Deckard's System Scanner v20071014.68 Run by Owner on 2008-03-04 07:43:05 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- HijackThis (run as Owner.exe) ----------------------------------------------- Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 7:43:09 AM, on 4/03/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16608) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\system32\RUNDLL32.EXE C:\PROGRA~1\Grisoft\AVG7\avgcc.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\PnkBstrA.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe C:\WINDOWS\system32\wuauclt.exe C:\Documents and Settings\Owner\Desktop\PCFIX\dss.exe C:\PROGRA~1\TRENDM~1\HIJACK~1\Owner.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.1121.2472\swg.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user') O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1201922026312 O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - http://www.systemrequirementslab.com/sysreqlab2.cab O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe -- End of file - 6080 bytes -- Files created between 2008-02-04 and 2008-03-04 ----------------------------- 2008-03-03 18:47:57 0 d-------- C:\Program Files\Common Files\EasyInfo 2008-03-02 20:11:16 0 d-------- C:\Documents and Settings\All Users\Application Data\Messenger Plus! 2008-03-02 20:02:17 0 d-------- C:\Program Files\Messenger Plus! Live 2008-02-28 22:49:07 0 dr-h----- C:\$VAULT$.AVG 2008-02-27 23:02:04 0 d-------- C:\Program Files\SystemRequirementsLab 2008-02-26 21:24:14 0 d-------- C:\Program Files\Trend Micro 2008-02-26 21:11:25 0 d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com 2008-02-26 21:11:15 0 d-------- C:\Program Files\SUPERAntiSpyware 2008-02-26 21:11:15 0 d-------- C:\Documents and Settings\Owner\Application Data\SUPERAntiSpyware.com 2008-02-26 20:28:17 0 d-------- C:\Program Files\Lavasoft 2008-02-26 20:28:17 0 d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft 2008-02-26 17:30:03 0 d-------- C:\WINDOWS\SHELLNEW 2008-02-26 17:29:16 0 d-------- C:\Program Files\Microsoft.NET 2008-02-26 17:27:58 0 dr-h----- C:\MSOCache 2008-02-25 16:36:10 0 d-------- C:\Documents and Settings\Owner\Application Data\AVG7 2008-02-25 16:35:59 0 d-------- C:\Documents and Settings\LocalService\Application Data\AVG7 2008-02-25 16:35:41 0 d-------- C:\Documents and Settings\All Users\Application Data\Grisoft 2008-02-25 16:35:41 0 d-------- C:\Documents and Settings\All Users\Application Data\avg7 2008-02-21 21:33:40 43800 --a------ C:\WINDOWS\system32\scvhost 2008-02-21 21:33:12 47360 --a------ C:\WINDOWS\system32\drivers\pcouffin.sys 2008-02-21 21:33:12 0 d-------- C:\Documents and Settings\Owner\Application Data\Vso 2008-02-21 21:33:12 47360 --a------ C:\Documents and Settings\Owner\Application Data\pcouffin.sys 2008-02-21 21:33:10 217127 --a------ C:\WINDOWS\system32\drv43260.dll 2008-02-21 21:33:10 208935 --a------ C:\WINDOWS\system32\drv33260.dll 2008-02-21 21:33:10 176165 --a------ C:\WINDOWS\system32\drv23260.dll 2008-02-21 21:33:09 0 d-------- C:\Program Files\VSO 2008-02-21 20:43:59 34820 --a------ C:\WINDOWS\system32\ffdshow.reg 2008-02-21 19:52:25 262144 --a------ C:\WINDOWS\system32\TomsMoComp_ff.dll 2008-02-21 19:52:25 395776 --a------ C:\WINDOWS\system32\libmplayer.dll 2008-02-21 19:52:25 112640 --a------ C:\WINDOWS\system32\libmpeg2_ff.dll 2008-02-21 19:52:25 2255360 --a------ C:\WINDOWS\system32\libavcodec.dll 2008-02-21 19:52:23 0 d-------- C:\Program Files\Cucusoft 2008-02-20 17:17:19 0 d-------- C:\Program Files\Java 2008-02-20 17:15:35 0 d-------- C:\Program Files\Common Files\Java 2008-02-20 17:15:24 0 d-------- C:\Program Files\LimeWire 2008-02-20 17:13:00 0 d-------- C:\Documents and Settings\Owner\.limewire 2008-02-20 08:10:18 0 d-------- C:\Documents and Settings\Owner\Application Data\CD-LabelPrint 2008-02-20 08:10:10 0 d-------- C:\Documents and Settings\Owner\Application Data\Canon 2008-02-20 08:08:49 0 d-------- C:\Program Files\Canon 2008-02-19 21:29:21 98304 --a------ C:\WINDOWS\system32CmdLineExt.dll 2008-02-19 20:20:54 0 d-------- C:\Documents and Settings\All Users\Application Data\LightScribe 2008-02-19 18:58:19 0 d-------- C:\Program Files\Easy CD & DVD Cover Creator 2008-02-19 18:53:00 0 d-------- C:\Documents and Settings\Owner\Application Data\Acoustica 2008-02-18 08:15:55 0 d-------- C:\Program Files\MSXML 4.0 2008-02-17 20:59:50 0 d-------- C:\Documents and Settings\All Users\Application Data\Adobe Systems 2008-02-17 20:57:52 82432 --a------ C:\WINDOWS\system32\msxml4r.dll 2008-02-15 17:33:09 0 d-------- C:\Program Files\uTorrent 2008-02-15 17:33:02 0 d-------- C:\Documents and Settings\Owner\Application Data\uTorrent 2008-02-15 16:44:42 0 d-------- C:\Documents and Settings\Owner\Application Data\Media Player Classic 2008-02-15 16:41:59 164352 --a------ C:\WINDOWS\system32\unrar.dll 2008-02-15 16:41:58 217088 --a------ C:\WINDOWS\system32\yv12vfw.dll 2008-02-15 16:41:58 159839 --a------ C:\WINDOWS\system32\xvidvfw.dll 2008-02-15 16:41:58 755027 --a------ C:\WINDOWS\system32\xvidcore.dll 2008-02-15 16:41:57 3596288 --a------ C:\WINDOWS\system32\qt-dx331.dll 2008-02-15 16:41:57 7680 --a------ C:\WINDOWS\system32\ff_vfw.dll 2008-02-15 16:41:57 81920 --a------ C:\WINDOWS\system32\dpl100.dll 2008-02-15 16:41:57 682496 --a------ C:\WINDOWS\system32\divx.dll 2008-02-15 16:41:56 0 d-------- C:\Program Files\K-Lite Codec Pack 2008-02-15 16:32:59 0 d-------- C:\Program Files\VideoLAN 2008-02-15 16:20:41 0 d-------- C:\Program Files\Windows Media Connect 2 2008-02-15 16:19:59 0 d-------- C:\095251c9c742872e732a 2008-02-15 16:19:56 0 d-------- C:\WINDOWS\system32\drivers\UMDF 2008-02-15 16:19:39 0 d-------- C:\e776921f33af7c4e7c56b91f95e5d02a 2008-02-11 17:17:50 0 d-------- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage 2008-02-11 17:12:40 0 d-------- C:\Program Files\Common Files\Nero 2008-02-11 17:12:27 0 d-------- C:\Program Files\Common Files\LightScribe 2008-02-11 17:11:43 364544 -----n--- C:\WINDOWS\system32\TwnLib4.dll 2008-02-11 17:11:43 106496 --a------ C:\WINDOWS\system32\TwnLib20.dll 2008-02-11 17:11:41 471040 -----n--- C:\WINDOWS\system32\ImagXRA7.dll 2008-02-11 17:11:40 262144 -----n--- C:\WINDOWS\system32\ImagXR7.dll 2008-02-11 17:11:40 1568768 -----n--- C:\WINDOWS\system32\ImagX7.dll 2008-02-11 17:11:39 155648 --a------ C:\WINDOWS\system32\NeroCheck.exe 2008-02-11 17:11:37 0 d-------- C:\Program Files\Common Files\Ahead 2008-02-11 17:11:36 0 d-------- C:\Program Files\Ahead 2008-02-07 21:13:02 43520 --a------ C:\WINDOWS\system32\CmdLineExt03.dll 2008-02-07 17:24:20 0 d-------- C:\Program Files\Sierra 2008-02-05 20:48:55 