/2007 7:07:06 AM | Attr = ]
slcoinst.dll -> %System32%\slcoinst.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 73832 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
slextspk.dll -> %System32%\slextspk.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 286792 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
slgen.dll -> %System32%\slgen.dll -> Smart Link [Ver = 3.80.01MC15 | Size = 188508 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
slrundll.exe -> %System32%\slrundll.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 32866 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
slserv.exe -> %System32%\slserv.exe -> Smart Link [Ver = 3.80.01MC15 | Size = 73796 bytes | Created Date = 7/2/2007 5:02:28 AM | Attr = ]
SoftwareDistribution -> %System32%\SoftwareDistribution -> [Folder | Created Date = 7/2/2007 5:54:03 AM | Attr = ]
swreg.exe -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
swsc.exe -> %System32%\swsc.exe -> SteelWerX [Ver = 2.0.0.0 | Size = 370688 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
swxcacls.exe -> %System32%\swxcacls.exe -> SteelWerX [Ver = 1.0.1.1 | Size = 212480 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Created Date = 7/2/2007 7:07:02 AM | Attr = ]
UnInstall_Driver.ico -> %System32%\UnInstall_Driver.ico -> [Ver = | Size = 22486 bytes | Created Date = 7/2/2007 7:07:52 AM | Attr = R ]
vfind.exe -> %System32%\vfind.exe -> [Ver = | Size = 49152 bytes | Created Date = 7/17/2007 8:43:05 PM | Attr = ]
ZPORT4AS.dll -> %System32%\ZPORT4AS.dll -> [Ver = | Size = 11776 bytes | Created Date = 7/13/2007 11:47:31 PM | Attr = ]
ieencode.dll -> %System32%\dllcache\ieencode.dll -> [Ver = | Size = 81920 bytes | Created Date = 7/2/2007 5:02:30 AM | Attr = ]
adv01nt5.dll -> %System32%\drivers\adv01nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 4255 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv02nt5.dll -> %System32%\drivers\adv02nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3967 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv05nt5.dll -> %System32%\drivers\adv05nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3615 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv07nt5.dll -> %System32%\drivers\adv07nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3647 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv08nt5.dll -> %System32%\drivers\adv08nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3135 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv09nt5.dll -> %System32%\drivers\adv09nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3711 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
adv11nt5.dll -> %System
Go to the top of the page
 
+Quote Post
m8edy
post Jul 18 2007, 08:44 PM
Post #14


Member
**
Posts: 13
OS: Windows XP SP2



The rest of the New winpfind3 log:

