Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

trojan.w32.looksky came back or never left [RESOLVED]


  • This topic is locked This topic is locked

#1
patrickg26

patrickg26

    Member

  • Member
  • PipPip
  • 20 posts
Hello. I am having issues with the trojan.w32.looksky. When it first hit my comp it was next to impossible for any open program to function correctly. Internet explorer kept opening windows with the "safeweb" address, and the "windows security alert" box was popping up as well. I was finally able to shut the comp down. When I rebooted, I ran an AVG anti-virus scan. It found one threat and healed it. That got rid of the bright red picture on my desktop. But my taskbar kept disappearing/reappearing on me. To get rid of that I ran the SmitFraudfix. After that everything was fine for a day. But now the image is back on my desktop and the pop ups are starting again. Here is a copy of my Hijackthis log. And thank you for your help.

Logfile of HijackThis v1.99.1
Scan saved at 7:03:18 PM, on 8/26/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
c:\Program Files\Norton Internet Security\ISSVC.exe
c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
c:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\EPSON\ESM2\eEBSVC.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\CA\PPRT\bin\ITMRTSVC.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCJserv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\wanmpsvc.exe
c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Yahoo!\browser\ybrwicon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\WINDOWS\system32\PRISMSVR.EXE
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\PROGRA~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe
C:\HP\KBD\KBD.EXE
C:\PROGRA~1\MUSICM~1\MUSICM~1\MMDiag.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Common Files\AOL\1127691177\ee\services\safetyCore\ver210_5_2_1\AOLSP Scheduler.exe
C:\Program Files\Common Files\AOL\1127691177\ee\aolsoftware.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\2Wire\2PortalMon.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mim.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Lexmark 8300 Series\lxcjmon.exe
C:\Program Files\Lexmark 8300 Series\ezprint.exe
C:\Program Files\Napster\napster.exe
C:\WINDOWS\system32\lxcjcoms.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\Program Files\2Wire 802.11g Wireless\PRISMCFG.EXE
C:\Program Files\Compaq Connections\6750491\Program\Compaq Connections.exe
C:\Program Files\EPSON\ESM2\STMS.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Creative Home\Hallmark Card Studio Express\Planner\PLNRnote.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Common Files\AOL\1127691177\ee\aolsoftware.exe
C:\Program Files\Common Files\AOL\1127691177\ee\aolsoftware.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarerefer...=...6Ojg5&lid=2
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Yahoo!
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: MSVPS System - {208D7BCC-9857-4C9E-823B-D04E72490A67} - C:\WINDOWS\mxduo.dll
O2 - BHO: (no name) - {45A4902E-4479-4EAE-A186-8D0F7E4C78DE} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [YBrowser] C:\Program Files\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [URLLSTCK.exe] c:\Program Files\Norton Internet Security\UrlLstCk.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [sscRun] C:\Program Files\Common Files\AOL\1127691177\ee\SSCRun.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [PRISMSVR.EXE] "C:\WINDOWS\system32\PRISMSVR.EXE" /APPLY
O4 - HKLM\..\Run: [MMTray] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe"
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe
O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [IPInSightMonitor 01] "C:\Program Files\SBC Yahoo!\Connection Manager\IP InSight\IPMon32.exe"
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1127691177\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AOLSPScheduler] C:\Program Files\Common Files\AOL\1127691177\ee\services\safetyCore\ver210_5_2_1\AOLSP Scheduler.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [2wSysTray] C:\Program Files\2Wire\2PortalMon.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [LXCJCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCJtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [lxcjmon.exe] "C:\Program Files\Lexmark 8300 Series\lxcjmon.exe"
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 8300 Series\ezprint.exe"
O4 - HKLM\..\Run: [NapsterShell] C:\Program Files\Napster\napster.exe /systray
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - Global Startup: 2Wire Wireless Client.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Compaq Connections.lnk = C:\Program Files\Compaq Connections\6750491\Program\Compaq Connections.exe
O4 - Global Startup: EPSON Background Monitor.lnk = C:\Program Files\EPSON\ESM2\STMS.exe
O4 - Global Startup: ExpressPLNRnote.lnk = C:\Program Files\Creative Home\Hallmark Card Studio Express\Planner\PLNRnote.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O8 - Extra context menu item: Add To Compaq Organize... - C:\PROGRA~1\HEWLET~1\COMPAQ~1\bin/module.main/favorites\ie_add_to.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra 'Tools' menuitem: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akama...ex/qtplugin.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} (Citrix ICA Client) - https://www01.webpcf...trix/wficat.cab
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://wdownload.wea...Transporter.cab?
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {49232000-16E4-426C-A231-62846947304B} (SysData Class) - http://ipgweb.cce.hp...ads/sysinfo.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.syma...n/bin/cabsa.cab
O16 - DPF: {BCBC9371-595D-11D4-A96D-00105A1CEF6C} (View22RTE Class) - http://onlinedesigne...p/view22rte.cab
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - http://photos.yahoo....plorer1_9us.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.m...ash/swflash.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: wmphost - {DC161EFD-D878-4678-BF23-2B341DB9724C} - C:\WINDOWS\wmphost.dll
O21 - SSODL: wmpdev - {C5E02FB8-8C35-4A63-984B-D25ADD61D564} - C:\WINDOWS\wmpdev.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: EpsonBidirectionalService - Unknown owner - C:\Program Files\EPSON\ESM2\eEBSVC.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - c:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: CA Pest Patrol Realtime Protection Service (ITMRTSVC) - CA, Inc. - C:\Program Files\CA\PPRT\bin\ITMRTSVC.exe
O23 - Service: LXCJCustomerConnect - Unknown owner - C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\LXCJserv.exe
O23 - Service: lxcj_device - - C:\WINDOWS\system32\lxcjcoms.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\system32\YPCSER~1.EXE
  • 0

Advertisements


#2
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Hello patrickg26, I'm just looking over your log and will get back to you soon.
  • 0

#3
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Hello Patrick

Before we begin, you should save these instructions in Notepad to your desktop, or print them, for easy reference. Much of our fix will be done in Safe mode, and you will be unable to access this thread at that time. If you have questions at any point, or are unsure of the instructions, feel free to post here and ask for clarification before proceeding.



Download SDFix and save it to your Desktop.

Double click SDFix.exe and it will extract the files to %systemdrive%
(Drive that contains the Windows Directory, typically C:\SDFix)

Please then reboot your computer in Safe Mode by doing the following :
  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
  • Instead of Windows loading as normal, the Advanced Options Menu should appear;
  • Select the first option, to run Windows in Safe Mode, then press Enter.
  • Choose your usual account.
  • Open the extracted SDFix folder and double click RunThis.bat to start the script.
  • Type Y to begin the cleanup process.
  • It will remove any Trojan Services and Registry Entries that it finds then prompt you to press any key to Reboot.
  • Press any Key and it will restart the PC.
  • When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.
  • Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt
    (Report.txt will also be copied to Clipboard ready for posting back on the forum).
  • Finally paste the contents of the Report.txt back on the forum



Please download Deckard's System Scanner (DSS) and save it to your Desktop.
  • Close all other windows before proceeding.
  • Double-click on dss.exe and follow the prompts.
  • If your anti-virus or firewall complains, please allow this script to run as it is not malicious.
  • When it has finished, dss will open two Notepads main.txt and extra.txt -- please copy (CTRL+A and then CTRL+C) and paste (CTRL+V) the contents of main.txt and extra.txt in your next reply.

So in your next reply I need to see the following : the SDFix report, the two DSS texts in full, and tell me how your PC is running now and if you had any problems.
  • 0

#4
patrickg26

patrickg26

    Member

  • Topic Starter
  • Member
  • PipPip
  • 20 posts
Hello Rorschach, thank you for the quick reply.

I'm having a problem with the SDFix. I can download it to my desktop, double click, then click the "Installation" button. After it completes its process, I reboot in safe mode but can't find the extracted SDFix file.

My default destination folder is "C:\" . Should it be "C:\SDFix" Confused some on this step

Thanks
  • 0

#5
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Hello Patrick

The file you need to run should be in the folder C:\SDFix. Just have a look around there for the SDFix folder, and if you still can't find it then try search for it. Although it should be in C:\SDFix. Let me know how that goes.
  • 0

#6
patrickg26

patrickg26

    Member

  • Topic Starter
  • Member
  • PipPip
  • 20 posts
Hello Rorschach

Thanks for the continued help. The bright red smitfraud logo is off my desktop again. The taskbar has stopped disappearing/ reappearing. And I haven't had any pop ups clutter my screen. Here are the SDFix and DSS logs...


SDFix: Version 1.100

Run by Compaq_Owner on Tue 08/28/2007 at 04:05 PM

Microsoft Windows XP [Version 5.1.2600]

Running From: C:\SDFix

Safe Mode:
Checking Services:


Restoring Windows Registry Values
Restoring Windows Default Hosts File

Rebooting...


Normal Mode:
Checking Files:

Trojan Files Found:

C:\Documents and Settings\Compaq_Owner\Favorites\Error Cleaner.url - Deleted
C:\Documents and Settings\Compaq_Owner\Favorites\Privacy Protector.url - Deleted
C:\Documents and Settings\Compaq_Owner\Favorites\Spyware&Malware Protection.url - Deleted
C:\WINDOWS\privacy_danger\index.htm - Deleted
C:\WINDOWS\privacy_danger\images\capt.gif - Deleted
C:\WINDOWS\privacy_danger\images\danger.jpg - Deleted
C:\WINDOWS\privacy_danger\images\down.gif - Deleted
C:\WINDOWS\privacy_danger\images\spacer.gif - Deleted
C:\WINDOWS\dat.txt - Deleted
C:\WINDOWS\main_uninstaller.exe - Deleted
C:\WINDOWS\rs.txt - Deleted


Folder C:\WINDOWS\privacy_danger - Removed

Removing Temp Files...

ADS Check:

C:\WINDOWS
No streams found.

C:\WINDOWS\system32
No streams found.

C:\WINDOWS\system32\svchost.exe
No streams found.

C:\WINDOWS\system32\ntoskrnl.exe
No streams found.



