Hello,
I can get on the internet, but only for a few minutes before everything freezes up. and needs to be restarted to go anyware.I have pasted the WinPFind scan below.
Thanks!
WARNING: not all files found by this scanner are bad. Consult with a knowledgable person before proceeding.
If you see a message in the titlebar saying "Not responding..." you can ignore it. Windows sometimes displays this message due to the high volume of disk I/O. As long as the hard disk light is flashing, the program is still working properly.
»»»»»»»»»»»»»»»»» Windows OS and Versions »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Logfile created on: 9/16/06 7:46:46 PM
WinPFind v1.5.0 Folder = C:\WINDOWS\DESKTOP\WINPFIND\WINPFIND\
Product Name: Windows 98 Version: 4.10.2222
Internet Explorer Version: 6.0.2800.1106
»»»»»»»»»»»»»»»»» Checking Selected Standard Folders »»»»»»»»»»»»»»»»»»»»
Checking %SystemDrive% folder...
UPX! 11/4/05 10:09:46 PM 66048 C:\BFU.exe (Soeperman Enterprises Ltd.)
Checking %ProgramFilesDir% folder...
Checking %WinDir% folder...
PECompact2 8/25/04 10:48:08 PM 9624554 C:\WINDOWS\lpt$vpn.162 ()
UPX! 8/25/04 10:48:10 PM 1036800 C:\WINDOWS\vsapi32.dll (Trend Micro Inc.)
aspack 8/25/04 10:48:10 PM 1036800 C:\WINDOWS\vsapi32.dll (Trend Micro Inc.)
PECompact2 8/25/04 10:48:08 PM 9624554 C:\WINDOWS\VPTNFILE.162 ()
UPX! 9/13/06 12:31:36 PM 267228 C:\WINDOWS\popupwithcast.exe ()
UPX! 9/13/06 12:32:14 PM 100880 C:\WINDOWS\mtuninst.exe ()
69.59.186.63 9/13/06 12:32:12 PM 51712 C:\WINDOWS\nnhlvlt.dll ()
209.66.67.134 9/13/06 12:32:12 PM 51712 C:\WINDOWS\nnhlvlt.dll ()
web-nex 9/13/06 12:32:12 PM 51712 C:\WINDOWS\nnhlvlt.dll ()
Items found in C:\WINDOWS\hosts
Checking %System% folder...
PTech 8/22/98 12:24:08 AM 74460 C:\WINDOWS\SYSTEM\OLFAXDRV.DRV (Symantec Corp.)
ad-w-a-r-e.com 9/13/06 12:32:12 PM R S 226592 C:\WINDOWS\SYSTEM\DUVVOX.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MKVCRT40.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM 226592 C:\WINDOWS\SYSTEM\MVSHRUI.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\CQGWIZ.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MBTEXT40.DLL ()
UPX! 12/22/05 10:42:10 PM 4608 C:\WINDOWS\SYSTEM\sphlp32.exe ()
UPX! 12/22/05 10:42:10 PM 45568 C:\WINDOWS\SYSTEM\pppcgm.exe ()
UPX! 12/22/05 10:42:14 PM 109568 C:\WINDOWS\SYSTEM\idemlog.exe (,)
UPX! 9/13/06 12:31:46 PM 29696 C:\WINDOWS\SYSTEM\wf2f7ff9.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\NCTDI.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\OPE2CONV.DLL ()
PTech 11/9/99 10:55:54 PM 88571 C:\WINDOWS\SYSTEM\MDACRDME.HTM ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\NLNDS.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\PWWEROLD.DLL ()
UPX! 9/13/06 12:31:46 PM 155136 C:\WINDOWS\SYSTEM\oins.exe ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MJACM.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\egtier2.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MHAWT.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\VOEN2.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DGVOICE.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\CLRPOL.DLL ()
UPX! 9/13/06 12:31:58 PM 61952 C:\WINDOWS\SYSTEM\ceh5fdc8.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\TBD32.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DHTIME.DLL ()
69.59.186.63 9/13/06 12:32:10 PM 32256 C:\WINDOWS\SYSTEM\dmonwv.dll ()
209.66.67.134 9/13/06 12:32:10 PM 32256 C:\WINDOWS\SYSTEM\dmonwv.dll ()
66.63.167.97 9/13/06 12:32:10 PM 32256 C:\WINDOWS\SYSTEM\dmonwv.dll ()
66.63.167.77 9/13/06 12:32:10 PM 32256 C:\WINDOWS\SYSTEM\dmonwv.dll ()
web-nex 9/13/06 12:32:10 PM 32256 C:\WINDOWS\SYSTEM\dmonwv.dll ()
rec2_run 9/13/06 12:32:10 PM 32256 C:\WINDOWS\SYSTEM\dmonwv.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\LUDIS10N.dll ()
ad-w-a-r-e.com 9/13/06 12:32:12 PM 226592 C:\WINDOWS\SYSTEM\lwmpg12n.dll ()
UPX! 9/13/06 12:32:36 PM 29696 C:\WINDOWS\SYSTEM\wf3048de.dll ()
UPX! 9/13/06 12:32:36 PM 29696 C:\WINDOWS\SYSTEM\wf304948.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\atfsipc.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\lqkrn10N.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\ecshared.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\mascp.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\mj43dmod.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\wtspdmod.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\Mvvcrt10.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\IP32_32.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\HIFpcf13.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\morepl35.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DJVENUM.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\GQDEF.