Deckard's System Scanner v20071014.68
Run by Kelly on 2008-07-03 13:25:40
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Successfully created a Deckard's System Scanner Restore Point.
Backed up registry hives.
Performed disk cleanup.
-- HijackThis (run as Kelly.exe) -----------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:28:21, on 7/3/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\WINDOWS\arservice.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Kontiki\KService.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\SanDisk\Sansa Updater\SansaSvr.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\IObit\IObit SmartDefrag\IObit SmartDefrag.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Updates from HP\9972322\Program\Updates from HP.exe
C:\Program Files\SpywareGuard\sgmain.exe
C:\Program Files\SpywareGuard\sgbhp.exe
C:\Documents and Settings\Kelly\desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Kelly.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: hpWebHelper Class - {AAAE832A-5FFF-4661-9C8F-369692D1DCB9} - C:\WINDOWS\pchealth\helpctr\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\plugin\WebHelper.dll
O3 - Toolbar: WebFerret - {A58686ED-FC46-44C3-95C6-4A812AB776F1} - C:\Program Files\FerretSoft\WebFerret\FerretBand.dll
O4 - HKLM\..\Run: [SmartDefrag] "C:\Program Files\IObit\IObit SmartDefrag\IObit SmartDefrag.exe" /startup
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - S-1-5-18 Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'SYSTEM')
O4 - S-1-5-18 Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - .DEFAULT Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - .DEFAULT User Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user')
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: Updates From HP.lnk = C:\Program Files\Updates from HP\9972322\Program\Updates from HP.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &WordWeb... - res://C:\WINDOWS\system32\wweb32.dll/lookup.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - (no file)
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - (no file)
O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm (file missing)
O9 - Extra 'Tools' menuitem: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) -
http://www.creative....030/CTSUEng.cabO16 - DPF: {127CE7BA-AD89-4108-A913-C52EFC037C36} (OMN Player Support) -
http://kdx.omn.org/s...ayerSupport.cabO16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) -
http://download.ewid...oOnlineScan.cabO16 - DPF: {2776DDE9-D4B2-4BF7-9F98-ADC1A1B80AF5} (OMN Media Publisher) -
http://kdx.omn.org/s...iaPublisher.cabO16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper20073151.dll
O16 - DPF: {639658F3-B141-4D6B-B936-226F75A5EAC3} (CPlayFirstDinerDash2Control Object) -
http://www.shockwave...h2.1.0.0.67.cabO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.micros...b?1165348971449O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} -
O16 - DPF: {A7ECD556-D6F6-4F41-8C6B-14AB246801A0} (Secure Delivery) -
http://kdx.omn.org/s...ery/omn/kdx.cabO16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) -
http://www.creative....15030/CTPID.cabO23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: KService - Unknown owner - C:\Program Files\Kontiki\KService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Sansa Updater Service (SansaService) - Unknown owner - C:\Program Files\SanDisk\Sansa Updater\SansaSvr.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
--
End of file - 9123 bytes
-- HijackThis Fixed Entries (C:\PROGRA~1\TRENDM~1\HIJACK~1\backups\) -----------
backup-20080605-104113-318 O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
backup-20080605-104113-343 O23 - Service: AZZVJ - Unknown owner - C:\DOCUME~1\Kelly\LOCALS~1\Temp\AZZVJ.exe (file missing)
backup-20080605-104113-576 O3 - Toolbar: (no name) - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - (no file)
backup-20080605-104113-858 O2 - BHO: (no name) - {FFFFFEF0-5B30-21D4-945D-000000000000} - (no file)
backup-20080605-104113-971 O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
backup-20080701-095252-943 O23 - Service: OYKNVASYNG - Unknown owner - C:\DOCUME~1\Kelly\LOCALS~1\Temp\OYKNVASYNG.exe (file missing)
-- File Associations -----------------------------------------------------------
.cpl - cplfile - shell\cplopen\command - rundll32.exe shell32.dll,Control_RunDLL "%1",%*.cpl - cplfile - shell\runas\command - rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%*-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R0 giveio - c:\windows\system32\giveio.sys
R0 speedfan - c:\windows\system32\speedfan.sys <Not Verified; Windows ® 2000 DDK provider; Windows ® 2000 DDK driver>
S0 ftsata2 - c:\windows\system32\drivers\ftsata2.sys (file missing)
S3 catchme - c:\docume~1\kelly\locals~1\temp\catchme.sys (file missing)
S3 MEMSWEEP2 - c:\windows\system32\8b.tmp (file missing)
S3 PCAMPR5 (PCAMPR5 NDIS Protocol Driver) - c:\windows\system32\pcampr5.sys (file missing)
S3 TVICHW32 - c:\windows\system32\drivers\tvichw32.sys <Not Verified; EnTech Taiwan; TVicHW32 Generic Device Driver for Windows 95/98/ME/NT/2000/2003/XP/XP64>
S4 spcstb - c:\windows\system32\drivers\spcstb.sys (file missing)
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 SansaService (Sansa Updater Service) - c:\program files\sandisk\sansa updater\sansasvr.exe
S4 OYKNVASYNG - c:\docume~1\kelly\locals~1\temp\oyknvasyng.exe (file missing)
-- Device Manager: Disabled ----------------------------------------------------
No disabled devices found.