Final Check:

Remaining Services:
------------------



Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Compaq Connections\\6750491\\Program\\Compaq Connections.exe"="C:\\Program Files\\Compaq Connections\\6750491\\Program\\Compaq Connections.exe:*:Enabled:BackWeb for Presario"
"C:\\Program Files\\EarthLink TotalAccess\\TaskPanl.exe"="C:\\Program Files\\EarthLink TotalAccess\\TaskPanl.exe:*:Enabled:Earthlink"
"c:\\Program Files\\Yahoo!\\Messenger\\YPager.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YPAGER.EXE:*:Enabled:Yahoo! Messenger"
"c:\\Program Files\\Yahoo!\\Messenger\\yserver.exe"="C:\\Program Files\\Yahoo!\\Messenger\\yserver.exe:*:Enabled:Yahoo! FT Server"
"C:\\Program Files\\America Online 9.0\\waol.exe"="C:\\Program Files\\America Online 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0a\\waol.exe"="C:\\Program Files\\America Online 9.0a\\waol.exe:*:Enabled:America Online 9.0a"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0b\\waol.exe"="C:\\Program Files\\America Online 9.0b\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\TopSpeed\\3.0\\aoltpsd3.exe"="C:\\Program Files\\Common Files\\AOL\\TopSpeed\\3.0\\aoltpsd3.exe:*:Enabled:AOL TopSpeed"
"C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"="C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe:*:Enabled:AOL Loader"
"C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aolsoftware.exe"="C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aolsoftware.exe:*:Enabled:AOL Services"
"C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\AOLOpenRide.exe"="C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\AOLOpenRide.exe:*:Enabled:AOL OpenRide"
"C:\\WINDOWS\\system32\\rk.exe"="C:\\WINDOWS\\system32\\rk.exe:*:Enabled:rk.exe"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aim6.exe"="C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aim6.exe:*:Enabled:AIM"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\Grisoft\\AVG7\\avginet.exe"="C:\\Program Files\\Grisoft\\AVG7\\avginet.exe:*:Enabled:avginet.exe"
"C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe:*:Enabled:avgamsvr.exe"
"C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe:*:Enabled:avgcc.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%ProgramFiles%\\iTunes\\iTunes.exe"="%ProgramFiles%\\iTunes\\iTunes.exe:*:enabled:iTunes"
"C:\\Program Files\\America Online 9.0\\waol.exe"="C:\\Program Files\\America Online 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0a\\waol.exe"="C:\\Program Files\\America Online 9.0a\\waol.exe:*:Enabled:America Online 9.0a"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0b\\waol.exe"="C:\\Program Files\\America Online 9.0b\\waol.exe:*:Enabled:AOL"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"

Remaining Files:
---------------

File Backups: - C:\SDFix\backups\backups.zip

Files with Hidden Attributes:

C:\WINDOWS\twain.dll
C:\WINDOWS\twain_32.dll
C:\WINDOWS\system32\mfc42.dll
C:\WINDOWS\system32\msvcirt.dll
C:\WINDOWS\system32\msvcp60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\oleaut32.dll
C:\WINDOWS\system32\olepro32.dll
C:\Program Files\America Online 9.0\aolphx.exe
C:\Program Files\America Online 9.0\aoltray.exe
C:\Program Files\America Online 9.0\RBM.exe
C:\Program Files\America Online 9.0a\aolphx.exe
C:\Program Files\America Online 9.0a\aoltray.exe
C:\Program Files\America Online 9.0a\RBM.exe
C:\Program Files\America Online 9.0b\aolphx.exe
C:\Program Files\America Online 9.0b\aoltray.exe
C:\Program Files\America Online 9.0b\RBM.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Windows Media Player\mplayer2.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\WINDOWS\system32\regsvr32.exe
C:\Deckard\System Scanner\20070825021815\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D2.tmp
C:\Deckard\System Scanner\20070825021815\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT454.tmp
C:\Deckard\System Scanner\20070825021815\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT455.tmp
C:\Deckard\System Scanner\20070825021815\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT456.tmp
C:\Deckard\System Scanner\20070825021815\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT457.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT100.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT101.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT102.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT103.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT104.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT105.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT106.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT107.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT108.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT109.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT10A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT10C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT10D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT10F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT110.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT112.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT113.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT115.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT116.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT118.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT119.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT120.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT122.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT123.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT125.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT126.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT127.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT128.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT129.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT12A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT136.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT13B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT13F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT140.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT143.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT151.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT153.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT154.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT156.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT157.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT158.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT15A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT15D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT160.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT162.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT163.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT165.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT166.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT168.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT16B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT16D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT172.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT181.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT185.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT195.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT196.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT19F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1AA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1AB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1AC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1AD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1AE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1BA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1BB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1BC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1BD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1BE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1CA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1CC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1CD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1CF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1DA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1DC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1DD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1DE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1DF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1EA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1EB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1EC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1ED.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1EE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT200.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT201.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT202.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT203.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT204.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT205.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT206.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT207.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT208.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT209.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT20B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT20C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT20E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT20F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT211.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT212.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT213.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT214.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT215.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT216.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT217.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT218.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT219.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT21B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT21C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT21D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT21E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT21F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT220.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT221.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT222.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT223.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT225.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT226.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT227.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT228.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT229.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT230.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT231.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT232.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT233.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT234.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT236.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT237.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT238.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT239.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT240.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT241.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT242.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT243.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT245.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT246.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT248.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT249.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT24B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT24C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT24E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT24F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT251.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT252.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT254.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT255.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT257.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT258.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT25A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT25B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT25D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT25E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT260.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT261.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT263.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT264.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT266.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT267.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT269.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT26A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT26C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT26D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT26F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT270.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT271.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT272.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT273.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT274.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT275.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT277.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT278.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT27A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT27B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT27D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT27E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT280.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT281.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT283.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT284.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT286.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT287.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT289.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT28A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT28C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT28D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT28E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT28F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT290.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT291.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT292.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT293.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT294.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT295.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT296.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT297.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT298.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT299.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT29B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT29C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT29E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT29F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2BA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2BC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2BD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2BF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2CA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2CB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2CD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2CE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2DA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2DB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2DC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2DE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2DF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2EA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2EB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2EC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2ED.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2EE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2EF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2FA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2FB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2FD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2FE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT300.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT301.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT303.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT304.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT306.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT307.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT308.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT309.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT30A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT30B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT30C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT30E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT30F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT311.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT312.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT313.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT314.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT315.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT316.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT317.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT319.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1�
  • 0

#7
patrickg26

patrickg26

    Member

  • Topic Starter
  • Member
  • PipPip
  • 20 posts
Shortly after the last post AVG keeps detecting a Trojan horse Clicker.IIP.... and the file has a mxduo.dll at the end. Every time AVG detects the virus that's when the taskbar disappears/ reappears. Other than that everything seems fine.
  • 0

#8
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Please post the rest of the SDFix log and the DSS logs as there is a bit more work to do :whistling:
We making good progress.

Edited by Rorschach112, 28 August 2007 - 05:50 PM.

  • 0

#9
patrickg26

patrickg26

    Member

  • Topic Starter
  • Member
  • PipPip
  • 20 posts
Here goes the rest of the logs... had a mental lapse earlier lol

SDfix log

SDFix: Version 1.100

Run by Compaq_Owner on Tue 08/28/2007 at 04:05 PM

Microsoft Windows XP [Version 5.1.2600]

Running From: C:\SDFix

Safe Mode:
Checking Services:


Restoring Windows Registry Values
Restoring Windows Default Hosts File

Rebooting...


Normal Mode:
Checking Files:

Trojan Files Found:

C:\Documents and Settings\Compaq_Owner\Favorites\Error Cleaner.url - Deleted
C:\Documents and Settings\Compaq_Owner\Favorites\Privacy Protector.url - Deleted
C:\Documents and Settings\Compaq_Owner\Favorites\Spyware&Malware Protection.url - Deleted
C:\WINDOWS\privacy_danger\index.htm - Deleted
C:\WINDOWS\privacy_danger\images\capt.gif - Deleted
C:\WINDOWS\privacy_danger\images\danger.jpg - Deleted
C:\WINDOWS\privacy_danger\images\down.gif - Deleted
C:\WINDOWS\privacy_danger\images\spacer.gif - Deleted
C:\WINDOWS\dat.txt - Deleted
C:\WINDOWS\main_uninstaller.exe - Deleted
C:\WINDOWS\rs.txt - Deleted


Folder C:\WINDOWS\privacy_danger - Removed

Removing Temp Files...

ADS Check:

C:\WINDOWS
No streams found.

C:\WINDOWS\system32
No streams found.

C:\WINDOWS\system32\svchost.exe
No streams found.

C:\WINDOWS\system32\ntoskrnl.exe
No streams found.



