[code] OTS logfile created on: 12/13/2009 2:47:52 PM - Run 2 OTS by OldTimer - Version 3.1.10.0 Folder = C:\Documents and Settings\Donald\Desktop Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.11) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 255.46 Mb Total Physical Memory | 127.24 Mb Available Physical Memory | 49.81% Memory free 620.17 Mb Paging File | 477.18 Mb Available in Paging File | 76.94% Paging File free Paging file location(s): C:\pagefile.sys 384 768 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 9.36 Gb Total Space | 1.07 Gb Free Space | 11.44% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded Drive I: | 991.20 Mb Total Space | 259.08 Mb Free Space | 26.14% Space Free | Partition Type: FAT Computer Name: DONALD_P Current User Name: Donald Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days [Processes - Safe List] ots.exe -> C:\Documents and Settings\Donald\Desktop\OTS.exe -> [2009/12/13 12:18:38 | 00,534,528 | ---- | M] (OldTimer Tools) mqtgsvc.exe -> C:\WINDOWS\system32\mqtgsvc.exe -> [2009/06/22 03:49:23 | 00,117,248 | ---- | M] (Microsoft Corporation) mqsvc.exe -> C:\WINDOWS\system32\mqsvc.exe -> [2009/06/22 03:49:04 | 00,004,608 | ---- | M] (Microsoft Corporation) explorer.exe -> C:\WINDOWS\explorer.exe -> [2007/06/13 02:23:07 | 01,033,216 | ---- | M] (Microsoft Corporation) aolsoftware.exe -> C:\Program Files\Common Files\AOL\1111888280\EE\aolsoftware.exe -> [2007/04/12 13:23:31 | 00,042,032 | ---- | M] (AOL LLC) aolsp scheduler.exe -> c:\Program Files\Common Files\AOL\1111888280\EE\services\antiSpywareApp\ver2_0_32_1\AOLSP Scheduler.exe -> [2006/10/23 11:04:42 | 00,001,536 | ---- | M] () aolacsd.exe -> C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe -> [2006/10/23 04:50:35 | 00,046,640 | R--- | M] (AOL LLC) aoltsmon.exe -> C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe -> [2004/10/15 12:54:14 | 00,100,016 | ---- | M] (America Online, Inc) aoltpspd.exe -> C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe -> [2004/10/15 12:54:12 | 00,046,768 | ---- | M] (America Online Inc) wscntfy.exe -> C:\WINDOWS\system32\wscntfy.exe -> [2004/08/03 23:56:57 | 00,013,824 | ---- | M] (Microsoft Corporation) nvsvc32.exe -> C:\WINDOWS\system32\nvsvc32.exe -> [2003/06/24 18:32:00 | 00,073,728 | ---- | M] (NVIDIA Corporation) wanmpsvc.exe -> C:\WINDOWS\wanmpsvc.exe -> [2002/07/30 14:16:20 | 00,065,536 | ---- | M] (America Online, Inc.) lexbces.exe -> C:\WINDOWS\system32\LexBceS.exe -> [2000/06/07 11:38:06 | 00,285,184 | ---- | M] (Lexmark International, Inc.) [Modules - Safe List] ots.exe -> C:\Documents and Settings\Donald\Desktop\OTS.exe -> [2009/12/13 12:18:38 | 00,534,528 | ---- | M] (OldTimer Tools) comctl32.dll -> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll -> [2006/08/25 07:45:55 | 01,054,208 | ---- | M] (Microsoft Corporation) serwvdrv.dll -> C:\WINDOWS\system32\serwvdrv.dll -> [2001/08/23 04:00:00 | 00,014,848 | ---- | M] (Microsoft Corporation) umdmxfrm.dll -> C:\WINDOWS\system32\umdmxfrm.dll -> [2001/08/23 04:00:00 | 00,013,312 | ---- | M] (Microsoft Corporation) [Win32 Services - Safe List] (MSMQTriggers) Message Queuing Triggers [Auto | Running] -> C:\WINDOWS\system32\mqtgsvc.exe -> [2009/06/22 03:49:23 | 00,117,248 | ---- | M] (Microsoft Corporation) (MSMQ) Message Queuing [Auto | Running] -> C:\WINDOWS\system32\mqsvc.exe -> [2009/06/22 03:49:04 | 00,004,608 | ---- | M] (Microsoft Corporation) (AOL ACS) AOL Connectivity Service [Auto | Running] -> C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe -> [2006/10/23 04:50:35 | 00,046,640 | R--- | M] (AOL LLC) (WMConnectCDS) Windows Media Connect Service [On_Demand | Stopped] -> C:\Program Files\Windows Media Connect 2\wmccds.exe -> [2005/10/06 18:12:30 | 00,855,552 | ---- | M] (Microsoft Corporation) (AOL TopSpeedMonitor) AOL TopSpeed Monitor [Auto | Running] -> C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe -> [2004/10/15 12:54:14 | 00,100,016 | ---- | M] (America Online, Inc) (NVSvc) NVIDIA Driver Helper Service [Auto | Running] -> C:\WINDOWS\system32\nvsvc32.exe -> [2003/06/24 18:32:00 | 00,073,728 | ---- | M] (NVIDIA Corporation) (WANMiniportService) WAN Miniport (ATW) Service [Auto | Running] -> C:\WINDOWS\wanmpsvc.exe -> [2002/07/30 14:16:20 | 00,065,536 | ---- | M] (America Online, Inc.) (LexBceS) LexBce Server [Auto | Running] -> C:\WINDOWS\system32\LexBceS.exe -> [2000/06/07 11:38:06 | 00,285,184 | ---- | M] (Lexmark International, Inc.) [Driver Services - All] (WDICA) WDICA [Kernel | On_Demand | Stopped] -> -> File not found (ViaIde) ViaIde [Kernel | Disabled | Stopped] -> -> File not found (ultra) ultra [Kernel | Disabled | Stopped] -> -> File not found (TosIde) TosIde [Kernel | Disabled | Stopped] -> -> File not found (symc8xx) symc8xx [Kernel | Disabled | Stopped] -> -> File not found (symc810) symc810 [Kernel | Disabled | Stopped] -> -> File not found (sym_u3) sym_u3 [Kernel | Disabled | Stopped] -> -> File not found (sym_hi) sym_hi [Kernel | Disabled | Stopped] -> -> File not found (Sparrow) Sparrow [Kernel | Disabled | Stopped] -> -> File not found (Simbad) Simbad [Kernel | Disabled | Stopped] -> -> File not found (ql1280) ql1280 [Kernel | Disabled | Stopped] -> -> File not found (ql1240) ql1240 [Kernel | Disabled | Stopped] -> -> File not found (ql12160) ql12160 [Kernel | Disabled | Stopped] -> -> File not found (Ql10wnt) Ql10wnt [Kernel | Disabled | Stopped] -> -> File not found (ql1080) ql1080 [Kernel | Disabled | Stopped] -> -> File not found (perc2hib) perc2hib [Kernel | Disabled | Stopped] -> -> File not found (perc2) perc2 [Kernel | Disabled | Stopped] -> -> File not found (PDRFRAME) PDRFRAME [Kernel | On_Demand | Stopped] -> -> File not found (PDRELI) PDRELI [Kernel | On_Demand | Stopped] -> -> File not found (PDFRAME) PDFRAME [Kernel | On_Demand | Stopped] -> -> File not found (PDCOMP) PDCOMP [Kernel | On_Demand | Stopped] -> -> File not found (PCIIde) PCIIde [Kernel | Disabled | Stopped] -> -> File not found (PCIDump) PCIDump [Kernel | System | Stopped] -> -> File not found (PalmUSBD) PalmUSBD [Kernel | On_Demand | Stopped] -> -> File not found (mraid35x) mraid35x [Kernel | Disabled | Stopped] -> -> File not found (lbrtfdc) lbrtfdc [Kernel | System | Stopped] -> -> File not found (ini910u) ini910u [Kernel | Disabled | Stopped] -> -> File not found (i2omp) i2omp [Kernel | Disabled | Stopped] -> -> File not found (i2omgmt) i2omgmt [Kernel | System | Stopped] -> -> File not found (hpt3xx) hpt3xx [Kernel | Disabled | Stopped] -> -> File not found (hpn) hpn [Kernel | Disabled | Stopped] -> -> File not found (dpti2o) dpti2o [Kernel | Disabled | Stopped] -> -> File not found (dac960nt) dac960nt [Kernel | Disabled | Stopped] -> -> File not found (Cpqarray) Cpqarray [Kernel | Disabled | Stopped] -> -> File not found (CmdIde) CmdIde [Kernel | Disabled | Stopped] -> -> File not found (Changer) Changer [Kernel | System | Stopped] -> -> File not found (cd20xrnt) cd20xrnt [Kernel | Disabled | Stopped] -> -> File not found (Atdisk) Atdisk [Kernel | Disabled | Stopped] -> -> File not found (asc3550) asc3550 [Kernel | Disabled | Stopped] -> -> File not found (asc3350p) asc3350p [Kernel | Disabled | Stopped] -> -> File not found (asc) asc [Kernel | Disabled | Stopped] -> -> File not found (amsint) amsint [Kernel | Disabled | Stopped] -> -> File not found (AliIde) AliIde [Kernel | Disabled | Stopped] -> -> File not found (aic78xx) aic78xx [Kernel | Disabled | Stopped] -> -> File not found (aic78u2) aic78u2 [Kernel | Disabled | Stopped] -> -> File not found (Aha154x) Aha154x [Kernel | Disabled | Stopped] -> -> File not found (adpu160m) adpu160m [Kernel | Disabled | Stopped] -> -> File not found (abp480n5) abp480n5 [Kernel | Disabled | Stopped] -> -> File not found (Abiosdsk) Abiosdsk [Kernel | Disabled | Stopped] -> -> File not found (MQAC) Message Queuing access control [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\mqac.sys -> [2009/06/22 03:48:44 | 00,091,776 | ---- | M] (Microsoft Corporation) (KSecDD) KSecDD [Kernel | Boot | Running] -> C:\WINDOWS\system32\drivers\ksecdd.sys -> [2009/06/22 03:34:52 | 00,092,544 | ---- | M] (Microsoft Corporation) (Srv) Srv [File_System | On_Demand | Running] -> C:\WINDOWS\system32\drivers\srv.sys -> [2008/12/11 03:57:21 | 00,333,184 | ---- | M] (Microsoft Corporation) (MRxSmb) MRxSmb [File_System | System | Running] -> C:\WINDOWS\system32\drivers\mrxsmb.sys -> [2008/10/24 03:10:42 | 00,453,632 | ---- | M] (Microsoft Corporation) (AFD) AFD Networking Support Environment [Kernel | System | Running] -> C:\WINDOWS\System32\drivers\afd.sys -> [2008/08/14 