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\OYBCCR32.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\OGETHK32.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\lrpcx10N.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MFSHRUI.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\wwp.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MWRD3X40.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\IHMUI.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\SYRRUN.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\FJWPP.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\mdg4dmod.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\HYFmlc13.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\FD20ENU.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\SP1ui32.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DRUSIC16.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\ijctl.dll ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DHDIM.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MFOSS.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\HDINK.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\LWDIS12n.DLL ()
ad-w-a-r-e.com 9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DRCOBJ.DLL ()
Checking %System%\Drivers folder and sub-folders...
Checking the Windows folder and sub-folders for system and hidden files within the last 60 days...
9/16/06 7:46:40 PM RH 1200160 C:\WINDOWS\USER.DAT ()
9/16/06 7:46:10 PM RH 12595248 C:\WINDOWS\SYSTEM.DAT ()
9/16/06 7:44:44 PM H 1002826 C:\WINDOWS\ShellIconCache ()
9/16/06 6:10:26 PM H 10638 C:\WINDOWS\ttfCache ()
9/13/06 12:32:12 PM R S 226592 C:\WINDOWS\SYSTEM\DUVVOX.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MKVCRT40.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\LERTREND.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\CQGWIZ.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MBTEXT40.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\NCTDI.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\OPE2CONV.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\NLNDS.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\PWWEROLD.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MJACM.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\egtier2.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MHAWT.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\VOEN2.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DGVOICE.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\CLRPOL.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\TBD32.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DHTIME.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\LUDIS10N.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\atfsipc.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\lqkrn10N.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\ecshared.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\mascp.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\mj43dmod.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\wtspdmod.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\Mvvcrt10.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\IP32_32.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\HIFpcf13.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\morepl35.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DJVENUM.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\GQDEF.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\OYBCCR32.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\OGETHK32.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\lrpcx10N.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MFSHRUI.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\wwp.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MWRD3X40.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\IHMUI.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\SYRRUN.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\FJWPP.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\mdg4dmod.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\HYFmlc13.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\FD20ENU.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\SP1ui32.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DRUSIC16.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\ijctl.dll ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DHDIM.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\MFOSS.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\HDINK.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\LWDIS12n.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\DRCOBJ.DLL ()
