< Internet Explorer Settings > -> ->
HKLM: Default_Page_URL ->
http://go.microsoft....k/?LinkId=69157 ->
HKLM: Main\\Default_Search_URL ->
http://go.microsoft....k/?LinkId=54896 ->
HKLM: Local Page -> %SystemRoot%\system32\blank.htm ->
HKLM: Search Bar ->
http://ie.search.msn...st/srchasst.htm ->
HKLM: Search Page ->
http://go.microsoft....k/?LinkId=54896 ->
HKLM: Start Page -> about:blank ->
HKLM: CustomizeSearch ->
http://ie.search.msn...st/srchcust.htm ->
HKLM: Search\\Default_Search_URL ->
http://www.google.com/ie ->
HKLM: SearchAssistant ->
http://ie.search.msn...st/srchasst.htm ->
HKCU: Local Page -> C:\WINDOWS\system32\blank.htm ->
HKCU: Search Page ->
http://www.microsoft...amp;ar=iesearch ->
HKCU: Start Page ->
http://www.yahoo.com/ ->
HKCU: SearchAssistant ->
http://www.google.com/ie ->
HKCU: ProxyEnable -> 0 ->
< Trusted Sites > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
msn.com [ - ] -> ->
< Trusted Sites > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
searchmarketing_yahoo.com [https] -> ->
< BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{02478D38-C3F9-4efb-9B51-7695ECA05670} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> %CommonProgramFiles%\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [Adobe PDF Reader Link Helper] -> Adobe Systems Incorporated [Ver = 8.0.0.2006102200 | Size = 62080 bytes | Modified Date = 10/23/2006 3:08:42 AM | Attr = ]
{5CA3D70E-1895-11CF-8E15-001234567890} [HKLM] -> %System32%\dla\tfswshx.dll [DriveLetterAccess] -> Sonic Solutions [Ver = 1.04.08a | Size = 118844 bytes | Modified Date = 5/31/2005 5:33:00 AM | Attr = ]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKLM] -> %ProgramFiles%\Java\jre1.5.0_10\bin\ssv.dll [SSVHelper Class] -> Sun Microsystems, Inc. [Ver = 5.0.100.3 | Size = 440056 bytes | Modified Date = 11/9/2006 7:21:52 PM | Attr = ]
{AA58ED58-01DD-4d91-8333-CF10577473F7} [HKLM] -> %ProgramFiles%\Google\googletoolbar1.dll [Google Toolbar Helper] -> Google Inc. [Ver = 4, 0, 1601, 4978 | Size = 2403392 bytes | Modified Date = 2/6/2007 8:08:24 PM | Attr = R ]
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} [HKLM] -> %ProgramFiles%\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll [Google Toolbar Notifier BHO] -> Google Inc. [Ver = 2, 0, 301, 7164 | Size = 325048 bytes | Modified Date = 6/13/2007 9:33:12 PM | Attr = ]
< Internet Explorer Bars [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ ->
{4528BBE0-4E08-11D5-AD55-00010333D0AD} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
< Internet Explorer Bars [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ ->
{4528BBE0-4E08-11D5-AD55-00010333D0AD} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
< Internet Explorer ToolBars [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
{2318C2B1-4965-11d4-9B18-009027A5CD4F} [HKLM] -> %ProgramFiles%\Google\googletoolbar1.dll [&Google] -> Google Inc. [Ver = 4, 0, 1601, 4978 | Size = 2403392 bytes | Modified Date = 2/6/2007 8:08:24 PM | Attr = R ]
< Internet Explorer ToolBars [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ ->
ShellBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} [HKLM] -> %ProgramFiles%\Google\googletoolbar1.dll [&Google] -> Google Inc. [Ver = 4, 0, 1601, 4978 | Size = 2403392 bytes | Modified Date = 2/6/2007 8:08:24 PM | Attr = R ]
WebBrowser\\{09EC4651-7AC4-4E99-AB62-8FB6B3FFC0B0} [HKLM] -> Reg Data - Key not found [JV_Suite toolbar] -> File not found
WebBrowser\\{0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} [HKLM] -> %ProgramFiles%\Google\googletoolbar1.dll [&Google] -> Google Inc. [Ver = 4, 0, 1601, 4978 | Size = 2403392 bytes | Modified Date = 2/6/2007 8:08:24 PM | Attr = R ]
WebBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
< Internet Explorer Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKLM] -> %ProgramFiles%\Java\jre1.5.0_10\bin\npjpi150_10.dll [MenuText: Sun Java Console] -> Sun Microsystems, Inc. [Ver = 5.0.100.3 | Size = 75528 bytes | Modified Date = 11/9/2006 7:21:54 PM | Attr = ]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKCU] -> %ProgramFiles%\Java\jre1.5.0_10\bin\ssv.dll [MenuText: Sun Java Console] -> Sun Microsystems, Inc. [Ver = 5.0.100.3 | Size = 440056 bytes | Modified Date = 11/9/2006 7:21:52 PM | Attr = ]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} -> Reg Data - Value does not exist [ButtonText: Research] -> File not found
{DA320635-F48C-4613-8325-D75A933C549E} -> %ProgramFiles%\Lenovo\System Update\sulauncher.exe [ButtonText: System Update] -> File not found
{e2e2dd38-d088-4134-82b7-f2ba38496583} [HKLM] -> Reg Data - Key not found [MenuText: @xpsp3res.dll,-20001] -> File not found
< Internet Explorer Menu Extensions [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ ->
Add Feed to Tristana RSS Reader -> -> File not found
E&xport to Microsoft Excel -> -> File not found
< DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{227C8094-170A-4F41-9E79-A7B2426C134C} -> (Intel® PRO/Wireless 3945ABG Network Connection) ->
{30DD33E3-2251-4D61-B628-5B4A7DA102F4} -> (Realtek RTL8139/810x Family Fast Ethernet NIC) ->
{467E219F-0E7A-40C4-9A4D-D49FEBE8EBF1} -> (1394 Net Adapter) ->
< Winsock2 Catalogs [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\ ->