Final Check:

Remaining Services:
------------------



Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Compaq Connections\\6750491\\Program\\Compaq Connections.exe"="C:\\Program Files\\Compaq Connections\\6750491\\Program\\Compaq Connections.exe:*:Enabled:BackWeb for Presario"
"C:\\Program Files\\EarthLink TotalAccess\\TaskPanl.exe"="C:\\Program Files\\EarthLink TotalAccess\\TaskPanl.exe:*:Enabled:Earthlink"
"c:\\Program Files\\Yahoo!\\Messenger\\YPager.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YPAGER.EXE:*:Enabled:Yahoo! Messenger"
"c:\\Program Files\\Yahoo!\\Messenger\\yserver.exe"="C:\\Program Files\\Yahoo!\\Messenger\\yserver.exe:*:Enabled:Yahoo! FT Server"
"C:\\Program Files\\America Online 9.0\\waol.exe"="C:\\Program Files\\America Online 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0a\\waol.exe"="C:\\Program Files\\America Online 9.0a\\waol.exe:*:Enabled:America Online 9.0a"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0b\\waol.exe"="C:\\Program Files\\America Online 9.0b\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\TopSpeed\\3.0\\aoltpsd3.exe"="C:\\Program Files\\Common Files\\AOL\\TopSpeed\\3.0\\aoltpsd3.exe:*:Enabled:AOL TopSpeed"
"C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"="C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe:*:Enabled:AOL Loader"
"C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aolsoftware.exe"="C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aolsoftware.exe:*:Enabled:AOL Services"
"C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\AOLOpenRide.exe"="C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\AOLOpenRide.exe:*:Enabled:AOL OpenRide"
"C:\\WINDOWS\\system32\\rk.exe"="C:\\WINDOWS\\system32\\rk.exe:*:Enabled:rk.exe"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aim6.exe"="C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aim6.exe:*:Enabled:AIM"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\Grisoft\\AVG7\\avginet.exe"="C:\\Program Files\\Grisoft\\AVG7\\avginet.exe:*:Enabled:avginet.exe"
"C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe:*:Enabled:avgamsvr.exe"
"C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe:*:Enabled:avgcc.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%ProgramFiles%\\iTunes\\iTunes.exe"="%ProgramFiles%\\iTunes\\iTunes.exe:*:enabled:iTunes"
"C:\\Program Files\\America Online 9.0\\waol.exe"="C:\\Program Files\\America Online 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0a\\waol.exe"="C:\\Program Files\\America Online 9.0a\\waol.exe:*:Enabled:America Online 9.0a"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0b\\waol.exe"="C:\\Program Files\\America Online 9.0b\\waol.exe:*:Enabled:AOL"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"

Remaining Files:
---------------

File Backups: - C:\SDFix\backups\backups.zip

Files with Hidden Attributes:

C:\WINDOWS\twain.dll
C:\WINDOWS\twain_32.dll
C:\WINDOWS\system32\mfc42.dll
C:\WINDOWS\system32\msvcirt.dll
C:\WINDOWS\system32\msvcp60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\oleaut32.dll
C:\WINDOWS\system32\olepro32.dll
C:\Program Files\America Online 9.0\aolphx.exe
C:\Program Files\America Online 9.0\aoltray.exe
C:\Program Files\America Online 9.0\RBM.exe
C:\Program Files\America Online 9.0a\aolphx.exe
C:\Program Files\America Online 9.0a\aoltray.exe
C:\Program Files\America Online 9.0a\RBM.exe
C:\Program Files\America Online 9.0b\aolphx.exe
C:\Program Files\America Online 9.0b\aoltray.exe
C:\Program Files\America Online 9.0b\RBM.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Windows Media Player\mplayer2.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\WINDOWS\system32\regsvr32.exe
C:\Deckard\System Scanner\20070825021815\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D2.tmp
C:\Deckard\System Scanner\20070825021815\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT454.tmp
C:\Deckard\System Scanner\20070825021815\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT455.tmp
C:\Deckard\System Scanner\20070825021815\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT456.tmp
C:\Deckard\System Scanner\20070825021815\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT457.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT100.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT101.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT102.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT103.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT104.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT105.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT106.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT107.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT108.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT109.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT10A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT10C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT10D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT10F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT110.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT112.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT113.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT115.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT116.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT118.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT119.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT11F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT120.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT122.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT123.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT125.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT126.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT127.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT128.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT129.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT12A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT136.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT13B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT13F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT140.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT143.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT151.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT153.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT154.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT156.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT157.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT158.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT15A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT15D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT160.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT162.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT163.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT165.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT166.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT168.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT16B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT16D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT172.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT181.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT185.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT195.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT196.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT19F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1A9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1AA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1AB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1AC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1AD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1AE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1B9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1BA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1BB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1BC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1BD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1BE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1C9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1CA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1CC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1CD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1CF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1D9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1DA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1DC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1DD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1DE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1DF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1E9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1EA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1EB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1EC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1ED.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1EE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1F9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT1FF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT200.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT201.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT202.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT203.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT204.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT205.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT206.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT207.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT208.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT209.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT20B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT20C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT20E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT20F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT211.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT212.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT213.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT214.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT215.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT216.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT217.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT218.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT219.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT21B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT21C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT21D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT21E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT21F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT220.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT221.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT222.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT223.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT225.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT226.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT227.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT228.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT229.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT22F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT230.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT231.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT232.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT233.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT234.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT236.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT237.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT238.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT239.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT23F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT240.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT241.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT242.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT243.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT245.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT246.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT248.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT249.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT24B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT24C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT24E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT24F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT251.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT252.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT254.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT255.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT257.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT258.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT25A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT25B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT25D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT25E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT260.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT261.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT263.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT264.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT266.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT267.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT269.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT26A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT26C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT26D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT26F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT270.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT271.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT272.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT273.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT274.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT275.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT277.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT278.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT27A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT27B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT27D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT27E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT280.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT281.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT283.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT284.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT286.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT287.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT289.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT28A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT28C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT28D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT28E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT28F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT290.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT291.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT292.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT293.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT294.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT295.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT296.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT297.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT298.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT299.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT29B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT29C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT29E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT29F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2A9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2AF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2B9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2BA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2BC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2BD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2BF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2C9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2CA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2CB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2CD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2CE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2D9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2DA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2DB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2DC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2DE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2DF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2E8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2EA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2EB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2EC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2ED.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2EE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2EF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2F8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2FA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2FB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2FD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT2FE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT300.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT301.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT303.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT304.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT306.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT307.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT308.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT309.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT30A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT30B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT30C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT30E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT30F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT311.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT312.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT313.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT314.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT315.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT316.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT317.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT319.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT31A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BI
  • 0

#10
patrickg26

patrickg26

    Member

  • Topic Starter
  • Member
  • PipPip
  • 20 posts
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT31C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT31D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT31F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT320.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT321.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT322.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT323.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT324.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT325.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT327.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT328.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT32A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT32B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT32C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT32D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT32E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT32F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT330.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT332.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT333.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT334.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT335.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT336.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT337.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT338.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT33A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT33B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT33D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT33E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT33F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT340.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT341.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT342.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT343.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT345.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT346.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT348.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT349.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT34B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT34C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT34D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT34E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT34F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT350.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT351.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT353.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT354.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT356.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT357.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT358.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT359.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT35A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT35B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT35C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT35E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT35F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT360.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT361.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT362.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT363.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT364.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT366.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT367.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT369.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT36A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT36B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT36C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT36D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT36E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT36F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT371.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT372.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT373.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT374.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT375.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT376.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT377.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT379.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT37A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT37C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT37D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT37E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT37F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT380.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT381.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT382.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT384.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT385.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT386.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT387.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT388.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT389.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT38A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT38C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT38D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT38E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT38F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT390.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT391.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT392.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT394.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT395.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT396.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT397.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT398.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT399.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT39A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT39C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT39D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT39F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3A0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3A1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3A2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3A3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3A4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3A5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3A7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3A8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3A9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3AA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3AB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3AC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3AD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3AE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3AF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3B0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3B1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3B2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3B4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3B5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3B6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3B7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3B8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3B9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3BA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3BB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3BC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3BD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3BE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3BF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3C1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3C2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3C3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3C4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3C5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3C6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3C7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3C9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3CA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3CB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3CC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3CD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3CE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3CF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3D9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3DA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3DB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3DC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3DD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3DE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3DF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3E0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3E1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3E2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3E3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3E4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3E5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3E6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3E7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3E8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3EA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3EB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3EC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3ED.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3EE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3EF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3F0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3F1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3F2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3F3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3F4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3F5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3F6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3F7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3F8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3F9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3FA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3FB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3FC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3FD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3FE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT3FF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT400.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT401.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT402.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT403.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT404.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT405.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT406.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT407.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT408.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT409.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT40A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT40B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT40C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT40D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT40E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT40F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT410.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT411.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT412.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT413.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT414.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT415.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT416.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT417.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT418.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT419.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT41A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT41B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT41C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT41D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT41E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT41F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT420.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT421.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT422.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT423.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT424.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT425.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT426.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT427.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT428.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT429.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT42A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT42B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT42C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT42D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT42E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT42F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT430.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT431.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT432.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT433.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT434.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT435.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT436.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT437.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT438.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT439.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT43B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT43C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT43E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT43F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT440.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT441.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT442.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT443.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT444.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT445.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT446.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT447.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT448.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT449.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT44A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT44B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT44C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT44D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT44E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT44F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT450.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT451.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT452.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT453.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT454.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT455.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT456.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT458.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT459.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT45A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT45B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT45C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT45D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT45E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT45F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT460.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT461.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT462.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT463.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT464.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT465.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT466.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT467.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT468.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT469.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT46A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT46B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT46C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT46D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT46E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT46F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT470.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT472.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT473.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT474.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT475.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT476.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT478.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT479.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT47A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT47B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT47C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT47D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT47E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT47F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT480.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT481.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT482.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT483.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT484.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT485.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT486.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT488.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT489.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT48B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT48C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT48D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT48E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT48F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT490.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT491.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT492.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT493.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT494.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT495.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT496.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT497.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT498.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT499.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT49B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT49C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT49E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT49F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4A0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4A1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4A2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4A3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4A4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4A5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4A6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4A7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4A8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4A9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4AA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4AB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4AC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4AE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4AF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4B1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4B2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4B3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4B4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4B5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4B6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4B7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4B8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4B9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4BA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4BC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4BD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4BF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4C0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4C1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4C2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4C3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4C4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4C7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4C8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4C9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4CA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4CC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4CD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4CF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4D0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4D1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4D2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4D3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4D4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4D5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4D6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4D7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4D8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4DA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4DB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4DC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4DD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4DE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4DF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4E0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4E1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4E2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4E3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4E5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4E6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4E7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4E8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4E9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4EA.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4EB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4EC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4ED.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4EE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4F0.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4F1.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4F2.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4F3.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4F4.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4F5.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4F6.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4F7.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4F8.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4F9.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4FB.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4FC.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4FD.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4FE.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT4FF.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT500.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT501.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT502.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT503.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT504.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT506.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT507.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT508.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT509.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT50A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT50B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT50C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT50D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT50E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT50F.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT511.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT512.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT513.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT514.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT515.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT517.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT518.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT519.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT51A.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT51B.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT51C.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT51D.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\BIT51E.tmp
C:\Deckard\System Scanner\20070826124101\backup\DOCUME~1\COMPAQ~1\LOCALS~1&#
  • 0

Advertisements


#11
patrickg26

patrickg26

    Member

  • Topic Starter
  • Member
  • PipPip
  • 20 posts
Deckard's System Scanner v20070826.66
Run by Compaq_Owner on 2007-08-28 16:20:26
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- System Restore --------------------------------------------------------------

Successfully created a Deckard's System Scanner Restore Point.


