Hi Don77! Hope your doing well today.Heres the Winpfind log you requested.Thanks for all your help.
WARNING: not all files found by this scanner are bad. Consult with a knowledgable person before proceeding.
If you see a message in the titlebar saying "Not responding..." you can ignore it. Windows sometimes displays this message due to the high volume of disk I/O. As long as the hard disk light is flashing, the program is still working properly.
»»»»»»»»»»»»»»»»» Windows OS and Versions »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Logfile created on: 10/18/06 1:52:55 PM
WinPFind v1.5.0 Folder = C:\WINDOWS\DESKTOP\UNZIPPED FILES\WINPFIND\
Product Name: Windows 98 Version: 4.10.2222
Internet Explorer Version: 6.0.2800.1106
»»»»»»»»»»»»»»»»» Checking Selected Standard Folders »»»»»»»»»»»»»»»»»»»»
Checking %SystemDrive% folder...
Checking %ProgramFilesDir% folder...
Checking %WinDir% folder...
abetterinternet.com 3/10/06 5:54:08 PM RH 811040 c:\windows\user.tom ()
web-nex 3/10/06 5:54:08 PM RH 811040 c:\windows\user.tom ()
ad-w-a-r-e.com 3/10/06 5:54:08 PM RH 811040 c:\windows\user.tom ()
qoologic 3/24/06 4:16:46 AM 437387 c:\windows\HOSTS.MVP ()
PTech 3/24/06 4:16:46 AM 437387 c:\windows\HOSTS.MVP ()
SAHAgent 3/24/06 4:16:46 AM 437387 c:\windows\HOSTS.MVP ()
abetterinternet.com 3/24/06 4:16:46 AM 437387 c:\windows\HOSTS.MVP ()
web-nex 3/24/06 4:16:46 AM 437387 c:\windows\HOSTS.MVP ()
ad-w-a-r-e.com 3/24/06 4:16:46 AM 437387 c:\windows\HOSTS.MVP ()
UPX! 10/26/00 9:31:46 PM 181760 c:\windows\temp.exe (Big Fish Games)
Checking %System% folder...
PTech 8/8/00 12:00:00 PM 88571 c:\windows\SYSTEM\MDACRDME.HTM ()
Checking %System%\Drivers folder and sub-folders...
Checking the Windows folder and sub-folders for system and hidden files within the last 60 days...
10/17/06 2:56:58 PM H 42949 c:\windows\ttfCache ()
10/18/06 1:53:14 PM RH 6307916 c:\windows\SYSTEM.DAT ()
10/18/06 1:53:14 PM RH 704544 c:\windows\USER.DAT ()
10/17/06 1:48:54 PM H 1006011 c:\windows\ShellIconCache ()
10/12/06 4:29:20 AM H 9793 c:\windows\HELP\windows.GID ()
10/18/06 1:43:50 PM HS 1092 c:\windows\Application Data\Microsoft\Internet Explorer\Desktop.htt ()
10/12/06 4:37:50 AM HS 67 c:\windows\Temporary Internet Files\desktop.ini ()
9/12/06 9:12:16 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\desktop.ini ()
9/12/06 9:12:16 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\49QN8DY3\desktop.ini ()
9/12/06 9:12:16 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\C9YJKLAF\desktop.ini ()
9/12/06 9:12:16 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\GFZM2V4Y\desktop.ini ()
9/12/06 9:12:16 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\XPM0SYU4\desktop.ini ()
9/16/06 6:52:02 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\72CRNXKL\desktop.ini ()
9/16/06 6:52:02 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\O16R4T6B\desktop.ini ()
9/16/06 6:52:02 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\OTI789AN\desktop.ini ()
9/16/06 6:52:02 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\81CVGBSB\desktop.ini ()
9/17/06 1:29:12 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\HIGF39SH\desktop.ini ()
9/17/06 1:29:12 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\0HSPYV0P\desktop.ini ()
9/17/06 1:29:14 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\3N97R54W\desktop.ini ()
9/17/06 1:29:14 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\OBNBQ09P\desktop.ini ()
9/19/06 6:34:44 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\63EZ2XAB\desktop.ini ()
9/19/06 6:34:44 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\65NWPCZ6\desktop.ini ()
9/19/06 6:34:44 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\TRNNDHOE\desktop.ini ()
9/19/06 6:34:44 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\CDUZSTA7\desktop.ini ()
9/24/06 1:20:52 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\Y1OJ2TW5\desktop.ini ()
9/24/06 1:20:52 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\4L2BOPAJ\desktop.ini ()