9/13/06 12:33:06 PM R S 226592 C:\WINDOWS\SYSTEM\icengine.dll ()
8/31/06 7:43:16 AM RHS 409600 C:\WINDOWS\SYSTEM\Eswu\ovgan.exe ()
9/16/06 7:44:22 PM H 186 C:\WINDOWS\TEMP\ffastlog.txt ()
9/10/06 7:15:54 PM H 20480 C:\WINDOWS\Application Data\Microsoft\Word\~WRL0007.tmp ()
9/16/06 1:22:36 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\WDUB41I3\desktop.ini ()
9/16/06 1:22:38 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\O9EZ4LQ3\desktop.ini ()
9/16/06 1:22:38 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\8LO7SNKJ\desktop.ini ()
9/16/06 1:22:38 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\58SNLPOL\desktop.ini ()
9/16/06 1:22:38 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\4RBVQOPX\desktop.ini ()
9/16/06 1:22:38 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\8123CDE7\desktop.ini ()
9/16/06 1:22:40 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\5KWN5LS1\desktop.ini ()
9/16/06 1:22:40 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\GD63WX6R\desktop.ini ()
9/16/06 1:22:40 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\ANCDITQR\desktop.ini ()
9/16/06 1:22:40 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\ZNHFJXOW\desktop.ini ()
9/16/06 1:22:40 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\E3YV6LIJ\desktop.ini ()
9/16/06 1:22:46 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\3J93FX0W\desktop.ini ()
9/16/06 1:22:46 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\RN5ZRPCW\desktop.ini ()
9/16/06 1:22:48 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\6HH6R69O\desktop.ini ()
9/16/06 1:22:48 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\G73B201H\desktop.ini ()
9/16/06 1:23:00 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\0TQVOPIJ\desktop.ini ()
9/16/06 1:23:00 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\85EVCX27\desktop.ini ()
9/16/06 1:23:02 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\320JFTGX\desktop.ini ()
9/16/06 1:23:02 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\Y152Z2PK\desktop.ini ()
9/16/06 1:23:02 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\LV7JHHCE\desktop.ini ()
9/16/06 1:23:02 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\SLCRW3SB\desktop.ini ()
9/16/06 1:23:04 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\5OBHMG68\desktop.ini ()
9/16/06 1:23:06 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\W5QVCPYN\desktop.ini ()
9/16/06 1:23:06 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\L4KVP5GH\desktop.ini ()
9/16/06 1:23:06 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\65FOTON6\desktop.ini ()
9/16/06 1:23:06 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\U9CFA9Q5\desktop.ini ()
9/16/06 1:23:20 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\MBXPH256\desktop.ini ()
9/16/06 1:23:28 PM HS 67 C:\WINDOWS\Temporary Internet Files\Content.IE5\54KF1D4D\desktop.ini ()
9/16/06 7:44:02 PM H 6 C:\WINDOWS\Tasks\SA.DAT ()
9/13/06 12:31:36 PM RHS 71680 C:\WINDOWS\resh\wowexec.exe ()
Checking for CPL files...
4/23/99 10:22:00 PM 221280 C:\WINDOWS\SYSTEM\DESK.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 60928 C:\WINDOWS\SYSTEM\INTL.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 420864 C:\WINDOWS\SYSTEM\MMSYS.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 93248 C:\WINDOWS\SYSTEM\MODEM.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 14448 C:\WINDOWS\SYSTEM\NETCPL.CPL (Microsoft Corporation)
8/8/99 10:17:12 AM 41232 C:\WINDOWS\SYSTEM\ODBCCP32.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 47104 C:\WINDOWS\SYSTEM\PASSWORD.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 51984 C:\WINDOWS\SYSTEM\POWERCFG.CPL (Microsoft Corporation)
5/1/02 6:51:36 PM 192512 C:\WINDOWS\SYSTEM\JOY.CPL (Microsoft Corporation)
6/26/00 10:01:42 AM 720896 C:\WINDOWS\SYSTEM\PROSETP.CPL (Intel Corporation)
4/23/99 10:22:00 PM 66048 C:\WINDOWS\SYSTEM\ACCESS.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 72192 C:\WINDOWS\SYSTEM\APPWIZ.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 103424 C:\WINDOWS\SYSTEM\MAIN.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 70656 C:\WINDOWS\SYSTEM\STICPL.CPL ()
4/23/99 10:22:00 PM 387072 C:\WINDOWS\SYSTEM\SYSDM.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 14848 C:\WINDOWS\SYSTEM\TELEPHON.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 37376 C:\WINDOWS\SYSTEM\TIMEDATE.CPL (Microsoft Corporation)
2/10/99 3:48:48 AM 40960 C:\WINDOWS\SYSTEM\FINDFAST.CPL (Microsoft Corporation)
8/29/02 292352 C:\WINDOWS\SYSTEM\INETCPL.CPL (Microsoft Corporation)
2/20/03 4:42:34 PM 229487 C:\WINDOWS\SYSTEM\jpicpl32.cpl (Sun Microsystems)
12/14/03 9:20:50 AM 323072 C:\WINDOWS\SYSTEM\QuickTime.cpl (Apple Computer, Inc.)