-- Last 5 Restore Point(s) --
75: 2007-08-28 23:20:33 UTC - RP636 - Deckard's System Scanner Restore Point
74: 2007-08-28 00:13:30 UTC - RP635 - System Checkpoint
73: 2007-08-26 19:27:27 UTC - RP634 - Deckard's System Scanner Restore Point
72: 2007-08-26 14:40:53 UTC - RP633 - System Checkpoint
71: 2007-08-25 09:15:56 UTC - RP632 - Deckard's System Scanner Restore Point


-- First Restore Point --
1: 2007-05-31 05:24:05 UTC - RP562 - System Checkpoint


Backed up registry hives.
Performed disk cleanup.



-- HijackThis (run as Compaq_Owner.exe) ----------------------------------------

Logfile of HijackThis v1.99.1
Scan saved at 4:22:48 PM, on 8/28/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\Explorer.EXE
c:\Program Files\Norton Internet Security\ISSVC.exe
c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
c:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\EPSON\ESM2\eEBSVC.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\CA\PPRT\bin\ITMRTSVC.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCJserv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\wanmpsvc.exe
c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Yahoo!\browser\ybrwicon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\PROGRA~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe
C:\WINDOWS\system32\PRISMSVR.EXE
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\HP\KBD\KBD.EXE
C:\PROGRA~1\MUSICM~1\MUSICM~1\MMDiag.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Common Files\AOL\1127691177\ee\AOLSoftware.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Common Files\AOL\1127691177\ee\services\safetyCore\ver210_5_2_1\AOLSP Scheduler.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\Musicmatch\Musicmatch Jukebox\mim.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\2Wire\2PortalMon.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Lexmark 8300 Series\lxcjmon.exe
C:\Program Files\Lexmark 8300 Series\ezprint.exe
C:\Program Files\Napster\napster.exe
C:\WINDOWS\system32\lxcjcoms.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\Program Files\2Wire 802.11g Wireless\PRISMCFG.EXE
C:\Program Files\Compaq Connections\6750491\Program\Compaq Connections.exe
C:\Program Files\EPSON\ESM2\STMS.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Creative Home\Hallmark Card Studio Express\Planner\PLNRnote.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Common Files\AOL\1127691177\ee\aolsoftware.exe
C:\Program Files\Common Files\AOL\1127691177\ee\aolsoftware.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Documents and Settings\Compaq_Owner\Desktop\dss.exe
C:\PROGRA~1\HIJACK~1\Compaq_Owner.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarerefer...=...6Ojg5&lid=2
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Yahoo!
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: MSVPS System - {208D7BCC-9857-4C9E-823B-D04E72490A67} - C:\WINDOWS\mxduo.dll (file missing)
O2 - BHO: (no name) - {45A4902E-4479-4EAE-A186-8D0F7E4C78DE} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [YBrowser] C:\Program Files\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [URLLSTCK.exe] c:\Program Files\Norton Internet Security\UrlLstCk.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [sscRun] C:\Program Files\Common Files\AOL\1127691177\ee\SSCRun.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [PRISMSVR.EXE] "C:\WINDOWS\system32\PRISMSVR.EXE" /APPLY
O4 - HKLM\..\Run: [MMTray] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe"
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe
O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [IPInSightMonitor 01] "C:\Program Files\SBC Yahoo!\Connection Manager\IP InSight\IPMon32.exe"
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1127691177\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AOLSPScheduler] C:\Program Files\Common Files\AOL\1127691177\ee\services\safetyCore\ver210_5_2_1\AOLSP Scheduler.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [2wSysTray] C:\Program Files\2Wire\2PortalMon.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [LXCJCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCJtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [lxcjmon.exe] "C:\Program Files\Lexmark 8300 Series\lxcjmon.exe"
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 8300 Series\ezprint.exe"
O4 - HKLM\..\Run: [NapsterShell] C:\Program Files\Napster\napster.exe /systray
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - Global Startup: 2Wire Wireless Client.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Compaq Connections.lnk = C:\Program Files\Compaq Connections\6750491\Program\Compaq Connections.exe
O4 - Global Startup: EPSON Background Monitor.lnk = C:\Program Files\EPSON\ESM2\STMS.exe
O4 - Global Startup: ExpressPLNRnote.lnk = C:\Program Files\Creative Home\Hallmark Card Studio Express\Planner\PLNRnote.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O8 - Extra context menu item: Add To Compaq Organize... - C:\PROGRA~1\HEWLET~1\COMPAQ~1\bin/module.main/favorites\ie_add_to.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra 'Tools' menuitem: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akama...ex/qtplugin.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} (Citrix ICA Client) - https://www01.webpcf...trix/wficat.cab
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://wdownload.wea...Transporter.cab?
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {49232000-16E4-426C-A231-62846947304B} (SysData Class) - http://ipgweb.cce.hp...ads/sysinfo.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.syma...n/bin/cabsa.cab
O16 - DPF: {BCBC9371-595D-11D4-A96D-00105A1CEF6C} (View22RTE Class) - http://onlinedesigne...p/view22rte.cab
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - http://photos.yahoo....plorer1_9us.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.m...ash/swflash.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: wmphost - {3B5182BF-C2F6-40D6-85EB-8F840F5C552F} - C:\WINDOWS\wmphost.dll
O21 - SSODL: wmpdev - {0D9B4131-7552-41EE-8CA4-EB486BD1B4E9} - C:\WINDOWS\wmpdev.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: EpsonBidirectionalService - Unknown owner - C:\Program Files\EPSON\ESM2\eEBSVC.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - c:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: CA Pest Patrol Realtime Protection Service (ITMRTSVC) - CA, Inc. - C:\Program Files\CA\PPRT\bin\ITMRTSVC.exe
O23 - Service: LXCJCustomerConnect - Unknown owner - C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\LXCJserv.exe
O23 - Service: lxcj_device - - C:\WINDOWS\system32\lxcjcoms.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\system32\YPCSER~1.EXE


-- File Associations -----------------------------------------------------------

All associations okay.


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

R2 MDC8021X (AEGIS Protocol (IEEE 802.1x) v2.3.1.9) - c:\windows\system32\drivers\mdc8021x.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 2.3.1.9>

S3 HSF_DP - c:\windows\system32\drivers\hsf_dp.sys (file missing)
S3 HSFHWBS2 - c:\windows\system32\drivers\hsfhwbs2.sys (file missing)
S3 smserial - c:\windows\system32\drivers\smserial.sys (file missing)
S3 winachsf - c:\windows\system32\drivers\hsf_cnxt.sys (file missing)


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
R2 EpsonBidirectionalService - c:\program files\epson\esm2\eebsvc.exe
R2 Viewpoint Manager Service - "c:\program files\viewpoint\common\viewpointservice.exe" <Not Verified; Viewpoint Corporation; Viewpoint Manager>

S3 YPCService - c:\windows\system32\ypcser~1.exe <Not Verified; Yahoo! Inc.; YPCService Module>


-- Device Manager: Disabled ----------------------------------------------------

No disabled devices found.


-- Scheduled Tasks -------------------------------------------------------------

2007-07-14 11:35:02 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2005-05-07 16:51:42 364 --a------ C:\WINDOWS\Tasks\Symantec NetDetect.job


-- Files created between 2007-07-28 and 2007-08-28 -----------------------------

2007-08-28 16:03:55 0 d-------- C:\WINDOWS\ERUNT
2007-08-25 15:55:36 335872 --a------ C:\WINDOWS\wmpdev.dll
2007-08-25 15:55:35 241664 --a------ C:\WINDOWS\wmphost.dll
2007-08-25 15:16:05 0 dr-h----- C:\$VAULT$.AVG
2007-08-25 02:08:39 6370 --a------ C:\WINDOWS\system32\tmp.reg
2007-08-25 02:06:49 288417 --a------ C:\WINDOWS\system32\SrchSTS.exe <Not Verified; S!Ri; SrchSTS>
2007-08-25 02:06:49 51200 --a------ C:\WINDOWS\system32\dumphive.exe
2007-08-25 02:06:47 53248 --a------ C:\WINDOWS\system32\Process.exe <Not Verified; http://www.beyondlogic.org; Command Line Process Utility>
2007-08-02 01:50:07 0 d-------- C:\Documents and Settings\Compaq_Owner\Application Data\Roxio
2007-08-02 01:31:56 0 d-------- C:\Program Files\Common Files\Napster Shared
2007-08-02 01:31:28 0 d-------- C:\Documents and Settings\All Users\Application Data\Napster
2007-08-02 01:31:19 0 d-------- C:\Program Files\Napster


-- Find3M Report ---------------------------------------------------------------

2007-08-25 15:20:34 0 d-------- C:\Documents and Settings\Compaq_Owner\Application Data\AVG7
2007-08-25 15:15:32 0 d-------- C:\Program Files\Common Files\Symantec Shared
2007-08-25 02:03:44 0 d-------- C:\Program Files\Lx_cats
2007-08-24 21:01:39 0 d-------- C:\Program Files\America Online 9.0b
2007-08-08 13:59:31 14654 --a------ C:\Documents and Settings\Compaq_Owner\Application Data\wklnhst.dat
2007-08-02 01:31:56 0 d-------- C:\Program Files\Common Files
2007-08-02 01:31:26 0 d--h----- C:\Program Files\InstallShield Installation Information
2007-07-22 13:45:54 0 d-------- C:\Program Files\View22
2007-07-21 21:09:39 0 d-------- C:\Program Files\SmartDraw 2007
2007-07-14 15:59:05 0 d-------- C:\Program Files\Lexmark 8300 Series
2007-07-13 17:24:54 0 d-------- C:\Program Files\SierraHome
2007-07-13 16:58:29 0 d-------- C:\Program Files\Common Files\Nova Development
2007-07-13 16:56:42 0 d-------- C:\Program Files\Creative Home
2007-07-07 17:41:13 1156 --a------ C:\WINDOWS\mozver.dat
2007-07-07 17:12:25 0 d-------- C:\Documents and Settings\Compaq_Owner\Application Data\Mozilla
2007-07-05 15:18:32 0 d-------- C:\Program Files\Microsoft ActiveSync
2007-07-05 08:23:29 0 d-------- C:\Documents and Settings\Compaq_Owner\Application Data\Apple Computer
2007-07-04 09:31:03 2528 --a------ C:\Documents and Settings\Compaq_Owner\Application Data\$_hpcst$.hpc
2007-07-03 16:44:50 0 d-------- C:\Program Files\Microsoft IntelliPoint
2007-07-03 16:44:17 0 d-------- C:\Program Files\Microsoft IntelliType Pro
2007-07-01 02:12:25 0 d-------- C:\Documents and Settings\Compaq_Owner\Application Data\MP3Rocket
2007-07-01 02:08:52 0 d-------- C:\Program Files\MP3 Rocket
2007-07-01 01:15:41 0 d-------- C:\Program Files\iTunes
2007-07-01 01:15:28 0 d-------- C:\Program Files\iPod
2007-07-01 01:11:56 0 d-------- C:\Program Files\QuickTime
2007-07-01 01:08:17 0 d-------- C:\Program Files\Apple Software Update
2007-07-01 01:07:33 0 d-------- C:\Program Files\Common Files\Apple
2007-07-01 00:11:27 0 d-------- C:\Documents and Settings\Compaq_Owner\Application Data\SBC Yahoo! Messenger


