Ok, here ya go!
Silent Runner findings :
"Silent Runners.vbs", revision 36,
http://www.silentrunners.org/Operating System: Windows XP SP2
Output limited to non-default values, except where indicated by "{++}"
Startup items buried in registry:
---------------------------------
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
"MsnMsgr" = ""C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background" [MS]
"ASUS SmartDoctor" = "C:\Program Files\ASUS\SmartDoctor\\SmartDoctor.exe /start" ["ASUSTeK Inc."]
"Steam" = (no data)
"ctfmon.exe" = "C:\WINDOWS\system32\ctfmon.exe" [MS]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
"PtiuPbmd" = "Rundll32.exe ptipbm.dll,SetWriteBack" [MS]
"Ptipbmf" = "rundll32.exe ptipbmf.dll,SetWriteCacheMode" [MS]
"NvCplDaemon" = "RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup" [MS]
"nwiz" = "nwiz.exe /install" ["NVIDIA Corporation"]
"anvshell" = "anvshell.exe" ["AsusTeK Computer Inc."]
"CTSysVol" = "C:\Program Files\Creative\SBAudigy2ZS\Surround Mixer\CTSysVol.exe /r" ["Creative Technology Ltd"]
"CTDVDDET" = "C:\Program Files\Creative\SBAudigy2ZS\DVDAudio\CTDVDDET.EXE" ["Creative Technology Ltd"]
"CTHelper" = "CTHELPER.EXE" ["Creative Technology Ltd"]
"SBDrvDet" = "C:\Program Files\Creative\SB Drive Det\SBDrvDet.exe /r" ["Creative Technology Ltd"]
"UpdReg" = "C:\WINDOWS\UpdReg.EXE" ["Creative Technology Ltd."]
"HPDJ Taskbar Utility" = "C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe" ["HP"]
"QuickTime Task" = ""C:\Program Files\QuickTime\qttask.exe" -atboottime" ["Apple Computer, Inc."]
"TkBellExe" = ""C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot" ["RealNetworks, Inc."]
"type32" = ""C:\Program Files\Microsoft IntelliType Pro\type32.exe"" [MS]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}" = "C:\Program Files\Google\Gmail Notifier\G001-1.0.24.0\gnotify.exe" ["Google Inc."]
"NvMediaCenter" = "RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit" [MS]
"GoToMyPC" = "C:\Program Files\Expertcity\GoToMyPC\g2svc.exe -logon" ["Citrix Online"]
"SunJavaUpdateSched" = "C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe" ["Sun Microsystems, Inc."]
"MimBoot" = "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mimboot.exe" ["Musicmatch, Inc."]
"dvd43" = "C:\Program Files\dvd43\dvd43_tray.exe" ["Captain Red"]
"NeroFilterCheck" = "C:\WINDOWS\system32\NeroCheck.exe" ["Ahead Software Gmbh"]
"iTunesHelper" = "C:\Program Files\iTunes\iTunesHelper.exe" ["Apple Computer, Inc."]
"VSOCheckTask" = ""c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask" ["McAfee, Inc."]
"VirusScan Online" = ""c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"" ["McAfee, Inc."]
"MCAgentExe" = "c:\PROGRA~1\mcafee.com\agent\mcagent.exe" ["McAfee, Inc"]
"MCUpdateExe" = "C:\PROGRA~1\McAfee.com\Agent\McUpdate.exe" ["McAfee, Inc"]
"MPFExe" = "C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" ["McAfee Security"]
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
"{42071714-76d4-11d1-8b24-00a0c9068ff3}" = "Display Panning CPL Extension"
-> {CLSID}\InProcServer32\(Default) = "deskpan.dll" [file not found]
"{88895560-9AA2-1069-930E-00AA0030EBC8}" = "HyperTerminal Icon Ext"
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\System32\hticons.dll" ["Hilgraeve, Inc."]
"{A70C977A-BF00-412C-90B7-034C51DA2439}" = "NvCpl DesktopContext Class"
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\nvcpl.dll" ["NVIDIA Corporation"]
"{1CDB2949-8F65-4355-8456-263E7C208A5D}" = "Desktop Explorer"
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"]
"{1E9B04FB-F9E5-4718-997B-B8DA88302A47}" = "Desktop Explorer Menu"
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"]
"{1E9B04FB-F9E5-4718-997B-B8DA88302A48}" = "nView Desktop Context Menu"
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"]
"{42042206-2D85-11D3-8CFF-005004838597}" = "Microsoft Office HTML Icon Handler"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Microsoft Office\OFFICE11\msohev.dll" [MS]
"{F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4}" = "Shell Extensions for RealOne Player"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Real\RealPlayer\rpshell.dll" ["RealNetworks, Inc."]