-- Process Modules -------------------------------------------------------------
C:\WINDOWS\explorer.exe (pid 2948)
2005-07-12 00:17:43 77824 --a------ C:\Program Files\Common Files\aolshare\aolshcpy.dll <Not Verified; America Online Inc.; aolshcpy Module>
2002-07-04 09:38:00 53248 --a------ C:\Program Files\ArcSoft\PhotoImpression 5\Share\PIHook.dll
-- :: 0 --------- C:\DOCUME~1\Kelly\LOCALS~1\Temp\IadHide5.dll
2005-04-04 14:06:02 1515520 -----n--- C:\Program Files\Common Files\Ahead\Lib\NeroDigitalExt.dll <Not Verified; Nero AG; Nero Digital Tools>
2007-08-30 21:00:52 335872 --a------ C:\Program Files\OpenOffice.org 2.3\program\shlxthdl.dll <Not Verified; Sun Microsystems, Inc.; >
2007-08-17 22:54:42 98304 --a------ C:\Program Files\OpenOffice.org 2.3\program\uwinapi.dll <Not Verified; Sun Microsystems, Inc.; >
2007-08-08 20:04:26 577536 --a------ C:\Program Files\OpenOffice.org 2.3\program\stlport_vc7145.dll <Not Verified; STLport Consulting, Inc.; STLport Standard ANSI C++ Libarary>
-- Scheduled Tasks -------------------------------------------------------------
2008-07-03 09:49:43 478 --a------ C:\WINDOWS\Tasks\SmartDefrag.job
2008-06-27 15:40:03 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
-- Files created between 2008-06-03 and 2008-07-03 -----------------------------
2008-07-01 01:15:01 0 d-------- C:\WINDOWS\Prefetch
2008-07-01 01:04:25 0 d-------- C:\WINDOWS\system32\scripting
2008-07-01 01:04:24 0 d-------- C:\WINDOWS\system32\en
2008-07-01 01:04:24 0 d-------- C:\WINDOWS\l2schemas
2008-07-01 01:04:23 0 d-------- C:\WINDOWS\system32\bits
2008-07-01 01:02:31 0 d-------- C:\WINDOWS\ServicePackFiles
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\winupie.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\winmuschi.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\updatewinlocator.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\zp.dll
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\zeropopupbar.dll
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\winwsl.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\wintft.dll
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\wintbpx.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\wintbp.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\winshow.dll
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\winsb.dll
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\winrvl.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\winpup32.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\winpup.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\winlocatorhelper.dll
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\winlocator.dll
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\winksl.exe
2008-06-28 16:49:35 0 d-------- C:\WINDOWS\system32\update.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\systemout.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\sysdll32.dll
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\servises.exe
2008-06-28 16:49:35 0 d-------- C:\WINDOWS\system32\rx.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\regperf.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\pup.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\pnp.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\per.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\nvctrl.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\norton update.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\mssearchnet.exe
2008-06-28 16:49:35 0 d-------- C:\WINDOWS\system32\msmsgs.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\mscornet.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\issearch.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\isnotify.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\ismon.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\ishost.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\dfrgsrv.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\df_kme.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\dcomcfg.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\csm.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\botzor.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\axconfig.dll
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\system32\4ccc3cea.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\pnpasn32.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\hpsv.exe
2008-06-28 16:49:35 0 dr-hs---- C:\WINDOWS\cdproxyserv.exe
2008-06-28 16:49:35 230 -r-h----- C:\Program Files\zsearch
2008-06-28 16:49:35 240 -r-h----- C:\Program Files\zeropopupbar
2008-06-28 16:49:35 226 -r-h----- C:\Program Files\zangoclient
2008-06-28 16:49:35 226 -r-h----- C:\Program Files\zango games
2008-06-28 16:49:35 228 -r-h----- C:\Program Files\xsoftware
2008-06-28 16:49:35 228 -r-h----- C:\Program Files\xpcspy
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\windowsupd4.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\windowsupd2.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\windowsupd1.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\vx2.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\t2serv.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\t2serv.dll
2008-06-28 16:49:34 0 d-------- C:\WINDOWS\system32\zlbw.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\wshtlprh.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\wshnseri.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\winntcreate.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\winftsap.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\winftsap.dll
2008-06-28 16:49:34 0 d-------- C:\WINDOWS\system32\wincom32.sys
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\w3sskbda.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\vx2.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\vwix32.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\vsxmpgpc.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\vnetsmme.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\vb5dmspo.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\v4pbpt51.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\uninmyad.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\trafracp.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\tps108.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\tisa.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\tips.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\tippcls.dat
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\tipp.dat
