Extremely SLOW PC

Sorry for my very long delay.
I uninstalled McAffe and installed Avast on the free trail.
I am trying to remove the AVSDK5. The Appremover did not have anything.
Revo has two things that might be the AVSDK5:
AVS Update Manager 1.0
AVS4You software navigator 1.3
I wanted to check with you before I uninstalled these.
I will run the Erunt after I hear from you.
Thank you for your patience!
 
Hello gilmore :),

They do not appear to be related. Please skip the steps from the previous instructions.

Rerun DDS and post back the latest results.
 
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 7.0.5730.11 BrowserJavaVersion: 1.6.0_27
Run by Julie Goodwin at 10:16:22 on 2011-10-21
.
============== Running Processes ===============
.
.
============== Pseudo HJT Report ===============
.
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uSearch Bar = hxxp://www.google.com/ie
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: DriveLetterAccess: {5ca3d70e-1895-11cf-8e15-001234567890} - c:\windows\system32\dla\DLASHX_W.DLL
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.7.6406.1642\swg.dll
BHO: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:\program files\vuze_remote\tbVuze.dll
BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:\program files\vuze_remote\tbVuze.dll
TB: @c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRunOnce: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKCU-RunOnce
mRun: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKLM-Run
mRun: [EvtMgr6] c:\program files\logitech\setpointp\SetPoint.exe /launchGaming
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "D:\iTunesHelper.exe"
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [<NO NAME>]
mRun: [Microsoft Default Manager] "c:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
mRun: [MMTray] "c:\program files\musicmatch\musicmatch jukebox\mm_tray.exe"
mRun: [PCLEUSBTip] c:\program files\pinnacle\shared files\programs\usbtip\USBTip.exe
mRun: [USBToolTip] "c:\program files\pinnacle\shared files\\programs\usbtip\USBTip.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRunOnce: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKLM-RunOnce
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office11\REFIEBAR.DLL
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
LSP: c:\windows\system32\STProxy.dll
DPF: {549F957E-2F89-11D6-8CFE-00C04F52B225} - hxxp://coupons.smartsource.com/download/cscmv5X.cab
DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} - hxxp://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase5036.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} - hxxp://atv.disney.go.com/global/download/otoy/OTOYAX29b.cab
DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} - hxxp://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} - hxxp://rescam1.b2science.org/activex/AMC.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{3F815C68-606F-4179-9E43-F7E95177B20C} : DhcpNameServer = 192.168.1.254
Notify: igfxcui - igfxdev.dll
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\julie goodwin\application data\mozilla\firefox\profiles\07mj6jjm.default\
FF - plugin: c:\documents and settings\julie goodwin\application data\mozilla\firefox\profiles\07mj6jjm.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: c:\program files\picasa2\npPicasa2.dll
FF - plugin: c:\program files\picasa2\npPicasa3.dll
FF - plugin: c:\program files\sony\media go\npmediago.dll
FF - plugin: c:\program files\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: d:\mozilla plugins\npitunes.dll
.
============= SERVICES / DRIVERS ===============
.
R? FANTOM;LEGO MINDSTORMS NXT Driver
R? gupdate1c9b9f9fa17bde8;Google Update Service (gupdate1c9b9f9fa17bde8)
R? gupdatem;Google Update Service (gupdatem)
R? MBAMSwissArmy;MBAMSwissArmy
R? MSSQLServerADHelper100;SQL Active Directory Helper Service
R? Revoflt;Revoflt
R? RsFx0102;RsFx0102 Driver
R? SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS)
S? aswFsBlk;aswFsBlk
S? aswSnx;aswSnx
S? aswSP;aswSP
S? avast! Antivirus;avast! Antivirus
S? ComputerTimeServer;ComputerTime Server
S? LBeepKE;Logitech Beep Suppression Driver
S? STProxy;STProxy
S? vseamps;vseamps
S? vsedsps;vsedsps
S? vseqrts;vseqrts
S? WsAudio_DeviceS(1);WsAudio_DeviceS(1)
S? WsAudio_DeviceS(2);WsAudio_DeviceS(2)
S? WsAudio_DeviceS(3);WsAudio_DeviceS(3)
S? WsAudio_DeviceS(4);WsAudio_DeviceS(4)
S? WsAudio_DeviceS(5);WsAudio_DeviceS(5)
.
=============== Created Last 30 ================
.
2011-10-21 03:57:19 442200 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-10-21 03:56:54 41184 ----a-w- c:\windows\avastSS.scr
2011-10-21 03:56:39 -------- d-----w- c:\program files\AVAST Software
2011-10-21 03:56:39 -------- d-----w- c:\documents and settings\all users\application data\AVAST Software
2011-10-14 01:48:22 -------- d-----w- c:\documents and settings\julie goodwin\application data\QuickScan
2011-10-12 13:49:32 -------- d-----w- c:\documents and settings\julie goodwin\local settings\application data\VS Revo Group
2011-10-12 13:49:09 27064 ----a-w- c:\windows\system32\drivers\revoflt.sys
2011-10-12 13:49:06 -------- d-----w- c:\program files\VS Revo Group
2011-10-07 03:41:32 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-10-07 03:41:32 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-10-06 11:30:00 -------- dc----w- C:\_OTM
2011-10-04 04:26:19 -------- d-----w- c:\program files\ESET
2011-09-26 16:41:20 220160 ------w- c:\windows\system32\dllcache\oleacc.dll
2011-09-26 16:41:14 20480 ------w- c:\windows\system32\dllcache\oleaccrc.dll
2011-09-26 14:00:25 -------- d-----w- c:\documents and settings\julie goodwin\application data\Malwarebytes
2011-09-26 13:58:26 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes
2011-09-26 13:39:52 96200 ----a-w- c:\windows\system32\drivers\CDAVFS.sys
2011-09-26 13:39:30 -------- d-----w- c:\program files\common files\Authentium
.
==================== Find3M ====================
.
2011-10-21 03:28:47 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-09-26 16:41:20 611328 ----a-w- c:\windows\system32\uiautomationcore.dll
2011-09-26 16:41:20 220160 ----a-w- c:\windows\system32\oleacc.dll
2011-09-26 16:41:14 20480 ----a-w- c:\windows\system32\oleaccrc.dll
2011-09-09 09:12:13 599040 ----a-w- c:\windows\system32\crypt32.dll
2011-09-06 13:20:51 1858944 ------w- c:\windows\system32\win32k.sys
2011-08-17 21:32:17 832512 ----a-w- c:\windows\system32\wininet.dll
2011-08-17 21:32:16 78336 ----a-w- c:\windows\system32\ieencode.dll
2011-08-17 21:32:16 1830912 ----a-w- c:\windows\system32\inetcpl.cpl
2011-08-17 21:32:15 17408 ----a-w- c:\windows\system32\corpol.dll
2011-08-17 13:49:54 138496 ----a-w- c:\windows\system32\drivers\afd.sys
2011-08-17 12:22:23 389120 ----a-w- c:\windows\system32\html.iec
2006-08-25 23:43:48 11817800 -c----w- c:\program files\GoogleEarth.exe
2002-07-26 22:02:06 153088 -c--a-w- c:\program files\UNWISE.EXE
.
============= FINISH: 10:22:38.17 ===============
 
Hello gilmore :),

Are you still experiencing any problems?

We will remove AVSDK5 after this step.

--------------------

Please download SystemLook© by jpshortstuff from one of the links below and save it to your desktop.

Link 1 - 32-bit version
Link 2 - 32-bit version


  • Double click on SystemLook.exe to run it.
  • Copy and paste the following text into the main textfield:
    Code:
    :filefind
    *AVSDK5*
    Authentium
    vse*
    
    :folderfind 
    *AVSDK5*
    Authentium
    vse*
    
    :regfind 
    *AVSDK5*
    Authentium
    vse*
  • Click the Look button to start the scan. This might take a while.
  • When finished, a Notepad window will open with the results of the scan. Please post this log in your next reply.
    Note: The log can also be found at on your desktop as SystemLook.txt.

--------------------

Please post back:
1. any more problems?
2. SystemLook result
 
The computer is ok. Firefox seems to loose connection half way through loading a page. Restarting firefox seems to help.

SystemLook 30.07.11 by jpshortstuff
Log created at 07:48 on 22/10/2011 by Julie Goodwin
Administrator - Elevation successful

========== filefind ==========

Searching for "*AVSDK5*"
No files found.

Searching for "Authentium"
No files found.