7/11/97 53520 C:\WINDOWS\SYSTEM\MLCFG32.CPL (Microsoft Corporation)
Checking for Downloaded Program Files...
{00000161-9980-0010-8000-00AA00389B71} - - CodeBase =
http://codecs.micros.../i386/msaud.cab{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - QuickTime Object - CodeBase =
http://www.apple.com...ex/qtplugin.cab{166B1BCA-3F9C-11CF-8075-444553540000} - Shockwave ActiveX Control - CodeBase =
http://download.macr...director/sw.cab{30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - YInstStarter Class - CodeBase = C:\Program Files\Yahoo!\Common\yinsthelper.dll
{32564D57-0000-0010-8000-00AA00389B71} - - CodeBase =
http://codecs.micros...i386/wmv8ax.cab{33363249-0000-0010-8000-00AA00389B71} - - CodeBase =
http://codecs.micros...386/i263_32.cab{33564D57-9980-0010-8000-00AA00389B71} - - CodeBase =
http://codecs.micros...386/wmv9dmo.cab{406B5949-7190-4245-91A9-30A17DE16AD0} - Snapfish Activia - CodeBase =
http://www.snapfish....fishActivia.cab{90051A81-3018-4826-8B38-DD60B6B53F9C} - Snapfish File Upload ActiveX Control - CodeBase =
http://www.snapfish....pfishUpload.cab{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} - ActiveScan Installer Class - CodeBase =
http://acs.pandasoft...free/asinst.cab{9F1C11AA-197B-4942-BA54-47A8489BB47F} - Update Class - CodeBase =
http://v4.windowsupd...7971.8447800926{D27CDB6E-AE6D-11CF-96B8-444553540000} - Shockwave Flash Object - CodeBase =
http://fpdownload.ma...ash/swflash.cab{E09F6B38-3A0D-11D3-B5E7-0008C7BF61F2} - DetectMN - CodeBase =
http://www.musicnote...ad/npmusicn.cabDirectAnimation Java Classes - - CodeBase = file://C:\WINDOWS\SYSTEM\dajava.cab
Internet Explorer Classes for Java - - CodeBase = file://C:\WINDOWS\SYSTEM\iejava.cab
Microsoft XML Parser for Java - - CodeBase = file://C:\WINDOWS\Java\classes\xmldso.cab
»»»»»»»»»»»»»»»»» Checking Selected Startup Folders »»»»»»»»»»»»»»»»»»»»»
Checking files in %ALLUSERSPROFILE%\Startup folder...
Checking files in %ALLUSERSPROFILE%\Application Data folder...
Checking files in %USERPROFILE%\Startup folder...
