Heir,
It's already much easier to get to this site and keyboard is normal again!
Here are the logs you asked for:
VirSCAN.org Scanned Report :
Scanned time : 2008/11/19 13:37:01 (CST)
Scanner results: All Scanners reported not find malware!
File Name : GnuHashes.ini
File Size : 8260 byte
File Type : ASCII text, with very long lines, with CRLF line terminators
MD5 : c7de768c03a3fff261fa61314756ee7a
SHA1 : ef4c67bf931a4a21cbd62945b096ca5b5d9153ac
Online report :
http://virscan.org/report/5ead2eb46ec7728e...fc8c81e151.html
Scanner Engine Ver Sig Ver Sig Date Time Scan result
a-squared 4.0.0.26 20081119050113 2008-11-19 2.97 -
AhnLab V3 2008.11.20.00 2008.11.20 2008-11-20 1.04 -
AntiVir 7.9.0.34 7.1.0.110 2008-11-19 1.55 -
Antiy 2.0.18 20081119.1710974 2008-11-19 0.12 -
Arcavir 1.0.5 200811161554 2008-11-16 1.20 -
Authentium 5.1.1 200811191624 2008-11-19 1.07 -
AVAST! 3.0.1 081119-0 2008-11-19 0.00 -
AVG 7.5.52.442 270.9.7/1799 2008-11-19 1.73 -
BitDefender 7.81008.2223359 7.21951 2008-11-20 2.03 -
CA (VET) 9.0.0.143 31.6.6217 2008-11-19 5.37 -
ClamAV 0.94.1 8650 2008-11-19 0.00 -
Comodo 2.11 2.0.0.711 2008-11-19 0.79 -
CP Secure 1.1.0.715 2008.11.19 2008-11-19 6.39 -
Dr.Web 4.44.0.9170 2008.11.19 2008-11-19 3.54 -
ewido 4.0.0.2 2008.11.19 2008-11-19 3.16 -
F-Prot 4.4.4.56 20081119 2008-11-19 1.04 -
F-Secure 5.51.6100 2008.11.19.11 2008-11-19 3.73 -
Fortinet 2.81-3.117 9.720 2008-11-19 0.16 -
GData 19.1583/19.114 20081119 2008-11-19 2.88 -
ViRobot 20081119 2008.11.19 2008-11-19 0.41 -
Ikarus T3.1.01.45 2008.11.19.71881 2008-11-19 3.51 -
JiangMin 11.0.706 2008.11.19 2008-11-19 1.34 -
Kaspersky 5.5.10 2008.11.19 2008-11-19 0.02 -
KingSoft 2008.9.8.18 2008.11.13.23 2008-11-13 0.68 -
McAfee 5.3.00 5438 2008-11-18 2.49 -
Microsoft 1.4104 2008.11.19 2008-11-19 3.91 -
mks_vir 2.01 2008.11.17 2008-11-17 2.59 -
Norman 5.93.01 5.93.00 2008-11-18 5.12 -
Panda 9.05.01 2008.11.19 2008-11-19 2.24 -
Trend Micro 8.700-1004 5.662.08 2008-11-19 0.02 -
Quick Heal 10.00 2008.11.19 2008-11-19 0.84 -
Rising 20.0 21.04.22.00 2008-11-19 0.24 -
Sophos 2.80.0 4.35 2008-11-20 1.96 -
Sunbelt 4474 4474 2008-11-04 0.50 -
Symantec 1.3.0.24 20081118.002 2008-11-18 0.17 -
nProtect 2008-11-19.01 2622489 2008-11-19 3.16 -
The Hacker 6.3.1.1 v00158 2008-11-18 0.42 -
VBA32 3.12.8.9 20081119.0840 2008-11-19 1.33 -
VirusBuster 4.5.11.10 10.93.8/672009 2008-11-19 0.87 -
Logfile of random's system information tool 1.04 (written by random/random)
Run by Dana at 2008-11-19 14:19:55
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 130 GB (85%) free of 153 GB
Total RAM: 1982 MB (71% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:19:57 PM, on 11/19/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Trend Micro\BM\TMBMSRV.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe
C:\Program Files\Trend Micro\Internet Security\TmPfw.exe
C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe
C:\PROGRA~1\COMMON~1\AOL\120870~1\EE\AOLHOS~1.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\COMMON~1\AOL\120870~1\EE\AOLServiceHost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Dana\Desktop\RSIT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Trend Micro\HijackThis\Dana.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=4080420
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=4080420
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1208701829\EE\AOLHostManager.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe
O4 - HKUS\S-1-5-19\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'Default user')
O4 - Startup: PowerReg Scheduler V3.exe
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) -
http://acs.pandasoft...s/as2stubie.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) -
https://h20436.www2....re/HPDEXAXO.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) -
http://cdn2.zone.msn.com/binFramework/v10/...ro.cab56649.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL,C:\WINDOWS\System32\dbnmpntw32.dll
O20 - Winlogon Notify: 9463dd5f502 - C:\WINDOWS\System32\dbnmpntw32.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Desktop Manager 5.7.801.7324 (GoogleDesktopManager-010708-104812) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (TmProxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
--
End of file - 10143 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\EasyShare Registration Task.job