"{A2569D1F-4E06-43EC-9825-0088B471BE47}" = "IntelliType Pro Wireless Control Panel Property Page"
-> {CLSID}\InProcServer32\(Default) = ""C:\Program Files\Microsoft IntelliType Pro\itcplwir.dll"" [MS]
"{111D8120-25EB-4E1C-A4DF-C9EE5FCA35CB}" = "IntelliType Pro Scrolling Control Panel Property Page"
-> {CLSID}\InProcServer32\(Default) = ""C:\Program Files\Microsoft IntelliType Pro\itcplwhl.dll"" [MS]
"{ED6E87C6-8A83-43aa-8208-8DBC8247F4D2}" = "IntelliType Pro Key Settings Control Panel Property Page"
-> {CLSID}\InProcServer32\(Default) = ""C:\Program Files\Microsoft IntelliType Pro\itcplkey.dll"" [MS]
"{640167b4-59b0-47a6-b335-a6b3c0695aea}" = "Portable Media Devices"
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\Audiodev.dll" [MS]
"{cc86590a-b60a-48e6-996b-41d25ed39a1e}" = "Portable Media Devices Menu"
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\Audiodev.dll" [MS]
"{FFB699E0-306A-11d3-8BD1-00104B6F7516}" = "Play on my TV helper"
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\nvcpl.dll" ["NVIDIA Corporation"]
"{8f7261d0-d2b9-11d2-9909-00605205b24c}" = "CuteFTP Shell Extension"
-> {CLSID}\InProcServer32\(Default) = "C:\PROGRA~1\GlobalSCAPE\CuteFTP\CuteShell.dll" [empty string]
"{B41DB860-8EE4-11D2-9906-E49FADC173CA}" = "WinRAR shell extension"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]
"{FDAA650B-82C7-4B14-AC1F-738DA40464E3}" = (no title provided)
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\duspex.dll" [file not found]
"{B1C9E07D-4B92-4EEB-8F40-4CA47C4E9F5E}" = (no title provided)
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\jtpl400.dll" [null data]
"{048DB7F8-0509-4524-A3CE-70E7EFECCD4D}" = (no title provided)
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\guard.tmp" [file not found]
"{FA010552-4A27-4cb1-A1BB-3E2D697F1639}" = "SpySubtract Shell Extension"
-> {CLSID}\InProcServer32\(Default) = "c:\Program Files\interMute\SpySubtract\sshook.dll" ["InterMute, Inc."]
"{B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF}" = "iTunes"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\iTunes\iTunesMiniPlayer.dll" ["Apple Computer, Inc."]
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\
INFECTION WARNING! "{FA010552-4A27-4cb1-A1BB-3E2D697F1639}" = "SpySubtract Shell Extension"
-> {CLSID}\InProcServer32\(Default) = "c:\Program Files\interMute\SpySubtract\sshook.dll" ["InterMute, Inc."]
HKLM\Software\Classes\PROTOCOLS\Filter\
INFECTION WARNING! text/xml\CLSID = "{807553E5-5146-11D5-A672-00B0D022E945}"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL" [MS]
Enabled Wallpaper and Active Desktop:
-------------------------------------
Active Desktop is disabled.
HKCU\Control Panel\Desktop\
"Wallpaper" = "C:\WINDOWS\Firefox Wallpaper.bmp"
Startup items in "Jason Prance" & "All Users" startup folders:
--------------------------------------------------------------
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
"SpySubtract" -> shortcut to: "C:\Program Files\interMute\SpySubtract\SpySub.exe -autostart" ["InterMute, Inc."]
Enabled Scheduled Tasks:
------------------------
"McAfee.com Update Check (JASON-Jason Prance)" -> launches: "C:\PROGRA~1\McAfee.com\Agent\mcupdate.exe /Schedule" ["McAfee, Inc"]
Winsock2 Service Provider DLLs:
-------------------------------
Namespace Service Providers
HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++}
000000000001\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]
000000000002\LibraryPath = "%SystemRoot%\System32\winrnr.dll" [MS]
000000000003\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]
Transport Service Providers
HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++}
0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range:
%SystemRoot%\system32\mswsock.dll [MS], 01 - 03, 06 - 13
%SystemRoot%\system32\rsvpsp.dll [MS], 04 - 05
Toolbars, Explorer Bars, Extensions:
------------------------------------
Toolbars
HKLM\Software\Microsoft\Internet Explorer\Toolbar\
"{BA52B914-B692-46C4-B683-905236F6F655}"
-> {CLSID}\(Default) = "McAfee VirusScan"
-> {CLSID}\InProcServer32\(Default) = "c:\progra~1\mcafee.com\vso\mcvsshl.dll" ["McAfee, Inc."]
Extensions (Tools menu items, main toolbar menu buttons)
HKLM\Software\Microsoft\Internet Explorer\Extensions\
{08B0E5C0-4FCB-11CF-AAA5-00401C608501}\
"MenuText" = "Sun Java Console"
"CLSIDExtension" = "{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBC}"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll" ["Sun Microsystems, Inc."]
{B13B4423-2647-4CFC-A4B3-C7D56CB83487}\
"ButtonText" = "Share in Hello"
"MenuText" = "Share in H&ello"
"CLSIDExtension" = "{B13B4423-2647-4cfc-A4B3-C7D56CB83487}"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Hello\PicasaCapture.dll" ["Picasa, Inc."]
{FB5F1910-F110-11D2-BB9E-00C04F795683}\
"ButtonText" = "Messenger"
"MenuText" = "Windows Messenger"
"Exec" = "C:\Program Files\Messenger\msmsgs.exe" [MS]
Running Services (Display Name, Service Name, Path {Service DLL}):
------------------------------------------------------------------
ASUSKeyboardService, ASUSKeyboardService, "C:\WINDOWS\asuskbservice.exe" ["ASUSTeK COMPUTER INC."]
Creative Service for CDROM Access, Creative Service for CDROM Access, "C:\WINDOWS\system32\CTsvcCDA.exe" ["Creative Technology Ltd"]
iPod Service, iPodService, ""C:\Program Files\iPod\bin\iPodService.exe"" ["Apple Computer, Inc."]
McAfee Personal Firewall Service, MpfService, "C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe" ["McAfee Corporation"]
McAfee.com McShield, McShield, "c:\PROGRA~1\mcafee.com\vso\mcshield.exe" ["Network Associates, Inc."]
McAfee.com VirusScan Online Realtime Engine, MCVSRte, "c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe /Embedding" ["McAfee, Inc"]
NVIDIA Display Driver Service, NVSvc, "C:\WINDOWS\system32\nvsvc32.exe" ["NVIDIA Corporation"]
Windows User Mode Driver Framework, UMWdf, "C:\WINDOWS\system32\wdfmgr.exe" [MS]
WMDM PMSP Service, WMDM PMSP Service, "C:\WINDOWS\system32\MsPMSPSv.exe" [MS]
----------
This report excludes default entries except where indicated.
To see *everywhere* the script checks and *everything* it finds,
launch it from a command prompt or a shortcut with the -all parameter.
----------
And mwav findings :
Sun May 15 23:24:04 2005 => **********************************************************
Sun May 15 23:24:04 2005 => MicroWorld AntiVirus & Spyware Toolkit Utility.
Sun May 15 23:24:04 2005 => Copyright © 2003-2005, MicroWorld Technologies Inc.
Sun May 15 23:24:04 2005 => **********************************************************
Sun May 15 23:24:04 2005 => Version 6.1.8 (C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\mwavscan.com)
Sun May 15 23:24:04 2005 => Log File: C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\MWAV.LOG
Sun May 15 23:24:04 2005 => MWAV Registered: FALSE.
Sun May 15 23:24:04 2005 => MWAV Mode: Only Scan files.
Sun May 15 23:24:04 2005 => Latest Date of files inside MWAV: 12 May 2005 09:21:18.
Sun May 15 23:24:06 2005 => AV Library Loaded...
Sun May 15 23:24:06 2005 => MWAV doing self scanning...
Sun May 15 23:24:06 2005 => Scanning File C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\kavss.exe
Sun May 15 23:24:06 2005 => Scanning File C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\Getvlist.exe
Sun May 15 23:24:06 2005 => Scanning File C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\kavss.dll
Sun May 15 23:24:06 2005 => Scanning File C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\kavssdi.dll
Sun May 15 23:24:06 2005 => Scanning File C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\kavssi.dll
Sun May 15 23:24:06 2005 => Scanning File C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\kavvlg.dll
Sun May 15 23:24:06 2005 => Scanning File C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\msvlclnt.dll
Sun May 15 23:24:06 2005 => Scanning File C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\ipc.dll
Sun May 15 23:24:06 2005 => Scanning File C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\main.avi
Sun May 15 23:24:06 2005 => Scanning File C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\virus.avi
Sun May 15 23:24:06 2005 => MWAV files are clean.
Sun May 15 23:24:10 2005 => Virus Database Date: 2005/05/12
Sun May 15 23:24:10 2005 => Virus Database Count: 129400
Sun May 15 23:24:50 2005 => **********************************************************
Sun May 15 23:24:50 2005 => MicroWorld AntiVirus & Spyware Toolkit Utility.
Sun May 15 23:24:50 2005 => Copyright © 2003-2005, MicroWorld Technologies Inc.
Sun May 15 23:24:50 2005 =>
Sun May 15 23:24:50 2005 => Support:
[email protected]Sun May 15 23:24:50 2005 => Web:
http://www.mwti.netSun May 15 23:24:50 2005 => **********************************************************
Sun May 15 23:24:50 2005 => Version 6.1.8 (C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\mwavscan.com)
Sun May 15 23:24:50 2005 => Log File: C:\DOCUME~1\JASONP~1\LOCALS~1\Temp\MWAV.LOG
Sun May 15 23:24:50 2005 => User Account: Jason Prance
Sun May 15 23:24:50 2005 => Windows Root Folder: C:\WINDOWS
Sun May 15 23:24:50 2005 => Windows Sys32 Folder: C:\WINDOWS\system32
Sun May 15 23:24:50 2005 => OS: Windows NT
Sun May 15 23:24:50 2005 => Latest Date of files inside MWAV: 12 May 2005 09:21:18.
Sun May 15 23:24:51 2005 => Options Selected by User:
Sun May 15 23:24:51 2005 => Memory Check: Enabled
Sun May 15 23:24:51 2005 => Registry Check: Enabled
Sun May 15 23:24:51 2005 => StartUp Folder Check: Enabled
Sun May 15 23:24:51 2005 => System Folder Check: Enabled
Sun May 15 23:24:51 2005 => System Area Check: Disabled
Sun May 15 23:24:51 2005 => Services Check: Enabled
Sun May 15 23:24:51 2005 => Drive Check Option Disabled
Sun May 15 23:24:51 2005 => Folder Check: Disabled
Sun May 15 23:24:51 2005 => ***** Scanning Memory Files *****
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\System32\smss.exe
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\ntdll.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\SYSTEM32\WINLOGON.EXE
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\kernel32.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\ADVAPI32.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\RPCRT4.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\AUTHZ.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\msvcrt.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\CRYPT32.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\USER32.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\GDI32.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\MSASN1.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\NDdeApi.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\PROFMAP.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\NETAPI32.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\USERENV.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\PSAPI.DLL
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\REGAPI.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\Secur32.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\SETUPAPI.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\VERSION.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\WINSTA.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\WINTRUST.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\IMAGEHLP.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\WS2_32.dll
Sun May 15 23:24:51 2005 => Scanning File C:\WINDOWS\system32\WS2HELP.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\MSGINA.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\SHELL32.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\SHLWAPI.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\COMCTL32.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\ODBC32.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\comdlg32.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\odbcint.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\SHSVCS.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\sfc.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\sfc_os.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\ole32.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\Apphelp.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\WINSCARD.DLL
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\WTSAPI32.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\sxs.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\uxtheme.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\WINMM.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\rsaenh.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\SAMLIB.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\wldap32.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\mpr.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\MPRAPI.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\ACTIVEDS.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\adsldpc.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\ATL.DLL
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\OLEAUT32.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\rtutils.dll
Sun May 15 23:24:52 2005 => Scanning File C:\WINDOWS\system32\xpsp2res.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\NTMARTA.DLL
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\wdmaud.drv
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\msacm32.drv
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\MSACM32.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\midimap.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\CLBCATQ.DLL
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\COMRes.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\System32\wbem\wbemprox.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\System32\wbem\wbemcomn.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\System32\wbem\wbemsvc.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\System32\wbem\fastprox.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\MSVCP60.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\NTDSAPI.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\DNSAPI.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\services.exe
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\SCESRV.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\umpnpmgr.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\NCObjAPI.DLL
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\ShimEng.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\AppPatch\AcGenral.DLL
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\eventlog.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\lsass.exe
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\LSASRV.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\SAMSRV.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\cryptdll.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\msprivs.dll
Sun May 15 23:24:53 2005 => Scanning File C:\WINDOWS\system32\kerberos.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\msv1_0.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\iphlpapi.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\netlogon.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\w32time.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\schannel.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\wdigest.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\scecli.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\ipsecsvc.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\oakley.DLL
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\WINIPSEC.DLL
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\mswsock.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\hnetcfg.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\System32\wshtcpip.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\pstorsvc.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\psbase.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\dssenh.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\svchost.exe
Sun May 15 23:24:54 2005 => Scanning File c:\windows\system32\rpcss.dll
Sun May 15 23:24:54 2005 => Scanning File c:\windows\system32\termsrv.dll
Sun May 15 23:24:54 2005 => Scanning File c:\windows\system32\ICAAPI.dll
Sun May 15 23:24:54 2005 => Scanning File c:\windows\system32\mstlsapi.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\rdpwsx.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\WINSPOOL.DRV
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\msi.dll
Sun May 15 23:24:54 2005 => Scanning File c:\windows\system32\dhcpcsvc.dll
Sun May 15 23:24:54 2005 => Scanning File c:\windows\system32\wzcsvc.dll
Sun May 15 23:24:54 2005 => Scanning File c:\windows\system32\WMI.dll
Sun May 15 23:24:54 2005 => Scanning File c:\windows\system32\ESENT.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\System32\rastls.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\CRYPTUI.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\system32\WININET.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\System32\RASAPI32.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\System32\rasman.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\System32\TAPI32.dll
Sun May 15 23:24:54 2005 => Scanning File C:\WINDOWS\System32\raschap.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\schedsvc.dll
Sun May 15 23:24:55 2005 => Scanning File C:\WINDOWS\System32\MSIDLE.DLL
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\audiosrv.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\wkssvc.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\cryptsvc.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\certcli.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\dmserver.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\ersvc.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\es.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\pchealth\helpctr\binaries\pchsvc.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\srvsvc.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\netman.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\netshell.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\credui.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\WZCSAPI.DLL
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\seclogon.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\sens.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\srsvc.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\POWRPROF.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\trkwks.dll
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\wbem\wmisvc.dll
Sun May 15 23:24:55 2005 => Scanning File C:\WINDOWS\system32\VSSAPI.DLL
Sun May 15 23:24:55 2005 => Scanning File c:\windows\system32\wscsvc.dll
Sun May 15 23:24:55 2005 => Scanning File C:\WINDOWS\System32\Wbem\wbemcore.dll
Sun May 15 23:24:55 2005 => Scanning File C:\WINDOWS\System32\Wbem\esscli.dll
Sun May 15 23:24:55 2005 => Scanning File C:\WINDOWS\system32\comsvcs.dll
Sun May 15 23:24:55 2005 => Scanning File C:\WINDOWS\system32\MTXCLU.DLL
Sun May 15 23:24:55 2005 => Scanning File C:\WINDOWS\system32\WSOCK32.dll
Sun May 15 23:24:55 2005 => Scanning File C:\WINDOWS\system32\colbact.DLL
Sun May 15 23:24:55 2005 => Scanning File C:\WINDOWS\System32\CLUSAPI.DLL
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\RESUTILS.DLL
Sun May 15 23:24:56 2005 => Scanning File c:\windows\system32\wuauserv.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\system32\wuaueng.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\ADVPACK.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\SHFOLDER.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\WINHTTP.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\Cabinet.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\mspatcha.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\wbem\wmiutils.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\wbem\repdrvfs.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\wbem\wmiprvsd.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\wbem\wbemess.dll
Sun May 15 23:24:56 2005 => Scanning File c:\windows\system32\ipnathlp.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\wbem\ncprov.dll
Sun May 15 23:24:56 2005 => Scanning File c:\windows\system32\browser.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\rasadhlp.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\netcfgx.dll
Sun May 15 23:24:56 2005 => Scanning File c:\windows\system32\tapisrv.dll
Sun May 15 23:24:56 2005 => Scanning File c:\windows\system32\rasmans.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\rastapi.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\unimdm.tsp
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\uniplat.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\kmddsp.tsp
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\ndptsp.tsp
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\ipconf.tsp
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\h323.tsp
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\hidphone.tsp
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\HID.DLL
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\rasppp.dll
Sun May 15 23:24:56 2005 => Scanning File C:\WINDOWS\System32\ntlsapi.dll
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\System32\upnp.dll
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\System32\SSDPAPI.dll
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\System32\RASDLG.dll
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\System32\NETRAP.dll
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\system32\msxml3.dll
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\System32\winrnr.dll
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\System32\cryptnet.dll
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\System32\SensApi.dll
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\system32\spoolsv.exe
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\system32\SPOOLSS.DLL
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\system32\localspl.dll
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\system32\cnbjmon.dll
Sun May 15 23:24:57 2005 => Scanning File C:\WINDOWS\system32\gotomon.dll
Sun May 15 23:25:01 2005 => File C:\WINDOWS\system32\gotomon.dll tagged as not-a-virus:RiskWare.RemoteAdmin.GotomyPC.a. No Action Taken.
Sun May 15 23:25:01 2005 => Scanning File C:\WINDOWS\system32\hpzlnt07.dll
Sun May 15 23:25:01 2005 => Scanning File C:\WINDOWS\system32\pjlmon.dll
Sun May 15 23:25:01 2005 => Scanning File C:\WINDOWS\system32\tcpmon.dll
Sun May 15 23:25:01 2005 => Scanning File C:\WINDOWS\system32\usbmon.dll
Sun May 15 23:25:01 2005 => Scanning File C:\WINDOWS\system32\win32spl.dll
Sun May 15 23:25:01 2005 => Scanning File C:\WINDOWS\system32\inetpp.dll
Sun May 15 23:25:01 2005 => Scanning File C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\hpzntp07.dll
Sun May 15 23:25:01 2005 => Scanning File C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\hpz2ku07.dll
Sun May 15 23:25:01 2005 => Scanning File C:\WINDOWS\system32\mscms.dll
Sun May 15 23:25:01 2005 => Scanning File C:\WINDOWS\asuskbservice.exe
Sun May 15 23:25:01 2005 => Scanning File C:\WINDOWS\system32\CTsvcCDA.exe
Sun May 15 23:25:01 2005 => Scanning File c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
Sun May 15 23:25:01 2005 => Scanning File c:\PROGRA~1\mcafee.com\vso\vsoupd.dll
Sun May 15 23:25:01 2005 => Scanning File c:\PROGRA~1\mcafee.com\vso\NtClient.dll
Sun May 15 23:25:01 2005 => Scanning File c:\PROGRA~1\mcafee.com\vso\MCSCAN32.DLL
Sun May 15 23:25:02 2005 => Scanning File c:\PROGRA~1\mcafee.com\agent\mcagntps.dll
Sun May 15 23:25:02 2005 => Scanning File C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
Sun May 15 23:25:02 2005 => Scanning File C:\PROGRA~1\McAfee.com\PERSON~1\Localized.DLL
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\system32\MPFAPI.dll
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\system32\nvsvc32.exe
Sun May 15 23:25:02 2005 => Scanning File c:\windows\system32\wiaservc.dll
Sun May 15 23:25:02 2005 => Scanning File c:\windows\system32\CFGMGR32.dll
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\system32\ov519usd.dll
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\System32\actxprxy.dll
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\System32\sti.dll
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\system32\MsPMSPSv.exe
Sun May 15 23:25:02 2005 => Scanning File c:\PROGRA~1\mcafee.com\vso\mcshield.exe
Sun May 15 23:25:02 2005 => Scanning File c:\PROGRA~1\mcafee.com\vso\Res00\McShield.DLL
Sun May 15 23:25:02 2005 => Scanning File c:\PROGRA~1\mcafee.com\vso\naiann.dll
Sun May 15 23:25:02 2005 => Scanning File c:\PROGRA~1\mcafee.com\vso\scanserv.dll
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\Explorer.EXE
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\system32\BROWSEUI.dll
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\system32\SHDOCVW.dll
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\System32\cscui.dll
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\System32\CSCDLL.dll
Sun May 15 23:25:02 2005 => Scanning File C:\WINDOWS\System32\themeui.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\System32\MSIMG32.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\jtpl400.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\oledlg.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\urlmon.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\ntshrui.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\LINKINFO.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\MSCTF.dll
Sun May 15 23:25:03 2005 => Scanning File c:\progra~1\mcafee.com\vso\McVSSkt.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\System32\webcheck.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\System32\stobject.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\System32\BatMeter.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\ctagent.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\mslbui.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\System32\drprov.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\System32\ntlanman.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\System32\NETUI0.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\System32\NETUI1.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\System32\davclnt.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\browselc.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\DUSER.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\shdoclc.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\MLANG.dll
Sun May 15 23:25:03 2005 => Scanning File C:\WINDOWS\system32\nvcpl.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\OLEACC.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\nvshell.dll
Sun May 15 23:25:04 2005 => Scanning File C:\PROGRA~1\COMMON~1\Adobe\Shell\PSICON.DLL
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\System32\mydocs.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Sun May 15 23:25:04 2005 => Scanning File C:\PROGRA~1\WinRAR\rarext.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\printui.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\wiashext.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\msdmo.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\perfos.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\System32\l3codeca.acm
Sun May 15 23:25:04 2005 => Scanning File c:\PROGRA~1\INTERM~1\SPYSUB~1\sshook.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\DDRAW.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\DCIMAN32.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\D3DIM700.DLL
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\wmvcore.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\WMASF.DLL
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\wmpshell.dll
Sun May 15 23:25:04 2005 => Scanning File c:\progra~1\mcafee.com\vso\mcvsshl.dll
Sun May 15 23:25:04 2005 => Scanning File c:\progra~1\mcafee.com\vso\ShlRes.dll
Sun May 15 23:25:04 2005 => Scanning File C:\PROGRA~1\GlobalSCAPE\CuteFTP\CuteShell.dll
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\rundll32.exe
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\nudenb32.dll
Sun May 15 23:25:04 2005 => File C:\WINDOWS\system32\nudenb32.dll infected by "not-a-virus:AdWare.Look2Me.ab" Virus. Action Taken: No Action Taken.
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\anvshell.exe
Sun May 15 23:25:04 2005 => Scanning File C:\WINDOWS\system32\ANVIOCTL.DLL
Sun May 15 23:25:05 2005 => Scanning File C:\WINDOWS\EIO.DLL
Sun May 15 23:25:05 2005 => Scanning File C:\PROGRA~1\Creative\SBAUDI~1\SURROU~1\CTSysVol.exe
Sun May 15 23:25:05 2005 => Scanning File C:\WINDOWS\system32\MFC42.DLL
Sun May 15 23:25:05 2005 => Scanning File C:\PROGRA~1\Creative\SBAUDI~1\SURROU~1\CTSysVol.crl
Sun May 15 23:25:05 2005 => Scanning File C:\PROGRA~1\Creative\SHARED~1\CTTheme.dll
Sun May 15 23:25:05 2005 => Scanning File C:\PROGRA~1\Creative\SHARED~1\CtrlSrc.dll
Sun May 15 23:25:05 2005 => Scanning File C:\PROGRA~1\Creative\SHARED~1\CTIniF.dll
Sun May 15 23:25:05 2005 => Scanning File C:\PROGRA~1\Creative\SHARED~1\GDICtrl.skc
Sun May 15 23:25:05 2005 => Scanning File C:\PROGRA~1\Creative\SHARED~1\RtxCtrl.skc
Sun May 15 23:25:05 2005 => Scanning File C:\PROGRA~1\Creative\SHARED~1\mxlib.dll
Sun May 15 23:25:05 2005 => Scanning File C:\WINDOWS\CTDCRES.DLL
Sun May 15 23:25:05 2005 => Scanning File C:\PROGRA~1\Creative\SBAUDI~1\DVDAudio\CTDVDDET.EXE
Sun May 15 23:25:05 2005 => Scanning File C:\PROGRA~1\Creative\SHARED~1\CTAudNav.DLL
Sun May 15 23:25:05 2005 => Scanning File C:\WINDOWS\system32\CTHELPER.EXE
Sun May 15 23:25:05 2005 => Scanning File C:\WINDOWS\SYSTEM32\CTDCIFCE.DLL
Sun May 15 23:25:05 2005 => Scanning File C:\WINDOWS\SYSTEM32\CTDC0001.DLL
Sun May 15 23:25:05 2005 => Scanning File C:\WINDOWS\SYSTEM32\ctosuser.dll
Sun May 15 23:25:05 2005 => Scanning File C:\WINDOWS\SYSTEM32\CTDPROXY.DLL
Sun May 15 23:25:05 2005 => Scanning File C:\WINDOWS\SYSTEM32\PIAPROXY.DLL
Sun May 15 23:25:06 2005 => Scanning File C:\WINDOWS\system32\ctspkhlp.dll
Sun May 15 23:25:06 2005 => Scanning File C:\WINDOWS\system32\DSOUND.dll
Sun May 15 23:25:06 2005 => Scanning File C:\WINDOWS\system32\KsUser.dll
Sun May 15 23:25:06 2005 => Scanning File C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe
Sun May 15 23:25:06 2005 => Scanning File C:\WINDOWS\system32\spool\drivers\w32x86\3\HPZR3207.DLL
Sun May 15 23:25:06 2005 => Scanning File C:\PROGRA~1\QUICKT~1\qttask.exe
Sun May 15 23:25:06 2005 => Scanning File C:\PROGRA~1\MI558C~1\type32.exe
Sun May 15 23:25:06 2005 => Scanning File C:\PROGRA~1\MI558C~1\type32.dll
Sun May 15 23:25:06 2005 => Scanning File C:\PROGRA~1\MI558C~1\dpgmkb.dll
Sun May 15 23:25:06 2005 => Scanning File C:\PROGRA~1\MI558C~1\dpgcmd.dll
Sun May 15 23:25:06 2005 => Scanning File C:\PROGRA~1\MI558C~1\srres.dll
Sun May 15 23:25:06 2005 => Scanning File C:\PROGRA~1\MI558C~1\ITRes.dll
Sun May 15 23:25:06 2005 => Scanning File C:\PROGRA~1\Google\GMAILN~1\G001-1~1.0\gnotify.exe
Sun May 15 23:25:06 2005 => Scanning File C:\WINDOWS\system32\riched20.dll
Sun May 15 23:25:06 2005 => Scanning File C:\WINDOWS\system32\pstorec.dll
Sun May 15 23:25:06 2005 => Scanning File C:\WINDOWS\system32\NvMcTray.dll
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\EXPERT~1\GoToMyPC\g2svc.exe
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\Java\JRE15~2.0_0\bin\jusched.exe
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~1.EXE
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~3.RES\ENBEFF~1.LPR\ITUNES~1.DLL
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\iTunes\ITUNES~3.RES\ITUNES~1.DLL
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\McAfee.com\VSO\VsCfgW32.dll
Sun May 15 23:25:07 2005 => Scanning File c:\PROGRA~1\mcafee.com\agent\submgr\5_1_0_~1\mcsubmgr.dll
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\mcafee.com\vso\ashldres.dll
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\MMDiag.exe
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\CoreDll.dll
Sun May 15 23:25:07 2005 => Scanning File C:\WINDOWS\system32\MSVCP71.dll
Sun May 15 23:25:07 2005 => Scanning File C:\WINDOWS\system32\MSVCR71.dll
Sun May 15 23:25:07 2005 => Scanning File C:\WINDOWS\system32\MFC71U.DLL
Sun May 15 23:25:07 2005 => Scanning File C:\WINDOWS\system32\MFC71ENU.DLL
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\mcafee.com\agent\mcagent.exe
Sun May 15 23:25:07 2005 => Scanning File C:\PROGRA~1\mcafee.com\agent\SCRes.dll
Sun May 15 23:25:07 2005 => Scanning File c:\progra~1\mcafee.com\vso\mcvsescn.exe
Sun May 15 23:25:08 2005 => Scanning File c:\progra~1\mcafee.com\vso\EmScnRes.dll
Sun May 15 23:25:08 2005 => Scanning File c:\PROGRA~1\mcafee.com\agent\McUILib.DLL
Sun May 15 23:25:08 2005 => Scanning File C:\WINDOWS\system32\riched32.dll
Sun May 15 23:25:08 2005 => Scanning File c:\progra~1\mcafee.com\vso\McVsWorm.dll
Sun May 15 23:25:08 2005 => Scanning File c:\progra~1\mcafee.com\vso\WormRes.dll
Sun May 15 23:25:08 2005 => Scanning File C:\PROGRA~1\iPod\bin\IPODSE~1.EXE
Sun May 15 23:25:08 2005 => Scanning File C:\PROGRA~1\iPod\bin\IPODSE~1.RES\ENBEFF~1.LPR\IPODSE~1.DLL
Sun May 15 23:25:08 2005 => Scanning File C:\PROGRA~1\iPod\bin\IPODSE~1.RES\IPODSE~1.DLL
Sun May 15 23:25:08 2005 => Scanning File C:\WINDOWS\system32\IMM32.dll
Sun May 15 23:25:08 2005 => Scanning File C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
Sun May 15 23:25:08 2005 => Scanning File C:\PROGRA~1\MSNMES~1\MsnMsgr.Exe
Sun May 15 23:25:08 2005 => Scanning File C:\PROGRA~1\MSNMES~1\MSGSLANG.DLL
Sun May 15 23:25:08 2005 => Scanning File C:\PROGRA~1\MSNMES~1\custsat.dll
Sun May 15 23:25:08 2005 => Scanning File C:\WINDOWS\System32\devenum.dll
Sun May 15 23:25:08 2005 => Scanning File C:\WINDOWS\system32\dpnhupnp.dll
Sun May 15 23:25:08 2005 => Scanning File C:\WINDOWS\System32\jscript.dll
Sun May 15 23:25:08 2005 => Scanning File C:\WINDOWS\System32\vbscript.dll
Sun May 15 23:25:08 2005 => Scanning File C:\WINDOWS\system32\macromed\flash\Flash.ocx
Sun May 15 23:25:08 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\mim.exe
Sun May 15 23:25:08 2005 => Scanning File C:\WINDOWS\system32\ATL71.DLL
Sun May 15 23:25:08 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\MIMSES~1.DLL
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\mimDB.dll
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\ATTRIB~1.DLL
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\THREAD~2.DLL
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\USAGEB~1.DLL
Sun May 15 23:25:09 2005 => Scanning File C:\WINDOWS\System32\msjetoledb40.dll
Sun May 15 23:25:09 2005 => Scanning File C:\WINDOWS\System32\msjet40.dll
Sun May 15 23:25:09 2005 => Scanning File C:\WINDOWS\System32\mswstr10.dll
Sun May 15 23:25:09 2005 => Scanning File C:\WINDOWS\System32\msjter40.dll
Sun May 15 23:25:09 2005 => Scanning File C:\WINDOWS\System32\MSJINT40.DLL
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\COMMON~1\System\OLEDB~1\oledb32.dll
Sun May 15 23:25:09 2005 => Scanning File C:\WINDOWS\system32\MSDART.DLL
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\COMMON~1\System\OLEDB~1\OLEDB32R.DLL
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\DEVICE~2.DLL
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\EventMgr.dll
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\mimJobs.dll
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\licmgr.dll
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\mmgit.dll
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\mmdrm.dll
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\TRACKU~1.DLL
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\OBJECT~1.DLL
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\PORTAL~1.DLL
Sun May 15 23:25:09 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\Enforce.dll
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\Crypt.dll
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\MMReg.dll
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\SKINNE~1.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\STREAM~2.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\TOD_FA~1.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\CDDVD_~1.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\PO9693~1.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\LOCALD~2.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\STREAM~1.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\TOD_DO.dll
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\COMPON~1\stingray.dll
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\FILECA~1.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\METADA~2.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\WINMSG~1.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\FILETA~2.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\PORTAB~4.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\PORTAB~2.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\PORTAB~1.DLL
Sun May 15 23:25:10 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\BASICO~2.DLL
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\GRAPHI~1.DLL
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\COMPON~1\mxlobj.dll
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\MMSAL32.dll
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\mmlicmgr.dll
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\CdDvd_DO.dll
Sun May 15 23:25:11 2005 => Scanning File C:\WINDOWS\System32\msjtes40.dll
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\RBCDRE~1.DLL
Sun May 15 23:25:11 2005 => Scanning File C:\WINDOWS\system32\VBAJET32.DLL
Sun May 15 23:25:11 2005 => Scanning File C:\WINDOWS\system32\expsrv.dll
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\COMPON~1\legacy.dll
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\COMPON~1\INIPRO~1.DLL
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\COMPON~1\mmc.dll
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\COMPON~1\mmc3.dll
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\LOCALD~1.DLL
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\Plugins\PORTAB~2\WMDM\MDPlugin.dll
Sun May 15 23:25:11 2005 => Scanning File C:\WINDOWS\system32\MSWMDM.dll
Sun May 15 23:25:11 2005 => Scanning File C:\WINDOWS\system32\WMDMPS.dll
Sun May 15 23:25:11 2005 => Scanning File C:\WINDOWS\system32\MsPMSP.dll
Sun May 15 23:25:11 2005 => Scanning File C:\PROGRA~1\Ahead\WMPBurn\NEROBU~1.DLL
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\WAVMP3~1.DLL
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\DUMMYT~1.DLL
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\WmaObj.dll
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\PLAYLI~2.DLL
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\PLAYLI~3.DLL
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\PLAYLI~4.DLL
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\MMInet.dll
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\NETUTI~1.DLL
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\MUSICM~1\MUSICM~1\MMHttp.dll
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\ASUS\SMARTD~1\SMARTD~1.EXE
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\ASUS\SMARTD~1\MSVCP60.dll
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\ASUS\SMARTD~1\EIO.DLL
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\ASUS\SMARTD~1\nvgpio.dll
Sun May 15 23:25:12 2005 => Scanning File C:\WINDOWS\System32\mshtml.dll
Sun May 15 23:25:12 2005 => Scanning File C:\WINDOWS\System32\msls31.dll
Sun May 15 23:25:12 2005 => Scanning File C:\WINDOWS\System32\msimtf.dll
Sun May 15 23:25:12 2005 => Scanning File C:\WINDOWS\System32\mshtmled.dll
Sun May 15 23:25:12 2005 => Scanning File C:\WINDOWS\system32\ctfmon.exe
Sun May 15 23:25:12 2005 => Scanning File C:\WINDOWS\system32\MSUTB.dll
Sun May 15 23:25:12 2005 => Scanning File C:\PROGRA~1\INTERM~1\SPYSUB~1\SpySub.exe
Sun May 15 23:25:12 2005 => Scanning File c:\PROGRA~1\INTERM~1\SPYSUB~1\en-us.dll
Sun May 15 23:25:13 2005 => Scanning File c:\PROGRA~1\INTERM~1\SPYSUB~1\ssengine.dll
Sun May 15 23:25:13 2005 => Scanning File C:\PROGRA~1\COMMON~1\System\ado\msado15.dll
Sun May 15 23:25:13 2005 => Scanning File C:\PROGRA~1\COMMON~1\System\ado\msadrh15.dll
Sun May 15 23:25:13 2005 => Scanning File c:\progra~1\mcafee.com\vso\mcvsftsn.exe
Sun May 15 23:25:13 2005 => Scanning File C:\PROGRA~1\MESSEN~1\msmsgs.exe
Sun May 15 23:25:13 2005 => Scanning File C:\WINDOWS\system32\XPOB2RES.DLL
Sun May 15 23:25:13 2005 => Scanning File C:\PROGRA~1\EXPERT~1\GoToMyPC\g2comm.exe
Sun May 15 23:25:13 2005 => Scanning File C:\WINDOWS\system32\pdh.dll
Sun May 15 23:25:13 2005 => Scanning File C:\WINDO