Searching for "vse*"
C:\Program Files\Common Files\Authentium\AntiVirus5\vseampc.dll -ra---- 88616 bytes [21:46 08/04/2010] [21:46 08/04/2010] 9BBF1A3A0ABF6CC9E0E390E1E9944AE6
C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe -ra---- 117288 bytes [21:46 08/04/2010] [21:46 08/04/2010] 9C2F3A9B54316C0A3F53E3272484B17C
C:\Program Files\Common Files\Authentium\AntiVirus5\vseapi.dll -ra---- 76328 bytes [21:46 08/04/2010] [21:46 08/04/2010] 33DBFBC551BE96534A8BEBDDB866846B
C:\Program Files\Common Files\Authentium\AntiVirus5\vsecapi.dll -ra---- 322088 bytes [21:46 08/04/2010] [21:46 08/04/2010] E257C24572AC23454FC6DBA59772BDB3
C:\Program Files\Common Files\Authentium\AntiVirus5\vsecdspc.dll -ra---- 170536 bytes [21:46 08/04/2010] [21:46 08/04/2010] 1FE2630126C0FB2CFED8597C314AF46C
C:\Program Files\Common Files\Authentium\AntiVirus5\vsecqrt.dll --a---- 162344 bytes [21:46 08/04/2010] [21:46 08/04/2010] 45A9122B6F86C62E0E1B41626B0EC246
C:\Program Files\Common Files\Authentium\AntiVirus5\vsedspc.dll -ra---- 100904 bytes [21:46 08/04/2010] [21:46 08/04/2010] 7C5FC636CFC1D8746B13C7DB8D3D5EA3
C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe -ra---- 117288 bytes [21:46 08/04/2010] [21:46 08/04/2010] 00D15FF1E8363F7876396970D913CF26
C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrt.dll --a---- 88616 bytes [21:46 08/04/2010] [21:46 08/04/2010] F425DA85DDDED82E17B63ED0C93B2E18
C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe --a---- 154152 bytes [21:46 08/04/2010] [21:46 08/04/2010] 68CC16E23F3B71918C0A003A046CEF47
C:\Program Files\Common Files\Authentium\AntiVirus5\vsestmio.dll -ra---- 59944 bytes [21:46 08/04/2010] [21:46 08/04/2010] 2044E709B071A00B8926A247767AA229
C:\Program Files\Common Files\Microsoft Shared\MSEnv\vsext.olb --a--c- 1028 bytes [09:36 29/07/2008] [09:36 29/07/2008] 0503B7488382FC7D7FDC365C29660661
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_answer.png --a---- 6707 bytes [02:13 26/06/2009] [02:13 26/06/2009] C645DFF8C0545890058DA82CFB7AC034
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_base.png --a---- 13828 bytes [02:13 26/06/2009] [02:13 26/06/2009] DB383E951DB8B59DB1B11BA3D15E23A7
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_computer.png --a---- 8137 bytes [02:13 26/06/2009] [02:13 26/06/2009] 30556019FDBBD130AB97E5F8D78691AF
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_connector_1.png --a---- 805 bytes [02:13 26/06/2009] [02:13 26/06/2009] D5DBB7DB9B313E36170563BE6B3179EE
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_connector_2.png --a---- 3446 bytes [02:13 26/06/2009] [02:13 26/06/2009] 577362D893E37DD64CD45C6AE4755056
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_connector_3.png --a---- 3443 bytes [02:13 26/06/2009] [02:13 26/06/2009] CCD616564CF1A035BEB3E6EB8488D8CF
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_dialup_modem.png --a---- 3976 bytes [02:13 26/06/2009] [02:13 26/06/2009] 17F6E2FC3F736A0EE3D180A4F08D0740
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_dsl.png --a---- 4956 bytes [02:13 26/06/2009] [02:13 26/06/2009] 399A0B5DBA932C2D24E2A36A5DC1A266
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_dsl_modem.png --a---- 7178 bytes [02:13 26/06/2009] [02:13 26/06/2009] 251788FBBCD3584C47E0C4C331ECBCD5
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_phone.png --a---- 7677 bytes [02:13 26/06/2009] [02:13 26/06/2009] 5375A86ADDE6B86E365AA4CAEF7FFD4B
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_zoom.png --a---- 5481 bytes [02:13 26/06/2009] [02:13 26/06/2009] D1F286875EAB5DFA2AE610136A8BD6FD
C:\Program Files\HP\HP Officejet 6500 E710n-z\data\bmp\vset_zoom_ext.png --a---- 5503 bytes [02:13 26/06/2009] [02:13 26/06/2009] 609E6DDF00A4B32DD46D7769D2CFCD48

========== folderfind ==========

Searching for "*AVSDK5*"
No folders found.

Searching for "Authentium"
C:\Program Files\Common Files\Authentium d------ [13:39 26/09/2011]

Searching for "vse*"
C:\Program Files\Common Files\Microsoft Shared\DevHelp\VSExpress d------ [19:22 01/02/2010]
C:\Program Files\Microsoft SQL Server\100\Setup Bootstrap\Log\VSExpress_9.0 d------ [19:29 01/02/2010]

========== regfind ==========

Searching for "*AVSDK5*"
No data found.

Searching for "Authentium"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BB8BED3-9CBE-43A8-9797-E1DECEFCEF32}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecapi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2DD994A0-7EB0-4778-8E6B-23C8640919BE}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecapi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42C0AB1E-AA62-4C9C-BC16-B5D0ED048246}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecapi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{497EAC25-ACDE-4055-915B-DCE4F823DDB1}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecqrt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51E81757-4A6E-4AC3-97BB-A8F614468B88}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecdspc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57A7B74E-FF6C-4484-B4A1-B827D643136C}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecapi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6AA70A80-805A-4549-BB01-CA92D88A37CF}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecapi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B84163F-D976-4D24-8539-F0A1BB705E5A}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecqrt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6CEABEA4-3E67-427E-807B-261C3A5D5248}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecqrt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86127759-BF79-4748-9C34-E4730737A3C4}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecqrt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{944ED91D-AE7E-4391-B916-E3B49A0CAF08}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecdspc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AD6D5B3D-6B6E-4055-8CD3-20030C3B45D1}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecqrt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7F93E07-63F9-4594-835F-8C48E871BA83}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecapi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA14A330-3FC9-4D20-A010-E1F51822A059}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecapi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF29DD21-8A74-405B-8DE2-0E226EA6B876}\InprocServer32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecapi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7AFE0FDA-F567-43AD-9C46-2CA1A62A1562}\1.0\0\win32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecapi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7AFE0FDA-F567-43AD-9C46-2CA1A62A1562}\1.0\HELPDIR]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{CC839999-0F3A-4123-AAE0-CAD9BE5E19DC}\1.0\0\win32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecqrt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{CC839999-0F3A-4123-AAE0-CAD9BE5E19DC}\1.0\HELPDIR]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F8B1795E-DF6E-4AF7-A152-FDFE163919DD}\1.0\0\win32]
@="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecdspc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Authentium\AntiVirus5\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Authentium\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Authentium\AntiVirus5\ampmf\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files\Common Files\Authentium\AntiVirus5\ampse\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\101396687DD35BA468DC0880FF218CFE]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1C0B48F3C6EB9B04996D0F406A410FAE]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\antiviri.def"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\21299BF3A51024446A9A425A42BCDEE7]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecapi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2A333077BC2E1584284838F2ECAE2314]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="02:\SOFTWARE\Authentium\AntiVirus5\InstalledProducts\AVSDK5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2C9DE63D04CBE9448A8726992B73AF22]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\vsedspc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2EDFD6F1AEC34F14DA9AF6D568A4F650]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\aiio.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3436F5BB1BCB6D34984B3654595708BD]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\aivse000.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\38DBFB287018E3248BA362E9C82D2994]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\aivsec.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3C1F09B0924CD4F4387CDA49A782C09D]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\aise.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3F2B23EBAE3394A438E6D5C10E602820]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\antivirv.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\432884754A1DC914E9071C51F289F134]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\DPInst.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CD6C6A2298080B489C68D75F5E21DF7]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\ampmf\amp.inf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F8FD942BE41452479837D617845E4B2]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\aicam.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5B7829E402A89EC46BF885B9B3BBA5DA]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\79B8AA18248E0474C9259C1FC501671D]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\ampse\ampse.inf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BCF6D31F0156D544834723E418241F7]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\vsestmio.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7E24DCF95BC576E4AA53F5811974C107]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\aivsecon.def"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8011ACA1CAFA49542A715825C9D9F92D]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8EC7D182ACAC4314C9F7AF1A802AAF5D]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\aiscan.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\948CF7E6CC7AD694FAA2A6078FF0C0EF]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\vseapi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9736A6A5549746C4E9F0FB9ABCB824A4]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A6E723742B5FF743AF1DCBA3130495D]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecqrt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A26B48D23715E514CBEFDCB036D17301]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\vsecdspc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C26973F2BA25D194F9D038EFE38EE52C]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\vseampc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DFBD50F2AB57E5C47B42DD4A3C52CB24]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\aidef.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8406BBBD7B55BA4695C7A644D1D93EF]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\AmpVseApi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F47D0614D4C44AD4A89493AD30C9B088]
"A4DABD03D6ABD9F4A80BF2C6B760214A"="C:\Program Files\Common Files\Authentium\AntiVirus5\antivir.def"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A4DABD03D6ABD9F4A80BF2C6B760214A\InstallProperties]
"HelpLink"="http://www.authentium.com/support/documentation.html"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A4DABD03D6ABD9F4A80BF2C6B760214A\InstallProperties]
"InstallLocation"="C:\Program Files\Common Files\Authentium\AntiVirus5\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A4DABD03D6ABD9F4A80BF2C6B760214A\InstallProperties]
"Publisher"="Authentium, Inc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A4DABD03D6ABD9F4A80BF2C6B760214A\InstallProperties]
"URLInfoAbout"="www.authentium.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A4DABD03D6ABD9F4A80BF2C6B760214A\InstallProperties]
"URLUpdateInfo"="www.authentium.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}]
"HelpLink"="http://www.authentium.com/support/documentation.html"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}]
"InstallLocation"="C:\Program Files\Common Files\Authentium\AntiVirus5\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}]
"Publisher"="Authentium, Inc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}]
"URLInfoAbout"="www.authentium.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}]
"URLUpdateInfo"="www.authentium.com"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AMPSE\Parameters]
"DefinitionFilesDir"="\??\C:\Program Files\Common Files\Authentium\AntiVirus5\"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vseamps]
"ImagePath"=""C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe""
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vsedsps]
"ImagePath"=""C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe""
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vseqrts]
"ImagePath"=""C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe""
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\AMPSE\Parameters]
"DefinitionFilesDir"="\??\C:\Program Files\Common Files\Authentium\AntiVirus5\"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vseamps]
"ImagePath"=""C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe""
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vsedsps]
"ImagePath"=""C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe""
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vseqrts]
"ImagePath"=""C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AMPSE\Parameters]
"DefinitionFilesDir"="\??\C:\Program Files\Common Files\Authentium\AntiVirus5\"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vseamps]
"ImagePath"=""C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vsedsps]
"ImagePath"=""C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vseqrts]
"ImagePath"=""C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe""

Searching for "vse*"
No data found.

-= EOF =-
 
Hello gilmore :),

To be sure we get everything, I need you to run SystemLook again.

Repeat SystemLook
  • Double click on SystemLook.exe to run it.
  • Copy and paste the following text into the main textfield:
    Code:
    :filefind
    *command*
    
    :folderfind 
    *command*
    
    :regfind 
    *command*
    
    :reg 
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}] /s
  • Click the Look button to start the scan. This might take a while.
  • When finished, a Notepad window will open with the results of the scan. Please post this log in your next reply.
    Note: The log can also be found at on your desktop as SystemLook.txt.
 
SystemLook 30.07.11 by jpshortstuff
Log created at 13:14 on 24/10/2011 by Julie Goodwin
Administrator - Elevation successful

========== filefind ==========

Searching for "*command*"
C:\Documents and Settings\Administrator\Start Menu\Programs\Accessories\Command Prompt.lnk --a---- 1459 bytes [21:51 11/04/2011] [18:04 10/08/2004] 203FE80767BC2BCC385C65D479491FD9
C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Visual C++ 2008 Express Edition\Visual Studio Tools\Visual Studio 2008 Command Prompt.lnk --a---- 1695 bytes [19:26 01/02/2010] [19:26 01/02/2010] F412D844DF98161781EF093264F946F7
C:\Documents and Settings\Dad\Start Menu\Programs\Accessories\Command Prompt.lnk --a---- 1459 bytes [16:07 12/08/2006] [18:04 10/08/2004] 203FE80767BC2BCC385C65D479491FD9
C:\Documents and Settings\Default User\Start Menu\Programs\Accessories\Command Prompt.lnk --a--c- 1459 bytes [18:04 10/08/2004] [18:04 10/08/2004] 203FE80767BC2BCC385C65D479491FD9
C:\Documents and Settings\Guest\Start Menu\Programs\Accessories\Command Prompt.lnk --a--c- 1459 bytes [16:25 04/10/2006] [18:04 10/08/2004] 203FE80767BC2BCC385C65D479491FD9
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_commandcomps_block_gif.gif --a--c- 159 bytes [18:45 30/01/2010] [18:45 30/01/2010] FF164EABA285C2E614EBFD967FEF9732
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_calculator_gif.gif --a--c- 317 bytes [18:45 30/01/2010] [18:45 30/01/2010] E7ACB20C8E56B1EFAD7DED3DC4DE35F5
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_excel_gif.gif --a--c- 111 bytes [18:45 30/01/2010] [18:45 30/01/2010] 68D5FB9046516B872BEB1AADF30EA86B
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_MsAccess_gif.gif --a--c- 95 bytes [18:45 30/01/2010] [18:45 30/01/2010] 095BEB6B08F7F24F33F56C56096BFD12
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_msnmessenger_gif.gif --a--c- 305 bytes [18:45 30/01/2010] [18:45 30/01/2010] A3E464E993C0C45AF0D94BD84AE3C5F8
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_notepad_gif.gif --a--c- 405 bytes [18:45 30/01/2010] [18:45 30/01/2010] 077089FFB4BF6554C885B0F49A4BE6C5
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_office_gif.gif --a--c- 155 bytes [18:45 30/01/2010] [18:45 30/01/2010] 9882F9A7CFAD12AC3CCBA0B17D4EE1DF
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_OutlookExpress_gif.gif --a--c- 411 bytes [18:45 30/01/2010] [18:45 30/01/2010] 4F7BC53CDB2B21F96C251C1F1AC19BAF
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_Outlook_gif.gif --a--c- 127 bytes [18:45 30/01/2010] [18:45 30/01/2010] 6ECB8335D7BDE23A66A49235DEEA9BF5
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_paint_gif.gif --a--c- 420 bytes [18:45 30/01/2010] [18:45 30/01/2010] 42EBAF2F8410D0967D65522B561FED25
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_powerpoint_gif.gif --a--c- 127 bytes [18:45 30/01/2010] [18:45 30/01/2010] 268465ED967348C69F50412768DE13C6
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_RegistryEditor_gif.gif --a--c- 142 bytes [18:45 30/01/2010] [18:45 30/01/2010] D8F68ED8F0AF6D52089C29343EB66A6C
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_winword_gif.gif --a--c- 125 bytes [18:45 30/01/2010] [18:45 30/01/2010] CD58F4779A272B7C41D0830BA80B772C
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_WMPlayer_gif.gif --a--c- 433 bytes [18:45 30/01/2010] [18:45 30/01/2010] 0E1907FEDB863CE6BB19A4580DC6B418
C:\Documents and Settings\Julie Goodwin\Start Menu\Programs\Accessories\Command Prompt.lnk --a---- 1555 bytes [22:10 11/08/2006] [06:00 01/10/2008] D4B86F86B9C4C59558CD07FF2B3558F2
C:\Documents and Settings\Madison\Start Menu\Programs\Accessories\Command Prompt.lnk --a---- 1459 bytes [16:08 12/08/2006] [18:04 10/08/2004] 203FE80767BC2BCC385C65D479491FD9
C:\Documents and Settings\PJG\Start Menu\Programs\Accessories\Command Prompt.lnk --a---- 1459 bytes [19:15 13/09/2011] [18:04 10/08/2004] 203FE80767BC2BCC385C65D479491FD9
C:\Documents and Settings\Sean\My Documents\Media Go\AutoBackup\PSP\Licenses\UP0005-NPUH90008_00-RTYPECOMMANDDEMO.rif --a---- 152 bytes [22:03 20/07/2010] [15:55 02/07/2010] 8EF0F11B4BD46D51FFB5E3733C7954B3
C:\Documents and Settings\Sean\Start Menu\Programs\Accessories\Command Prompt.lnk --a---- 1555 bytes [16:09 12/08/2006] [17:53 25/02/2009] CDEE64853468D82A670D184EA2BC05F4
C:\i386\Command Prompt.lnk --a--c- 1459 bytes [14:58 12/08/2006] [18:04 10/08/2004] 203FE80767BC2BCC385C65D479491FD9
C:\i386\command.com --a--c- 50620 bytes [14:58 12/08/2006] [10:00 04/08/2004] BE67D29CA914DE072D9971E3FFFC4050
C:\i386\Windows XP Menu Command.wav --a--c- 1404 bytes [15:08 12/08/2006] [10:00 04/08/2004] 53A172DDBD16AA7ACCEAD0F5B263B70F
C:\Program Files\Canon\CameraWindow\CameraWindowDVC6\CamerawindowCommand.dll --a--c- 86016 bytes [18:50 07/09/2005] [18:50 07/09/2005] 3B5B40658046B7348709B05DDA971BE4
C:\Program Files\Canon\CameraWindow\CameraWindowMC\CamerawindowCommandMC.dll --a--c- 90112 bytes [00:45 21/10/2005] [00:45 21/10/2005] E0F976CA3ECAF89D13ED94E714ED5F75
C:\Program Files\Canon\CameraWindow\CameraWindowMC\MyCamSettingsCommand.dll --a--c- 77824 bytes [18:50 07/09/2005] [18:50 07/09/2005] D62F32E1DDA3F25865DF17025D5F8733
C:\Program Files\Canon\RAW Image Task\RAWImageCommand.dll --a--c- 32768 bytes [19:27 06/10/2005] [19:27 06/10/2005] 0D33A5F9C32B82A830BC39CC6BEC0D7D
C:\Program Files\Canon\ZoomBrowser EX\Program\ZbCommands.dll --a--c- 466944 bytes [13:59 16/11/2005] [13:59 16/11/2005] 556CBEDC866184777D48E7EA0EA5CEA2
C:\Program Files\Canon\ZoomBrowser EX\Program\ZbCommands2.dll --a--c- 200817 bytes [14:02 16/11/2005] [14:02 16/11/2005] 29488A58E962CF321CAD08DE812549F2
C:\Program Files\Canon\ZoomBrowser EX\Program\ZBUI_Commands.dll --a--c- 905314 bytes [13:54 16/11/2005] [13:54 16/11/2005] 7EE14B27928AC1F7673AECACB173DB99
C:\Program Files\Common Files\Microsoft Shared\MSEnv\PublicAssemblies\Microsoft.VisualStudio.CommandBars.dll --a--c- 69632 bytes [16:06 30/07/2008] [16:06 30/07/2008] 5F8AA17A2AA78CF039EF35193BE80D56
C:\Program Files\Daniusoft\Media Converter Ultimate\CommandQTPlayer.exe --a--c- 221696 bytes [02:00 30/12/2009] [20:06 22/12/2009] 75A42605BBDA22D7329241284C22E309
C:\Program Files\GIMP 2\share\gimp\2.0\help\en\gimp-layer-text-commands.html --a---- 6630 bytes [18:25 07/04/2011] [11:05 01/10/2009] F5FA8D39A20EF2274C58E00A119799AD
C:\Program Files\GIMP 2\share\gimp\2.0\help\en\images\menus\layer-text-commands.png --a---- 7439 bytes [18:26 07/04/2011] [00:28 14/10/2009] 6B1D6785DA1AF12A872754F597FA3932
C:\Program Files\Microsoft SQL Server\100\DTS\PipelineComponents\CommandDest.dll --a--c- 167960 bytes [00:28 11/07/2008] [00:28 11/07/2008] 9B125AE29FDDF115F34347018D43511D
C:\Program Files\Microsoft Visual Studio 9.0\VB\Snippets\1033\WPF\RoutedCommand.snippet --a--c- 1687 bytes [18:04 25/07/2007] [18:04 25/07/2007] 1E2B033A1124B7172ED895DFF788A261
C:\Program Files\Microsoft Visual Studio 9.0\VB\Snippets\1033\WPF\RoutedCommandHandlers.snippet --a--c- 2289 bytes [18:04 25/07/2007] [18:04 25/07/2007] 73C196C95AC7C1A80A0F333DC87BB57C
C:\Program Files\SoundSpectrum\WhiteCap\Resources\PythonLibraries\distutils\command\command_template --a--c- 719 bytes [01:02 05/04/2009] [01:02 05/04/2009] EA570E708A8B80CF49DEF0277E4D9956
C:\Program Files\TeenCoder_ComputerProgramming\Student\TeenCoder\ComputerProgramming\Chapter Sample Programs\chapter07\CommandLine\chapter07_CommandLine.c --a--c- 1701 bytes [06:43 11/12/2008] [18:58 01/02/2010] 2CAB46380CE9B1D3E0D9F596D2990956
C:\Program Files\TeenCoder_ComputerProgramming\Student\TeenCoder\ComputerProgramming\Chapter Sample Programs\chapter07\CommandLine\chapter07_CommandLine.vcproj --a--c- 4213 bytes [03:04 02/07/2008] [18:58 01/02/2010] 5FBB9EC293D3008E760BA6CA42557546
C:\Program Files\TeenCoder_ComputerProgramming\Teacher\TeenCoder\ComputerProgramming\Chapter Sample Programs\chapter07\CommandLine\chapter07_CommandLine.c --a--c- 1701 bytes [06:43 11/12/2008] [18:59 01/02/2010] 2CAB46380CE9B1D3E0D9F596D2990956
C:\Program Files\TeenCoder_ComputerProgramming\Teacher\TeenCoder\ComputerProgramming\Chapter Sample Programs\chapter07\CommandLine\chapter07_CommandLine.vcproj --a--c- 4213 bytes [03:04 02/07/2008] [18:59 01/02/2010] 5FBB9EC293D3008E760BA6CA42557546
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_1.txt --a--c- 18630 bytes [20:24 10/02/2003] [20:24 10/02/2003] 2EF8024FEF5B4B26B36DFC51B6AA0EF8
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_a.txt --a--c- 15935 bytes [20:24 10/02/2003] [20:24 10/02/2003] 287360560A1C3DA4CB93C45FA72F9B75
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_b.txt --a--c- 7546 bytes [20:24 10/02/2003] [20:24 10/02/2003] 9BB6E13FA4C89B2D9ADAA89BF176BF77
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_c.txt --a--c- 37118 bytes [20:24 10/02/2003] [20:24 10/02/2003] 6A822A23E34DBC9FC15492C4445F0360
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_d.txt --a--c- 115022 bytes [20:24 10/02/2003] [20:24 10/02/2003] 02B71835A4CAF5A6F93DFCE1A90A1004
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_e.txt --a--c- 8957 bytes [20:24 10/02/2003] [20:24 10/02/2003] 759220CBDB0A46EA47F61C375346B6D1
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_f.txt --a--c- 36800 bytes [20:24 10/02/2003] [20:24 10/02/2003] 5B16CD00CE3645AF0ED2C38DE55DE953
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_g.txt --a--c- 9019 bytes [20:24 10/02/2003] [20:24 10/02/2003] 8C9FAFA4152BB28532177730039B871A
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_i.txt --a--c- 9317 bytes [20:24 10/02/2003] [20:24 10/02/2003] FAB91B23AB3536E92A3A1149F8879119
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_l.txt --a--c- 3708 bytes [20:24 10/02/2003] [20:24 10/02/2003] F575173FB81F03E5782F93D14C0926CF
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_m.txt --a--c- 29795 bytes [20:24 10/02/2003] [20:24 10/02/2003] 2D6BDB37919B10FB788034572CB4EA99
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_n.txt --a--c- 18380 bytes [20:24 10/02/2003] [20:24 10/02/2003] 7001A4E55B799BE24868B1BD46EC2AD6
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_o.txt --a--c- 23564 bytes [20:24 10/02/2003] [20:24 10/02/2003] 93102D3BC70AE0173CFE94534ED48C43
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_p-q.txt --a--c- 10253 bytes [20:24 10/02/2003] [20:24 10/02/2003] 0A4F432117FC6E03F7487AD84E9028BE
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_r.txt --a--c- 50552 bytes [20:24 10/02/2003] [20:24 10/02/2003] D96C7B28C8E32A50704F6A4F35A3AF20
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_s.txt --a--c- 30068 bytes [20:24 10/02/2003] [20:24 10/02/2003] F4B1C7D073D6C69339382434BD9A2B75
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_t.txt --a--c- 7940 bytes [20:24 10/02/2003] [20:24 10/02/2003] 5803BDAC1FF9FA620FBDDB344497B175
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Macros\PSCommands_u-z.txt --a--c- 11285 bytes [20:24 10/02/2003] [20:24 10/02/2003] F4CF95D8B9AE61C96D703CA4C4140A54
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_a.txt --a--c- 14985 bytes [20:24 10/02/2003] [20:24 10/02/2003] F8D8225C3BBE35AC4B773F4A5FCB7758