C:\WINDOWS\tasks\MP Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2008-04-30 1372160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar2.dll [2008-05-23 2549368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll [2008-09-28 737776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll []
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar2.dll [2008-05-23 2549368]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-04-06 8466432]
"nwiz"=nwiz.exe /install []
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-04-06 16859648]
"PDVDDXSrv"=C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe [2007-09-17 124200]
"Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-04-20 29744]
"ECenter"=C:\Dell\E-Center\EULALauncher.exe [2008-02-28 17920]
"dscactivate"=C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe [2008-03-11 16384]
"HostManager"=C:\Program Files\Common Files\AOL\1208701829\EE\AOLHostManager.exe [2004-11-03 125528]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]
"DellSupportCenter"=C:\Program Files\Dell Support Center\bin\sprtcmd.exe [2008-03-11 202544]
"HPDJ Taskbar Utility"=C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe [2005-07-22 188416]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2008-05-27 413696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2008-06-02 267048]
"UfSeAgnt.exe"=C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe [2008-11-15 970808]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2006-11-03 866584]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2008-04-30 22058792]
"DellSupportCenter"=C:\Program Files\Dell Support Center\bin\sprtcmd.exe [2008-03-11 202544]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-13 1695232]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"Messenger (Yahoo!)"=C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [2008-09-19 4347120]
"OE"=C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe [2008-11-15 497008]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Kodak EasyShare software.lnk - C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Documents and Settings\Dana\Start Menu\Programs\Startup
PowerReg Scheduler V3.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL,C:\WINDOWS\System32\dbnmpntw32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\9463dd5f502]
C:\WINDOWS\System32\dbnmpntw32.dll [2008-11-19 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"=C:\PROGRA~1\WINDOW~4\MpShHook.dll [2006-11-03 83224]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\CyberLink\PowerDVD DX\PowerDVD.exe"="C:\Program Files\CyberLink\PowerDVD DX\PowerDVD.exe:*:Enabled:CyberLink PowerDVD DX"
"C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"="C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe:*:Enabled:CyberLink PowerDVD DX Resident Program"
"C:\Program Files\Common Files\AOL\Loader\aolload.exe"="C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Application Loader"
"C:\Program Files\Common Files\AOL\ACS\AOLDial.exe"="C:\Program Files\Common Files\AOL\ACS\AOLDial.exe:*:Enabled:AOL"
"C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe"="C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe:*:Enabled:AOL"
"C:\Program Files\America Online 9.0\waol.exe"="C:\Program Files\America Online 9.0\waol.exe:*:Enabled:AOL"
"C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe"="C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe:*:Enabled:AOLTsMon"
"C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe"="C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe:*:Enabled:AOLTopSpeed"
"C:\Program Files\Common Files\AOL\1208701829\EE\AOLServiceHost.exe"="C:\Program Files\Common Files\AOL\1208701829\EE\AOLServiceHost.exe:*:Enabled:AOL"
"C:\Program Files\Common Files\AOL\System Information\sinf.exe"="C:\Program Files\Common Files\AOL\System Information\sinf.exe:*:Enabled:AOL"
"C:\Program Files\Common Files\AOL\AOL Spyware Protection\AOLSP Scheduler.exe"="C:\Program Files\Common Files\AOL\AOL Spyware Protection\AOLSP Scheduler.exe:*:Enabled:AOL"
"C:\Program Files\Common Files\AOL\AOL Spyware Protection\asp.exe"="C:\Program Files\Common Files\AOL\AOL Spyware Protection\asp.exe:*:Enabled:AOL"
"C:\Program Files\Common Files\AolCoach\en_en\player\AOLNySEV.exe"="C:\Program Files\Common Files\AolCoach\en_en\player\AOLNySEV.exe:*:Enabled:AOL"