4/2/06 8:20:22 AM 516 C:\WINDOWS\Start Menu\Programs\StartUp\Acrobat Assistant.lnk ()
4/2/06 8:20:22 AM 275 C:\WINDOWS\Start Menu\Programs\StartUp\Event Reminder.lnk ()
4/2/06 8:20:24 AM 478 C:\WINDOWS\Start Menu\Programs\StartUp\Image Transfer.lnk ()
4/2/06 8:20:22 AM 544 C:\WINDOWS\Start Menu\Programs\StartUp\Microsoft Office.lnk ()
12/25/03 7:31:40 PM 225280 C:\WINDOWS\Start Menu\Programs\StartUp\PowerReg Scheduler V3.exe (Leader Technologies)
2/24/02 11:30:12 PM 256000 C:\WINDOWS\Start Menu\Programs\StartUp\PowerReg Scheduler.exe (4)
Checking files in %USERPROFILE%\Application Data folder...
9/16/06 2:34:22 PM 28716 C:\WINDOWS\Application Data\dw.log ()
5/27/05 11:09:10 PM 24448 C:\WINDOWS\Application Data\GDIPFONTCACHEV1.DAT ()
4/14/02 11:04:30 AM 784 C:\WINDOWS\Application Data\mpauth.dat ()
9/14/06 6:55:20 PM 63 C:\WINDOWS\Application Data\Sskdmns.dll ()
9/13/06 12:34:06 PM 553146 C:\WINDOWS\Application Data\Sskknwrd.dll ()
9/14/06 6:53:28 PM 55 C:\WINDOWS\Application Data\Sskuknwrd.dll ()
5/29/05 10:14:00 AM 12 C:\WINDOWS\Application Data\uns.tmp ()
»»»»»»»»»»»»»»»»» Checking Selected Registry Keys »»»»»»»»»»»»»»»»»»»»»»»
>>> Internet Explorer Settings <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main]
\\Start Page -
http://www.msn.com/ \\Search Page -
http://www.microsoft...amp;ar=iesearch \\Default_Page_URL -
http://www.microsoft...p...&ar=msnhome \\Default_Search_URL -
http://www.microsoft...amp;ar=iesearch \\Local Page - C:\WINDOWS\SYSTEM\blank.htm
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main]
\\Start Page -
http://www.google.com/news \\Search Bar -
\\Search Page -
http://www.microsoft...amp;ar=iesearch \\Default_Search_URL -
http://www.microsoft...amp;ar=iesearch \\Local Page - C:\WINDOWS\SYSTEM\blank.htm
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search]
\\CustomizeSearch -
http://ie.search.msn...st/srchcust.htm \\SearchAssistant -
http://ie.search.msn...st/srchasst.htm[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
\\{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - Microsoft Url Search Hook = C:\WINDOWS\SYSTEM\SHDOCVW.DLL (Microsoft Corporation)
>>> BHO's <<<
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
>>> Internet Explorer Bars, Toolbars and Extensions <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars]
\{4D5C8C25-D075-11d0-B416-00C04FB90376} - &Tip of the Day = C:\WINDOWS\SYSTEM\SHDOCVW.DLL (Microsoft Corporation)
\{4528BBE0-4E08-11D5-AD55-00010333D0AD} - &Yahoo! Messenger = C:\PROGRAM FILES\YAHOO!\COMMON\YHEXBMESUS.DLL (Yahoo! Inc.)
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars]
\{4528BBE0-4E08-11D5-AD55-00010333D0AD} - &Yahoo! Messenger = C:\PROGRAM FILES\YAHOO!\COMMON\YHEXBMESUS.DLL (Yahoo! Inc.)
\{C431BF1E-9E71-4BB6-9C4E-8496D158DB1F} - = ()
\{32683183-48a0-441b-a342-7c2a440a9478} - Media Band = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
\\{8E718888-423F-11D2-876E-00A0C9082467} - &Radio = C:\WINDOWS\SYSTEM\MSDXM.OCX (Microsoft Corporation)
\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar = C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YCOMP5_6_0_0.DLL (Yahoo! Inc.)