adv11nt5.dll -> %System32%\drivers\adv11nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3775 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
AegisP.sys -> %System32%\drivers\AegisP.sys -> Meetinghouse Data Communications [Ver = 3.0.0.6 | Size = 15939 bytes | Created Date = 7/2/2007 5:27:27 AM | Attr = ]
amdagp.sys -> %System32%\drivers\amdagp.sys -> Advanced Micro Devices, Inc. [Ver = 5.00 (xpsp_sp2_rtm.040803-2158) | Size = 43008 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1btxx.sys -> %System32%\drivers\ati1btxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 56623 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1mdxx.sys -> %System32%\drivers\ati1mdxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 11615 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1pdxx.sys -> %System32%\drivers\ati1pdxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 12047 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1raxx.sys -> %System32%\drivers\ati1raxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 30671 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1rvxx.sys -> %System32%\drivers\ati1rvxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 63663 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1snxx.sys -> %System32%\drivers\ati1snxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 26367 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1ttxx.sys -> %System32%\drivers\ati1ttxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 21343 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1tuxx.sys -> %System32%\drivers\ati1tuxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 36463 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1xbxx.sys -> %System32%\drivers\ati1xbxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 29455 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati1xsxx.sys -> %System32%\drivers\ati1xsxx.sys -> ATI Technologies Inc. [Ver = 6.13.10.6131 | Size = 34735 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati2mtaa.sys -> %System32%\drivers\ati2mtaa.sys -> ATI Technologies Inc. [Ver = 6.13.10.5019 | Size = 327040 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ati2mtag.sys -> %System32%\drivers\ati2mtag.sys -> ATI Technologies Inc. [Ver = 6.14.10.6396 | Size = 620032 bytes | Created Date = 7/2/2007 1:17:41 PM | Attr = ]
atinbtxx.sys -> %System32%\drivers\atinbtxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 57856 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinmdxx.sys -> %System32%\drivers\atinmdxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 13824 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinpdxx.sys -> %System32%\drivers\atinpdxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 14336 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinraxx.sys -> %System32%\drivers\atinraxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 52224 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinrvxx.sys -> %System32%\drivers\atinrvxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 104960 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinsnxx.sys -> %System32%\drivers\atinsnxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 28672 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinttxx.sys -> %System32%\drivers\atinttxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 13824 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atintuxx.sys -> %System32%\drivers\atintuxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 73216 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinxbxx.sys -> %System32%\drivers\atinxbxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 31744 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atinxsxx.sys -> %System32%\drivers\atinxsxx.sys -> ATI Technologies Inc. [Ver = 6.14.10.6238 | Size = 63488 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
ativmc20.cod -> %System32%\drivers\ativmc20.cod -> [Ver = | Size = 64352 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atv01nt5.dll -> %System32%\drivers\atv01nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 21183 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atv02nt5.dll -> %System32%\drivers\atv02nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11359 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atv04nt5.dll -> %System32%\drivers\atv04nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 25471 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atv06nt5.dll -> %System32%\drivers\atv06nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 14143 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
atv10nt5.dll -> %System32%\drivers\atv10nt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 17279 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
avg7core.sys -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Created Date = 7/2/2007 5:13:05 AM | Attr = ]
avg7rsw.sys -> %System32%\drivers\avg7rsw.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,340 | Size = 4224 bytes | Created Date = 7/2/2007 5:13:09 AM | Attr = ]
avg7rsxp.sys -> %System32%\drivers\avg7rsxp.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.442 | Size = 27776 bytes | Created Date = 7/2/2007 5:13:10 AM | Attr = ]
AvgAsCln.sys -> %System32%\drivers\AvgAsCln.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 10872 bytes | Created Date = 7/13/2007 4:43:54 AM | Attr = ]
avgclean.sys -> %System32%\drivers\avgclean.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 3968 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ]
avgmfx86.sys -> %System32%\drivers\avgmfx86.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.473 | Size = 19904 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ]
avgtdi.sys -> %System32%\drivers\avgtdi.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,346 | Size = 4960 bytes | Created Date = 7/2/2007 5:13:11 AM | Attr = ]
btwhid.sys -> %System32%\drivers\btwhid.sys -> Broadcom Corporation [Ver = 3.0.1.912 | Size = 44003 bytes | Created Date = 7/2/2007 5:50:10 AM | Attr = ]
ch7xxnt5.dll -> %System32%\drivers\ch7xxnt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 15423 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
cxthsfs2.cty -> %System32%\drivers\cxthsfs2.cty -> [Ver = | Size = 129045 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039
900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> %System32%\drivers\HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039
900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> [Ver = | Size = 4148 bytes | Created Date = 7/2/2007 6:30:03 AM | Attr = RHS]
hsfbs2s2.sys -> %System32%\drivers\hsfbs2s2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 220032 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
hsfcxts2.sys -> %System32%\drivers\hsfcxts2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 built by: WinDDK | Size = 685056 bytes | Created Date = 7/2/2007 5:02:33 AM | Attr = ]
hsfdpsp2.sys -> %System32%\drivers\hsfdpsp2.sys -> Conexant Systems, Inc. [Ver = 7.12.09 | Size = 1041536 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
mtlmnt5.sys -> %System32%\drivers\mtlmnt5.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 126686 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
mtlstrm.sys -> %System32%\drivers\mtlstrm.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 1309184 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
mtxparhm.sys -> %System32%\drivers\mtxparhm.sys -> Matrox Graphics Inc. [Ver = 6.13.01.1296 | Size = 452736 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
netwlan5.img -> %System32%\drivers\netwlan5.img -> [Ver = | Size = 67866 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
ntmtlfax.sys -> %System32%\drivers\ntmtlfax.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 180360 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
pfc.sys -> %System32%\drivers\pfc.sys -> Padus, Inc. [Ver = 2, 5, 0, 204 | Size = 10368 bytes | Created Date = 7/2/2007 6:27:17 AM | Attr = ]
recagent.sys -> %System32%\drivers\recagent.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 13776 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
rt2500usb.sys -> %System32%\drivers\rt2500usb.sys -> Ralink Technology Inc. [Ver = 1.02.00.0000 | Size = 140416 bytes | Created Date = 7/2/2007 5:27:12 AM | Attr = ]
s3gnbm.sys -> %System32%\drivers\s3gnbm.sys -> S3 Graphics, Inc. [Ver = 6.14.10.0012-13.94.12 | Size = 166912 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
siint5.dll -> %System32%\drivers\siint5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 3901 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
sisagp.sys -> %System32%\drivers\sisagp.sys -> Silicon Integrated Systems Corporation [Ver = 5.12.01.2010 (xpsp_sp2_rtm.040803-2158) | Size = 41088 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
slnt7554.sys -> %System32%\drivers\slnt7554.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 129535 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
slntamr.sys -> %System32%\drivers\slntamr.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 404990 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
slnthal.sys -> %System32%\drivers\slnthal.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 95424 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
slwdmsup.sys -> %System32%\drivers\slwdmsup.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 13240 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
StMp3Rec.sys -> %System32%\drivers\StMp3Rec.sys -> Generic [Ver = 1, 551, 0, 139 | Size = 38229 bytes | Created Date = 7/2/2007 6:56:22 AM | Attr = ]
vchnt5.dll -> %System32%\drivers\vchnt5.dll -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11325 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
wadv07nt.sys -> %System32%\drivers\wadv07nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11807 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
wadv08nt.sys -> %System32%\drivers\wadv08nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11295 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
wadv09nt.sys -> %System32%\drivers\wadv09nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11871 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
wadv11nt.sys -> %System32%\drivers\wadv11nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 11935 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
watv06nt.sys -> %System32%\drivers\watv06nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 22271 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]
watv10nt.sys -> %System32%\drivers\watv10nt.sys -> Intel® Corporation [Ver = 6.13.01.3198 | Size = 25471 bytes | Created Date = 7/2/2007 5:02:32 AM | Attr = ]