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"C:\Program Files\Yahoo!\Messenger\YServer.exe"="C:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe"="C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe:*:Enabled:EasyShare"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\MySpace\IM\MySpaceIM.exe"="C:\Program Files\MySpace\IM\MySpaceIM.exe:*:Enabled:MySpaceIM"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\CyberLink\PowerDVD DX\PowerDVD.exe"="C:\Program Files\CyberLink\PowerDVD DX\PowerDVD.exe:*:Enabled:CyberLink PowerDVD DX"
"C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"="C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe:*:Enabled:CyberLink PowerDVD DX Resident Program"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2008-11-19 14:08:32 ----A---- C:\lopR.txt
2008-11-19 14:07:47 ----D---- C:\Lop SD
2008-11-19 13:55:57 ----D---- C:\_OTMoveIt
2008-11-19 03:01:34 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2008-11-19 03:01:10 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2008-11-18 13:15:19 ----D---- C:\rsit
2008-11-17 18:47:08 ----D---- C:\Program Files\Windows Defender
2008-11-17 17:45:54 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2008-11-17 12:42:31 ----A---- C:\WINDOWS\ntbtlog.txt
2008-11-17 10:55:06 ----D---- C:\WINDOWS\Prefetch
2008-11-17 10:51:25 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2008-11-17 10:51:05 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2008-11-17 10:50:41 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2008-11-17 10:50:17 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2008-11-17 10:49:55 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2008-11-17 10:49:25 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2008-11-17 10:48:57 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2008-11-17 10:48:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-11-17 10:47:59 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-11-17 10:47:34 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-11-17 10:46:41 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-11-17 10:45:42 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-11-17 10:45:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951376$
2008-11-17 10:44:28 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-11-17 10:43:50 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-11-17 10:43:34 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-11-17 10:42:59 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-11-17 10:42:38 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-11-17 10:34:23 ----D---- C:\WINDOWS\system32\scripting
2008-11-17 10:34:21 ----D---- C:\WINDOWS\l2schemas
2008-11-17 10:34:20 ----D---- C:\WINDOWS\system32\en
2008-11-17 10:34:20 ----D---- C:\WINDOWS\system32\bits
2008-11-17 10:29:36 ----D---- C:\WINDOWS\ServicePackFiles
2008-11-17 10:24:29 ----D---- C:\WINDOWS\system32\ReinstallBackups
2008-11-17 10:21:20 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2008-11-17 10:19:32 ----D---- C:\WINDOWS\EHome
2008-11-16 08:00:22 ----D---- C:\Documents and Settings\Dana\Application Data\Malwarebytes
2008-11-16 08:00:13 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2008-11-16 08:00:13 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-11-15 17:09:34 ----D---- C:\Documents and Settings\All Users\Application Data\Trend Micro
2008-11-15 17:08:21 ----D---- C:\Program Files\Trend Micro
2008-11-15 09:27:51 ----A---- C:\WINDOWS\GnuHashes.ini
2008-11-15 09:20:24 ----SHD---- C:\WINDOWS\system32\GroupPolicyManifest
2008-11-15 09:20:12 ----A---- C:\WINDOWS\system32\dbnmpntw32.dll
2008-11-12 16:42:25 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$
2008-11-12 16:42:12 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2008-10-24 02:00:44 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2008-10-22 16:14:58 ----D---- C:\Program Files\New Tier
======List of files/folders modified in the last 1 months======
2008-11-19 14:19:50 ----D---- C:\WINDOWS\Temp
2008-11-19 14:02:46 ----SD---- C:\WINDOWS\Tasks
2008-11-19 14:01:52 ----D---- C:\Documents and Settings\Dana\Application Data\Skype
2008-11-19 14:00:56 ----D---- C:\WINDOWS
2008-11-19 14:00:00 ----D---- C:\WINDOWS\system32\CatRoot2
2008-11-19 13:59:59 ----A---- C:\WINDOWS\ModemLog_Conexant D850 56K V.9x DFVc Modem.txt
2008-11-19 13:58:42 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-11-19 13:55:58 ----RD---- C:\Program Files
2008-11-19 13:55:57 ----D---- C:\WINDOWS\system32