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\timesrv.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\ticont.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\ticads.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\tconini.dat
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\sysmonnt.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\spwgoc.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\snmpmssw.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\slbrmqtr.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\slbipsch.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\slbipsch.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\shfoxpob.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\secumsje.exe
2008-06-28 16:49:34 0 d-------- C:\WINDOWS\system32\se.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\sd16win.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\scp3jgaw.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\rvreg.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\rulesak.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\rdpwmsjt.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\rcbdwmpd.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\qdvtscf.dll
2008-06-28 16:49:34 0 d-------- C:\WINDOWS\system32\ppl.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\oebdfc.dll
2008-06-28 16:49:34 0 d-------- C:\WINDOWS\system32\nordsys.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\myad.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\msview.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\msnavc32.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\messenger.lib.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\lut.dat
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\lspak.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\localnrd.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\lcch.dat
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\ladchkr.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\host.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\hook2.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\hook1.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\google.png.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\gdu.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\game3.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\game2.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\game1.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\dad.bat
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\cidrules.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\bridge.dll
2008-06-28 16:49:34 0 d-------- C:\WINDOWS\system32\alsys.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\adchkr.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\a.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\system32\6fo4svc.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\sserrvv.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\serrv.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\reggserv.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\psapi.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\msupdtwiz.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\kernellos.dll
2008-06-28 16:49:34 222 -r-h----- C:\WINDOWS\isrvs
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\iehelper.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\cserv32.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\cleanhistories.dll
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\ccsserv.exe
2008-06-28 16:49:34 0 dr-hs---- C:\WINDOWS\ads.js
2008-06-28 16:49:34 234 -r-h----- C:\temp_kl
2008-06-28 16:49:34 232 -r-h----- C:\Program Files\winfixer 2005
2008-06-28 16:49:34 240 -r-h----- C:\Program Files\winfavorites
2008-06-28 16:49:34 246 -r-h----- C:\Program Files\windows adtools
2008-06-28 16:49:34 250 -r-h----- C:\Program Files\windows adcontrol
2008-06-28 16:49:34 230 -r-h----- C:\Program Files\win comm
2008-06-28 16:49:34 226 -r-h----- C:\Program Files\whenu
2008-06-28 16:49:34 236 -r-h----- C:\Program Files\web_rebates
2008-06-28 16:49:34 236 -r-h----- C:\Program Files\web_cpr
2008-06-28 16:49:34 224 -r-h----- C:\Program Files\vvsn
2008-06-28 16:49:34 226 -r-h----- C:\Program Files\vvsdl
2008-06-28 16:49:34 226 -r-h----- C:\Program Files\vomba
2008-06-28 16:49:34 238 -r-h----- C:\Program Files\vmntoolbar
2008-06-28 16:49:34 232 -r-h----- C:\Program Files\ts trial
2008-06-28 16:49:34 232 -r-h----- C:\Program Files\topmoxie
2008-06-28 16:49:34 244 -r-h----- C:\Program Files\sys detective+
2008-06-28 16:49:34 240 -r-h----- C:\Program Files\surfsidekick
2008-06-28 16:49:34 240 -r-h----- C:\Program Files\surfsidekick 2
2008-06-28 16:49:34 232 -r-h----- C:\Program Files\superbar
2008-06-28 16:49:34 232 -r-h----- C:\Program Files\netmeting
2008-06-28 16:49:34 222 -r-h----- C:\Program Files\hpdll
2008-06-28 16:49:34 232 -r-h----- C:\Program Files\Common Files\winsoftware
2008-06-28 16:49:34 226 -r-h----- C:\Program Files\Common Files\ucontrol
2008-06-28 16:49:34 222 -r-h----- C:\Program Files\autoupdate
2008-06-28 16:49:34 234 -r-h----- C:\archivos de programa
2008-06-28 16:49:33 236 -r-h----- C:\WINDOWS\winsecurity
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\waladhpr.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\xkrdk.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\wzhelper.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\wiatwain.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\webalize.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\unsocul.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\somatic.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\sodahk.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\socul.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\smdnn05.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\servehost.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\seqsb.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\searchupdate33.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\searchupdate31.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\searchsquire33.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\searchsquire3.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\searchsquire2.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\searchsquire.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\seantb.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\s4helper.