OK. Here are the 3 log files:
ComboFix 08-04-12.7 - gerard and steve 2008-04-13 9:43:49.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.179 [GMT -4:00]
Running from: C:\Documents and Settings\gerard and steve\Desktop\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Program Files\Common Files\mcroso~1.net
C:\Program Files\ecurit~1
C:\Program Files\fnts~1
C:\Program Files\fnts~1\F?nts\
C:\Program Files\Router
C:\WINDOWS\BM67bb4d80.xml
C:\WINDOWS\cookies.ini
C:\WINDOWS\pskt.ini
C:\WINDOWS\ssembl~1
C:\WINDOWS\system32\f10WtR
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\oqtss.ini
C:\WINDOWS\system32\oqtss.ini2
.
((((((((((((((((((((((((( Files Created from 2008-03-13 to 2008-04-13 )))))))))))))))))))))))))))))))
.
2008-04-11 22:49 . 2008-04-11 22:49 <DIR> d-------- C:\Documents and Settings\gerard and steve\Application Data\ieSpell
2008-04-11 22:48 . 2008-04-12 11:28 <DIR> d-------- C:\Program Files\ieSpell
2008-04-11 18:06 . 2008-04-11 18:07 <DIR> d-------- C:\ComboFix[1]
2008-04-04 22:41 . 2008-04-04 22:41 <DIR> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-04-04 12:40 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll
2008-04-04 12:40 . 2007-07-30 19:19 207,736 --a------ C:\WINDOWS\system32\muweb.dll
2008-04-04 12:40 . 2007-07-30 19:19 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-04-01 05:12 . 2008-04-01 05:12 <DIR> d-------- C:\Program Files\Trend Micro
2008-03-31 17:15 . 2008-03-31 17:15 2,764 --a------ C:\WINDOWS\system32\OEMINFO.PNF
2008-03-31 16:54 . 2007-11-27 22:56 116,416 --a------ C:\WINDOWS\system32\drivers\msfwhlpr.sys
2008-03-31 16:54 . 2007-11-27 22:56 91,328 --a------ C:\WINDOWS\system32\drivers\msfwdrv.sys
2008-03-31 16:52 . 2008-03-31 16:52 <DIR> d-------- C:\WINDOWS\system32\bits
2008-03-31 16:52 . 2007-07-06 15:09 70,928 --a------ C:\WINDOWS\system32\drivers\MpFilter.sys
2008-03-31 16:51 . 2007-03-29 08:56 409,600 --------- C:\WINDOWS\system32\dllcache\qmgr.dll
2008-03-31 16:51 . 2007-03-29 08:56 18,944 --------- C:\WINDOWS\system32\dllcache\qmgrprxy.dll
2008-03-31 16:51 . 2007-03-29 08:56 8,192 --------- C:\WINDOWS\system32\dllcache\bitsprx2.dll
2008-03-31 16:51 . 2007-03-29 08:56 7,168 --------- C:\WINDOWS\system32\dllcache\bitsprx4.dll
2008-03-31 16:51 . 2007-03-29 08:56 7,168 --------- C:\WINDOWS\system32\dllcache\bitsprx3.dll
2008-03-31 16:51 . 2007-03-29 08:56 7,168 --------- C:\WINDOWS\system32\bitsprx4.dll
2008-03-31 16:47 . 2008-04-12 21:10 <DIR> d-------- C:\Program Files\Microsoft Windows OneCare Live
2008-03-30 00:00 . 2008-04-11 01:07 <DIR> d-------- C:\Program Files\Spyware Doctor
2008-03-30 00:00 . 2008-03-30 00:00 <DIR> d-------- C:\Documents and Settings\gerard and steve\Application Data\PC Tools
2008-03-30 00:00 . 2008-04-13 09:33 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2008-03-30 00:00 . 2007-12-10 14:53 81,288 --a------ C:\WINDOWS\system32\drivers\iksyssec.sys
2008-03-30 00:00 . 2007-12-10 14:53 66,952 --a------ C:\WINDOWS\system32\drivers\iksysflt.sys
2008-03-30 00:00 . 2008-02-01 12:55 42,376 --a------ C:\WINDOWS\system32\drivers\ikfilesec.sys
2008-03-30 00:00 . 2007-12-10 14:53 29,576 --a------ C:\WINDOWS\system32\drivers\kcom.sys
2008-03-29 23:59 . 2008-04-12 20:54 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Google Updater
2008-03-29 23:31 . 2008-03-29 23:31 7,680 --ahs---- C:\WINDOWS\Thumbs.db
2008-03-29 19:29 . 2008-03-29 19:29 <DIR> d-------- C:\WINDOWS\aolshare
2008-03-29 19:29 . 2008-03-29 19:31 <DIR> d-------- C:\Program Files\Common Files\aolshare
2008-03-29 19:29 . 2008-03-29 23:20 <DIR> d-------- C:\Program Files\AOL 9.1
2008-03-29 18:55 . 2008-03-29 18:56 4 --a------ C:\WINDOWS\msoffice.ini
2008-03-29 16:10 . 2008-03-29 16:10 <DIR> d-------- C:\Program Files\Common Files\Scanner
2008-03-29 16:10 . 2008-03-29 20:20 <DIR> d-------- C:\Program Files\CA Yahoo! Anti-Spy
2008-03-29 16:05 . 2008-03-29 16:05 <DIR> d-------- C:\Documents and Settings\gerard and steve\Application Data\Yahoo!