[Files/Folders - Modified Within 30 days]
$VAULT$.AVG -> %SystemDrive%\$VAULT$.AVG -> [Folder | Modified Date = 7/14/2007 6:34:34 AM | Attr = RH ]
BOOT.BAK -> %SystemDrive%\BOOT.BAK -> [Ver = | Size = 196 bytes | Modified Date = 7/2/2007 7:23:36 AM | Attr = RHS]
boot.ini -> %SystemDrive%\boot.ini -> [Ver = | Size = 283 bytes | Modified Date = 7/2/2007 6:03:24 AM | Attr = RHS]
cmdcons -> %SystemDrive%\cmdcons -> [Folder | Modified Date = 7/2/2007 7:31:12 AM | Attr = RHS]
Documents and Settings -> %SystemDrive%\Documents and Settings -> [Folder | Modified Date = 7/13/2007 5:49:56 AM | Attr = ]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1341706240 bytes | Modified Date = 7/17/2007 10:07:06 PM | Attr = HS]
hp -> %SystemDrive%\hp -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = H ]
I386 -> %SystemDrive%\I386 -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = ]
IPH.PH -> %SystemDrive%\IPH.PH -> [Ver = | Size = 1106 bytes | Modified Date = 7/3/2007 12:35:14 AM | Attr = H ]
MSOCache -> %SystemDrive%\MSOCache -> [Folder | Modified Date = 7/2/2007 7:43:44 AM | Attr = RH ]
My Downloads -> %SystemDrive%\My Downloads -> [Folder | Modified Date = 7/2/2007 7:22:12 PM | Attr = ]
NTDETECT.COM -> %SystemDrive%\NTDETECT.COM -> [Ver = | Size = 47564 bytes | Modified Date = 7/2/2007 5:59:30 AM | Attr = RHS]
Program Files -> %ProgramFiles% -> [Folder | Modified Date = 7/15/2007 10:22:00 AM | Attr = R ]
QooBox -> %SystemDrive%\QooBox -> [Folder | Modified Date = 7/17/2007 9:54:54 PM | Attr = ]
RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Modified Date = 7/2/2007 7:32:54 AM | Attr = HS]
System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Modified Date = 7/2/2007 6:07:30 AM | Attr = HS]
WINDOWS -> %SystemRoot% -> [Folder | Modified Date = 7/17/2007 10:13:48 PM | Attr = ]
_OTMoveIt -> %SystemDrive%\_OTMoveIt -> [Folder | Modified Date = 7/17/2007 10:43:08 PM | Attr = ]
$hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Modified Date = 7/13/2007 3:59:48 AM | Attr = H ]
$MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Modified Date = 7/2/2007 9:15:08 AM | Attr = H ]
$NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Modified Date = 7/2/2007 5:58:10 AM | Attr = H ]
$NtUninstallKB821557$ -> %SystemRoot%\$NtUninstallKB821557$ -> [Folder | Modified Date = 7/2/2007 2:13:30 PM | Attr = H ]
$NtUninstallKB823559$ -> %SystemRoot%\$NtUninstallKB823559$ -> [Folder | Modified Date = 7/2/2007 2:13:30 PM | Attr = H ]
$NtUninstallKB835409$ -> %SystemRoot%\$NtUninstallKB835409$ -> [Folder | Modified Date = 7/2/2007 5:41:38 AM | Attr = H ]
$NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Modified Date = 7/2/2007 8:47:58 PM | Attr = H ]
$NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Modified Date = 7/2/2007 8:49:30 PM | Attr = H ]
$NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Modified Date = 7/2/2007 8:48:18 PM | Attr = H ]
$NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Modified Date = 7/2/2007 8:48:10 PM | Attr = H ]
$NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Modified Date = 7/2/2007 8:49:16 PM | Attr = H ]
$NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Modified Date = 7/2/2007 8:49:08 PM | Attr = H ]
$NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Modified Date = 7/2/2007 9:11:04 PM | Attr = H ]
$NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Modified Date = 7/2/2007 8:50:06 PM | Attr = H ]
$NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Modified Date = 7/2/2007 8:49:24 PM | Attr = H ]
$NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Modified Date = 7/2/2007 8:51:04 PM | Attr = H ]
$NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Modified Date = 7/2/2007 8:51:54 PM | Attr = H ]
$NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Modified Date = 7/2/2007 8:50:44 PM | Attr = H ]
$NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Modified Date = 7/2/2007 8:51:44 PM | Attr = H ]
$NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Modified Date = 7/2/2007 8:49:44 PM | Attr = H ]
$NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Modified Date = 7/2/2007 9:14:38 AM | Attr = H ]
$NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Modified Date = 7/2/2007 8:51:32 PM | Attr = H ]
$NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Modified Date = 7/2/2007 8:51:20 PM | Attr = H ]
$NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Modified Date = 7/2/2007 8:56:06 PM | Attr = H ]
$NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Modified Date = 7/2/2007 8:54:22 PM | Attr = H ]
$NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Modified Date = 7/2/2007 8:53:48 PM | Attr = H ]
$NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Modified Date = 7/2/2007 8:49:50 PM | Attr = H ]
$NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Modified Date = 7/2/2007 8:52:54 PM | Attr = H ]
$NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Modified Date = 7/2/2007 8:54:50 PM | Attr = H ]
$NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Modified Date = 7/2/2007 8:53:58 PM | Attr = H ]
$NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Modified Date = 7/2/2007 8:54:10 PM | Attr = H ]
$NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Modified Date = 7/2/2007 8:54:58 PM | Attr = H ]
$NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Modified Date = 7/2/2007 8:56:16 PM | Attr = H ]
$NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Modified Date = 7/2/2007 8:54:42 PM | Attr = H ]
$NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Modified Date = 7/2/2007 8:57:48 PM | Attr = H ]
$NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Modified Date = 7/2/2007 8:55:58 PM | Attr = H ]
$NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Modified Date = 7/2/2007 8:55:42 PM | Attr = H ]
$NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Modified Date = 7/2/2007 8:55:06 PM | Attr = H ]
$NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Modified Date = 7/2/2007 8:57:24 PM | Attr = H ]
$NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Modified Date = 7/2/2007 8:57:56 PM | Attr = H ]
$NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Modified Date = 7/2/2007 8:56:54 PM | Attr = H ]
$NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Modified Date = 7/2/2007 8:59:04 PM | Attr = H ]
$NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Modified Date = 7/2/2007 8:57:04 PM | Attr = H ]
$NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Modified Date = 7/2/2007 8:56:46 PM | Attr = H ]
$NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Modified Date = 7/2/2007 8:57:38 PM | Attr = H ]
$NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Modified Date = 7/2/2007 9:05:02 PM | Attr = H ]
$NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Modified Date = 7/2/2007 8:57:14 PM | Attr = H ]
$NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Modified Date = 7/2/2007 8:59:12 PM | Attr = H ]
$NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Modified Date = 7/2/2007 9:11:14 PM | Attr = H ]
$NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Modified Date = 7/2/2007 8:58:06 PM | Attr = H ]
$NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Modified Date = 7/2/2007 8:58:16 PM | Attr = H ]
$NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Modified Date = 7/2/2007 8:59:26 PM | Attr = H ]
$NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Modified Date = 7/2/2007 8:59:38 PM | Attr = H ]
$NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Modified Date = 7/2/2007 8:58:48 PM | Attr = H ]
$NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Modified Date = 7/2/2007 9:00:42 PM | Attr = H ]
$NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Modified Date = 7/2/2007 9:00:20 PM | Attr = H ]
$NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Modified Date = 7/2/2007 8:59:52 PM | Attr = H ]
$NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Modified Date = 7/2/2007 9:02:50 PM | Attr = H ]
$NtUninstallKB923723$ -> %SystemRoot%\$NtUninstallKB923723$ -> [Folder | Modified Date = 7/2/2007 9:11:30 PM | Attr = H ]
$NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Modified Date = 7/2/2007 9:01:36 PM | Attr = H ]
$NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Modified Date = 7/2/2007 9:00:30 PM | Attr = H ]
$NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Modified Date = 7/2/2007 9:00:54 PM | Attr = H ]
$NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Modified Date = 7/2/2007 9:00:02 PM | Attr = H ]
$NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Modified Date = 7/2/2007 9:04:16 PM | Attr = H ]
$NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Modified Date = 7/2/2007 9:02:20 PM | Attr = H ]
$NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Modified Date = 7/2/2007 9:08:04 PM | Attr = H ]
$NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Modified Date = 7/2/2007 9:01:50 PM | Attr = H ]
$NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Modified Date = 7/2/2007 9:05:18 PM | Attr = H ]
$NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Modified Date = 7/2/2007 9:04:42 PM | Attr = H ]
$NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Modified Date = 7/2/2007 9:03:58 PM | Attr = H ]
$NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Modified Date = 7/2/2007 9:11:38 PM | Attr = H ]
$NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Modified Date = 7/2/2007 9:03:16 PM | Attr = H ]
$NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Modified Date = 7/2/2007 9:03:38 PM | Attr = H ]
$NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Modified Date = 7/2/2007 9:12:44 PM | Attr = H ]
$NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Modified Date = 7/2/2007 9:03:06 PM | Attr = H ]
$NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Modified Date = 7/2/2007 9:10:10 PM | Attr = H ]
$NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Modified Date = 7/2/2007 9:11:22 PM | Attr = H ]
$NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Modified Date = 7/2/2007 9:10:22 PM | Attr = H ]
$NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Modified Date = 7/2/2007 9:09:38 PM | Attr = H ]
$NtUninstallKB931836$ -> %SystemRoot%\$NtUninstallKB931836$ -> [Folder | Modified Date = 7/2/2007 9:05:46 PM | Attr = H ]
$NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Modified Date = 7/2/2007 9:10:54 PM | Attr = H ]
$NtUninstallKB933566$ -> %SystemRoot%\$NtUninstallKB933566$ -> [Folder | Modified Date = 7/2/2007 9:11:56 PM | Attr = H ]
$NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Modified Date = 7/2/2007 9:14:28 PM | Attr = H ]
$NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Modified Date = 7/2/2007 9:12:58 PM | Attr = H ]
$NtUninstallKB936357$ -> %SystemRoot%\$NtUninstallKB936357$ -> [Folder | Modified Date = 7/13/2007 4:07:16 AM | Attr = H ]
$NtUninstallQ328310$ -> %SystemRoot%\$NtUninstallQ328310$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ329112$ -> %SystemRoot%\$NtUninstallQ329112$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ329115$ -> %SystemRoot%\$NtUninstallQ329115$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ329170$ -> %SystemRoot%\$NtUninstallQ329170$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ329390$ -> %SystemRoot%\$NtUninstallQ329390$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallq329623$ -> %SystemRoot%\$NtUninstallq329623$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ329834$ -> %SystemRoot%\$NtUninstallQ329834$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ331958$ -> %SystemRoot%\$NtUninstallQ331958$ -> [Folder | Modified Date = 7/2/2007 7:26:16 AM | Attr = H ]
$NtUninstallQ810565$ -> %SystemRoot%\$NtUninstallQ810565$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ810577$ -> %SystemRoot%\$NtUninstallQ810577$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ810833$ -> %SystemRoot%\$NtUninstallQ810833$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ814033$ -> %SystemRoot%\$NtUninstallQ814033$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ814995$ -> %SystemRoot%\$NtUninstallQ814995$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ815485$ -> %SystemRoot%\$NtUninstallQ815485$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$NtUninstallQ817287$ -> %SystemRoot%\$NtUninstallQ817287$ -> [Folder | Modified Date = 7/2/2007 2:13:32 PM | Attr = H ]
$_hpcst$.hpc -> %SystemRoot%\$_hpcst$.hpc -> [Ver = | Size = 2464 bytes | Modified Date = 7/4/2007 2:04:46 AM | Attr = ]
