Move it
C:\WINDOWS\SYSTEM32\1160681513.exe moved successfully.
[Custom Input]
< purity >
OTMoveIt2 v1.0.20 log created on 03102008_171045
--------------------------
Explorer killed successfully
[Registry - Non-Microsoft Only]
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\UserFaultCheck deleted successfully.
File not found.
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit deleted successfully.
File not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{43CDDD56-4323-4B8B-8AA8-229411D7BD14} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43CDDD56-4323-4B8B-8AA8-229411D7BD14}\ deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{4B3803EA-5230-4DC3-A7FC-33638F3D3542} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c95fe080-8f5d-11d2-a20b-00aa003c157a}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\\{c95fe080-8f5d-11d2-a20b-00aa003c157a} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c95fe080-8f5d-11d2-a20b-00aa003c157a}\ not found.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\&eBay Search\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ipp\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\msdaipp\ deleted successfully.
[Files/Folders - Created Within 90 days]
C:\FOUND.001 folder moved successfully.
C:\WINDOWS\msdownld.tmp folder deleted successfully.
[Files Created - Additional Folder Scans - Non-Microsoft Only]
C:\PROGRAM FILES\COMMON FILES\ѕymbols folder moved successfully.
C:\PROGRAM FILES\COMMON FILES\Fοnts folder moved successfully.
[Files/Folders - Modified Within 90 days]
File C:\FOUND.001 not found!
[Files Modified - Additional Folder Scans - Non-Microsoft Only]
File C:\PROGRAM FILES\COMMON FILES\ѕymbols not found!
File C:\PROGRAM FILES\COMMON FILES\Fοnts not found!
[File - Purity Scan: Additional Folder Scans - Non-Microsoft Only]
File C:\PROGRAM FILES\COMMON FILES\Fοnts not found!
File C:\PROGRAM FILES\COMMON FILES\ѕymbols not found!
[Extra Files]
< Purity >
[Empty Temp Folders]
File delete failed. C:\Documents and Settings\Amy\Local Settings\Temp\~DFC252.tmp scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
User temp folders emptied.
SystemRoot temp folder emptied.
IE temp folders emptied
RecycleBin -> emptied.
Explorer started successfully
< End of fix log >
WinPFind35U Version 1.0.4.1 fix logfile created on 03102008_170258
-------------------
Deckard's System Scanner v20071014.68
Run by Amy on 2008-03-10 17:14:49
Computer is in Normal Mode.
--------------------------------------------------------------------------------
Total Physical Memory: 383 MiB (512 MiB recommended).System Drive C: has 3.21 GiB (less than 15%) free.-- HijackThis (run as Amy.exe) -------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:15:39 PM, on 3/10/08
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRAM FILES\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRAM FILES\QuickTime\qttask.exe
C:\PROGRAM FILES\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\PROGRA~1\SPYWAR~1\SpywareTerminatorShield.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Documents and Settings\Amy\Desktop\dss.exe
C:\WINDOWS\system32\spoolsv.exe
C:\DOCUME~1\Amy\Desktop\Amy.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\PROGRAM FILES\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\WgaTray.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRAM FILES\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\PROGRAM FILES\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\COMMON FILES\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRAM FILES\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [QuickTime Task] "C:\PROGRAM FILES\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\PROGRAM FILES\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SMSTray] C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SpywareTerminator] "C:\PROGRA~1\SPYWAR~1\SpywareTerminatorShield.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe (User 'Default user')
O8 - Extra context menu item: Add to AMV Convert Tool... - C:\PROGRAM FILES\AMV Convert Tool 3.70\AMVConverter\grab.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky...can_unicode.cabO16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://www.update.mi...b?1185340200695O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://www.update.mi...b?1185332238829O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) -