01:51:43 | 00,138,368 | ---- | M] (Microsoft Corporation) (Tcpip) TCP/IP Protocol Driver [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\tcpip.sys -> [2008/06/20 02:45:13 | 00,360,320 | ---- | M] (Microsoft Corporation) (RMCAST) Reliable Multicast Protocol driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\rmcast.sys -> [2008/05/08 04:28:49 | 00,202,752 | ---- | M] (Microsoft Corporation) (MRxDAV) WebDav Client Redirector [File_System | On_Demand | Running] -> C:\WINDOWS\system32\drivers\mrxdav.sys -> [2007/12/18 01:51:35 | 00,179,584 | ---- | M] (Microsoft Corporation) (Secdrv) Secdrv [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\secdrv.sys -> [2007/11/13 02:25:53 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) (Update) Microcode Update Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\update.sys -> [2007/04/23 02:32:54 | 00,364,160 | ---- | M] (Microsoft Corporation) (elagopro) GoProto Protocol Driver for LELA [Kernel | Auto | Running] -> C:\WINDOWS\system32\drivers\elagopro.sys -> [2007/03/22 12:57:14 | 00,028,672 | --S- | M] (Gteko Ltd.) (elaunidr) UniDriver for LELA [Kernel | Auto | Running] -> C:\WINDOWS\system32\drivers\elaunidr.sys -> [2007/03/22 12:57:14 | 00,005,376 | --S- | M] (Gteko Ltd.) (Ntfs) Ntfs [File_System | Disabled | Running] -> C:\WINDOWS\system32\drivers\ntfs.sys -> [2007/02/09 03:10:35 | 00,574,464 | ---- | M] (Microsoft Corporation) (FltMgr) FltMgr [File_System | Boot | Running] -> C:\WINDOWS\system32\drivers\fltmgr.sys -> [2006/08/21 01:14:58 | 00,128,896 | ---- | M] (Microsoft Corporation) (wdmaud) Microsoft WINMM WDM Audio Compatibility Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\wdmaud.sys -> [2006/06/14 01:00:45 | 00,082,944 | ---- | M] (Microsoft Corporation) (splitter) Microsoft Kernel Audio Splitter [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\splitter.sys -> [2006/06/14 00:47:46 | 00,006,400 | ---- | M] (Microsoft Corporation) (kmixer) Microsoft Kernel Wave Audio Mixer [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\kmixer.sys -> [2006/06/14 00:47:45 | 00,172,416 | ---- | M] (Microsoft Corporation) (Rdbss) Rdbss [File_System | System | Running] -> C:\WINDOWS\system32\drivers\rdbss.sys -> [2006/05/05 01:47:57 | 00,174,592 | ---- | M] (Microsoft Corporation) (HTTP) HTTP [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\http.sys -> [2006/03/16 16:33:10 | 00,262,784 | ---- | M] (Microsoft Corporation) (aec) Microsoft Kernel Acoustic Echo Canceller [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\aec.sys -> [2006/02/14 16:22:26 | 00,142,464 | ---- | M] (Microsoft Corporation) (RDPWD) RDPWD [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\rdpwd.sys -> [2005/06/09 20:09:46 | 00,139,528 | ---- | M] (Microsoft Corporation) (BCM43XX) 802.11 Network Adapter Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\BCMWL5.SYS -> [2005/02/11 07:46:22 | 00,371,712 | ---- | M] (Broadcom Corporation) (IpNat) IP Network Address Translator [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\ipnat.sys -> [2004/09/29 14:28:37 | 00,134,912 | ---- | M] (Microsoft Corporation) (TermDD) Terminal Device Driver [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\termdd.sys -> [2004/08/04 00:01:07 | 00,040,840 | ---- | M] (Microsoft Corporation) (TDTCP) TDTCP [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\tdtcp.sys -> [2004/08/04 00:01:07 | 00,021,896 | ---- | M] (Microsoft Corporation) (TDPIPE) TDPIPE [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\tdpipe.sys -> [2004/08/04 00:01:07 | 00,012,040 | ---- | M] (Microsoft Corporation) (sysaudio) Microsoft Kernel System Audio Device [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\sysaudio.sys -> [2004/08/03 22:15:55 | 00,060,800 | ---- | M] (Microsoft Corporation) (Serial) Serial port driver [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\serial.sys -> [2004/08/03 22:15:52 | 00,064,896 | ---- | M] (Microsoft Corporation) (Mup) Mup [File_System | Boot | Running] -> C:\WINDOWS\system32\drivers\mup.sys -> [2004/08/03 22:15:20 | 00,107,904 | ---- | M] (Microsoft Corporation) (NetBT) NetBios over Tcpip [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\netbt.sys -> [2004/08/03 22:14:37 | 00,162,816 | ---- | M] (Microsoft Corporation) (i8042prt) i8042 Keyboard and PS/2 Mouse Port Driver [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\i8042prt.sys -> [2004/08/03 22:14:36 | 00,052,736 | ---- | M] (Microsoft Corporation) (NdisWan) Remote Access NDIS WAN Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\ndiswan.sys -> [2004/08/03 22:14:31 | 00,091,776 | ---- | M] (Microsoft Corporation) (NDIS) NDIS System Driver [Kernel | Boot | Running] -> C:\WINDOWS\system32\drivers\ndis.sys -> [2004/08/03 22:14:28 | 00,182,912 | ---- | M] (Microsoft Corporation) (IPSec) IPSEC driver [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\ipsec.sys -> [2004/08/03 22:14:28 | 00,074,752 | ---- | M] (Microsoft Corporation) (PptpMiniport) WAN Miniport (PPTP) [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\raspptp.sys -> [2004/08/03 22:14:26 | 00,048,384 | ---- | M] (Microsoft Corporation) (Rasl2tp) WAN Miniport (L2TP) [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\rasl2tp.sys -> [2004/08/03 22:14:22 | 00,051,328 | ---- | M] (Microsoft Corporation) (Fastfat) Fastfat [File_System | Disabled | Running] -> C:\WINDOWS\system32\drivers\fastfat.sys -> [2004/08/03 22:14:16 | 00,143,360 | ---- | M] (Microsoft Corporation) (Cdfs) Cdfs [File_System | Disabled | Stopped] -> C:\WINDOWS\system32\drivers\cdfs.sys -> [2004/08/03 22:14:10 | 00,063,744 | ---- | M] (Microsoft Corporation) (NABTSFEC) NABTS/FEC VBI Codec [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\nabtsfec.sys -> [2004/08/03 22:10:28 | 00,085,376 | ---- | M] (Microsoft Corporation) (WSTCODEC) World Standard Teletext Codec [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\wstcodec.sys -> [2004/08/03 22:10:21 | 00,019,328 | ---- | M] (Microsoft Corporation) (CCDECODE) Closed Caption Decoder [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\ccdecode.sys -> [2004/08/03 22:10:16 | 00,017,024 | ---- | M] (Microsoft Corporation) (SLIP) BDA Slip De-Framer [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\slip.sys -> [2004/08/03 22:10:16 | 00,011,136 | ---- | M] (Microsoft Corporation) (streamip) BDA IPSink [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\streamip.sys -> [2004/08/03 22:10:12 | 00,015,360 | ---- | M] (Microsoft Corporation) (NdisIP) Microsoft TV/Video Connection [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\ndisip.sys -> [2004/08/03 22:10:12 | 00,010,880 | ---- | M] (Microsoft Corporation) (ohci1394) Texas Instruments OHCI Compliant IEEE 1394 Host Controller [Kernel | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\ohci1394.sys -> [2004/08/03 22:10:08 | 00,061,056 | ---- | M] (Microsoft Corporation) (USBSTOR) USB Mass Storage Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\usbstor.sys -> [2004/08/03 22:08:46 | 00,026,496 | ---- | M] (Microsoft Corporation) (usbhub) Microsoft USB Standard Hub Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\usbhub.sys -> [2004/08/03 22:08:42 | 00,057,600 | ---- | M] (Microsoft Corporation) (usbuhci) Microsoft USB Universal Host Controller Miniport Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\usbuhci.sys -> [2004/08/03 22:08:37 | 00,020,480 | ---- | M] (Microsoft Corporation) (Modem) Modem [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\modem.sys -> [2004/08/03 22:08:05 | 00,030,080 | ---- | M] (Microsoft Corporation) (drmkaud) Microsoft Kernel DRM Audio Descrambler [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\drmkaud.sys -> [2004/08/03 22:07:57 | 00,002,944 | ---- | M] (Microsoft Corporation) (mssmbios) Microsoft System Management BIOS Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\mssmbios.sys -> [2004/08/03 22:07:47 | 00,015,488 | ---- | M] (Microsoft Corporation) (Pcmcia) Pcmcia [Kernel | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\pcmcia.sys -> [2004/08/03 22:07:46 | 00,119,936 | ---- | M] (Microsoft Corporation) (PCI) PCI Bus Driver [Kernel | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\pci.sys -> [2004/08/03 22:07:46 | 00,068,224 | ---- | M] (Microsoft Corporation) (agp440) Intel AGP Bus Filter [Kernel | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\agp440.sys -> [2004/08/03 22:07:41 | 00,042,368 | ---- | M] (Microsoft Corporation) (CmBatt) Microsoft ACPI Control Method Battery Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\cmbatt.sys -> [2004/08/03 22:07:39 | 00,014,080 | ---- | M] (Microsoft Corporation) (ACPI) Microsoft ACPI Driver [Kernel | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\ACPI.sys -> [2004/08/03 22:07:38 | 00,187,776 | ---- | M] (Microsoft Corporation) (DMusic) Microsoft Kernel DLS Syntheiszer [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\dmusic.sys -> [2004/08/03 22:07:38 | 00,052,864 | ---- | M] (Microsoft Corporation) (dmboot) dmboot [Kernel | Disabled | Stopped] -> C:\WINDOWS\system32\drivers\dmboot.sys -> [2004/08/03 22:07:17 | 00,799,744 | ---- | M] (Microsoft Corp., Veritas Software) (dmio) dmio [Kernel | Disabled | Stopped] -> C:\WINDOWS\system32\drivers\dmio.sys -> [2004/08/03 22:07:16 | 00,153,344 | ---- | M] (Microsoft Corp., Veritas Software) (VgaSave) VGA Display Controller. [Kernel | System | Running] -> C:\WINDOWS\System32\drivers\vga.sys -> [2004/08/03 22:07:06 | 00,020,992 | ---- | M] (Microsoft Corporation) (sr) System Restore Filter Driver [File_System | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\sr.sys -> [2004/08/03 22:06:25 | 00,073,472 | ---- | M] (Microsoft Corporation) (RasPppoe) Remote Access PPPOE Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\raspppoe.sys -> [2004/08/03 22:05:07 | 00,041,472 | ---- | M] (Microsoft Corporation) (AsyncMac) RAS Asynchronous Media Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\asyncmac.sys -> [2004/08/03 22:05:03 | 00,014,336 | ---- | M] (Microsoft Corporation) (Wanarp) Remote Access IP ARP Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\wanarp.sys -> [2004/08/03 22:04:57 | 00,034,560 | ---- | M] (Microsoft Corporation) (IpInIp) IP in IP Tunnel Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\ipinip.sys -> [2004/08/03 22:04:45 | 00,020,992 | ---- | M] (Microsoft Corporation) (PSched) QoS Packet Scheduler [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\psched.sys -> [2004/08/03 22:04:19 | 00,069,120 | ---- | M] (Microsoft Corporation) (Gpc) Generic Packet Classifier [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\msgpc.sys -> [2004/08/03 22:04:12 | 00,035,072 | ---- | M] (Microsoft Corporation) (NetBIOS) NetBIOS Interface [File_System | System | Running] -> C:\WINDOWS\system32\drivers\netbios.sys -> [2004/08/03 22:03:21 | 00,034,560 | ---- | M] (Microsoft Corporation) (Ndisuio) NDIS Usermode I/O Protocol [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\ndisuio.sys -> [2004/08/03 22:03:12 | 00,012,928 | ---- | M] (Microsoft Corporation) (usbprint) Microsoft USB PRINTER Class [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\usbprint.sys -> [2004/08/03 22:01:24 | 00,025,856 | ---- | M] (Microsoft Corporation) (rdpdr) Terminal Server Device Redirector Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\rdpdr.sys -> [2004/08/03 22:01:15 | 00,196,864 | ---- | M] (Microsoft Corporation) (IRENUM) IR Enumerator Service [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\irenum.sys -> [2004/08/03 22:00:46 | 00,011,264 | ---- | M] (Microsoft Corporation) (Npfs) Npfs [File_System | System | Running] -> C:\WINDOWS\system32\drivers\npfs.sys -> [2004/08/03 22:00:43 | 00,030,848 | ---- | M] (Microsoft Corporation) (Msfs) Msfs [File_System | System | Running] -> C:\WINDOWS\system32\drivers\msfs.sys -> [2004/08/03 22:00:41 | 00,019,072 | ---- | M] (Microsoft Corporation) (Udfs) Udfs [File_System | Disabled | Stopped] -> C:\WINDOWS\system32\drivers\udfs.sys -> [2004/08/03 22:00:31 | 00,066,176 | ---- | M] (Microsoft Corporation) (VolSnap) VolSnap [Kernel | Boot | Running] -> C:\WINDOWS\system32\drivers\volsnap.sys -> [2004/08/03 22:00:16 | 00,052,352 | ---- | M] (Microsoft Corporation) (Imapi) CD-Burning Filter Driver [Kernel | System | Stopped] -> C:\WINDOWS\system32\drivers\imapi.sys -> [2004/08/03 22:00:15 | 00,041,856 | ---- | M] (Microsoft Corporation) (Ip6Fw) IPv6 Windows Firewall Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\ip6fw.sys -> [2004/08/03 22:00:06 | 00,029,056 | ---- | M] (Microsoft Corporation) (Disk) Disk Driver [Kernel | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\disk.sys -> [2004/08/03 21:59:54 | 00,036,352 | ---- | M] (Microsoft Corporation) (Sfloppy) Sfloppy [Kernel | System | Stopped] -> C:\WINDOWS\system32\drivers\sfloppy.sys -> [2004/08/03 21:59:54 | 00,011,392 | ---- | M] (Microsoft Corporation) (Cdrom) CD-ROM Driver [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\cdrom.sys -> [2004/08/03 21:59:52 | 00,049,536 | ---- | M] (Microsoft Corporation) (atapi) Standard IDE/ESDI Hard Disk Controller [Kernel | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\atapi.sys -> [2004/08/03 21:59:42 | 00,095,360 | ---- | M] (Microsoft Corporation) (IntelIde) IntelIde [Kernel | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\intelide.sys -> [2004/08/03 21:59:41 | 00,005,504 | ---- | M] (Microsoft Corporation) (redbook) Digital CD Audio Playback Filter Driver [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\redbook.sys -> [2004/08/03 21:59:37 | 00,057,472 | ---- | M] (Microsoft Corporation) (Fdc) Floppy Disk Controller Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\fdc.sys -> [2004/08/03 21:59:27 | 00,027,392 | ---- | M] (Microsoft Corporation) (Flpydisk) Floppy Disk Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\flpydisk.sys -> [2004/08/03 21:59:27 | 00,020,480 | ---- | M] (Microsoft Corporation) (P3) Intel PentiumIII Processor Driver [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\p3.sys -> [2004/08/03 21:59:19 | 00,042,496 | ---- | M] (Microsoft Corporation) (serenum) Serenum Filter Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\serenum.sys -> [2004/08/03 21:59:07 | 00,015,488 | ---- | M] (Microsoft Corporation) (Parport) Parallel port driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\parport.sys -> [2004/08/03 21:59:06 | 00,080,128 | ---- | M] (Microsoft Corporation) (usbscan) USB Scanner Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\usbscan.sys -> [2004/08/03 21:58:46 | 00,015,104 | ---- | M] (Microsoft Corporation) (MSKSSRV) Microsoft Streaming Service Proxy [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\mskssrv.sys -> [2004/08/03 21:58:41 | 00,007,552 | ---- | M] (Microsoft Corporation) (swenum) Software Bus Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\swenum.sys -> [2004/08/03 21:58:41 | 00,004,352 | ---- | M] (Microsoft Corporation) (MSPQM) Microsoft Streaming Quality Manager Proxy [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\mspqm.sys -> [2004/08/03 21:58:40 | 00,004,992 | ---- | M] (Microsoft Corporation) (MSTEE) Microsoft Streaming Tee/Sink-to-Sink Converter [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\mstee.sys -> [2004/08/03 21:58:38 | 00,005,504 | ---- | M] (Microsoft Corporation) (MSPCLOCK) Microsoft Streaming Clock Proxy [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\mspclock.sys -> [2004/08/03 21:58:38 | 00,005,376 | ---- | M] (Microsoft Corporation) (Kbdclass) Keyboard Class Driver [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\kbdclass.sys -> [2004/08/03 21:58:32 | 00,024,576 | ---- | M] (Microsoft Corporation) (Mouclass) Mouse Class Driver [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\mouclass.sys -> [2004/08/03 21:58:32 | 00,023,040 | ---- | M] (Microsoft Corporation) (Atmarpc) ATM ARP Client Protocol [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\atmarpc.sys -> [2004/08/03 21:58:30 | 00,059,904 | ---- | M] (Microsoft Corporation) (MountMgr) Mount Point Manager [Kernel | Boot | Running] -> C:\WINDOWS\system32\drivers\mountmgr.sys -> [2004/08/03 21:58:30 | 00,042,240 | ---- | M] (Microsoft Corporation) (NIC1394) 1394 Net Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\nic1394.sys -> [2004/08/03 21:58:29 | 00,061,824 | ---- | M] (Microsoft Corporation) (Arp1394) 1394 ARP Client Protocol [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\arp1394.sys -> [2004/08/03 21:58:29 | 00,060,800 | ---- | M] (Microsoft Corporation) (ltmodem5) LT Modem Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\ltmdmnt.sys -> [2004/08/03 21:41:35 | 00,606,684 | ---- | M] (LT) (usbccgp) Microsoft USB Generic Parent Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\usbccgp.sys -> [2004/08/03 21:08:46 | 00,031,616 | ---- | M] (Microsoft Corporation) (usbaudio) USB Audio Driver (WDM) [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\USBAUDIO.sys -> [2004/08/03 21:07:56 | 00,059,264 | ---- | M] (Microsoft Corporation) (ASCTRM) ASCTRM [Kernel | Auto | Running] -> C:\WINDOWS\system32\drivers\asctrm.sys -> [2003/09/28 16:58:07 | 00,008,552 | ---- | M] (Windows (R) 2000 DDK provider) (nv) nv [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\nv4_mini.sys -> [2003/06/24 18:32:00 | 01,326,203 | ---- | M] (NVIDIA Corporation) (wanatw) WAN Miniport (ATW) [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\wanatw4.sys -> [2002/07/16 14:07:34 | 00,033,588 | ---- | M] (America Online, Inc.) (maestro) ESS Maestro Audio Driver (WDM) [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\es198xdl.sys -> [2002/06/20 17:53:54 | 00,414,400 | ---- | M] (ESS Technology, Inc.) (Ftdisk) Volume Manager Driver [Kernel | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\ftdisk.sys -> [2001/08/23 04:00:00 | 00,125,056 | ---- | M] (Microsoft Corporation) (NDProxy) NDIS Proxy [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\ndproxy.sys -> [2001/08/23 04:00:00 | 00,038,016 | ---- | M] (Microsoft Corporation) (isapnp) PnP ISA/EISA Bus Driver [Kernel | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\isapnp.sys -> [2001/08/23 04:00:00 | 00,035,840 | ---- | M] (Microsoft Corporation) (Fips) Fips [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\fips.sys -> [2001/08/23 04:00:00 | 00,034,944 | ---- | M] (Microsoft Corporation) (IpFilterDriver) IP Traffic Filter Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\ipfltdrv.sys -> [2001/08/23 04:00:00 | 00,032,896 | ---- | M] (Microsoft Corporation) (NwlnkFwd) IPX Traffic Forwarder Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\nwlnkfwd.sys -> [2001/08/23 04:00:00 | 00,032,512 | ---- | M] (Microsoft Corporation) (PartMgr) Partition Manager [Kernel | Boot | Running] -> C:\WINDOWS\system32\drivers\partmgr.sys -> [2001/08/23 04:00:00 | 00,018,688 | ---- | M] (Microsoft Corporation) (Cdaudio) Cdaudio [Kernel | System | Stopped] -> C:\WINDOWS\system32\drivers\cdaudio.sys -> [2001/08/23 04:00:00 | 00,018,688 | ---- | M] (Microsoft Corporation) (Ptilink) Direct Parallel Link Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\ptilink.sys -> [2001/08/23 04:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) (Raspti) Direct Parallel [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\raspti.sys -> [2001/08/23 04:00:00 | 00,016,512 | ---- | M] (Microsoft Corporation) (cbidf2k) cbidf2k [Kernel | Disabled | Stopped] -> C:\WINDOWS\system32\drivers\cbidf2k.sys -> [2001/08/23 04:00:00 | 00,013,952 | ---- | M] (Microsoft Corporation) (NwlnkFlt) IPX Traffic Filter Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\nwlnkflt.sys -> [2001/08/23 04:00:00 | 00,012,416 | ---- | M] (Microsoft Corporation) (WS2IFSL) Windows Socket 2.0 Non-IFS Service Provider Support Environment [Kernel | System | Running] -> C:\WINDOWS\System32\drivers\ws2ifsl.sys -> [2001/08/23 04:00:00 | 00,012,032 | ---- | M] (Microsoft Corporation) (ACPIEC) ACPIEC [Kernel | Disabled | Stopped] -> C:\WINDOWS\system32\drivers\acpiec.sys -> [2001/08/23 04:00:00 | 00,011,648 | ---- | M] (Microsoft Corporation) (NdisTapi) Remote Access NDIS TAPI Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\ndistapi.sys -> [2001/08/23 04:00:00 | 00,009,600 | ---- | M] (Microsoft Corporation) (RasAcd) Remote Access Auto Connection Driver [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\rasacd.sys -> [2001/08/23 04:00:00 | 00,008,832 | ---- | M] (Microsoft Corporation) (ParVdm) ParVdm [Kernel | Auto | Running] -> C:\WINDOWS\system32\drivers\parvdm.sys -> [2001/08/23 04:00:00 | 00,006,784 | ---- | M] (Microsoft Corporation) (dmload) dmload [Kernel | Disabled | Stopped] -> C:\WINDOWS\system32\drivers\dmload.sys -> [2001/08/23 04:00:00 | 00,005,888 | ---- | M] (Microsoft Corp., Veritas Software.) (RDPCDD) RDPCDD [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\rdpcdd.sys -> [2001/08/23 04:00:00 | 00,004,224 | ---- | M] (Microsoft Corporation) (mnmdd) mnmdd [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\mnmdd.sys -> [2001/08/23 04:00:00 | 00,004,224 | ---- | M] (Microsoft Corporation) (Beep) Beep [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\beep.sys -> [2001/08/23 04:00:00 | 00,004,224 | ---- | M] (Microsoft Corporation) (Null) Null [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\null.sys -> [2001/08/23 04:00:00 | 00,002,944 | ---- | M] (Microsoft Corporation) (HidUsb) Microsoft HID Class Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\hidusb.sys -> [2001/08/17 13:02:20 | 00,009,600 | ---- | M] (Microsoft Corporation) (mouhid) Mouse HID Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\mouhid.sys -> [2001/08/17 12:48:00 | 00,012,160 | ---- | M] (Microsoft Corporation) (CBEN5) Xircom CardBus Ethernet 10/100 Adapter family Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\cben5.sys -> [2001/08/17 11:13:14 | 00,046,108 | ---- | M] (Xircom, Inc.) (EL90XBC) 3Com EtherLink XL 90XB/C Adapter Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\el90xbc5.sys -> [2001/08/17 11:11:06 | 00,066,591 | ---- | M] (3Com Corporation) (swmidi) Microsoft Kernel GS Wavetable Synthesizer [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\swmidi.sys -> [2001/08/17 06:00:52 | 00,054,272 | ---- | M] (Microsoft Corporation) (audstub) Audio Stub Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\audstub.sys -> [2001/08/17 05:59:44 | 00,003,072 | ---- | M] (Microsoft Corporation) (Compbatt) Microsoft Composite Battery Driver [Kernel | Boot | Running] -> C:\WINDOWS\System32\DRIVERS\compbatt.sys -> [2001/08/17 05:58:00 | 00,009,344 | ---- | M] (Microsoft Corporation) (MODEMCSA) Unimodem Streaming Filter Device [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\MODEMCSA.sys -> [2001/08/17 05:57:38 | 00,016,128 | ---- | M] (Microsoft Corporation) (nv4) nv4 [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\nv4.sys -> [2001/08/17 04:50:26 | 00,731,648 | ---- | M] (NVIDIA Corporation) (wceusbsh) Windows CE USB Serial Host Driver [Kernel | System | Stopped] -> C:\WINDOWS\system32\drivers\wceusbsh.sys -> [2000/10/20 01:04:14 | 00,028,089 | R--- | M] (Windows (R) 2000 DDK provider) (Aspi32) Aspi32 [Kernel | Auto | Running] -> C:\WINDOWS\system32\drivers\aspi32.sys -> [1997/12/22 17:02:46 | 00,023,936 | ---- | M] (Adaptec) (crlscsi) crlscsi [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\crlscsi.sys -> [1995/11/07 00:57:16 | 00,006,144 | ---- | M] (Corel Corporation) [Registry - Safe List] < Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> -> HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> %SystemRoot%\system32\blank.htm -> HKEY_LOCAL_MACHINE\: Search\\"CustomSearch" -> http://red.clientapps.yahoo.com/customize/ie/defaults/cs/ymsgr/*http://www.yahoo.com/ext/search/search.html -> < Internet Explorer Settings [HKEY_CURRENT_USER\] > -> -> HKEY_CURRENT_USER\: Main\\"Search Page" -> http://red.clientapps.yahoo.com/customize/ie/defaults/sp/ymsgr/*http://www.yahoo.com -> HKEY_CURRENT_USER\: Main\\"SearchMigratedDefaultName" -> Yahoo! Search -> HKEY_CURRENT_USER\: Main\\"SearchMigratedDefaultURL" -> http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 -> HKEY_CURRENT_USER\: Main\\"Start Page" -> about:blank -> HKEY_CURRENT_USER\: SearchURL\\"" -> http://red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr/*http://www.yahoo.com -> HKEY_CURRENT_USER\: "ProxyEnable" -> 0 -> < FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla HKLM\software\mozilla\Firefox\Extensions -> -> < FireFox Extensions [User Folders] > -> < HOSTS File > (734 bytes and 19 lines) -> C:\WINDOWS\system32\drivers\etc\hosts -> Reset Hosts 127.0.0.1 localhost < BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx [AcroIEHlprObj Class] -> [2001/04/16 15:39:02 | 00,037,808 | ---- | M] () {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKLM] -> C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll [SSVHelper Class] -> [2005/11/10 13:22:10 | 00,184,423 | ---- | M] (Sun Microsystems, Inc.) < Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar -> "{ACB1E670-3217-45C4-A021-6B829A8A27CB}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found "{BA52B914-B692-46c4-B683-905236F6F655}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found < Internet Explorer ToolBars [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ -> WebBrowser\\"{4982D40A-C53B-4615-B15B-B5B5E98D167C}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found WebBrowser\\"{EF99BD32-C1FB-11D2-892F-0090271D4F88}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found < Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "AOLDialer" -> C:\Program Files\Common Files\AOL\ACS\AOLDial.exe [C:\Program Files\Common Files\AOL\ACS\AOLDial.exe] -> [2006/10/23 04:50:37 | 00,071,216 | R--- | M] (AOL LLC) "HostManager" -> C:\Program Files\Common Files\AOL\1111888280\EE\aolsoftware.exe [C:\Program Files\Common Files\AOL\1111888280\ee\AOLSoftware.exe] -> [2007/04/12 13:23:31 | 00,042,032 | ---- | M] (AOL LLC) "Malwarebytes Anti-Malware (reboot)" -> C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe ["C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript] -> [2009/09/10 14:53:56 | 01,312,080 | ---- | M] (Malwarebytes Corporation) "MsmqIntCert" -> C:\WINDOWS\System32\mqrt.dll [regsvr32 /s mqrt.dll] -> [2009/06/25 10:36:08 | 00,177,152 | ---- | M] (Microsoft Corporation) < All Users Startup Folder > -> C:\Documents and Settings\All Users\Start Menu\Programs\Startup -> < Donald Startup Folder > -> C:\Documents and Settings\Donald\Start Menu\Programs\Startup -> < CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer \\"HonorAutoRunSetting" -> [1] -> File not found < CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System < CurrentVersion Policy Settings - Explorer [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer \\"NoDriveTypeAutoRun" -> [145] -> File not found < CurrentVersion Policy Settings - System [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> < Internet Explorer Menu Extensions [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ -> &AOL Toolbar search -> C:\Program Files\AOL Toolbar\toolbar.dll [res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML] -> File not found Convert for CLIÉ -> C:\Program Files\Sony\Image Converter\menu.htm [C:\Program Files\Sony\Image Converter\menu.htm] -> [2003/12/01 17:07:48 | 00,002,082 | ---- | M] () E&xport to Microsoft Excel -> C:\Program Files\Microsoft Office\Office10\EXCEL.EXE [res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000] -> [2008/10/28 16:07:58 | 09,362,248 | R--- | M] (Microsoft Corporation) Yahoo! Dictionary -> C:\Program Files\Yahoo!\Common [file:///C:\Program Files\Yahoo!\Common/ycdict.htm] -> [2003/10/17 23:17:19 | 00,000,000 | ---D | M] Yahoo! Search -> C:\Program Files\Yahoo!\Common [file:///C:\Program Files\Yahoo!\Common/ycsrch.htm] -> [2003/10/17 23:17:19 | 00,000,000 | ---D | M] < Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ -> {08B0E5C0-4FCB-11CF-AAA5-00401C608501}:{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC} [HKLM] -> C:\Program Files\Java\jre1.5.0_06\bin\NPJPI150_06.dll [Menu: Sun Java Console] -> [2005/11/10 13:22:10 | 00,069,746 | ---- | M] (Sun Microsystems, Inc.) {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F}:{2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} [HKLM] -> C:\Program Files\Microsoft ActiveSync\INetRepl.dll [Button: Create Mobile Favorite] -> [2006/11/13 13:39:34 | 00,158,504 | ---- | M] (Microsoft Corporation) {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F}:{2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} [HKLM] -> C:\Program Files\Microsoft ActiveSync\INetRepl.dll [Menu: Create Mobile Favorite...] -> [2006/11/13 13:39:34 | 00,158,504 | ---- | M] (Microsoft Corporation) < Internet Explorer Extensions [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\ -> CmdMapping\\"{08B0E5C0-4FCB-11CF-AAA5-00401C608501}" [HKLM] -> C:\Program Files\Java\jre1.5.0_06\bin\NPJPI150_06.dll [Sun Java Console] -> [2005/11/10 13:22:10 | 00,069,746 | ---- | M] (Sun Microsystems, Inc.) CmdMapping\\"{2EAF5BB1-070F-11D3-9307-00C04FAE2D4F}" [HKLM] -> C:\Program Files\Microsoft ActiveSync\INetRepl.dll [Create Mobile Favorite] -> [2006/11/13 13:39:34 | 00,158,504 | ---- | M] (Microsoft Corporation) CmdMapping\\"{2EAF5BB2-070F-11D3-9307-00C04FAE2D4F}" [HKLM] -> C:\Program Files\Microsoft ActiveSync\INetRepl.dll [Create Mobile Favorite...] -> [2006/11/13 13:39:34 | 00,158,504 | ---- | M] (Microsoft Corporation) CmdMapping\\"{4528BBE0-4E08-11D5-AD55-00010333D0AD}" [HKLM] -> [Reg Error: Key error.] -> File not found CmdMapping\\"{4982D40A-C53B-4615-B15B-B5B5E98D167C}" [HKLM] -> [Reg Error: Key error.] -> File not found < Internet Explorer Plugins [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\ -> < Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix "" -> http:// < Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. -> 1 domain(s) and sub-domain(s) not assigned to a zone. < Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. -> objects_aol.com [*] -> Out of zone range - ( 5 ) -> 1 domain(s) and sub-domain(s) not assigned to a zone. < Trusted Sites Ranges [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ -> {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} [HKLM] -> http://download.av.aol.com/molbin/shared/mcinsctl/en-us/4,0,0,83/mcinsctl.cab [Reg Error: Key error.] -> {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} [HKLM] -> http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1152851010777 [MUWebControl Class] -> {8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] -> http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab [Java Plug-in 1.5.0_06] -> {9F1C11AA-197B-4942-BA54-47A8489BB47F} [HKLM] -> http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37960.8433217593 [Reg Error: Key error.] -> {A17E30C4-A9BA-11D4-8673-60DB54C10000} [HKLM] -> http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yse/ymmapi_416.dll [YahooYMailTo Class] -> {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} [HKLM] -> http://download.av.aol.com/molbin/shared/mcgdmgr/en-us/1,0,0,20/mcgdmgr.cab [Reg Error: Key error.] -> {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab [Java Plug-in 1.5.0_06] -> {D27CDB6E-AE6D-11CF-96B8-444553540000} [HKLM] -> https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab [Shockwave Flash Object] -> < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ -> DhcpNameServer -> 12.127.16.67 12.127.17.71 -> < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ -> {547A677D-6F5C-4228-877C-9F12B8C0AAC2}\\DhcpNameServer -> 12.127.16.67 12.127.17.71 (Xircom CardBus Ethernet 100 + Modem 56 (Ethernet Interface)) -> {5CEAE799-E798-4424-ABFC-63A405C81B6E}\\DhcpNameServer -> 192.168.1.1 (Wireless-G Notebook Adapter WPC54G V3) -> {A265898C-62BC-45C1-AC04-C61DA22CD73A}\\DhcpNameServer -> 192.168.1.1 (Wireless-G Notebook Adapter WPC54G V3) -> < Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> *Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell -> Explorer.exe -> C:\WINDOWS\explorer.exe -> [2007/06/13 02:23:07 | 01,033,216 | ---- | M] (Microsoft Corporation) *MultiFile Done* -> -> < Domain Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List -> "C:\Program Files\Microsoft ActiveSync\rapimgr.exe" -> C:\Program Files\Microsoft ActiveSync\rapimgr.exe [C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager] -> [2006/11/13 13:39:34 | 00,199,464 | ---- | M] (Microsoft Corporation) "C:\Program Files\Microsoft ActiveSync\wcescomm.exe" -> C:\Program Files\Microsoft ActiveSync\wcescomm.exe [C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager] -> [2006/11/13 13:39:52 | 01,289,000 | ---- | M] (Microsoft Corporation) "C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" -> C:\Program Files\Microsoft ActiveSync\WCESMgr.exe [C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application] -> [2006/11/13 13:39:54 | 04,270,888 | ---- | M] (Microsoft Corporation) "C:\WINDOWS\system32\mqsvc.exe" -> C:\WINDOWS\System32\mqsvc.exe [C:\WINDOWS\system32\mqsvc.exe:*:Enabled:Message Queuing] -> [2009/06/22 03:49:04 | 00,004,608 | ---- | M] (Microsoft Corporation) < Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List -> "C:\Program Files\America Online 9.0\waol.exe" -> C:\Program Files\America Online 9.0\waol.exe [C:\Program Files\America Online 9.0\waol.exe:*:Enabled:America Online 9.0] -> File not found "C:\Program Files\America Online 9.0a\waol.exe" -> C:\Program Files\America Online 9.0a\waol.exe [C:\Program Files\America Online 9.0a\waol.exe:*:Enabled:AOL] -> [2004/11/19 09:54:58 | 00,037,464 | ---- | M] (America Online, Inc.) "C:\Program Files\Common Files\AOL\1111888280\EE\AOLServiceHost.exe" -> C:\Program Files\Common Files\AOL\1111888280\EE\AOLServiceHost.exe [C:\Program Files\Common Files\AOL\1111888280\EE\AOLServiceHost.exe:*:Enabled:AOL] -> [2005/07/29 08:53:51 | 00,151,128 | ---- | M] (America Online, Inc.) "C:\Program Files\Common Files\AOL\1111888280\EE\aolsoftware.exe" -> C:\Program Files\Common Files\AOL\1111888280\EE\aolsoftware.exe [C:\Program Files\Common Files\AOL\1111888280\EE\aolsoftware.exe:*:Enabled:AOL Shared Components] -> [2007/04/12 13:23:31 | 00,042,032 | ---- | M] (AOL LLC) "C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe" -> C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe [C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe:*:Enabled:AOL] -> [2006/10/23 04:50:35 | 00,046,640 | R--- | M] (AOL LLC) "C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" -> C:\Program Files\Common Files\AOL\ACS\AOLDial.exe [C:\Program Files\Common Files\AOL\ACS\AOLDial.exe:*:Enabled:AOL] -> [2006/10/23 04:50:37 | 00,071,216 | R--- | M] (AOL LLC) "C:\Program Files\Common Files\AOL\AOL Spyware Protection\AOLSP Scheduler.exe" -> C:\Program Files\Common Files\AOL\AOL Spyware Protection\AOLSP Scheduler.exe [C:\Program Files\Common Files\AOL\AOL Spyware Protection\AOLSP Scheduler.exe:*:Enabled:AOL] -> File not found "C:\Program Files\Common Files\AOL\AOL Spyware Protection\asp.exe" -> C:\Program Files\Common Files\AOL\AOL Spyware Protection\asp.exe [C:\Program Files\Common Files\AOL\AOL Spyware Protection\asp.exe:*:Enabled:AOL] -> File not found "C:\Program Files\Common Files\AOL\Loader\aolload.exe" -> C:\Program Files\Common Files\AOL\Loader\aolload.exe [C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL] -> [2006/11/02 23:17:27 | 00,010,800 | ---- | M] (AOL LLC) "C:\Program Files\Common Files\AOL\System Information\sinf.exe" -> C:\Program Files\Common Files\AOL\System Information\sinf.exe [C:\Program Files\Common Files\AOL\System Information\sinf.exe:*:Enabled:AOL] -> [2004/11/07 13:10:18 | 00,140,888 | ---- | M] (America Online Inc.) "C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe" -> C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe [C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe:*:Enabled:AOL] -> [2004/10/15 12:54:12 | 00,046,768 | ---- | M] (America Online Inc) "C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe" -> C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe [C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe:*:Enabled:AOL] -> [2004/10/15 12:54:14 | 00,100,016 | ---- | M] (America Online, Inc) "C:\Program Files\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe" -> C:\Program Files\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe [C:\Program Files\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe:*:Enabled:AOL TopSpeed] -> File not found "C:\Program Files\Common Files\AolCoach\en_en\player\AOLNySEV.exe" -> C:\Program Files\Common Files\AolCoach\en_en\player\AOLNySEV.exe [C:\Program Files\Common Files\AolCoach\en_en\player\AOLNySEV.exe:*:Enabled:AOL] -> File not found "C:\Program Files\Microsoft ActiveSync\rapimgr.exe" -> C:\Program Files\Microsoft ActiveSync\rapimgr.exe [C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager] -> [2006/11/13 13:39:34 | 00,199,464 | ---- | M] (Microsoft Corporation) "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE" -> C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE [C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE:*:Enabled:Connection Manager] -> [2006/11/13 13:39:52 | 01,289,000 | ---- | M] (Microsoft Corporation) "C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" -> C:\Program Files\Microsoft ActiveSync\WCESMgr.exe [C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application] -> [2006/11/13 13:39:54 | 04,270,888 | ---- | M] (Microsoft Corporation) "C:\Program Files\Yahoo!\Messenger\YPager.exe" -> C:\Program Files\Yahoo!\Messenger\YPager.exe [C:\Program Files\Yahoo!\Messenger\YPager.exe:*:Enabled:Yahoo! Messenger] -> File not found "C:\WINDOWS\system32\mqsvc.exe" -> C:\WINDOWS\System32\mqsvc.exe [C:\WINDOWS\system32\mqsvc.exe:*:Enabled:Message Queuing] -> [2009/06/22 03:49:04 | 00,004,608 | ---- | M] (Microsoft Corporation) < SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot -> < CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom -> "AutoRun" -> 1 -> "DisplayName" -> CD-ROM Driver -> "ImagePath" -> [System32\DRIVERS\cdrom.sys] -> File not found < Drives with AutoRun files > -> -> C:\AUTOEXEC.BAT [] -> C:\AUTOEXEC.BAT [ NTFS ] -> [2003/09/28 10:49:42 | 00,000,000 | ---- | M] () I:\autoCAD [] -> I:\autoCAD [ FAT ] -> [2008/05/22 10:15:50 | 00,000,000 | ---D | M] < MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 -> \{2903f125-8031-11dc-b42f-00038a000015} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2903f125-8031-11dc-b42f-00038a000015}\Shell\AutoRun\command \{2903f125-8031-11dc-b42f-00038a000015}\Shell\AutoRun\command\\"" -> E:\setupSNK.exe [E:\setupSNK.exe] -> File not found < Registry Shell Spawning - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command -> comfile [open] -> "%1" %* -> exefile [open] -> "%1" %* -> [Registry - Additional Scans - Safe List] < File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\ -> .bat [@ = batfile] -> "%1" %* -> .cmd [@ = cmdfile] -> "%1" %* -> .com [@ = comfile] -> "%1" %* -> .exe [@ = exefile] -> "%1" %* -> .html [@ = htmlfile] -> C:\Program Files\Internet Explorer\IEXPLORE.EXE -> [2009/08/26 21:18:44 | 00,634,648 | -HS- | M] (Microsoft Corporation) .pif [@ = piffile] -> "%1" %* -> .scr [@ = scrfile] -> "%1" /S -> < Protocol Handlers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ -> mctp:{d7b95390-b1c5-11d0-b111-0080c712fe82} [HKLM] -> Reg Error: Key error.[mctp: Asynchronous Pluggable Protocol Handler] -> File not found < Security Center Settings > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center \\"UpdatesDisableNotify" -> [0] -> File not found \\"AntiVirusOverride" -> [0] -> File not found \\"FirewallOverride" -> [0] -> File not found \\"AntiVirusDisableNotify" -> [0] -> File not found \\"FirewallDisableNotify" -> [0] -> File not found HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall\ -> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile \\"EnableFirewall" -> [1] -> File not found \\"DoNotAllowExceptions" -> [0] -> File not found \\"DisableNotifications" -> [0] -> File not found HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\ -> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\ -> -> < Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> {15EE1439-3B90-4DA6-A4FD-3BF23E830C25} -> Data Export {2A2766A4-6AE4-11D4-AC8E-52544C1966EE} -> Backup Dell-Installed Programs {3248F0A8-6813-11D6-A77B-00B0D0150060} -> J2SE Runtime Environment 5.0 Update 6 {350C97B0-3D7C-4EE8-BAA9-00BCB3D54227} -> WebFldrs XP {63569CE9-FA00-469C-AF5C-E5D4D93ACF91} -> Windows Genuine Advantage v1.3.0254.0 {78D62D17-D970-42DA-B8CF-5E5576293B33} -> Final Draft 7 {90280409-6000-11D3-8CFE-0050048383C9} -> Microsoft Office XP Professional with FrontPage {99052DB7-9592-4522-A558-5417BBAD48EE} -> Microsoft ActiveSync {A1960A82-DB70-474D-A86B-FA74466103C6} -> Drivers Install For Linksys Easylink Advisor {A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7} -> Microsoft .NET Framework 3.0 Service Pack 2 {A4D7B764-4140-11D4-88EB-0050DA3579C0} -> Nero - Burning Rom {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} -> Microsoft .NET Framework 2.0 Service Pack 2 {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} -> Microsoft .NET Framework 1.1 {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} -> Microsoft .NET Framework 3.5 SP1 {F5EA2077-A5A0-411E-8423-3D08F4602E5E} -> Image Converter 1.1 {FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F} -> HighMAT Extension to Microsoft Windows XP CD Writing Wizard Adobe Acrobat 5.0 -> Adobe Acrobat 5.0 Adobe Flash Player ActiveX -> Adobe Flash Player 10 ActiveX Adobe Flash Player Plugin -> Adobe Flash Player 10 Plugin Adobe Image Viewer Plugin -> Adobe Image Viewer Plugin 4.0 AOL Uninstaller -> AOL Uninstaller Corel Applications -> Corel Applications Destinator Console -> Destinator Console ERUNT_is1 -> ERUNT 1.1j IDNMitigationAPIs -> Microsoft Internationalized Domain Names Mitigation APIs ie7 -> Windows Internet Explorer 7 Intellisync Lite Connected Organizers V4.0 -> Intellisync Lite InterVideo WinDVD -> InterVideo WinDVD Malwarebytes' Anti-Malware_is1 -> Malwarebytes' Anti-Malware Microsoft .NET Framework 1.1 (1033) -> Microsoft .NET Framework 1.1 Microsoft .NET Framework 3.5 SP1 -> Microsoft .NET Framework 3.5 SP1 NLSDownlevelMapping -> Microsoft National Language Support Downlevel APIs NVIDIA -> NVIDIA Windows 2000/XP Display Drivers RealPlayer 6.0 -> RealPlayer Basic SpyEraser_is1 -> Uniblue SpyEraser ViewpointMediaPlayer -> Viewpoint Media Player WIC -> Windows Imaging Component Windows Media Format Runtime -> Windows Media Format Runtime Windows Media Player -> Windows Media Player 10 Windows XP Service Pack -> Windows XP Service Pack 2 WMCSetup -> Windows Media Connect Yahoo! Mail -> Yahoo! Internet Mail < EventViewer Logs - Last 10 Errors > -> Event Information -> Description Application [ Error ] 12/2/2009 5:53:07 PM Computer Name = DONALD_P | Source = MsiInstaller | ID = 11711 -> Description = Product: Microsoft .NET Framework 