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_b.txt --a--c- 22029 bytes [20:24 10/02/2003] [20:24 10/02/2003] 60EC95FB12DCE5CC50EA61BFB3B5DC6F
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_c.txt --a--c- 27803 bytes [20:24 10/02/2003] [20:24 10/02/2003] 1833933A4D11F8512AEC07387CC7DD4A
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_d.txt --a--c- 23345 bytes [20:24 10/02/2003] [20:24 10/02/2003] 7B2068FDEFECBE539EC5973FF63B23C0
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_e.txt --a--c- 21877 bytes [20:24 10/02/2003] [20:24 10/02/2003] 95A6326CDBD352DB8A78DF184C04C333
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_f.txt --a--c- 10285 bytes [20:24 10/02/2003] [20:24 10/02/2003] F81410BA85A3AFD387DC7FEDB97A3D27
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_g.txt --a--c- 2156 bytes [20:24 10/02/2003] [20:24 10/02/2003] 31235ACBED1E321F753CAA0CCF781DD0
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_h.txt --a--c- 1078 bytes [20:24 10/02/2003] [20:24 10/02/2003] 08236FA0BD157BA9879642D994FC5A4B
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_i.txt --a--c- 1959 bytes [20:24 10/02/2003] [20:24 10/02/2003] AA9269C8B23334B487CB7168EBE19E6B
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_j.txt --a--c- 351 bytes [20:24 10/02/2003] [20:24 10/02/2003] 4A8EBF59B0186413825ED9B4BDCD719A
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_k.txt --a--c- 1227 bytes [20:24 10/02/2003] [20:24 10/02/2003] B5DA1D3CF01F4574B4D153F59C64D371
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_l.txt --a--c- 4246 bytes [20:24 10/02/2003] [20:24 10/02/2003] 4DCEED7FB7B298E98A88FDA979E6B4C1
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_m.txt --a--c- 7628 bytes [20:24 10/02/2003] [20:24 10/02/2003] 8247825F62EC22082693F58C8DA0F2F4
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_n.txt --a--c- 1017 bytes [20:24 10/02/2003] [20:24 10/02/2003] 9DB595E96420C923A655158C96F57323
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_o.txt --a--c- 15237 bytes [20:24 10/02/2003] [20:24 10/02/2003] EBE03CD2D72C2BE96ABEE973E6910504
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_p.txt --a--c- 20863 bytes [20:24 10/02/2003] [20:24 10/02/2003] CA1F0FCE96960874584029A02DFE0476
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_q.txt --a--c- 2487 bytes [20:24 10/02/2003] [20:24 10/02/2003] 3B38778D1B4CB2BC027E354AA10BD5BF
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_r.txt --a--c- 4822 bytes [20:24 10/02/2003] [20:24 10/02/2003] DB35566E3C83E8F097EC806C2FC0DB5E
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_s-set.txt --a--c- 79462 bytes [20:24 10/02/2003] [20:24 10/02/2003] 8A5EA280C32A6536115E588587049E47
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_sf-sz.txt --a--c- 20641 bytes [20:24 10/02/2003] [20:24 10/02/2003] E9B8AA78C72EE5A56CA4657D2EDE2177
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_t.txt --a--c- 7193 bytes [20:24 10/02/2003] [20:24 10/02/2003] F0157F6862829C48D87116195DA8B17A
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_u-v.txt --a--c- 1684 bytes [20:24 10/02/2003] [20:24 10/02/2003] 7B48B5B1CFBB7D881AAD15AB3F773831
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\Presentations\Macros\PRcommands_w-z.txt --a--c- 3167 bytes [20:24 10/02/2003] [20:24 10/02/2003] 151A4FD1F0976068EACCA766EE6D54B9
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_a.txt --a--c- 827 bytes [20:50 10/02/2003] [20:50 10/02/2003] FC45CBBA6C4EAF6078A77F88B6E10B78
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_b.txt --a--c- 20883 bytes [20:50 10/02/2003] [20:50 10/02/2003] 89C47439FCCD45DF5447925E84633E18
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_c.txt --a--c- 7829 bytes [20:50 10/02/2003] [20:50 10/02/2003] FA52F472582AF8CB4A9873DC49E63E7D
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_d.txt --a--c- 6437 bytes [20:50 10/02/2003] [20:50 10/02/2003] 51BE9B48158DCD9789A405BD2B6782C6
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_e.txt --a--c- 501 bytes [20:50 10/02/2003] [20:50 10/02/2003] D12DB7F2F0DBE6302C3007B0F7881CE2
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_f.txt --a--c- 7209 bytes [20:50 10/02/2003] [20:50 10/02/2003] 18DCBF816C6283C1C399E961817FFDDC
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_g.txt --a--c- 3922 bytes [20:50 10/02/2003] [20:50 10/02/2003] E9D8129CF1049318536DB4C41015B0F3
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_h.txt --a--c- 1446 bytes [20:50 10/02/2003] [20:50 10/02/2003] CF8F734A1E33C827523AD2CA0B37CC0D
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_i.txt --a--c- 2578 bytes [20:50 10/02/2003] [20:50 10/02/2003] 3E02555F64D26E180F90E562E78CBC06
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_j-k.txt --a--c- 428 bytes [20:50 10/02/2003] [20:50 10/02/2003] CF247F3C58A1F97ADCC7C624E699B85D
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_l.txt --a--c- 3856 bytes [20:50 10/02/2003] [20:50 10/02/2003] 2A00EAC593FAB9E4DCAC31809E9A8B60
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_m.txt --a--c- 723 bytes [20:50 10/02/2003] [20:50 10/02/2003] 865911FB56E5AB101CB17CFE0128D4A2
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_n-o.txt --a--c- 750 bytes [20:50 10/02/2003] [20:50 10/02/2003] 3C3A6CE9CBE2EDA60D1EF854A183295B
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_p.txt --a--c- 5531 bytes [20:50 10/02/2003] [20:50 10/02/2003] 040CE0B75EE32DEFA7F63A1862D12C36
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_q-r.txt --a--c- 1541 bytes [20:50 10/02/2003] [20:50 10/02/2003] 74B9C18BAC097C6869CA74574E62CD4E
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_s.txt --a--c- 5371 bytes [20:50 10/02/2003] [20:50 10/02/2003] 89E25FAEB537186AF70B5755DD06A461
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_t.txt --a--c- 5886 bytes [20:50 10/02/2003] [20:50 10/02/2003] 6F7D6DF3AC118FD5ABDCB6835B725144
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_u-v.txt --a--c- 3285 bytes [20:50 10/02/2003] [20:50 10/02/2003] DE17871ABDF47D675699233E8BA014A0
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_1_w-z.txt --a--c- 2488 bytes [20:50 10/02/2003] [20:50 10/02/2003] 088AC64139D27FD77FB5B5662AD942F7
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_a.txt --a--c- 15800 bytes [20:50 10/02/2003] [20:50 10/02/2003] 00C97072FD7EAFC6A68E66D4FAB9E089
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_b.txt --a--c- 51509 bytes [20:50 10/02/2003] [20:50 10/02/2003] C2F34B9C7229763FF70092B4FCA65AD8
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_c.txt --a--c- 18249 bytes [20:50 10/02/2003] [20:50 10/02/2003] C30923DD6C94A6E2F5CA3261F8B89E68
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_d.txt --a--c- 25830 bytes [20:50 10/02/2003] [20:50 10/02/2003] FF3C1E16A06A53A66A6C8EF6730E3DE9
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_e.txt --a--c- 7810 bytes [20:50 10/02/2003] [20:50 10/02/2003] 5FE1320BDB6AED778630D45449AC4698
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_f.txt --a--c- 30094 bytes [20:50 10/02/2003] [20:50 10/02/2003] 42D3DEE501BC349EF2247777B280EC54
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_g.txt --a--c- 11789 bytes [20:50 10/02/2003] [20:50 10/02/2003] C8630CD03D065AA7D2BDD2DFAF668C21
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_h.txt --a--c- 9957 bytes [20:50 10/02/2003] [20:50 10/02/2003] 84AF7ECABC6FFEEDCB577477E1E587ED
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_i.txt --a--c- 14827 bytes [20:50 10/02/2003] [20:50 10/02/2003] B8D55489927423F553C2AB00CA90C048
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_j-k.txt --a--c- 2123 bytes [20:50 10/02/2003] [20:50 10/02/2003] EAD84D1CF378DE4FC0FD2E569BA66D8C
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_l.txt --a--c- 24333 bytes [20:50 10/02/2003] [20:50 10/02/2003] 48EA1B9B15F910B3D62CF70DA2F5E0C5
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_m.txt --a--c- 26153 bytes [20:50 10/02/2003] [20:50 10/02/2003] 1E5B2AB2DE486B5BDC706E9CCA1C12ED
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_n.txt --a--c- 397 bytes [20:50 10/02/2003] [20:50 10/02/2003] 5882BFE50083A9B7691E4B0128AE4CBF
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_o.txt --a--c- 28006 bytes [20:50 10/02/2003] [20:50 10/02/2003] 6551ACA0254E9074E1BB0FCFB7231431
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_p-pref.txt --a--c- 48471 bytes [20:50 10/02/2003] [20:50 10/02/2003] 3B69BB46CC6B96889C0112F0D89849EF
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_pr-pz.txt --a--c- 16993 bytes [20:50 10/02/2003] [20:50 10/02/2003] 554F46BCB3820723664EB2075C0586D8
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_q.txt --a--c- 6203 bytes [20:50 10/02/2003] [20:50 10/02/2003] 4421985F81F6E89A53C55543F58573E3
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_r.txt --a--c- 11759 bytes [20:50 10/02/2003] [20:50 10/02/2003] B2620062958726A9FBC733950B031A40
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_s-sel.txt --a--c- 13822 bytes [20:50 10/02/2003] [20:50 10/02/2003] 5F34F3529DB19D8FA18AF6BA2AF711B0
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_set-sg.txt --a--c- 33963 bytes [20:50 10/02/2003] [20:50 10/02/2003] C2240A24111A70C59793D682703F7536
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_sh-sz.txt --a--c- 30063 bytes [20:50 10/02/2003] [20:50 10/02/2003] 578EE1EB717159434ECCE2553CEA2BF9
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_t-tab.txt --a--c- 48394 bytes [20:50 10/02/2003] [20:50 10/02/2003] 17C556C4E7B13C498E5EDAF5005F7F4E
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_tb-tz.txt --a--c- 24596 bytes [20:50 10/02/2003] [20:50 10/02/2003] 9997BA436E8C9A724694EE1C07041CC3
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_u-v.txt --a--c- 3906 bytes [20:50 10/02/2003] [20:50 10/02/2003] 4B157CBCD541348FF0288CBD62244712
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_w.txt --a--c- 17035 bytes [20:50 10/02/2003] [20:50 10/02/2003] CFD640F30B8FEA4BD36D5D78A8E00F4A
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\WordPerfect\Macros\WPcommands_x-z.txt --a--c- 678 bytes [20:50 10/02/2003] [20:50 10/02/2003] F1B02EA7456B84F9BA794200D931CA54
C:\WINDOWS\assembly\GAC\Microsoft.VisualStudio.CommandBars\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.CommandBars.dll --a--c- 69632 bytes [19:23 01/02/2010] [19:23 01/02/2010] 5F8AA17A2AA78CF039EF35193BE80D56
C:\WINDOWS\Media\Windows XP Menu Command.wav --a--c- 1404 bytes [17:51 10/08/2004] [10:00 04/08/2004] 53A172DDBD16AA7ACCEAD0F5B263B70F
C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ConsumerCommands.xml --a--c- 666 bytes [16:00 02/07/2001] [16:00 02/07/2001] 328DACC2C53BDA708F40C56F646022B4
C:\WINDOWS\speech\Xcommand.dll --a--c- 128000 bytes [20:19 12/01/1999] [20:19 12/01/1999] 198C46362E9E7742F7EFAFD936624BED
C:\WINDOWS\system32\command.com ------- 50620 bytes [17:50 10/08/2004] [10:00 04/08/2004] BE67D29CA914DE072D9971E3FFFC4050
C:\WINDOWS\system32\config\systemprofile\Start Menu\Programs\Accessories\Command Prompt.lnk --a--c- 1459 bytes [18:07 10/08/2004] [18:04 10/08/2004] 203FE80767BC2BCC385C65D479491FD9