9/24/06 1:20:52 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\O9QRK92N\desktop.ini ()
9/24/06 1:20:52 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\KHY3GL2Z\desktop.ini ()
10/11/06 5:29:26 AM HS 67 c:\windows\Temporary Internet Files\Content.IE5\H0KBL9S5\desktop.ini ()
10/11/06 5:29:26 AM HS 67 c:\windows\Temporary Internet Files\Content.IE5\WLAJ4DEV\desktop.ini ()
10/11/06 5:29:26 AM HS 67 c:\windows\Temporary Internet Files\Content.IE5\2TCFE1U5\desktop.ini ()
10/11/06 5:29:26 AM HS 67 c:\windows\Temporary Internet Files\Content.IE5\SFBB201X\desktop.ini ()
10/11/06 2:14:14 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\ZYGJJTG9\desktop.ini ()
10/11/06 2:14:14 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\KDWTE349\desktop.ini ()
10/11/06 2:14:14 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\3F1BRX0W\desktop.ini ()
10/11/06 2:14:14 PM HS 67 c:\windows\Temporary Internet Files\Content.IE5\WJXNQUZ9\desktop.ini ()
10/18/06 1:43:42 PM H 6 c:\windows\Tasks\SA.DAT ()
Checking for CPL files...
4/23/99 10:22:00 PM 221280 c:\windows\SYSTEM\DESK.CPL (Microsoft Corporation)
8/29/02 292352 c:\windows\SYSTEM\INETCPL.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 60928 c:\windows\SYSTEM\INTL.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 420864 c:\windows\SYSTEM\MMSYS.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 93248 c:\windows\SYSTEM\MODEM.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 14448 c:\windows\SYSTEM\NETCPL.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 47104 c:\windows\SYSTEM\PASSWORD.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 51984 c:\windows\SYSTEM\POWERCFG.CPL (Microsoft Corporation)
10/30/01 8:10:00 AM 442368 c:\windows\SYSTEM\JOY.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 66048 c:\windows\SYSTEM\ACCESS.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 72192 c:\windows\SYSTEM\APPWIZ.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 103424 c:\windows\SYSTEM\MAIN.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 70656 c:\windows\SYSTEM\STICPL.CPL ()
4/23/99 10:22:00 PM 387072 c:\windows\SYSTEM\SYSDM.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 14848 c:\windows\SYSTEM\TELEPHON.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 37376 c:\windows\SYSTEM\TIMEDATE.CPL (Microsoft Corporation)
4/23/99 10:22:00 PM 15360 c:\windows\SYSTEM\THEMES.CPL (Microsoft Corporation)
11/10/05 1:03:50 PM 49265 c:\windows\SYSTEM\jpicpl32.cpl (Sun Microsystems, Inc.)
2/20/03 11:39:50 AM 32768 c:\windows\SYSTEM\odbccp32.cpl (Microsoft Corporation)
Checking for Downloaded Program Files...
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - QuickTime Object - CodeBase =
http://www.apple.com...ex/qtplugin.cab{30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - YInstStarter Class - CodeBase = C:\Program Files\Yahoo!\Common\yinsthelper.dll
{32564D57-0000-0010-8000-00AA00389B71} - - CodeBase =
http://codecs.micros...i386/wmv8ax.cab{33564D57-0000-0010-8000-00AA00389B71} - - CodeBase =
http://download.micr...922/wmv9VCM.CAB{8AD9C840-044E-11D1-B3E9-00805F499D93} - Java Plug-in 1.5.0_03 - CodeBase =
http://java.sun.com/...indows-i586.cab{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} - ActiveScan Installer Class - CodeBase =
http://acs.pandasoft...free/asinst.cab{9F1C11AA-197B-4942-BA54-47A8489BB47F} - Update Class - CodeBase =
http://v4.windowsupd...B?39002.0159375{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA} - Java Plug-in 1.5.0_03 - CodeBase =
http://java.sun.com/...indows-i586.cab{D27CDB6E-AE6D-11CF-96B8-444553540000} - Shockwave Flash Object - CodeBase =
http://download.macr...ash/swflash.cabDirectAnimation Java Classes - - CodeBase = file://c:\windows\SYSTEM\dajava.cab
Internet Explorer Classes for Java - - CodeBase = file://c:\windows\SYSTEM\iejava.cab
Microsoft XML Parser for Java - - CodeBase = file://c:\windows\Java\classes\xmldso4.cab
»»»»»»»»»»»»»»»»» Checking Selected Startup Folders »»»»»»»»»»»»»»»»»»»»»
Checking files in %ALLUSERSPROFILE%\Startup folder...
