Thanks for helping!
Main.txt:Deckard's System Scanner v20071014.68
Run by Compaq_Owner on 2008-02-01 07:00:40
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- Last 1 Restore Point(s) --
1: 2008-01-31 14:35:40 UTC - RP53 - Windows Update
Backed up registry hives.
Performed disk cleanup.
Total Physical Memory: 1023 MiB (1024 MiB recommended).-- HijackThis (run as Compaq_Owner.exe) ----------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:03:01 AM, on 2/1/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16575)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
G:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files\SiteAdvisor\6253\SiteAdv.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
G:\Program Files\Gmail Notifier\gnotify.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Windows\System32\rundll32.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe
G:\Program Files\D-Link\Bluetooth Software\BTTray.exe
G:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
C:\HP\KBD\KBD.EXE
c:\windows\system\hpsysdrv.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Internet Explorer\IEUser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\wuauclt.exe
C:\WINDOWS\system32\Macromed\Flash\FlashUtil9d.exe
C:\Users\Compaq_Owner\Desktop\dss.exe
c:\PROGRA~1\mcafee\mpf\mc\mpfalert.exe
G:\PROGRA~1\TRENDM~1\HIJACK~1\Compaq_Owner.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://ie.redirect.h...a...&pf=desktopR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://ie.redirect.h...a...&pf=desktopR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.hotmail.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://ie.redirect.h...a...&pf=desktopR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://ie.redirect.h...a...&pf=desktopR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6253\SiteAdv.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - G:\Program Files\BitComet\tools\BitCometBHO.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - G:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: CmjBrowserHelperObject Object - {AC41D38F-B56D-40AD-94E0-B493D130C959} - G:\Program Files\Mindjet\MindManager 6\Mm6InternetExplorer.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6253\SiteAdv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [iTunesHelper] "G:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6253\SiteAdv.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "G:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] G:\Program Files\Gmail Notifier\gnotify.exe
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [MSConfig] "C:\Windows\system32\msconfig.exe" /auto
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [pdfSaver3] "C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe"
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_5 -reboot 1
O4 - HKCU\..\Run: [uTorrent] "G:\Program Files\uTorrent\utorrent.exe"
O4 - HKCU\..\Run: [µTorrent] "G:\Program Files\uTorrent\uTorrent.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = G:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Compaq Connections.lnk = C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe
O8 - Extra context menu item: Download with GetRight - G:\Program Files\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://G:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with GetRight Browser - G:\Program Files\GetRight\GRbrowse.htm
O8 - Extra context menu item: Send To &Bluetooth - G:\Program Files\D-Link\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - G:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - G:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Send to Mindjet MindManager - {531B9DC0-D8EE-4c76-A6EE-6C1E50569655} - G:\Program Files\Mindjet\MindManager 6\Mm6InternetExplorer.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - G:\Program Files\D-Link\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - G:\Program Files\D-Link\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\Windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\Windows\Network Diagnostic\xpnetdiag.exe
O13 - Gopher Prefix:
O16 - DPF: {040F4385-8DAD-4306-94BF-B8291D841FAE} (USBAPTester Class) -
http://www.nintendo....a/usbaptest.cabO16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204O16 - DPF: {4EFA317A-8569-4788-B175-5BAF9731A549} (Microsoft Virtual Server VMRC Advanced Control) -
http://www.windowsvi...iveXClient1.cabO16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) -
http://www.systemreq.../sysreqlab2.cabO16 - DPF: {F4AF4B32-1AF4-4773-B1A3-75C699A1CB5D} (webSysInfo.ctlSysInfo) -
http://dev.cite.nie..../webSysInfo.ocxO23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - G:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - G:\Program Files\D-Link\Bluetooth Software\bin\btwdins.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Fix-It Task Manager - Avanquest Publishing USA, Inc. - G:\PROGRA~1\VCOM\Fix-It\mxtask.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_0.EXE
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McProxy\McProxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\Mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: NBService - Nero AG - G:\Program Files\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: SiteAdvisor Service - Unknown owner - C:\Program Files\SiteAdvisor\6253\SAService.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 12266 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R1 PQNTDrv - c:\windows\system32\drivers\pqntdrv.sys <Not Verified; PowerQuest Corporation; PowerQuest product>
R2 BTSERIAL (Bluetooth Serial Driver) - \??\c:\windows\system32\drivers\btserial.sys
R2 BTSLBCSP (Bluetooth Port Client Driver) - \??\c:\windows\system32\drivers\btslbcsp.sys
R2 MDC8021X (AEGIS Protocol (IEEE 802.1x) v2.3.1.9) - c:\windows\system32\drivers\mdc8021x.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 2.3.1.9>
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
R2 CCALib8 (Canon Camera Access Library 8) - c:\program files\canon\cal\calmain.exe <Not Verified; Canon Inc.; >
S3 NBService - g:\program files\nero 7\nero backitup\nbservice.exe
S3 WLSetupSvc (Windows Live Setup Service) - "c:\program files\windows live\installer\wlsetupsvc.exe" <Not Verified; Microsoft Corporation; Windows Live installer>
-- Device Manager: Disabled ----------------------------------------------------
No disabled devices found.
