here's the logs:
OTViewIt logfile created on: 8/23/2008 20:20:34 - Run 1
OTViewIt by OldTimer - Version 1.0.0.8 Folder = C:\Users\accountX\Desktop
Windows Vista Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
4.00 Gb Total Physical Memory | 2.56 Gb Available Physical Memory | 63.91% Memory free
4.00 Gb Paging File | 4.00 Gb Available in Paging File | 100.00% Paging File free
Paging file location(s): ?:\pagefile.sys;
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 298.10 Gb Total Space | 167.49 Gb Free Space | 56.19% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: accountX-PC
Current User Name: accountX
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
===== Processes - Non-Microsoft Only =====
[08/04/2008 04:47 PM | 00,611,664 | ---- | M] (Lavasoft) - C:\Program Files (x86)\Lavasoft\Ad-Aware\aawservice.exe
[07/19/2008 09:25 AM | 00,016,056 | ---- | M] (ALWIL Software) - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
[07/19/2008 09:38 AM | 00,147,640 | ---- | M] (ALWIL Software) - C:\Program Files\Alwil Software\Avast4\ashServ.exe
[07/07/2008 09:42 AM | 02,156,368 | RHS- | M] (Safer Networking Limited) - C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
[07/24/2008 10:02 AM | 00,490,952 | ---- | M] (DT Soft Ltd) - C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe
[09/07/2007 03:54 PM | 00,159,744 | ---- | M] () - C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
[12/12/2007 11:58 AM | 00,163,840 | ---- | M] (Razer USA Ltd.) - C:\Program Files (x86)\n52te\razerhid.exe
[07/19/2008 09:38 AM | 00,078,008 | ---- | M] (ALWIL Software) - C:\Program Files\Alwil Software\Avast4\ashDisp.exe
[07/19/2008 09:38 AM | 00,250,040 | ---- | M] (ALWIL Software) - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
[07/23/2008 09:25 AM | 00,348,344 | ---- | M] (ALWIL Software) - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
[11/24/2006 03:24 PM | 00,143,360 | ---- | M] () - C:\Program Files (x86)\Razer\DeathAdder\razertra.exe
[12/06/2007 02:20 PM | 00,110,592 | ---- | M] () - C:\Program Files (x86)\n52te\razertra.exe
[05/07/2007 03:35 PM | 00,163,840 | ---- | M] (Razer Inc.) - C:\Program Files (x86)\Razer\DeathAdder\razerofa.exe
[08/23/2008 08:19 PM | 01,274,880 | ---- | M] (OldTimer Tools) - C:\Users\accountX\Desktop\OTViewIt.exe
===== Win32 Services - Non-Microsoft Only =====
(aawservice) Lavasoft Ad-Aware Service [Auto | Running]
[08/04/2008 04:47 PM | 00,611,664 | ---- | M] (Lavasoft) - C:\Program Files (x86)\Lavasoft\Ad-Aware\aawservice.exe
(ALG) Application Layer Gateway Service [On_Demand | Stopped]
File not found - %SystemRoot%\System32\alg.exe
(aspnet_state) ASP.NET State Service [On_Demand | Stopped]
File not found - %SystemRoot%\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
(aswUpdSv) avast! iAVS4 Control Service [Auto | Running]
[07/19/2008 09:25 AM | 00,016,056 | ---- | M] (ALWIL Software) - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
(avast! Antivirus) avast! Antivirus [Auto | Running]
[07/19/2008 09:38 AM | 00,147,640 | ---- | M] (ALWIL Software) - C:\Program Files\Alwil Software\Avast4\ashServ.exe
(avast! Mail Scanner) avast! Mail Scanner [On_Demand | Running]
[07/19/2008 09:38 AM | 00,250,040 | ---- | M] (ALWIL Software) - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
(avast! Web Scanner) avast! Web Scanner [On_Demand | Running]
[07/23/2008 09:25 AM | 00,348,344 | ---- | M] (ALWIL Software) - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
(CertPropSvc) Certificate Propagation [Unknown | Stopped]
File not found - %SystemRoot%\system32\svchost.exe
(DcomLaunch) DCOM Server Process Launcher [Unknown | Running]
File not found - %SystemRoot%\system32\svchost.exe
(DFSR) DFS Replication [On_Demand | Stopped]
File not found - %SystemRoot%\system32\DFSR.exe
(DPS) Diagnostic Policy Service [Unknown | Running]
File not found - %SystemRoot%\System32\svchost.exe
(Fax) Fax [On_Demand | Stopped]
File not found - %systemroot%\system32\fxssvc.exe
(FLEXnet Licensing Service) FLEXnet Licensing Service [On_Demand | Stopped]
[02/02/2008 12:07 PM | 00,654,848 | ---- | M] (Macrovision Europe Ltd.) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
(gpsvc) Group Policy Client [Unknown | Running]
File not found - %systemroot%\system32\svchost.exe
(IDriverT) InstallDriver Table Manager [On_Demand | Stopped]
[11/14/2005 02:06 AM | 00,069,632 | ---- | M] (Macrovision Corporation) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
(idsvc) Windows CardSpace [Unknown | Stopped]
File not found - %systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
(KeyIso) CNG Key Isolation [On_Demand | Stopped]
File not found - %SystemRoot%\system32\lsass.exe
(MSCSPTISRV) MSCSPTISRV [On_Demand | Stopped]
[12/14/2006 03:21 AM | 00,045,056 | ---- | M] (Sony Corporation) - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
(MSDTC) Distributed Transaction Coordinator [Unknown | Stopped]
[11/02/2006 08:34 AM | ---D | M] - C:\Windows\System32\Msdtc
(Netlogon) Netlogon [On_Demand | Stopped]
File not found - %systemroot%\system32\lsass.exe
(nTuneService) nTune Service [Auto | Running]
[09/04/2007 08:31 PM | 00,180,224 | ---- | M] (NVIDIA) - C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe
(nvsvc) NVIDIA Display Driver Service [Auto | Running]
File not found - %SystemRoot%\system32\nvvsvc.exe
(PACSPTISVR) PACSPTISVR [On_Demand | Stopped]
[12/14/2006 02:46 AM | 00,057,344 | ---- | M] () - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
(ProtectedStorage) Protected Storage [On_Demand | Running]
File not found - %SystemRoot%\system32\lsass.exe
(RpcLocator) Remote Procedure Call (RPC) Locator [On_Demand | Stopped]
File not found - %SystemRoot%\system32\locator.exe
(RpcSs) Remote Procedure Call (RPC) [Unknown | Running]
File not found - %SystemRoot%\system32\svchost.exe
(SamSs) Security Accounts Manager [Auto | Running]
File not found - %SystemRoot%\system32\lsass.exe
(Schedule) Task Scheduler [Unknown | Running]
File not found - %systemroot%\system32\svchost.exe
(SCPolicySvc) Smart Card Removal Policy [Unknown | Stopped]
