Deckard's System Scanner v20071014.68 Run by Craig Robertson on 2008-03-31 19:13:21 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- System Restore -------------------------------------------------------------- Successfully created a Deckard's System Scanner Restore Point. -- Last 5 Restore Point(s) -- 13: 2008-03-31 23:13:29 UTC - RP1103 - Deckard's System Scanner Restore Point 12: 2008-03-31 17:46:20 UTC - RP1102 - System Checkpoint 11: 2008-03-30 17:12:59 UTC - RP1101 - Removed My Way Search Assistant 10: 2008-03-30 15:52:35 UTC - RP1100 - Removed Java 2 Runtime Environment, SE v1.4.2_03 9: 2008-03-30 15:51:38 UTC - RP1099 - Removed Java(TM) SE Runtime Environment 6 Update 1 -- First Restore Point -- 1: 2008-03-25 22:14:35 UTC - RP1091 - ATF Cleaned. Backed up registry hives. Performed disk cleanup. [color=red]Total Physical Memory: 510 MiB (512 MiB recommended).[/color] -- HijackThis (run as Craig Robertson.exe) ------------------------------------- Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 7:15:03 PM, on 3/31/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16608) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Mohawk VPN Client\cvpnd.exe C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe c:\program files\common files\mcafee\mna\mcnasvc.exe C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe C:\PROGRA~1\McAfee\MSC\mcpromgr.exe C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe C:\WINDOWS\system32\ctfmon.exe c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe C:\Program Files\Intellicast\Intellicast.exe C:\Program Files\Verizon Wireless\V CAST Music Manager\MEMonitor.exe C:\Program Files\McAfee\MPF\MPFSrv.exe c:\PROGRA~1\mcafee.com\agent\mcagent.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\HPZipm12.exe C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Documents and Settings\Craig Robertson\Desktop\dss.exe C:\MGTools\Craig Robertson.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://siusalukis.cstv.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\PROGRA~1\mcafee\VIRUSS~1\scriptcl.dll O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe O4 - HKLM\..\Run: [LaunchPDeviceConn] "C:\Program Files\Philips\Philips Device Transfer Pop-up\PDeviceConn.exe" O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Startup: Intellicast.lnk = C:\Program Files\Intellicast\Intellicast.exe O4 - Startup: MEMonitor.lnk = C:\Program Files\Verizon Wireless\V CAST Music Manager\MEMonitor.exe O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing) O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Mohawk VPN Client\cvpnd.exe O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe -- End of file - 8800 bytes -- HijackThis Fixed Entries (C:\MGTools\backups\) ------------------------------ backup-20080330-120134-321 O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing) backup-20080330-120134-610 O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file) backup-20080330-120134-818 O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present backup-20080330-120134-830 O2 - BHO: (no name) - {acce4848-de8e-4ea6-9a09-a33fb32d2d4d} - C:\WINDOWS\system32\CORCAB.dll (file missing) backup-20080330-120134-913 O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) backup-20080330-120135-226 O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing) backup-20080330-120135-256 O20 - Winlogon Notify: CORCAB - CORCAB.dll (file missing) backup-20080330-120135-482 O21 - SSODL: DrvSetup - {c6e935a5-1f6c-45ee-a45e-3437a5ed7da6} - C:\WINDOWS\Installer\{c6e935a5-1f6c-45ee-a45e-3437a5ed7da6}\DrvSetup.dll (file missing) backup-20080330-120135-742 O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU) -- File Associations ----------------------------------------------------------- [COLOR=red].reg - regfile - shell\open\command - regedit.exe"%1" %*[/COLOR] [COLOR=red].scr - scrfile - shell\open\command - "%1" %*[/COLOR] -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------- R1 SASDIFSV - c:\program files\superantispyware\sasdifsv.sys R1 SASKUTIL - c:\program files\superantispyware\saskutil.sys R2 MCSTRM - c:\windows\system32\drivers\mcstrm.sys R3 SASENUM - c:\program files\superantispyware\sasenum.sys S3 DSproct - c:\program files\dellsupport\gtaction\triggers\dsproct.sys S3 wanatw (WAN Miniport (ATW)) - c:\windows\system32\drivers\wanatw4.sys (file missing) -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled -------------------- R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" -- Device Manager: Disabled ---------------------------------------------------- Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318} Description: Cisco Systems VPN Adapter Device ID: ROOT\NET\0000 Manufacturer: Cisco Systems Name: Cisco Systems VPN Adapter PNP Device ID: ROOT\NET\0000 Service: CVirtA -- Scheduled Tasks ------------------------------------------------------------- 2008-03-28 18:30:02 370 --a------ C:\WINDOWS\Tasks\McAfee.com Scan for Viruses - My Computer (D5GK9W61-Craig Robertson).job 2008-03-27 06:41:41 260 --a------ C:\WINDOWS\Tasks\Spybot - Search & Destroy - Scheduled Task.job 2008-03-15 01:00:01 370 --a------ C:\WINDOWS\Tasks\McDefragTask.job 2008-03-01 02:00:01 372 --a------ C:\WINDOWS\Tasks\McQcTask.job -- Files created between 2008-02-29 and 2008-03-31 ----------------------------- 2008-03-30 13:13:33 0 dr-h----- C:\Documents and Settings\Craig Robertson\Recent 2008-03-30 13:10:46 0 d-------- C:\Program Files\CCleaner 2008-03-27 20:28:31 0 d-------- C:\Documents and Settings\Craig Robertson\Application Data\Uniblue 2008-03-27 20:16:44 11254 --a------ C:\WINDOWS\system32\locate.com 2008-03-27 20:15:47 0 d-------- C:\MGtools 2008-03-27 19:21:17 0 d-------- C:\WINDOWS\pss 2008-03-27 18:51:18 0 d-------- C:\Documents and Settings\Craig Robertson\Application Data\Malwarebytes 2008-03-27 18:51:06 0 d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes 2008-03-27 18:51:05 0 d-------- C:\Program Files\Malwarebytes' Anti-Malware 2008-03-26 16:05:08 0 d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy 2008-03-26 15:42:32 0 d-a------ C:\Documents and Settings\All Users\Application Data\TEMP 2008-03-25 21:38:41 0 d-------- C:\WINDOWS\system32\ActiveScan 2008-03-25 21:00:27 0 d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com 2008-03-25 21:00:17 0 d-------- C:\Program Files\SUPERAntiSpyware 2008-03-25 21:00:17 0 d-------- C:\Documents and Settings\Craig Robertson\Application Data\SUPERAntiSpyware.com 2008-03-25 20:59:53 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard 2008-03-25 19:01:30 0 d-------- C:\Documents and Settings\Administrator\Application Data\Grisoft 2008-03-25 18:58:48 0 dr------- C:\Documents and Settings\Administrator\Favorites 2008-03-25 18:58:48 0 d-------- C:\Documents and Settings\Administrator\Desktop 2008-03-25 18:58:48 0 d--hs---- C:\Documents and Settings\Administrator\Cookies 2008-03-25 18:58:48 0 dr-h----- C:\Documents and Settings\Administrator\Application Data 2008-03-25 18:58:48 0 d-------- C:\Documents and Settings\Administrator\Application Data\Sun 2008-03-25 18:58:48 0 d-------- C:\Documents and Settings\Administrator\Application Data\Sonic 2008-03-25 18:58:48 0 d---s---- C:\Documents and Settings\Administrator\Application Data\Microsoft 2008-03-25 18:58:48 0 d-------- C:\Documents and Settings\Administrator\Application Data\Jasc Software Inc 2008-03-25 18:58:48 0 d-------- C:\Documents and Settings\Administrator\Application Data\Identities 2008-03-25 18:58:47 0 d--h----- C:\Documents and Settings\Administrator\Templates 2008-03-25 18:58:47 0 dr------- C:\Documents and Settings\Administrator\Start Menu 2008-03-25 18:58:47 0 dr-h----- C:\Documents and Settings\Administrator\SendTo 2008-03-25 18:58:47 0 dr-h----- C:\Documents and Settings\Administrator\Recent 2008-03-25 18:58:47 0 d--h----- C:\Documents and Settings\Administrator\PrintHood 2008-03-25 18:58:47 0 d--h----- C:\Documents and Settings\Administrator\NetHood 2008-03-25 18:58:47 0 dr------- C:\Documents and Settings\Administrator\My Documents 2008-03-25 18:58:47 0 d--h----- C:\Documents and Settings\Administrator\Local Settings 2008-03-25 18:58:46 1835008 --ah----- C:\Documents and Settings\Administrator\NTUSER.DAT 2008-03-25 18:47:24 0 d-------- C:\Documents and Settings\Craig Robertson\Application Data\Grisoft 2008-03-25 18:46:36 0 d-------- C:\Documents and Settings\All Users\Application Data\Grisoft 2008-03-24 17:17:44 0 d-------- C:\Program Files\iPod 2008-03-19 22:43:47 0 d-------- C:\Program Files\Safari 2008-03-19 22:40:44 0 d-------- C:\Program Files\iPod(2) 2008-03-19 21:58:22 0 d-------- C:\Program Files\Windows Media Connect 2 -- Find3M Report --------------------------------------------------------------- 2008-03-31 18:03:47 0 d-------- C:\Program Files\Mozilla Thunderbird 2008-03-30 11:52:51 0 d-------- C:\Program Files\Java 2008-03-28 00:35:27 0 d-------- C:\Program Files\TaxCut05 2008-03-27 06:05:30 0 d-------- C:\Program Files\McAfee 2008-03-25 22:34:04 0 d-------- C:\Program Files\MSN Messenger 2008-03-25 22:33:18 0 d-------- C:\Program Files\Mohawk VPN Client 2008-03-25 22:28:31 0 d-------- C:\Program Files\Intellicast 2008-03-25 20:59:53 0 d-------- C:\Program Files\Common Files 2008-03-24 17:18:21 0 d-------- C:\Program Files\QuickTime 2008-03-24 17:17:45 0 d-------- C:\Program Files\iTunes 2008-03-03 23:13:07 0 d-------- C:\Documents and Settings\Craig Robertson\Application Data\Adobe -- Registry Dump --------------------------------------------------------------- *Note* empty entries & legit default entries are not shown [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IntelMeM"="C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe" [] "UpdateManager"="C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" [] "dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [] "Microsoft Works Update Detection"="C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe" [] "LaunchPDeviceConn"="C:\Program Files\Philips\Philips Device Transfer Pop-up\PDeviceConn.exe" [] "igfxtray"="C:\WINDOWS\system32\igfxtray.exe" [] "igfxhkcmd"="C:\WINDOWS\system32\hkcmd.exe" [] "igfxpers"="C:\WINDOWS\system32\igfxpers.exe" [] "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [02/22/2008 04:25 AM] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DellSupport"="C:\Program Files\DellSupport\DSAgnt.exe" [] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [08/04/2004 07:00 AM] C:\Documents and Settings\Craig Robertson\Start Menu\Programs\Startup\ DESKTOP.INI [8/10/2004 3:04:12 PM] Intellicast.lnk - C:\Program Files\Intellicast\Intellicast.exe [2/13/2004 11:12:54 AM] MEMonitor.lnk - C:\Program Files\Verizon Wireless\V CAST Music Manager\MEMonitor.exe [9/1/2007 12:32:40 AM] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [9/23/2005 10:05:26 PM] DESKTOP.INI [8/10/2004 3:04:12 PM] HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [9/16/2003 6:19:24 AM] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [12/20/2006 12:55 PM 77824] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon] C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 02/27/2007 11:39 AM 282624 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] SecurityProviders msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" -- Hosts ----------------------------------------------------------------------- 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 8073 more entries in hosts file. -- End of Deckard's System Scanner: finished at 2008-03-31 19:15:54 ------------