My problem is fixed by the way!!! ^^ thanks a lot guys. I'm still gunna continue coz this can only do good for my system. unless we're done now. here's my dss log:
Deckard's System Scanner v20071014.68
Run by Sgt.Alien on 2008-06-19 16:33:36
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Successfully created a Deckard's System Scanner Restore Point.
-- Last 5 Restore Point(s) --
48: 2008-06-19 08:33:44 UTC - RP48 - Deckard's System Scanner Restore Point
47: 2008-06-18 12:41:25 UTC - RP47 - Installed SUPERAntiSpyware Free Edition
46: 2008-06-18 02:25:23 UTC - RP46 - Installed Tom Clancy's Rainbow Six 3: Raven Shield
45: 2008-06-17 13:17:18 UTC - RP45 - Installed Battlefield 2 Patch v1.41
44: 2008-06-17 13:10:11 UTC - RP44 - Installed Battlefield 2: Special Forces
-- First Restore Point --
1: 2008-05-25 04:01:56 UTC - RP1 - System Checkpoint
Backed up registry hives.
Performed disk cleanup.
-- HijackThis (run as Sgt.Alien.exe) -------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:34:55 PM, on 19/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Trend Micro\BM\TMBMSRV.exe
C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\Program Files\Ventrillo\Ventrilo.exe
C:\Program Files\Xfire\xfire.exe
C:\Documents and Settings\Sgt.Alien\desktop\dss.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Sgt.Alien.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://dsl.optusnet.com.au/R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://search.optusn...nd=ODSL&panel=1R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://it.msn.com/R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by OptusNet
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [DeviceDiscovery] C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Arrow - {DBE6BDAE-BA75-40AB-B249-3ED782871F5E} -
http://www.arrowcomputers.com.au (file missing) (HKCU)
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} -
http://www.fileplane...C_2.3.6.108.cabO16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) -
http://www4.snapfish...fishActivia.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://www.update.mi...b?1196912219296O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: geBttTjg - geBttTjg.dll (file missing)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: InCD Helper (read only) (InCDsrvR) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
--
End of file - 7478 bytes
-- File Associations -----------------------------------------------------------
.js - JSFile - shell\open\command - NOTEPAD.EXE %1.reg - regfile - shell\open\command - regedit.exe "%1" %*.scr - scrfile - shell\open\command - "%1" %*.vbs - VBSFile - shell\open\command - NOTEPAD.EXE %1-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
S3 rtl8139 (Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver) - c:\windows\system32\drivers\rtl8139.sys (file missing)
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
R3 ServiceLayer - "c:\program files\common files\pcsuite\services\servicelayer.exe" <Not Verified; Nokia.; PC Connectivity Solution>
S2 InCDsrvR (InCD Helper (read only)) - c:\program files\ahead\incd\incdsrv.exe -r <Not Verified; Nero AG; Nero AG incdsrv>
-- Device Manager: Disabled ----------------------------------------------------
Class GUID: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F}
Description: OHCI Compliant IEEE 1394 Host Controller
Device ID: PCI\VEN_11C1&DEV_5811&SUBSYS_05021799&REV_61\4&CF81C54&0&10F0
Manufacturer: IEEE 1394 OHCI Compliant Host Controller Vendor
Name: OHCI Compliant IEEE 1394 Host Controller
PNP Device ID: PCI\VEN_11C1&DEV_5811&SUBSYS_05021799&REV_61\4&CF81C54&0&10F0
Service: ohci1394
-- Process Modules -------------------------------------------------------------
C:\WINDOWS\system32\winlogon.exe (pid 1096)
2007-04-19 13:41:36 294912 --a------ C:\Program Files\SUPERAntiSpyware\SASWINLO.dll <Not Verified; SUPERAntiSpyware.com; SUPERAntiSpyware WinLogon Processor>
C:\WINDOWS\explorer.exe (pid 1308)
2008-03-30 10:36:40 43008 --a------ C:\Program Files\iTunes\iTunesMiniPlayer.Resources\en.lproj\iTunesMiniPlayerLocalized.dll <Not Verified; Apple Inc.; iTunes>
2008-03-30 10:36:40 129536 --a------ C:\Program Files\iTunes\iTunesMiniPlayer.Resources\iTunesMiniPlayer.dll <Not Verified; Apple Inc.; iTunes>
2006-06-12 08:08:50 544768 --a------ C:\Program Files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll <Not Verified; Nokia; Phone Browser>
2006-06-01 10:51:34 557056 --a------ C:\Program Files\Nokia\Nokia PC Suite 6\PCSCM.dll <Not Verified; Nokia; PCSCM>