2.0 Service Pack 2 -- Error 1711.An error occurred while writing installation information to disk. Check to make sure enough disk space is available, and click Retry, or Cancel to end the install. Application [ Error ] 12/2/2009 7:10:43 PM Computer Name = DONALD_P | Source = Application Hang | ID = 1002 -> Description = Hanging application rundll32.exe, version 5.1.2600.2180, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Application [ Error ] 12/2/2009 7:55:16 PM Computer Name = DONALD_P | Source = MsiInstaller | ID = 1023 -> Description = Product: Microsoft .NET Framework 2.0 Service Pack 2 - Update 'KB974417' could not be installed. Error code 1603. Additional information is available in the log file . Application [ Error ] 12/2/2009 7:55:27 PM Computer Name = DONALD_P | Source = HotFixInstaller | ID = 5000 -> Description = EventType visualstudio8setup, P1 microsoft .net framework 2.0-kb974417, P2 1033, P3 1603, P4 msi, P5 f, P6 9.0.40302.0, P7 install, P8 x86, P9 xp, P10 1711. Application [ Error ] 12/2/2009 9:04:55 PM Computer Name = DONALD_P | Source = McLogEvent | ID = 5051 -> Description = Application [ Error ] 12/2/2009 11:08:36 PM Computer Name = DONALD_P | Source = Application Hang | ID = 1002 -> Description = Hanging application msimn.exe, version 6.0.2900.2180, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Application [ Error ] 12/3/2009 8:50:37 AM Computer Name = DONALD_P | Source = McLogEvent | ID = 5051 -> Description = Application [ Error ] 12/3/2009 2:01:51 PM Computer Name = DONALD_P | Source = McLogEvent | ID = 5051 -> Description = Application [ Error ] 12/3/2009 7:01:50 PM Computer Name = DONALD_P | Source = McLogEvent | ID = 5051 -> Description = Application [ Error ] 12/13/2009 5:38:57 PM Computer Name = DONALD_P | Source = McLogEvent | ID = 5051 -> Description = System [ Error ] 12/7/2009 2:02:40 AM Computer Name = DONALD_P | Source = Service Control Manager | ID = 7034 -> Description = The Message Queuing Triggers service terminated unexpectedly. It has done this 1 time(s). System [ Error ] 12/7/2009 2:12:49 AM Computer Name = DONALD_P | Source = Service Control Manager | ID = 7022 -> Description = The McAfee Real-time Scanner service hung on starting. System [ Error ] 12/7/2009 2:13:34 AM Computer Name = DONALD_P | Source = Service Control Manager | ID = 7023 -> Description = The Computer Browser service terminated with the following error: %%1460 System [ Error ] 12/7/2009 2:15:07 AM Computer Name = DONALD_P | Source = Service Control Manager | ID = 7009 -> Description = Timeout (30000 milliseconds) waiting for the McAfee SystemGuards service to connect. System [ Error ] 12/7/2009 2:15:07 AM Computer Name = DONALD_P | Source = Service Control Manager | ID = 7000 -> Description = The McAfee SystemGuards service failed to start due to the following error: %%1053 System [ Error ] 12/7/2009 2:15:54 AM Computer Name = DONALD_P | Source = Service Control Manager | ID = 7009 -> Description = Timeout (30000 milliseconds) waiting for the Application Layer Gateway Service service to connect. System [ Error ] 12/7/2009 2:15:54 AM Computer Name = DONALD_P | Source = Service Control Manager | ID = 7000 -> Description = The Application Layer Gateway Service service failed to start due to the following error: %%1053 System [ Error ] 12/13/2009 5:04:46 PM Computer Name = DONALD_P | Source = Service Control Manager | ID = 7023 -> Description = The Computer Browser service terminated with the following error: %%1460 System [ Error ] 12/13/2009 5:10:12 PM Computer Name = DONALD_P | Source = Windows Update Agent | ID = 16 -> Description = Unable to Connect: Windows is unable to connect to the automatic updates service and therefore cannot download and install updates according to the set schedule. Windows will continue to try to establish a connection. System [ Error ] 12/13/2009 5:40:01 PM Computer Name = DONALD_P | Source = Service Control Manager | ID = 7031 -> Description = The McAfee Real-time Scanner service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service. [Files/Folders - Created Within 30 Days] OTS.exe -> C:\Documents and Settings\Donald\Desktop\OTS.exe -> [2009/12/13 13:18:05 | 00,534,528 | ---- | C] (OldTimer Tools) flashplayer10_1_p1_plugin_111709.exe -> C:\Documents and Settings\Donald\Desktop\flashplayer10_1_p1_plugin_111709.exe -> [2009/12/03 19:09:06 | 02,350,496 | ---- | C] (Adobe Systems, Inc.) flashplayer10_1_p1_activex_111709.exe -> C:\Documents and Settings\Donald\Desktop\flashplayer10_1_p1_activex_111709.exe -> [2009/12/03 19:05:07 | 02,346,400 | ---- | C] (Adobe Systems, Inc.) XPSViewer -> C:\WINDOWS\System32\XPSViewer -> [2009/12/03 12:16:48 | 00,000,000 | ---D | C] MSBuild -> C:\Program Files\MSBuild -> [2009/12/03 12:16:19 | 00,000,000 | ---D | C] Reference Assemblies -> C:\Program Files\Reference Assemblies -> [2009/12/03 12:15:15 | 00,000,000 | ---D | C] MSXML 6.0 -> C:\Program Files\MSXML 6.0 -> [2009/12/03 12:14:07 | 00,000,000 | ---D | C] PCHealth -> C:\Documents and Settings\Donald\Local Settings\Application Data\PCHealth -> [2009/12/02 16:55:59 | 00,000,000 | ---D | C] msmq -> C:\WINDOWS\System32\msmq -> [2009/12/02 16:39:14 | 00,000,000 | ---D | C] prntvpt.dll -> C:\WINDOWS\System32\prntvpt.dll -> [2009/12/01 16:54:34 | 00,117,760 | ---- | C] (Microsoft Corporation) filterpipelineprintproc.dll -> C:\WINDOWS\System32\dllcache\filterpipelineprintproc.dll -> [2009/12/01 16:54:34 | 00,089,088 | ---- | C] (Microsoft Corporation) printfilterpipelinesvc.exe -> C:\WINDOWS\System32\dllcache\printfilterpipelinesvc.exe -> [2009/12/01 16:54:32 | 00,597,504 | ---- | C] (Microsoft Corporation) xpsshhdr.dll -> C:\WINDOWS\System32\dllcache\xpsshhdr.dll -> [2009/12/01 16:54:31 | 00,575,488 | ---- | C] (Microsoft Corporation) xpssvcs.dll -> C:\WINDOWS\System32\xpssvcs.dll -> [2009/12/01 16:54:25 | 01,676,288 | ---- | C] (Microsoft Corporation) xpssvcs.dll -> C:\WINDOWS\System32\dllcache\xpssvcs.dll -> [2009/12/01 16:54:25 | 01,676,288 | ---- | C] (Microsoft Corporation) a7e8e4b13b1c04221e1aef96c1f2b7ce -> C:\a7e8e4b13b1c04221e1aef96c1f2b7ce -> [2009/12/01 16:54:15 | 00,000,000 | ---D | C] 03c75fbb3ac0a0b4c42d58ff -> C:\03c75fbb3ac0a0b4c42d58ff -> [2009/12/01 16:11:20 | 00,000,000 | ---D | C] 872e0611ff2cafc729f0054df932d734 -> C:\872e0611ff2cafc729f0054df932d734 -> [2009/12/01 14:42:14 | 00,000,000 | ---D | C] ca9bfe214edb2d0909a490 -> C:\ca9bfe214edb2d0909a490 -> [2009/12/01 14:40:21 | 00,000,000 | ---D | C] Malwarebytes -> C:\Documents and Settings\Donald\Application Data\Malwarebytes -> [2009/11/30 18:00:02 | 00,000,000 | ---D | C] mbamswissarmy.sys -> C:\WINDOWS\System32\drivers\mbamswissarmy.sys -> [2009/11/30 17:59:41 | 00,038,224 | ---- | C] (Malwarebytes Corporation) Malwarebytes -> C:\Documents and Settings\All Users\Application Data\Malwarebytes -> [2009/11/30 17:59:33 | 00,000,000 | ---D | C] mbam.sys -> C:\WINDOWS\System32\drivers\mbam.sys -> [2009/11/30 17:59:31 | 00,019,160 | ---- | C] (Malwarebytes Corporation) Malwarebytes' Anti-Malware -> C:\Program Files\Malwarebytes' Anti-Malware -> [2009/11/30 17:59:27 | 00,000,000 | ---D | C] ERDNT -> C:\WINDOWS\ERDNT -> [2009/11/30 17:56:46 | 00,000,000 | ---D | C] ERUNT -> C:\Program Files\ERUNT -> [2009/11/30 17:55:33 | 00,000,000 | ---D | C] OTL.exe -> C:\Documents and Settings\Donald\Desktop\OTL.exe -> [2009/11/30 17:45:42 | 00,535,552 | ---- | C] (OldTimer Tools) RootRepeal.exe -> C:\Documents and Settings\Donald\Desktop\RootRepeal.exe -> [2009/11/30 17:44:34 | 00,472,064 | ---- | C] ( ) SysRestorePoint.exe -> C:\Documents and Settings\Donald\Desktop\SysRestorePoint.exe -> [2009/11/30 17:39:19 | 00,021,504 | ---- | C] (Doug Knox) TFC.exe -> C:\Documents and Settings\Donald\Desktop\TFC.exe -> [2009/11/30 17:12:06 | 00,341,504 | ---- | C] (OldTimer Tools) KB905474 -> C:\WINDOWS\System32\KB905474 -> [2009/11/29 12:29:06 | 00,000,000 | ---D | C] PCHealth -> C:\Documents and Settings\NetworkService\Local Settings\Application Data\PCHealth -> [2009/11/29 02:55:35 | 00,000,000 | ---D | M] colbact.dll -> C:\WINDOWS\System32\dllcache\colbact.dll -> [2009/11/28 23:22:00 | 00,060,416 | ---- | C] (Microsoft Corporation) mstscax.dll -> C:\WINDOWS\System32\dllcache\mstscax.dll -> [2009/11/28 22:50:53 | 00,655,872 | ---- | C] (Microsoft Corporation) Microsoft -> C:\Documents and Settings\LocalService\Application Data\Microsoft -> [2007/07/15 20:26:00 | 00,000,000 | --SD | M] AOL -> C:\Documents and Settings\LocalService\Local Settings\Application Data\AOL -> [2007/06/03 18:30:56 | 00,000,000 | ---D | M] McAfee.com Personal Firewall -> C:\Documents