2008-03-29 16:05 . 2008-03-29 16:09 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-03-29 16:04 . 2008-03-29 16:05 <DIR> d-------- C:\Program Files\Yahoo!
2008-03-29 14:44 . 2008-03-29 14:44 <DIR> d-------- C:\Program Files\Microsoft Silverlight
2008-03-29 08:48 . 2008-03-29 14:37 <DIR> d-------- C:\Program Files\Windows Defender
2008-03-28 20:48 . 2008-03-28 16:04 691,545 --a------ C:\WINDOWS\unins000.exe
2008-03-28 20:48 . 2008-03-28 20:48 2,552 --a------ C:\WINDOWS\unins000.dat
2008-03-27 17:10 . 2008-03-27 17:10 <DIR> d-------- C:\mcafee_mcpr
2008-03-27 17:01 . 2008-03-31 17:02 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\McAfee
2008-03-26 19:27 . 2001-08-17 13:48 12,160 --a------ C:\WINDOWS\system32\drivers\mouhid.sys
2008-03-26 19:27 . 2001-08-17 13:48 12,160 --a------ C:\WINDOWS\system32\dllcache\mouhid.sys
2008-03-26 19:27 . 2001-08-17 14:02 9,600 --a------ C:\WINDOWS\system32\drivers\hidusb.sys
2008-03-26 19:27 . 2001-08-17 14:02 9,600 --a------ C:\WINDOWS\system32\dllcache\hidusb.sys
2008-03-20 22:25 . 2008-03-20 22:25 215 --a------ C:\WINDOWS\system32\MRT.INI
2008-03-20 12:31 . 2008-03-27 18:03 1,391,489 ---hs---- C:\WINDOWS\system32\ydrjefxu.ini
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-10 22:52 --------- d-----w C:\Program Files\Google
2008-04-03 01:09 --------- d-----w C:\Program Files\Common Files\Adobe
2008-04-03 01:03 --------- d-----w C:\Documents and Settings\gerard and steve\Application Data\AdobeUM
2008-03-30 13:05 --------- d-----w C:\Documents and Settings\All Users\Application Data\AOL
2008-03-29 23:32 --------- d-----w C:\Documents and Settings\gerard and steve\Application Data\AOL
2008-03-29 23:30 --------- d-----w C:\Program Files\Common Files\aol
2008-03-29 23:27 --------- d-----w C:\Documents and Settings\All Users\Application Data\AOL Downloads
2008-03-29 18:42 --------- d-----w C:\Program Files\Spybot - Search & Destroy
2008-03-29 18:41 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-03-29 18:39 --------- d-----w C:\Program Files\Microsoft ActiveSync
2008-03-28 00:59 --------- d-----w C:\Program Files\iTunes
2008-03-27 21:49 --------- d-----w C:\Program Files\Dot1XCfg
2008-03-21 02:24 --------- d-----w C:\Program Files\QuickTime
2008-03-20 16:25 --------- d-----w C:\Program Files\TomTom HOME
2008-03-20 16:25 --------- d-----w C:\Program Files\AIM6
2008-03-20 16:25 --------- d-----w C:\Documents and Settings\gerard and steve\Application Data\Smilebox
.