2008-11-19 13:45:56 ----D---- C:\Program Files\LimeWire
2008-11-19 06:12:08 ----D---- C:\Documents and Settings\Dana\Application Data\skypePM
2008-11-19 03:01:43 ----HD---- C:\WINDOWS\inf
2008-11-19 03:01:39 ----RSHD---- C:\WINDOWS\system32\dllcache
2008-11-19 03:01:24 ----A---- C:\WINDOWS\imsins.BAK
2008-11-18 13:20:36 ----HD---- C:\WINDOWS\$hf_mig$
2008-11-17 20:31:33 ----D---- C:\Documents and Settings
2008-11-17 18:47:17 ----SHD---- C:\WINDOWS\Installer
2008-11-17 18:47:09 ----D---- C:\Program Files\Common Files\Microsoft Shared
2008-11-17 18:47:08 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2008-11-17 18:47:08 ----D---- C:\WINDOWS\pchealth
2008-11-17 10:57:31 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-11-17 10:56:24 ----A---- C:\WINDOWS\OEWABLog.txt
2008-11-17 10:55:10 ----A---- C:\WINDOWS\setuplog.txt
2008-11-17 10:54:42 ----D---- C:\WINDOWS\system32\wbem
2008-11-17 10:54:42 ----D---- C:\WINDOWS\system32\Setup
2008-11-17 10:54:42 ----D---- C:\WINDOWS\AppPatch
2008-11-17 10:54:41 ----RSD---- C:\WINDOWS\Fonts
2008-11-17 10:54:36 ----D---- C:\WINDOWS\system32\drivers
2008-11-17 10:51:27 ----D---- C:\WINDOWS\system32\CatRoot
2008-11-17 10:48:11 ----D---- C:\WINDOWS\security
2008-11-17 10:43:12 ----D---- C:\Program Files\Messenger
2008-11-17 10:35:46 ----D---- C:\WINDOWS\WinSxS
2008-11-17 10:35:25 ----D---- C:\Program Files\Windows Media Player
2008-11-17 10:35:23 ----D---- C:\WINDOWS\Help
2008-11-17 10:34:51 ----D---- C:\WINDOWS\network diagnostic
2008-11-17 10:34:51 ----D---- C:\WINDOWS\ime
2008-11-17 10:34:25 ----D---- C:\WINDOWS\system32\usmt
2008-11-17 10:34:25 ----D---- C:\WINDOWS\system32\en-US
2008-11-17 10:34:20 ----D---- C:\WINDOWS\PeerNet
2008-11-17 10:34:19 ----D---- C:\Program Files\Movie Maker
2008-11-17 10:29:27 ----D---- C:\WINDOWS\system32\Restore
2008-11-17 10:29:26 ----D---- C:\WINDOWS\system32\npp
2008-11-17 10:29:23 ----D---- C:\WINDOWS\msagent
2008-11-17 10:29:19 ----D---- C:\WINDOWS\srchasst
2008-11-17 10:29:14 ----D---- C:\Program Files\NetMeeting
2008-11-17 10:29:08 ----D---- C:\WINDOWS\system32\Com
2008-11-17 10:29:00 ----D---- C:\Program Files\Windows NT
2008-11-17 10:29:00 ----D---- C:\Program Files\Outlook Express
2008-11-17 10:28:55 ----D---- C:\Program Files\Common Files\System
2008-11-17 10:28:25 ----D---- C:\WINDOWS\system32\oobe
2008-11-17 10:28:22 ----D---- C:\WINDOWS\system
2008-11-16 06:51:23 ----D---- C:\Program Files\Mozilla Firefox
2008-11-15 17:04:17 ----D---- C:\Program Files\Spybot - Search & Destroy
2008-11-15 17:04:16 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-11-15 16:59:38 ----D---- C:\Program Files\Common Files\Symantec Shared
2008-11-15 16:57:03 ----D---- C:\Documents and Settings\All Users\Application Data\Symantec
2008-11-15 16:55:08 ----D---- C:\Program Files\Common Files
2008-11-15 14:31:27 ----D---- C:\Program Files\Internet Explorer
2008-11-15 09:14:47 ----D---- C:\Documents and Settings\Dana\Application Data\LimeWire
2008-11-06 17:01:40 ----D---- C:\WINDOWS\system32\FxsTmp
2008-11-03 19:26:37 ----D---- C:\Program Files\Roxio
2008-11-03 16:10:26 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
R1 tmtdi;Trend Micro TDI Driver; C:\WINDOWS\system32\DRIVERS\tmtdi.sys [2008-11-15 80400]
R2 ASCTRM;ASCTRM; C:\WINDOWS\system32\drivers\ASCTRM.sys [2008-04-20 8552]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2003-04-09 11043]
R2 tmactmon;tmactmon; \??\C:\WINDOWS\system32\drivers\tmactmon.sys []
R2 tmcomm;tmcomm; \??\C:\WINDOWS\system32\drivers\tmcomm.sys []
R2 tmevtmgr;tmevtmgr; \??\C:\WINDOWS\system32\drivers\tmevtmgr.sys []
R2 tmpreflt;tmpreflt; C:\WINDOWS\system32\DRIVERS\tmpreflt.sys [2008-11-15 36368]
R2 tmxpflt;tmxpflt; C:\WINDOWS\system32\DRIVERS\tmxpflt.sys [2008-11-15 205328]
R2 vsapint;vsapint; C:\WINDOWS\system32\DRIVERS\vsapint.sys [2008-11-15 1195448]
R3 GEARAspiWDM;GEARAspiWDM; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2008-01-29 16168]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2003-11-17 1042432]
R3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys [2003-11-17 212224]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-04-06 4652544]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-06 6811904]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\drivers\NVENETFD.sys [2008-04-06 54400]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\drivers\nvnetbus.sys [2008-04-06 22016]