addins -> %SystemRoot%\addins -> [Folder | Modified Date = 7/2/2007 2:13:46 PM | Attr = ]
AppPatch -> %SystemRoot%\AppPatch -> [Folder | Modified Date = 7/14/2007 2:18:20 AM | Attr = ]
assembly -> %SystemRoot%\assembly -> [Folder | Modified Date = 7/2/2007 2:13:16 PM | Attr = R S]
bootstat.dat -> %SystemRoot%\bootstat.dat -> [Ver = | Size = 2048 bytes | Modified Date = 7/17/2007 10:07:12 PM | Attr = S]
bthservsdp.dat -> %SystemRoot%\bthservsdp.dat -> [Ver = | Size = 12 bytes | Modified Date = 7/16/2007 3:41:34 AM | Attr = ]
catchme.exe -> %SystemRoot%\catchme.exe -> [Ver = | Size = 104960 bytes | Modified Date = 7/4/2007 7:21:06 PM | Attr = ]
CREATOR -> %SystemRoot%\CREATOR -> [Folder | Modified Date = 7/2/2007 2:17:38 PM | Attr = ]
Cursors -> %SystemRoot%\Cursors -> [Folder | Modified Date = 7/2/2007 2:13:36 PM | Attr = ]
Debug -> %SystemRoot%\Debug -> [Folder | Modified Date = 7/2/2007 6:08:34 AM | Attr = ]
Downloaded Installations -> %SystemRoot%\Downloaded Installations -> [Folder | Modified Date = 7/2/2007 7:25:16 AM | Attr = ]
Downloaded Program Files -> %SystemRoot%\Downloaded Program Files -> [Folder | Modified Date = 7/14/2007 2:19:04 AM | Attr = S]
DVDRegionFree.INI -> %SystemRoot%\DVDRegionFree.INI -> [Ver = | Size = 67 bytes | Modified Date = 7/17/2007 4:04:16 AM | Attr = ]
EHome -> %SystemRoot%\EHome -> [Folder | Modified Date = 7/2/2007 5:56:20 AM | Attr = ]
erdnt -> %SystemRoot%\erdnt -> [Folder | Modified Date = 7/17/2007 9:56:12 PM | Attr = ]
Fonts -> %SystemRoot%\Fonts -> [Folder | Modified Date = 7/11/2007 10:50:06 PM | Attr = R S]
Help -> %SystemRoot%\Help -> [Folder | Modified Date = 7/4/2007 2:03:00 AM | Attr = ]
ime -> %SystemRoot%\ime -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ]
imsins.BAK -> %SystemRoot%\imsins.BAK -> [Ver = | Size = 1355 bytes | Modified Date = 7/2/2007 9:14:32 PM | Attr = ]
inf -> %SystemRoot%\inf -> [Folder | Modified Date = 7/14/2007 4:34:48 AM | Attr = H ]
Installer -> %SystemRoot%\Installer -> [Folder | Modified Date = 7/16/2007 5:06:12 AM | Attr = HS]
MAXLINK.INI -> %SystemRoot%\MAXLINK.INI -> [Ver = | Size = 419 bytes | Modified Date = 7/2/2007 7:09:06 AM | Attr = ]
Media -> %SystemRoot%\Media -> [Folder | Modified Date = 7/2/2007 7:10:32 AM | Attr = ]
Microsoft.MIF -> %SystemRoot%\Microsoft.MIF -> [Ver = | Size = 2510 bytes | Modified Date = 7/4/2007 2:05:46 AM | Attr = ]
Minidump -> %SystemRoot%\Minidump -> [Folder | Modified Date = 7/11/2007 5:47:14 PM | Attr = ]
mozver.dat -> %SystemRoot%\mozver.dat -> [Ver = | Size = 1156 bytes | Modified Date = 7/3/2007 11:44:58 PM | Attr = ]
msagent -> %SystemRoot%\msagent -> [Folder | Modified Date = 7/2/2007 9:15:56 PM | Attr = ]
NeroDigital.ini -> %SystemRoot%\NeroDigital.ini -> [Ver = | Size = 116 bytes | Modified Date = 7/15/2007 9:05:56 AM | Attr = ]
nsreg.dat -> %SystemRoot%\nsreg.dat -> [Ver = | Size = 335 bytes | Modified Date = 7/3/2007 12:32:30 AM | Attr = ]
ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 376 bytes | Modified Date = 7/2/2007 7:48:44 AM | Attr = ]
Offline Web Pages -> %SystemRoot%\Offline Web Pages -> [Folder | Modified Date = 7/2/2007 2:13:16 PM | Attr = R ]
options -> %SystemRoot%\options -> [Folder | Modified Date = 7/2/2007 6:27:14 AM | Attr = ]
peernet -> %SystemRoot%\peernet -> [Folder | Modified Date = 7/2/2007 6:02:26 AM | Attr = ]
Prefetch -> %SystemRoot%\Prefetch -> [Folder | Modified Date = 7/17/2007 9:43:00 PM | Attr = ]
provisioning -> %SystemRoot%\provisioning -> [Folder | Modified Date = 7/2/2007 6:02:26 AM | Attr = ]
QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Modified Date = 7/2/2007 8:12:54 AM | Attr = ]
QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Modified Date = 7/17/2007 10:09:04 PM | Attr = H ]
RegisteredPackages -> %SystemRoot%\RegisteredPackages -> [Folder | Modified Date = 7/3/2007 9:24:18 PM | Attr = ]
Registration -> %SystemRoot%\Registration -> [Folder | Modified Date = 7/2/2007 8:46:52 PM | Attr = ]
security -> %SystemRoot%\security -> [Folder | Modified Date = 7/3/2007 9:32:16 PM | Attr = ]
ServicePackFiles -> %SystemRoot%\ServicePackFiles -> [Folder | Modified Date = 7/2/2007 6:01:08 AM | Attr = ]
setup.pss -> %SystemRoot%\setup.pss -> [Folder | Modified Date = 7/2/2007 7:30:54 AM | Attr = ]
setupapi.log.0.old -> %SystemRoot%\setupapi.log.0.old -> [Ver = | Size = 2266667 bytes | Modified Date = 7/2/2007 5:41:46 AM | Attr = ]
SHELLNEW -> %SystemRoot%\SHELLNEW -> [Folder | Modified Date = 7/2/2007 7:47:22 AM | Attr = ]
SMINST -> %SystemRoot%\SMINST -> [Folder | Modified Date = 7/2/2007 2:17:04 PM | Attr = ]
SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Modified Date = 7/14/2007 2:30:04 AM | Attr = ]
srchasst -> %SystemRoot%\srchasst -> [Folder | Modified Date = 7/2/2007 6:01:00 AM | Attr = ]
Sun -> %SystemRoot%\Sun -> [Folder | Modified Date = 7/2/2007 8:40:50 PM | Attr = ]
SxsCaPendDel -> %SystemRoot%\SxsCaPendDel -> [Folder | Modified Date = 7/3/2007 7:18:08 PM | Attr = ]
system -> %SystemRoot%\system -> [Folder | Modified Date = 7/14/2007 2:30:04 AM | Attr = ]
system.ini -> %SystemRoot%\system.ini -> [Ver = | Size = 231 bytes | Modified Date = 7/2/2007 7:21:34 AM | Attr = ]
system32 -> %System32% -> [Folder | Modified Date = 7/18/2007 8:49:04 AM | Attr = ]
Tasks -> %SystemRoot%\Tasks -> [Folder | Modified Date = 7/2/2007 5:55:30 AM | Attr = S]
temp -> %SystemRoot%\temp -> [Folder | Modified Date = 7/17/2007 10:13:48 PM | Attr = ]
twain_32 -> %SystemRoot%\twain_32 -> [Folder | Modified Date = 7/2/2007 7:05:46 AM | Attr = ]
Web -> %SystemRoot%\Web -> [Folder | Modified Date = 7/2/2007 5:59:42 AM | Attr = R ]
win.ini -> %SystemRoot%\win.ini -> [Ver = | Size = 662 bytes | Modified Date = 7/14/2007 12:53:30 AM | Attr = ]
WinSxS -> %SystemRoot%\WinSxS -> [Folder | Modified Date = 7/11/2007 10:58:02 PM | Attr = ]
WMSysPr9.prx -> %SystemRoot%\WMSysPr9.prx -> [Ver = | Size = 316640 bytes | Modified Date = 7/3/2007 9:23:32 PM | Attr = ]
Easy Internet Sign-up.job -> %SystemRoot%\tasks\Easy Internet Sign-up.job -> [Ver = | Size = 272 bytes | Modified Date = 7/2/2007 7:32:18 AM | Attr = ]
SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Modified Date = 7/17/2007 10:07:18 PM | Attr = H ]