File not found - %SystemRoot%\system32\svchost.exe
(slsvc) Software Licensing [Auto | Running]
File not found - %SystemRoot%\system32\SLsvc.exe
(SNMPTRAP) SNMP Trap [On_Demand | Stopped]
File not found - %SystemRoot%\System32\snmptrap.exe
(SonicStage Back-End Service) SonicStage Back-End Service [Disabled | Stopped]
[02/05/2007 11:11 AM | 00,112,184 | ---- | M] (Sony Corporation) - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SsBeSvc.exe
(Spooler) Print Spooler [Auto | Running]
File not found - %SystemRoot%\System32\spoolsv.exe
(SPTISRV) Sony SPTI Service [Disabled | Stopped]
[12/14/2006 03:02 AM | 00,069,632 | ---- | M] (Sony Corporation) - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe
(SSScsiSV) SonicStage SCSI Service [Disabled | Stopped]
[02/05/2007 11:11 AM | 00,075,320 | ---- | M] (Sony Corporation) - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SSScsiSV.exe
(Steam Client Service) Steam Client Service [On_Demand | Stopped]
[04/04/2008 10:51 AM | 00,087,288 | ---- | M] (Valve Corporation) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(TrustedInstaller) Windows Modules Installer [Unknown | Stopped]
File not found - %SystemRoot%\servicing\TrustedInstaller.exe
(UI0Detect) Interactive Services Detection [On_Demand | Stopped]
File not found - %SystemRoot%\system32\UI0Detect.exe
(vds) Virtual Disk [On_Demand | Stopped]
File not found - %SystemRoot%\System32\vds.exe
(VSS) Volume Shadow Copy [On_Demand | Stopped]
File not found - %systemroot%\system32\vssvc.exe
(wbengine) Block Level Backup Engine Service [On_Demand | Stopped]
File not found - %systemroot%\system32\wbengine.exe
(WdiServiceHost) Diagnostic Service Host [Unknown | Stopped]
File not found - %SystemRoot%\System32\svchost.exe
(WdiSystemHost) Diagnostic System Host [Unknown | Running]
File not found - %SystemRoot%\System32\svchost.exe
(wmiApSrv) WMI Performance Adapter [On_Demand | Stopped]
File not found - %systemroot%\system32\wbem\WmiApSrv.exe
===== Driver Services - Non-Microsoft Only =====
(3dfxvs) 3dfxvs [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\3dfxvsm.sys
(ACPI) Microsoft ACPI Driver [Boot | Running]
File not found - C:\Windows\system32\drivers\acpi.sys
(adp94xx) adp94xx [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\adp94xx.sys
(adpahci) adpahci [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\adpahci.sys
(adpu160m) adpu160m [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\adpu160m.sys
(adpu320) adpu320 [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\adpu320.sys
(AFD) Ancilliary Function Driver for Winsock [System | Running]
File not found - C:\Windows\system32\drivers\afd.sys
(agp440) Intel AGP Bus Filter [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\agp440.sys
(aic78xx) aic78xx [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\djsvs.sys
(aliide) aliide [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\aliide.sys
(amdide) amdide [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\amdide.sys
(AmdK8) AMD K8 Processor Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\amdk8.sys
(arc) arc [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\arc.sys
(arcsas) arcsas [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\arcsas.sys
(aswFsBlk) aswFsBlk [Auto | Running]
File not found - C:\Windows\System32\DRIVERS\aswFsBlk.sys
(aswMonFlt) aswMonFlt [Auto | Running]
File not found - C:\Windows\System32\DRIVERS\aswMonFlt.sys
(aswRdr) aswRdr [System | Running]
File not found -
(aswSP) avast! Self Protection [System | Running]
File not found -
(aswTdi) avast! Network Shield Support [System | Running]
File not found -
(AsyncMac) RAS Asynchronous Media Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\asyncmac.sys
(atapi) IDE Channel [Boot | Running]
File not found - C:\Windows\system32\drivers\atapi.sys
(blbdrive) blbdrive [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\blbdrive.sys
(bowser) bowser [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\bowser.sys
(BrFiltLo) Brother USB Mass-Storage Lower Filter Driver [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\brfiltlo.sys
(BrFiltUp) Brother USB Mass-Storage Upper Filter Driver [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\brfiltup.sys
(Brserid) Brother MFC Serial Port Interface Driver (WDM) [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\brserid.sys
(BrSerWdm) Brother WDM Serial driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\brserwdm.sys
(BrUsbMdm) Brother MFC USB Fax Only Modem [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\brusbmdm.sys
(BrUsbSer) Brother MFC USB Serial WDM Driver [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\brusbser.sys
(BTHMODEM) Bluetooth Serial Communications Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\bthmodem.sys
(cdfs) CD/DVD File System Reader [Disabled | Running]
File not found - C:\Windows\System32\DRIVERS\cdfs.sys
(cdrom) CD-ROM Driver [System | Running]
File not found - C:\Windows\System32\DRIVERS\cdrom.sys
(circlass) Consumer IR Devices [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\circlass.sys
(CLFS) Common Log (CLFS) [Unknown | Running]
File not found -
(cmdide) cmdide [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\cmdide.sys
(Compbatt) Microsoft Composite Battery Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\compbatt.sys
(copperhd) Razer Copperhead Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\copperhd.sys
(crcdisk) Crcdisk Filter Driver [Boot | Running]
File not found - C:\Windows\system32\drivers\crcdisk.sys
(CSC) Offline Files Driver [System | Running]
File not found - C:\Windows\System32\drivers\csc.sys
(DAdderFltr) DeathAdder Mouse [On_Demand | Running]
File not found - C:\Windows\System32\drivers\dadder.sys
(DfsC) DFS Namespace Client Driver [System | Running]
File not found - C:\Windows\System32\Drivers\dfsc.sys
(disk) Disk Driver [Boot | Running]
File not found - C:\Windows\system32\drivers\disk.sys
(drmkaud) Microsoft Kernel DRM Audio Descrambler [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\drmkaud.sys