2006-06-05 14:04:02 242688 --a------ C:\WINDOWS\system32\ConnAPI.dll <Not Verified; Nokia.; Nokia Connectivity API>
2006-06-08 12:36:28 25088 --a------ C:\Program Files\Nokia\Nokia PC Suite 6\Lang\PhoneBrowser_eng.NLR <Not Verified; Nokia; Nokia Phone Browser>
2006-06-01 11:00:46 569344 --a------ C:\Program Files\Nokia\Nokia PC Suite 6\Resource\PhoneBrowser_Nokia.NGR <Not Verified; Nokia; Nokia Phone Browser>
2008-05-13 10:13:36 77824 --a------ C:\Program Files\SUPERAntiSpyware\SASSEH.DLL <Not Verified; SuperAdBlocker.com; SuperAntiSpyware>
-- Scheduled Tasks -------------------------------------------------------------
2008-06-10 11:30:00 330 --a------ C:\WINDOWS\Tasks\HP DArC Task #Hewlett-Packard#deskjet5100#MY3B44M2T28B.job
2007-12-17 20:09:17 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
-- Files created between 2008-05-19 and 2008-06-19 -----------------------------
2030-08-09 08:00:16 0 d-------- C:\Program Files\Westnet
2030-08-09 07:50:26 0 d-------- C:\Documents and Settings\All Users\Application Data\CyberLink
2030-08-09 07:50:08 0 d--h----- C:\Program Files\InstallShield Installation Information
2030-08-09 07:50:06 0 d-------- C:\Program Files\CyberLink
2030-08-09 07:49:54 0 d-------- C:\Program Files\Common Files\InstallShield
2030-08-09 07:49:00 0 d-------- C:\Optional Software for XP
2030-08-09 07:33:15 0 d-------- C:\Program Files\Nero
2030-08-09 07:33:15 0 d-------- C:\Program Files\Common Files\Ahead
2030-08-09 07:32:54 0 d-------- C:\WINDOWS\RegisteredPackages
2030-08-09 07:26:58 0 d--h----- C:\Documents and Settings\Owner\Templates
2030-08-09 07:26:58 0 dr------- C:\Documents and Settings\Owner\Start Menu
2030-08-09 07:26:58 0 dr-h----- C:\Documents and Settings\Owner\SendTo
2030-08-09 07:26:58 0 dr-h----- C:\Documents and Settings\Owner\Recent
2030-08-09 07:26:58 0 d--h----- C:\Documents and Settings\Owner\PrintHood
2030-08-09 07:26:58 0 d--h----- C:\Documents and Settings\Owner\NetHood
2030-08-09 07:26:58 0 dr------- C:\Documents and Settings\Owner\My Documents
2030-08-09 07:26:58 0 d--h----- C:\Documents and Settings\Owner\Local Settings
2030-08-09 07:26:58 0 dr------- C:\Documents and Settings\Owner\Favorites
2030-08-09 07:26:58 0 dr------- C:\Documents and Settings\Owner\Desktop
2030-08-09 07:26:58 0 d---s---- C:\Documents and Settings\Owner\Cookies
2030-08-09 07:26:58 0 dr-h----- C:\Documents and Settings\Owner\Application Data
2030-08-09 07:26:58 0 d---s---- C:\Documents and Settings\Owner\Application Data\Microsoft
2030-08-09 07:26:58 0 d-------- C:\Documents and Settings\Owner\Application Data\Identities
2030-08-09 07:26:57 4194304 --ah----- C:\Documents and Settings\Owner\ntuser.dat
2030-08-09 07:26:51 0 d-------- C:\WINDOWS\SoftwareDistribution
2030-08-09 07:26:48 0 d---s---- C:\WINDOWS\system32\Microsoft
2030-08-09 07:26:47 237568 --a------ C:\Documents and Settings\LocalService\NTUSER.DAT
2030-08-09 07:26:47 0 d--h----- C:\Documents and Settings\LocalService\Local Settings
2030-08-09 07:26:47 0 d---s---- C:\Documents and Settings\LocalService\Cookies
2030-08-09 07:26:47 0 d-------- C:\Documents and Settings\LocalService\Application Data
2030-08-09 07:26:47 0 d---s---- C:\Documents and Settings\LocalService\Application Data\Microsoft
2030-08-09 07:26:46 237568 --a------ C:\Documents and Settings\NetworkService\NTUSER.DAT
2030-08-09 07:26:46 0 d--h----- C:\Documents and Settings\NetworkService\Local Settings
2030-08-09 07:26:46 0 d--hs---- C:\Documents and Settings\NetworkService\Cookies
2030-08-09 07:26:46 0 d-------- C:\Documents and Settings\NetworkService\Application Data
2030-08-09 07:26:46 0 d---s---- C:\Documents and Settings\NetworkService\Application Data\Microsoft
2030-08-09 07:24:25 0 d-------- C:\WINDOWS\system32\xircom
2030-08-09 07:24:25 0 d-------- C:\Program Files\microsoft frontpage
2030-08-09 07:24:23 335872 ---h----- C:\Documents and Settings\Default User\NTUSER.DAT
2030-08-09 07:24:23 0 d-------- C:\Documents and Settings\Default User\Application Data\Identities
2030-08-09 07:23:36 0 d--hs---- C:\Documents and Settings\All Users\DRM
2030-08-09 07:23:29 0 dr------- C:\WINDOWS\Offline Web Pages
2030-08-09 07:23:29 0 d---s---- C:\WINDOWS\Downloaded Program Files
2030-08-09 07:23:21 0 d--h----- C:\Program Files\WindowsUpdate
2030-08-09 07:23:14 0 d-------- C:\WINDOWS\system32\DirectX
2030-08-09 07:23:09 0 d---s---- C:\WINDOWS\Tasks
2030-08-09 07:23:09 0 d-------- C:\WINDOWS\system32\Macromed
2030-08-09 07:23:09 0 d-------- C:\WINDOWS\srchasst