Checking files in %ALLUSERSPROFILE%\Application Data folder...
Checking files in %USERPROFILE%\Startup folder...
4/2/06 12:23:16 PM 376 C:\WINDOWS\Start Menu\Programs\StartUp\SpywareGuard.lnk ()
Checking files in %USERPROFILE%\Application Data folder...
9/6/06 9:00:08 PM 2568 C:\WINDOWS\Application Data\dw.log ()
»»»»»»»»»»»»»»»»» Checking Selected Registry Keys »»»»»»»»»»»»»»»»»»»»»»»
>>> Internet Explorer Settings <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main]
\\Start Page -
http://www.microsoft...p...ER}&ar=home \\Search Page -
http://www.microsoft...amp;ar=iesearch \\Default_Page_URL -
http://www.microsoft...p...&ar=msnhome \\Default_Search_URL -
http://www.microsoft...amp;ar=iesearch \\Local Page - c:\windows\SYSTEM\blank.htm
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main]
\\Start Page -
http://home.bellsouth.net/ \\Search Bar -
http://www.google.com/ie \\Search Page -
http://www.google.com \\Local Page - C:\WINDOWS\SYSTEM\blank.htm
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search]
\\CustomizeSearch -
http://ie.search.msn...st/srchcust.htm \\SearchAssistant -
http://ie.search.msn...st/srchasst.htm[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
\\{00A6FAF6-072E-44cf-8957-5838F569A31D} - = ()
\\{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - Microsoft Url Search Hook = C:\WINDOWS\SYSTEM\SHDOCVW.DLL (Microsoft Corporation)
>>> BHO's <<<
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
\{AA58ED58-01DD-4d91-8333-CF10577473F7} - Google Toolbar Helper = c:\program files\google\googletoolbar1.dll (Google Inc.)
>>> Internet Explorer Bars, Toolbars and Extensions <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars]
\{4D5C8C25-D075-11d0-B416-00C04FB90376} - &Tip of the Day = C:\WINDOWS\SYSTEM\SHDOCVW.DLL (Microsoft Corporation)
\{4528BBE0-4E08-11D5-AD55-00010333D0AD} - = ()
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars]
\{EFA24E64-B078-11D0-89E4-00C04FC9E26E} - Explorer Band = C:\WINDOWS\SYSTEM\SHDOCVW.DLL (Microsoft Corporation)
\{4528BBE0-4E08-11D5-AD55-00010333D0AD} - = ()
\{32683183-48a0-441b-a342-7c2a440a9478} - Media Band = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
\\{8E718888-423F-11D2-876E-00A0C9082467} - @msdxmLC.dll,-1@1033,&Radio = C:\WINDOWS\SYSTEM\MSDXM.OCX (Microsoft Corporation)
\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google = c:\program files\google\googletoolbar1.dll (Google Inc.)
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar]
\ShellBrowser\\{01E04581-4EEE-11D0-BFE9-00AA005B4383} - &Address = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
\ShellBrowser\\{0E5CBF21-D15F-11D0-8301-00AA005B4383} - &Links = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
\ShellBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} - &Google = c:\program files\google\googletoolbar1.dll (Google Inc.)
\WebBrowser\\{01E04581-4EEE-11D0-BFE9-00AA005B4383} - &Address = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
\WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar = ()
\WebBrowser\\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E} - = ()
\WebBrowser\\{0E5CBF21-D15F-11D0-8301-00AA005B4383} - &Links = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
\WebBrowser\\{8E718888-423F-11D2-876E-00A0C9082467} - @msdxmLC.dll,-1@1033,&Radio = C:\WINDOWS\SYSTEM\MSDXM.OCX (Microsoft Corporation)
\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} - &Google = c:\program files\google\googletoolbar1.dll (Google Inc.)