========== folderfind ==========

Searching for "*command*"
C:\Program Files\Setup NetZero\fscommand d------ [16:04 22/08/2006]
C:\Program Files\SoundSpectrum\WhiteCap\Resources\PythonLibraries\distutils\command d------ [21:32 08/04/2010]
C:\Program Files\TeenCoder_ComputerProgramming\Student\TeenCoder\ComputerProgramming\Chapter Sample Programs\chapter07\CommandLine d------ [18:58 01/02/2010]
C:\Program Files\TeenCoder_ComputerProgramming\Teacher\TeenCoder\ComputerProgramming\Chapter Sample Programs\chapter07\CommandLine d------ [18:59 01/02/2010]
C:\Program Files\WordPerfect Office 12\Shared\Help\Accessibility\PerfectScript\Command center d------ [13:07 09/08/2006]
C:\WINDOWS\assembly\GAC\Microsoft.VisualStudio.CommandBars d------ [19:26 01/02/2010]

========== regfind ==========

Searching for "*command*"
No data found.

========== reg ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}]
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="5.2.9"
"HelpLink"="http://www.authentium.com/support/documentation.html"
"HelpTelephone"=""
"InstallDate"="20110926"
"InstallLocation"="C:\Program Files\Common Files\Authentium\AntiVirus5\"
"InstallSource"="C:\DOCUME~1\JULIEG~1\LOCALS~1\Temp\cd11.tmp\2009 codebase\installers\cdinstaller16\bin\runtime\build_script\TEMPONLYSOURCE\AUTH\x86\"
"ModifyPath"="MsiExec.exe /X{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}"
"NoModify"= 0x0000000001 (1)
"Publisher"="Authentium, Inc"
"Readme"=""
"Size"=""
"EstimatedSize"= 0x0000001b61 (7009)
"SystemComponent"= 0x0000000001 (1)
"UninstallString"="MsiExec.exe /X{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}"
"URLInfoAbout"="www.authentium.com"
"URLUpdateInfo"="www.authentium.com"
"VersionMajor"= 0x0000000005 (5)
"VersionMinor"= 0x0000000002 (2)
"WindowsInstaller"= 0x0000000001 (1)
"Version"= 0x0005020009 (84017161)
"Language"= 0x0000000409 (1033)
"DisplayName"="AVSDK5"


-= EOF =-
 
Hello gilmore :),

Thanks for hanging on there.

Repeat SystemLook
  • Double click on SystemLook.exe to run it.
  • Copy and paste the following text into the main textfield:
    Code:
    :regfind 
    *{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}]*
  • Click the Look button to start the scan. This might take a while.
  • When finished, a Notepad window will open with the results of the scan. Please post this log in your next reply.
    Note: The log can also be found at on your desktop as SystemLook.txt.

--------------------

To remove AVSDK5, lets try the simple way first.
  • Go to Start > Run.... Copy and paste the following text into the white box:
    Code:
    MsiExec.exe /X {30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4} /qn /l* "%userprofile%\desktop\uninstall.log"
  • Click OK.
  • Follow the prompts. A log will be created on the desktop when done, named uninstall.log.
  • Please post the contents of this log.

--------------------

Please post back:
1. SystemLook log
2. uninstall log
 
SystemLook 30.07.11 by jpshortstuff
Log created at 22:52 on 25/10/2011 by Julie Goodwin
Administrator - Elevation successful

========== regfind ==========

Searching for "*{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}]*"
No data found.

-= EOF =-











=== Logging started: 10/25/2011 22:54:15 ===
Action start 22:54:15: INSTALL.
Action start 22:54:15: WiseGetIeVersion.
Action ended 22:54:15: WiseGetIeVersion. Return value 1.
Action start 22:54:15: AppSearch.
Action ended 22:54:15: AppSearch. Return value 1.
Action start 22:54:15: FindRelatedProducts.
Action ended 22:54:15: FindRelatedProducts. Return value 0.
Action start 22:54:15: WiseUpgradeCheckEx.
Action ended 22:54:15: WiseUpgradeCheckEx. Return value 1.
Action start 22:54:15: WiseUpgradeCheck.
Action ended 22:54:15: WiseUpgradeCheck. Return value 1.
Action start 22:54:15: LaunchConditions.
Action ended 22:54:15: LaunchConditions. Return value 1.
Action start 22:54:15: WiseSetProfilesFolder.
Action ended 22:54:15: WiseSetProfilesFolder. Return value 1.
Action start 22:54:15: ValidateProductID.
Action ended 22:54:15: ValidateProductID. Return value 1.
Action start 22:54:15: CostInitialize.
Action ended 22:54:16: CostInitialize. Return value 1.
Action start 22:54:16: FileCost.
Action ended 22:54:16: FileCost. Return value 1.
Action start 22:54:16: IsolateComponents.
Action ended 22:54:16: IsolateComponents. Return value 1.
Action start 22:54:16: CostFinalize.
Action ended 22:54:16: CostFinalize. Return value 1.
Action start 22:54:16: SetODBCFolders.
Action ended 22:54:16: SetODBCFolders. Return value 1.
Action start 22:54:16: MigrateFeatureStates.
Action ended 22:54:16: MigrateFeatureStates. Return value 0.
Action start 22:54:16: SetARPINSTALLLOCATION.
Action ended 22:54:16: SetARPINSTALLLOCATION. Return value 1.
Action start 22:54:16: InstallValidate.
Info 1603. The file C:\Program Files\Common Files\Authentium\AntiVirus5\vseapi.dll is being held in use by the following process: Name: vseqrts, Id: 2236, Window Title: '(not determined yet)'. Close that application and retry.
Info 1603. The file C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe is being held in use by the following process: Name: vsedsps, Id: 2156, Window Title: '(not determined yet)'. Close that application and retry.
Info 1603. The file C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe is being held in use by the following process: Name: vseamps, Id: 2196, Window Title: '(not determined yet)'. Close that application and retry.
Info 1603. The file C:\Program Files\Common Files\Authentium\AntiVirus5\vseampc.dll is being held in use by the following process: Name: vseqrts, Id: 2236, Window Title: '(not determined yet)'. Close that application and retry.
Info 1603. The file C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe is being held in use by the following process: Name: vseqrts, Id: 2236, Window Title: '(not determined yet)'. Close that application and retry.
Info 1603. The file C:\Program Files\Common Files\Authentium\AntiVirus5\AmpVseApi.dll is being held in use by the following process: Name: vseamps, Id: 2196, Window Title: '(not determined yet)'. Close that application and retry.
Action ended 22:54:26: InstallValidate. Return value 1.
Action start 22:54:26: CheckExistingProducts.
DEBUG: Error 2769: Custom Action CheckExistingProducts did not close 1 MSIHANDLEs.
Internal Error 2769. CheckExistingProducts, 1
Action ended 22:54:26: CheckExistingProducts. Return value 1.
Action start 22:54:26: RemoveExistingProducts.
Action ended 22:54:26: RemoveExistingProducts. Return value 0.
Action start 22:54:26: InstallInitialize.
Action ended 22:54:27: InstallInitialize. Return value 1.
Action start 22:54:27: Legacy_ProcessUninstallAmpDriver.C0BB2772_51B4_402D_8BA8_71283A6DEDF3.
Action ended 22:54:27: Legacy_ProcessUninstallAmpDriver.C0BB2772_51B4_402D_8BA8_71283A6DEDF3. Return value 1.
Action start 22:54:27: Legacy_ProcessInstallAmpDriver.C0BB2772_51B4_402D_8BA8_71283A6DEDF3.
Action ended 22:54:27: Legacy_ProcessInstallAmpDriver.C0BB2772_51B4_402D_8BA8_71283A6DEDF3. Return value 1.
Action start 22:54:27: SendBeginUpdate.
Action ended 22:54:27: SendBeginUpdate. Return value 1.
Action start 22:54:27: ProcessComponents.
Action ended 22:54:27: ProcessComponents. Return value 1.
Action start 22:54:27: UnpublishComponents.
Action ended 22:54:27: UnpublishComponents. Return value 1.
Action start 22:54:27: MsiUnpublishAssemblies.
Action ended 22:54:27: MsiUnpublishAssemblies. Return value 1.
Action start 22:54:27: UnpublishFeatures.
Action ended 22:54:27: UnpublishFeatures. Return value 1.
Action start 22:54:27: StopServices.
Action ended 22:54:27: StopServices. Return value 1.
Action start 22:54:27: AV5StopAmpDriver.C0BB2772_51B4_402D_8BA8_71283A6DEDF3.
Action ended 22:54:27: AV5StopAmpDriver.C0BB2772_51B4_402D_8BA8_71283A6DEDF3. Return value 1.
Action start 22:54:27: Legacy_UninstallAmpDriver.C0BB2772_51B4_402D_8BA8_71283A6DEDF3.
Action ended 22:54:27: Legacy_UninstallAmpDriver.C0BB2772_51B4_402D_8BA8_71283A6DEDF3. Return value 1.
Action start 22:54:27: DeleteServices.
Action ended 22:54:27: DeleteServices. Return value 1.
Action start 22:54:27: UnregisterComPlus.
Action ended 22:54:27: UnregisterComPlus. Return value 1.
Action start 22:54:27: SelfUnregModules.
Action ended 22:54:27: SelfUnregModules. Return value 1.
Action start 22:54:27: UnregisterTypeLibraries.
Action ended 22:54:27: UnregisterTypeLibraries. Return value 1.
Action start 22:54:27: RemoveODBC.
Action ended 22:54:27: RemoveODBC. Return value 1.
Action start 22:54:27: UnregisterFonts.
Action ended 22:54:27: UnregisterFonts. Return value 1.
Action start 22:54:27: RemoveRegistryValues.
Action ended 22:54:27: RemoveRegistryValues. Return value 1.
Action start 22:54:27: UnregisterClassInfo.
Action ended 22:54:27: UnregisterClassInfo. Return value 1.
Action start 22:54:27: UnregisterExtensionInfo.
Action ended 22:54:27: UnregisterExtensionInfo. Return value 1.
Action start 22:54:27: UnregisterProgIdInfo.
Action ended 22:54:27: UnregisterProgIdInfo. Return value 1.
Action start 22:54:27: UnregisterMIMEInfo.
Action ended 22:54:27: UnregisterMIMEInfo. Return value 1.
Action start 22:54:27: RemoveIniValues.
Action ended 22:54:27: RemoveIniValues. Return value 1.
Action start 22:54:27: RemoveShortcuts.
Action ended 22:54:27: RemoveShortcuts. Return value 1.
Action start 22:54:27: RemoveEnvironmentStrings.
Action ended 22:54:27: RemoveEnvironmentStrings. Return value 1.
Action start 22:54:27: RemoveDuplicateFiles.
Action ended 22:54:27: RemoveDuplicateFiles. Return value 1.
Action start 22:54:27: RemoveFiles.
Action ended 22:54:27: RemoveFiles. Return value 1.
Action start 22:54:27: RemoveFolders.
Action ended 22:54:27: RemoveFolders. Return value 1.
Action start 22:54:27: CreateFolders.
Action ended 22:54:27: CreateFolders. Return value 1.
Action start 22:54:27: MoveFiles.
Action ended 22:54:27: MoveFiles. Return value 1.
Action start 22:54:27: InstallFiles.
Action ended 22:54:27: InstallFiles. Return value 1.
Action start 22:54:27: PatchFiles.
Action ended 22:54:27: PatchFiles. Return value 0.
Action start 22:54:27: DuplicateFiles.
Action ended 22:54:27: DuplicateFiles. Return value 1.
Action start 22:54:27: BindImage.
Action ended 22:54:27: BindImage. Return value 1.
Action start 22:54:27: CreateShortcuts.
Action ended 22:54:27: CreateShortcuts. Return value 1.
Action start 22:54:27: RegisterClassInfo.
Action ended 22:54:27: RegisterClassInfo. Return value 1.
Action start 22:54:27: RegisterExtensionInfo.
Action ended 22:54:27: RegisterExtensionInfo. Return value 1.
Action start 22:54:27: RegisterProgIdInfo.
Action ended 22:54:27: RegisterProgIdInfo. Return value 1.
Action start 22:54:27: RegisterMIMEInfo.
Action ended 22:54:27: RegisterMIMEInfo. Return value 1.
Action start 22:54:27: WriteRegistryValues.
Action ended 22:54:27: WriteRegistryValues. Return value 1.
Action start 22:54:27: WriteIniValues.
Action ended 22:54:27: WriteIniValues. Return value 1.
Action start 22:54:27: WriteEnvironmentStrings.
Action ended 22:54:27: WriteEnvironmentStrings. Return value 1.
Action start 22:54:27: RegisterFonts.
Action ended 22:54:27: RegisterFonts. Return value 1.
Action start 22:54:27: InstallODBC.
Action ended 22:54:27: InstallODBC. Return value 0.
Action start 22:54:27: RegisterTypeLibraries.
Action ended 22:54:27: RegisterTypeLibraries. Return value 1.
Action start 22:54:27: SelfRegModules.
Action ended 22:54:27: SelfRegModules. Return value 1.
Action start 22:54:27: RegisterComPlus.
Action ended 22:54:27: RegisterComPlus. Return value 1.
Action start 22:54:27: InstallServices.
Action ended 22:54:27: InstallServices. Return value 1.
Action start 22:54:27: StartServices.
Action ended 22:54:27: StartServices. Return value 1.
Action start 22:54:27: RegisterUser.
Action ended 22:54:27: RegisterUser. Return value 0.
Action start 22:54:27: RegisterProduct.
Action ended 22:54:27: RegisterProduct. Return value 1.
Action start 22:54:27: PublishComponents.
Action ended 22:54:27: PublishComponents. Return value 1.
Action start 22:54:27: MsiPublishAssemblies.
Action ended 22:54:27: MsiPublishAssemblies. Return value 1.
Action start 22:54:27: PublishFeatures.
Action ended 22:54:27: PublishFeatures. Return value 1.
Action start 22:54:27: PublishProduct.
Action ended 22:54:27: PublishProduct. Return value 1.
Action start 22:54:27: InstallFinalize.
Action ended 22:54:37: InstallFinalize. Return value 1.
Action start 22:54:37: LogReboot.
Action ended 22:54:37: LogReboot. Return value 1.
Action ended 22:54:37: INSTALL. Return value 1.
Property(S): Description = AVSDK5 32-bit COM
Property(S): DiskPrompt = [ProductName] [1]
Property(S): UpgradeCode = {E7A82D32-C3A5-40C6-8369-834B631B8876}
Property(S): InstallMode = Custom
Property(S): ProductCode = {30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}
Property(S): ProductName = AVSDK5
Property(S): ProductVersion = 5.2.9
Property(S): Manufacturer = Authentium, Inc
Property(S): ARPURLINFOABOUT = www.authentium.com
Property(S): ReinstallFileOlderVersion = o
Property(S): ReinstallRepair = r
Property(S): ErrorDialog = ErrorDialog
Property(S): Accept = No
Property(S): _WiseDebugMode = 0
Property(S): ProductID = none
Property(S): ARPURLUPDATEINFO = www.authentium.com
Property(S): SecureCustomProperties = INSTALLDIR;UPGRADE_AUTHENTIUM;UPGRADE_AVSDK2;UPGRADE_CSAV;IEVERSION;DEFS
Property(S): PIDTemplate = 12345<###-%%%%%%%>@@@@@
Property(S): WiseInitSpaceError = Could not create temporary file, not enough free temporary disk space. Please free up disk space and rerun this installation.
Property(S): WiseInitPrefix = Initializing
Property(S): ApplicationUsers = AllUsers
Property(S): DefaultUIFont = Arial10
Property(S): _WiseDialogSuffix = Setup
Property(S): WiseInitAdminError = You must have administrator rights to run this installation. Please login as an administrator and re-run this installation.
Property(S): WiseCRLF =