R3 tmcfw;Trend Micro Common Firewall Service; C:\WINDOWS\system32\DRIVERS\TM_CFW.sys [2008-11-15 334352]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2003-11-17 680704]
S3 E100B;Intel® PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2001-08-17 117760]
S3 SymIM;Symantec Network Security Intermediate Filter Service; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 SymIMMP;SymIMMP; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 usbscan;Usbscan; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;USB Serial emulation modem driver; C:\WINDOWS\system32\DRIVERS\usbser.sys [2008-04-13 26112]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\DRIVERS\wanatw4.sys [2003-01-10 33588]
S4 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
S4 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
S4 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
S4 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\DRIVERS\intelide.sys [2008-04-13 5504]
S4 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
S4 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
S4 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-02-18 110592]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2007-07-24 229376]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-04-06 155716]
R2 SfCtlCom;Trend Micro Central Control Component; C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe [2008-11-15 707128]
R2 sprtsvc_dellsupportcenter;SupportSoft Sprocket Service (dellsupportcenter); C:\Program Files\Dell Support Center\bin\sprtsvc.exe [2008-03-11 202544]
R2 TMBMServer;Trend Micro Unauthorized Change Prevention Service; C:\Program Files\Trend Micro\BM\TMBMSRV.exe [2008-09-18 337160]
R2 TmPfw;Trend Micro Personal Firewall; C:\Program Files\Trend Micro\Internet Security\TmPfw.exe [2008-11-15 492888]
R2 TmProxy;Trend Micro Proxy Service; C:\Program Files\Trend Micro\Internet Security\TmProxy.exe [2008-11-15 677128]
R2 WinDefend;Windows Defender; C:\Program Files\Windows Defender\MsMpEng.exe [2006-11-03 13592]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-06-02 504104]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-13 267776]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 GoogleDesktopManager-010708-104812;Google Desktop Manager 5.7.801.7324; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-04-20 29744]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-04-20 138168]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-12-02 74384]
-----------------EOF-----------------
--------------------\\ Lop S&D 4.2.4-9c XP/Vista
Microsoft Windows XP Home Edition ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron Processor LE-1300 )
BIOS : oC)Phoenix - AwardBIOSTeDell System v6.00PG
USER : Dana ( Administrator )
BOOT : Normal boot
Antivirus : Trend Micro Internet Security 17.0.1224 (Not Activated)
Firewall : Trend Micro Personal Firewall 5.5 (Activated)
C:\ (Local Disk) - NTFS - Total:148 Go (Free:127 Go)
D:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 01-11-2008|16:30 )
Option : [1] ( Wed 11/19/2008|14:08 )
--------------------\\ Listing folders in APPLIC~1
[11/17/2008|08:32] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> Adobe
[05/03/2008|09:27] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> AOL
[09/08/2008|07:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> Apple Computer
[04/20/2008|08:27] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> CyberLink
[08/10/2004|12:08] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> Identities
[11/17/2008|08:33] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> Macromedia
[04/20/2008|08:22] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> Microsoft
[04/20/2008|08:30] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> Symantec
[04/20/2008|08:31] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> You've Got Pictures Screensaver
[05/04/2008|06:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Adobe
[05/03/2008|09:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> AOL
[06/13/2008|11:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Apple
[06/13/2008|11:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Apple Computer
[05/03/2008|08:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Dell
[04/20/2008|08:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Google
[04/20/2008|08:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> InstallShield