Protocol_Catalog9\Catalog_Entries\000000000001 -> %ProgramFiles%\Panda Software\Panda Internet Security 2007\pavlsp.dll -> Panda Software International [Ver = 7, 4, 21, 76 | Size = 177712 bytes | Modified Date = 4/16/2007 5:21:50 PM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000002 -> %ProgramFiles%\Panda Software\Panda Internet Security 2007\pavlsp.dll -> Panda Software International [Ver = 7, 4, 21, 76 | Size = 177712 bytes | Modified Date = 4/16/2007 5:21:50 PM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000003 -> %ProgramFiles%\Panda Software\Panda Internet Security 2007\pavlsp.dll -> Panda Software International [Ver = 7, 4, 21, 76 | Size = 177712 bytes | Modified Date = 4/16/2007 5:21:50 PM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000019 -> %ProgramFiles%\Panda Software\Panda Internet Security 2007\pavlsp.dll -> Panda Software International [Ver = 7, 4, 21, 76 | Size = 177712 bytes | Modified Date = 4/16/2007 5:21:50 PM | Attr = ]
< Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
ic32pp -> %SystemRoot%\wc98pp.dll -> [Ver = | Size = 51712 bytes | Modified Date = 2/9/2007 12:46:18 PM | Attr = ]
ipp -> Reg Data - Key not found -> File not found
msdaipp -> Reg Data - Key not found -> File not found
sysimage -> DLL\mshtml.dll -> File not found
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{166B1BCA-3F9C-11CF-8075-444553540000} -> Shockwave ActiveX Control - CodeBase =
http://fpdownload.ma...director/sw.cab ->
{17492023-C23A-453E-A040-C7C580BBF700} -> Windows Genuine Advantage Validation Tool - CodeBase =
http://go.microsoft....k/?linkid=39204 ->
{2DAD3559-2923-4935-AD49-B673D2539944} -> IASRunner Class - CodeBase =
https://www-307.ibm....ntent/AcpIR.cab ->
{6E32070A-766D-4EE6-879C-DC1FA91D2FC3} -> MUWebControl Class - CodeBase =
http://update.micros...b?1167732515218 ->
{74FFE28D-2378-11D5-990C-006094235084} -> IBM Access Support - CodeBase =
http://www-307.ibm.c...rt/IbmEgath.cab ->
{8AD9C840-044E-11D1-B3E9-00805F499D93} -> Java Plug-in 1.5.0_10 - CodeBase =
http://java.sun.com/...indows-i586.cab ->
{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} -> ActiveScan Installer Class - CodeBase =
http://acs.pandasoft...free/asinst.cab ->
{BD8667B7-38D8-4C77-B580-18C3E146372C} -> Creative Toolbox Plug-in - CodeBase =
http://ak.imgag.com/...all/Crusher.cab ->
{BE415DD9-C50D-46AA-9B5D-37F2EEBBBFE6} -> acpRunner Class - CodeBase =
https://www-307.ibm..../AcpControl.cab ->
{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_06 - CodeBase =
http://java.sun.com/...indows-i586.cab ->
{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_10 - CodeBase =
http://java.sun.com/...indows-i586.cab ->
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_10 - CodeBase =
http://java.sun.com/...indows-i586.cab ->
{D27CDB6E-AE6D-11CF-96B8-444553540000} -> - CodeBase =
http://fpdownload.ma...ent/swflash.cab ->
{D6376DD2-C2BD-49B2-A1B1-138F869633F3} -> ASPRO Installer Class - CodeBase =
http://acs.pandasoft...5/asproinst.cab ->
[Files/Folders - Created Within 90 days]
ComboFix -> %SystemDrive%\ComboFix -> [Folder | Created Date = 6/27/2007 3:40:22 PM | Attr = ]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 526569472 bytes | Created Date = 1/1/1601 5:00:00 AM | Attr = HS]
IbmEgath.XML -> %SystemDrive%\IbmEgath.XML -> [Ver = | Size = 132480 bytes | Created Date = 6/9/2007 6:03:33 PM | Attr = ]
KPCMS -> %SystemDrive%\KPCMS -> [Folder | Created Date = 5/7/2007 9:02:08 PM | Attr = ]
QooBox -> %SystemDrive%\QooBox -> [Folder | Created Date = 6/27/2007 3:47:55 PM | Attr = ]
SystemUpdate -> %SystemDrive%\SystemUpdate -> [Folder | Created Date = 4/1/2007 3:36:32 AM | Attr = ]
$NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Created Date = 4/4/2007 4:37:22 AM | Attr = H ]
$NtUninstallKB926247$ -> %SystemRoot%\$NtUninstallKB926247$ -> [Folder | Created Date = 6/8/2007 3:06:17 PM | Attr = H ]
$NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Created Date = 5/23/2007 3:06:15 AM | Attr = H ]
$NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Created Date = 6/13/2007 2:03:55 AM | Attr = H ]
$NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Created Date = 4/11/2007 2:08:44 AM | Attr = H ]
$NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Created Date = 5/10/2007 2:05:00 AM | Attr = H ]
$NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Created Date = 4/11/2007 2:10:09 AM | Attr = H ]
$NtUninstallKB931768$ -> %SystemRoot%\$NtUninstallKB931768$ -> [Folder | Created Date = 5/10/2007 2:07:18 AM | Attr = H ]
$NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Created Date = 4/11/2007 2:10:30 AM | Attr = H ]
$NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Created Date = 4/11/2007 2:08:28 AM | Attr = H ]
$NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Created Date = 6/13/2007 2:02:14 AM | Attr = H ]
$NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Created Date = 6/13/2007 2:03:46 AM | Attr = H ]
catchme.exe -> %SystemRoot%\catchme.exe -> [Ver = | Size = 87552 bytes | Created Date = 6/27/2007 3:40:33 PM | Attr = ]
dla.exe -> %SystemRoot%\dla.exe -> Sonic Solutions [Ver = 1.04.08a | Size = 98360 bytes | Created Date = 5/13/2007 12:01:12 AM | Attr = ]
icccodes.dll -> %SystemRoot%\icccodes.dll -> Eastman Kodak Company [Ver = 1.2.2 | Size = 20992 bytes | Created Date = 5/7/2007 9:02:08 PM | Attr = ]
iccsigs.dat -> %SystemRoot%\iccsigs.dat -> [Ver = | Size = 40129 bytes | Created Date = 5/7/2007 9:02:08 PM | Attr = ]
ie7 -> %SystemRoot%\ie7 -> [Folder | Created Date = 6/11/2007 6:24:35 PM | Attr = H ]