http://cdn.digitalci....1.11_en_dl.cabO16 - DPF: {CBD8B1CB-2F5F-415F-93E8-A297B33DCBB2} (CentrinoCheck Control) -
http://entriq.vo.lln...eck_1_0_0_4.cabO16 - DPF: {D7208880-9B7A-43E1-AABB-8C888A5704F9} (NetCamPlayerWeb11gv2 Control) -
http://copecam.ourli...yerWeb11gv2.cabO18 - Protocol: talkto - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\PROGRAM FILES\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\PROGRAM FILES\COMMON FILES\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\PROGRAM FILES\Spyware Terminator\sp_rsser.exe
--
End of file - 5463 bytes
-- Files created between 2008-02-10 and 2008-03-10 -----------------------------
2008-03-09 18:29:11 0 d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-03-09 18:29:08 0 d-------- C:\WINDOWS\System32\Kaspersky Lab
2008-03-06 20:06:59 0 d-------- C:\Documents and Settings\Amy\Application Data\Runscanner.net
2008-03-04 21:09:41 0 d-------- C:\Documents and Settings\Amy\Application Data\Malwarebytes
2008-03-04 21:09:18 0 d-------- C:\PROGRAM FILES\Malwarebytes' Anti-Malware
2008-03-04 21:09:18 0 d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-03-03 17:47:06 2904 --a------ C:\WINDOWS\System32\tmp.reg
2008-03-02 13:35:59 0 d-------- C:\PROGRAM FILES\Enigma Software Group
2008-03-02 08:48:35 0 dr-h----- C:\$VAULT$.AVG
2008-03-02 08:36:19 138752 --a------ C:\WINDOWS\System32\drivers\sp_rsdrv2.sys
2008-03-02 08:36:11 0 d-------- C:\Documents and Settings\All Users\Application Data\Spyware Terminator
2008-03-02 08:36:10 0 d-------- C:\Documents and Settings\Amy\Application Data\Spyware Terminator
2008-03-02 08:35:54 0 d-------- C:\PROGRAM FILES\Spyware Terminator
2008-03-02 07:25:39 0 d-------- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-02-21 16:38:40 0 d-------- C:\3e0d865f827caed8f177caeebe849b
2008-02-21 16:36:26 0 d--h----- C:\Documents and Settings\Administrator\Templates
2008-02-21 16:36:26 0 dr------- C:\Documents and Settings\Administrator\Start Menu
2008-02-21 16:36:26 0 dr-h----- C:\Documents and Settings\Administrator\SendTo
2008-02-21 16:36:26 0 d--h----- C:\Documents and Settings\Administrator\Recent
2008-02-21 16:36:26 0 d--h----- C:\Documents and Settings\Administrator\PrintHood
2008-02-21 16:36:26 0 d--h----- C:\Documents and Settings\Administrator\NetHood
2008-02-21 16:36:26 0 d-------- C:\Documents and Settings\Administrator\My Documents
2008-02-21 16:36:26 0 d--h----- C:\Documents and Settings\Administrator\Local Settings
2008-02-21 16:36:26 0 d-------- C:\Documents and Settings\Administrator\Favorites
2008-02-21 16:36:26 0 d-------- C:\Documents and Settings\Administrator\Desktop
2008-02-21 16:36:26 0 d---s---- C:\Documents and Settings\Administrator\Cookies
2008-02-21 16:36:26 0 dr-h----- C:\Documents and Settings\Administrator\Application Data
2008-02-21 16:36:26 0 d---s---- C:\Documents and Settings\Administrator\Application Data\Microsoft
2008-02-21 16:36:25 1310720 --ah----- C:\Documents and Settings\Administrator\NTUSER.DAT
2008-02-21 15:06:14 0 d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2008-02-21 14:39:37 0 d-------- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
2008-02-21 14:04:43 0 d-------- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2008-02-19 21:38:29 0 d-------- C:\WINDOWS\Prefetch
2008-02-16 17:35:10 0 d-------- C:\WINDOWS\RegCure
2008-02-16 10:00:15 0 d-------- C:\dea74a5bd43d8bd7209bf289790991
2008-02-14 19:23:01 0 d-------- C:\Documents and Settings\Amy\Application Data\{AC84089A-4614-4D65-9C7F-C70274C17586}
2008-02-14 19:21:32 0 d-------- C:\PROGRAM FILES\XP Repair Pro 2007
2008-02-11 17:51:40 0 d-------- C:\PROGRAM FILES\Warez
2008-02-10 20:45:55 0 d-------- C:\050bc7405e3389cf38ed8bb96b26
2008-02-10 20:11:48 0 d-------- C:\2205df5f95f866c0a81246
-- Find3M Report ---------------------------------------------------------------
2008-03-07 21:40:00 4830968 --ah----- C:\Documents and Settings\Amy\Application Data\IconCache.db
2008-03-01 20:23:32 8704 --a------ C:\Documents and Settings\Amy\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2008-02-20 07:06:00 16 --a------ C:\WINDOWS\popcinfo.dat