and Settings\LocalService\Application Data\McAfee.com Personal Firewall -> [2005/12/09 18:13:22 | 00,000,000 | ---D | M] Microsoft -> C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft -> [2005/12/08 19:50:39 | 00,000,000 | ---D | M] Help -> C:\Documents and Settings\LocalService\Local Settings\Application Data\Help -> [2004/06/05 15:32:05 | 00,000,000 | ---D | M] Help -> C:\Documents and Settings\LocalService\Application Data\Help -> [2004/06/05 15:32:05 | 00,000,000 | ---D | M] Microsoft -> C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft -> [2003/09/28 10:57:17 | 00,000,000 | ---D | M] Microsoft -> C:\Documents and Settings\NetworkService\Application Data\Microsoft -> [2003/09/28 10:48:42 | 00,000,000 | --SD | M] [Files/Folders - Modified Within 30 Days] WGASetup.job -> C:\WINDOWS\tasks\WGASetup.job -> [2009/12/13 14:39:46 | 00,000,260 | ---- | M] () wpa.dbl -> C:\WINDOWS\System32\wpa.dbl -> [2009/12/13 14:38:56 | 00,002,206 | ---- | M] () nvModes.001 -> C:\WINDOWS\System32\nvModes.001 -> [2009/12/13 14:37:52 | 00,031,792 | ---- | M] () SA.DAT -> C:\WINDOWS\tasks\SA.DAT -> [2009/12/13 14:37:43 | 00,000,006 | -H-- | M] () bootstat.dat -> C:\WINDOWS\bootstat.dat -> [2009/12/13 14:37:38 | 00,002,048 | --S- | M] () hiberfil.sys -> C:\hiberfil.sys -> [2009/12/13 14:37:32 | 26,793,9840 | -HS- | M] () NTUSER.DAT -> C:\Documents and Settings\Donald\NTUSER.DAT -> [2009/12/13 14:36:20 | 03,670,016 | -H-- | M] () ntuser.ini -> C:\Documents and Settings\Donald\ntuser.ini -> [2009/12/13 14:35:41 | 00,000,278 | -HS- | M] () GDIPFONTCACHEV1.DAT -> C:\Documents and Settings\Donald\Local Settings\Application Data\GDIPFONTCACHEV1.DAT -> [2009/12/13 14:29:08 | 00,037,808 | ---- | M] () VETlog.dmp -> C:\VETlog.dmp -> [2009/12/13 13:07:25 | 00,051,125 | ---- | M] () win.ini -> C:\WINDOWS\win.ini -> [2009/12/13 13:03:11 | 00,000,716 | ---- | M] () OTS.exe -> C:\Documents and Settings\Donald\Desktop\OTS.exe -> [2009/12/13 12:18:38 | 00,534,528 | ---- | M] (OldTimer Tools) FNTCACHE.DAT -> C:\WINDOWS\System32\FNTCACHE.DAT -> [2009/12/06 16:37:33 | 00,173,872 | ---- | M] () flashplayer10_1_p1_plugin_111709.exe -> C:\Documents and Settings\Donald\Desktop\flashplayer10_1_p1_plugin_111709.exe -> [2009/12/03 19:09:06 | 02,350,496 | ---- | M] (Adobe Systems, Inc.) flashplayer10_1_p1_activex_111709.exe -> C:\Documents and Settings\Donald\Desktop\flashplayer10_1_p1_activex_111709.exe -> [2009/12/03 19:05:07 | 02,346,400 | ---- | M] (Adobe Systems, Inc.) PerfStringBackup.INI -> C:\WINDOWS\System32\PerfStringBackup.INI -> [2009/12/03 12:48:22 | 00,515,756 | ---- | M] () perfh009.dat -> C:\WINDOWS\System32\perfh009.dat -> [2009/12/03 12:48:22 | 00,452,082 | ---- | M] () perfc009.dat -> C:\WINDOWS\System32\perfc009.dat -> [2009/12/03 12:48:22 | 00,074,216 | ---- | M] () Shortcut to iexplore.exe.lnk -> C:\Documents and Settings\Donald\Desktop\Shortcut to iexplore.exe.lnk -> [2009/12/02 17:21:34 | 00,001,036 | ---- | M] () _delis32.ini -> C:\WINDOWS\_delis32.ini -> [2009/12/02 16:03:54 | 00,000,528 | ---- | M] () nvModes.dat -> C:\WINDOWS\System32\nvModes.dat -> [2009/12/02 13:10:29 | 00,031,792 | ---- | M] () imsins.BAK -> C:\WINDOWS\imsins.BAK -> [2009/12/01 15:08:20 | 00,001,374 | ---- | M] () Malwarebytes' Anti-Malware.lnk -> C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk -> [2009/11/30 17:59:49 | 00,000,696 | ---- | M] () NTREGOPT.lnk -> C:\Documents and Settings\Donald\Desktop\NTREGOPT.lnk -> [2009/11/30 17:55:44 | 00,000,611 | ---- | M] () ERUNT.lnk -> C:\Documents and Settings\Donald\Desktop\ERUNT.lnk -> [2009/11/30 17:55:44 | 00,000,592 | ---- | M] () OTL.exe -> C:\Documents and Settings\Donald\Desktop\OTL.exe -> [2009/11/30 17:45:52 | 00,535,552 | ---- | M] (OldTimer Tools) RootRepeal.exe -> C:\Documents and Settings\Donald\Desktop\RootRepeal.exe -> [2009/11/30 17:44:55 | 00,472,064 | ---- | M] ( ) SysRestorePoint.exe -> C:\Documents and Settings\Donald\Desktop\SysRestorePoint.exe -> [2009/11/30 17:39:21 | 00,021,504 | ---- | M] (Doug Knox) TFC.exe -> C:\Documents and Settings\Donald\Desktop\TFC.exe -> [2009/11/30 17:12:27 | 00,341,504 | ---- | M] (OldTimer Tools) Uniblue SpyEraser.job -> C:\WINDOWS\tasks\Uniblue SpyEraser.job -> [2009/11/30 13:43:53 | 00,000,340 | ---- | M] () ~$01late.doc -> C:\Documents and Settings\Donald\My Documents\~$01late.doc -> [2009/11/29 07:08:57 | 00,000,162 | -H-- | M] () h_01late.doc -> C:\Documents and Settings\Donald\My Documents\h_01late.doc -> [2009/11/29 07:08:55 | 00,019,968 | ---- | M] () monthly_progress_2.doc -> C:\Documents and Settings\Donald\My Documents\monthly_progress_2.doc -> [2009/11/28 15:38:38 | 00,029,696 | ---- | M] () 1 C:\Documents and Settings\Donald\Local Settings\Temp\*.tmp files -> C:\Documents and Settings\Donald\Local Settings\Temp\*.tmp -> [Files - No Company Name] fw20.vxd -> C:\WINDOWS\fw20.vxd -> [2067/02/24 14:21:18 | 00,079,947 | ---- | C] () Shortcut to iexplore.exe.lnk -> C:\Documents and Settings\Donald\Desktop\Shortcut to iexplore.exe.lnk -> [2009/12/02 17:21:34 | 00,001,036 | ---- | C] () Malwarebytes' Anti-Malware.lnk -> C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk -> [2009/11/30 17:59:49 | 00,000,696 | ---- | C] () NTREGOPT.lnk -> C:\Documents and Settings\Donald\Desktop\NTREGOPT.lnk -> [2009/11/30 17:55:44 | 00,000,611 | ---- | C] () ERUNT.lnk -> C:\Documents and Settings\Donald\Desktop\ERUNT.lnk -> [2009/11/30 17:55:44 | 00,000,592 | ---- | C] () Uniblue SpyEraser.job -> C:\WINDOWS\tasks\Uniblue SpyEraser.job -> [2009/11/30 13:43:53 | 00,000,340 | ---- | C] () WGASetup.job -> C:\WINDOWS\tasks\WGASetup.job -> [2009/11/29 12:29:08 | 00,000,260 | ---- | C] () ~$01late.doc -> C:\Documents and Settings\Donald\My Documents\~$01late.doc -> [2009/11/29 07:08:57 | 00,000,162 | -H-- | C] () h_01late.doc -> C:\Documents and Settings\Donald\My Documents\h_01late.doc -> [2009/11/29 07:08:48 | 00,019,968 | ---- | C] () monthly_progress_2.doc -> C:\Documents and Settings\Donald\My Documents\monthly_progress_2.doc -> [2009/11/28 15:38:31 | 00,029,696 | ---- | C] () msoffice.ini -> C:\WINDOWS\msoffice.ini -> [2008/11/12 20:40:42 | 00,000,002 | ---- | C] () lvcoinst.ini -> C:\WINDOWS\System32\lvcoinst.ini -> [2007/09/10 21:37:25 | 00,014,938 | ---- | C] () _delis32.ini -> C:\WINDOWS\_delis32.ini -> [2007/09/10 21:11:09 | 00,000,528 | ---- | C] () GlobalUserInterface.CompositeFont -> C:\WINDOWS\Fonts\GlobalUserInterface.CompositeFont -> [2006/06/29 14:58:52 | 00,030,808 | ---- | C] () GlobalSansSerif.CompositeFont -> C:\WINDOWS\Fonts\GlobalSansSerif.CompositeFont -> [2006/06/29 14:53:56 | 00,026,489 | ---- | C] () GlobalSerif.CompositeFont -> C:\WINDOWS\Fonts\GlobalSerif.CompositeFont -> [2006/04/18 15:39:28 | 00,029,779 | ---- | C] () GlobalMonospace.CompositeFont -> C:\WINDOWS\Fonts\GlobalMonospace.CompositeFont -> [2006/04/18 15:39:28 | 00,026,040 | ---- | C] () atid.ini -> C:\WINDOWS\atid.ini -> [2005/03/26 18:10:17 | 00,000,029 | ---- | C] () upst.ini -> C:\WINDOWS\upst.ini -> [2005/03/26 18:10:17 | 00,000,018 | ---- | C] () Cpuinf32.dll -> C:\WINDOWS\System32\Cpuinf32.dll -> [2004/08/21 12:35:44 | 00,019,968 | ---- | C] () Anw_IP.ini -> C:\WINDOWS\Anw_IP.ini -> [2004/08/08 20:41:38 | 00,000,106 | ---- | C] () maxlink.ini -> C:\WINDOWS\maxlink.ini -> [2004/08/08 20:05:06 | 00,001,029 | ---- | C] () psctsnmp.dll -> C:\WINDOWS\System32\psctsnmp.dll -> [2004/06/15 08:14:36 | 00,327,680 | R--- | C] () oxygen-5.ini -> C:\WINDOWS\oxygen-5.ini -> [2004/02/27 17:08:44 | 00,000,222 | ---- | C] () psisdecd.dll -> C:\WINDOWS\System32\psisdecd.dll -> [2003/12/06 06:59:31 | 00,363,520 | ---- | C] () Msvcrt10.dll -> C:\WINDOWS\System32\Msvcrt10.dll -> [2003/10/10 19:31:36 | 00,210,944 | ---- | C] () AcrobatSetupStatus.ini -> C:\WINDOWS\AcrobatSetupStatus.ini -> [2003/10/10 18:46:26 | 00,000,072 | ---- | C] () longfile.INI -> C:\WINDOWS\longfile.INI -> [2003/10/10 18:24:57 | 00,000,000 | ---- | C] () VBAR2132.DLL -> C:\WINDOWS\System32\VBAR2132.DLL -> [2003/10/10 18:24:50 | 01,371,436 | R--- | C] () UP9ASP.INI -> C:\WINDOWS\UP9ASP.INI -> [2003/09/28 18:25:54 | 00,000,025 | ---- | C] () ODBC.INI -> C:\WINDOWS\ODBC.INI -> [2003/09/28 12:04:45 | 00,000,376 | ---- | C] () MimicICM.dll -> C:\WINDOWS\System32\MimicICM.dll -> [2003/02/26 14:47:14 | 00,147,456 | ---- | C] () Jpeg32.dll -> C:\WINDOWS\System32\Jpeg32.dll -> [2002/01/08 15:57:34 | 00,110,592 | ---- | C] () indounin.dll -> C:\WINDOWS\System32\indounin.dll -> [1999/01/27 12:39:06 | 00,065,024 | ---- | C] () Iyvu9_32.dll -> C:\WINDOWS\System32\Iyvu9_32.dll -> [1997/06/13 06:56:08 | 00,056,832 | ---- | C] () < End of report > [/code]