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar]
\WebBrowser\\{01E04581-4EEE-11D0-BFE9-00AA005B4383} - &Address = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
\WebBrowser\\{0E5CBF21-D15F-11D0-8301-00AA005B4383} - &Links = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
\WebBrowser\\{4E7BD74F-2B8D-469E-D7E4-F660B597BF2A} - = ()
\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} - &Google = c:\program files\google\googletoolbar1.dll ()
\WebBrowser\\{46AE04C0-BCFA-4728-90E7-00EB4A8B3863} - = ()
\WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar = C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YCOMP5_6_0_0.DLL (Yahoo! Inc.)
\WebBrowser\\{44BE0690-5429-47F0-85BB-3FFD8020233E} - UCmore XP - The Search Accelerator = C:\PROGRAM FILES\THESEARCHACCELERATOR\UCMTSAIE.DLL ()
\ShellBrowser\\{01E04581-4EEE-11D0-BFE9-00AA005B4383} - &Address = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\CmdMapping]
\\{6224f700-cba3-4071-b251-47cb894244cd} - 8192 = ICQ
\\NEXTID - 8195
\\{AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - 8193 =
\\{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - 8194 =
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions]
\{6224f700-cba3-4071-b251-47cb894244cd} - ButtonText: ICQ Pro = C:\Program Files\ICQ\ICQ.exe (ICQ Inc.)
\{AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - ButtonText: AIM = C:\PROGRAM FILES\AIM95\AIM.EXE (America Online, Inc.)
\{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - ButtonText: Yahoo! Services =
>>> Approved Shell Extensions (Non-Microsoft Only) <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
\\{BDEADF00-C265-11d0-BCED-00A0C90AB50F} - Web Folders = C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL ()
\\{00BD7141-4A41-11d1-89EA-0020AFC43773} - 3dfx Voodoo2 Property Sheet = 3dfxV2ps.dll (3dfx Interactive, Inc.)
\\{5E44E225-A408-11CF-B581-008029601108} - Adaptec Directcd Shell Extension = C:\Program Files\Adaptec\DirectCD\shellex.dll (Adaptec)
\\{F802F260-519B-11D1-BB5D-0060974C6013} - ICQ Shell Extension = C:\PROGRAM FILES\ICQ\ICQSHEXT.DLL (ICQ)
\\{F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} - Shell Extensions for RealOne Player = C:\PROGRAM FILES\REAL\REALONE PLAYER\RPSHELL.DLL (RealNetworks, Inc.)
\\{5464D816-CF16-4784-B9F3-75C0DB52B499} - Yahoo! Mail = C:\PROGRAM FILES\YAHOO!\COMMON\YMMAPI.DLL (Yahoo! Inc.)
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
\\{BDEADF00-C265-11d0-BCED-00A0C90AB50F} - = C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL ()
>>> Context Menu Handlers (Non-Microsoft Only) <<<
[HKEY_LOCAL_MACHINE\Software\Classes\*\shellex\ContextMenuHandlers]
\WinZip - {E0D79304-84BE-11CE-9641-444553540000} = C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing, Inc.)
\Yahoo! Mail - {5464D816-CF16-4784-B9F3-75C0DB52B499} = C:\PROGRAM FILES\YAHOO!\COMMON\YMMAPI.DLL (Yahoo! Inc.)
[HKEY_LOCAL_MACHINE\Software\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers]
[HKEY_LOCAL_MACHINE\Software\Classes\Directory\shellex\ContextMenuHandlers]
\WinZip - {E0D79304-84BE-11CE-9641-444553540000} = C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing, Inc.)
[HKEY_LOCAL_MACHINE\Software\Classes\Directory\BackGround\shellex\ContextMenuHandlers]
[HKEY_LOCAL_MACHINE\Software\Classes\Folder\shellex\ContextMenuHandlers]
\WinZip - {E0D79304-84BE-11CE-9641-444553540000} = C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing, Inc.)