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\CmdMapping]
\\{9C31CA00-6082-11D3-8607-00C04FCFBDA1} - 8192 =
\\NEXTID - 8195
\\{c95fe080-8f5d-11d2-a20b-00aa003c157a} - 8193 =
\\{FB5F1910-F110-11d2-BB9E-00C04F795683} - 8194 = MSN Messenger Service
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions]
\{FB5F1910-F110-11d2-BB9E-00C04F795683} - ButtonText: Messenger = C:\Program Files\Messenger\MSMSGS.EXE (Microsoft Corporation)
>>> Approved Shell Extensions (Non-Microsoft Only) <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
\\{BDEADF00-C265-11d0-BCED-00A0C90AB50F} - Web Folders = c:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL ()
\\{5464D816-CF16-4784-B9F3-75C0DB52B499} - Yahoo! Mail = C:\PROGRAM FILES\YAHOO!\COMMON\YMMAPI.DLL ()
\\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} - AVG7 Shell Extension = C:\Program Files\Grisoft\AVG Free\avgse.dll (GRISOFT, s.r.o.)
\\{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} - AVG7 Find Extension = C:\Program Files\Grisoft\AVG Free\avgse.dll (GRISOFT, s.r.o.)
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
\\{BDEADF00-C265-11d0-BCED-00A0C90AB50F} - = c:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL ()
>>> Context Menu Handlers (Non-Microsoft Only) <<<
[HKEY_LOCAL_MACHINE\Software\Classes\*\shellex\ContextMenuHandlers]
\Yahoo! Mail - {5464D816-CF16-4784-B9F3-75C0DB52B499} = C:\PROGRAM FILES\YAHOO!\COMMON\YMMAPI.DLL ()
\{FFFFE5C1-34AF-4d4d-B3D3-5BB86A2BAA7B} - = C:\Program Files\BellSouth\BellSouth Internet Security\AVContextR.dll ()
\ASW - {33C9E362-3EDA-4930-8AFE-5DA39A8BB77A} = C:\PROGRAM FILES\AGNITUM\OUTPOST FIREWALL\OP_SHELL.DLL (Agnitum Ltd.)
\AVG7 Shell Extension - {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} = C:\Program Files\Grisoft\AVG Free\avgse.dll (GRISOFT, s.r.o.)
[HKEY_LOCAL_MACHINE\Software\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers]
[HKEY_LOCAL_MACHINE\Software\Classes\Directory\shellex\ContextMenuHandlers]
\{FFFFE5C1-34AF-4d4d-B3D3-5BB86A2BAA7B} - = C:\Program Files\BellSouth\BellSouth Internet Security\AVContextR.dll ()
\ASW - {33C9E362-3EDA-4930-8AFE-5DA39A8BB77A} = C:\PROGRAM FILES\AGNITUM\OUTPOST FIREWALL\OP_SHELL.DLL (Agnitum Ltd.)
[HKEY_LOCAL_MACHINE\Software\Classes\Directory\BackGround\shellex\ContextMenuHandlers]
[HKEY_LOCAL_MACHINE\Software\Classes\Folder\shellex\ContextMenuHandlers]
\{FFFFE5C1-34AF-4d4d-B3D3-5BB86A2BAA7B} - = C:\Program Files\BellSouth\BellSouth Internet Security\AVContextR.dll ()
\ASW - {33C9E362-3EDA-4930-8AFE-5DA39A8BB77A} = C:\PROGRAM FILES\AGNITUM\OUTPOST FIREWALL\OP_SHELL.DLL (Agnitum Ltd.)
\AVG7 Shell Extension - {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} = C:\Program Files\Grisoft\AVG Free\avgse.dll (GRISOFT, s.r.o.)
>>> Column Handlers (Non-Microsoft Only) <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers]
>>> Registry Run Keys <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
ScanRegistry - c:\windows\scanregw.exe (Microsoft Corporation)
TaskMonitor - c:\windows\taskmon.exe (Microsoft Corporation)
Disknag - C:\DELL\DISKNAG.EXE (Dell Computer Corporation)
SystemTray - c:\windows\SYSTEM\SysTray.ExE (Microsoft Corporation)
TCASUTIEXE - c:\windows\SYSTEM\TCAUDIAG.EXE (3Com Corporation)
POINTER - C:\PROGRA~1\MSHARD~1\point32.exe ()
LoadPowerProfile - c:\windows\Rundll32.exe (Microsoft Corporation)
WorksFUD - c:\Program Files\Microsoft Works\wkfud.exe ()
Microsoft Works Portfolio - c:\Program Files\Microsoft Works\WksSb.exe ()
Microsoft Works Update Detection - c:\Program Files\Microsoft Works\WkDetect.exe ()
BLUBSTER - C:\PROGRAM FILES\BLUBSTER\BLUBSTER.exe ()
QuickTime Task - C:\WINDOWS\SYSTEM\QTTASK.EXE ()
Outpost Firewall - C:\Program Files\Agnitum\Outpost Firewall\outpost.exe (Agnitum Ltd.)