[05/28/2008|06:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Kodak
[11/16/2008|08:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Malwarebytes
[11/17/2008|06:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Microsoft
[05/04/2008|09:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> PopCap
[04/20/2008|08:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> QuickTime
[08/10/2004|12:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> SBSI
[05/02/2008|12:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Skype
[04/20/2008|08:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Sonic
[11/15/2008|05:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Spybot - Search & Destroy
[04/20/2008|08:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> SupportSoft
[11/15/2008|04:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Symantec
[08/20/2008|07:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> TEMP
[11/15/2008|06:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Trend Micro
[04/20/2008|08:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Uninstall
[04/20/2008|08:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Viewpoint
[11/17/2008|05:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Windows Genuine Advantage
[10/07/2008|03:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Yahoo!
[10/10/2008|05:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Yahoo! Companion
[05/02/2008|04:08] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Adobe
[05/03/2008|09:27] C:\DOCUME~1\Dana\APPLIC~1\<DIR> AOL
[07/08/2008|09:07] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Apple Computer
[04/20/2008|08:27] C:\DOCUME~1\Dana\APPLIC~1\<DIR> CyberLink
[05/02/2008|10:10] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Google
[08/10/2004|12:08] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Identities
[11/15/2008|09:14] C:\DOCUME~1\Dana\APPLIC~1\<DIR> LimeWire
[05/02/2008|10:13] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Macromedia
[11/16/2008|08:00] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Malwarebytes
[08/14/2008|05:31] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Microsoft
[05/29/2008|01:47] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Mozilla
[05/15/2008|04:53] C:\DOCUME~1\Dana\APPLIC~1\<DIR> MySpace
[05/06/2008|04:01] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Roxio
[07/03/2008|03:25] C:\DOCUME~1\Dana\APPLIC~1\<DIR> SecondLife
[11/19/2008|02:01] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Skype
[11/19/2008|06:12] C:\DOCUME~1\Dana\APPLIC~1\<DIR> skypePM
[05/03/2008|05:44] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Sun
[04/20/2008|08:30] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Symantec
[08/04/2008|03:51] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Template
[10/17/2008|11:06] C:\DOCUME~1\Dana\APPLIC~1\<DIR> Yahoo!
[04/20/2008|08:31] C:\DOCUME~1\Dana\APPLIC~1\<DIR> You've Got Pictures Screensaver
[05/03/2008|09:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> AOL
[09/08/2008|07:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> Apple Computer
[04/20/2008|08:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> CyberLink
[08/10/2004|12:08] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> Identities
[04/20/2008|08:22] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> Microsoft
[04/20/2008|08:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> Symantec
[04/20/2008|08:31] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> You've Got Pictures Screensaver
[05/02/2008|06:52] C:\DOCUME~1\Halla\APPLIC~1\<DIR> Adobe
[05/03/2008|09:27] C:\DOCUME~1\Halla\APPLIC~1\<DIR> AOL
[09/15/2008|02:55] C:\DOCUME~1\Halla\APPLIC~1\<DIR> Apple Computer
[04/20/2008|08:27] C:\DOCUME~1\Halla\APPLIC~1\<DIR> CyberLink
[05/02/2008|02:15] C:\DOCUME~1\Halla\APPLIC~1\<DIR> Google
[08/10/2004|12:08] C:\DOCUME~1\Halla\APPLIC~1\<DIR> Identities
[05/02/2008|06:50] C:\DOCUME~1\Halla\APPLIC~1\<DIR> InstallShield
[11/14/2008|04:23] C:\DOCUME~1\Halla\APPLIC~1\<DIR> LimeWire
[05/02/2008|02:16] C:\DOCUME~1\Halla\APPLIC~1\<DIR> Macromedia
[05/21/2008|08:23] C:\DOCUME~1\Halla\APPLIC~1\<DIR> Microsoft
[05/11/2008|12:15] C:\DOCUME~1\Halla\APPLIC~1\<DIR> MySpace
[04/20/2008|08:30] C:\DOCUME~1\Halla\APPLIC~1\<DIR> Symantec
[05/19/2008|04:25] C:\DOCUME~1\Halla\APPLIC~1\<DIR> Template
[05/02/2008|02:16] C:\DOCUME~1\Halla\APPLIC~1\<DIR> Yahoo!
[04/20/2008|08:31] C:\DOCUME~1\Halla\APPLIC~1\<DIR> You've Got Pictures Screensaver
[05/02/2008|10:45] C:\DOCUME~1\LOCALS~1\APPLIC~1\<DIR> Microsoft
[06/07/2008|09:36] C:\DOCUME~1\Logan\APPLIC~1\<DIR> Adobe
[05/03/2008|09:27] C:\DOCUME~1\Logan\APPLIC~1\<DIR> AOL
[10/12/2008|05:59] C:\DOCUME~1\Logan\APPLIC~1\<DIR> Apple Computer
[04/20/2008|08:27] C:\DOCUME~1\Logan\APPLIC~1\<DIR> CyberLink
[05/09/2008|02:50] C:\DOCUME~1\Logan\APPLIC~1\<DIR> Google
[08/10/2004|12:08] C:\DOCUME~1\Logan\APPLIC~1\<DIR> Identities
[05/02/2008|03:32] C:\DOCUME~1\Logan\APPLIC~1\<DIR> Macromedia
[10/10/2008|07:58] C:\DOCUME~1\Logan\APPLIC~1\<DIR> Microsoft
[05/22/2008|05:18] C:\DOCUME~1\Logan\APPLIC~1\<DIR> MySpace
[08/13/2008|07:40] C:\DOCUME~1\Logan\APPLIC~1\<DIR> Skype
[06/09/2008|02:09] C:\DOCUME~1\Logan\APPLIC~1\<DIR> Sun
[04/20/2008|08:30] C:\DOCUME~1\Logan\APPLIC~1\<DIR> Symantec
[10/10/2008|07:58] C:\DOCUME~1\Logan\APPLIC~1\<DIR> Template
[05/02/2008|03:32] C:\DOCUME~1\Logan\APPLIC~1\<DIR> Yahoo!
[04/20/2008|08:31] C:\DOCUME~1\Logan\APPLIC~1\<DIR> You've Got Pictures Screensaver
[05/02/2008|10:45] C:\DOCUME~1\NETWOR~1\APPLIC~1\<DIR> Microsoft
--------------------\\ Scheduled Tasks located in C:\WINDOWS\Tasks
[11/19/2008 02:02 PM][--ah-----] C:\WINDOWS\tasks\MP Scheduled Scan.job
[11/14/2008 08:22 AM][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[11/12/2008 07:29 PM][--a------] C:\WINDOWS\tasks\EasyShare Registration Task.job
[11/19/2008 01:59 PM][--ah-----] C:\WINDOWS\tasks\SA.DAT
[08/04/2004 04:00 AM][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing Folders in C:\Program Files
[07/23/2008|04:06] C:\Program Files\<DIR> Adobe
[09/12/2008|06:00] C:\Program Files\<DIR> Apple Software Update
[06/13/2008|11:46] C:\Program Files\<DIR> Bonjour
[11/15/2008|04:55] C:\Program Files\<DIR> Common Files
[08/10/2004|12:02] C:\Program Files\<DIR> ComPlus Applications
[04/20/2008|08:08] C:\Program Files\<DIR> CONEXANT
[04/20/2008|08:23] C:\Program Files\<DIR> CyberLink
[04/20/2008|08:32] C:\Program Files\<DIR> Dell
[04/20/2008|08:26] C:\Program Files\<DIR> Dell Support Center
[05/04/2008|10:48] C:\Program Files\<DIR> directx
[08/10/2008|04:36] C:\Program Files\<DIR> Disney Interactive
[04/20/2008|08:31] C:\Program Files\<DIR> EarthLink Setup
[05/23/2008|02:20] C:\Program Files\<DIR> Google
[05/20/2008|04:00] C:\Program Files\<DIR> Hewlett-Packard
[07/02/2008|06:57] C:\Program Files\<DIR> Infogrames Interactive
[08/10/2008|04:37] C:\Program Files\<DIR> InstallShield Installation Information
[11/15/2008|02:31] C:\Program Files\<DIR> Internet Explorer
[06/13/2008|11:46] C:\Program Files\<DIR> iPod
[06/13/2008|11:46] C:\Program Files\<DIR> iTunes