-- Scheduled Tasks -------------------------------------------------------------
2008-02-01 01:01:48 370 --a------ C:\Windows\Tasks\McQcTask.job
2008-01-31 22:17:59 452 --a------ C:\Windows\Tasks\RegCure Program Check.job
2008-01-22 16:59:02 386 --a------ C:\Windows\Tasks\RegCure.job
2008-01-04 11:40:04 284 --a------ C:\Windows\Tasks\AppleSoftwareUpdate.job
2007-09-15 01:00:08 278 --a------ C:\Windows\Tasks\McDefragTask.job
-- Files created between 2008-01-01 and 2008-02-01 -----------------------------
2008-01-28 20:01:22 0 d-------- C:\Windows\pss
2008-01-28 19:32:14 0 d-------- C:\Users\All Users\Grisoft
2008-01-27 21:10:12 0 d-------- C:\VundoFix Backups
2008-01-16 23:26:38 0 d--h----- C:\_Backup
2008-01-16 23:24:23 0 d-------- C:\Users\All Users\VCOM
2008-01-16 23:20:51 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-01-16 19:51:58 0 d-------- C:\Users\All Users\NVIDIA
2008-01-16 16:44:03 86144 --a------ C:\Windows\system32\drivers\ipfltdrvv.sys
2008-01-16 15:27:40 0 d-------- C:\Windows\Panther
2008-01-16 15:27:22 94208 --a------ C:\Windows\system32\ipcoin5.dll <Not Verified; Microsoft Corporation; Microsoft IntelliPoint>
2008-01-16 15:27:22 20352 --a------ C:\Windows\system32\drivers\point32.sys <Not Verified; Microsoft Corporation; Microsoft IntelliPoint>
2008-01-16 15:27:21 94208 --a------ C:\Windows\system32\itpcoin4.dll <Not Verified; Microsoft Corporation; Microsoft IntelliType Pro>
2008-01-16 15:16:46 0 d--h----- C:\$WINDOWS.~Q
2008-01-16 15:13:27 0 d--h----- C:\$INPLACE.~TR
2008-01-16 13:23:32 0 d-------- C:\Users\All Users\DFX
2008-01-16 01:05:08 0 d--h----- C:\Users\All Users\CanonBJ
2008-01-16 00:50:13 0 d-------- C:\Program Files\Microsoft IntelliType Pro
2008-01-16 00:44:06 0 d-------- C:\Program Files\Microsoft IntelliPoint
2008-01-16 00:43:12 0 d-------- C:\Windows\PCHEALTH
2008-01-16 00:23:56 0 dr------- C:\Users\Compaq_Owner\Searches
2008-01-16 00:10:14 22732 --a------ C:\Windows\system32\emptyregdb.dat
2008-01-16 00:02:20 0 d-------- C:\Users\Default\WINDOWS
2008-01-15 23:40:47 0 dr------- C:\Users\Compaq_Owner\Videos
2008-01-15 23:40:47 0 d--hs---- C:\Users\Compaq_Owner\Templates
2008-01-15 23:40:47 0 d--hs---- C:\Users\Compaq_Owner\Start Menu
2008-01-15 23:40:47 0 d--hs---- C:\Users\Compaq_Owner\SendTo
2008-01-15 23:40:47 0 dr------- C:\Users\Compaq_Owner\Saved Games
2008-01-15 23:40:47 0 d--hs---- C:\Users\Compaq_Owner\Recent
2008-01-15 23:40:47 0 d--h----- C:\Users\Compaq_Owner\PrintHood
2008-01-15 23:40:47 0 dr------- C:\Users\Compaq_Owner\Pictures
2008-01-15 23:40:47 5242880 --ahs---- C:\Users\Compaq_Owner\NTUSER.DAT
2008-01-15 23:40:47 0 d--hs---- C:\Users\Compaq_Owner\NetHood
2008-01-15 23:40:47 0 d--hs---- C:\Users\Compaq_Owner\My Documents
2008-01-15 23:40:47 0 dr------- C:\Users\Compaq_Owner\Music
2008-01-15 23:40:47 0 d--h----- C:\Users\Compaq_Owner\Local Settings
2008-01-15 23:40:47 0 dr------- C:\Users\Compaq_Owner\Links
2008-01-15 23:40:47 0 dr------- C:\Users\Compaq_Owner\Favorites
2008-01-15 23:40:47 0 dr------- C:\Users\Compaq_Owner\Downloads
2008-01-15 23:40:47 0 dr------- C:\Users\Compaq_Owner\Documents <DOCUME~1>
2008-01-15 23:40:47 0 dr------- C:\Users\Compaq_Owner\Desktop
2008-01-15 23:40:47 0 d--hs---- C:\Users\Compaq_Owner\Cookies
2008-01-15 23:40:47 0 d--hs---- C:\Users\Compaq_Owner\Application Data
2008-01-15 23:40:47 0 d--h----- C:\Users\Compaq_Owner\AppData
2008-01-15 23:39:26 0 d-------- C:\Windows\system32\URTTEMP
2008-01-15 23:39:18 0 d--hs---- C:\Windows\Installer
2008-01-15 23:34:50 0 d-------- C:\Windows\system32\RTCOM
2008-01-15 23:33:15 0 d-------- C:\Windows\Debug
2008-01-15 23:29:12 0 d-------- C:\Windows\Prefetch
2008-01-15 23:07:22 0 d--hs---- C:\Boot
2008-01-05 21:29:07 0 d-------- C:\Users\All Users\GlobalSCAPE
2008-01-05 21:14:34 545 --a------ C:\Windows\UC.PIF
2008-01-05 21:14:34 545 --a------ C:\Windows\RAR.PIF
2008-01-05 21:14:34 545 --a------ C:\Windows\PKZIP.PIF