<pre>
----a-w 201,352 2008-03-20 16:27:01 C:\Documents and Settings\gerard and steve\Application Data\Smilebox\SmileboxTray .exe
----a-w 5,043,528 2008-03-20 16:26:09 C:\Program Files\AIM\AIM Pro\aimpro .exe
----a-w 50,528 2008-03-20 16:27:32 C:\Program Files\AIM6\aim6 .exe
----a-w 42,032 2008-03-20 16:25:47 C:\Program Files\Common Files\aol\1186065710\ee\AOLSoftware .exe
----a-w 267,048 2008-03-20 16:26:26 C:\Program Files\iTunes\iTunesHelper .exe
----a-w 1,694,208 2008-03-20 16:26:55 C:\Program Files\Messenger\msmsgs .exe
----a-w 1,289,000 2008-03-20 16:27:34 C:\Program Files\Microsoft ActiveSync\wcescomm .exe
----a-w 1,289,000 2008-03-27 21:54:11 C:\Program Files\Microsoft ActiveSync\wcescomm .exe
----a-w 1,289,000 2008-03-27 21:54:12 C:\Program Files\Microsoft ActiveSync\wcescomm .exe
----a-w 1,289,000 2008-03-27 21:54:12 C:\Program Files\Microsoft ActiveSync\wcescomm .exe
----a-w 1,289,000 2008-03-27 21:54:13 C:\Program Files\Microsoft ActiveSync\wcescomm .exe
----a-w 1,289,000 2008-03-27 21:54:13 C:\Program Files\Microsoft ActiveSync\wcescomm .exe
----a-w 1,289,000 2008-03-27 21:54:14 C:\Program Files\Microsoft ActiveSync\wcescomm .exe
----a-w 1,289,000 2008-03-27 21:54:15 C:\Program Files\Microsoft ActiveSync\wcescomm .exe
----a-w 286,720 2008-03-20 16:26:13 C:\Program Files\QuickTime\qttask .exe
----a-w 286,720 2008-03-27 21:57:03 C:\Program Files\QuickTime\qttask .exe
----a-w 286,720 2008-03-27 21:57:03 C:\Program Files\QuickTime\qttask .exe
----a-w 286,720 2008-03-27 21:57:04 C:\Program Files\QuickTime\qttask .exe
----a-w 286,720 2008-03-27 21:57:04 C:\Program Files\QuickTime\qttask .exe
----a-w 286,720 2008-03-27 21:57:09 C:\Program Files\QuickTime\qttask .exe
----a-w 286,720 2008-03-27 21:57:09 C:\Program Files\QuickTime\qttask .exe
----a-w 286,720 2008-03-27 21:57:10 C:\Program Files\QuickTime\qttask .exe
----a-w 3,770,024 2008-03-20 16:26:27 C:\Program Files\TomTom HOME\TomTomHOME .exe
----a-w 15,360 2008-03-20 16:26:51 C:\WINDOWS\system32\ctfmon .exe
</pre>
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A051B1FF-8D7E-418B-AABE-4FF82F4280A2}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BM67bb4d80"="C:\WINDOWS\system32\ckkwpjqy.dll" [ ]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-11-15 13:11 267048]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2006-11-03 19:20 866584]
"HostManager"="C:\Program Files\Common Files\AOL\1186065710\ee\AOLSoftware.exe" [2007-10-08 17:50 41824]
"OneCareUI"="C:\Program Files\Microsoft Windows OneCare Live\winssnotify.exe" [2008-01-22 19:43 67112]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 22:16 39792]
C:\Documents and Settings\gerard and steve\Start Menu\Programs\Startup\
AOL Desktop.lnk - C:\Program Files\Common Files\aol\Launch\aollaunch.exe [2007-05-25 13:16:09 42032]
MEMonitor.lnk - C:\Program Files\Verizon Wireless\V CAST Music Manager\MEMonitor.exe [2007-09-15 15:20:53 947544]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Google Updater.lnk - C:\Program Files\Google\Google Updater\GoogleUpdater.exe [2008-03-29 23:59:42 124400]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\nnnlmkj]
nnnlmkj.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\OneCareMP]
@="Service"
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Acrobat Assistant.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Acrobat Assistant.lnk
