Logfile of random's system information tool 1.01 (written by random/random)
Run by Amber at 2008-09-15 09:57:18
MicrosoftŪ Windows Vista Home Basic Service Pack 1
System drive C: has 33 GB (46%) free of 70 GB
Total RAM: 1013 MB (15% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:57:57 AM, on 9/15/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Program Files\Acer\Acer Arcade\PCMService.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Windows\system32\igfxext.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\ProgramData\ShAdm\wlqzsvun.exe
C:\Windows\system32\igfxsrvc.exe
C:\Acer\Empowering Technology\ENET\ENMTRAY.EXE
C:\Acer\Empowering Technology\EPOWER\EPOWER_DMC.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Users\Amber\AppData\Local\Temp\RtkBtMnt.exe
C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\AIM6\aim6.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\Program Files\Windows NT\Accessories\wordpad.exe
C:\Users\Amber\Downloads\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Amber.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://runonce.msn.com/?v=msgrv75
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://en.us.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://en.us.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [ALaunch] C:\Acer\ALaunch\AlaunchClient.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Acer\Acer Arcade\PCMService.exe"
O4 - HKLM\..\Run: [PLFSetL] C:\Windows\PLFSetL.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [Acer Product Registration] "C:\Program Files\Acer\Acer Registration\ACE1.exe" /startup
O4 - HKLM\..\Run: [Acer Assist Launcher] C:\Program Files\Acer\Acer Assist\launcher.exe
O4 - HKLM\..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe
O4 - HKLM\..\Run: [SetPanel] C:\Acer\APanel\APanel.cmd
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [ShAdm] C:\ProgramData\ShAdm\wlqzsvun.exe
O4 - HKCU\..\Run: [60HniRQB9C] C:\ProgramData\mxylwdqj\wpqnaxuf.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'Default user')
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{5669E2A1-DC26-41CF-8569-DE63F6BD7925}: NameServer = 64.91.3.60 64.91.3.46
O17 - HKLM\System\CS1\Services\Tcpip\..\{5669E2A1-DC26-41CF-8569-DE63F6BD7925}: NameServer = 64.91.3.60 64.91.3.46
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: ALaunch Service (ALaunchService) - Unknown owner - C:\Acer\ALaunch\ALaunchSvc.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 9801 bytes
Scheduled tasks folder
C:\Windows\tasks\User_Feed_Synchronization-{A453AADA-35B0-475F-A453-187F39CC1AAC}.job
Registry dump
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2008-09-13 455960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll [2008-03-25 509328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}]
ShowBarObj Class - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll [2008-01-03 312368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A057A204-BACC-4D26-9990-79A187E2698E}]
AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-09-13 2055960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0BF43445-2F28-4351-9252-17FE6E806AA0}
{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll [2008-03-05 142896]
{A057A204-BACC-4D26-9990-79A187E2698E} - AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-09-13 2055960]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-20 1008184]
"ALaunch"=C:\Acer\ALaunch\AlaunchClient.exe []
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-03-11 5296128]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2007-03-08 40048]
"eDataSecurity Loader"=C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe [2008-03-05 525360]
"PCMService"=C:\Program Files\Acer\Acer Arcade\PCMService.exe [2008-01-25 155648]