2008-01-05 21:14:34 545 --a------ C:\Windows\PKUNZIP.PIF
2008-01-05 21:14:34 545 --a------ C:\Windows\NOCLOSE.PIF
2008-01-05 21:14:34 545 --a------ C:\Windows\LHA.PIF
2008-01-05 21:14:34 545 --a------ C:\Windows\ARJ.PIF
2008-01-04 10:27:47 64752 --ah----- C:\Windows\system32\mlfcache.dat
-- Find3M Report ---------------------------------------------------------------
2008-01-31 23:08:25 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\uTorrent
2008-01-28 19:32:35 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Grisoft
2008-01-27 15:55:24 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\BSplayer Pro
2008-01-20 10:53:13 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Thinstall
2008-01-17 20:29:25 0 d-------- C:\Program Files\Google
2008-01-16 23:20:51 0 d-------- C:\Program Files\Common Files
2008-01-16 19:17:01 174 --ahs---- C:\Program Files\desktop.ini
2008-01-16 19:10:53 0 d-------- C:\Program Files\Windows Calendar
2008-01-16 19:10:50 0 d-------- C:\Program Files\Windows Mail
2008-01-16 19:10:47 0 d-------- C:\Program Files\Windows Defender
2008-01-16 19:10:31 0 d-------- C:\Program Files\Windows Sidebar
2008-01-16 16:00:45 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\ZoomBrowser EX
2008-01-16 15:13:56 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-01-16 00:17:22 0 d-------- C:\Program Files\McAfee
2008-01-15 23:59:42 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Windows Desktop Search
2008-01-15 23:59:42 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\WinBatch
2008-01-15 23:59:42 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\vlc
2008-01-15 23:59:42 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\VCOM
2008-01-15 23:59:41 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\U3
2008-01-15 23:59:41 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Teleca
2008-01-15 23:59:41 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Talkback
2008-01-15 23:59:03 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Sun
2008-01-15 23:59:03 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Sony Ericsson
2008-01-15 23:59:03 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\SmartDraw
2008-01-15 23:59:02 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\SiteAdvisor
2008-01-15 23:59:02 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Screenshot Sender
2008-01-15 23:59:02 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Real
2008-01-15 23:58:59 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\OpenOffice.org2
2008-01-15 23:58:58 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Mozilla
2008-01-15 23:58:52 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Media Player Classic
2008-01-15 23:58:52 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\McAfee
2008-01-15 23:58:52 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Macromedia
2008-01-15 23:58:46 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Identities
2008-01-15 23:58:46 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\HPQ
2008-01-15 23:58:46 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Google
2008-01-15 23:58:46 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\GlobalSCAPE
2008-01-15 23:58:46 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\GetRightToGo
2008-01-15 23:58:46 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\CyberLink
2008-01-15 23:58:46 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Canon
2008-01-15 23:58:46 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Avanquest
2008-01-15 23:58:46 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Apple Computer
2008-01-15 23:58:44 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Ahead
2008-01-15 23:58:44 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\AdobeUM
2008-01-15 23:58:44 0 d-------- C:\Users\Compaq_Owner\AppData\Roaming\Adobe
2008-01-15 23:47:57 0 d-------- C:\Program Files\Yahoo!