backup=C:\WINDOWS\pss\Acrobat Assistant.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Digital Line Detect.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Digital Line Detect.lnk
backup=C:\WINDOWS\pss\Digital Line Detect.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=C:\WINDOWS\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Apoint]
--a------ 2004-09-13 05:33 155648 C:\Program Files\Apoint\Apoint.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BuildBU]
--a------ 2006-01-06 16:06 61440 c:\dell\bldbubg.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dell QuickSet]
--a------ 2005-09-01 19:24 684032 C:\Program Files\Dell\QuickSet\quickset.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dell Wireless Manager UI]
C:\WINDOWS\system32\WLTRAY
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\dla]
--a------ 2004-12-06 03:05 127035 C:\WINDOWS\system32\dla\tfswctrl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DVDLauncher]
--------- 2004-04-26 10:04 53248 C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
--a------ 2006-01-06 16:27 168448 C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
--a------ 2005-05-12 00:12 49152 C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxhkcmd]
--a------ 2005-09-20 17:32 77824 C:\WINDOWS\system32\hkcmd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxpers]
--a------ 2005-09-20 17:36 114688 C:\WINDOWS\system32\igfxpers.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
--a------ 2005-09-20 17:35 94208 C:\WINDOWS\system32\igfxtray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 2003-11-19 19:48 32881 C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateManager]
--a------ 2004-01-07 03:01 110592 C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"gusvc"=3 (0x3)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Common Files\\aol\\Loader\\aolload.exe"=
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"= C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"= C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"C:\\Program Files\\Common Files\\aol\\acs\\AOLDial.exe"=
"C:\\Program Files\\Common Files\\aol\\acs\\AOLacsd.exe"=
"C:\\Program Files\\AOL 9.1\\waol.exe"=
"C:\\Program Files\\Common Files\\aol\\System Information\\sinf.exe"=
"C:\\Program Files\\Common Files\\aol\\TopSpeed\\3.0\\aoltpsd3.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\Common Files\\aol\\1186065710\\ee\\AOLDesktop.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
Deckard's System Scanner v20071014.68
Run by gerard and steve on 2008-04-13 09:59:52
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Successfully created a Deckard's System Scanner Restore Point.
-- Last 5 Restore Point(s) --
96: 2008-04-13 14:00:07 UTC - RP171 - Deckard's System Scanner Restore Point
95: 2008-04-13 13:43:28 UTC - RP170 - ComboFix created restore point
94: 2008-04-13 07:01:58 UTC - RP169 - Software Distribution Service 3.0
93: 2008-04-12 21:22:55 UTC - RP168 - Installed Windows Internet Explorer 7.
92: 2008-04-12 21:22:27 UTC - RP167 - Installed Windows IDNMitigationAPIs.
-- First Restore Point --
1: 2008-01-19 15:01:05 UTC - RP76 - System Checkpoint
Backed up registry hives.
Performed disk cleanup.