"PLFSetL"=C:\Windows\PLFSetL.exe [2007-07-05 94208]
"LManager"=C:\PROGRA~1\LAUNCH~1\LManager.exe [2008-01-04 768520]
"Skytel"=C:\Windows\Skytel.exe [2007-11-20 1826816]
"eRecoveryService"=C:\Windows\system32\
"SynTPStart"=C:\Program Files\Synaptics\SynTP\SynTPStart.exe [2007-09-06 102400]
"Acer Product Registration"=C:\Program Files\Acer\Acer Registration\ACE1.exe [2007-11-26 3387392]
"Acer Assist Launcher"=C:\Program Files\Acer\Acer Assist\launcher.exe [2007-11-19 1261568]
"Acer Tour Reminder"=C:\Acer\AcerTour\Reminder.exe []
"SetPanel"=C:\Acer\APanel\APanel.cmd []
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe [2008-03-25 144784]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-04-18 150040]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-04-18 170520]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-04-18 141848]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2008-09-13 1235736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-20 1233920]
"WindowsWelcomeCenter"=C:\Windows\system32\oobefldr.dll [2008-01-20 2153472]
"MsnMsgr"=C:\Program Files\MSN Messenger\MsnMsgr.Exe [2007-01-19 5674352]
"Aim6"=C:\Program Files\AIM6\aim6.exe [2008-08-06 50472]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-20 202240]
"ShAdm"=C:\ProgramData\ShAdm\wlqzsvun.exe [2008-09-12 98304]
"60HniRQB9C"=C:\ProgramData\mxylwdqj\wpqnaxuf.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Somefox]
C:\Users\Amber\AppData\Local\Temp\3062.tmp.exe []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Empowering Technology Launcher.lnk - C:\Acer\Empowering Technology\eAPLauncher.exe
C:\Users\Amber\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OneNote 2007 Screen Clipper and Launcher.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="avgrsstx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-04-18 208896]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{78a29a6f-fe13-11dc-80d3-806e6f6e6963}]
shell\AutoRun\command - E:\Autorun.exe
List of files/folders created in the last three months
2008-09-15 09:57:18 ----D---- C:\rsit
2008-09-14 17:43:59 ----A---- C:\Windows\ntbtlog.txt
2008-09-14 17:04:56 ----D---- C:\Users\Amber\AppData\Roaming\Malwarebytes
2008-09-14 17:04:43 ----D---- C:\ProgramData\Malwarebytes
2008-09-14 17:04:43 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2008-09-14 13:10:42 ----D---- C:\SDFix
2008-09-14 05:12:26 ----D---- C:\Program Files\Trend Micro
2008-09-13 01:58:56 ----HD---- C:\$AVG8.VAULT$
2008-09-13 00:04:42 ----A---- C:\Windows\system32\avgrsstx.dll
2008-09-13 00:03:39 ----D---- C:\Program Files\AVG
2008-09-13 00:03:38 ----D---- C:\ProgramData\avg8
2008-09-12 08:42:18 ----D---- C:\ProgramData\mxylwdqj
2008-09-12 08:42:17 ----D---- C:\ProgramData\ShAdm
2008-09-09 20:27:49 ----A---- C:\Windows\system32\Apphlpdm.dll
2008-09-09 20:27:47 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2008-09-09 16:46:48 ----A---- C:\Windows\system32\wmpeffects.dll
2008-09-09 16:46:44 ----A---- C:\Windows\system32\emdmgmt.dll
2008-09-09 16:46:42 ----A---- C:\Windows\system32\dataclen.dll
2008-09-09 16:46:42 ----A---- C:\Windows\system32\cdd.dll
2008-09-09 16:15:28 ----D---- C:\Users\Amber\AppData\Roaming\MySpace
2008-09-09 16:15:03 ----D---- C:\Program Files\MySpace
2008-09-07 10:04:31 ----D---- C:\Program Files\Project64 1.6
2008-08-28 19:10:36 ----A---- C:\Windows\system32\wups2.dll
2008-08-28 19:10:36 ----A---- C:\Windows\system32\wucltux.dll
2008-08-28 19:10:36 ----A---- C:\Windows\system32\wuaueng.dll
2008-08-28 19:10:36 ----A---- C:\Windows\system32\wuauclt.exe
2008-08-28 19:10:09 ----A---- C:\Windows\system32\wups.dll
2008-08-28 19:10:09 ----A---- C:\Windows\system32\wudriver.dll
2008-08-28 19:10:09 ----A---- C:\Windows\system32\wuapi.dll
2008-08-28 19:09:51 ----A---- C:\Windows\system32\wuwebv.dll