2030-08-09 07:23:09 0 d-------- C:\Program Files\Common Files\MSSoap
2030-08-09 07:23:07 0 d-------- C:\Program Files\Movie Maker
2030-08-09 07:23:05 0 d-------- C:\WINDOWS\system32\Restore
2030-08-09 07:23:02 23428 --a------ C:\WINDOWS\system32\emptyregdb.dat
2030-08-09 07:22:49 0 d-------- C:\WINDOWS\Registration
2030-08-09 07:22:28 0 d-------- C:\Program Files\Online Services
2030-08-09 07:22:24 0 d-------- C:\Program Files\Messenger
2030-08-09 07:22:23 0 d-------- C:\Program Files\MSN Gaming Zone
2030-08-09 07:22:16 0 d-------- C:\Program Files\Windows NT
2030-08-09 07:22:15 0 d-------- C:\WINDOWS\system32\MsDtc
2030-08-09 07:22:15 0 d-------- C:\WINDOWS\system32\Com
2030-08-09 07:10:39 755200 --a------ C:\WINDOWS\system32\Ir50_32.dll <Not Verified; Intel Corporation; Intel Indeo® video 5.11>
2030-08-09 07:08:18 0 d-------- C:\WINDOWS\I386
2030-08-09 00:19:50 0 d--hs---- C:\WINDOWS\Installer
2030-08-09 00:19:49 0 d-------- C:\Program Files\Common Files\ODBC
2030-08-09 00:19:48 0 dr------- C:\Program Files
2030-08-09 00:19:48 0 d-------- C:\Program Files\Common Files
2030-08-09 00:19:48 0 d-------- C:\Program Files\Common Files\SpeechEngines
2030-08-09 00:19:37 0 d--h----- C:\Documents and Settings\Default User\Templates
2030-08-09 00:19:37 0 dr------- C:\Documents and Settings\Default User\Start Menu
2030-08-09 00:19:37 0 dr-h----- C:\Documents and Settings\Default User\SendTo
2030-08-09 00:19:37 0 dr-h----- C:\Documents and Settings\Default User\Recent
2030-08-09 00:19:37 0 d--h----- C:\Documents and Settings\Default User\PrintHood
2030-08-09 00:19:37 0 d--h----- C:\Documents and Settings\Default User\NetHood
2030-08-09 00:19:37 0 dr------- C:\Documents and Settings\Default User\My Documents
2030-08-09 00:19:37 0 d--h----- C:\Documents and Settings\Default User\Local Settings
2030-08-09 00:19:37 0 dr------- C:\Documents and Settings\Default User\Favorites
2030-08-09 00:19:37 0 dr------- C:\Documents and Settings\Default User\Desktop
2030-08-09 00:19:37 0 d---s---- C:\Documents and Settings\Default User\Cookies
2030-08-09 00:19:37 0 d--h----- C:\Documents and Settings\All Users\Templates
2030-08-09 00:19:37 0 dr------- C:\Documents and Settings\All Users\Start Menu
2030-08-09 00:19:37 0 d-------- C:\Documents and Settings\All Users\Favorites
2030-08-09 00:19:37 0 dr------- C:\Documents and Settings\All Users\Documents
2030-08-09 00:19:37 0 d-------- C:\Documents and Settings\All Users\Desktop
2030-08-09 00:19:27 0 d-------- C:\WINDOWS\system32\CatRoot2
2030-08-09 00:19:27 0 d-------- C:\WINDOWS\system32\CatRoot
2030-08-09 00:19:22 0 dr-h----- C:\Documents and Settings\Default User\Application Data
2030-08-09 00:19:22 0 d---s---- C:\Documents and Settings\Default User\Application Data\Microsoft
2030-08-09 00:19:22 0 dr-h----- C:\Documents and Settings\All Users\Application Data
2030-08-09 00:19:22 0 d---s---- C:\Documents and Settings\All Users\Application Data\Microsoft
2030-08-09 00:19:11 0 d-------- C:\Documents and Settings
2030-08-09 00:17:15 0 d-------- C:\WINDOWS
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\WinSxS
2030-08-09 00:17:15 0 dr------- C:\WINDOWS\Web
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\twain_32
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\wins
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\wbem
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\usmt
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\spool
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\ShellExt
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\Setup
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\ras
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\oobe
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\npp
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\mui
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\inetsrv
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\IME
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\icsxml
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\ias
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\export
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\drivers
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\drivers\etc
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\drivers\disdn
2030-08-09 00:17:15 0 dr-hs--c- C:\WINDOWS\system32\dllcache
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\dhcp
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\config
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\3com_dmi