Total Physical Memory: 504 MiB (512 MiB recommended).-- HijackThis (run as gerard and steve.exe) ------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:01:13 AM, on 4/13/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Windows OneCare Live\Antivirus\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
c:\program files\verizon wireless\venturi\Client\ventc.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\Microsoft Windows OneCare Live\Firewall\msfwsvc.exe
C:\Program Files\Microsoft Windows OneCare Live\winss.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\AOL\1186065710\ee\AOLSoftware.exe
C:\Program Files\Microsoft Windows OneCare Live\winssnotify.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\Verizon Wireless\V CAST Music Manager\MEMonitor.exe
C:\Program Files\Common Files\aol\1186065710\ee\AOLDesktop.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\gerard and steve\Desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\gerard and steve.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [BM67bb4d80] Rundll32.exe "C:\WINDOWS\system32\ckkwpjqy.dll",s
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1186065710\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [OneCareUI] "C:\Program Files\Microsoft Windows OneCare Live\winssnotify.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: AOL Desktop.lnk = C:\Program Files\Common Files\aol\Launch\aollaunch.exe
O4 - Startup: MEMonitor.lnk = C:\Program Files\Verizon Wireless\V CAST Music Manager\MEMonitor.exe
O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O8 - Extra context menu item: &ieSpell Options - res://C:\Program Files\ieSpell\iespell.dll/SPELLOPTION.HTM
O8 - Extra context menu item: Check &Spelling - res://C:\Program Files\ieSpell\iespell.dll/SPELLCHECK.HTM
O8 - Extra context menu item: Lookup on Merriam Webster - file://C:\Program Files\ieSpell\Merriam Webster.HTM
O8 - Extra context menu item: Lookup on Wikipedia - file://C:\Program Files\ieSpell\wikipedia.HTM
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra 'Tools' menuitem: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra button: (no name) - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra 'Tools' menuitem: ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O20 - Winlogon Notify: nnnlmkj - nnnlmkj.dll (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Venturi Client (Venturi2) - Venturi Wireless - c:\program files\verizon wireless\venturi\Client\ventc.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe
--
End of file - 7669 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R1 APPDRV - c:\windows\system32\drivers\appdrv.sys <Not Verified; Dell Inc; Application Driver>
R2 AegisP (AEGIS Protocol (IEEE 802.1x) v3.2.0.3) - c:\windows\system32\drivers\aegisp.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 3.2.0.3>
R3 catchme - c:\docume~1\gerard~1\locals~1\temp\catchme.sys (file missing)
S3 lgatbus (LG USB Composite Device driver (WDM)) - c:\windows\system32\drivers\lgatbus.sys <Not Verified; MCCI; LG USB Composite Device>
S3 lgatmdm (LG CDMA USB Modem Drivers) - c:\windows\system32\drivers\lgatmdm.sys <Not Verified; MCCI; LG CDMA USB Modem>
S3 lgatserd (LG CDMA USB Modem Diagnostic Serial Port Drivers (WDM)) - c:\windows\system32\drivers\lgatserd.sys <Not Verified; MCCI; LG CDMA USB Modem Diagnostic Serial Port>
S3 SMNDIS5 (SMNDIS5 NDIS Protocol Driver) - c:\program files\verizon wireless\vzaccess manager\smndis5.sys <Not Verified; Smith Micro Software, Inc.; QuickLink Wi-Fi>
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
R2 NICCONFIGSVC - c:\program files\dell\nicconfigsvc\nicconfigsvc.exe <Not Verified; Dell Inc.; NicConfigSvc>
R2 Venturi2 (Venturi Client) - c:\program files\verizon wireless\venturi\client\ventc.exe <Not Verified; Venturi Wireless; VentC>
R2 Viewpoint Manager Service - "c:\program files\viewpoint\common\viewpointservice.exe" <Not Verified; Viewpoint Corporation; Viewpoint Manager>
-- Device Manager: Disabled ----------------------------------------------------
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: 1394 Net Adapter
Device ID: V1394\NIC1394\12D31121324FC000
Manufacturer: Microsoft
Name: 1394 Net Adapter
PNP Device ID: V1394\NIC1394\12D31121324FC000
Service: NIC1394