2008-08-28 19:09:46 ----A---- C:\Windows\system32\wuapp.exe
2008-08-26 14:57:17 ----D---- C:\Users\Amber\AppData\Roaming\acccore
2008-08-26 14:01:16 ----D---- C:\ProgramData\Viewpoint
2008-08-26 14:01:12 ----D---- C:\Program Files\Viewpoint
2008-08-26 14:01:08 ----D---- C:\ProgramData\acccore
2008-08-26 14:00:37 ----D---- C:\ProgramData\AOL OCP
2008-08-26 14:00:37 ----D---- C:\ProgramData\AOL
2008-08-26 14:00:08 ----D---- C:\Program Files\Common Files\AOL
2008-08-26 13:59:49 ----D---- C:\Program Files\AIM6
2008-08-22 03:01:32 ----A---- C:\Windows\system32\msshooks.dll
2008-08-22 03:01:30 ----A---- C:\Windows\system32\msscb.dll
2008-08-22 03:01:22 ----A---- C:\Windows\system32\mssitlb.dll
2008-08-22 03:01:21 ----A---- C:\Windows\system32\SearchFilterHost.exe
2008-08-22 03:01:21 ----A---- C:\Windows\system32\propdefs.dll
2008-08-22 03:01:21 ----A---- C:\Windows\system32\msstrc.dll
2008-08-22 03:01:21 ----A---- C:\Windows\system32\mssprxy.dll
2008-08-22 03:01:21 ----A---- C:\Windows\system32\msshsq.dll
2008-08-22 03:01:20 ----A---- C:\Windows\system32\propsys.dll
2008-08-22 03:01:19 ----A---- C:\Windows\system32\thawbrkr.dll
2008-08-22 03:01:19 ----A---- C:\Windows\system32\srchadmin.dll
2008-08-22 03:01:19 ----A---- C:\Windows\system32\korwbrkr.dll
2008-08-22 03:01:17 ----A---- C:\Windows\system32\wsepno.dll
2008-08-22 03:01:17 ----A---- C:\Windows\system32\rtffilt.dll
2008-08-22 03:01:15 ----A---- C:\Windows\system32\offfilt.dll
2008-08-22 03:01:15 ----A---- C:\Windows\system32\mimefilt.dll
2008-08-22 03:01:14 ----A---- C:\Windows\system32\xmlfilter.dll
2008-08-22 03:01:14 ----A---- C:\Windows\system32\nlhtml.dll
2008-08-22 03:01:10 ----A---- C:\Windows\system32\msscntrs.dll
2008-08-22 03:01:09 ----A---- C:\Windows\system32\chtbrkr.dll
2008-08-22 03:01:09 ----A---- C:\Windows\system32\chsbrkr.dll
2008-08-22 03:01:08 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2008-08-22 03:01:08 ----A---- C:\Windows\system32\SearchIndexer.exe
2008-08-22 03:01:07 ----A---- C:\Windows\system32\tquery.dll
2008-08-22 03:01:07 ----A---- C:\Windows\system32\mssvp.dll
2008-08-22 03:01:07 ----A---- C:\Windows\system32\mssrch.dll
2008-08-22 03:01:07 ----A---- C:\Windows\system32\mssphtb.dll
2008-08-22 03:01:07 ----A---- C:\Windows\system32\mssph.dll
2008-08-14 03:04:42 ----A---- C:\Windows\system32\tzres.dll
2008-08-13 14:58:16 ----A---- C:\Windows\system32\mshtml.dll
2008-08-13 14:58:10 ----A---- C:\Windows\system32\ieframe.dll
2008-08-13 14:58:09 ----A---- C:\Windows\system32\wininet.dll
2008-08-13 14:58:09 ----A---- C:\Windows\system32\urlmon.dll
2008-08-13 14:58:08 ----A---- C:\Windows\system32\mstime.dll
2008-08-13 14:58:06 ----A---- C:\Windows\system32\jsproxy.dll
2008-08-13 14:00:24 ----A---- C:\Windows\system32\IPSECSVC.DLL
2008-08-13 13:57:38 ----A---- C:\Windows\system32\es.dll
2008-08-13 13:53:53 ----A---- C:\Windows\system32\inetcomm.dll
2008-07-25 11:43:20 ----A---- C:\Windows\PaltalkScene Uninstall Log.txt
2008-07-25 02:00:50 ----D---- C:\Users\Amber\AppData\Roaming\WinRAR
2008-07-11 14:38:59 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2008-07-11 14:38:53 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2008-07-11 14:38:28 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2008-07-09 05:19:09 ----A---- C:\Windows\system32\shell32.dll
2008-07-09 03:59:57 ----A---- C:\Windows\system32\rpcrt4.dll
2008-07-09 03:59:56 ----A---- C:\Windows\system32\ntkrnlpa.exe
2008-07-09 03:59:55 ----A---- C:\Windows\system32\pacerprf.dll
2008-07-09 03:59:55 ----A---- C:\Windows\system32\ntoskrnl.exe
2008-07-09 03:49:34 ----A---- C:\Windows\system32\vbscript.dll
2008-07-09 03:49:33 ----A---- C:\Windows\system32\wshext.dll
2008-07-09 03:49:33 ----A---- C:\Windows\system32\wscript.exe
2008-07-09 03:49:33 ----A---- C:\Windows\system32\scrrun.dll