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{208D7BCC-9857-4C9E-823B-D04E72490A67}]
C:\WINDOWS\mxduo.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{45A4902E-4479-4EAE-A186-8D0F7E4C78DE}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [09/13/2004 04:49 PM]
"YBrowser"="C:\Program Files\Yahoo!\browser\ybrwicon.exe" [07/11/2003 01:51 PM]
"URLLSTCK.exe"="c:\Program Files\Norton Internet Security\UrlLstCk.exe" [08/30/2004 07:29 PM]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [01/28/2005 09:44 PM]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" [03/14/2007 03:43 AM]
"sscRun"="C:\Program Files\Common Files\AOL\1127691177\ee\SSCRun.exe" [11/20/2006 01:42 PM]
"Share-to-Web Namespace Daemon"="C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" [07/03/2001 09:11 AM]
"Recguard"="C:\WINDOWS\SMINST\RECGUARD.EXE" [04/14/2004 01:43 PM]
"Pure Networks Port Magic"="C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" [08/24/2004 03:09 PM]
"PS2"="C:\WINDOWS\system32\ps2.exe" [09/12/2003 12:13 PM]
"PRISMSVR.EXE"="C:\WINDOWS\system32\PRISMSVR.exe" [04/13/2004 07:45 PM]
"MMTray"="C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe" [11/07/2006 03:41 PM]
"MimBoot"="C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe" [11/07/2006 03:41 PM]
"LSBWatcher"="c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe" [10/14/2004 02:54 PM]
"KBD"="C:\HP\KBD\KBD.EXE" [02/11/2003 12:02 PM]
"IPInSightMonitor 01"="C:\Program Files\SBC Yahoo!\Connection Manager\IP InSight\IPMon32.exe" [07/14/2003 12:30 PM]
"hpsysdrv"="c:\windows\system\hpsysdrv.exe" [05/07/1998 09:04 AM]
"HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" [11/02/2004 08:59 AM]
"HostManager"="C:\Program Files\Common Files\AOL\1127691177\ee\AOLSoftware.exe" [09/25/2006 05:52 PM]
"ccApp"="c:\Program Files\Common Files\Symantec Shared\ccApp.exe" [08/27/2004 04:22 PM]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [08/24/2007 09:11 PM]
"AOLSPScheduler"="C:\Program Files\Common Files\AOL\1127691177\ee\services\safetyCore\ver210_5_2_1\AOLSP Scheduler.exe" [11/20/2006 01:42 PM]
"AOLDialer"="C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" [10/23/2006 05:50 AM]
"AlcxMonitor"="ALCXMNTR.EXE" [09/07/2004 01:47 PM C:\WINDOWS\ALCXMNTR.EXE]
"AGRSMMSG"="AGRSMMSG.exe" [03/04/2005 12:01 PM C:\WINDOWS\AGRSMMSG.exe]
"2wSysTray"="C:\Program Files\2Wire\2PortalMon.exe" [09/15/2004 01:52 AM]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [04/27/2007 09:41 AM]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [06/28/2007 09:14 AM]
"itype"="C:\Program Files\Microsoft IntelliType Pro\itype.exe" [12/04/2005 05:38 PM]
"IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\ipoint.exe" [12/04/2005 05:39 PM]
"LXCJCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCJtime.dll" [02/24/2006 05:07 PM]
"lxcjmon.exe"="C:\Program Files\Lexmark 8300 Series\lxcjmon.exe" [09/30/2005 10:49 AM]
"EzPrint"="C:\Program Files\Lexmark 8300 Series\ezprint.exe" [04/19/2006 09:57 AM]
"NapsterShell"="C:\Program Files\Napster\napster.exe" [01/12/2007 07:36 PM]
"KernelFaultCheck"="C:\WINDOWS\system32\dumprep 0 -k" []

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"="C:\Program Files\Yahoo!\Messenger\ypager.exe" [08/10/2004 12:42 PM]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [10/13/2004 09:24 AM]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [07/27/2007 10:05 AM]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [08/04/2004 04:00 AM]
"Aim6"="" []
"H/PC Connection Agent"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe" [11/13/2006 01:39 PM]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
2Wire Wireless Client.lnk - C:\Program Files\2Wire 802.11g Wireless\PRISMCFG.EXE [5/6/2005 9:55:38 PM]
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [9/23/2005 11:05:26 PM]
Compaq Connections.lnk - C:\Program Files\Compaq Connections\6750491\Program\Compaq Connections.exe [1/28/2005 9:57:46 PM]
EPSON Background Monitor.lnk - C:\Program Files\EPSON\ESM2\STMS.exe [6/7/1999 11:11:18 AM]
ExpressPLNRnote.lnk - C:\Program Files\Creative Home\Hallmark Card Studio Express\Planner\PLNRnote.exe [1/16/2006 3:28:06 PM]
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [11/4/2004 8:28:24 PM]
HP Image Zone Fast Start.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe [11/4/2004 8:50:52 PM]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"wmphost"= {3B5182BF-C2F6-40D6-85EB-8F840F5C552F} - C:\WINDOWS\wmphost.dll [ ]
"wmpdev"= {0D9B4131-7552-41EE-8CA4-EB486BD1B4E9} - C:\WINDOWS\wmpdev.dll [08/25/2007 04:00 AM 335872]


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\D]
AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{946850c5-1e27-11d9-baf0-806d6172696f}]
AutoRun\command- D:\setup.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c7eaf834-7138-11d9-a02f-806d6172696f}]
AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480




-- End of Deckard's System Scanner: finished at 2007-08-28 16:24:52 ------------
  • 0

#12
patrickg26

patrickg26

    Member

  • Topic Starter
  • Member
  • PipPip
  • 20 posts
Deckard's System Scanner v20070826.66
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------

-- System Information ----------------------------------------------------------

Microsoft Windows XP Home Edition (build 2600) SP 2.0
Architecture: X86; Language: English

CPU 0: Intel® Celeron® CPU 2.80GHz
Percentage of Memory in Use: 49%
Physical Memory (total/avail): 1271.48 MiB / 641.95 MiB
Pagefile Memory (total/avail): 1498.64 MiB / 957.35 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1960.03 MiB

C: is Fixed (NTFS) - 71.43 GiB total, 53.25 GiB free.
D: is Fixed (FAT32) - 5.25 GiB total, 0.75 GiB free.
E: is CDROM (No Media)
F: is Removable (No Media)
G: is Removable (No Media)
H: is Removable (No Media)
I: is Removable (No Media)
J: is Removable (No Media)

\\.\PHYSICALDRIVE0 - HDS728080PLAT20 - 76.69 GiB - 2 partitions
\PARTITION0 - Unknown - 5.26 GiB - D:
\PARTITION1 (bootable) - Installable File System - 71.43 GiB - C:

\\.\PHYSICALDRIVE2 - Generic USB CF Reader USB Device

\\.\PHYSICALDRIVE4 - Generic USB MS Reader USB Device

\\.\PHYSICALDRIVE1 - Generic USB SD Reader USB Device

\\.\PHYSICALDRIVE3 - Generic USB SM Reader USB Device

\\.\PHYSICALDRIVE5 - Lexmark USB Mass Storage USB Device



-- Security Center -------------------------------------------------------------

AUOptions is scheduled to auto-install.
Windows Internal Firewall is disabled.

FirstRunDisabled is set.

FW: Norton Internet Security v2005 (Symantec Corporation)
AV: AVG 7.5.484 v7.5.484 (GRISOFT)
AV: Norton Internet Security v2005 (Symantec Corporation)

[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%ProgramFiles%\\iTunes\\iTunes.exe"="%ProgramFiles%\\iTunes\\iTunes.exe:*:enabled:iTunes"
"C:\\Program Files\\America Online 9.0\\waol.exe"="C:\\Program Files\\America Online 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0a\\waol.exe"="C:\\Program Files\\America Online 9.0a\\waol.exe:*:Enabled:America Online 9.0a"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0b\\waol.exe"="C:\\Program Files\\America Online 9.0b\\waol.exe:*:Enabled:AOL"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"