KPCMS.INI -> %SystemRoot%\KPCMS.INI -> [Ver = | Size = 149 bytes | Created Date = 5/7/2007 9:02:07 PM | Attr = ]
kpcp32.dll -> %SystemRoot%\kpcp32.dll -> Eastman Kodak Company [Ver = 3.48 | Size = 197120 bytes | Created Date = 5/7/2007 9:02:08 PM | Attr = ]
kpsys32.dll -> %SystemRoot%\kpsys32.dll -> Eastman Kodak Company [Ver = 3.2.2 | Size = 37376 bytes | Created Date = 5/7/2007 9:02:08 PM | Attr = ]
nircmd.exe -> %SystemRoot%\nircmd.exe -> NirSoft [Ver = 1.85 | Size = 49152 bytes | Created Date = 6/27/2007 3:40:33 PM | Attr = ]
pav.sig -> %SystemRoot%\pav.sig -> [Ver = | Size = 39182987 bytes | Created Date = 6/7/2007 10:06:47 PM | Attr = ]
pfpick.dll -> %SystemRoot%\pfpick.dll -> Eastman Kodak Company [Ver = 1.10.0 | Size = 58368 bytes | Created Date = 5/7/2007 9:02:08 PM | Attr = ]
pss -> %SystemRoot%\pss -> [Folder | Created Date = 6/9/2007 6:29:48 PM | Attr = ]
sprof32.dll -> %SystemRoot%\sprof32.dll -> Eastman Kodak Company [Ver = 1.8.1 | Size = 133120 bytes | Created Date = 5/7/2007 9:02:08 PM | Attr = ]
uninst.exe -> %SystemRoot%\uninst.exe -> InstallShield Corporation, Inc. [Ver = 2.20.926.0 | Size = 299520 bytes | Created Date = 5/7/2007 8:59:15 PM | Attr = ]
Windows9XPx.dat -> %SystemRoot%\Windows9XPx.dat -> [Ver = | Size = 5 bytes | Created Date = 4/11/2007 11:13:05 PM | Attr = ]
Uniblue SpeedUpMyPC Nag.job -> %SystemRoot%\tasks\Uniblue SpeedUpMyPC Nag.job -> [Ver = | Size = 268 bytes | Created Date = 6/11/2007 10:59:26 AM | Attr = ]
Uniblue SpeedUpMyPC.job -> %SystemRoot%\tasks\Uniblue SpeedUpMyPC.job -> [Ver = | Size = 390 bytes | Created Date = 6/11/2007 10:59:25 AM | Attr = ]
.ico -> %System32%\.ico -> [Ver = | Size = 5429 bytes | Created Date = 6/7/2007 10:01:16 PM | Attr = ]
accserv.mib -> %System32%\accserv.mib -> [Ver = | Size = 15597 bytes | Created Date = 6/7/2007 7:53:18 PM | Attr = ]
ActiveScan -> %System32%\ActiveScan -> [Folder | Created Date = 6/7/2007 3:58:41 AM | Attr = ]
ASPRO -> %System32%\ASPRO -> [Folder | Created Date = 6/7/2007 10:01:09 PM | Attr = ]
asprouni.exe -> %System32%\asprouni.exe -> Panda Software [Ver = 1, 0, 0, 1 | Size = 69632 bytes | Created Date = 6/7/2007 10:02:33 PM | Attr = ]
asuninst.exe -> %System32%\asuninst.exe -> Panda Software [Ver = 1, 0, 0, 2 | Size = 73728 bytes | Created Date = 6/7/2007 3:59:17 AM | Attr = ]
authserv.mib -> %System32%\authserv.mib -> [Ver = | Size = 16617 bytes | Created Date = 6/7/2007 7:53:18 PM | Attr = ]
avldr.dll -> %System32%\avldr.dll -> Panda Software International [Ver = 2, 1, 0, 2 | Size = 50736 bytes | Created Date = 6/9/2007 2:09:45 PM | Attr = ]
COLOR -> %System32%\COLOR -> [Folder | Created Date = 5/7/2007 9:02:01 PM | Attr = ]
dhcp.mib -> %System32%\dhcp.mib -> [Ver = | Size = 4597 bytes | Created Date = 6/7/2007 7:53:18 PM | Attr = ]
dla -> %System32%\dla -> [Folder | Created Date = 5/13/2007 12:01:12 AM | Attr = ]
hasher.dll -> %System32%\hasher.dll -> [Ver = 2, 0, 2, 1 | Size = 159744 bytes | Created Date = 6/19/2007 8:19:16 PM | Attr = ]
Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Created Date = 6/7/2007 3:58:48 AM | Attr = ]
Helppro.ico -> %System32%\Helppro.ico -> [Ver = | Size = 1406 bytes | Created Date = 6/7/2007 10:01:15 PM | Attr = ]
HHActiveX.dll -> %System32%\HHActiveX.dll -> eHelp Corporation. [Ver = 9.20.566 | Size = 446464 bytes | Created Date = 6/9/2007 2:10:08 PM | Attr = ]
hostmib.mib -> %System32%\hostmib.mib -> [Ver = | Size = 48593 bytes | Created Date = 6/7/2007 7:53:18 PM | Attr = ]
ipforwd.mib -> %System32%\ipforwd.mib -> [Ver = | Size = 15799 bytes | Created Date = 6/7/2007 7:53:19 PM | Attr = ]
Kaspersky Lab -> %System32%\Kaspersky Lab -> [Folder | Created Date = 6/5/2007 5:40:28 PM | Attr = ]
lmmib2.mib -> %System32%\lmmib2.mib -> [Ver = | Size = 26100 bytes | Created Date = 6/7/2007 7:53:19 PM | Attr = ]
mcastmib.mib -> %System32%\mcastmib.mib -> [Ver = | Size = 30448 bytes | Created Date = 6/7/2007 7:53:19 PM | Attr = ]
mib_ii.mib -> %System32%\mib_ii.mib -> [Ver = | Size = 107882 bytes | Created Date = 6/7/2007 7:53:20 PM | Attr = ]
mipx.mib -> %System32%\mipx.mib -> [Ver = | Size = 21386 bytes | Created Date = 6/7/2007 7:53:20 PM | Attr = ]
mripsap.mib -> %System32%\mripsap.mib -> [Ver = | Size = 10313 bytes | Created Date = 6/7/2007 7:53:20 PM | Attr = ]
msft.mib -> %System32%\msft.mib -> [Ver = | Size = 581 bytes | Created Date = 6/7/2007 7:53:20 PM | Attr = ]
msipbtp.mib -> %System32%\msipbtp.mib -> [Ver = | Size = 13767 bytes | Created Date = 6/7/2007 7:53:21 PM | Attr = ]
msiprip2.mib -> %System32%\msiprip2.mib -> [Ver = | Size = 34317 bytes | Created Date = 6/7/2007 7:53:21 PM | Attr = ]
MSVCRT10.DLL -> %System32%\MSVCRT10.DLL -> [Ver = | Size = 210944 bytes | Created Date = 5/7/2007 9:02:09 PM | Attr = ]
nipx.mib -> %System32%\nipx.mib -> [Ver = | Size = 38608 bytes | Created Date = 6/7/2007 7:53:21 PM | Attr = ]
PAV -> %System32%\PAV -> [Folder | Created Date = 6/9/2007 2:09:45 PM | Attr = ]
pavas.ico -> %System32%\pavas.ico -> [Ver = | Size = 30590 bytes | Created Date = 6/7/2007 3:58:47 AM | Attr = ]
pavaspro.ico -> %System32%\pavaspro.ico -> [Ver = | Size = 30590 bytes | Created Date = 6/7/2007 10:01:14 PM | Attr = ]
pavcpl.cpl -> %System32%\pavcpl.cpl -> Panda Software [Ver = 1, 0, 2, 0 | Size = 54832 bytes | Created Date = 6/9/2007 2:10:15 PM | Attr = ]
PavCPL.dat -> %System32%\PavCPL.dat -> [Ver = | Size = 261 bytes | Created Date = 6/9/2007 2:31:41 PM | Attr = ]