2008-07-09 03:49:33 ----A---- C:\Windows\system32\scrobj.dll
2008-07-09 03:49:33 ----A---- C:\Windows\system32\jscript.dll
2008-07-09 03:49:33 ----A---- C:\Windows\system32\cscript.exe
2008-07-08 00:38:10 ----AD---- C:\ProgramData\TEMP
2008-07-02 13:58:11 ----A---- C:\Windows\system32\DVDRProX.dll
2008-07-02 13:58:07 ----D---- C:\Program Files\Fujifilm e-Systems
2008-07-02 13:58:06 ----D---- C:\Users\Amber\AppData\Roaming\InstallShield Installation Information
2008-07-02 13:53:35 ----D---- C:\Users\Amber\AppData\Roaming\Digital Album Organizer
2008-07-02 13:51:42 ----D---- C:\Temp
2008-06-27 10:04:21 ----SHD---- C:\Users\Amber\AppData\Roaming\.#
2008-06-27 10:03:58 ----D---- C:\Users\Amber\AppData\Roaming\CyberLink
2008-06-26 01:29:04 ----D---- C:\Windows\Minidump
2008-06-24 20:00:31 ----D---- C:\Users\Amber\AppData\Roaming\Paltalk
2008-06-24 20:00:22 ----D---- C:\Windows\PaltalkScene
2008-06-24 20:00:22 ----D---- C:\Program Files\Paltalk Messenger
2008-06-24 20:00:01 ----A---- C:\Windows\PaltalkScene Setup Log.txt
2008-06-24 10:14:34 ----A---- C:\Windows\system32\CmdLineExt.dll
2008-06-23 22:13:14 ----D---- C:\Program Files\EA GAMES
2008-06-23 22:13:12 ----RA---- C:\Windows\system32\vp6vfw.dll
2008-06-23 17:36:49 ----D---- C:\Users\Amber\AppData\Roaming\Yahoo!
2008-06-22 23:59:42 ----D---- C:\Program Files\PokerStars
2008-06-22 23:45:06 ----D---- C:\Users\Amber\AppData\Roaming\LimeWire
2008-06-22 23:44:35 ----A---- C:\Windows\system32\javaws.exe
2008-06-22 23:44:35 ----A---- C:\Windows\system32\javaw.exe
2008-06-22 23:44:34 ----A---- C:\Windows\system32\java.exe
2008-06-22 23:42:09 ----D---- C:\Program Files\Java
2008-06-22 23:40:15 ----D---- C:\Program Files\Common Files\Java
2008-06-22 23:36:41 ----D---- C:\Program Files\MSXML 4.0
2008-06-22 23:32:38 ----D---- C:\Program Files\MSN Messenger
2008-06-22 23:27:30 ----A---- C:\Windows\system32\gameux.dll
2008-06-22 23:25:36 ----A---- C:\Windows\system32\quartz.dll
2008-06-22 23:25:28 ----D---- C:\Program Files\LimeWire
2008-06-22 23:25:28 ----A---- C:\Windows\system32\kd1394.dll
2008-06-22 23:25:26 ----A---- C:\Windows\system32\winload.exe
2008-06-22 23:25:26 ----A---- C:\Windows\system32\ci.dll
2008-06-22 23:25:25 ----A---- C:\Windows\system32\winresume.exe
2008-06-22 23:25:12 ----A---- C:\Windows\system32\srcore.dll
2008-06-22 23:25:11 ----A---- C:\Windows\system32\srclient.dll
2008-06-22 23:25:11 ----A---- C:\Windows\system32\setbcdlocale.dll
2008-06-22 23:25:11 ----A---- C:\Windows\system32\rstrui.exe
2008-06-22 23:25:10 ----A---- C:\Windows\system32\srdelayed.exe
2008-06-22 23:25:08 ----A---- C:\Windows\system32\kbd106n.dll
2008-06-22 23:24:26 ----A---- C:\Windows\system32\gdi32.dll
2008-06-22 23:17:04 ----D---- C:\Users\Amber\AppData\Roaming\Mozilla
2008-06-22 23:16:34 ----D---- C:\Program Files\Mozilla Firefox
2008-06-22 23:12:05 ----D---- C:\Users\Amber\AppData\Roaming\Adobe
2008-06-22 22:01:49 ----D---- C:\Users\Amber\AppData\Roaming\Leadertech
2008-06-22 22:01:47 ----D---- C:\Users\Amber\AppData\Roaming\Acer
2008-06-22 22:00:45 ----D---- C:\Users\Amber\AppData\Roaming\Identities
2008-06-22 21:59:46 ----D---- C:\Users\Amber\AppData\Roaming\Macromedia
2008-06-22 21:59:37 ----SD---- C:\Users\Amber\AppData\Roaming\Microsoft
2008-06-22 21:59:37 ----D---- C:\Users\Amber\AppData\Roaming\Acer GameZone Console
List of drivers
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\Windows\System32\Drivers\avgldx86.sys [2008-09-13 97928]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\Windows\System32\Drivers\avgmfx86.sys [2008-09-13 26824]
R1 DritekPortIO;Dritek General Port I/O; \??\C:\PROGRA~1\LAUNCH~1\DPortIO.sys [2006-11-02 20112]
R2 int15;int15; \??\C:\Acer\Empowering Technology\eRecovery\int15.sys [2007-07-03 15392]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 PSDNServ;PSDNServ; C:\Windows\system32\DRIVERS\PSDNServ.sys [2008-01-03 16432]