(DXGKrnl) LDDM Graphics Subsystem [On_Demand | Running]
File not found - C:\Windows\System32\drivers\dxgkrnl.sys
(E1G60) Intel® PRO/1000 NDIS 6 Adapter Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\E1G6032E.sys
(Ecache) ReadyBoost Caching Driver [Boot | Running]
File not found - C:\Windows\System32\drivers\ecache.sys
(elxstor) elxstor [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\elxstor.sys
(fdc) Floppy Disk Controller Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\fdc.sys
(FileInfo) File Information FS MiniFilter [Boot | Running]
File not found - C:\Windows\system32\drivers\fileinfo.sys
(Filetrace) Filetrace [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\filetrace.sys
(flpydisk) Floppy Disk Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\flpydisk.sys
(FltMgr) FltMgr [Boot | Running]
File not found - C:\Windows\system32\drivers\fltmgr.sys
(fvevol) BitLocker Drive Encryption Filter Driver [Boot | Running]
File not found - C:\Windows\System32\DRIVERS\fvevol.sys
(gagp30kx) Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\gagp30kx.sys
(HdAudAddService) Microsoft 1.1 UAA Function Driver for High Definition Audio Service [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\HdAudio.sys
(HDAudBus) Microsoft UAA Bus Driver for High Definition Audio [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\HDAudBus.sys
(HidBth) Microsoft Bluetooth HID Miniport [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\hidbth.sys
(HidIr) Microsoft Infrared HID Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\hidir.sys
(HidUsb) n52te HID Class Driver [Auto | Running]
File not found - C:\Windows\System32\DRIVERS\hidusb.sys
(HpCISSs) HpCISSs [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\hpcisss.sys
(HTTP) HTTP [On_Demand | Running]
File not found - C:\Windows\System32\drivers\HTTP.sys
(i2omp) i2omp [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\i2omp.sys
(i8042prt) i8042 Keyboard and PS/2 Mouse Port Driver [System | Running]
File not found - C:\Windows\System32\DRIVERS\i8042prt.sys
(iaStorV) Intel RAID Controller Vista [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\iastorv.sys
(iirsp) iirsp [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\iirsp.sys
(IntcAzAudAddService) Service for Realtek HD Audio (WDM) [On_Demand | Running]
File not found - C:\Windows\System32\drivers\RTKVHD64.sys
(intelide) intelide [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\intelide.sys
(intelppm) Intel Processor Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\intelppm.sys
(IpFilterDriver) IP Traffic Filter Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\ipfltdrv.sys
(IpInIp) IP in IP Tunnel Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\ipinip.sys
(IPMIDRV) IPMIDRV [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\ipmidrv.sys
(IPNAT) IP Network Address Translator [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\ipnat.sys
(IRENUM) IR Bus Enumerator [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\irenum.sys
(isapnp) PnP ISA/EISA Bus Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\isapnp.sys
(iScsiPrt) iScsiPort Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\msiscsi.sys
(iteatapi) ITEATAPI_Service_Install [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\iteatapi.sys
(iteraid) ITERAID_Service_Install [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\iteraid.sys
(JmtFltr) n52te [On_Demand | Running]
File not found - C:\Windows\System32\drivers\JmtFltr.sys
(kbdclass) Keyboard Class Driver [System | Running]
File not found - C:\Windows\System32\DRIVERS\kbdclass.sys
(kbdhid) Keyboard HID Driver [System | Running]
File not found - C:\Windows\System32\DRIVERS\kbdhid.sys
(KSecDD) KSecDD [Boot | Running]
File not found - C:\Windows\System32\Drivers\ksecdd.sys
(ksthunk) Kernel Streaming Thunks [On_Demand | Running]
File not found - C:\Windows\system32\drivers\ksthunk.sys
(lltdio) Link-Layer Topology Discovery Mapper I/O Driver [Auto | Running]
File not found - C:\Windows\System32\DRIVERS\lltdio.sys
(LSI_FC) LSI_FC [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\lsi_fc.sys
(LSI_SAS) LSI_SAS [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\lsi_sas.sys
(LSI_SCSI) LSI_SCSI [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\lsi_scsi.sys
(luafv) UAC File Virtualization [Auto | Running]
File not found - C:\Windows\system32\drivers\luafv.sys
(megasas) megasas [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\megasas.sys
(Modem) Modem [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\modem.sys
(monitor) Microsoft Monitor Class Function Driver Service [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\monitor.sys
(mouclass) Mouse Class Driver [System | Running]
File not found - C:\Windows\System32\DRIVERS\mouclass.sys
(mouhid) Mouse HID Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\mouhid.sys
(MountMgr) Mount Point Manager [Boot | Running]
File not found - C:\Windows\System32\drivers\mountmgr.sys
(mpio) Microsoft Multi-Path Bus Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\mpio.sys
(mpsdrv) Windows Firewall Authorization Driver [On_Demand | Running]
File not found - C:\Windows\System32\drivers\mpsdrv.sys
(Mraid35x) Mraid35x [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\mraid35x.sys
(MRxDAV) WebDav Client Redirector Driver [On_Demand | Running]
File not found - C:\Windows\system32\drivers\mrxdav.sys
(mrxsmb) SMB MiniRedirector Wrapper and Engine [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\mrxsmb.sys
(mrxsmb10) SMB 1.x MiniRedirector [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\mrxsmb10.sys
(mrxsmb20) SMB 2.0 MiniRedirector [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\mrxsmb20.sys
(msahci) msahci [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\msahci.sys
(msdsm) Microsoft Multi-Path Device Specific Module [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\msdsm.sys
(Msfs) Msfs [System | Running]
File not found -
(msisadrv) ISA/EISA Class Driver [Boot | Running]
File not found - C:\Windows\system32\drivers\msisadrv.sys
(MSKSSRV) Microsoft Streaming Service Proxy [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\MSKSSRV.sys
(MSPCLOCK) Microsoft Streaming Clock Proxy [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\MSPCLOCK.sys
(MSPQM) Microsoft Streaming Quality Manager Proxy [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\MSPQM.sys
(mssmbios) Microsoft System Management BIOS Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\mssmbios.sys
(MSTEE) Microsoft Streaming Tee/Sink-to-Sink Converter [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\MSTEE.sys
(Mup) Mup [Boot | Running]
File not found - C:\Windows\System32\Drivers\mup.sys
(NativeWifiP) NativeWiFi Filter [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\nwifi.sys
(NDIS) NDIS System Driver [Boot | Running]
File not found - C:\Windows\system32\drivers\ndis.sys
(NdisTapi) Remote Access NDIS TAPI Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\ndistapi.sys
(Ndisuio) NDIS Usermode I/O Protocol [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\ndisuio.sys
(NdisWan) Remote Access NDIS WAN Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\ndiswan.sys
(NDProxy) NDIS Proxy [On_Demand | Running]
File not found -
(NetBIOS) NetBIOS Interface [System | Running]
File not found - C:\Windows\System32\DRIVERS\netbios.sys
(netbt) netbt [System | Running]
File not found - C:\Windows\System32\DRIVERS\netbt.sys
(nfrd960) nfrd960 [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\nfrd960.sys
(Npfs) Npfs [System | Running]
File not found -
(nsiproxy) NSI proxy service [System | Running]
File not found - C:\Windows\System32\drivers\nsiproxy.sys
(Ntfs) Ntfs [On_Demand | Running]
File not found -
(Null) Null [System | Running]
File not found -
(NVENETFD) NVIDIA nForce Networking Controller Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\nvmfdx64.sys
(nvlddmkm) nvlddmkm [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\nvlddmkm.sys
(NVR0Dev) NVR0Dev [On_Demand | Running]
[09/04/2007 08:26 PM | 00,039,968 | ---- | M] (NVidia Corp.) - C:\Windows\nvoclk64.sys
(nvraid) %nvraidbus.SvcDesc% [Boot | Running]
File not found - C:\Windows\system32\drivers\nvraid.sys
(nvrd64) NVIDIA nForce RAID Driver [Boot | Running]
File not found - C:\Windows\system32\DRIVERS\nvrd64.sys
(nvstor) nvstor [Boot | Running]
File not found - C:\Windows\system32\drivers\nvstor.sys
(nvstor64) nvstor64 [Boot | Running]
File not found - C:\Windows\system32\DRIVERS\nvstor64.sys
(nv_agp) NVIDIA nForce AGP Bus Filter [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\nv_agp.sys
(NwlnkFlt) IPX Traffic Filter Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\nwlnkflt.sys
(NwlnkFwd) IPX Traffic Forwarder Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\nwlnkfwd.sys
(ohci1394) Texas Instruments OHCI Compliant IEEE 1394 Host Controller [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\ohci1394.sys
(Parport) Parallel port driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\parport.sys
(partmgr) Partition Manager [Boot | Running]
File not found - C:\Windows\System32\drivers\partmgr.sys
(pci) PCI Bus Driver [Boot | Running]
File not found - C:\Windows\system32\drivers\pci.sys
(pciide) pciide [Boot | Running]
File not found - C:\Windows\system32\drivers\pciide.sys
(pcmcia) pcmcia [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\pcmcia.sys
(PEAUTH) PEAUTH [Auto | Running]
File not found - C:\Windows\System32\drivers\peauth.sys
(PptpMiniport) WAN Miniport (PPTP) [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\raspptp.sys
(Processor) Processor Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\processr.sys
(PSched) QoS Packet Scheduler [System | Running]
File not found - C:\Windows\System32\DRIVERS\pacer.sys
(ql2300) QLogic Fibre Channel Miniport Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\ql2300.sys
(ql40xx) QLogic iSCSI Miniport Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\ql40xx.sys
(QWAVEdrv) QWAVE driver [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\qwavedrv.sys
(RasAcd) Remote Access Auto Connection Driver [System | Running]
File not found - C:\Windows\System32\DRIVERS\rasacd.sys
(Rasl2tp) WAN Miniport (L2TP) [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\rasl2tp.sys
(RasPppoe) Remote Access PPPOE Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\raspppoe.sys
(RasSstp) WAN Miniport (SSTP) [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\rassstp.sys
(rdbss) Redirected Buffering Sub Sysytem [System | Running]
File not found - C:\Windows\System32\DRIVERS\rdbss.sys
(RDPCDD) RDPCDD [System | Running]
File not found - C:\Windows\System32\DRIVERS\RDPCDD.sys
(rdpdr) Terminal Server Device Redirector Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\rdpdr.sys
(RDPENCDD) RDP Encoder Mirror Driver [System | Running]
File not found - C:\Windows\System32\drivers\rdpencdd.sys
(rspndr) Link-Layer Topology Discovery Responder [Auto | Running]
File not found - C:\Windows\System32\DRIVERS\rspndr.sys
(sbp2port) SBP-2 Transport/Protocol Bus Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\sbp2port.sys
(secdrv) Security Driver [Auto | Running]
File not found -
(Serenum) Serenum Filter Driver [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\serenum.sys
(Serial) Serial Port Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\serial.sys
(sermouse) Serial Mouse Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\sermouse.sys
(sffdisk) SFF Storage Class Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\sffdisk.sys
(sffp_mmc) SFF Storage Protocol Driver for MMC [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\sffp_mmc.sys
(sffp_sd) SFF Storage Protocol Driver for SDBus [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\sffp_sd.sys
(sfloppy) High-Capacity Floppy Disk Drive [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\sfloppy.sys
(SiSRaid2) SiSRaid2 [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\sisraid2.sys