$winnt$.inf -> %System32%\$winnt$.inf -> [Ver = | Size = 993 bytes | Modified Date = 7/2/2007 7:28:40 AM | Attr = ]
ActiveScan -> %System32%\ActiveScan -> [Folder | Modified Date = 7/14/2007 2:30:08 AM | Attr = ]
CanonIJ Uninstaller Information -> %System32%\CanonIJ Uninstaller Information -> [Folder | Modified Date = 7/2/2007 7:05:46 AM | Attr = H ]
CatRoot -> %System32%\CatRoot -> [Folder | Modified Date = 7/4/2007 3:02:42 AM | Attr = ]
CatRoot2 -> %System32%\CatRoot2 -> [Folder | Modified Date = 7/18/2007 8:48:56 AM | Attr = ]
Com -> %System32%\Com -> [Folder | Modified Date = 7/2/2007 8:53:14 PM | Attr = ]
config -> %System32%\config -> [Folder | Modified Date = 7/14/2007 2:30:38 AM | Attr = ]
d3d9caps.dat -> %System32%\d3d9caps.dat -> [Ver = | Size = 3688 bytes | Modified Date = 7/15/2007 6:27:50 AM | Attr = ]
DirectX -> %System32%\DirectX -> [Folder | Modified Date = 7/2/2007 5:00:46 PM | Attr = ]
dllcache -> %System32%\dllcache -> [Folder | Modified Date = 7/18/2007 8:49:08 AM | Attr = RHS]
drivers -> %System32%\drivers -> [Folder | Modified Date = 7/17/2007 10:43:08 PM | Attr = ]
DRVSTORE -> %System32%\DRVSTORE -> [Folder | Modified Date = 7/2/2007 8:34:42 AM | Attr = ]
FNTCACHE.DAT -> %System32%\FNTCACHE.DAT -> [Ver = | Size = 1542672 bytes | Modified Date = 7/16/2007 3:42:52 AM | Attr = ]
FxsTmp -> %System32%\FxsTmp -> [Folder | Modified Date = 7/3/2007 4:01:00 AM | Attr = ]
Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Modified Date = 7/14/2007 12:46:56 AM | Attr = ]
ias -> %System32%\ias -> [Folder | Modified Date = 7/2/2007 2:14:50 PM | Attr = ]
icsxml -> %System32%\icsxml -> [Folder | Modified Date = 7/2/2007 2:14:52 PM | Attr = ]
Macromed -> %System32%\Macromed -> [Folder | Modified Date = 7/2/2007 7:36:26 AM | Attr = ]
mui -> %System32%\mui -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ]
npp -> %System32%\npp -> [Folder | Modified Date = 7/2/2007 6:01:02 AM | Attr = ]
oobe -> %System32%\oobe -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ]
pavas.ico -> %System32%\pavas.ico -> [Ver = | Size = 30590 bytes | Modified Date = 7/14/2007 12:46:54 AM | Attr = ]
perfc009.dat -> %System32%\perfc009.dat -> [Ver = | Size = 53552 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ]
perfh009.dat -> %System32%\perfh009.dat -> [Ver = | Size = 382000 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ]
PerfStringBackup.INI -> %System32%\PerfStringBackup.INI -> [Ver = | Size = 441626 bytes | Modified Date = 7/2/2007 9:18:42 PM | Attr = ]
pncrt.dll -> %System32%\pncrt.dll -> Real Networks, Inc [Ver = 6.0.0.0 | Size = 278528 bytes | Modified Date = 7/2/2007 7:25:52 PM | Attr = ]
pndx5016.dll -> %System32%\pndx5016.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 6656 bytes | Modified Date = 7/2/2007 7:25:54 PM | Attr = ]
pndx5032.dll -> %System32%\pndx5032.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 5632 bytes | Modified Date = 7/2/2007 7:25:54 PM | Attr = ]
PreInstall -> %System32%\PreInstall -> [Folder | Modified Date = 7/2/2007 9:14:38 AM | Attr = ]
QuickTime.qts -> %System32%\QuickTime.qts -> Apple Inc. [Ver = 7.2 | Size = 49152 bytes | Modified Date = 6/29/2007 6:24:58 AM | Attr = ]
QuickTimeVR.qtx -> %System32%\QuickTimeVR.qtx -> Apple Inc. [Ver = 7.2 | Size = 65536 bytes | Modified Date = 6/29/2007 6:24:58 AM | Attr = ]
ras -> %System32%\ras -> [Folder | Modified Date = 7/2/2007 2:15:04 PM | Attr = ]
ReinstallBackups -> %System32%\ReinstallBackups -> [Folder | Modified Date = 7/2/2007 7:24:40 AM | Attr = ]
Restore -> %System32%\Restore -> [Folder | Modified Date = 7/2/2007 7:22:48 AM | Attr = ]
rmoc3260.dll -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Modified Date = 7/2/2007 7:26:00 PM | Attr = ]
Samsung PC Studio Codecs -> %System32%\Samsung PC Studio Codecs -> [Folder | Modified Date = 7/2/2007 8:07:04 AM | Attr = ]
Samsung_USB_Drivers -> %System32%\Samsung_USB_Drivers -> [Folder | Modified Date = 7/2/2007 8:07:08 AM | Attr = ]
Setup -> %System32%\Setup -> [Folder | Modified Date = 7/2/2007 6:02:38 AM | Attr = ]
SoftwareDistribution -> %System32%\SoftwareDistribution -> [Folder | Modified Date = 7/2/2007 6:54:04 AM | Attr = ]
swreg.exe -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Modified Date = 7/11/2007 4:59:06 PM | Attr = ]
Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Modified Date = 7/14/2007 12:46:56 AM | Attr = ]
usmt -> %System32%\usmt -> [Folder | Modified Date = 7/2/2007 6:00:42 AM | Attr = ]
wbem -> %System32%\wbem -> [Folder | Modified Date = 7/14/2007 2:34:20 AM | Attr = ]
wpa.dbl -> %System32%\wpa.dbl -> [Ver = | Size = 1158 bytes | Modified Date = 7/16/2007 3:43:38 AM | Attr = ]
AegisP.sys -> %System32%\drivers\AegisP.sys -> Meetinghouse Data Communications [Ver = 3.0.0.6 | Size = 15939 bytes | Modified Date = 7/2/2007 6:27:28 AM | Attr = ]
avg7core.sys -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ]
avg7rsw.sys -> %System32%\drivers\avg7rsw.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,340 | Size = 4224 bytes | Modified Date = 7/2/2007 6:13:10 AM | Attr = ]
avg7rsxp.sys -> %System32%\drivers\avg7rsxp.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.442 | Size = 27776 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ]
avgclean.sys -> %System32%\drivers\avgclean.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 3968 bytes | Modified Date = 7/2/2007 6:13:12 AM | Attr = ]
avgmfx86.sys -> %System32%\drivers\avgmfx86.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.473 | Size = 19904 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ]
avgtdi.sys -> %System32%\drivers\avgtdi.sys -> GRISOFT, s.r.o. [Ver = 7,0,0,346 | Size = 4960 bytes | Modified Date = 7/2/2007 6:13:12 AM | Attr = ]
etc -> %System32%\drivers\etc -> [Folder | Modified Date = 7/17/2007 10:08:10 PM | Attr = ]
HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039
900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> %System32%\drivers\HP_DW227A-ABU t430.uk_YC_Pavi_QCZB405_E41GBheBLF3_4_IMS-6575_SMICRO-STAR INTERNATIONAL CO., LTD_V3.10_B3.06_T031016_WXH1_L409_M1280_J41_7Intel_8Celeron_92.7_110397007_N1039
900_P_Z14F12F00_K_A10397012_U10397001_G10025964_O.MRK -> [Ver = | Size = 4148 bytes | Modified Date = 7/2/2007 7:30:04 AM | Attr = RHS]