2008-01-15 23:47:55 0 d-------- C:\Program Files\Windows Live
2008-01-15 23:47:55 0 d-------- C:\Program Files\Tracker Software
2008-01-15 23:47:55 0 d-------- C:\Program Files\SystemRequirementsLab
2008-01-15 23:47:55 0 d-------- C:\Program Files\Symantec
2008-01-15 23:47:54 0 d-------- C:\Program Files\Sunbelt Software
2008-01-15 23:47:48 0 d-------- C:\Program Files\Sonic
2008-01-15 23:47:43 0 d-------- C:\Program Files\SiteAdvisor
2008-01-15 23:47:38 0 d-------- C:\Program Files\Real
2008-01-15 23:47:38 0 d-------- C:\Program Files\QuickTime
2008-01-15 23:47:28 0 d-------- C:\Program Files\PowerQuest
2008-01-15 23:47:28 0 d-------- C:\Program Files\PC-Doctor for DOS
2008-01-15 23:47:28 0 d-------- C:\Program Files\PC-Doctor 5 for Windows
2008-01-15 23:47:09 0 d-------- C:\Program Files\Online Services
2008-01-15 23:47:05 0 d-------- C:\Program Files\Oberon Media
2008-01-15 23:45:55 0 d-------- C:\Program Files\MSXML 6.0
2008-01-15 23:45:55 0 d-------- C:\Program Files\MSN Gaming Zone
2008-01-15 23:45:54 0 d-------- C:\Program Files\Microsoft.NET
2008-01-15 23:45:54 0 d-------- C:\Program Files\Microsoft Works
2008-01-15 23:45:54 0 d-------- C:\Program Files\microsoft frontpage
2008-01-15 23:45:54 0 d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-01-15 23:45:54 0 d-------- C:\Program Files\McAfee.com
2008-01-15 23:45:43 0 d-------- C:\Program Files\Java
2008-01-15 23:45:22 0 d-------- C:\Program Files\iPod
2008-01-15 23:45:16 0 d-------- C:\Program Files\InterActual
2008-01-15 23:45:14 0 d-------- C:\Program Files\HP
2008-01-15 23:44:50 0 d-------- C:\Program Files\Hewlett-Packard
2008-01-15 23:44:42 0 d-------- C:\Program Files\Escntl
2008-01-15 23:44:39 0 d-------- C:\Program Files\CONEXANT
2008-01-15 23:44:35 0 d-------- C:\Program Files\Compaq Connections
2008-01-15 23:44:35 0 d-------- C:\Program Files\Common Files\xing shared
2008-01-15 23:44:35 0 d--hs--c- C:\Program Files\Common Files\WindowsLiveInstaller
2008-01-15 23:44:34 0 d-------- C:\Program Files\Common Files\TiVo Shared
2008-01-15 23:44:34 0 d-------- C:\Program Files\Common Files\Teleca Shared
2008-01-15 23:44:33 0 d-------- C:\Program Files\Common Files\Symantec Shared
2008-01-15 23:44:33 0 d-------- C:\Program Files\Common Files\SureThing Shared
2008-01-15 23:44:33 0 d-------- C:\Program Files\Common Files\Sony Ericsson Shared
2008-01-15 23:44:31 0 d-------- C:\Program Files\Common Files\Sonic Shared
2008-01-15 23:44:31 0 d-------- C:\Program Files\Common Files\Real
2008-01-15 23:44:29 0 d-------- C:\Program Files\Common Files\ODBC
2008-01-15 23:44:29 0 d-------- C:\Program Files\Common Files\Oberon Media
2008-01-15 23:44:29 0 d-------- C:\Program Files\Common Files\MSSoap
2008-01-15 23:44:23 0 d-------- C:\Program Files\Common Files\McAfee
2008-01-15 23:44:23 0 d-------- C:\Program Files\Common Files\Macromedia Shared
2008-01-15 23:44:23 0 d-a------ C:\Program Files\Common Files\LS Getting Started
2008-01-15 23:44:23 0 d-a------ C:\Program Files\Common Files\LightScribe
2008-01-15 23:44:22 0 d-------- C:\Program Files\Common Files\Java
2008-01-15 23:44:22 0 d-------- C:\Program Files\Common Files\InstallShield
2008-01-15 23:44:21 0 d-------- C:\Program Files\Common Files\HP
2008-01-15 23:44:20 0 d-------- C:\Program Files\Common Files\Canon
2008-01-15 23:44:09 0 d-------- C:\Program Files\Common Files\Apple
2008-01-15 23:44:09 0 d-------- C:\Program Files\Common Files\Ahead
2008-01-15 23:44:06 0 d-------- C:\Program Files\Common Files\Adobe Systems Shared
2008-01-15 23:44:05 0 d-------- C:\Program Files\Common Files\Adobe
2008-01-15 23:43:57 0 d-------- C:\Program Files\Canon
2008-01-15 23:43:57 0 d-------- C:\Program Files\AviSynth 2.5
2008-01-15 23:43:54 0 d-------- C:\Program Files\Apple Software Update