>>> Column Handlers (Non-Microsoft Only) <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers]
>>> Registry Run Keys <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
ScanRegistry - C:\WINDOWS\scanregw.exe (Microsoft Corporation)
SystemTray - C:\WINDOWS\SYSTEM\SysTray.Exe (Microsoft Corporation)
LoadPowerProfile - C:\WINDOWS\Rundll32.exe (Microsoft Corporation)
Voodoo2 - C:\WINDOWS\rundll32.exe (Microsoft Corporation)
EnsoniqMixer - C:\WINDOWS\starter.exe (Creative Technology, Ltd.)
RoxioEngineUtility - C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe (Roxio)
TheMonitor - C:\WINDOWS\DUCE6.exe ()
sys03969849206 - C:\WINDOWS\sys03969849206.exe ()
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
MSFS Installed = 1
MAPI Installed = 1
IMAIL Installed = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices]
LoadPowerProfile - C:\WINDOWS\Rundll32.exe (Microsoft Corporation)
SchedulingAgent - C:\WINDOWS\SYSTEM\mstask.exe (Microsoft Corporation)
Machine Debug Manager - C:\WINDOWS\SYSTEM\MDM.EXE ()
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
Yahoo! Pager - C:\Program Files\Yahoo!\Messenger\ypager.exe ()
RealPlayer - C:\Program Files\Real\RealOne Player\realplay.exe (RealNetworks, Inc.)
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce]
>>> Startup Links <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\\Common Startup]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\\Startup]
C:\WINDOWS\Start Menu\Programs\StartUp\Acrobat Assistant.lnk - C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe (Adobe Systems Inc.)
C:\WINDOWS\Start Menu\Programs\StartUp\Event Reminder.lnk - D:\PMG4\PMREMIND.EXE ()
C:\WINDOWS\Start Menu\Programs\StartUp\Image Transfer.lnk - C:\Program Files\Sony Corporation\Image Transfer\SonyTray.exe ()
C:\WINDOWS\Start Menu\Programs\StartUp\Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
C:\WINDOWS\Start Menu\Programs\StartUp\PowerReg Scheduler V3.exe (Leader Technologies)
C:\WINDOWS\Start Menu\Programs\StartUp\PowerReg Scheduler.exe (4)
>>> MSConfig Disabled Items <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-]
TaskMonitor C:\WINDOWS\taskmon.exe
Promon.exe Promon.exe
SMSERIAL sm56hlpr.exe
SaveNow C:\Program Files\SaveNow\SaveNow.exe
QuickTime Task "C:\WINDOWS\SYSTEM\QTTASK.EXE" -atboottime
Mirabilis ICQ C:\Program Files\ICQ\NDetect.exe
Adaptec DirectCD C:\PROGRA~1\ADAPTEC\DIRECTCD\DIRECTCD.EXE
WinampAgent "C:\PROGRAM FILES\WINAMP\WINAMPa.exe"
tgcmd "C:\Program Files\Support.com\bin\tgcmd.exe" /server
TkBellExe "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
LoadQM loadqm.exe
SM1BG C:\WINDOWS\SM1BG.EXE
CreateCD C:\PROGRA~1\ADAPTEC\EASYCD~1\CREATECD\CREATECD.EXE -r
AEHKORUX C:\WINDOWS\AEHKORUX.exe
WildTangent CDA RUNDLL32.exe C:\PROGRA~1\WILDTA~1\APPS\CDA\CDAENG~1.DLL,cdaEngineMain
cronos C:\WINDOWS\marco!.scr
xload "C:\WINDOWS\XLOAD.exe"
webHancer Agent "C:\Program Files\webHancer\Programs\whAgent.exe"
webHancer Survey Companion "C:\Program Files\webHancer\Programs\whSurvey.exe"
keyboard C:\\KYBRDFF_18.exe
septpop06apsept C:\PROGRAM FILES\POPUPWITHCAST\SEPTPOP06APSEPT.exe
Internet Optimizer "C:\Program Files\Internet Optimizer\optimize.exe"
pop06apelt C:\WINDOWS\THISELT.exe
defender C:\\DFNDRFF_E1.exe
ceh5fdc8 RUNDLL32.EXE wf2f7ff9.dll,n 0045fdc400000002f2f7ff9
win3208920696984 C:\WINDOWS\win3208920696984.exe
SurfSideKick 3 C:\PROGRAM FILES\SURFSIDEKICK 3\Ssk.exe