(SiSRaid4) SiSRaid4 [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\sisraid4.sys
(Smb) Message-oriented TCP/IP and TCP/IPv6 Protocol (SMB session) [System | Running]
File not found - C:\Windows\System32\DRIVERS\smb.sys
(spldr) Security Processor Loader Driver [Boot | Running]
File not found -
(sptd) sptd [Boot | Running]
File not found - C:\Windows\System32\Drivers\sptd.sys
(srv) srv [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\srv.sys
(srv2) srv2 [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\srv2.sys
(srvnet) srvnet [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\srvnet.sys
(swenum) Software Bus Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\swenum.sys
(Symc8xx) Symc8xx [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\symc8xx.sys
(Sym_hi) Sym_hi [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\sym_hi.sys
(Sym_u3) Sym_u3 [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\sym_u3.sys
(Tcpip) TCP/IP Protocol Driver [Boot | Running]
File not found - C:\Windows\System32\drivers\tcpip.sys
(Tcpip6) Microsoft IPv6 Protocol Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\tcpip.sys
(tcpipreg) TCP/IP Registry Compatibility [Auto | Running]
File not found - C:\Windows\System32\drivers\tcpipreg.sys
(TDPIPE) TDPIPE [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\tdpipe.sys
(TDTCP) TDTCP [On_Demand | Stopped]
File not found - C:\Windows\System32\drivers\tdtcp.sys
(tdx) NetIO Legacy TDI Support Driver [System | Running]
File not found - C:\Windows\System32\DRIVERS\tdx.sys
(TermDD) Terminal Device Driver [System | Running]
File not found - C:\Windows\System32\DRIVERS\termdd.sys
(tssecsrv) Terminal Services Security Filter Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\tssecsrv.sys
(tunmp) Microsoft Tun Miniport Adapter Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\tunmp.sys
(tunnel) Microsoft IPv6 Tunnel Miniport Adapter Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\tunnel.sys
(uagp35) Microsoft AGPv3.5 Filter [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\uagp35.sys
(udfs) udfs [Disabled | Stopped]
File not found - C:\Windows\System32\DRIVERS\udfs.sys
(uliagpkx) Uli AGP Bus Filter [On_Demand | Stopped]
File not found - C:\Windows\system32\drivers\uliagpkx.sys
(uliahci) uliahci [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\uliahci.sys
(UlSata) UlSata [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\ulsata.sys
(ulsata2) ulsata2 [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\ulsata2.sys
(umbus) UMBus Enumerator Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\umbus.sys
(usbccgp) Microsoft USB Generic Parent Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\usbccgp.sys
(usbcir) eHome Infrared Receiver (USBCIR) [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\usbcir.sys
(usbehci) Microsoft USB 2.0 Enhanced Host Controller Miniport Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\usbehci.sys
(usbhub) USB2 Enabled Hub [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\usbhub.sys
(usbohci) Microsoft USB Open Host Controller Miniport Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\usbohci.sys
(usbprint) Microsoft USB PRINTER Class [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\usbprint.sys
(USBSTOR) USB Mass Storage Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\USBSTOR.SYS
(usbuhci) Microsoft USB Universal Host Controller Miniport Driver [Disabled | Stopped]
File not found - C:\Windows\System32\DRIVERS\usbuhci.sys
(vga) vga [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\vgapnp.sys
(VgaSave) VgaSave [System | Running]
File not found - C:\Windows\System32\drivers\vga.sys
(vhidmini) Virtual Hid Device [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\vhidmini.sys
(viaide) viaide [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\viaide.sys
(vmm) Virtual Machine Monitor [System | Running]
File not found - C:\Windows\system32\Drivers\vmm.sys
(volmgr) Volume Manager Driver [Boot | Running]
File not found - C:\Windows\system32\drivers\volmgr.sys
(volmgrx) Dynamic Volume Manager [Boot | Running]
File not found - C:\Windows\System32\drivers\volmgrx.sys
(volsnap) Storage volumes [Boot | Running]
File not found - C:\Windows\system32\drivers\volsnap.sys
(VPCNetS2) Virtual Machine Network Services Driver [On_Demand | Running]
File not found - C:\Windows\System32\DRIVERS\VMNetSrv.sys
(vsmraid) vsmraid [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\vsmraid.sys
(WacomPen) Wacom Serial Pen HID Driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\wacompen.sys
(Wanarp) Remote Access IP ARP Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\wanarp.sys
(Wanarpv6) Remote Access IPv6 ARP Driver [System | Running]
File not found - C:\Windows\System32\DRIVERS\wanarp.sys
(Wd) Microsoft Watchdog Timer Driver [Boot | Running]
File not found - C:\Windows\system32\drivers\wd.sys
(Wdf01000) Kernel Mode Driver Frameworks service [Boot | Running]
File not found - C:\Windows\system32\drivers\Wdf01000.sys
(WmiAcpi) Microsoft Windows Management Interface for ACPI [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\wmiacpi.sys
(ws2ifsl) Winsock IFS driver [Disabled | Stopped]
File not found - C:\Windows\system32\drivers\ws2ifsl.sys
(WUDFRd) WUDFRd [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\WUDFRd.sys
===== Run Keys =====
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"" = File not found
"Adobe Reader Speed Launcher" = "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [06/12/2008 02:38 AM | 00,034,672 | ---- | M] (Adobe Systems Incorporated)
"avast!" = C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [07/19/2008 09:38 AM | 00,078,008 | ---- | M] (ALWIL Software)
"DeathAdder" = "C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe" [09/07/2007 03:54 PM | 00,159,744 | ---- | M] ()
"Jomantha" = "C:\Program Files (x86)\n52te\razerhid.exe" [12/12/2007 11:58 AM | 00,163,840 | ---- | M] (Razer USA Ltd.)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Value load does not exist or could not be read.