[File String Scan - Non-Microsoft Only]
WSUD , -> %System32%\ALSNDMGR.CPL -> Realtek Semiconductor Corp. [Ver = 2.2.0.34 | Size = 16121856 bytes | Modified Date = 9/20/2004 3:20:44 PM | Attr = ]
PEC2 , -> %System32%\dfrg.msc -> [Ver = | Size = 41397 bytes | Modified Date = 9/24/2003 10:30:00 AM | Attr = ]
PEC2 , PECompact2 , -> %System32%\DivX.dll -> DivXNetworks [Ver = 6,0,0,1571 | Size = 692736 bytes | Modified Date = 6/9/2005 9:32:28 PM | Attr = ]
Thawte Consulting , -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2764 | Size = 185952 bytes | Modified Date = 7/2/2007 7:26:00 PM | Attr = ]
UPX! , UPX0 , -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.7 | Size = 139776 bytes | Modified Date = 7/11/2007 4:59:06 PM | Attr = ]
winsync , -> %System32%\wbdbase.deu -> [Ver = | Size = 1309184 bytes | Modified Date = 9/24/2003 4:19:00 AM | Attr = ]
UPX! , FSG! , PEC2 , aspack , -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.476 | Size = 820928 bytes | Modified Date = 7/2/2007 6:36:44 AM | Attr = ]
PTech , -> %System32%\drivers\mtlstrm.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 1309184 bytes | Modified Date = 8/3/2004 10:41:38 PM | Attr = ]