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\3076
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\2052
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\1054
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\1042
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\1041
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\1037
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\1033
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\1031
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\1028
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system32\1025
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\system
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\security
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\Resources
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\repair
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\Provisioning
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\PeerNet
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\pchealth
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\mui
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\msapps
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\msagent
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\Media
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\java
2030-08-09 00:17:15 0 d--h----- C:\WINDOWS\inf
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\ime
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\Help
2030-08-09 00:17:15 0 dr--s---- C:\WINDOWS\Fonts
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\Driver Cache
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\Debug
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\Cursors
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\Connection Wizard
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\Config
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\AppPatch
2030-08-09 00:17:15 0 d-------- C:\WINDOWS\addins
2008-06-18 20:41:26 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\SUPERAntiSpyware.com
2008-06-17 17:20:24 0 d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-06-10 21:32:31 0 d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-06-10 21:32:20 0 d-------- C:\Program Files\SUPERAntiSpyware
2008-06-10 21:06:07 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\Malwarebytes
2008-06-10 21:06:03 0 d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-06-10 21:05:50 0 d-------- C:\Program Files\Common Files\Download Manager
2008-06-02 13:57:40 0 d-------- C:\Program Files\iPod
2008-06-02 13:57:31 0 d-------- C:\Program Files\iTunes
2008-06-02 13:54:01 0 d-------- C:\Program Files\QuickTime
2008-05-30 15:55:04 0 d-------- C:\Program Files\Sierra
2008-05-29 19:51:08 0 d-------- C:\WINDOWS\network diagnostic
2008-05-29 19:42:58 0 d-------- C:\8196806e45bbcc3e7a76
2008-05-29 19:05:25 0 d-------- C:\WINDOWS\system32\CatRoot_bak
2008-05-28 21:55:55 0 d-------- C:\Documents and Settings\Sue\Application Data\Mozilla
2008-05-28 16:13:58 0 d-------- C:\Documents and Settings\Owner\Application Data\MSN6
2008-05-28 16:13:58 0 d-------- C:\Documents and Settings\All Users\Application Data\MSN6
2008-05-26 20:48:58 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\Nokia Multimedia Player
2008-05-26 16:07:36 0 d-------- C:\Documents and Settings\Owner\Application Data\PC Suite
2008-05-26 13:52:22 0 d-------- C:\Documents and Settings\Sue\Application Data\PC Suite
2008-05-25 21:55:28 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\DataLayer
2008-05-25 21:55:25 0 d-------- C:\Documents and Settings\Sgt.Alien\Phone Browser
2008-05-25 21:54:27 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\Nokia
2008-05-25 21:52:26 0 d-------- C:\Program Files\DIFX
2008-05-25 21:50:58 0 d-------- C:\Program Files\Common Files\Nokia
2008-05-25 21:50:29 0 d-------- C:\Program Files\Nokia
2008-05-25 21:50:24 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\PC Suite
2008-05-25 21:50:22 0 d-------- C:\Documents and Settings\All Users\Application Data\PC Suite
2008-05-25 21:50:15 0 d-------- C:\Program Files\Common Files\PCSuite
2008-05-25 21:46:04 0 d-------- C:\Documents and Settings\All Users\Application Data\Downloaded Installations
2008-05-25 18:57:04 0 d-------- C:\Documents and Settings\LocalService\Start Menu
2008-05-25 18:55:08 0 d-------- C:\WINDOWS\Prefetch
2008-05-25 18:37:42 0 d-------- C:\WINDOWS\EHome
2008-05-25 15:08:19 0 d-------- C:\Program Files\System Mechanic
2008-05-24 22:55:18 0 d-------- C:\Documents and Settings\Sgt.Alien\Contacts
2008-05-22 20:02:42 0 d-------- C:\Documents and Settings\Owner\Application Data\iolo
2008-05-21 18:34:50 0 d-------- C:\Documents and Settings\LocalService\Application Data\iolo
2008-05-21 18:30:20 74703 --a------ C:\WINDOWS\system32\mfc45.dll
2008-05-21 18:15:31 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\iolo
2008-05-21 18:15:31 0 d-------- C:\Documents and Settings\All Users\Application Data\iolo
2008-05-21 17:56:30 0 d-------- C:\Program Files\Panda Security
-- Find3M Report ---------------------------------------------------------------
2030-08-09 07:24:23 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\Identities
2030-08-09 00:19:37 62 --ahs---- C:\Documents and Settings\Sgt.Alien\Application Data\desktop.ini
2008-06-18 20:41:11 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-06-18 20:26:55 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\Xfire
2008-06-10 21:15:09 0 d-------- C:\Program Files\Trend Micro
2008-06-10 19:02:53 0 d-------- C:\Program Files\Microsoft Works
2008-06-10 11:56:52 0 d-------- C:\Program Files\Xfire
2008-06-01 10:50:02 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\Ventrilo
2008-05-29 17:54:30 0 d-------- C:\Program Files\Paint Shop Pro 5
2008-05-25 19:24:29 0 d-------- C:\Program Files\D-Link
2008-05-24 20:26:45 0 d-------- C:\Program Files\OptusNet DSL Internet
2008-05-21 18:48:18 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\uTorrent
2008-05-21 18:48:18 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\LimeWire
2008-05-21 17:57:31 2572 --a------ C:\WINDOWS\mozver.dat
2008-05-18 19:27:38 0 d-------- C:\Program Files\THQ
2008-05-18 19:27:08 0 d-------- C:\Program Files\AC Milan Screensaver
2008-05-07 22:15:00 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\iPodder
2008-05-05 21:57:22 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\CyberLink
2008-05-05 21:27:58 0 d-------- C:\Program Files\Ahead
2008-05-05 21:23:40 0 d-------- C:\Program Files\Common Files\Nero
2008-05-05 20:58:59 0 d-------- C:\Program Files\NeroInstall.bak
2008-05-05 20:57:35 0 d-------- C:\Documents and Settings\Sgt.Alien\Application Data\Nero
2008-05-05 16:46:18 0 d-------- C:\Program Files\Windows Live
2008-05-05 16:46:03 0 d--hs--c- C:\Program Files\Common Files\WindowsLiveInstaller
2008-03-31 21:38:29 0 --a------ C:\AUTOEXEC.BAT
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [03/11/2004 11:24 AM]
"SMSERIAL"="C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe" [29/01/2007 06:22 PM]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [05/12/2007 12:41 AM]
"nwiz"="nwiz.exe" [05/12/2007 12:41 AM C:\WINDOWS\system32\nwiz.exe]
"UfSeAgnt.exe"="C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe" [15/02/2008 11:56 PM]
"itype"="C:\Program Files\Microsoft IntelliType Pro\itype.exe" [08/07/2006 07:14 AM]
"IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\ipoint.exe" [08/07/2006 07:15 AM]
"HP Software Update"="C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe" [25/06/2003 10:24 AM]
"HPDJ Taskbar Utility"="C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe" [28/07/2003 10:43 PM]
"HP Component Manager"="C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" [11/04/2003 02:25 PM]
"DeviceDiscovery"="C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe" [21/05/2003 05:37 PM]
"NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" []
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [09/07/2001 10:50 AM]
"SoundMan"="SOUNDMAN.EXE" [17/11/2006 05:42 AM C:\WINDOWS\soundman.exe]
"PCSuiteTrayApplication"="C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe" [15/06/2006 12:36 PM]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [28/03/2008 11:37 PM]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [30/03/2008 10:36 AM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [04/08/2004 12:56 AM]
"PcSync"="C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" [27/06/2006 04:21 PM]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [13/05/2008 10:13 AM 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 19/04/2007 01:41 PM 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\geBttTjg]
geBttTjg.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
SecurityProviders msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll,
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
-- End of Deckard's System Scanner: finished at 2008-06-19 16:36:33 ------------