R2 psdvdisk;PSDVdisk; C:\Windows\system32\DRIVERS\PSDVdisk.sys [2008-01-03 59952]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-01-30 8704]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2007-03-09 1163616]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2008-05-07 767488]
R3 AvgWfpX;AVG Free8 Firewall Driver x86; C:\Windows\System32\Drivers\avgwfpx.sys [2008-09-13 69128]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2007-07-22 180736]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-20 14208]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-02 21264]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-04-18 2354176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-03-11 2077080]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2008-09-10 38528]
R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2008-03-21 6144]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-08-13 1749376]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-09-06 192816]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-20 11264]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-20 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-04-26 984064]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-20 200704]
S3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-04-26 208384]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-20 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-20 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-20 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-20 6016]
S3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-04-26 660480]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-20 83328]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-20 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-20 386616]
List of services
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2006-10-04 9216]
R2 ALaunchService;ALaunch Service; C:\Acer\ALaunch\ALaunchSvc.exe [2007-09-19 51200]
R2 avg8emc;AVG Free8 E-mail Scanner; C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-09-13 875288]
R2 avg8wd;AVG Free8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-09-13 231704]
R2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe [2008-01-25 254059]
R2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe [2008-01-25 114793]
R2 CyberLink Media Library Service;CyberLink Media Library Service; C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe [2008-01-25 1076832]
R2 eDataSecurity Service;eDataSecurity Service; C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [2008-03-05 497712]
R2 eLockService;eLock Service; C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe [2007-10-01 24576]
R2 eNet Service;eNet Service; C:\Acer\Empowering Technology\eNet\eNet Service.exe [2007-12-20 131072]
R2 eRecoveryService;eRecovery Service; C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [2007-09-10 57344]
R2 eSettingsService;eSettings Service; C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe [2007-12-19 24576]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-01-17 61440]
R2 MobilityService;MobilityService; C:\Acer\Mobility Center\MobilityService.exe [2007-11-27 110592]
R2 Viewpoint Manager Service;Viewpoint Manager Service; C:\Program Files\Viewpoint\Common\ViewpointService.exe [2007-01-04 24652]
R2 WMIService;ePower Service; C:\Acer\Empowering Technology\ePower\ePowerSvc.exe [2007-09-20 167936]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-01-30 386560]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 usnjsvc;Messenger Sharing Folders USN Journal Reader service; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]
-----------------EOF-----------------