[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Compaq Connections\\6750491\\Program\\Compaq Connections.exe"="C:\\Program Files\\Compaq Connections\\6750491\\Program\\Compaq Connections.exe:*:Enabled:BackWeb for Presario"
"C:\\Program Files\\EarthLink TotalAccess\\TaskPanl.exe"="C:\\Program Files\\EarthLink TotalAccess\\TaskPanl.exe:*:Enabled:Earthlink"
"c:\\Program Files\\Yahoo!\\Messenger\\YPager.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YPAGER.EXE:*:Enabled:Yahoo! Messenger"
"c:\\Program Files\\Yahoo!\\Messenger\\yserver.exe"="C:\\Program Files\\Yahoo!\\Messenger\\yserver.exe:*:Enabled:Yahoo! FT Server"
"C:\\Program Files\\America Online 9.0\\waol.exe"="C:\\Program Files\\America Online 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0a\\waol.exe"="C:\\Program Files\\America Online 9.0a\\waol.exe:*:Enabled:America Online 9.0a"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\America Online 9.0b\\waol.exe"="C:\\Program Files\\America Online 9.0b\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\TopSpeed\\3.0\\aoltpsd3.exe"="C:\\Program Files\\Common Files\\AOL\\TopSpeed\\3.0\\aoltpsd3.exe:*:Enabled:AOL TopSpeed"
"C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"="C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe:*:Enabled:AOL Loader"
"C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aolsoftware.exe"="C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aolsoftware.exe:*:Enabled:AOL Services"
"C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\AOLOpenRide.exe"="C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\AOLOpenRide.exe:*:Enabled:AOL OpenRide"
"C:\\WINDOWS\\system32\\rk.exe"="C:\\WINDOWS\\system32\\rk.exe:*:Enabled:rk.exe"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aim6.exe"="C:\\Program Files\\Common Files\\AOL\\1127691177\\ee\\aim6.exe:*:Enabled:AIM"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\Grisoft\\AVG7\\avginet.exe"="C:\\Program Files\\Grisoft\\AVG7\\avginet.exe:*:Enabled:avginet.exe"
"C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe:*:Enabled:avgamsvr.exe"
"C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe:*:Enabled:avgcc.exe"


-- Environment Variables -------------------------------------------------------

ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Compaq_Owner\Application Data
CLASSPATH=.;C:\Program Files\Java\jre1.6.0_01\lib\ext\QTJava.zip
CLIENTNAME=Console
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=PATRICIA
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Compaq_Owner
LOGONSERVER=\\PATRICIA
NUMBER_OF_PROCESSORS=1
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;c:\Python22;C:\Program Files\QuickTime\QTSystem\
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 4 Stepping 1, GenuineIntel
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=0401
ProgramFiles=C:\Program Files
PROMPT=$P$G
QTJAVA=C:\Program Files\Java\jre1.6.0_01\lib\ext\QTJava.zip
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\COMPAQ~1\LOCALS~1\Temp
TMP=C:\DOCUME~1\COMPAQ~1\LOCALS~1\Temp
USERDOMAIN=PATRICIA
USERNAME=Compaq_Owner
USERPROFILE=C:\Documents and Settings\Compaq_Owner
windir=C:\WINDOWS


-- User Profiles ---------------------------------------------------------------

Compaq_Owner (admin)
Administrator (admin)
Guest (guest)