sys02696984920 C:\WINDOWS\sys02696984920.exe
autoupdate rundll32 C:\WINDOWS\SYSTEM\DMONWV.DLL,SHStart
gxmcea C:\WINDOWS\hghkfc.exe reg_run
SWRWUNWA C:\WINDOWS\SWRWUNWA.exe
newname C:\\NWNMFF_18.exe
loaddr C:\TOPAFF.EXE
TheMonitor C:\WINDOWS\DUCE6.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce-]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx-]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices-]
CVPND "C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe" start
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce-]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-]
AIM C:\PROGRAM FILES\AIM95\aim.exe -cnetwait.odl
Mozilla Quick Launch "C:\Program Files\Netscape\Netscape\Netscp.exe" -turbo
Iprm "C:\WINDOWS\resh\wowexec.exe" -vt yazb
SurfSideKick 3 C:\PROGRAM FILES\SURFSIDEKICK 3\Ssk.exe
Znrxhzr C:\WINDOWS\SYSTEM\Eswu\ovgan.exe
duseg C:\WINDOWS\hghkfc.exe reg_run
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce-]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices-]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce-]
[All Users Startup Folder Disabled Items]
[Current User Startup Folder Disabled Items]
C:\WINDOWS\Start Menu\Programs\Disabled Startup Items\eBay Toolbar.LNK - C:\Program Files\eBay\eBay Toolbar\4.3.0.8\ebaytbar.exe (eBay)
C:\WINDOWS\Start Menu\Programs\Disabled Startup Items\Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
>>> User Agent Post Platform <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
\\{9A40F015-9D92-DC46-5633-AA25C272F4AA} - = ()
>>> AppInit Dll's <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs]
>>> Image File Execution Options <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options]
>>> Shell Service Object Delay Load <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
\\WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} = C:\WINDOWS\SYSTEM\WEBCHECK.DLL (Microsoft Corporation)
>>> Shell Execute Hooks <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
\\{AEB6717E-7E19-11d0-97EE-00C04FD91972} - URL Exec Hook = shell32.dll (Microsoft Corporation)
>>> Shared Task Scheduler <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
\\{438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
\\{8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
>>> Winlogon <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
>>> DNS Name Servers <<<
Adapters:
Intel® PRO/100 VE Network Connection
Name Server:
>>> All Winsock2 Catalogs <<<
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries]
\000000000001\\PackedCatalogItem - CC:\WINDOWS\SYSTEM\mswsosp.dll ()
\000000000002\\PackedCatalogItem - CC:\WINDOWS\SYSTEM\msafd.dll ()
\000000000003\\PackedCatalogItem - CC:\WINDOWS\SYSTEM\msafd.dll ()
\000000000004\\PackedCatalogItem - CC:\WINDOWS\SYSTEM\msafd.dll ()
\000000000005\\PackedCatalogItem - CC:\WINDOWS\SYSTEM\rsvpsp.dll ()
\000000000006\\PackedCatalogItem - CC:\WINDOWS\SYSTEM\rsvpsp.dll ()
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries]
\000000000001\\LibraryPath - C:\WINDOWS\SYSTEM\rnr20.dll (Microsoft Corporation)
>>> Protocol Handlers (Non-Microsoft Only) <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler]
\msdaipp - ()
\ipp - ()
>>> Protocol Filters (Non-Microsoft Only) <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter]
>>> Selected AddOn's <<<
»»»»»»»»»»»»»»»»»»»»»»»» Scan Complete »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»