0 d--h----- C:\Documents and Settings\All Users\Application Data\CanonBJ 2008-02-05 20:48:51 0 d--h----- C:\WINDOWS\system32\CanonIJ Uninstaller Information 2008-02-05 20:48:46 0 d--h----- C:\Program Files\CanonBJ -- Find3M Report --------------------------------------------------------------- 2008-03-03 18:47:57 0 d-------- C:\Program Files\Common Files 2008-03-02 14:05:22 0 d-------- C:\Documents and Settings\Owner\Application Data\Adobe 2008-02-29 18:57:30 0 d-------- C:\Program Files\Steam 2008-02-29 18:16:37 0 d--h----- C:\Program Files\InstallShield Installation Information 2008-02-29 18:06:27 0 d-------- C:\Program Files\EA GAMES 2008-02-28 17:55:58 0 d-------- C:\Documents and Settings\Owner\Application Data\Apple Computer 2008-02-26 21:11:05 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard 2008-02-26 18:00:57 0 d-------- C:\Program Files\Common Files\Adobe 2008-02-21 21:33:16 34 --a------ C:\Documents and Settings\Owner\Application Data\pcouffin.log 2008-02-21 21:33:12 1144 --a------ C:\Documents and Settings\Owner\Application Data\pcouffin.inf 2008-02-21 21:33:12 7887 --a------ C:\Documents and Settings\Owner\Application Data\pcouffin.cat 2008-02-08 08:04:50 0 d-------- C:\Program Files\Common Files\InstallShield 2008-02-03 17:27:51 0 d-------- C:\Documents and Settings\Owner\Application Data\Google 2008-02-03 17:27:19 0 d-------- C:\Program Files\Google 2008-02-03 16:27:03 0 d-------- C:\Program Files\iTunes 2008-02-03 16:26:57 0 d-------- C:\Program Files\iPod 2008-02-03 16:26:47 0 d-------- C:\Program Files\Bonjour 2008-02-03 16:26:44 0 d-------- C:\Program Files\QuickTime 2008-02-03 16:26:22 0 d-------- C:\Program Files\Apple Software Update 2008-02-03 16:26:09 0 d-------- C:\Program Files\Common Files\Apple 2008-02-02 21:44:33 0 d-------- C:\Program Files\Common Files\ODBC 2008-02-02 21:44:31 0 d-------- C:\Program Files\Common Files\SpeechEngines 2008-02-02 21:44:09 62 --ahs---- C:\Documents and Settings\Owner\Application Data\desktop.ini 2008-02-02 17:44:45 0 d-------- C:\Program Files\Messenger 2008-02-02 17:27:18 0 dr-h----- C:\Documents and Settings\Owner\Application Data\SecuROM 2008-02-02 17:08:35 0 d-------- C:\Program Files\Windows Live 2008-02-02 17:08:22 0 d--hs--c- C:\Program Files\Common Files\WindowsLiveInstaller 2008-02-02 16:37:26 0 d-------- C:\Documents and Settings\Owner\Application Data\InstallShield Installation Information 2008-02-02 16:29:21 0 d-------- C:\Program Files\Unreal Tournament 3 2008-02-02 16:29:08 0 d-------- C:\Program Files\AGEIA Technologies 2008-02-02 16:15:11 0 d-------- C:\Program Files\id Software 2008-02-02 16:09:26 0 d-------- C:\Program Files\Common Files\Adobe Systems Shared 2008-02-02 16:03:56 669184 --a------ C:\WINDOWS\system32\pbsvc.exe 2008-02-02 16:00:03 0 d-------- C:\Program Files\Stardock 2008-02-02 15:55:36 0 d-------- C:\Program Files\Electronic Arts 2008-02-02 15:42:14 0 d-------- C:\Program Files\Activision 2008-02-02 15:39:59 0 d-------- C:\Program Files\D-Tools 2008-02-02 15:02:26 0 d-------- C:\Documents and Settings\Owner\Application Data\Macromedia 2008-02-02 12:36:06 664 --a------ C:\WINDOWS\system32\d3d9caps.dat 2008-02-02 12:22:36 0 d-------- C:\Program Files\Attansic 2008-02-02 12:20:37 0 d-------- C:\Program Files\Realtek 2008-02-02 12:09:05 315392 --a------ C:\WINDOWS\HideWin.exe 2008-02-02 12:02:25 0 d-------- C:\Program Files\Intel 2008-02-02 12:00:00 0 d-------- C:\Documents and Settings\Owner\Application Data\Identities 2008-02-02 11:56:11 0 d-------- C:\Program Files\microsoft frontpage 2008-02-02 11:55:52 0 -rahs---- C:\MSDOS.SYS 2008-02-02 11:55:52 0 -rahs---- C:\IO.SYS 2008-02-02 11:55:06 0 d--h----- C:\Program Files\WindowsUpdate 2008-02-02 11:54:27 0 d-------- C:\Program Files\Common Files\MSSoap 2008-02-02 11:54:19 0 d-------- C:\Program Files\Movie Maker 2008-02-02 11:53:57 21640 --a------ C:\WINDOWS\system32\emptyregdb.dat 2008-02-02 11:53:30 0 d-------- C:\Program Files\Online Services 2008-02-02 11:53:24 0 d-------- C:\Program Files\MSN Gaming Zone 2008-02-02 11:53:17 0 d-------- C:\Program Files\Windows NT 2007-12-05 01:41:00 1626112 --a------ C:\WINDOWS\system32\nwiz.exe 2007-12-05 01:41:00 1019904 --a------ C:\WINDOWS\system32\nvwimg.dll 2007-12-05 01:41:00 1703936 --a------ C:\WINDOWS\system32\nvwdmcpl.dll 2007-12-05 01:41:00 466944 --a------ C:\WINDOWS\system32\nvshell.dll 2007-12-05 01:41:00 1474560 --a------ C:\WINDOWS\system32\nview.dll 2007-12-05 01:41:00 1339392 --a------ C:\WINDOWS\system32\nvdspsch.exe 2007-12-05 01:41:00 442368 --a------ C:\WINDOWS\system32\nvappbar.exe 2007-12-05 01:41:00 425984 --a------ C:\WINDOWS\system32\keystone.exe -- Registry Dump --------------------------------------------------------------- *Note* empty entries & legit default entries are not shown [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDCPL"="RTHDCPL.EXE" [21/03/2007 04:49 PM C:\WINDOWS\RTHDCPL.exe] "Alcmtr"="ALCMTR.EXE" [03/05/2005 08:43 PM C:\WINDOWS\Alcmtr.exe] "NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [05/12/2007 01:41 AM] "nwiz"="nwiz.exe" [05/12/2007 01:41 AM C:\WINDOWS\system32\nwiz.exe] "NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [05/12/2007 01:41 AM] "AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [25/02/2008 04:35 PM] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [28/02/2006 10:00 PM] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [20/12/2006 01:55 PM 77824] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon] C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 19/04/2007 01:41 PM 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WBSrv] C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\wbsrv.dll 20/12/2005 10:57 PM 176128 C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\WbSrv.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "appinit_dlls"=wbsys.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice] @="Service" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk] path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk backup=C:\WINDOWS\pss\Adobe Gamma Loader.lnkCommon Startup [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Owner^Start Menu^Programs^Startup^Adobe Gamma.lnk] path=C:\Documents and Settings\Owner\Start Menu\Programs\Startup\Adobe Gamma.lnk backup=C:\WINDOWS\pss\Adobe Gamma.lnkStartup [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] "C:\Program Files\Common Files\LightScribe\LSRunOnce.exe" [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{235A9C58-EA42-34DA-0608-070704010205}] C:\WINDOWS\system32\scvhost.exe -- End of Deckard's System Scanner: finished at 2008-03-04 07:43:31 ------------