pavipc.dll -> %System32%\pavipc.dll -> Panda Software International [Ver = 8, 0, 0, 0 | Size = 63024 bytes | Created Date = 6/9/2007 2:09:55 PM | Attr = ]
PavSHook.dll -> %System32%\PavSHook.dll -> Panda Software International [Ver = 8, 0, 0, 0 | Size = 292400 bytes | Created Date = 6/9/2007 2:09:55 PM | Attr = ]
PAV_FOG.OPC -> %System32%\PAV_FOG.OPC -> [Ver = | Size = 8627 bytes | Created Date = 6/9/2007 2:43:28 PM | Attr = ]
pcdlib32.dll -> %System32%\pcdlib32.dll -> Eastman Kodak [Ver = 3, 0, 0, 0 | Size = 212480 bytes | Created Date = 5/7/2007 9:02:08 PM | Attr = ]
SBFC.dat -> %System32%\SBFC.dat -> [Ver = | Size = 0 bytes | Created Date = 6/5/2007 3:30:02 AM | Attr = ]
SBRC.dat -> %System32%\SBRC.dat -> [Ver = | Size = 0 bytes | Created Date = 6/5/2007 3:30:02 AM | Attr = ]
SigUpdRequest_1181860034.tmp -> %System32%\SigUpdRequest_1181860034.tmp -> [Ver = | Size = 104 bytes | Created Date = 6/14/2007 5:27:14 PM | Attr = ]
SigUpdRequest_1181860150.tmp -> %System32%\SigUpdRequest_1181860150.tmp -> [Ver = | Size = 104 bytes | Created Date = 6/14/2007 5:29:10 PM | Attr = ]
smi.mib -> %System32%\smi.mib -> [Ver = | Size = 4332 bytes | Created Date = 6/7/2007 7:53:21 PM | Attr = ]
swreg.exe -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.6 | Size = 428032 bytes | Created Date = 6/27/2007 3:40:33 PM | Attr = ]
swsc.exe -> %System32%\swsc.exe -> SteelWerX [Ver = 2.0.0.0 | Size = 370688 bytes | Created Date = 6/27/2007 3:40:32 PM | Attr = ]
swxcacls.exe -> %System32%\swxcacls.exe -> SteelWerX [Ver = 1.0.1.1 | Size = 212480 bytes | Created Date = 6/27/2007 3:40:32 PM | Attr = ]
SYSTOOLS.DLL -> %System32%\SYSTOOLS.DLL -> Panda Software [Ver = 7.0.2.0 | Size = 107568 bytes | Created Date = 6/9/2007 2:09:56 PM | Attr = ]
tfswapi.dll -> %System32%\tfswapi.dll -> Sonic Solutions [Ver = 1.04.08a | Size = 61500 bytes | Created Date = 5/13/2007 12:01:12 AM | Attr = ]
thxcfg.ini -> %System32%\thxcfg.ini -> [Ver = | Size = 32 bytes | Created Date = 6/1/2007 8:17:15 PM | Attr = ]
TpUtil.dll -> %System32%\TpUtil.dll -> Panda Software International [Ver = 8, 0, 0, 0 | Size = 161328 bytes | Created Date = 6/9/2007 2:09:56 PM | Attr = ]
Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Created Date = 6/7/2007 3:58:48 AM | Attr = ]
Uninstallpro.ico -> %System32%\Uninstallpro.ico -> [Ver = | Size = 2550 bytes | Created Date = 6/7/2007 10:01:16 PM | Attr = ]
vfind.exe -> %System32%\vfind.exe -> [Ver = | Size = 49152 bytes | Created Date = 6/27/2007 3:40:33 PM | Attr = ]
wfospf.mib -> %System32%\wfospf.mib -> [Ver = | Size = 49275 bytes | Created Date = 6/7/2007 7:53:22 PM | Attr = ]
wins.mib -> %System32%\wins.mib -> [Ver = | Size = 26236 bytes | Created Date = 6/7/2007 7:53:24 PM | Attr = ]
ZPORT4AS.dll -> %System32%\ZPORT4AS.dll -> [Ver = | Size = 11776 bytes | Created Date = 6/7/2007 3:59:17 AM | Attr = ]
APPFCONT.DAT -> %System32%\drivers\APPFCONT.DAT -> [Ver = | Size = 249680 bytes | Created Date = 6/9/2007 2:11:03 PM | Attr = ]
APPFCONT.DAT.bck -> %System32%\drivers\APPFCONT.DAT.bck -> [Ver = | Size = 249680 bytes | Created Date = 6/9/2007 2:34:55 PM | Attr = ]
APPFLT.SYS -> %System32%\drivers\APPFLT.SYS -> Panda Software [Ver = 2.2.0.42 | Size = 58800 bytes | Created Date = 6/9/2007 2:10:41 PM | Attr = ]
APPFLTR.CFG -> %System32%\drivers\APPFLTR.CFG -> [Ver = | Size = 1224 bytes | Created Date = 6/9/2007 2:11:03 PM | Attr = ]
APPFLTR.CFG.bck -> %System32%\drivers\APPFLTR.CFG.bck -> [Ver = | Size = 1224 bytes | Created Date = 6/9/2007 2:36:33 PM | Attr = ]
cpoint.sys -> %System32%\drivers\cpoint.sys -> Panda Software [Ver = 1, 2, 0, 50 | Size = 17792 bytes | Created Date = 6/9/2007 2:09:56 PM | Attr = ]
drvmcdb.sys -> %System32%\drivers\drvmcdb.sys -> Sonic Solutions [Ver = 3.22.13a | Size = 88352 bytes | Created Date = 5/13/2007 12:02:34 AM | Attr = ]
drvnddm.sys -> %System32%\drivers\drvnddm.sys -> Sonic Solutions [Ver = 2.56.53a | Size = 40544 bytes | Created Date = 5/13/2007 12:02:34 AM | Attr = ]
dsaflt.sys -> %System32%\drivers\dsaflt.sys -> Panda Software International [Ver = 1, 5, 0, 0 | Size = 49968 bytes | Created Date = 6/9/2007 2:10:53 PM | Attr = ]
fnetmon.sys -> %System32%\drivers\fnetmon.sys -> Panda Software [Ver = 2.2.0.25 | Size = 15792 bytes | Created Date = 6/9/2007 2:10:41 PM | Attr = ]
idsflt.sys -> %System32%\drivers\idsflt.sys -> Panda Software International [Ver = 1, 5, 0, 0 | Size = 190640 bytes | Created Date = 6/9/2007 2:10:53 PM | Attr = ]
NETFLTDI.SYS -> %System32%\drivers\NETFLTDI.SYS -> Panda Software [Ver = 2.2.0.22 | Size = 121392 bytes | Created Date = 6/9/2007 2:10:41 PM | Attr = ]
netimflt.sys -> %System32%\drivers\netimflt.sys -> Panda Software [Ver = 1, 5, 0, 0 | Size = 142128 bytes | Created Date = 6/9/2007 2:10:53 PM | Attr = ]
net_m32.inf -> %System32%\drivers\net_m32.inf -> [Ver = | Size = 1990 bytes | Created Date = 6/9/2007 2:30:00 PM | Attr = ]
pavdrv51.sys -> %System32%\drivers\pavdrv51.sys -> Panda Software International [Ver = 7.0.1.0 (av07_rtm.070117-1343) | Size = 71680 bytes | Created Date = 6/9/2007 2:11:15 PM | Attr = ]
PavProc.sys -> %System32%\drivers\PavProc.sys -> Panda Software International [Ver = 1.1.3.0 | Size = 170800 bytes | Created Date = 6/9/2007 2:06:47 PM | Attr = ]
ShlDrv51.sys -> %System32%\drivers\ShlDrv51.sys -> Panda Software International [Ver = 1.3.11.0 | Size = 31104 bytes | Created Date = 6/9/2007 2:06:47 PM | Attr = ]
smsflt.sys -> %System32%\drivers\smsflt.sys -> Panda Software International [Ver = 1, 5, 0, 0 | Size = 36016 bytes | Created Date = 6/9/2007 2:10:54 PM | Attr = ]
sscdbhk5.sys -> %System32%\drivers\sscdbhk5.sys -> Sonic Solutions [Ver = 1.10.90a | Size = 5627 bytes | Created Date = 5/13/2007 12:01:28 AM | Attr = ]
ssrtln.sys -> %System32%\drivers\ssrtln.sys -> Sonic Solutions [Ver = 1.10.90a | Size = 23545 bytes | Created Date = 5/13/2007 12:01:12 AM | Attr = ]
wnmflt.sys -> %System32%\drivers\wnmflt.sys -> Panda Software International [Ver = 1, 5, 0, 0 | Size = 29360 bytes | Created Date = 6/9/2007 2:10:54 PM | Attr = ]
wnmsav.dat -> %System32%\drivers\wnmsav.dat -> [Ver = | Size = 48 bytes | Created Date = 6/11/2007 7:08:04 PM | Attr = ]
DsaFlt.cfg -> %System32%\drivers\etc\DsaFlt.cfg -> [Ver = | Size = 56 bytes | Created Date = 6/9/2007 2:37:52 PM | Attr = ]
DsaFlt.cfg.bck -> %System32%\drivers\etc\DsaFlt.cfg.bck -> [Ver = | Size = 56 bytes | Created Date = 6/9/2007 2:37:52 PM | Attr = ]
DsaFlt.rls -> %System32%\drivers\etc\DsaFlt.rls -> [Ver = | Size = 332136 bytes | Created Date = 6/9/2007 2:11:04 PM | Attr = ]
DsaFlt.rls.bck -> %System32%\drivers\etc\DsaFlt.rls.bck -> [Ver = | Size = 332136 bytes | Created Date = 6/9/2007 2:34:28 PM | Attr = ]
IdsFlt.cfg -> %System32%\drivers\etc\IdsFlt.cfg -> [Ver = | Size = 252 bytes | Created Date = 6/9/2007 2:37:50 PM | Attr = ]
IdsFlt.cfg.bck -> %System32%\drivers\etc\IdsFlt.cfg.bck -> [Ver = | Size = 252 bytes | Created Date = 6/9/2007 2:37:50 PM | Attr = ]
NetAR.wlt -> %System32%\drivers\etc\NetAR.wlt -> [Ver = | Size = 64 bytes | Created Date = 6/9/2007 2:34:06 PM | Attr = ]
NetAR.wlt.bck -> %System32%\drivers\etc\NetAR.wlt.bck -> [Ver = | Size = 64 bytes | Created Date = 6/9/2007 2:34:06 PM | Attr = ]
NetAV.alt -> %System32%\drivers\etc\NetAV.alt -> [Ver = | Size = 956 bytes | Created Date = 6/9/2007 2:33:59 PM | Attr = ]
NetAV.alt.bck -> %System32%\drivers\etc\NetAV.alt.bck -> [Ver = | Size = 956 bytes | Created Date = 6/9/2007 2:33:59 PM | Attr = ]
NetFlt.cfg -> %System32%\drivers\etc\NetFlt.cfg -> [Ver = | Size = 64 bytes | Created Date = 6/9/2007 2:34:28 PM | Attr = ]
NetFlt.cfg.bck -> %System32%\drivers\etc\NetFlt.cfg.bck -> [Ver = | Size = 64 bytes | Created Date = 6/9/2007 2:34:28 PM | Attr = ]
SmsFlt.cfg -> %System32%\drivers\etc\SmsFlt.cfg -> [Ver = | Size = 56 bytes | Created Date = 6/9/2007 2:37:52 PM | Attr = ]
SmsFlt.cfg.bck -> %System32%\drivers\etc\SmsFlt.cfg.bck -> [Ver = | Size = 56 bytes | Created Date = 6/9/2007 2:37:52 PM | Attr = ]
WnmFlt.cfg -> %System32%\drivers\etc\WnmFlt.cfg -> [Ver = | Size = 56 bytes | Created Date = 6/9/2007 2:37:53 PM | Attr = ]
WnmFlt.cfg.bck -> %System32%\drivers\etc\WnmFlt.cfg.bck -> [Ver = | Size = 56 bytes | Created Date = 6/9/2007 2:37:53 PM | Attr = ]
[Files/Folders - Modified Within 90 days]
0ebdd3a24eeb699deb2810cae82ef1 -> %SystemDrive%\0ebdd3a24eeb699deb2810cae82ef1 -> [Folder | Modified Date = 6/21/2007 3:42:52 AM | Attr = ]
1e27ec7a3d12101011985b2bf4eae6 -> %SystemDrive%\1e27ec7a3d12101011985b2bf4eae6 -> [Folder | Modified Date = 6/21/2007 3:42:52 AM | Attr = ]
5337cc453c680e76f82f2b3d -> %SystemDrive%\5337cc453c680e76f82f2b3d -> [Folder | Modified Date = 6/21/2007 3:42:52 AM | Attr = ]
56d17f72953736432f6af9fc0cb40e -> %SystemDrive%\56d17f72953736432f6af9fc0cb40e -> [Folder | Modified Date = 6/21/2007 3:42:52 AM | Attr = ]
5dc16ad34ec808cc53dd6cf95344 -> %SystemDrive%\5dc16ad34ec808cc53dd6cf95344 -> [Folder | Modified Date = 6/21/2007 3:42:52 AM | Attr = ]
7c710cfd3693d2a00355cea348 -> %SystemDrive%\7c710cfd3693d2a00355cea348 -> [Folder | Modified Date = 6/21/2007 3:42:52 AM | Attr = ]
92b16cd18ecc970858dc19 -> %SystemDrive%\92b16cd18ecc970858dc19 -> [Folder | Modified Date = 6/21/2007 3:42:52 AM | Attr = ]
9497d6b04d2366c15d8b9a5c4c -> %SystemDrive%\9497d6b04d2366c15d8b9a5c4c -> [Folder | Modified Date = 6/21/2007 3:42:52 AM | Attr = ]
bc43a794c47c499f25818e7e16 -> %SystemDrive%\bc43a794c47c499f25818e7e16 -> [Folder | Modified Date = 6/21/2007 3:42:52 AM | Attr = ]
boot.ini -> %SystemDrive%\boot.ini -> [Ver = | Size = 211 bytes | Modified Date = 6/9/2007 7:51:26 PM | Attr = RHS]
ce3d32b79820591e71755872698718 -> %SystemDrive%\ce3d32b79820591e71755872698718 -> [Folder | Modified Date = 6/21/2007 3:42:52 AM | Attr = ]
ComboFix -> %SystemDrive%\ComboFix -> [Folder | Modified Date = 6/27/2007 4:51:48 PM | Attr = ]
Config.Msi -> %SystemDrive%\Config.Msi -> [Folder | Modified Date = 6/18/2007 3:20:58 PM | Attr = ]
db934bfb4307a90f40d95ee1 -> %SystemDrive%\db934bfb4307a90f40d95ee1 -> [Folder | Modified Date = 6/21/2007 3:42:52 AM | Attr = ]
Documents and Settings -> %SystemDrive%\Documents and Settings -> [Folder | Modified Date = 6/6/2007 6:21:00 AM | Attr = ]
e37d3ed28d82612c80975b90 -> %SystemDrive%\e37d3ed28d82612c80975b90 -> [Folder | Modified Date = 6/21/2007 4:06:00 AM | Attr = ]
efb4bcccc2f4033f269e2b67a0ac8ccf -> %SystemDrive%\efb4bcccc2f4033f269e2b67a0ac8ccf -> [Folder | Modified Date = 6/21/2007 4:06:02 AM | Attr = ]
f33c09aa03a285f5d5e5923d -> %SystemDrive%\f33c09aa03a285f5d5e5923d -> [Folder | Modified Date = 6/21/2007 4:06:02 AM | Attr = ]
f6fdbf0e7409e7f85e5c23475198ab -> %SystemDrive%\f6fdbf0e7409e7f85e5c23475198ab -> [Folder | Modified Date = 6/21/2007 4:06:02 AM | Attr = ]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 526569472 bytes | Modified Date = 6/25/2007 3:38:06 PM | Attr = HS]