2008-02-19 21:16:40 22780 --a------ C:\WINDOWS\System32\emptyregdb.dat
2008-02-17 10:03:26 39008 --a------ C:\Documents and Settings\Amy\Application Data\GDIPFONTCACHEV1.DAT
2008-02-15 18:20:12 4 --a------ C:\WINDOWS\System32\D9B749
2008-02-09 20:07:58 0 d-------- C:\PROGRAM FILES\MarkAny
2008-02-09 20:07:56 0 d-------- C:\PROGRAM FILES\Samsung
2008-02-01 08:40:32 110592 --a------ C:\WINDOWS\System32\TG_DUMP0708.DLL <Not Verified; ENJsoft Corporation; SelfMusicVideo>
2008-02-01 08:40:32 40960 --a------ C:\WINDOWS\System32\MAMACExtract.dll <Not Verified; ???????; ??????? MAMACExtract>
2008-01-26 05:36:10 0 d-------- C:\PROGRAM FILES\MyFree Codec
2008-01-26 05:33:16 0 d-------- C:\PROGRAM FILES\COMMON FILES\Real
2008-01-26 05:32:58 0 d-------- C:\Documents and Settings\Amy\Application Data\DataCast
2008-01-26 05:29:18 0 d-------- C:\PROGRAM FILES\Best Buy Rhapsody
2008-01-26 05:28:58 0 d-------- C:\Documents and Settings\Amy\Application Data\Real
2008-01-20 22:38:20 0 d-------- C:\Documents and Settings\Amy\Application Data\WinRAR
2008-01-20 22:21:56 0 d-------- C:\PROGRAM FILES\uTorrent
2008-01-20 22:21:52 0 d-------- C:\Documents and Settings\Amy\Application Data\uTorrent
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"QuickTime Task"="C:\PROGRAM FILES\QuickTime\qttask.exe" [04/27/07 09:41 AM]
"Adobe Reader Speed Launcher"="C:\PROGRAM FILES\Adobe\Reader 8.0\Reader\Reader_sl.exe" [10/10/07 07:51 PM]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe" [08/23/01 04:00 AM]
"MSPY2002"="C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe" [08/23/01 04:00 AM]
"PHIME2002ASync"="C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.exe" [08/23/01 04:00 AM]
"PHIME2002A"="C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.exe" [08/23/01 04:00 AM]
"SMSTray"="C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe" [09/20/07 05:21 PM]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [02/21/08 03:06 PM]
"SpywareTerminator"="C:\PROGRA~1\SPYWAR~1\SpywareTerminatorShield.exe" [03/02/08 08:36 AM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\System32\ctfmon.exe" [08/23/01 12:00 PM]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"=1 (0x1)
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\system]
"disableregistrytools"=0 (0x0)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoActiveDesktop"=0 (0x0)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{88485281-8b4b-4f8d-9ede-82e29a064277}"= C:\PROGRA~1\MarkAny\CONTEN~1\MACSMA~1.DLL [11/23/04 04:51 PM 192512]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
"Notification Packages"= scecli scecli scecli scecli
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
SecurityProviders msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll,
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk
backup=C:\WINDOWS\pss\Adobe Gamma Loader.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
backup=C:\WINDOWS\pss\HP Digital Imaging Monitor.lnkCommon Startup
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Image Zone Fast Start.lnk]
backup=C:\WINDOWS\pss\HP Image Zone Fast Start.lnkCommon Startup
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Image Zone Fast Start.lnk
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Microsoft Office.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk
backup=C:\WINDOWS\pss\Microsoft Office.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
"C:\PROGRA~1\OUTLOO~1\setup50.exe" /APP:OE /CALLER:IE50 /user /install
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}.Restore]
rundll32.exe advpack.dll,UserUnInstStubWrapper {44BBA840-CC51-11CF-AAFA-00AA00B6015C}
"C:\PROGRA~1\OUTLOO~1\setup50.exe" /APP:OE /CALLER:IE50 /user /uninstall
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
"C:\PROGRA~1\OUTLOO~1\setup50.exe" /APP:WAB /CALLER:WIN9X /user /install
"C:\PROGRA~1\OUTLOO~1\setup50.exe" /APP:WAB /CALLER:IE50 /user /install
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9EF0045A-CDD9-438e-95E6-02B9AFEC8E11}]
C:\WINDOWS\SYSTEM32\updcrl.exe -e -u C:\WINDOWS\SYSTEM\verisignpub1.crl
-- End of Deckard's System Scanner: finished at 2008-03-10 17:16:41 ------------
Edited by 1bigray, 10 March 2008 - 06:17 PM.