OutpostFeedBack - C:\Program Files\Agnitum\Outpost Firewall\feedback.exe (Agnitum Ltd.)
AVG7_CC - C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE (GRISOFT, s.r.o.)
AVG7_EMC - C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE (GRISOFT, s.r.o.)
AVG7_AMSVR - C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE (GRISOFT, s.r.o.)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
MSFS Installed = 1
MAPI Installed = 1
IMAIL Installed = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices]
AutoShutdown - C:\WINDOWS\pssvc.exe (Dell Computer Corporation)
LoadPowerProfile - c:\windows\Rundll32.exe (Microsoft Corporation)
SchedulingAgent - c:\windows\SYSTEM\mstask.exe (Microsoft Corporation)
Outpost Firewall - C:\PROGRAM FILES\AGNITUM\OUTPOST FIREWALL\outpost.exe (Agnitum Ltd.)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
Taskbar Display Controls - RunDLL deskcp16.dll ()
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce]
>>> Startup Links <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\\Common Startup]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\\Startup]
C:\WINDOWS\Start Menu\Programs\StartUp\SpywareGuard.lnk - C:\Program Files\SpywareGuard\sgmain.exe ()
>>> MSConfig Disabled Items <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce-]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx-]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices-]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce-]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce-]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices-]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce-]
[All Users Startup Folder Disabled Items]
[Current User Startup Folder Disabled Items]
>>> User Agent Post Platform <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
\\FunWebProducts -
>>> AppInit Dll's <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs]
>>> Image File Execution Options <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options]
>>> Shell Service Object Delay Load <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
\\WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} = C:\WINDOWS\SYSTEM\WEBCHECK.DLL (Microsoft Corporation)
>>> Shell Execute Hooks <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
\\{AEB6717E-7E19-11d0-97EE-00C04FD91972} - URL Exec Hook = shell32.dll (Microsoft Corporation)
>>> Shared Task Scheduler <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
\\{438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
\\{8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon = C:\WINDOWS\SYSTEM\BROWSEUI.DLL (Microsoft Corporation)
>>> Winlogon <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
>>> DNS Name Servers <<<
Adapters:
Dial-Up Adapter
3Com 3C920 Integrated Fast Ethernet Controller (3C905C-TX Compatible)
3Com 3C920 Integrated Fast Ethernet Controller (3C905C-TX Compatible)
Name Server:
>>> All Winsock2 Catalogs <<<
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries]
\000000000001\\PackedCatalogItem - cc:\windows\SYSTEM\mswsosp.dll ()
\000000000002\\PackedCatalogItem - cc:\windows\SYSTEM\mswsosp.dll ()
\000000000003\\PackedCatalogItem - cc:\windows\SYSTEM\mswsosp.dll ()
\000000000004\\PackedCatalogItem - cc:\windows\SYSTEM\mswsosp.dll ()
\000000000005\\PackedCatalogItem - cc:\windows\SYSTEM\msafd.dll ()
\000000000006\\PackedCatalogItem - cc:\windows\SYSTEM\msafd.dll ()
\000000000007\\PackedCatalogItem - cc:\windows\SYSTEM\msafd.dll ()
\000000000008\\PackedCatalogItem - cc:\windows\SYSTEM\rsvpsp.dll ()
\000000000009\\PackedCatalogItem - cc:\windows\SYSTEM\rsvpsp.dll ()
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries]
\000000000001\\LibraryPath - c:\windows\SYSTEM\rnr20.dll (Microsoft Corporation)
>>> Protocol Handlers (Non-Microsoft Only) <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler]
\msdaipp - ()
\ipp - ()
>>> Protocol Filters (Non-Microsoft Only) <<<
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter]
>>> Selected AddOn's <<<
»»»»»»»»»»»»»»»»»»»»»»»» Scan Complete »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»