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\replmap.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\reg2.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\pqhelper.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\mygeek.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\msstersv.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\msqsb.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\msnsxole.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\msnsxole.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\mslspcg.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\mslsicwd.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\msexcred.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\msafiasn.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\mqoacdmo.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\mqadscp3.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\mgmtmtxc.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\mgeekremove.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\mcd3mscm.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\lmrtatkc.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\kbdpkbdr.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\kbdfwshe.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\jgsdrpcn.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\jgsdrpcn.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\jgdwadsn.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\jgdwadsn.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\iuennwcf.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\ir32racp.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\ipxwshel.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\ipxrmfc4.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\imesrdch.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\ifsomatic.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\ifhelper.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\iebrw.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\icmpdx3j.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\iaspdpus.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\i4n27vl.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\hotlink.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\homepage.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\hmepge.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\higehsg.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\hhselz32.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\gsim.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\fltlauto.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\fileserv.dll
2008-06-28 16:49:33 0 d-------- C:\WINDOWS\system32\e1.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\dsseds32.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\dsseds32.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\dpugmswe.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\dnsrxpob.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\deskmcd3.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\ddemdmco.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\davctool.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\davctool.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\confbrw.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\comrkbdd.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\comploader.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\chkmfdep.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\camodpnm.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\brwstat.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\brwprf32.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\brwperf.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\brwmgr32.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\brwconf.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\barbho.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\avifipxr.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\admeiolo.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\system32\actidmoc.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\svrmgr.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\ssmsgr.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\ssls.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\ssdgt.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\sscrg.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\gsim.dll
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\cssswd.exe
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\csssupd.exe
2008-06-28 16:49:33 236 -r-h----- C:\WINDOWS\connectionstatus
2008-06-28 16:49:33 0 dr-hs---- C:\WINDOWS\adrsb.exe
2008-06-28 16:49:33 234 -r-h----- C:\spedia
2008-06-28 16:49:33 232 -r-h----- C:\Program Files\valintines day card
2008-06-28 16:49:33 244 -r-h----- C:\Program Files\swagent
2008-06-28 16:49:33 244 -r-h----- C:\Program Files\stealthwatcher200
2008-06-28 16:49:33 230 -r-h----- C:\Program Files\spytech software
2008-06-28 16:49:33 234 -r-h----- C:\Program Files\spyonthis
2008-06-28 16:49:33 232 -r-h----- C:\Program Files\spyblast
2008-06-28 16:49:33 234 -r-h----- C:\Program Files\softomate
2008-06-28 16:49:33 248 -r-h----- C:\Program Files\selectrebates
2008-06-28 16:49:33 234 -r-h----- C:\Program Files\searchnet
2008-06-28 16:49:33 240 -r-h----- C:\Program Files\searchlocate
2008-06-28 16:49:33 236 -r-h----- C:\Program Files\screenview
2008-06-28 16:49:33 226 -r-h----- C:\Program Files\p4p
2008-06-28 16:49:33 234 -r-h----- C:\Program Files\ietoolbar
2008-06-28 16:49:33 242 -r-h----- C:\Program Files\dynamic toolbar
2008-06-28 16:49:33 226 -r-h----- C:\Program Files\Common Files\sogou pxp
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\wserver.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\winlogon.scr
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\winlogon.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\visualguard.exe
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\userconfig9x.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\xpfirewall.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\wpwmgrs.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\winvnc.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\wintasker.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\winsyscfg.exe