Property(S): APPS_TEST = 1
Property(S): WiseInitExistError = %s Version %s is already installed. You must uninstall the existing version before installing %s Version %s. Do you want to uninstall the existing version of %s?
Property(S): ProductLanguage = 1033
Property(S): INSTALLLEVEL = 3
Property(S): WiseInitSuffix = Wizard...
Property(S): WiseEditorVersion = 7.3.0.250
Property(S): AVDllRegLocation = SOFTWARE\Authentium\AntiVirus5
Property(S): PALMUSERS = 0
Property(S): MaintenanceMode = Modify
Property(S): WiseInitLangDefault = English,1033
Property(S): _WiseDialogFontDefault = {&MSSansSerif8}
Property(S): _WiseDialogTitleFontDefault = {&Arial8}
Property(S): ReinstallFileVersion = o
Property(S): MsiHiddenProperties = WISE_SQL_CONN_STR
Property(S): ALLUSERS = 1
Property(S): ARPNOMODIFY = 1
Property(S): ARPHELPLINK = http://www.authentium.com/support/documentation.html
Property(S): ARPSYSTEMCOMPONENT = 1
Property(S): TARGETDIR = G:\
Property(S): StartMenuFolder = C:\Documents and Settings\All Users\Start Menu\
Property(S): ProgramMenuFolder = C:\Documents and Settings\All Users\Start Menu\Programs\
Property(S): INSTALLDIR = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): INSTALLDIR32 = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): WindowsFolder = C:\WINDOWS\
Property(S): WinSxS = C:\WINDOWS\
Property(S): CommonAppDataFolder = C:\Documents and Settings\All Users\Application Data\
Property(S): ProfilesFolder = C:\Documents and Settings\
Property(S): NetHoodFolder = C:\Documents and Settings\Julie Goodwin\NetHood\
Property(S): FontsFolder = C:\WINDOWS\Fonts\
Property(S): ProgramFiles64Folder = G:\
Property(S): CommonFiles64Folder = G:\
Property(S): SystemFolder = C:\WINDOWS\system32\
Property(S): System16Folder = C:\WINDOWS\system\
Property(S): LocalAppDataFolder = C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\
Property(S): Authentium = C:\Program Files\Common Files\Authentium\
Property(S): GAC = G:\
Property(S): CommonFilesFolder = C:\Program Files\Common Files\
Property(S): CAVfolder = C:\Program Files\Common Files\Authentium\AntiVirus5\000\
Property(S): StartupFolder = C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Property(S): DesktopFolder = C:\Documents and Settings\All Users\Desktop\
Property(S): TempFolder = C:\DOCUME~1\JULIEG~1\LOCALS~1\Temp\
Property(S): WWWROOT = G:\
Property(S): ProgramFilesFolder = C:\Program Files\
Property(S): RecentFolder = C:\Documents and Settings\Julie Goodwin\Recent\
Property(S): System64Folder = C:\WINDOWS\
Property(S): PrintHoodFolder = C:\Documents and Settings\Julie Goodwin\PrintHood\
Property(S): VersionNT = 501
Property(S): USERNAME =
Property(S): COMPANYNAME =
Property(S): Installed = 2010/04/08 15:53:46
Property(S): ARPINSTALLLOCATION = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): INSTALLDIR.17E2EF38_2E1F_452C_8F93_F8EC9BCACF8E = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): INSTALLDIR.BD92E6C2_D7D5_4E89_9C2F_94260872EF88 = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): INSTALLDIR.DE58E3A5_700E_48BA_8066_D1FAB63E5CA6 = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): ampmf.C0BB2772_51B4_402D_8BA8_71283A6DEDF3 = C:\Program Files\Common Files\Authentium\AntiVirus5\ampmf\
Property(S): ampse.C0BB2772_51B4_402D_8BA8_71283A6DEDF3 = C:\Program Files\Common Files\Authentium\AntiVirus5\ampse\
Property(S): INSTALLDIR.0F47F3DF_D363_4023_A123_227C1EE64D53 = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): INSTALLDIR.C0BB2772_51B4_402D_8BA8_71283A6DEDF3 = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): ampapix.C0BB2772_51B4_402D_8BA8_71283A6DEDF3 = C:\Program Files\Common Files\Authentium\AntiVirus5\ampapix\
Property(S): SystemFolder.C0BB2772_51B4_402D_8BA8_71283A6DEDF3 = C:\WINDOWS\system32\
Property(S): DriverFolder.C0BB2772_51B4_402D_8BA8_71283A6DEDF3 = C:\WINDOWS\system32\Drivers\
Property(S): Legacy_UninstallAmpDriver.C0BB2772_51B4_402D_8BA8_71283A6DEDF3 = DriverFolder=C:\WINDOWS\system32\Drivers\
Property(S): Legacy_InstallAmpDriver.C0BB2772_51B4_402D_8BA8_71283A6DEDF3 = DriverFolder=C:\WINDOWS\system32\Drivers\;ampFolder=C:\Program Files\Common Files\Authentium\AntiVirus5\ampmf\;ampseFolder=C:\Program Files\Common Files\Authentium\AntiVirus5\ampse\
Property(S): DRIVERVERSION.C0BB2772_51B4_402D_8BA8_71283A6DEDF3 = AMPMF
Property(S): INSTALLDIR.F488618B_2D9C_4D44_819E_BB3E70FE4134 = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): INSTALLDIR.F65ED9BA_4942_4096_8143_D1CEF01CCE05 = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): INSTALLDIR.64606A93_EE39_4108_9393_8DCDDDD79F61 = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): INSTALLDIR.54984205_1427_4282_B7D6_396655017CEC = C:\Program Files\Common Files\Authentium\AntiVirus5\
Property(S): MsiLogFileLocation = C:\Documents and Settings\Julie Goodwin\desktop\uninstall.log
Property(S): PackageCode = {E72896B8-FCA1-4168-87C5-6C45A2117BA3}
Property(S): ProductState = 5
Property(S): REMOVE = ALL
Property(S): CURRENTDIRECTORY = C:\Documents and Settings\Julie Goodwin
Property(S): CLIENTUILEVEL = 3
Property(S): CLIENTPROCESSID = 3416
Property(S): PRODUCTLANGUAGE = 1033
Property(S): VersionDatabase = 200
Property(S): VersionMsi = 4.05
Property(S): WindowsBuild = 2600
Property(S): ServicePackLevel = 3
Property(S): ServicePackLevelMinor = 0
Property(S): MsiNTProductType = 1
Property(S): MsiNTSuitePersonal = 1
Property(S): WindowsVolume = C:\
Property(S): RemoteAdminTS = 1
Property(S): AppDataFolder = C:\Documents and Settings\Julie Goodwin\Application Data\
Property(S): FavoritesFolder = C:\Documents and Settings\Julie Goodwin\Favorites\
Property(S): PersonalFolder = C:\Documents and Settings\Julie Goodwin\My Documents\
Property(S): SendToFolder = C:\Documents and Settings\Julie Goodwin\SendTo\
Property(S): TemplateFolder = C:\Documents and Settings\All Users\Templates\
Property(S): MyPicturesFolder = C:\Documents and Settings\Julie Goodwin\My Documents\My Pictures\
Property(S): AdminToolsFolder = C:\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools\
Property(S): GPTSupport = 1
Property(S): OLEAdvtSupport = 1
Property(S): ShellAdvtSupport = 1
Property(S): Intel = 15
Property(S): PhysicalMemory = 1014
Property(S): VirtualMemory = 1952
Property(S): AdminUser = 1
Property(S): LogonUser = Julie Goodwin
Property(S): UserSID = S-1-5-21-445805364-3330646574-2944345798-1006
Property(S): UserLanguageID = 1033
Property(S): ComputerName = HOMESCHOOL
Property(S): SystemLanguageID = 1033
Property(S): ScreenX = 1024
Property(S): ScreenY = 768
Property(S): CaptionHeight = 26
Property(S): BorderTop = 1
Property(S): BorderSide = 1
Property(S): TextHeight = 16
Property(S): TextInternalLeading = 3
Property(S): ColorBits = 32
Property(S): TTCSupport = 1
Property(S): Time = 22:54:37
Property(S): Date = 10/25/2011
Property(S): MsiNetAssemblySupport = 2.0.50727.3053
Property(S): MsiWin32AssemblySupport = 5.1.2600.5512
Property(S): RedirectedDllSupport = 2
Property(S): Privileged = 1
Property(S): DATABASE = C:\WINDOWS\Installer\250263.msi
Property(S): OriginalDatabase = C:\WINDOWS\Installer\250263.msi
Property(S): UILevel = 2
Property(S): Preselected = 1
Property(S): ACTION = INSTALL
Property(S): IEVERSION = 700
Property(S): IEVERSIONEX = 7.0.5730.11
Property(S): ROOTDRIVE = G:\
Property(S): CostingComplete = 1
Property(S): OutOfDiskSpace = 0
Property(S): OutOfNoRbDiskSpace = 0
Property(S): PrimaryVolumeSpaceAvailable = 0
Property(S): PrimaryVolumeSpaceRequired = 0
Property(S): PrimaryVolumeSpaceRemaining = 0
MSI (s) (48:3C) [22:54:37:421]: Product: AVSDK5 -- Removal completed successfully.

MSI (s) (48:3C) [22:54:37:421]: Windows Installer removed the product. Product Name: AVSDK5. Product Version: 5.2.9. Product Language: 1033. Removal success or error status: 0.

=== Logging stopped: 10/25/2011 22:54:37 ===
 
Hello gilmore :),

It appears AVSDK5 got removed, although there seems to be some hiccups along the way. Could you confirm it is uninstalled?

Please run DDS again and post both logs.
 