IbmEgath.XML -> %SystemDrive%\IbmEgath.XML -> [Ver = | Size = 132480 bytes | Modified Date = 6/10/2007 12:59:50 AM | Attr = ]
KPCMS -> %SystemDrive%\KPCMS -> [Folder | Modified Date = 5/7/2007 10:02:10 PM | Attr = ]
Program Files -> %ProgramFiles% -> [Folder | Modified Date = 6/26/2007 12:26:38 PM | Attr = ]
QooBox -> %SystemDrive%\QooBox -> [Folder | Modified Date = 6/27/2007 4:47:56 PM | Attr = ]
RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Modified Date = 6/6/2007 4:11:52 PM | Attr = HS]
SWSHARE -> %SystemDrive%\SWSHARE -> [Folder | Modified Date = 6/24/2007 3:40:24 AM | Attr = ]
System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Modified Date = 6/13/2007 5:47:48 AM | Attr = HS]
SystemUpdate -> %SystemDrive%\SystemUpdate -> [Folder | Modified Date = 4/1/2007 4:36:36 AM | Attr = ]
WINDOWS -> %SystemRoot% -> [Folder | Modified Date = 6/27/2007 4:40:34 PM | Attr = ]
$hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Modified Date = 6/13/2007 1:33:10 AM | Attr = H ]
$NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Modified Date = 4/4/2007 5:37:26 AM | Attr = H ]
$NtUninstallKB926247$ -> %SystemRoot%\$NtUninstallKB926247$ -> [Folder | Modified Date = 6/8/2007 4:06:18 PM | Attr = H ]
$NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Modified Date = 5/23/2007 4:06:18 AM | Attr = H ]
$NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Modified Date = 6/13/2007 3:03:58 AM | Attr = H ]
$NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Modified Date = 4/11/2007 3:08:46 AM | Attr = H ]
$NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Modified Date = 5/10/2007 3:05:02 AM | Attr = H ]
$NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Modified Date = 4/11/2007 3:10:12 AM | Attr = H ]
$NtUninstallKB931768$ -> %SystemRoot%\$NtUninstallKB931768$ -> [Folder | Modified Date = 5/10/2007 3:07:24 AM | Attr = H ]
$NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Modified Date = 4/11/2007 3:10:32 AM | Attr = H ]
$NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Modified Date = 4/11/2007 3:08:30 AM | Attr = H ]
$NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Modified Date = 6/13/2007 3:02:18 AM | Attr = H ]
$NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Modified Date = 6/13/2007 3:03:48 AM | Attr = H ]
ANS2000.INI -> %SystemRoot%\ANS2000.INI -> [Ver = | Size = 722 bytes | Modified Date = 6/26/2007 7:29:38 PM | Attr = ]
AppPatch -> %SystemRoot%\AppPatch -> [Folder | Modified Date = 6/21/2007 4:37:22 AM | Attr = ]
bootstat.dat -> %SystemRoot%\bootstat.dat -> [Ver = | Size = 2048 bytes | Modified Date = 6/25/2007 3:38:08 PM | Attr = S]
catchme.exe -> %SystemRoot%\catchme.exe -> [Ver = | Size = 87552 bytes | Modified Date = 6/5/2007 5:24:04 AM | Attr = ]
Downloaded Installations -> %SystemRoot%\Downloaded Installations -> [Folder | Modified Date = 6/10/2007 1:24:36 AM | Attr = ]
Downloaded Program Files -> %SystemRoot%\Downloaded Program Files -> [Folder | Modified Date = 6/21/2007 4:38:24 AM | Attr = S]
Fonts -> %SystemRoot%\Fonts -> [Folder | Modified Date = 6/10/2007 1:47:08 AM | Attr = R S]
Help -> %SystemRoot%\Help -> [Folder | Modified Date = 6/11/2007 7:30:46 PM | Attr = ]
ie7 -> %SystemRoot%\ie7 -> [Folder | Modified Date = 6/11/2007 7:25:56 PM | Attr = H ]
ie7updates -> %SystemRoot%\ie7updates -> [Folder | Modified Date = 6/13/2007 3:01:36 AM | Attr = ]
ime -> %SystemRoot%\ime -> [Folder | Modified Date = 6/21/2007 4:39:20 AM | Attr = ]
imsins.BAK -> %SystemRoot%\imsins.BAK -> [Ver = | Size = 1374 bytes | Modified Date = 6/13/2007 3:03:52 AM | Attr = ]
inf -> %SystemRoot%\inf -> [Folder | Modified Date = 6/15/2007 6:40:40 AM | Attr = H ]
Installer -> %SystemRoot%\Installer -> [Folder | Modified Date = 6/18/2007 3:20:58 PM | Attr = HS]
KPCMS.INI -> %SystemRoot%\KPCMS.INI -> [Ver = | Size = 149 bytes | Modified Date = 5/7/2007 10:02:10 PM | Attr = ]
Media -> %SystemRoot%\Media -> [Folder | Modified Date = 6/11/2007 7:26:06 PM | Attr = ]
Messages -> %SystemRoot%\Messages -> [Folder | Modified Date = 5/31/2007 5:32:10 PM | Attr = ]
msagent -> %SystemRoot%\msagent -> [Folder | Modified Date = 4/11/2007 11:36:02 PM | Attr = ]
NCUNINST.EXE -> %SystemRoot%\NCUNINST.EXE -> Northern Codeworks [Ver = 1, 0, 0, 1591 | Size = 45056 bytes | Modified Date = 5/20/2007 2:38:44 PM | Attr = ]
network diagnostic -> %SystemRoot%\network diagnostic -> [Folder | Modified Date = 6/19/2007 12:49:02 PM | Attr = ]
ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 490 bytes | Modified Date = 6/26/2007 12:28:16 PM | Attr = ]
ODBCINST.INI -> %SystemRoot%\ODBCINST.INI -> [Ver = | Size = 4525 bytes | Modified Date = 6/26/2007 12:28:14 PM | Attr = ]
pav.sig -> %SystemRoot%\pav.sig -> [Ver = | Size = 39182987 bytes | Modified Date = 6/7/2007 11:06:52 PM | Attr = ]
Prefetch -> %SystemRoot%\Prefetch -> [Folder | Modified Date = 6/27/2007 1:09:12 PM | Attr = ]
pss -> %SystemRoot%\pss -> [Folder | Modified Date = 6/9/2007 7:51:26 PM | Attr = ]
security -> %SystemRoot%\security -> [Folder | Modified Date = 6/7/2007 9:25:50 PM | Attr = ]
setupapi.log.0.old -> %SystemRoot%\setupapi.log.0.old -> [Ver = | Size = 1042428 bytes | Modified Date = 6/11/2007 7:24:22 PM | Attr = ]
SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Modified Date = 6/21/2007 4:46:40 AM | Attr = ]