-- Add/Remove Programs ---------------------------------------------------------

--> "C:\Program Files\SBC Yahoo!\Connection Manager\uninst.exe"
--> "C:\Program Files\SBC Yahoo!\umuninst.exe" /S
--> "C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"
--> C:\PROGRA~1\Yahoo!\browser\unyb.exe
--> C:\PROGRA~1\Yahoo!\Common\unwise.exe /S C:\PROGRA~1\Yahoo!\Common\install.log
--> C:\PROGRA~1\Yahoo!\Common\unybase.exe
--> C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG
--> C:\PROGRA~1\Yahoo!\PARENT~1\unypc.exe /S
--> C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
--> C:\WINDOWS\IsUninst.exe -fC:\WINDOWS\orun32.isu
--> c:\WINDOWS\system32\\MSIEXEC.EXE /x {9541FED0-327F-4df0-8B96-EF57EF622F19}
--> C:\WINDOWS\system32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\Common\yaddbook.dll
--> C:\WINDOWS\system32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\Common\ylogin.dll
--> C:\WINDOWS\system32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\Common\ymmapi.dll
--> C:\WINDOWS\system32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\MESSEN~1\yhexbmes.dll
--> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
2Wire Wireless Client --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A3BC5D37-30F9-4CF7-BD5C-0DFF063E4B6D}\Setup.exe" -l0x9 -L0x9
ACDSee --> C:\PROGRA~1\ACDSYS~1\ACDSee\UNWISE.EXE C:\PROGRA~1\ACDSYS~1\ACDSee\INSTALL.LOG
Ad-Aware SE Personal --> C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG
Adobe Acrobat 4.0 --> C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 4.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 4.0\NT\Uninst.dll"
Adobe Flash Player 9 ActiveX --> C:\WINDOWS\system32\Macromed\Flash\FlashUtil9c.exe -uninstallUnlock
Adobe Reader 7.0.9 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70900000002}
Agere Systems PCI Soft Modem --> agrsmdel
AIM 6 --> C:\Program Files\AIM6\uninst.exe
AOL Coach Version 1.0(Build:20040229.1 en) --> C:\Program Files\Common Files\aolshare\Coach\AolCInUn.exe
AOL Registration --> "C:\Program Files\AOL\RC\uninstall.exe"
AOL Uninstaller (Choose which Products to Remove) --> C:\Program Files\Common Files\AOL\uninstaller.exe
AOL You've Got Pictures Screensaver --> C:\Program Files\Common Files\AOL\Screensaver\uninst_ygpss.exe
Apple Mobile Device Support --> MsiExec.exe /I{8FC46258-0843-4D79-B7F0-F2B82FE6173B}
Apple Software Update --> MsiExec.exe /I{74EC78BC-B379-4E29-9006-8F161DCAABA6}
ArcSoft PhotoFantasy --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\ArcSoft\ArcSoft Software\PhotoFantasy\Uninst.isu"
ArcSoft PhotoImpression --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\ArcSoft\ArcSoft Software\PhotoImpression\Uninst.isu"
AVG 7.5 --> C:\Program Files\Grisoft\AVG7\setup.exe /UNINSTALL
Blackhawk Striker 2 from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\BFAF1EEC-E987-415B-BCB8-80CDB0BC6CDF\Uninstall.exe"
Blasterball 2 from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\75528D5F-DD82-402E-BA7C-045B7DC6A712\Uninstall.exe"
Blasterball 2 Remix from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\9D7E7CDA-051E-4B0D-8CEE-58F41F449CF9\Uninstall.exe"
Bounce Symphony from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\29FF6D07-4A15-41F1-9D5E-E0F3A58012C6\Uninstall.exe"
CA Pest Patrol Realtime Protection --> MsiExec.exe /X{F05A5232-CE5E-4274-AB27-44EB8105898D}
CC_ccProxyExt --> MsiExec.exe /I{DA42FDCA-7C5A-43EF-9A05-CCE148ADF919}
ccCommon --> MsiExec.exe /I{DC367608-64A7-4BF7-92F4-8BAA25BA02DB}
ccPxyCore --> MsiExec.exe /I{FC08587A-4F01-4188-819F-F55880022917}
Citrix ICA Web Client --> RunDll32 ADVPACK.DLL,LaunchINFSection C:\WINDOWS\INF\wficat.inf,DefaultUninstall
Compaq Connections --> C:\WINDOWS\BWUnin-6.3.2.62.exe -AppId 6750491
Compaq Organize --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D0122362-6333-4DE4-93F6-A5A2F3CC101A}\Setup.exe" UNINSTALL
Crystal Maze from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\C43D84CD-EBFC-48D3-A330-7868C8AD415A\Uninstall.exe"
DFX for MUSICMATCH --> C:\PROGRA~1\DFX\MUSICM~1\UNWISE.EXE C:\PROGRA~1\DFX\MUSICM~1\INSTALL.LOG
Easy Internet Sign-up --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{8105684D-8CA6-440D-8F58-7E5FD67A499D} /l1033
EPSON Status Monitor 2 --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{87C51198-5A95-4577-9F47-B953D862FA90}
ewido anti-malware --> C:\Program Files\ewido anti-malware\Uninstall.exe
Google Toolbar for Internet Explorer --> MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
Google Toolbar for Internet Explorer --> regsvr32 /u /s "c:\program files\google\googletoolbar2.dll"
Hallmark Card Studio Express --> MsiExec.exe /X{E7875036-3CFC-4F0F-A470-8EADFFE43F6C}
Help and Support Additions --> C:\PROGRA~1\HELPAN~1\UNWISE.EXE C:\PROGRA~1\HELPAN~1\INSTALL.LOG
HighMAT Extension to Microsoft Windows XP CD Writing Wizard --> MsiExec.exe /X{FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F}
Hijackthis 1.99.1 --> "C:\Program Files\Hijackthis\unins000.exe"
HijackThis 1.99.1 --> C:\Program Files\Hijackthis\HijackThis.exe /uninstall
Hotfix for Windows Media Format SDK (KB902344) --> "C:\WINDOWS\$NtUninstallKB902344$\spuninst\spuninst.exe"
Hotfix for Windows Media Format SDK (KB910998) --> "C:\WINDOWS\$NtUninstallKB910998$\spuninst\spuninst.exe"
HP Image Zone 4.7 --> C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
HP Image Zone Express --> MsiExec.exe /X{8F7A4D82-B168-4F89-99C2-B9873EC877AF}
HP Photo Printing Software --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Hewlett-Packard\PhotoSmart\Photo Printing\Uninstall.isu" -c"C:\Program Files\Hewlett-Packard\PhotoSmart\Photo Printing\hpiunPC.dll
HP Precisionscan Pro 3.1 --> MsiExec.exe /I{6B36DEBF-27D0-4B1E-858D-D397091C6C7D}
HP PSC & OfficeJet 4.7 --> "C:\Program Files\HP\Digital Imaging\{342C7C88-D335-4bc2-8CF1-281857629CE2}\setup\hpzscr01.exe" -datfile hposcr05.dat
HP Share-to-Web --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{748F4870-8350-11D3-B0BF-080009FB4A19}\setup.exe" --MAIN -l9
HP Software Update --> MsiExec.exe /X{64FC0C98-B035-4530-B15D-3D30610B6DF1}
Intel® Extreme Graphics Driver --> RUNDLL32.EXE C:\WINDOWS\system32\ialmrem.dll,UninstallW2KIGfx PCI\VEN_8086&DEV_2562
InterVideo WinDVD Player --> "C:\Program Files\InstallShield Installation Information\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}\setup.exe" REMOVEALL
iTunes --> MsiExec.exe /I{85B90D8C-70F3-4E84-BD31-5E9489C0F9FB}
J2SE Runtime Environment 5.0 Update 6 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150060}
Java 2 Runtime Environment, SE v1.4.2_03 --> MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142030}
Java™ SE Runtime Environment 6 Update 1 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010}
KBD --> C:\HP\KBD\KBD.EXE uninstalled
Learn2 Player (Uninstall Only) --> C:\Program Files\Learn2.com\StRunner\stuninst.exe
Lexmark 8300 Series --> C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\lxcjUNST.EXE -NOLICENSE
LimeWire 4.12.11 --> "C:\Program Files\LimeWire\uninstall.exe"
LiveReg (Symantec Corporation) --> C:\Program Files\Common Files\Symantec Shared\LiveReg\VCSetup.exe /REMOVE
LiveUpdate 2.5 (Symantec Corporation) --> C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE /U
Microsoft ActiveSync --> MsiExec.exe /I{99052DB7-9592-4522-A558-5417BBAD48EE}
Microsoft Base Smart Card Cryptographic Service Provider Package --> "C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
Microsoft Office 2003 Web Components --> MsiExec.exe /I{90A40409-6000-11D3-8CFE-0150048383C9}
Microsoft Office Standard Edition 2003 --> MsiExec.exe /I{91120409-6000-11D3-8CFE-0150048383C9}
Microsoft Office XP Web Components --> MsiExec.exe /I{90260409-6000-11D3-8CFE-0150048383C9}
Microsoft Plus! Dancer LE --> MsiExec.exe /X{1A103D70-5C9B-4E1A-B306-5106C68F9914}
Microsoft Plus! Digital Media Edition Installer --> MsiExec.exe /X{6E45BA47-383C-4C1E-8ED0-0D4845C293D7}
Microsoft Plus! Photo Story 2 LE --> MsiExec.exe /X{0EB5D9B7-8E6C-4A9E-B74F-16B7EE89A67B}
Microsoft Works --> MsiExec.exe /I{416D80BA-6F6D-4672-B7CF-F54DA2F80B44}
Move Networks Player for Internet Explorer --> "C:\Documents and Settings\Compaq_Owner\Application Data\Move Networks\ie_bin\unins000.exe"
Mozilla Firefox (2.0.0.6) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MP3 Rocket --> C:\Program Files\MP3 Rocket\Uninstall.exe
MSN --> C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
MSRedist --> MsiExec.exe /I{B7C61755-DB48-4003-948F-3D34DB8EAF69}
Musicmatch® Jukebox --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime91\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{85D3CC30-8859-481A-9654-FD9B74310BEF}\setup.exe" -l0x9 -uninst
Napster --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BBBCAE4B-B416-4182-A6F2-438180894A81}\setup.exe" -l0x9 -removeonly
Napster Burn Engine --> MsiExec.exe /I{8DCE550C-CA43-4E82-92DF-FFC4A48F5BE1}
Norton AntiSpam --> MsiExec.exe /I{5677563D-0CB1-485f-9E18-C5025306BB3F}
Norton AntiVirus 2005 --> MsiExec.exe /X{C6F5B6CF-609C-428E-876F-CA83176C021B}
Norton Internet Security --> MsiExec.exe /I{12E2B9E9-05B1-407d-B0FD-B5F350535125}
Norton Internet Security --> MsiExec.exe /I{449F3A9E-9903-4a0d-A209-08030D45A935}
Norton Internet Security --> MsiExec.exe /I{48185814-A224-447a-81DA-71BD20580E1B}
Norton Internet Security --> MsiExec.exe /I{526AD5DC-CFC4-4f2a-8442-C84CC91D6C7F}
Norton Internet Security --> MsiExec.exe /I{A93C9E60-29B6-49da-BA21-F70AC6AADE20}
Norton Internet Security --> MsiExec.exe /I{AADFE0B9-F905-4d5f-A144-0ADB2EFA747B}
Norton Internet Security --> MsiExec.exe /I{C9D599E1-6B68-4a1f-8A4F-A1DB433DB1BF}
Norton Internet Security --> MsiExec.exe /I{E3EFA461-EB83-4C3B-9C47-2C1D58A01555}
Norton Internet Security --> MsiExec.exe /I{E5EE9939-259F-4DE2-8023-5C49E16A4F43}
Norton Internet Security --> MsiExec.exe /I{FC2C0536-583C-46c0-844A-62CECAE01F22}
Norton Internet Security 2005 (Symantec Corporation) --> C:\Program Files\Common Files\Symantec Shared\SymSetup\{A93C9E60-29B6-49da-BA21-F70AC6AADE20}.exe /X
Norton Security Center --> MsiExec.exe /X{503AA035-41E2-4858-B31F-1E49AC66C309}
Norton WMI Update --> MsiExec.exe /X{E85FA9A1-C241-4698-893B-DD99509B8DB0}
Norton WMI Update --> MsiExec.exe /X{F64306A5-4C32-41bb-B153-53986527FAB4}
Orbital from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\26DC0ED6-93A7-43C1-8DC5-EC16079580F9\Uninstall.exe"
Overball from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\FA7F5211-C629-4711-BD82-7DFFB08CB518\Uninstall.exe"
Polar Bowler from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games5E21449-3BA3-42BF-BBDA-95205F4EA40A\Uninstall.exe"
Polar Golfer from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\3330A279-CC39-4A17-AE19-DA464B26AD9A\Uninstall.exe"
Print Artist Gold 21 --> MsiExec.exe /I{D8262480-2A04-407C-B2F7-1439B789C349}
PS2 --> C:\WINDOWS\system32\ps2.exe uninstall
Pure Networks Port Magic --> C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe -Uninstall -ShowUI
Python 2.2 pywin32 extensions (build 203) --> "C:\Python22\Removepywin32.exe" -u "C:\Python22\pywin32-wininst.log"
Python 2.2.3 --> C:\Python22\UNWISE.EXE C:\Python22\INSTALL.LOG
QuickTime --> MsiExec.exe /I{08094E03-AFE4-4853-9D31-6D0743DF5328}
RealPlayer --> C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Road Ready Streetwise from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\A2E85A38-C2D9-4EDF-AFDA-F76BCBFEBBC4\Uninstall.exe"
Safety and Security Center Uninstaller --> C:\Program Files\Common Files\AOL\uninstaller.exe
SBC Yahoo! Applications --> C:\Program Files\SBC Yahoo!\UninstallManager.exe
SBC Yahoo! DSL Home Networking Installer --> C:\Program Files\2Wire\Uninstaller.exe
Security Update for Step By Step Interactive Training (KB898458) --> "C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe"
Security Update for Step By Step Interactive Training (KB923723) --> "C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe"
Sonic Express Labeler --> MsiExec.exe /I{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
Sonic RecordNow! --> MsiExec.exe /I{9541FED0-327F-4DF0-8B96-EF57EF622F19}
Sony Ericsson PC Suite --> MsiExec.exe /I{3686E7AE-19F9-470B-8D8C-02AE68A7B11B}
SPBBC --> MsiExec.exe /I{77772678-817F-4401-9301-ED1D01A8DA56}
Super Granny from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\DE87FA96-7840-420C-86F9-33F3B7B3CED1\Uninstall.exe"
SymNet --> MsiExec.exe /I{2DA85B02-13C0-4E6D-9A76-22E6B3DD0CB2}
Thomas Guide DE --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{085FE193-B676-11D4-82BC-00A0C993905F}\setup.exe" -l0x9 AnyText
Tradewinds from Compaq (remove only) --> "C:\Program Files\WildTangent\Apps\GameChannel\Games\66195170-D19D-46C5-8FB7-8A4630071ADC\Uninstall.exe"
Viewpoint Manager (Remove Only) --> C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgrInstaller.exe /u /k
Viewpoint Media Player --> C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
Windows Media Connect --> "C:\WINDOWS\$NtUninstallWMCSetup$\spuninst\spuninst.exe"
XMLplayer --> "C:\Program Files\ThePort\XML Player\AdHlp02.exe" "C:\Program Files\ThePort\XML Player" "The Port"
Yahoo! Install Manager --> C:\WINDOWS\system32\regsvr32 /u C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL
Yahoo! Toolbar for Internet Explorer --> C:\PROGRA~1\Yahoo!\Common\unyt.exe


-- Application Event Log -------------------------------------------------------

Event Record #/Type9658 / Error
Event Submitted/Written: 08/28/2007 04:13:32 PM
Event ID/Source: 100 / AVG7
Event Description:
2007-08-28 23:13:32,890 PATRICIA [001652:001680] ERROR 000 AVG7.WTS.CAvgAmWts ProcessIdToSessionId(3084) call failed with WIN32 error 87, returning session id is 0

Event Record #/Type9611 / Error
Event Submitted/Written: 08/27/2007 04:16:12 PM
Event ID/Source: 1002 / Application Hang
Event Description:
Hanging application iexplore.exe, version 7.0.6000.16512, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Event Record #/Type9610 / Error
Event Submitted/Written: 08/27/2007 04:16:03 PM
Event ID/Source: 1001 / Application Hang
Event Description:
Fault bucket 471789395.

Event Record #/Type9609 / Error
Event Submitted/Written: 08/27/2007 04:15:46 PM
Event ID/Source: 1002 / Application Hang
Event Description:
Hanging application iexplore.exe, version 7.0.6000.16512, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Event Record #/Type9608 / Error
Event Submitted/Written: 08/27/2007 04:14:50 PM
Event ID/Source: 1001 / Application Hang
Event Description:
Fault bucket 126939260.



-- Security Event Log ----------------------------------------------------------

No Errors/Warnings found.


