This looks easier to read - log.txt:
Logfile of random's system information tool 1.06 (written by random/random)
Run by HP_Owner at 2009-11-25 02:58:50
Microsoft Windows XP Home Edition Service Pack 2
System drive C: has 98 GB (67%) free of 145 GB
Total RAM: 511 MB (48% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:58:57 AM, on 25/11/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\hphmon06.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\Java\j2re1.4.2_03\bin\jucheck.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Updates from HP\309731\Program\Updates from HP.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\HP_Owner.RYAN.000\Desktop\RSIT.exe
C:\Program Files\trend micro\HP_Owner.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://ie.redirect.h...a...&pf=desktopR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.h...a...&pf=desktopR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://ie.redirect.h...a...&pf=desktopR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.h...a...&pf=desktopO2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O3 - Toolbar: HP view - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [HPHUPD06] c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates from HP\309731\Program\Updates from HP.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) -
http://download.eset...lineScanner.cabO16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) -
http://platformdl.ad...Plus/1.6/gp.cabO23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
--
End of file - 6138 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\Easy Internet Sign-up.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2311998673-1377838299-1174811306-1009Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2311998673-1377838299-1174811306-1009UA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2444700138-1923381970-838522852-1009Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2444700138-1923381970-838522852-1009UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-24 256112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll [2009-11-24 762864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2009-11-24 458736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - HP view - c:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll [2003-11-21 98304]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-24 256112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe [2004-12-02 32881]
"hpsysdrv"=c:\windows\system\hpsysdrv.exe [1998-05-07 52736]
"AGRSMMSG"=C:\WINDOWS\AGRSMMSG.exe [2004-06-29 88363]
"HPHUPD06"=c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe [2004-06-07 49152]
"HPHmon06"=C:\WINDOWS\system32\hphmon06.exe [2004-06-07 659456]
"KBD"=C:\HP\KBD\KBD.EXE [2003-02-11 61440]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2004-12-02 180269]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2004-06-04 286720]
"Recguard"=C:\WINDOWS\SMINST\RECGUARD.EXE [2004-04-14 233472]
"AlcxMonitor"=C:\WINDOWS\ALCXMNTR.EXE [2004-09-07 57344]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-04-17 196608]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-04-13 69632]
"PS2"=C:\WINDOWS\system32\ps2.exe [2002-10-16 81920]
"LSBWatcher"=c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe [2004-10-14 253952]
"Reminder"=C:\Windows\Creator\Remind_XP.exe [2003-12-18 118784]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-11-24 39408]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
Updates from HP.lnk - C:\Program Files\Updates from HP\309731\Program\Updates from HP.exe
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Updates from HP\309731\Program\Updates from HP.exe"="C:\Program Files\Updates from HP\309731\Program\Updates from HP.exe:*:Enabled:BackWeb for Pavilion"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%ProgramFiles%\iTunes\iTunes.exe"="%ProgramFiles%\iTunes\iTunes.exe:*:enabled:iTunes"
======List of files/folders created in the last 3 months======
2009-11-25 02:58:50 ----D---- C:\rsit
2009-11-25 02:58:50 ----D---- C:\Program Files\trend micro
2009-11-25 02:14:14 ----D---- C:\Program Files\NOS
2009-11-25 02:14:14 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
2009-11-24 03:21:52 ----D---- C:\Program Files\ESET
2009-11-24 03:09:25 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\AdobeUM
2009-11-24 02:50:17 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\Malwarebytes
2009-11-24 02:19:11 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\Adobe
2009-11-24 02:18:55 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\Google
2009-11-23 02:03:42 ----D---- C:\WINDOWS\temp
2009-11-23 02:03:41 ----A---- C:\ComboFix.txt
2009-11-21 21:24:38 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\Template
2009-11-21 21:21:47 ----RASHD---- C:\cmdcons
2009-11-21 21:21:33 ----D---- C:\WINDOWS\setupupd
2009-11-21 20:33:25 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\Macromedia
2009-11-21 19:00:53 ----A---- C:\WINDOWS\system32\wmpns.dll
2009-11-21 18:59:51 ----ASH---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\desktop.ini
2009-11-21 18:59:45 ----SD---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\Microsoft
2009-11-21 18:59:45 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\Symantec
2009-11-21 18:59:45 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\Sun
2009-11-21 18:59:45 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\SampleView
2009-11-21 18:59:45 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\Real
2009-11-21 18:59:45 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\Identities
2009-11-21 18:59:45 ----D---- C:\Documents and Settings\HP_Owner.RYAN.000\Application Data\Apple Computer
2009-11-21 18:57:35 ----A---- C:\WINDOWS\system32\VGAunistlog.ini
2009-11-21 18:54:14 ----D---- C:\WINDOWS\Prefetch
2009-11-21 18:40:05 ----A---- C:\WINDOWS\system32\hidserv.dll
2009-11-21 18:39:59 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2009-11-21 17:09:11 ----RSHD---- C:\WINDOWS\system32\dllcache
2009-11-21 15:03:28 ----A---- C:\WINDOWS\ntbtlog.txt
2009-11-21 14:02:11 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2009-11-21 14:02:02 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2009-11-21 14:01:57 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2009-11-21 14:01:46 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2009-11-21 14:01:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2009-11-21 14:01:34 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2009-11-21 14:01:24 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2009-11-21 14:01:16 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2009-11-21 14:01:08 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2009-11-21 14:00:59 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2009-11-21 14:00:52 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2009-11-21 14:00:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2009-11-21 14:00:35 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2009-11-21 14:00:27 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2009-11-21 14:00:18 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2009-11-21 14:00:06 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2009-11-21 13:59:54 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2009-11-21 13:59:48 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2009-11-21 13:59:38 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2$
2009-11-21 13:59:29 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2009-11-21 13:59:24 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2009-11-21 13:59:14 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2009-11-21 13:59:06 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2009-11-21 13:59:01 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2009-11-21 13:58:51 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2009-11-21 13:58:44 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2009-11-21 13:58:37 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2009-11-21 13:58:27 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2009-11-21 13:58:23 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2009-11-21 13:58:10 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2009-11-21 13:57:56 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2009-11-21 13:57:47 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2009-11-21 13:57:34 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2009-11-21 13:57:25 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2009-11-21 13:14:07 ----HDC---- C:\WINDOWS\$NtUninstallKB974455$
2009-11-21 13:12:07 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2_0$
2009-11-21 12:58:45 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2009-11-21 12:54:04 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2009-11-21 12:52:42 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2009-11-21 12:44:45 ----D---- C:\Program Files\MSXML 4.0
2009-11-21 12:44:00 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2009-11-20 21:14:16 ----A---- C:\WINDOWS\zip.exe
2009-11-20 21:14:16 ----A---- C:\WINDOWS\SWXCACLS.exe
2009-11-20 21:14:16 ----A---- C:\WINDOWS\SWSC.exe
2009-11-20 21:14:16 ----A---- C:\WINDOWS\SWREG.exe
2009-11-20 21:14:16 ----A---- C:\WINDOWS\sed.exe
2009-11-20 21:14:16 ----A---- C:\WINDOWS\PEV.exe
2009-11-20 21:14:16 ----A---- C:\WINDOWS\NIRCMD.exe
2009-11-20 21:14:16 ----A---- C:\WINDOWS\MBR.exe
2009-11-20 21:14:16 ----A---- C:\WINDOWS\grep.exe
2009-11-20 21:12:58 ----AD---- C:\Qoobox
2009-11-20 20:44:05 ----D---- C:\_OTL
2009-11-10 22:21:42 ----HDC---- C:\WINDOWS\$NtUninstallKB969947_0$
2009-11-09 22:03:58 ----A---- C:\RootRepeal report 11-09-09 (22-03-58).txt
2009-11-09 22:03:37 ----A---- C:\RootRepeal report 11-09-09 (22-03-37).txt
2009-11-09 21:39:20 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-11-09 21:37:14 ----D---- C:\WINDOWS\ERDNT
2009-11-09 21:36:23 ----D---- C:\Program Files\ERUNT
2009-10-15 22:34:49 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2009-10-15 22:32:32 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2009-10-15 22:32:03 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-10-15 22:31:59 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2009-10-15 22:31:49 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2009-10-15 22:31:38 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2009-10-15 22:28:40 ----HDC---- C:\WINDOWS\$NtUninstallKB971486_0$
2009-10-15 22:28:31 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2009-10-15 22:27:34 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2009-09-09 19:25:28 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2009-09-09 19:17:30 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
======List of files/folders modified in the last 3 months======
2009-11-25 02:58:50 ----RD---- C:\Program Files
2009-11-25 02:56:44 ----D---- C:\WINDOWS
2009-11-25 02:55:01 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-11-25 02:54:47 ----D---- C:\WINDOWS\system32
2009-11-25 02:38:23 ----SHD---- C:\WINDOWS\Installer
2009-11-25 02:38:20 ----D---- C:\Config.Msi
2009-11-25 02:37:58 ----D---- C:\WINDOWS\WinSxS
2009-11-25 02:17:22 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-11-25 02:14:17 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-11-25 02:14:16 ----D---- C:\WINDOWS\system32\CatRoot2
2009-11-24 02:50:10 ----D---- C:\WINDOWS\system32\drivers
2009-11-24 02:19:33 ----A---- C:\WINDOWS\IE4 Error Log.txt
2009-11-24 02:18:34 ----D---- C:\Program Files\Google
2009-11-24 02:18:26 ----D---- C:\Documents and Settings\All Users\Application Data\Google
2009-11-23 01:58:25 ----A---- C:\WINDOWS\system.ini
2009-11-23 01:56:16 ----D---- C:\WINDOWS\AppPatch
2009-11-23 01:56:10 ----D---- C:\Program Files\Common Files
2009-11-23 01:28:54 ----SD---- C:\WINDOWS\Tasks
2009-11-23 01:22:06 ----SHD---- C:\RECYCLER
2009-11-23 01:13:21 ----D---- C:\Program Files\Easy Internet signup
2009-11-23 01:03:05 ----D---- C:\Program Files\Common Files\Symantec Shared
2009-11-23 01:01:41 ----D---- C:\Program Files\Symantec
2009-11-23 01:00:10 ----D---- C:\Documents and Settings\All Users\Application Data\Symantec
2009-11-21 21:26:37 ----HD---- C:\WINDOWS\inf
2009-11-21 21:24:38 ----D---- C:\WINDOWS\system32\FxsTmp
2009-11-21 21:22:01 ----RASH---- C:\boot.ini
2009-11-21 21:21:47 ----AC---- C:\WINDOWS\UPGRADE.TXT
2009-11-21 21:19:24 ----D---- C:\WINDOWS\security
2009-11-21 19:00:55 ----A---- C:\WINDOWS\OEWABLog.txt
2009-11-21 18:59:44 ----D---- C:\Documents and Settings
2009-11-21 18:58:39 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-11-21 18:58:36 ----A---- C:\WINDOWS\setuplog.txt
2009-11-21 18:58:35 ----SHD---- C:\System Volume Information
2009-11-21 18:58:15 ----D---- C:\WINDOWS\system32\config
2009-11-21 18:58:14 ----D---- C:\sysprep
2009-11-21 18:57:12 ----RASH---- C:\BOOT.BAK
2009-11-21 18:55:14 ----D---- C:\WINDOWS\Registration
2009-11-21 18:41:02 ----D---- C:\WINDOWS\system32\CatRoot
2009-11-21 17:26:14 ----D---- C:\WINDOWS\system
2009-11-21 17:26:14 ----D---- C:\hp
2009-11-21 17:23:42 ----D---- C:\Program Files\Windows NT
2009-11-21 17:23:41 ----D---- C:\Program Files\Windows Media Player
2009-11-21 17:23:40 ----D---- C:\Program Files\Outlook Express
2009-11-21 17:23:39 ----D---- C:\Program Files\NetMeeting
2009-11-21 17:23:36 ----D---- C:\Program Files\Movie Maker
2009-11-21 17:23:34 ----D---- C:\Program Files\Messenger
2009-11-21 17:23:27 ----D---- C:\Program Files\Internet Explorer
2009-11-21 17:23:27 ----D---- C:\Program Files\Common Files\System
2009-11-21 17:23:24 ----D---- C:\Program Files\Common Files\Services
2009-11-21 17:23:16 ----D---- C:\WINDOWS\system32\wbem
2009-11-21 17:23:08 ----D---- C:\WINDOWS\system32\usmt
2009-11-21 17:23:01 ----D---- C:\WINDOWS\system32\ras
2009-11-21 17:23:00 ----D---- C:\WINDOWS\system32\oobe
2009-11-21 17:22:49 ----D---- C:\WINDOWS\system32\npp
2009-11-21 17:22:35 ----D---- C:\WINDOWS\system32\icsxml
2009-11-21 17:22:34 ----D---- C:\WINDOWS\system32\ias
2009-11-21 17:20:58 ----D---- C:\WINDOWS\system32\Setup
2009-11-21 17:20:58 ----D---- C:\WINDOWS\system32\Restore
2009-11-21 17:20:56 ----D---- C:\WINDOWS\system32\Com
2009-11-21 17:20:55 ----D---- C:\WINDOWS\srchasst
2009-11-21 17:20:51 ----D---- C:\WINDOWS\msagent
2009-11-21 17:20:51 ----D---- C:\WINDOWS\ime
2009-11-21 17:20:50 ----RD---- C:\WINDOWS\Web
2009-11-21 17:20:50 ----D---- C:\WINDOWS\addins
2009-11-21 17:20:44 ----D---- C:\WINDOWS\PeerNet
2009-11-21 17:20:43 ----D---- C:\WINDOWS\Media
2009-11-21 17:20:43 ----D---- C:\WINDOWS\Help
2009-11-21 17:20:33 ----RSD---- C:\WINDOWS\Fonts
2009-11-21 17:20:29 ----D---- C:\WINDOWS\Cursors
2009-11-21 17:20:26 ----AHDC---- C:\WINDOWS\$NtUninstallKB883667$
2009-11-21 17:20:18 ----RD---- C:\MSOCache
2009-11-21 17:20:06 ----RD---- C:\WINDOWS\Offline Web Pages
2009-11-21 17:20:05 ----RSD---- C:\WINDOWS\assembly
2009-11-21 13:49:58 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-11-21 13:46:32 ----D---- C:\WINDOWS\EHome
2009-11-21 13:15:18 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2009-11-21 13:15:08 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2009-11-21 13:14:56 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2009-11-21 13:14:44 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2009-11-21 13:14:36 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2009-11-21 13:14:24 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2009-11-21 13:13:41 ----HDC---- C:\WINDOWS\$NtUninstallKB923723$
2009-11-21 13:11:48 ----HD---- C:\WINDOWS\$hf_mig$
2009-11-21 13:10:18 ----HDC---- C:\WINDOWS\ie8
2009-11-21 13:02:38 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2009-11-21 13:02:27 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2009-11-21 13:02:19 ----HDC---- C:\WINDOWS\$NtUninstallKB971557_0$
2009-11-21 13:02:04 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2009-11-21 13:00:19 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
2009-11-21 12:59:49 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2009-11-21 12:59:27 ----HDC---- C:\WINDOWS\$NtUninstallKB971633_0$
2009-11-21 12:59:16 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2009-11-21 12:59:09 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2009-11-21 12:58:37 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2009-11-21 12:58:15 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2009-11-21 12:58:07 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2009-11-21 12:57:51 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2009-11-21 12:57:44 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$
2009-11-21 12:57:31 ----HDC---- C:\WINDOWS\$NtUninstallKB958687_0$
2009-11-21 12:57:20 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2009-11-21 12:56:40 ----HDC---- C:\WINDOWS\$NtUninstallKB973354_0$
2009-11-21 12:56:24 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2009-11-21 12:56:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2009-11-21 12:55:50 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2009-11-21 12:53:24 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2009-11-21 12:52:04 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2009-11-21 12:49:27 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2009-11-21 12:45:28 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2009-11-21 12:45:16 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2009-11-21 12:44:58 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2009-11-21 12:43:47 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2009-11-21 12:43:33 ----HDC---- C:\WINDOWS\$NtUninstallKB970653-v3$
2009-11-21 12:43:11 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2009-11-21 12:09:38 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2009-11-21 12:08:28 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2009-11-21 11:29:09 ----D---- C:\WINDOWS\setup.pss
2009-11-19 20:12:08 ----D---- C:\Program Files\Common Files\Adobe
2009-11-17 21:45:13 ----A---- C:\WINDOWS\QUICKEN.INI
2009-11-08 15:29:29 ----A---- C:\AILog.txt
2009-10-20 20:17:25 ----D---- C:\WINDOWS\Minidump
2009-10-17 17:10:30 ----D---- C:\Documents and Settings\All Users\Application Data\Lavasoft
2009-10-15 22:35:30 ----D---- C:\WINDOWS\ie8updates
2009-10-13 20:10:11 ----D---- C:\Program Files\quicken
2009-09-10 16:31:38 ----D---- C:\Program Files\Microsoft Silverlight
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AmdK8;AMD Athlon64 Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2004-05-08 35840]
R1 SiSkp;SiSkp; C:\WINDOWS\system32\DRIVERS\srvkp.sys [2004-09-24 12928]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2004-06-29 1268204]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-10-01 2279424]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2004-08-04 60800]
R3 GEARAspiWDM;GEAR CDRom Filter; C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys [2004-04-06 13872]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 Iviaspi;IVI ASPI Shell; C:\WINDOWS\system32\drivers\iviaspi.sys [2003-09-11 21060]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2004-08-04 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-04 1897408]
R3 Pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-09-19 10368]
R3 Ps2;PS2; C:\WINDOWS\system32\DRIVERS\PS2.sys [2001-06-04 14112]
R3 SISNIC;SiS PCI Fast Ethernet Adapter Driver; C:\WINDOWS\system32\DRIVERS\sisnic.sys [2003-07-11 32768]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-04 26624]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-04 57600]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-04 17024]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
S1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 SiS315;SiS315; C:\WINDOWS\system32\DRIVERS\sisgrp.sys [2004-09-29 229888]
S3 SYMIDSCO;SYMIDSCO; \??\C:\PROGRA~1\COMMON~1\SYMANT~1\SymcData\idsdefs\20040813.178\symidsco.sys []
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-04 20480]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\DRIVERS\intelide.sys [2004-08-04 5504]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
R3 iPodService;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2004-06-04 401408]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2003-02-21 32768]
S3 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2004-08-04 267776]
S3 getPlusHelper;getPlus® Helper; C:\WINDOWS\System32\svchost.exe [2004-08-04 14336]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-11-24 182768]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
-----------------EOF-----------------