"run" = Reg Error: Value run does not exist or could not be read.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"" =
"Installed" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"" =
"Installed" = 1
"NoChange" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"" =
"Installed" = 1
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite" = "C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe" -autorun [07/24/2008 10:02 AM | 00,490,952 | ---- | M] (DT Soft Ltd)
"NVIDIA nTune" = "C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneCmd.exe" clear [09/04/2007 08:31 PM | 00,098,304 | ---- | M] (NVIDIA)
"SpybotSD TeaTimer" = C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [07/07/2008 09:42 AM | 02,156,368 | RHS- | M] (Safer Networking Limited)
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Value load does not exist or could not be read.
"run" = Reg Error: Value run does not exist or could not be read.
[HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Key does not exist or could not be opened.
"run" = Reg Error: Key does not exist or could not be opened.
[HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Key does not exist or could not be opened.
"run" = Reg Error: Key does not exist or could not be opened.
[HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Value load does not exist or could not be read.
"run" = Reg Error: Value run does not exist or could not be read.
[HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Value load does not exist or could not be read.
"run" = Reg Error: Value run does not exist or could not be read.
[HKEY_USERS\S-1-5-21-1661854043-3290920731-3084093886-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite" = "C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe" -autorun [07/24/2008 10:02 AM | 00,490,952 | ---- | M] (DT Soft Ltd)
"NVIDIA nTune" = "C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneCmd.exe" clear [09/04/2007 08:31 PM | 00,098,304 | ---- | M] (NVIDIA)
"SpybotSD TeaTimer" = C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [07/07/2008 09:42 AM | 02,156,368 | RHS- | M] (Safer Networking Limited)
[HKEY_USERS\S-1-5-21-1661854043-3290920731-3084093886-1000\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Value load does not exist or could not be read.
"run" = Reg Error: Value run does not exist or could not be read.
===== Startup Folders =====
===== BHO's =====
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
HKLM CLSID: (Spybot-S&D IE Protection) - [07/07/2008 09:41 AM | 01,562,448 | ---- | M] (Safer Networking Limited) C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
HKLM CLSID: (Adobe PDF Conversion Toolbar Helper) - [05/10/2007 11:47 PM | 00,321,120 | ---- | M] (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
===== Toolbars =====
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
"{47833539-D0C5-4125-9FA8-0819E2EAAC93}"
HKLM CLSID: (Adobe PDF) - [05/10/2007 11:47 PM | 00,321,120 | ---- | M] (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{47833539-D0C5-4125-9FA8-0819E2EAAC93}"
HKLM CLSID: (Adobe PDF) - [05/10/2007 11:47 PM | 00,321,120 | ---- | M] (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
[HKEY_USERS\S-1-5-21-1661854043-3290920731-3084093886-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{47833539-D0C5-4125-9FA8-0819E2EAAC93}"
HKLM CLSID: (Adobe PDF) - [05/10/2007 11:47 PM | 00,321,120 | ---- | M] (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
===== Policies =====
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ActiveDesktop]
"NoAddingComponents" = 1
"NoComponents" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Attachments]
"ScanWithAntiVirus" = 3
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoActiveDesktop" = 1
"NoActiveDesktopChanges" = 1
"ForceActiveDesktopOn" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum]
"{BDEADF00-C265-11D0-BCED-00A0C90AB50F}" = 1
"{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}" = 1073741857
"{0DF44EAA-FF21-4412-828E-260A8728E7F1}" = 32
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
"ConsentPromptBehaviorAdmin" = 2
"ConsentPromptBehaviorUser" = 1
"EnableInstallerDetection" = 1
"EnableLUA" = 1
"EnableSecureUIAPaths" = 1
"EnableVirtualization" = 1
"PromptOnSecureDesktop" = 1
"ValidateAdminCodeSignatures" = 0
"dontdisplaylastusername" = 0
"legalnoticecaption" =
"legalnoticetext" =
"scforceoption" = 0
"shutdownwithoutlogon" = 1
"undockwithoutlogon" = 1
"FilterAdministratorToken" = 0
"EnableUIADesktopToggle" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats]
"CF_TEXT" = 1
"CF_BITMAP" = 2
"CF_OEMTEXT" = 7
"CF_DIB" = 8
"CF_PALETTE" = 9
"CF_UNICODETEXT" = 13
"CF_DIBV5" = 17
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoWinKeys" = 1
Reg Error: Key HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ not found. -> ->