system -> %SystemRoot%\system -> [Folder | Modified Date = 6/9/2007 2:54:08 PM | Attr = ]
system.ini -> %SystemRoot%\system.ini -> [Ver = | Size = 284 bytes | Modified Date = 6/9/2007 7:51:26 PM | Attr = ]
system32 -> %System32% -> [Folder | Modified Date = 6/27/2007 4:48:00 PM | Attr = ]
Tasks -> %SystemRoot%\Tasks -> [Folder | Modified Date = 6/11/2007 11:59:28 AM | Attr = S]
Temp -> %SystemRoot%\Temp -> [Folder | Modified Date = 6/27/2007 4:58:46 PM | Attr = ]
WBEM -> %SystemRoot%\WBEM -> [Folder | Modified Date = 6/11/2007 7:26:16 PM | Attr = ]
win.ini -> %SystemRoot%\win.ini -> [Ver = | Size = 811 bytes | Modified Date = 6/9/2007 7:51:26 PM | Attr = ]
Windows9XPx.dat -> %SystemRoot%\Windows9XPx.dat -> [Ver = | Size = 5 bytes | Modified Date = 4/12/2007 12:13:06 AM | Attr = ]
wininit.ini -> %SystemRoot%\wininit.ini -> [Ver = | Size = 256 bytes | Modified Date = 5/13/2007 1:02:38 AM | Attr = ]
SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Modified Date = 6/25/2007 3:38:20 PM | Attr = H ]
Uniblue SpeedUpMyPC Nag.job -> %SystemRoot%\tasks\Uniblue SpeedUpMyPC Nag.job -> [Ver = | Size = 268 bytes | Modified Date = 6/11/2007 11:59:28 AM | Attr = ]
Uniblue SpeedUpMyPC.job -> %SystemRoot%\tasks\Uniblue SpeedUpMyPC.job -> [Ver = | Size = 390 bytes | Modified Date = 6/11/2007 11:59:26 AM | Attr = ]
.ico -> %System32%\.ico -> [Ver = | Size = 5429 bytes | Modified Date = 6/21/2007 3:40:34 AM | Attr = ]
ActiveScan -> %System32%\ActiveScan -> [Folder | Modified Date = 6/11/2007 10:22:18 PM | Attr = ]
ASPRO -> %System32%\ASPRO -> [Folder | Modified Date = 6/21/2007 4:46:48 AM | Attr = ]
CatRoot -> %System32%\CatRoot -> [Folder | Modified Date = 6/12/2007 1:15:18 AM | Attr = ]
CatRoot2 -> %System32%\CatRoot2 -> [Folder | Modified Date = 6/25/2007 3:56:02 PM | Attr = ]
COLOR -> %System32%\COLOR -> [Folder | Modified Date = 5/7/2007 10:02:04 PM | Attr = ]
config -> %System32%\config -> [Folder | Modified Date = 6/21/2007 4:46:58 AM | Attr = ]
dla -> %System32%\dla -> [Folder | Modified Date = 6/21/2007 4:47:08 AM | Attr = ]
dllcache -> %System32%\dllcache -> [Folder | Modified Date = 6/13/2007 3:04:00 AM | Attr = HS]
drivers -> %System32%\drivers -> [Folder | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
EGATHDRV.SYS -> %System32%\EGATHDRV.SYS -> IBM Corporation [Ver = 2.05 | Size = 5427 bytes | Modified Date = 6/24/2007 3:39:20 AM | Attr = ]
en-us -> %System32%\en-us -> [Folder | Modified Date = 6/12/2007 1:16:24 AM | Attr = ]
FNTCACHE.DAT -> %System32%\FNTCACHE.DAT -> [Ver = | Size = 246312 bytes | Modified Date = 6/10/2007 2:09:04 AM | Attr = ]
Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Modified Date = 6/11/2007 10:21:00 PM | Attr = ]
Helppro.ico -> %System32%\Helppro.ico -> [Ver = | Size = 1406 bytes | Modified Date = 6/21/2007 3:40:34 AM | Attr = ]
Kaspersky Lab -> %System32%\Kaspersky Lab -> [Folder | Modified Date = 6/5/2007 6:40:30 PM | Attr = ]
logs -> %System32%\logs -> [Folder | Modified Date = 6/5/2007 8:04:58 PM | Attr = ]
PAV -> %System32%\PAV -> [Folder | Modified Date = 6/9/2007 3:09:46 PM | Attr = ]
pavas.ico -> %System32%\pavas.ico -> [Ver = | Size = 30590 bytes | Modified Date = 6/11/2007 10:20:58 PM | Attr = ]
pavaspro.ico -> %System32%\pavaspro.ico -> [Ver = | Size = 30590 bytes | Modified Date = 6/21/2007 3:40:32 AM | Attr = ]
PavCPL.dat -> %System32%\PavCPL.dat -> [Ver = | Size = 261 bytes | Modified Date = 6/9/2007 3:31:42 PM | Attr = ]
PavSHook.dll -> %System32%\PavSHook.dll -> Panda Software International [Ver = 8, 0, 0, 0 | Size = 292400 bytes | Modified Date = 4/16/2007 5:04:26 PM | Attr = ]
PAV_FOG.OPC -> %System32%\PAV_FOG.OPC -> [Ver = | Size = 8627 bytes | Modified Date = 6/27/2007 2:42:26 PM | Attr = ]
perfc009.dat -> %System32%\perfc009.dat -> [Ver = | Size = 71370 bytes | Modified Date = 6/9/2007 3:32:50 PM | Attr = ]
perfh009.dat -> %System32%\perfh009.dat -> [Ver = | Size = 439832 bytes | Modified Date = 6/9/2007 3:32:50 PM | Attr = ]
PerfStringBackup.INI -> %System32%\PerfStringBackup.INI -> [Ver = | Size = 520014 bytes | Modified Date = 6/9/2007 3:32:50 PM | Attr = ]
Restore -> %System32%\Restore -> [Folder | Modified Date = 6/13/2007 5:47:48 AM | Attr = ]
SBFC.dat -> %System32%\SBFC.dat -> [Ver = | Size = 0 bytes | Modified Date = 6/5/2007 4:30:04 AM | Attr = ]
SBRC.dat -> %System32%\SBRC.dat -> [Ver = | Size = 0 bytes | Modified Date = 6/5/2007 4:30:04 AM | Attr = ]
SigUpdRequest_1181860034.tmp -> %System32%\SigUpdRequest_1181860034.tmp -> [Ver = | Size = 104 bytes | Modified Date = 6/14/2007 6:27:46 PM | Attr = ]
SigUpdRequest_1181860150.tmp -> %System32%\SigUpdRequest_1181860150.tmp -> [Ver = | Size = 104 bytes | Modified Date = 6/14/2007 6:29:42 PM | Attr = ]
swreg.exe -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.6 | Size = 428032 bytes | Modified Date = 4/2/2007 2:21:28 PM | Attr = ]
thxcfg.ini -> %System32%\thxcfg.ini -> [Ver = | Size = 32 bytes | Modified Date = 6/1/2007 9:17:16 PM | Attr = ]
Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Modified Date = 6/11/2007 10:21:00 PM | Attr = ]
Uninstallpro.ico -> %System32%\Uninstallpro.ico -> [Ver = | Size = 2550 bytes | Modified Date = 6/21/2007 3:40:34 AM | Attr = ]
wbem -> %System32%\wbem -> [Folder | Modified Date = 6/21/2007 4:48:56 AM | Attr = ]
wpa.dbl -> %System32%\wpa.dbl -> [Ver = | Size = 2278 bytes | Modified Date = 6/25/2007 3:39:00 PM | Attr = ]