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: Dell Wireless 1370 WLAN Mini-PCI Card
Device ID: PCI\VEN_14E4&DEV_4318&SUBSYS_00051028&REV_02\4&2FA23535&0&18F0
Manufacturer: Broadcom
Name: Dell Wireless 1370 WLAN Mini-PCI Card
PNP Device ID: PCI\VEN_14E4&DEV_4318&SUBSYS_00051028&REV_02\4&2FA23535&0&18F0
Service: BCM43XX
-- Scheduled Tasks -------------------------------------------------------------
2008-04-07 13:24:05 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
-- Files created between 2008-03-13 and 2008-04-13 -----------------------------
2008-04-13 09:42:31 68096 --a------ C:\WINDOWS\zip.exe
2008-04-13 09:42:31 49152 --a------ C:\WINDOWS\VFind.exe
2008-04-13 09:42:31 212480 --a------ C:\WINDOWS\swxcacls.exe <Not Verified; SteelWerX; SteelWerX Extended Configurator ACLists>
2008-04-13 09:42:31 136704 --a------ C:\WINDOWS\swsc.exe <Not Verified; SteelWerX; SteelWerX Service Controller>
2008-04-13 09:42:31 161792 --a------ C:\WINDOWS\swreg.exe <Not Verified; SteelWerX; SteelWerX Registry Editor>
2008-04-13 09:42:31 98816 --a------ C:\WINDOWS\sed.exe
2008-04-13 09:42:31 80412 --a------ C:\WINDOWS\grep.exe
2008-04-13 09:42:31 73728 --a------ C:\WINDOWS\fdsv.exe <Not Verified; Smallfrogs Studio; >
2008-04-11 23:10:04 0 dr-h----- C:\Documents and Settings\gerard and steve\Recent
2008-04-11 22:49:15 0 d-------- C:\Documents and Settings\gerard and steve\Application Data\ieSpell
2008-04-11 22:48:43 0 d-------- C:\Program Files\ieSpell
2008-04-11 18:06:24 0 d-------- C:\ComboFix[1]
2008-04-04 22:41:31 0 d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-04-03 21:23:37 1759 --a------ C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
2008-04-01 05:12:46 0 d-------- C:\Program Files\Trend Micro
2008-03-31 16:52:12 0 d-------- C:\WINDOWS\system32\bits
2008-03-31 16:47:42 0 d-------- C:\Program Files\Microsoft Windows OneCare Live
2008-03-30 00:00:57 0 d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2008-03-30 00:00:34 0 d-------- C:\Program Files\Spyware Doctor
2008-03-30 00:00:34 0 d-------- C:\Documents and Settings\gerard and steve\Application Data\PC Tools
2008-03-29 23:59:42 0 d-------- C:\Documents and Settings\All Users\Application Data\Google Updater
2008-03-29 19:29:39 0 d-------- C:\WINDOWS\aolshare
2008-03-29 19:29:06 0 d-------- C:\Program Files\Common Files\aolshare
2008-03-29 19:29:06 0 d-------- C:\Program Files\AOL 9.1
2008-03-29 16:10:32 0 d-------- C:\Program Files\Common Files\Scanner
2008-03-29 16:10:27 0 d-------- C:\Program Files\CA Yahoo! Anti-Spy
2008-03-29 16:05:23 0 d-------- C:\Documents and Settings\gerard and steve\Application Data\Yahoo!
2008-03-29 16:05:23 0 d-------- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-03-29 16:04:54 0 d-------- C:\Program Files\Yahoo!
2008-03-29 14:44:04 0 d-------- C:\Program Files\Microsoft Silverlight
2008-03-29 08:48:24 0 d-------- C:\Program Files\Windows Defender
2008-03-28 20:48:34 691545 --a------ C:\WINDOWS\unins000.exe
2008-03-28 20:48:34 2552 --a------ C:\WINDOWS\unins000.dat
2008-03-27 17:10:31 0 d-------- C:\mcafee_mcpr
2008-03-27 17:01:21 0 d-------- C:\Documents and Settings\All Users\Application Data\McAfee
2008-03-22 10:52:28 0 d-------- C:\Documents and Settings\LocalService\Application Data\Macromedia
-- Find3M Report ---------------------------------------------------------------
2008-04-13 09:44:09 0 d-a------ C:\Program Files\Common Files
2008-04-10 18:52:48 0 d-------- C:\Program Files\Google
2008-04-02 21:09:48 0 d-------- C:\Program Files\Common Files\Adobe
2008-04-02 21:03:31 0 d-------- C:\Documents and Settings\gerard and steve\Application Data\AdobeUM
2008-04-02 21:01:26 0 d-------- C:\Documents and Settings\gerard and steve\Application Data\Adobe
2008-03-29 19:32:33 0 d-------- C:\Documents and Settings\gerard and steve\Application Data\AOL
2008-03-29 19:30:58 0 d-------- C:\Program Files\Common Files\aol
2008-03-29 14:39:48 0 d-------- C:\Program Files\Microsoft ActiveSync
2008-03-27 20:59:15 0 d-------- C:\Program Files\iTunes
2008-03-27 17:49:51 0 d-------- C:\Program Files\Dot1XCfg
2008-03-20 22:24:29 0 d-------- C:\Program Files\QuickTime
2008-03-20 12:25:29 0 d-------- C:\Program Files\TomTom HOME
2008-03-20 12:25:03 0 d-------- C:\Program Files\AIM6
2008-03-20 12:25:01 0 d-------- C:\Documents and Settings\gerard and steve\Application Data\Smilebox