< End of report >
Go to the top of the page
 
+Quote Post
m8edy
post Jul 18 2007, 08:49 PM
Post #15


Member
**
Posts: 13
OS: Windows XP SP2



SuperAntispyware Log:

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 07/19/2007 at 03:24 AM

Application Version : 3.9.1008

Core Rules Database Version : 3270
Trace Rules Database Version: 1281

Scan type : Complete Scan
Total Scan Time : 16:43:22

Memory items scanned : 508
Memory threats detected : 0
Registry items scanned : 7056
Registry threats detected : 0
File items scanned : 140018
File threats detected : 15

Adware.Tracking Cookie
C:\Documents and Settings\Owner\Cookies\owner@bs.serving-sys[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ads.aol.co[2].txt
C:\Documents and Settings\Owner\Cookies\owner@revsci[2].txt
C:\Documents and Settings\Owner\Cookies\owner@a[1].txt
C:\Documents and Settings\Owner\Cookies\owner@atdmt[2].txt
C:\Documents and Settings\Owner\Cookies\owner@html[1].txt
C:\Documents and Settings\Owner\Cookies\owner@adrevolver[1].txt
C:\Documents and Settings\Owner\Cookies\owner@adrevolver[3].txt
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[1].txt
C:\Documents and Settings\Owner\Cookies\owner@atwola[1].txt
C:\Documents and Settings\Owner\Cookies\owner@tradedoubler[2].txt
C:\Documents and Settings\Owner\Cookies\owner@serving-sys[1].txt

Adware.Vundo Variant
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\AUSPWMEO.DLL.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\JXRYJUDY.DLL.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\PSSTIOTO.DLL.VIR


i am very sorry about the delay in posting these logs, but as you can see the SUperantispyware log took a lot longer than expected. the reason being that the superantispyware scan kept finding exceptions of some kind at certain parts of the registry scan i think, at which point it would stop and ask me whether i wanted to cancel the scan, try again, or continue. this happened about 4 or 5 times i think.

generally im not having any other problems with my pc. the initial problem was that i was getting annoting popups about 'debt management' and other virus software like 'winantivirus' and such like.

these pop ups have now, to my knowledge, stopped. although the scans above are still finding malware on my pc from what my untrained eye can see.

i shall leave this in your trusted hands. thankyou very much for all your help.

m8edy
Go to the top of the page
 
+Quote Post

2 Pages V   1 2 >
Closed TopicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 

RSS Time is now: 20th November 2009 - 11:45 PM

Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks mentioned on this page are the property of their respective owners.

© Geeks to Go, Inc. | All Rights Reserved | Privacy Policy | Advertising