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\system32\winsys32.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\winsys.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\winsvc32.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\winstart.pif
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\winnt.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\wininfo.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\winhlpapi.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\wingmt32.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\winds.exe
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\system32\windowz.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\windowsfirewall.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\windasz-updote.exe
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\system32\win32.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\win24.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\wid32.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\wfdmgr.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\wfdgmr.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\wdns33.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\w32ntupdt.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\w1nt5k.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\vlcx052.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\twunk_65.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\timemanager.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\taskgmr32.exe
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\system32\taskgmr.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\taskgamr.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\tagmr.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\sysconf.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\sword.exe
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\system32\svshost.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\stagmr.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\speeder.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\sp2winfix.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\sp2fx.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\slpube03.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\shnlog.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\rlvknlg.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\rkinstaller.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\rk.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\optserve.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\optserve.dll
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\system32\mstc.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\msplus4.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\msplus3.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\msplus2.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\msplus1.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\msplus.dll
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\system32\msclt.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\mrkscr.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\lp.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\lp.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\intmon.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\system32\auole4.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\sysmonxp.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\symav.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\switpb.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\switpa.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\skynetave.exe
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\services.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\rundil32.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\rundil.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\phantom.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\pandaavengine.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\netmedia.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\napatch.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\msnmsgrs.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\maja.exe
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\lsasss.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\lansas.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\kasperskyaveng.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\jammer2nd.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\infodll.dll
2008-06-28 16:49:32 0 d-------- C:\WINDOWS\fvprotect.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\fooding.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\firewallsvr.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\easyav.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\diskmonitor.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\comp.cpl
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\cfg32s.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\cfg32r.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\cfg32o.dll
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\cfg32.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\avserve3.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\avserve2.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\avprotect9x.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\avprotect.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\avpguard.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\avguard.exe
2008-06-28 16:49:32 0 dr-hs---- C:\WINDOWS\avbgle.exe
2008-06-28 16:49:32 234 -r-h----- C:\Program Files\startup mechanic
2008-06-28 16:49:32 230 -r-h----- C:\Program Files\savenow
2008-06-28 16:49:32 234 -r-h----- C:\Program Files\rxtoolbar
2008-06-28 16:49:32 250 -r-h----- C:\Program Files\relevantknowledge
2008-06-28 16:49:32 234 -r-h----- C:\Program Files\rax search helper
2008-06-28 16:49:32 228 -r-h----- C:\Program Files\psupport
2008-06-28 16:49:32 234 -r-h----- C:\Program Files\need2find
2008-06-28 16:49:32 226 -r-h----- C:\Program Files\ncase
2008-06-28 16:49:32 232 -r-h----- C:\Program Files\navexcel
2008-06-28 16:49:32 232 -r-h----- C:\Program Files\navexcel search toolbar
2008-06-28 16:49:32 238 -r-h----- C:\Program Files\mywebsearch
2008-06-28 16:49:32 230 -r-h----- C:\Program Files\ezthemes_whenusavenow_installer
2008-06-28 16:49:32 228 -r-h----- C:\Program Files\exolon
2008-06-28 16:49:32 234 -r-h----- C:\Program Files\ddr
2008-06-28 16:49:32 236 -r-h----- C:\Program Files\Common Files\nsis
2008-06-28 16:49:32 234 -r-h----- C:\Program Files\arcade!