2008-03-20 12:24:58 0 d-------- C:\Program Files\Messenger
2008-01-21 09:44:11 2528 --a------ C:\Documents and Settings\gerard and steve\Application Data\$_hpcst$.hpc
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BM67bb4d80"="C:\WINDOWS\system32\ckkwpjqy.dll" []
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [11/15/2007 01:11 PM]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [11/03/2006 07:20 PM]
"HostManager"="C:\Program Files\Common Files\AOL\1186065710\ee\AOLSoftware.exe" [10/08/2007 05:50 PM]
"OneCareUI"="C:\Program Files\Microsoft Windows OneCare Live\winssnotify.exe" [01/22/2008 07:43 PM]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [01/11/2008 10:16 PM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [01/28/2008 11:43 AM]
C:\Documents and Settings\gerard and steve\Start Menu\Programs\Startup\
AOL Desktop.lnk - C:\Program Files\Common Files\aol\Launch\aollaunch.exe [5/25/2007 1:16:09 PM]
MEMonitor.lnk - C:\Program Files\Verizon Wireless\V CAST Music Manager\MEMonitor.exe [9/15/2007 3:20:53 PM]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Google Updater.lnk - C:\Program Files\Google\Google Updater\GoogleUpdater.exe [3/29/2008 11:59:42 PM]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=0 (0x0)
"HideLegacyLogonScripts"=0 (0x0)
"HideLogoffScripts"=0 (0x0)
"RunLogonScriptSync"=1 (0x1)
"RunStartupScriptSync"=1 (0x1)
"HideStartupScripts"=0 (0x0)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"HideLegacyLogonScripts"=0 (0x0)
"HideLogoffScripts"=0 (0x0)
"RunLogonScriptSync"=1 (0x1)
"RunStartupScriptSync"=1 (0x1)
"HideStartupScripts"=0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\nnnlmkj]
nnnlmkj.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\OneCareMP]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Acrobat Assistant.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Acrobat Assistant.lnk
backup=C:\WINDOWS\pss\Acrobat Assistant.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Digital Line Detect.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Digital Line Detect.lnk
backup=C:\WINDOWS\pss\Digital Line Detect.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=C:\WINDOWS\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Apoint]
C:\Program Files\Apoint\Apoint.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BuildBU]
c:\dell\bldbubg.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dell QuickSet]
C:\Program Files\Dell\QuickSet\quickset.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dell Wireless Manager UI]
C:\WINDOWS\system32\WLTRAY
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\dla]
C:\WINDOWS\system32\dla\tfswctrl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DVDLauncher]
"C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
"C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxhkcmd]
C:\WINDOWS\system32\hkcmd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxpers]
C:\WINDOWS\system32\igfxpers.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
C:\WINDOWS\system32\igfxtray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateManager]
"C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"gusvc"=3 (0x3)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3297421e-9148-11dc-9f51-00038a000015}]
AutoRun\command- E:\InstallTomTomHOME.exe
-- End of Deckard's System Scanner: finished at 2008-04-13 10:02:20 ------------
Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------
-- System Information ----------------------------------------------------------
Microsoft Windows XP Home Edition (build 2600) SP 2.0
Architecture: X86; Language: English
CPU 0: Intel® Pentium® M processor 1.73GHz
Percentage of Memory in Use: 60%
Physical Memory (total/avail): 503.37 MiB / 201.05 MiB
Pagefile Memory (total/avail): 1228.25 MiB / 857.05 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1930.29 MiB
C: is Fixed (NTFS) - 37.21 GiB total, 25.54 GiB free.
D: is CDROM (No Media)
\\.\PHYSICALDRIVE0 - Hitachi HTS541040G9AT00 - 37.26 GiB - 2 partitions
\PARTITION0 - Unknown - 39.19 MiB
\PARTITION1 (bootable) - Installable File System - 37.21 GiB - C:
-- Security Center -------------------------------------------------------------
AUOptions is scheduled to auto-install.
Windows Internal Firewall is disabled.