[07/12/2008|08:20] C:\Program Files\<DIR> Java
[05/28/2008|06:13] C:\Program Files\<DIR> Kodak
[07/05/2008|01:49] C:\Program Files\<DIR> KONAMI
[11/19/2008|01:45] C:\Program Files\<DIR> LimeWire
[11/16/2008|08:00] C:\Program Files\<DIR> Malwarebytes' Anti-Malware
[11/17/2008|10:43] C:\Program Files\<DIR> Messenger
[08/10/2004|12:04] C:\Program Files\<DIR> microsoft frontpage
[04/20/2008|08:26] C:\Program Files\<DIR> Microsoft Office
[04/20/2008|08:26] C:\Program Files\<DIR> Microsoft Works
[04/20/2008|08:22] C:\Program Files\<DIR> Modem Diagnostic Tool
[11/17/2008|10:34] C:\Program Files\<DIR> Movie Maker
[11/16/2008|06:51] C:\Program Files\<DIR> Mozilla Firefox
[08/10/2004|12:01] C:\Program Files\<DIR> MSN
[08/10/2004|12:01] C:\Program Files\<DIR> MSN Gaming Zone
[05/29/2008|02:00] C:\Program Files\<DIR> MSXML 4.0
[04/20/2008|08:19] C:\Program Files\<DIR> MSXML 6.0
[05/11/2008|12:15] C:\Program Files\<DIR> MySpace
[11/17/2008|10:29] C:\Program Files\<DIR> NetMeeting
[04/20/2008|08:23] C:\Program Files\<DIR> NetWaiting
[10/22/2008|04:14] C:\Program Files\<DIR> New Tier
[08/10/2004|12:01] C:\Program Files\<DIR> Online Services
[11/17/2008|10:29] C:\Program Files\<DIR> Outlook Express
[08/19/2008|11:19] C:\Program Files\<DIR> Panda Security
[05/02/2008|06:51] C:\Program Files\<DIR> Philips
[06/13/2008|11:46] C:\Program Files\<DIR> QuickTime
[04/20/2008|08:31] C:\Program Files\<DIR> Real
[11/03/2008|07:26] C:\Program Files\<DIR> Roxio
[07/03/2008|03:27] C:\Program Files\<DIR> SecondLife
[05/02/2008|12:05] C:\Program Files\<DIR> Skype
[11/15/2008|05:04] C:\Program Files\<DIR> Spybot - Search & Destroy
[05/15/2008|05:58] C:\Program Files\<DIR> Sun
[11/16/2008|07:09] C:\Program Files\<DIR> Trend Micro
[08/10/2004|12:08] C:\Program Files\<DIR> Uninstall Information
[10/10/2008|05:55] C:\Program Files\<DIR> Webshots
[11/17/2008|06:47] C:\Program Files\<DIR> Windows Defender
[11/17/2008|10:35] C:\Program Files\<DIR> Windows Media Player
[11/17/2008|10:29] C:\Program Files\<DIR> Windows NT
[08/10/2004|12:02] C:\Program Files\<DIR> WindowsUpdate
[08/10/2004|12:04] C:\Program Files\<DIR> xerox
[05/22/2008|04:52] C:\Program Files\<DIR> Yahoo!
--------------------\\ Listing Folders in C:\Program Files\Common Files
[05/04/2008|06:45] C:\Program Files\Common Files\<DIR> Adobe
[05/03/2008|09:34] C:\Program Files\Common Files\<DIR> AOL
[06/13/2008|11:44] C:\Program Files\Common Files\<DIR> Apple
[04/20/2008|08:32] C:\Program Files\Common Files\<DIR> InstallShield
[04/20/2008|08:20] C:\Program Files\Common Files\<DIR> Java
[05/28/2008|06:12] C:\Program Files\Common Files\<DIR> Kodak
[11/17/2008|06:47] C:\Program