2008-06-28 16:49:31 0 dr-hs---- C:\winssystem.exe
2008-06-28 16:49:31 240 -r-h----- C:\WINDOWS\wintrim
2008-06-28 16:49:31 240 -r-h----- C:\WINDOWS\winmgts
2008-06-28 16:49:31 240 -r-h----- C:\WINDOWS\wincomp
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\unstall.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\winnb60.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\winnb58.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\winnb57.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\winnb56.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\winnb52.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\winnb51.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\winnb42.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\winnb41.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\winnb40.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\windmy.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\winats.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\vtlbar1.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\tubby.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\tbc.dll
2008-06-28 16:49:31 0 d-------- C:\WINDOWS\system32\sys.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\skybot.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\shell.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\service5.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\sd.exe
2008-06-28 16:49:31 0 d-------- C:\WINDOWS\system32\scvhost32.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\scrigz.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\scalpe91.exe
2008-06-28 16:49:31 0 d-------- C:\WINDOWS\system32\rundll.exe
2008-06-28 16:49:31 0 d-------- C:\WINDOWS\system32\remote.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\protection.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\plugnplay32.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\picx.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\phantom.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\patch31345.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\osalogbe.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\nn_bar31.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\nn_bar22.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\nn_bar21.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\nn_bar.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\netcog.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\nas.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\myaccess.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\mtrnqs.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\mtc.dll
2008-06-28 16:49:31 0 d-------- C:\WINDOWS\system32\mswins.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\mssck.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\msplus32.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\msnl.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\msmgrxp.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\msklive.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\msgmr.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\msegcompid.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\msdev32.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\msapasrc.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\msa64chk.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\mouse.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\microupdate.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\microsystem.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\memloader.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\mcscn.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\mapisvc32.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\mailinfo.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\madise.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\logitechwls.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\logic.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\lienvdk.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\lienvandekelder.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\lientjeuh.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\lien vd kelder.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\lien vande kelder.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\lien Van de kelderrr.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\lien van de kelder.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\lcd32.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\jusched32.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\itunegui.exe
2008-06-28 16:49:31 0 d-------- C:\WINDOWS\system32\internet.exe
2008-06-28 16:49:31 0 d-------- C:\WINDOWS\system32\iexplorer.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\hostdrvxp.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\hbmail.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\gothica.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\fixupdattr.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\evil.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\ds.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\dll.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\dcomuser.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\coolbot.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\ccsrs.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\avpr.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\adv.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\abs.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\666.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\1hellbot.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\system32\0.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\patch31345.exe
2008-06-28 16:49:31 240 -r-h----- C:\WINDOWS\navpmc
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\msnarrator.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\mrhop.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\mpgcom.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\mmups.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\mm63.ocx
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\mm21.ocx
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\mm20.ocx
2008-06-28 16:49:31 240 -r-h----- C:\WINDOWS\mc
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\imgurla.exe
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\iempg2.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\iempg.dll
2008-06-28 16:49:31 0 dr-hs---- C:\WINDOWS\a64sddd.exe
2008-06-28 16:49:31 236 -r-h----- C:\Program Files\support software
2008-06-28 16:49:31 236 -r-h----- C:\Program Files\network essentials
2008-06-28 16:49:31 236 -r-h----- C:\Program Files\medialoads
2008-06-28 16:49:31 236 -r-h----- C:\Program Files\medialoads enhanced
2008-06-28 16:49:31 242 -r-h----- C:\Program Files\media gateway
2008-06-28 16:49:31 232 -r-h----- C:\Program Files\md
2008-06-28 16:49:31 0 dr-hs---- C:\hellmsn.exe
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\xwrm.exe
2008-06-28 16:49:30 232 -r-h----- C:\WINDOWS\wqzq
2008-06-28 16:49:30 0 d-------- C:\WINDOWS\winserv.exe
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\winobject.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\wdskctl.exe
2008-06-28 16:49:30 232 -r-h----- C:\WINDOWS\wcby
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\ts.exe
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\zopenssl.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\yvsvga.sys
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\yvsvga.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\yvprgb.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\yvpp02.sys
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\xcdmfree.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\wndtx1.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\winstart001.exe
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\winstart.exe
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\winsrm32.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\winenc32.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\windowsie.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\windec32.dll
2008-06-28 16:49:30 0 d-------- C:\WINDOWS\system32\wgavm.exe
2008-06-28 16:49:30 0 d-------- C:\WINDOWS\system32\wgareg.exe
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\waeb.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\version.exe
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\updtscheduler.exe
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\update_rsp.DLL
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\update_removeold.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\update_hosts.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\update_com.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\update_bho.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\toolbar.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\tcpwrk.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\tcpgdc.dll
2008-06-28 16:49:30 0 dr-hs---- C:\WINDOWS\system32\tcpg4t.dll
2008-06-28 16:4