APPFCONT.DAT -> %System32%\drivers\APPFCONT.DAT -> [Ver = | Size = 249680 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
APPFCONT.DAT.bck -> %System32%\drivers\APPFCONT.DAT.bck -> [Ver = | Size = 249680 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
APPFLT.SYS -> %System32%\drivers\APPFLT.SYS -> Panda Software [Ver = 2.2.0.42 | Size = 58800 bytes | Modified Date = 4/2/2007 7:43:14 PM | Attr = ]
APPFLTR.CFG -> %System32%\drivers\APPFLTR.CFG -> [Ver = | Size = 1224 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
APPFLTR.CFG.bck -> %System32%\drivers\APPFLTR.CFG.bck -> [Ver = | Size = 1224 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
dsaflt.sys -> %System32%\drivers\dsaflt.sys -> Panda Software International [Ver = 1, 5, 0, 0 | Size = 49968 bytes | Modified Date = 4/2/2007 7:43:18 PM | Attr = ]
etc -> %System32%\drivers\etc -> [Folder | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
idsflt.sys -> %System32%\drivers\idsflt.sys -> Panda Software International [Ver = 1, 5, 0, 0 | Size = 190640 bytes | Modified Date = 4/2/2007 7:43:20 PM | Attr = ]
NETFLTDI.SYS -> %System32%\drivers\NETFLTDI.SYS -> Panda Software [Ver = 2.2.0.22 | Size = 121392 bytes | Modified Date = 4/17/2007 5:42:44 PM | Attr = ]
netimflt.sys -> %System32%\drivers\netimflt.sys -> Panda Software [Ver = 1, 5, 0, 0 | Size = 142128 bytes | Modified Date = 4/24/2007 3:43:56 PM | Attr = ]
net_m32.inf -> %System32%\drivers\net_m32.inf -> [Ver = | Size = 1990 bytes | Modified Date = 4/24/2007 4:43:54 PM | Attr = ]
smsflt.sys -> %System32%\drivers\smsflt.sys -> Panda Software International [Ver = 1, 5, 0, 0 | Size = 36016 bytes | Modified Date = 4/2/2007 7:43:28 PM | Attr = ]
wnmflt.sys -> %System32%\drivers\wnmflt.sys -> Panda Software International [Ver = 1, 5, 0, 0 | Size = 29360 bytes | Modified Date = 4/2/2007 7:43:32 PM | Attr = ]
wnmsav.dat -> %System32%\drivers\wnmsav.dat -> [Ver = | Size = 48 bytes | Modified Date = 6/12/2007 4:31:16 PM | Attr = ]
DsaFlt.cfg -> %System32%\drivers\etc\DsaFlt.cfg -> [Ver = | Size = 56 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
DsaFlt.cfg.bck -> %System32%\drivers\etc\DsaFlt.cfg.bck -> [Ver = | Size = 56 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
DsaFlt.rls -> %System32%\drivers\etc\DsaFlt.rls -> [Ver = | Size = 332136 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
DsaFlt.rls.bck -> %System32%\drivers\etc\DsaFlt.rls.bck -> [Ver = | Size = 332136 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
IdsFlt.cfg -> %System32%\drivers\etc\IdsFlt.cfg -> [Ver = | Size = 252 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
IdsFlt.cfg.bck -> %System32%\drivers\etc\IdsFlt.cfg.bck -> [Ver = | Size = 252 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
NetAR.wlt -> %System32%\drivers\etc\NetAR.wlt -> [Ver = | Size = 64 bytes | Modified Date = 6/25/2007 3:56:18 PM | Attr = ]
NetAR.wlt.bck -> %System32%\drivers\etc\NetAR.wlt.bck -> [Ver = | Size = 64 bytes | Modified Date = 6/25/2007 3:56:18 PM | Attr = ]
NetAV.alt -> %System32%\drivers\etc\NetAV.alt -> [Ver = | Size = 956 bytes | Modified Date = 6/27/2007 4:57:44 PM | Attr = ]
NetAV.alt.bck -> %System32%\drivers\etc\NetAV.alt.bck -> [Ver = | Size = 956 bytes | Modified Date = 6/27/2007 4:57:44 PM | Attr = ]
NetFlt.cfg -> %System32%\drivers\etc\NetFlt.cfg -> [Ver = | Size = 64 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
NetFlt.cfg.bck -> %System32%\drivers\etc\NetFlt.cfg.bck -> [Ver = | Size = 64 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
SmsFlt.cfg -> %System32%\drivers\etc\SmsFlt.cfg -> [Ver = | Size = 56 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
SmsFlt.cfg.bck -> %System32%\drivers\etc\SmsFlt.cfg.bck -> [Ver = | Size = 56 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
WnmFlt.cfg -> %System32%\drivers\etc\WnmFlt.cfg -> [Ver = | Size = 56 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
WnmFlt.cfg.bck -> %System32%\drivers\etc\WnmFlt.cfg.bck -> [Ver = | Size = 56 bytes | Modified Date = 6/27/2007 5:42:56 PM | Attr = ]
[File String Scan - Non-Microsoft Only]
qoologic , SAHAgent , -> %SystemRoot%\pav.sig -> [Ver = | Size = 39182987 bytes | Modified Date = 6/7/2007 11:06:52 PM | Attr = ]
PEC2 , -> %System32%\dfrg.msc -> [Ver = | Size = 41397 bytes | Modified Date = 8/4/2004 8:00:00 AM | Attr = ]
Thawte Consulting , -> %System32%\pxcpya64.exe -> Sonic Solutions [Ver = 1.00.34a | Size = 63144 bytes | Modified Date = 3/9/2006 5:00:00 AM | Attr = ]
Thawte Consulting , -> %System32%\pxcpyi64.exe -> Sonic Solutions [Ver = 1.00.34a | Size = 114856 bytes | Modified Date = 3/9/2006 5:00:00 AM | Attr = ]
Thawte Consulting , -> %System32%\pxinsa64.exe -> Sonic Solutions [Ver = 3.00.29a | Size = 62632 bytes | Modified Date = 5/4/2006 6:00:00 AM | Attr = ]
Thawte Consulting , -> %System32%\pxinsi64.exe -> Sonic Solutions [Ver = 3.00.29a | Size = 115880 bytes | Modified Date = 5/4/2006 6:00:00 AM | Attr = ]
Thawte Consulting , -> %System32%\PxSFS.DLL -> Sonic Solutions [Ver = 3.0.82.500 | Size = 1279656 bytes | Modified Date = 5/12/2006 6:26:02 PM | Attr = ]
winsync , -> %System32%\wbdbase.deu -> [Ver = | Size = 1309184 bytes | Modified Date = 8/4/2004 8:00:00 AM | Attr = ]
Thawte Consulting , -> %System32%\XceedSco.dll -> Xceed Software Inc (450) 442-2626
[email protected] www.xceedsoft.com [Ver = 1.1.5180.0 | Size = 276352 bytes | Modified Date = 10/6/2005 5:17:44 PM | Attr = ]
< End of report >