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 7.0.5730.11 BrowserJavaVersion: 1.6.0_27
Run by Julie Goodwin at 17:17:09 on 2011-10-29
.
============== Running Processes ===============
.
.
============== Pseudo HJT Report ===============
.
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uSearch Bar = hxxp://www.google.com/ie
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: DriveLetterAccess: {5ca3d70e-1895-11cf-8e15-001234567890} - c:\windows\system32\dla\DLASHX_W.DLL
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.7.6406.1642\swg.dll
BHO: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:\program files\vuze_remote\tbVuze.dll
BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:\program files\vuze_remote\tbVuze.dll
TB: @c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRunOnce: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKCU-RunOnce
mRun: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKLM-Run
mRun: [EvtMgr6] c:\program files\logitech\setpointp\SetPoint.exe /launchGaming
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "D:\iTunesHelper.exe"
mRun: [Microsoft Default Manager] "c:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
mRun: [MMTray] "c:\program files\musicmatch\musicmatch jukebox\mm_tray.exe"
mRun: [PCLEUSBTip] c:\program files\pinnacle\shared files\programs\usbtip\USBTip.exe
mRun: [USBToolTip] "c:\program files\pinnacle\shared files\\programs\usbtip\USBTip.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [<NO NAME>]
mRunOnce: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKLM-RunOnce
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office11\REFIEBAR.DLL
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
LSP: c:\windows\system32\STProxy.dll
DPF: {549F957E-2F89-11D6-8CFE-00C04F52B225} - hxxp://coupons.smartsource.com/download/cscmv5X.cab
DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} - hxxp://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase5036.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} - hxxp://atv.disney.go.com/global/download/otoy/OTOYAX29b.cab
DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} - hxxp://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} - hxxp://rescam1.b2science.org/activex/AMC.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{3F815C68-606F-4179-9E43-F7E95177B20C} : DhcpNameServer = 192.168.1.254
Notify: igfxcui - igfxdev.dll
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\julie goodwin\application data\mozilla\firefox\profiles\07mj6jjm.default\
FF - plugin: c:\documents and settings\julie goodwin\application data\mozilla\firefox\profiles\07mj6jjm.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: c:\program files\picasa2\npPicasa2.dll
FF - plugin: c:\program files\picasa2\npPicasa3.dll
FF - plugin: c:\program files\sony\media go\npmediago.dll
FF - plugin: c:\program files\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: d:\mozilla plugins\npitunes.dll
.
============= SERVICES / DRIVERS ===============
.
R? FANTOM;LEGO MINDSTORMS NXT Driver
R? gupdate1c9b9f9fa17bde8;Google Update Service (gupdate1c9b9f9fa17bde8)
R? gupdatem;Google Update Service (gupdatem)
R? MBAMSwissArmy;MBAMSwissArmy
R? MSSQLServerADHelper100;SQL Active Directory Helper Service
R? Revoflt;Revoflt
R? RsFx0102;RsFx0102 Driver
R? SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS)
S? aswFsBlk;aswFsBlk
S? aswSnx;aswSnx
S? aswSP;aswSP
S? avast! Antivirus;avast! Antivirus
S? ComputerTimeServer;ComputerTime Server
S? LBeepKE;Logitech Beep Suppression Driver
S? STProxy;STProxy
S? WsAudio_DeviceS(1);WsAudio_DeviceS(1)
S? WsAudio_DeviceS(2);WsAudio_DeviceS(2)
S? WsAudio_DeviceS(3);WsAudio_DeviceS(3)
S? WsAudio_DeviceS(4);WsAudio_DeviceS(4)
S? WsAudio_DeviceS(5);WsAudio_DeviceS(5)
.
=============== Created Last 30 ================
.
2011-10-26 04:42:08 527208 ------w- c:\windows\system32\HPDiscoPM5412.dll
2011-10-21 03:57:19 442200 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-10-21 03:56:54 41184 ----a-w- c:\windows\avastSS.scr
2011-10-21 03:56:39 -------- d-----w- c:\program files\AVAST Software
2011-10-21 03:56:39 -------- d-----w- c:\documents and settings\all users\application data\AVAST Software
2011-10-14 01:48:22 -------- d-----w- c:\documents and settings\julie goodwin\application data\QuickScan
2011-10-12 13:49:32 -------- d-----w- c:\documents and settings\julie goodwin\local settings\application data\VS Revo Group
2011-10-12 13:49:09 27064 ----a-w- c:\windows\system32\drivers\revoflt.sys
2011-10-12 13:49:06 -------- d-----w- c:\program files\VS Revo Group
2011-10-07 03:41:32 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-10-07 03:41:32 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-10-06 11:30:00 -------- dc----w- C:\_OTM
2011-10-04 04:26:19 -------- d-----w- c:\program files\ESET
.
==================== Find3M ====================
.
2011-10-21 03:28:47 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-09-26 16:41:20 611328 ----a-w- c:\windows\system32\uiautomationcore.dll
2011-09-26 16:41:20 220160 ----a-w- c:\windows\system32\oleacc.dll
2011-09-26 16:41:14 20480 ----a-w- c:\windows\system32\oleaccrc.dll
2011-09-26 13:38:49 96200 ----a-w- c:\windows\system32\drivers\CDAVFS.sys
2011-09-09 09:12:13 599040 ----a-w- c:\windows\system32\crypt32.dll
2011-09-06 13:20:51 1858944 ------w- c:\windows\system32\win32k.sys
2011-08-17 21:32:17 832512 ----a-w- c:\windows\system32\wininet.dll
2011-08-17 21:32:16 78336 ----a-w- c:\windows\system32\ieencode.dll
2011-08-17 21:32:16 1830912 ----a-w- c:\windows\system32\inetcpl.cpl
2011-08-17 21:32:15 17408 ----a-w- c:\windows\system32\corpol.dll
2011-08-17 13:49:54 138496 ----a-w- c:\windows\system32\drivers\afd.sys
2011-08-17 12:22:23 389120 ----a-w- c:\windows\system32\html.iec
2006-08-25 23:43:48 11817800 -c----w- c:\program files\GoogleEarth.exe
2002-07-26 22:02:06 153088 -c--a-w- c:\program files\UNWISE.EXE
.
============= FINISH: 17:23:37.40 ===============
 
Hello gilmore :),

AVSDK5 has been taken care of. I guess that's it. Lets do some housekeeping before I give you some security recommendations in the next step.

You should always keep your Java updated to the latest version too.
  • To set for automatic updates of Java, Go to Start > Control Panel.
  • Double click on the Java icon to open the Java Control Panel.
  • Click on the Update tab.
  • Make sure the option Check for Updates Automatically is ticked.
  • You can also update Java manually via the Update Now button, then continue accordingly.
  • Click on OK when you are done.

--------------------

Please backup the registry with ERUNT.

Rerun OTM
  • Double click OTM.exe to run it.
  • Copy and paste the following text into the white box under Paste Instructions for Items to be Moved:
    Code:
    :files
    c:\program files\vuze_remote
    c:\windows\system32\drivers\CDAVFS.sys
    C:\Program Files\Common Files\Authentium
    C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote
    
    :reg
    [-HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{ba14329e-9550-4989-b3f2-9732e92d17cc}]
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar]
    "{EF99BD32-C1FB-11D2-892F-0090271D4F88}"=-
    "{604BC32A-9680-40D1-9AC6-E06B23A1BA4C}"=-
    "{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}"=-
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "MMTray"=-
    
    :commands
    [CREATERESTOREPOINT]
    [emptytemp]
  • Click the red MoveIt! button. Everything on the desktop may disappear, this is normal. Please wait until the tool completes its routine.
  • Copy everything in the Results window (under the green bar) and paste it in your next reply.
  • The results can also be found in C:\_OTM\MovedFiles folder, the log file being named MMDDYYYY_HHMMSS.log, where MMDDYYYY_HHMMSS represent the date and time the fix was performed.

--------------------

Please post back:
1. OTM log
 
Hi-
I did the java update. The Erunt. But, when I ran the OTM, I had problems. First, without copying and pasting the instructions, it seemed to run itself before ever giving the "move it" page. Then I got the "move it" page to work. I copied and pasted the instructions. It seemed to run fine, but then I got an error message. The log was not created.
 
Hello gilmore :),

Could you explain in more details about the error message? The OTM step is just to clear off some leftovers, so we could either continue troubleshooting or just move on to the security recommendations and close the topic. If you no longer have any problems, I suggest the latter. What do you say?
 
There were two error messages. They were small boxes - don't remember exactly what they said. The first had to do with an error in removing something. The second said that the log could not be created.
If you recommend to clean up the left overs, then lets keep troubleshooting. I had run the OTM in the past, so I think I did everything correctly, it's strange that I got those two messages.
Or, if this is normal and you don't think the error messages are a big deal - then lets continue with the security recomendations.
 
Hello gilmore :),

We go for the security recommendations.

Please delete these manually:
c:\program files\vuze_remote
c:\windows\system32\drivers\CDAVFS.sys
C:\Program Files\Common Files\Authentium
C:\Documents and Settings\Julie Goodwin\Local Settings\Application Data\Vuze_Remote

--------------------

Congratulations, you are All Clear to go. Glad to hear everything is good and running :). If you have any more problems, please let me know.

Now we need to clear out the programs we have been using to clean up your computer. They are not suitable for general malware removal and could cause damage if used inappropriately.
  • Run OTM by double clicking on OTM.exe. Click on CleanUp, proceed to reboot if prompted.
  • Delete the aswMBR, MiniToolBox, Rootkit Unhooker, GMER, TDSSKiller and SystemLook files on your desktop.
  • Delete any logs on the desktop.

Some tips to help you stay clean and safe:

1. Keep your Windows up to date. Enable Automatic Updates for Windows XP to always update the latest security patches from Microsoft, or you can download from the Microsoft website. Otherwise, your computer will be vulnerable to new exploits or malwares.

2. Purge System Restore, for this one time only. A recovery feature will only be useful if it is clean from malwares. See Windows XP System Restore Guide for some detail explanations.

3. Update your Antivirus program regularly, it is a must for constant protection against viruses. Please keep only one AV installed.

4. Install Malwarebytes' Anti-Malware if you haven't and use it occasionally. It is a new and powerful anti-malware tool, totally free but for real-time protection you will have to pay a small one-time fee.

5. Install WinPatrol, a great protection program that helps you monitor for unwanted files or applications.

6. Use a hosts file to block the access of bad sites from your computer. Get yourself a MVPS Hosts for this purpose.

7. Install Web of Trust (WOT). WOT keeps you from dangerous websites with warnings and blockings.

8. Protect your computer from removable or USB drive infections with MCShield, an effective method to prevent malware from spreading.

9. Keep all your softwares updated. Visit Secunia Software Inspector to find out if any updates required.

10. Also look up:
Computer Security - a short guide to staying safer online
PC Safety and Security - What Do I Need? By Glaswegian
How to prevent malware: By miekiemoes
So how did I get infected in the first place? By Tony Klein
Microsoft Online Safety

Stay safe.

Your donation helps in improving Spybot-S&D!
 
As your problems appear to have been resolved, this topic is now closed.

We are glad to be of help. If you are satisfied with our assistance and wish to donate to help with the costs of this volunteer site, please read :
Your donation helps in improving Spybot-S&D!
 
Last edited by a moderator:
Back
Top