-- System Event Log ------------------------------------------------------------

Event Record #/Type246819 / Error
Event Submitted/Written: 08/28/2007 04:04:26 PM
Event ID/Source: 7026 / Service Control Manager
Event Description:
The following boot-start or system-start driver(s) failed to load:
AFD
Avg7Core
Avg7RsW
Avg7RsXP
Fips
intelppm
IPSec
MRxSmb
NetBIOS
NetBT
RasAcd
Rdbss
SPBBCDrv
SYMTDI
Tcpip

Event Record #/Type246818 / Error
Event Submitted/Written: 08/28/2007 04:04:26 PM
Event ID/Source: 7001 / Service Control Manager
Event Description:
The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error:
%%31

Event Record #/Type246817 / Error
Event Submitted/Written: 08/28/2007 04:04:26 PM
Event ID/Source: 7001 / Service Control Manager
Event Description:
The Apple Mobile Device service depends on the TCP/IP Protocol Driver service which failed to start because of the following error:
%%31

Event Record #/Type246816 / Error
Event Submitted/Written: 08/28/2007 04:04:26 PM
Event ID/Source: 7001 / Service Control Manager
Event Description:
The TCP/IP NetBIOS Helper service depends on the AFD service which failed to start because of the following error:
%%31

Event Record #/Type246815 / Error
Event Submitted/Written: 08/28/2007 04:04:26 PM
Event ID/Source: 7001 / Service Control Manager
Event Description:
The DNS Client service depends on the TCP/IP Protocol Driver service which failed to start because of the following error:
%%31



-- End of Deckard's System Scanner: finished at 2007-08-28 16:24:52 ------------
  • 0

#13
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Hello Patrick

Before we begin, you should save these instructions in Notepad to your desktop, or print them, for easy reference. Much of our fix will be done in Safe mode, and you will be unable to access this thread at that time. If you have questions at any point, or are unsure of the instructions, feel free to post here and ask for clarification before proceeding.


Please download SmitfraudFix (by S!Ri) to your Desktop.

Next, please reboot your computer in Safe Mode by doing the following :
  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
  • Instead of Windows loading as normal, a menu with options should appear;
  • Select the first option, to run Windows in Safe Mode, then press "Enter".
  • Choose your usual account.
Once in Safe Mode, double-click on SmitfraudFix.exe
Select option #2 - Clean by typing 2 and press "Enter" to delete infected files.

You will be prompted : "Registry cleaning - Do you want to clean the registry ?"; answer "Yes" by typing Y and press "Enter" in order to remove the Desktop background and clean registry keys associated with the infection.

The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found); answer "Yes" by typing Y and press "Enter".

The tool may need to restart your computer to finish the cleaning process; if it doesn't, please restart it into Normal Windows.
A text file will appear onscreen, with results from the cleaning process; please copy/paste the content of that report into your next reply.
The report can also be found at the root of the system drive, usually at C:\rapport.txt

Warning : running option #2 on a non infected computer will remove your Desktop background.



1. Please re-open HiJackThis and choose do a system scan only. Check the boxes next to ONLY the entries listed below(if present):

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarerefer...=...6Ojg5&lid=2
O2 - BHO: MSVPS System - {208D7BCC-9857-4C9E-823B-D04E72490A67} - C:\WINDOWS\mxduo.dll (file missing)
O2 - BHO: (no name) - {45A4902E-4479-4EAE-A186-8D0F7E4C78DE} - (no file)
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://wdownload.wea...Transporter.cab?
O21 - SSODL: wmphost - {3B5182BF-C2F6-40D6-85EB-8F840F5C552F} - C:\WINDOWS\wmphost.dll
O21 - SSODL: wmpdev - {0D9B4131-7552-41EE-8CA4-EB486BD1B4E9} - C:\WINDOWS\wmpdev.dll


2. Now close all windows other than HiJackThis, including browsers, so that nothing other than HijackThis is open, then click Fix Checked. A box will pop up asking you if you wish to fix the selected items. Please choose YES. Once it has fixed them, please exit/close HijackThis.



Please download OTMoveIt by OldTimer.
  • Save it to your desktop.
  • Please double-click OTMoveIt.exe to run it.
  • Copy the file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy):

    C:\WINDOWS\wmphost.dll
    C:\WINDOWS\wmpdev.dll


  • Return to OTMoveIt, right click on the "Paste List of Files/Folders to be moved" window and choose Paste.
  • Click the red Moveit! button.
  • Close OTMoveIt
If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes.

Please "Copy" the results from the "Results" window (to the right) and then "Paste" them into your next reply on the forum.

Note : If a reboot was necessary or you needed to Exit before posting the log, you will find a copy of the log at the root of the drive where OTMoveIt is installed, usually at :
C:\_OTMoveIt\MovedFiles\********_******.log
(where "********_******" is the "date_time")

Click "Exit" to close OTMoveIt.



* Download Dr.Web CureIt to the desktop:
ftp://ftp.drweb.com/pub/drweb/cureit/drweb-cureit.exe
  • Double click the drweb-cureit.exe file and Allow to run the express scan
  • This will scan the files currently running in memory and when something is found, click the yes button when it asks you if you want to cure it. This is only a short scan.
  • Once the short scan has finished, mark the drives that you want to scan.
  • Select all drives. A red dot shows which drives have been chosen.
  • Click the green arrow at the right, and the scan will start.
  • Click 'Yes to all' if it asks if you want to cure/move the file.
  • When the scan has finished, in the menu, click file and choose save report list
  • Save the report to your desktop. The report will be called DrWeb.csv
  • Close Dr.Web Cureit.
  • Reboot your computer!! Because it could be possible that files in use will be moved/deleted during reboot.
  • After reboot, post the contents of the log from Dr.Web you saved previously in your next reply.

So in your next reply I need to see the following : the SmitfraudFix report, the OTMoveIt results, the Dr. Web Cureit report, a new DSS log, and tell me how your PC is running now and if you had any problems.
  • 0

#14
patrickg26

patrickg26

    Member

  • Topic Starter
  • Member
  • PipPip
  • 20 posts
When I performed the HJT System Scan the following file wasn't present... but I was able to check and fix the others...

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarerefer...=...6Ojg5&lid=2


Here is the SmitfraudFix report...

SmitFraudFix v2.216

Scan done at 13:05:31.68, Wed 08/29/2007
Run from C:\Documents and Settings\Compaq_Owner\Desktop\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in safe mode

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» Killing process


»»»»»»»»»»»»»»»»»»»»»»»» hosts

127.0.0.1 localhost

»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

GenericRenosFix by S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files

C:\WINDOWS\privacy_danger\ Deleted
C:\DOCUME~1\COMPAQ~1\Desktop\Error Cleaner.url Deleted
C:\DOCUME~1\COMPAQ~1\Desktop\Privacy Protector.url Deleted
C:\DOCUME~1\COMPAQ~1\Desktop\Spyware?Malware Protection.url Deleted

»»»»»»»»»»»»»»»»»»»»»»»» DNS

HKLM\SYSTEM\CCS\Services\Tcpip\..\{03C2314C-C788-48C6-8154-2DFCAD3D5D11}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CCS\Services\Tcpip\..\{5113244C-BF81-493A-9D81-510552FA6BF5}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS1\Services\Tcpip\..\{03C2314C-C788-48C6-8154-2DFCAD3D5D11}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS1\Services\Tcpip\..\{5113244C-BF81-493A-9D81-510552FA6BF5}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS3\Services\Tcpip\..\{03C2314C-C788-48C6-8154-2DFCAD3D5D11}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS3\Services\Tcpip\..\{5113244C-BF81-493A-9D81-510552FA6BF5}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.254


»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""


»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

Registry Cleaning done.

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» End









Here are the OTMoveIt results

DllUnregisterServer procedure not found in C:\WINDOWS\wmphost.dll
C:\WINDOWS\wmphost.dll NOT unregistered.
C:\WINDOWS\wmphost.dll moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\wmpdev.dll
C:\WINDOWS\wmpdev.dll NOT unregistered.
C:\WINDOWS\wmpdev.dll moved successfully.

Created on 08/29/2007 13:27:26
  • 0

#15
patrickg26

patrickg26

    Member

  • Topic Starter
  • Member
  • PipPip
  • 20 posts
Here is the Dr. Web Cureit report...

firstopt.js;D:\I386\APPS\APP23637;Probably SCRIPT.Virus;;
MiniBugTransporter.dll;C:\Deckard\System Scanner\backup\WINDOWS\Downloaded Program Files;Adware.Minibug;;
setup.exe;C:\Documents and Settings\All Users\Application Data\AOL Downloads\AOL_OpenRide_1.23.16.1;Probably BACKDOOR.Trojan;;
setup.exe;C:\Documents and Settings\All Users\Application Data\AOL Downloads\FRONTIER_1.22.48.1;Probably BACKDOOR.Trojan;;
config.000;C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1;Probably BACKDOOR.Trojan;;
inst.exe;C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028;Probably BACKDOOR.Trojan;;
setup.exe;C:\Documents and Settings\All Users\Application Data\AOL Downloads\triton_suite_install\6.1.41.2;Probably BACKDOOR.Trojan;;
Process.exe;C:\Documents and Settings\Compaq_Owner\Desktop\SmitfraudFix;Tool.Prockill;;
restart.exe;C:\Documents and Settings\Compaq_Owner\Desktop\SmitfraudFix;Tool.ShutDown.11;;
KillWind.exe;C:\hp\bin;Tool.ProcessKill;;
config.000;C:\Program Files\AOL\Installers\AOL Safety & Security Center 1.0;Probably BACKDOOR.Trojan;;
inst.exe;C:\Program Files\AOL\Installers\AOL Safety & Security Center 1.02;Probably BACKDOOR.Trojan;;
setup.exe;C:\Program Files\AOL\Installers\ASP 2.0;Probably BACKDOOR.Trojan;;
Process.exe;C:\Program Files\Mozilla Firefox\SmitfraudFix;Tool.Prockill;;
restart.exe;C:\Program Files\Mozilla Firefox\SmitfraudFix;Tool.ShutDown.11;;
Process.exe;C:\SDFix\apps;Tool.Prockill;;
Process.exe;C:\SDFix\SDFix\apps;Tool.Prockill;;
A0077080.exe;C:\System Volume Information\_restore{DDE3EB95-4B24-44D8-AD38-1F974B96C2F0}\RP563;Probably BACKDOOR.Trojan;;
A0088783.exe;C:\System Volume Information\_restore{DDE3EB95-4B24-44D8-AD38-1F974B96C2F0}\RP626;Probably BACKDOOR.Trojan;;
A0090197.exe;C:\System Volume Information\_restore{DDE3EB95-4B24-44D8-AD38-1F974B96C2F0}\RP635;Tool.Prockill;;
Process.exe;C:\WINDOWS\system32;Tool.Prockill;;
  • 0






Similar Topics

1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP