info.txt logfile of random's system information tool 1.04 2008-10-12 19:33:15
======Uninstall list======
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
50 Blockbuster Games Volume 2-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3E6FAF7F-3FAA-42F6-B901-B8F16C83ECF8}\SETUP.EXE" -l0x9
913D Camera-->C:\Program Files\InstallShield Installation Information\{F7D85304-98CF-4A30-A380-B6C59D15E58F}\setup.exe
913D Camera-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{99F47604-6EA8-4929-97AD-A45C314B21CF}\Setup.exe" -l0x9
Ad-Aware SE Personal-->D:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE D:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG
Adobe Acrobat 4.0-->C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 4.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 4.0\NT\Uninst.dll"
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
ArcSoft PhotoImpression 2000-->C:\WINDOWS\IsUninst.exe -f"d:\Program Files\ArcSoft\PhotoImpression\Uninst.isu"
AVG Free 8.0-->C:\Program Files\AVG\AVG8\setup.exe /UNINSTALL
Buildcity Deluxe-->C:\WINDOWS\IsUninst.exe -f"d:\Program Files\Nodtronics Pty Ltd\Buildcity Deluxe\Uninst.isu"
Corel Business Applications-->c:\Corel\Office7\AppMan\Setup\remove.exe
Deadlock-->C:\WINDOWS\uninst.exe -f"d:\Program Files\Accolade\Deadlock\DeIsL1.isu"
Driver Genius Professional Edition-->"d:\Program Files\Driver-Soft\DriverGenius\unins000.exe"
Driver Magician 3.28-->"d:\Program Files\Driver Magician\unins000.exe"
DV STUDIO2-->C:\WINDOWS\uninst.exe -f"d:\Program Files\DV Studio2\DeIsL1.isu"
EVEREST Home Edition v2.20-->"d:\Program Files\Lavalys\EVEREST Home Edition\unins000.exe"
Google Earth-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3DE5E7D4-7B88-403C-A3FD-2017A8240C5B}\setup.exe" -l0x9 -removeonly
Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar4.dll"
HijackThis 2.0.2-->"d:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Intel(R) Graphics Media Accelerator Driver-->C:\WINDOWS\system32\igxpun.exe -uninstall
iPrimus Broadband Uninstaller-->"C:\Program Files\iPrimus\iConnectDSL\setup.exe" -mode uninstaller
J2SE Runtime Environment 5.0 Update 10-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150100}
J2SE Runtime Environment 5.0 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150060}
Java(TM) 6 Update 2-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020}
Java(TM) 6 Update 5-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
Java(TM) SE Runtime Environment 6 Update 1-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010}
Kids Cam Sticker Factory -->d:\PROGRA~1\KIDSCA~1\Setup.exe /remove /q0
Lexmark Software Uninstall-->C:\Program Files\Lexmark_HostCD\Install\Uninstall.exe
Lords of the Realm III-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7C1EAF33-82AD-4A63-B56D-4739172714DF}\Setup.exe" -l0x9
Macromedia Flash Player 8-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\swflash.inf,DefaultUninstall,5
Madeline Rainy Day Activities-->C:\CWONDERS\MRDA\CWRUN.EXE MadelineRainyDayActivities UninstallExe
Madeline Thinking Games Deluxe-->C:\CWONDERS\MADTGD\UNINST.EXE
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office XP Professional with FrontPage-->MsiExec.exe /I{90280409-6000-11D3-8CFE-0050048383C9}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Morrowind-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\Bethesda Softworks\Morrowind\MWUninstall\Setup.exe" -l0x9
Motorola SM56 Speakerphone Modem-->C:\WINDOWS\Motorola\SMSERIAL\sm56unst.exe
Mozilla Firefox (3.0.3)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
Nero Media Player-->C:\WINDOWS\UNNMP.exe /UNINSTALL
Nero OEM-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
NeroVision Express 2-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
NVIDIA Drivers-->C:\WINDOWS\system32\nvuninst.exe UninstallGUI
PCI Fax Modem-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{19A6FE78-B4CC-4C19-8C94-84EA1423AEA6}\SETUP.EXE" -l0x9
PowerDVD-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\setup.exe -runfromtemp -l0x0009 -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x9 -removeonly
SAS 9.1-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{68624FB8-2512-46B5-9664-64366DCCB3EB}\setup.exe" -l0x9 uninstall
SAS Enterprise Guide 4-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E0E662A9-EDC9-4C8B-9E84-448646810926}\Setup.exe" -l0x9 -removeonly "uninstall"
SAS Private JRE (J2SE(tm) Java Runtime Environment 1.4.1)-->C:\Program Files\SAS\Shared Files\JRE\1.4.1\_uninst\Uninst.exe
SBNews: News Robot v 9.2-->"C:\Program Files\sbnews\unins000.exe"
Security Update for Microsoft .NET Framework 2.0 (KB928365)-->C:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {8056AC9E-49C5-4375-9ADE-B2F862C9DF51} /package {7131646D-CD3C-40F4-97B9-CD9E4E6262EF}
Security Update for Windows Internet Explorer 7 (KB938127-v2)-->"C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Security Update for Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953838)-->"C:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
SiS 900 PCI Fast Ethernet Adapter Driver-->C:\Progra~1\SiSLan\Uninst.exe
SoundMAX-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\setup.exe" -l0x9
SPSS 11.0 for Windows Student Version-->C:\WINDOWS\uninst.exe -f"d:\Program Files\SPSS Student\DeIsL1.isu" -c"d:\Program Files\SPSS Student\uninst.dll
SPSS 15.0 for Windows Graduate Student Version-->MsiExec.exe /X{A09501A9-EE89-4961-83E1-AF6581F118A5}
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Stata 10-->MsiExec.exe /X{6395D480-9F3B-4930-8204-B91C8882F967}
SUPERAntiSpyware Free Edition-->MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
System Requirements Lab-->C:\Program Files\SystemRequirementsLab\Uninstall.exe
Taito Legends-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{44863FE1-AE61-4C81-9BF6-FBC467785D32}\setup.exe" -l0x9
TES Construction Set-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\Bethesda Softworks\Morrowind\CSUninstall\Setup.exe" -l0x9
Update for Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Update for Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Warcraft II BNE-->C:\WINDOWS\W2BNEUnin.exe C:\WINDOWS\W2BNEUnin.dat
Windows Defender Signatures-->MsiExec.exe /I{A5CC2A09-E9D3-49EC-923D-03874BBD4C2C}
Windows Defender-->MsiExec.exe /I{A06275F4-324B-4E85-95E6-87B2CD729401}
Windows Genuine Advantage v1.3.0254.0-->MsiExec.exe /I{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
XMLinst-->MsiExec.exe /I{EA23971F-2CEE-48FC-B64D-7F74A6EF90F0}
======Hosts File======
127.0.0.1
www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1
www.008k.com
127.0.0.1 008k.com
127.0.0.1
www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1
www.032439.com
127.0.0.1 032439.com
======Security center information======
AV: AVG Anti-Virus Free
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\WBEM
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 4 Stepping 1, GenuineIntel
"PROCESSOR_REVISION"=0401
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
-----------------EOF-----------------
Logfile of random's system information tool 1.04 (written by random/random)
Run by Owner at 2008-10-12 19:32:56
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 3 GB (30%) free of 10 GB
Total RAM: 2037 MB (68% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:33:11, on 12/10/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
D:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Corel\Office7\Shared\PFit7\PFPPOP70.EXE
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\Documents and Settings\Owner\Desktop\RSIT.exe
D:\Program Files\Trend Micro\HijackThis\Owner.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.iprimus.com.au/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = PowerUp Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.iprimus.com.au:8080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 10.*;172.16.*;172.17.*;172.18.*;172.19.*;172.20.*;172.21.*;172.22.*;172.23.*;172.24.*;172.25.*;172.26.*;172.27.*;172.28.*;172.29.*;172.30.*;172.31.*;192.168.*;*.IPrimus.com.au;<local>
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [QuickFinder Scheduler] c:\Corel\Office7\Shared\QFinder7\QFSCHED.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [SUPERAntiSpyware] D:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
O4 - Startup: PerfectPrint.LNK = C:\Corel\Office7\Shared\PFit7\PFPPOP70.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1222218783218
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DD9410C9-13F2-460B-82E5-48CFC1A7C04E}: NameServer = 203.134.64.66,203.134.65.66
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O20 - Winlogon Notify: !SASWinLogon - D:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 7820 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\MP Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2008-09-23 455960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-09-15 1562960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll [2008-02-22 509328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar4.dll [2007-01-19 2403392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll [2008-03-31 734704]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar4.dll [2007-01-19 2403392]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2003-10-31 32768]
"SMSERIAL"=C:\WINDOWS\sm56hlpr.exe [2004-06-29 569344]
"SoundMAXPnP"=C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe [2004-04-01 1368064]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2004-03-26 794624]
"QuickFinder Scheduler"=c:\Corel\Office7\Shared\QFinder7\QFSCHED.EXE [1996-10-16 46080]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe [2008-02-22 144784]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-05-16 13529088]
"nwiz"=nwiz.exe /install []
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2006-11-17 282624]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2006-11-03 866584]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2008-05-16 86016]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2007-07-11 131072]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2007-07-11 155648]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2007-07-11 131072]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-07-11 16132608]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2007-07-11 69632]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2008-09-30 1234712]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2007-08-31 68856]
"NBJ"=C:\Program Files\Ahead\Nero BackItUp\NBJ.exe [2004-07-26 1867776]
"SUPERAntiSpyware"=D:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2008-09-03 1576176]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE
C:\Documents and Settings\Owner\Start Menu\Programs\Startup
PerfectPrint.LNK - C:\Corel\Office7\Shared\PFit7\PFPPOP70.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="avgrsstx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
D:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2008-07-23 352256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2007-07-11 204800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"=C:\PROGRA~1\WINDOW~4\MpShHook.dll [2006-11-03 83224]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=D:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled

xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled

xpsp3res.dll,-20000"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"D:\Program Files\SAS\SAS 9.1\sas.exe"="D:\Program Files\SAS\SAS 9.1\sas.exe:*:Enabled:SAS 9.1 for Windows"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled

NA"
"d:\Program Files\BitTorrent\bittorrent.exe"="d:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled

xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled

xpsp3res.dll,-20000"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\F]
shell\AutoRun\command - F:\LaunchU3.exe -a
======List of files/folders created in the last 1 months======
2008-10-12 19:32:56 ----D---- C:\rsit
2008-10-11 23:20:36 ----D---- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-10-11 23:20:31 ----D---- C:\Documents and Settings\Owner\Application Data\SUPERAntiSpyware.com
2008-10-11 22:33:50 ----A---- C:\WINDOWS\system32\tmp.txt
2008-10-11 22:33:37 ----A---- C:\rapport.txt
2008-10-08 12:12:54 ----HD---- C:\$AVG8.VAULT$
2008-09-30 22:37:20 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2008-09-29 08:39:04 ----D---- C:\WINDOWS\Prefetch
2008-09-29 08:35:29 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-09-29 08:35:24 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-09-29 08:25:52 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2008-09-24 22:35:16 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-09-24 22:35:09 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-09-24 22:34:55 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-09-24 22:34:48 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-09-24 22:34:41 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-09-24 22:34:34 ----HDC---- C:\WINDOWS\$NtUninstallKB951072-v2$
2008-09-24 22:34:27 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-09-24 22:34:20 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-09-24 22:34:04 ----HDC---- C:\WINDOWS\$NtUninstallKB953838$
2008-09-24 22:33:50 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-09-24 22:33:19 ----HDC---- C:\WINDOWS\$NtUninstallKB938464_0$
2008-09-24 22:33:11 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2008-09-24 12:32:35 ----A---- C:\WINDOWS\003100_.tmp
2008-09-23 11:53:00 ----A---- C:\WINDOWS\system32\avgrsstx.dll
2008-09-23 11:52:46 ----D---- C:\Program Files\AVG
2008-09-23 11:52:45 ----D---- C:\Documents and Settings\All Users\Application Data\avg8
2008-09-23 11:20:51 ----D---- C:\WINDOWS\system32\RTCOM
2008-09-23 11:20:21 ----R---- C:\WINDOWS\SkyTel.exe
2008-09-23 11:20:19 ----R---- C:\WINDOWS\RtlUpd.exe
2008-09-23 11:20:02 ----R---- C:\WINDOWS\MicCal.exe
2008-09-23 11:19:57 ----R---- C:\WINDOWS\Alcmtr.exe
2008-09-23 11:19:31 ----A---- C:\WINDOWS\HideWin.exe
2008-09-23 11:19:30 ----R---- C:\WINDOWS\RtlExUpd.dll
2008-09-23 09:14:21 ----D---- C:\Documents and Settings\Owner\Application Data\InstallShield
2008-09-23 09:13:01 ----RA---- C:\WINDOWS\system32\igfxres.dll
2008-09-23 09:11:03 ----RA---- C:\WINDOWS\system32\iglicd32.dll
2008-09-23 09:11:03 ----RA---- C:\WINDOWS\system32\igldev32.dll
2008-09-23 09:11:03 ----RA---- C:\WINDOWS\system32\igfxext.exe
2008-09-23 09:11:03 ----RA---- C:\WINDOWS\system32\igfxexps.dll
2008-09-23 09:11:03 ----RA---- C:\WINDOWS\system32\igfxCoIn_v4785.dll
2008-09-23 09:11:02 ----RA---- C:\WINDOWS\system32\igfxress.dll
2008-09-23 09:11:02 ----RA---- C:\WINDOWS\system32\igfxpers.exe
2008-09-23 09:11:02 ----RA---- C:\WINDOWS\system32\hkcmd.exe
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igxprd32.dll
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igxpgd32.dll
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igxpdx32.dll
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igxpdv32.dll
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igfxzoom.exe
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igfxtray.exe
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igfxsrvc.exe
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igfxsrvc.dll
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igfxpph.dll
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igfxdo.dll
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igfxdev.dll
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\igfxcfg.exe
2008-09-23 09:11:01 ----RA---- C:\WINDOWS\system32\hccutils.dll
2008-09-23 09:10:05 ----RA---- C:\WINDOWS\system32\difxapi.dll
2008-09-23 09:10:05 ----D---- C:\WINDOWS\system32\Lang
2008-09-23 09:10:04 ----RA---- C:\WINDOWS\system32\igxpun.exe
2008-09-23 09:02:33 ----DC---- C:\WINDOWS\system32\DRVSTORE
2008-09-23 09:02:23 ----D---- C:\Intel
2008-09-23 08:31:20 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2008-09-23 08:21:47 ----A---- C:\WINDOWS\system32\spxcoins.dll
2008-09-23 08:21:47 ----A---- C:\WINDOWS\system32\irclass.dll
2008-09-23 08:21:30 ----RA---- C:\WINDOWS\SET7F.tmp
2008-09-23 08:21:28 ----RA---- C:\WINDOWS\SET73.tmp
2008-09-23 08:21:26 ----RA---- C:\WINDOWS\SET70.tmp
2008-09-17 11:44:43 ----D---- C:\WINDOWS\NV9761492.TMP
======List of files/folders modified in the last 1 months======
2008-10-12 19:33:11 ----D---- C:\WINDOWS\Temp
2008-10-12 13:57:56 ----D---- C:\Program Files\Mozilla Firefox
2008-10-12 13:53:46 ----SHD---- C:\WINDOWS\Installer
2008-10-12 13:09:11 ----D---- C:\WINDOWS\system32\CatRoot2
2008-10-12 13:09:08 ----SD---- C:\WINDOWS\Tasks
2008-10-12 13:04:20 ----D---- C:\WINDOWS
2008-10-12 10:14:10 ----SHD---- C:\RECYCLER
2008-10-12 10:13:25 ----AC---- C:\WINDOWS\ntbtlog.txt
2008-10-12 10:10:12 ----D---- C:\WINDOWS\system32
2008-10-12 08:16:30 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-10-11 23:20:34 ----SHD---- C:\Config.Msi
2008-10-11 23:19:30 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2008-10-11 13:10:44 ----D---- C:\Documents and Settings
2008-10-09 22:32:52 ----A---- C:\WINDOWS\wininit.ini
2008-10-09 20:22:28 ----RD---- C:\Program Files
2008-10-09 19:39:36 ----D---- C:\Program Files\Spybot - Search & Destroy
2008-10-08 12:50:29 ----D---- C:\WINDOWS\Help
2008-10-07 13:34:04 ----A---- C:\WINDOWS\system32\CmdLineExt03.dll
2008-10-04 18:58:50 ----D---- C:\Documents and Settings\Owner\Application Data\U3
2008-10-01 19:43:32 ----A---- C:\WINDOWS\NeroDigital.ini
2008-10-01 18:53:34 ----HD---- C:\WINDOWS\inf
2008-09-30 22:37:23 ----RSHDC---- C:\WINDOWS\system32\dllcache
2008-09-29 22:03:40 ----D---- C:\WINDOWS\system32\drivers
2008-09-29 22:03:39 ----D---- C:\WINDOWS\system32\CatRoot
2008-09-29 22:03:18 ----A---- C:\WINDOWS\imsins.BAK
2008-09-29 22:03:13 ----HD---- C:\WINDOWS\$hf_mig$
2008-09-29 08:41:01 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-09-29 08:39:33 ----A---- C:\WINDOWS\setuplog.txt
2008-09-29 08:38:31 ----D---- C:\WINDOWS\system32\wbem
2008-09-29 08:38:31 ----D---- C:\WINDOWS\system32\Setup
2008-09-29 08:38:31 ----D---- C:\WINDOWS\AppPatch
2008-09-29 08:38:30 ----RSD---- C:\WINDOWS\Fonts
2008-09-29 08:37:50 ----D---- C:\WINDOWS\security
2008-09-29 08:35:11 ----D---- C:\Program Files\Messenger
2008-09-29 08:33:26 ----D---- C:\Program Files\Windows Media Player
2008-09-29 08:33:15 ----D---- C:\WINDOWS\ime
2008-09-29 08:33:06 ----D---- C:\WINDOWS\PeerNet
2008-09-29 08:33:06 ----D---- C:\Program Files\Movie Maker
2008-09-29 08:30:55 ----D---- C:\WINDOWS\system32\Restore
2008-09-29 08:30:55 ----D---- C:\WINDOWS\system32\npp
2008-09-29 08:30:53 ----D---- C:\WINDOWS\msagent
2008-09-29 08:30:52 ----D---- C:\WINDOWS\srchasst
2008-09-29 08:30:51 ----D---- C:\Program Files\NetMeeting
2008-09-29 08:30:50 ----D---- C:\WINDOWS\system32\Com
2008-09-29 08:30:47 ----D---- C:\Program Files\Windows NT
2008-09-29 08:30:47 ----D---- C:\Program Files\Outlook Express
2008-09-29 08:30:44 ----D---- C:\Program Files\Common Files\System
2008-09-29 08:30:26 ----D---- C:\WINDOWS\system32\oobe
2008-09-29 08:30:25 ----D---- C:\WINDOWS\system32\usmt
2008-09-29 08:30:24 ----D---- C:\WINDOWS\system
2008-09-29 08:25:51 ----D---- C:\WINDOWS\EHome
2008-09-29 08:15:02 ----D---- C:\WINDOWS\system32\en-US
2008-09-29 08:15:02 ----D---- C:\Program Files\Internet Explorer
2008-09-28 23:40:02 ----A---- C:\WINDOWS\system32\lsprst7.dll
2008-09-28 14:06:07 ----HDC---- C:\WINDOWS\ie7
2008-09-28 14:03:32 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
2008-09-28 14:02:22 ----HDC---- C:\WINDOWS\$NtUninstallKB904942$
2008-09-24 22:35:03 ----HDC---- C:\WINDOWS\$NtUninstallKB935448$
2008-09-24 22:33:32 ----HDC---- C:\WINDOWS\$NtUninstallKB950749$
2008-09-24 22:33:20 ----D---- C:\WINDOWS\WinSxS
2008-09-24 11:13:59 ----SD---- C:\WINDOWS\Downloaded Program Files
2008-09-24 10:37:45 ----AC---- C:\WINDOWS\system32\wpa.bak
2008-09-24 09:43:38 ----D---- C:\WINDOWS\SoftwareDistribution
2008-09-23 18:18:23 ----D---- C:\WINDOWS\Media
2008-09-23 18:15:46 ----D---- C:\WINDOWS\twain_32
2008-09-23 18:15:31 ----D---- C:\WINDOWS\system32\icsxml
2008-09-23 18:15:06 ----D---- C:\WINDOWS\system32\ias
2008-09-23 18:15:01 ----D---- C:\WINDOWS\system32\1033
2008-09-23 18:13:58 ----D---- C:\WINDOWS\Driver Cache
2008-09-23 12:27:56 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-09-23 11:52:40 ----D---- C:\Program Files\Common Files\Microsoft Shared
2008-09-23 11:49:01 ----D---- C:\Documents and Settings\All Users\Application Data\Trend Micro
2008-09-23 11:26:54 ----D---- C:\TempEI4
2008-09-23 11:19:54 ----D---- C:\Program Files\Realtek
2008-09-23 09:14:37 ----HD---- C:\Program Files\InstallShield Installation Information
2008-09-23 09:04:21 ----D---- C:\WINDOWS\system32\ReinstallBackups
2008-09-23 08:40:17 ----D---- C:\WINDOWS\Registration
2008-09-23 08:38:04 ----SHD---- C:\System Volume Information
2008-09-23 08:36:55 ----D---- C:\WINDOWS\system32\config
2008-09-23 08:32:09 ----A---- C:\WINDOWS\OEWABLog.txt
2008-09-23 08:32:04 ----A---- C:\WINDOWS\ODBCINST.INI
2008-09-23 08:31:22 ----RD---- C:\WINDOWS\Web
2008-09-23 08:31:13 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2008-09-23 08:31:03 ----A---- C:\WINDOWS\win.ini
2008-09-23 08:28:14 ----SH---- C:\boot.ini
2008-09-23 08:23:30 ----D---- C:\Program Files\PCI Fax Modem
2008-09-23 08:21:53 ----N---- C:\WINDOWS\system.ini
2008-09-23 08:21:36 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2008-09-17 11:56:10 ----D---- C:\WINDOWS\nview
2008-09-17 11:40:45 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2008-09-17 07:44:44 ----D---- C:\WINDOWS\Minidump
2008-09-15 11:36:55 ----D---- C:\Program Files\Google
2008-09-15 08:13:05 ----D---- C:\Program Files\Java
2008-09-14 14:30:08 ----D---- C:\Program Files\Prime95
2008-09-14 14:11:03 ----D---- C:\Program Files\Mozilla Thunderbird
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2008-09-23 97928]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2008-09-23 26824]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 SASDIFSV;SASDIFSV; \??\D:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\D:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
R1 SSHDRV61;SSHDRV61; \??\C:\WINDOWS\system32\drivers\SSHDRV61.sys []
R2 AvgTdiX;AVG Free8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2008-09-23 76040]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2007-07-11 5700096]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-07-11 4424192]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-18 12160]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2007-07-11 90880]
R3 SASENUM;SASENUM; \??\D:\Program Files\SUPERAntiSpyware\SASENUM.SYS []
R3 SMBios;Intel (R) System Management BIOS Service; C:\WINDOWS\system32\DRIVERS\SMBios.sys [2004-06-07 36484]
R3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys [2004-06-29 923570]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2004-04-07 116176]
S3 AIDA32Driver;AIDA32Driver; \??\E:\programs\aida32\aida32.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 hidgame;Microsoft Hid to Joystick Port Enabler; C:\WINDOWS\system32\DRIVERS\hidgame.sys [2001-08-18 8576]
S3 lredbooo;lredbooo; \??\C:\DOCUME~1\Owner\LOCALS~1\Temp\lredbooo.sys []
S3 LwAdiHid;Logitech WingMan Digital Devices(Auto-Detect); C:\WINDOWS\system32\DRIVERS\LwAdiHid.sys [2004-08-03 20864]
S3 MidiSyn;MidiSyn; C:\WINDOWS\system32\drivers\MidiSyn.sys [2002-09-20 235100]
S3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-17 2944]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-05-16 6557408]
S3 senfilt;senfilt; C:\WINDOWS\system32\drivers\senfilt.sys [2004-04-26 381056]
S3 SISNIC;SiS PCI Fast Ethernet Adapter Driver; C:\WINDOWS\system32\DRIVERS\sisnic.sys [2003-08-29 32256]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2004-06-07 266880]
S3 SQTECH913D;913D Camera; C:\WINDOWS\System32\Drivers\Capt913D.sys [2006-12-21 29522]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-14 17152]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2004-06-16 180480]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avg8emc;AVG Free8 E-mail Scanner; C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-09-23 875288]
R2 avg8wd;AVG Free8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-09-23 231704]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R2 WinDefend;Windows Defender; C:\Program Files\Windows Defender\MsMpEng.exe [2006-11-03 13592]
S2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-05-16 159812]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-04-13 33632]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-04-13 68952]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-02-01 138168]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
-----------------EOF-----------------