Reg Error: Key HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ not found. -> ->
[HKEY_USERS\S-1-5-21-1661854043-3290920731-3084093886-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoWinKeys" = 1
===== Desktop Components =====
===== Shared Task Scheduler =====
===== AppInit_Dlls =====
===== Lsa Authentication Packages =====
===== Lsa Security Packages =====
===== Authorized Applications List =====
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
Reg Error: Key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List\ not found. -> ->
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
Reg Error: Key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\ not found. -> ->
===== HKLM Winlogon Settings =====
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell]
"explorer.exe" - [01/19/2008 02:33 AM | 02,927,104 | ---- | M] (Microsoft Corporation) C:\Windows\System32\explorer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit]
"userinit.exe" - [01/19/2008 02:33 AM | 00,025,088 | ---- | M] (Microsoft Corporation) C:\Windows\System32\userinit.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet]
"rundll32 shell32" - [04/23/2008 11:58 PM | 11,580,416 | ---- | M] (Microsoft Corporation) C:\Windows\System32\shell32.dll
"Control_RunDLL "sysdm.cpl"" - [01/19/2008 02:32 AM | 00,242,688 | ---- | M] (Microsoft Corporation) C:\Windows\System32\sysdm.cpl
===== User's Winlogon Settings =====
===== Winlogon Notify Settings =====
===== Safeboot Options =====
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot]
"AlternateShell" = cmd.exe
===== Disabled MsConfig Items =====
Reg Error: Key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\ not found. -> ->
===== DNS Name Servers =====
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{28907143-9C99-42B4-86ED-3FCDE1799D60}]
Servers: | Description: NVIDIA nForce Networking Controller
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{DF605880-272B-4F50-97BE-A7A57C0C0340}]
Servers: | Description: NVIDIA nForce Networking Controller
===== CDRom AutoRun Settings =====
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom]
"AutoRun" = 1
"AutoRunAlwaysDisable" = TORiSAN CD-ROM CDR_C36;NEC MBR-7 ;NEC MBR-7.4 ;PIONEER CHANGR DRM-1804X;PIONEER CD-ROM DRM-6324X;PIONEER CD-ROM DRM-624X ;
"DisplayName" = CD-ROM Driver
"Group" = SCSI CDROM Class
"ImagePath" = system32\DRIVERS\cdrom.sys
"ErrorControl" = 1
"Start" = 1
"Type" = 1
"Tag" = 3
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\Enum]
"0" = IDE\CdRom_NEC_DVD_RW_ND-2500A____________________1.06____\5&346e82bb&0&0.0.0
"Count" = 2
"NextInstance" = 2
"1" = SCSI\CdRom&Ven_DSN&Prod_H2ZCTUJ&Rev_1.03\5&2c4f72d4&0&000000
===== CDRom AutoRun Settings =====
===== MountPoints2 =====
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\C]
"BaseClass" = Drive
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\D]
"BaseClass" = Drive
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\E]
"BaseClass" = Drive
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\J]
"BaseClass" = Drive
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\K]
"BaseClass" = Drive
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\L]
"BaseClass" = Drive
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\M]
"BaseClass" = Drive
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\N]
"BaseClass" = Drive
===== Hosts File =====
HOSTS File = (257752 bytes) - C:\Windows\System32\drivers\etc\Hosts
First 25 entries...
127.0.0.1 localhost
::1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.1001-search.info
127.0.0.1 1001-search.info
127.0.0.1 www.100888290cs.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 www.10sek.com
127.0.0.1 10sek.com
127.0.0.1 www.123topsearch.com
127.0.0.1 123topsearch.com
127.0.0.1 www.132.com
127.0.0.1 132.com
127.0.0.1 www.136136.net
[Files/Folders - Created Within 90 days]
[07/16/2008 12:46 PM | ---D | C] - C:\d3tr
[08/07/2008 12:24 AM | ---D | C] - C:\Deckard
[08/16/2008 07:42 PM | ---D | C] - C:\TcpView
[06/13/2008 02:01 PM | ---D | C] - C:\UBCD4Win
[06/13/2008 01:19 PM | ---D | C] - C:\Virtual Machines
[08/06/2008 11:22 PM | ---D | C] - C:\VundoFix Backups
[06/23/2008 10:42 PM | 00,031,104 | ---- | M] (Cypress Semiconductor) - C:\Windows\System32\drivers\cyusb.sys
[07/30/2008 08:07 PM | 00,017,144 | ---- | M] (Malwarebytes Corporation) - C:\Windows\System32\drivers\mbam.sys
[07/30/2008 08:07 PM | 00,038,472 | ---- | M] (Malwarebytes Corporation) - C:\Windows\System32\drivers\mbamswissarmy.sys
[10/21/2005 05:01 PM | 00,019,200 | ---- | M] (Motorola) - C:\Windows\System32\drivers\USBICP.sys
[05/23/2008 06:21 PM | 00,081,920 | ---- | M] (S!Ri.URZ) - C:\Windows\System32\404Fix.exe
[01/09/2004 04:13 AM | 00,380,928 | ---- | M] () - C:\Windows\System32\actskin4.ocx