2007-12-18 13:06:09 203264 --a------ C:\Windows\system32\Žž–Y‚ę‚Ě–Ŕ‹{XNŠ[“Z[o[.scr <Not Verified; FIVESTAR interactive; ScreenTime For Flash>
2007-12-16 08:07:20 4096 --a------ C:\Windows\d3dx.dat
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [01/16/2008 05:19 PM]
"HP Software Update"="C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe" [02/16/2005 11:11 PM]
"HPBootOp"="C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" [02/15/2006 08:34 PM]
"iTunesHelper"="G:\Program Files\iTunes\iTunesHelper.exe" [11/15/2007 01:11 PM]
"mcagent_exe"="C:\Program Files\McAfee.com\Agent\mcagent.exe" [08/03/2007 10:33 PM]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [11/14/2007 11:43 PM]
"Recguard"="C:\WINDOWS\SMINST\RECGUARD.EXE" [07/22/2005 08:14 PM]
"SiteAdvisor"="C:\Program Files\SiteAdvisor\6253\SiteAdv.exe" [07/25/2006 04:28 AM]
"Sony Ericsson PC Suite"="G:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [03/28/2007 01:07 AM]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [09/25/2007 01:11 AM]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"="G:\Program Files\Gmail Notifier\gnotify.exe" [07/16/2005 05:48 AM]
"IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\ipoint.exe" [08/31/2007 12:01 PM]
"itype"="C:\Program Files\Microsoft IntelliType Pro\itype.exe" [11/21/2006 05:08 PM]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [08/28/2007 01:59 AM]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [08/28/2007 01:59 AM]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [08/28/2007 01:59 AM]
"RtHDVCpl"="RtHDVCpl.exe" [10/25/2007 05:52 AM C:\Windows\RtHDVCpl.exe]
"MSConfig"="C:\Windows\system32\msconfig.exe" [11/02/2006 05:45 PM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [01/16/2008 04:56 PM]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [11/02/2006 05:45 PM]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [10/18/2007 11:34 AM]
"pdfSaver3"="C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe" [09/05/2004 05:20 PM]
"updateMgr"="C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [08/18/2005 03:49 PM]
"uTorrent"="G:\Program Files\uTorrent\utorrent.exe" [10/03/2007 03:42 PM]
"µTorrent"="G:\Program Files\uTorrent\uTorrent.exe" [10/03/2007 03:42 PM]
C:\Users\Compaq_Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [3/16/2005 7:16:50 PM]
OneNote 2007 Screen Clipper and Launcher.lnk - G:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [8/24/2007 4:45:42 AM]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - G:\Program Files\D-Link\Bluetooth Software\BTTray.exe [7/26/2005 2:28:52 PM]
Compaq Connections.lnk - C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe [9/18/2006 8:03:37 PM]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"=2 (0x2)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
@="IEEE 1394 Bus host controllers"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
@="SBP2 IEEE 1394 Devices"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
@="SecurityDevices"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MMReminderService]
G:\Program Files\Mindjet\MindManager 6\MMReminderService.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalSystemNetworkRestricted hidserv UxSms WdiSystemHost Netman trkwks AudioEndpointBuilder WUDFSvc irmon sysmain IPBusEnum dot3svc PcaSvc EMDMgmt TabletInputService wlansvc WPDBusEnum
WudfServiceGroup WUDFSvc
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
C:\Windows\system32\unregmp2.exe /ShowWMP
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
%SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI
-- End of Deckard's System Scanner: finished at 2008-02-01 07:05:22 ------------
Micro\HijackThis\HijackThis.exe" /uninstall<br /
Edited by Cloud_D, 01 February 2008 - 10:11 AM.