[07/19/2008 09:43 AM | 01,163,960 | ---- | M] (ALWIL Software) - C:\Windows\System32\aswBoot.exe
[08/04/2008 01:34 PM | 00,000,000 | ---- | M] () - C:\Windows\System32\config.nt
[05/07/2007 06:19 PM | 00,085,504 | ---- | M] (Razer USA Ltd.) - C:\Windows\System32\DeathAdder64.cpl
[07/31/2004 06:50 PM | 00,051,200 | ---- | M] () - C:\Windows\System32\dumphive.exe
[03/07/2008 09:08 PM | 04,240,384 | ---- | M] (Microsoft) - C:\Windows\System32\GameUXLegacyGDFs.dll
[07/02/2008 01:33 PM | 00,082,432 | ---- | M] (S!Ri.URZ) - C:\Windows\System32\IEDFix.C.exe
[05/18/2008 09:40 PM | 00,082,944 | ---- | M] (S!Ri.URZ) - C:\Windows\System32\IEDFix.exe
[12/06/2007 03:16 PM | 00,049,152 | ---- | M] (Razer USA Ltd.) - C:\Windows\System32\Jomantha.cpl
[11/08/2007 04:04 AM | 11,967,524 | ---- | M] () - C:\Windows\System32\korwbrkr.lex
[06/11/2008 02:48 PM | 00,188,960 | ---- | M] () - C:\Windows\System32\nvapps.xml
[06/05/2003 09:13 PM | 00,053,248 | ---- | M] (
http://www.beyondlogic.org) - C:\Windows\System32\Process.exe
[04/27/2006 05:49 PM | 00,288,417 | ---- | M] (S!Ri) - C:\Windows\System32\SrchSTS.exe
[05/26/2008 11:59 PM | 00,106,605 | ---- | M] () - C:\Windows\System32\StructuredQuerySchema.bin
[05/26/2008 11:59 PM | 00,018,904 | ---- | M] () - C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[08/29/2006 07:43 PM | 00,135,168 | ---- | M] (SteelWerX) - C:\Windows\System32\swreg.exe
[01/09/2006 10:36 AM | 00,040,960 | ---- | M] () - C:\Windows\System32\swsc.exe
[12/01/2006 06:20 AM | 00,079,360 | ---- | M] (SteelWerX) - C:\Windows\System32\swxcacls.exe
[08/06/2008 11:12 AM | 00,001,750 | ---- | M] () - C:\Windows\System32\tmp.reg
[05/29/2008 09:35 AM | 00,086,528 | ---- | M] (S!Ri.URZ) - C:\Windows\System32\VACFix.exe
[09/06/2007 12:22 AM | 00,289,144 | ---- | M] (S!Ri) - C:\Windows\System32\VCCLSID.exe
[10/04/2007 12:36 AM | 00,025,600 | ---- | M] () - C:\Windows\System32\WS2Fix.exe
[08/07/2008 12:24 AM | ---D | C] - C:\Windows\ERDNT
[08/17/2008 04:35 PM | 00,000,000 | ---- | M] () - C:\Windows\nsreg.dat
[08/21/2008 09:00 AM | 00,000,324 | ---- | M] () - C:\Windows\tasks\Spybot - Search & Destroy - Scheduled Task.job
[08/18/2008 11:28 AM | 00,000,332 | ---- | M] () - C:\Windows\tasks\Spybot - Search & Destroy Updater - Scheduled Task.job
[08/04/2008 04:47 PM | ---D | C] - C:\ProgramData\Lavasoft
[08/06/2008 11:49 PM | ---D | C] - C:\ProgramData\Malwarebytes
[08/04/2008 01:54 PM | ---D | C] - C:\ProgramData\NOS
[08/04/2008 02:05 PM | ---D | C] - C:\ProgramData\Spybot - Search & Destroy
[08/06/2008 11:49 PM | ---D | C] - C:\Users\accountX\AppData\Roaming\Malwarebytes
[08/17/2008 04:35 PM | ---D | C] - C:\Users\accountX\AppData\Roaming\Mozilla
[08/20/2008 10:10 PM | 02,622,689 | -H-- | M] () - C:\Users\accountX\AppData\Local\IconCache.db
[08/17/2008 04:35 PM | ---D | C] - C:\Users\accountX\AppData\Local\Mozilla
[06/13/2008 01:18 PM | ---D | C] - C:\Users\accountX\Documents\My Virtual Machines
[08/05/2008 02:43 PM | 00,000,897 | ---- | M] () - C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[08/17/2008 04:35 PM | 00,001,778 | ---- | M] () - C:\Users\Public\Desktop\Mozilla Firefox.lnk
[08/23/2008 08:19 PM | 01,274,880 | ---- | M] (OldTimer Tools) - C:\Users\accountX\Desktop\OTViewIt.exe
[08/06/2008 11:58 PM | ---D | C] - C:\Users\accountX\Desktop\Tools
[08/04/2008 01:38 PM | ---D | C] - C:\Program Files (x86)\Common Files\Adobe AIR
[08/05/2008 02:43 PM | ---D | C] - C:\Program Files (x86)\DAEMON Tools Lite
[08/05/2008 01:46 AM | ---D | C] - C:\Program Files (x86)\Enigma Software Group
[08/04/2008 04:46 PM | ---D | C] - C:\Program Files (x86)\Lavasoft
[08/06/2008 11:49 PM | ---D | C] - C:\Program Files (x86)\Malwarebytes' Anti-Malware
[06/13/2008 01:17 PM | ---D | C] - C:\Program Files (x86)\Microsoft Virtual PC
[08/17/2008 04:35 PM | ---D | C] - C:\Program Files (x86)\Mozilla Firefox
[06/24/2008 05:35 PM | ---D | C] - C:\Program Files (x86)\n52te
[08/04/2008 01:54 PM | ---D | C] - C:\Program Files (x86)\NOS
[06/23/2008 10:43 PM | ---D | C] - C:\Program Files (x86)\Razer
[08/04/2008 01:57 PM | ---D | C] - C:\Program Files (x86)\Spybot - Search & Destroy
[08/05/2008 12:27 AM | ---D | C] - C:\Program Files (x86)\Trend Micro
[08/04/2008 01:40 PM | ---D | C] - C:\Program Files (x86)\Uniblue
[Files/Folders - Modified Within 90 days]
[07/16/2008 12:46 PM | ---D | M] - C:\d3tr
[08/07/2008 12:24 AM | ---D | M] - C:\Deckard
[08/01/2008 11:26 AM | ---D | M] - C:\mp3s
[08/23/2008 08:20 PM | ---D | M] - C:\Outlook Email
[06/19/2008 10:53 AM | ---D | M] - C:\PerfLogs
[08/04/2008 01:34 PM | R--D | M] - C:\Program Files
[08/17/2008 04:35 PM | R--D | M] - C:\Program Files (x86)
[08/06/2008 11:49 PM | -H-D | M] - C:\ProgramData
[08/06/2008 03:20 PM | -HSD | M] - C:\System Volume Information
[08/16/2008 07:42 PM | ---D | M] - C:\TcpView
[08/16/2008 06:32 PM | ---D | M] -