Log.txt
Logfile of random's system information tool 1.06 (written by random/random)
Run by AkumaHokoru at 2009-12-19 05:47:29
Microsoft Windows XP Professional Service Pack 3
System drive F: has 205 GB (43%) free of 477 GB
Total RAM: 2046 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:47:37 AM, on 12/19/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
F:\WINDOWS\System32\smss.exe
F:\WINDOWS\system32\winlogon.exe
F:\WINDOWS\system32\services.exe
F:\WINDOWS\system32\lsass.exe
F:\WINDOWS\system32\svchost.exe
F:\WINDOWS\System32\svchost.exe
F:\WINDOWS\system32\spoolsv.exe
F:\WINDOWS\system32\rundll32.exe
F:\WINDOWS\Explorer.EXE
F:\WINDOWS\RTHDCPL.EXE
F:\WINDOWS\system32\JMRaidTool.exe
F:\Program Files\iTunes\iTunesHelper.exe
F:\Program Files\Java\jre6\bin\jusched.exe
F:\Program Files\DAEMON Tools Lite\DTLite.exe
F:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
F:\Program Files\Bonjour\mDNSResponder.exe
F:\Program Files\Java\jre6\bin\jqs.exe
F:\WINDOWS\system32\nvsvc32.exe
F:\Program Files\iPod\bin\iPodService.exe
F:\WINDOWS\System32\svchost.exe
F:\32788R22FWJFW\iexplore.exe
F:\Program Files\Eset\nod32krn.exe
F:\Program Files\mIRC\mirc.exe
F:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
F:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
F:\Program Files\BCDC++\DCPlusPlus.exe
F:\Program Files\ESET\nod32kui.exe
F:\Program Files\Unlocker\UnlockerAssistant.exe
F:\Program Files\iTunes\iTunes.exe
F:\Program Files\Windows Live\Messenger\msnmsgr.exe
F:\Program Files\Trillian\trillian.exe
F:\Program Files\Windows Live\Contacts\wlcomm.exe
F:\Program Files\AWC\AWC.exe
F:\Program Files\Mozilla Firefox\firefox.exe
F:\Documents and Settings\AkumaHokoru\My Documents\INCOMING!!!\RSIT.exe
F:\Program Files\Trend Micro\HijackThis\AkumaHokoru.exe
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - F:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - F:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - F:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "F:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] F:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] F:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [JMB36X Configure] F:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE F:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE F:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "F:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "F:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "F:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [nod32kui] "F:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [UnlockerAssistant] "F:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "F:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] F:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [MsnMsgr] "F:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "F:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - Startup: Trillian.lnk = F:\Program Files\Trillian\trillian.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - F:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - F:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - F:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - F:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - F:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Dragon Age: Origins - Content Updater (DAUpdaterSvc) - BioWare - F:\Program Files\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
O23 - Service: iPod Service - Apple Inc. - F:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - F:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: MBAMService - Malwarebytes Corporation - F:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - F:\Program Files\Eset\nod32krn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - F:\WINDOWS\system32\nvsvc32.exe
--
End of file - 5471 bytes
======Scheduled tasks folder======
F:\WINDOWS\tasks\AppleSoftwareUpdate.job
F:\WINDOWS\tasks\emscavou.job
F:\WINDOWS\tasks\Malwarebytes' Scheduled Scan for AkumaHokoru.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - F:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - F:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-11-18 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - F:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-11-18 73728]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"=F:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2006-02-28 208952]
"PHIME2002ASync"=F:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2006-02-28 455168]
"PHIME2002A"=F:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2006-02-28 455168]
"RTHDCPL"=F:\WINDOWS\RTHDCPL.EXE [2006-06-01 16208384]
"SkyTel"=F:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"Alcmtr"=F:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"JMB36X Configure"=F:\WINDOWS\system32\JMRaidTool.exe [2006-04-24 385024]
"NvCplDaemon"=F:\WINDOWS\system32\NvCpl.dll [2009-01-15 13680640]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=F:\WINDOWS\system32\NvMcTray.dll [2009-01-15 86016]
"QuickTime Task"=F:\Program Files\QuickTime\QTTask.exe [2009-09-05 417792]
"iTunesHelper"=F:\Program Files\iTunes\iTunesHelper.exe [2009-10-28 141600]
"SunJavaUpdateSched"=F:\Program Files\Java\jre6\bin\jusched.exe [2009-11-18 149280]
"nod32kui"=F:\Program Files\Eset\nod32kui.exe [2009-11-18 949376]
"UnlockerAssistant"=F:\Program Files\Unlocker\UnlockerAssistant.exe [2008-05-01 15872]
"Malwarebytes' Anti-Malware"=F:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2009-12-03 429392]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"=F:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2009-12-03 429392]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"=F:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2009-07-26 3883856]
"DAEMON Tools Lite"=F:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
F:\Documents and Settings\AkumaHokoru\Start Menu\Programs\Startup
Trillian.lnk - F:\Program Files\Trillian\trillian.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
F:\WINDOWS\system32\WgaLogon.dll [2009-03-10 239496]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled

xpsp2res.dll,-22019"
"F:\Program Files\uTorrent\uTorrent.exe"="F:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"F:\Program Files\Windows Live\Messenger\wlcsdk.exe"="F:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"F:\Program Files\Windows Live\Messenger\msnmsgr.exe"="F:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"F:\Program Files\Steam\Steam.exe"="F:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"F:\Program Files\Steam\steamapps\common\street fighter iv\SF4Launcher.exe"="F:\Program Files\Steam\steamapps\common\street fighter iv\SF4Launcher.exe:*:Enabled:Street Fighter IV"
"F:\Program Files\Bonjour\mDNSResponder.exe"="F:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"F:\Program Files\iTunes\iTunes.exe"="F:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled

xpsp3res.dll,-20000"
"F:\Program Files\Dragon Age\bin_ship\daorigins.exe"="F:\Program Files\Dragon Age\bin_ship\daorigins.exe:*:Enabled

ragon Age Origins Game"
"F:\Program Files\Dragon Age\DAOriginsLauncher.exe"="F:\Program Files\Dragon Age\DAOriginsLauncher.exe:*:Enabled

ragon Age Origins Launcher"
"F:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe"="F:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe:*:Enabled

ragon Age Origins Updater"
"F:\Program Files\Steam\steamapps\common\left 4 dead 2\left4dead2.exe"="F:\Program Files\Steam\steamapps\common\left 4 dead 2\left4dead2.exe:*:Enabled:Left 4 Dead 2"
"F:\Program Files\Skype\Phone\Skype.exe"="F:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled

xpsp2res.dll,-22019"
"F:\Program Files\Windows Live\Messenger\wlcsdk.exe"="F:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"F:\Program Files\Windows Live\Messenger\msnmsgr.exe"="F:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled

xpsp3res.dll,-20000"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f39df11a-d494-11de-be78-0019213afbc3}]
shell\AutoRun\command - I:\autorun.exe -auto
======List of files/folders created in the last 1 months======
2009-12-19 05:47:29 ----D---- F:\rsit
2009-12-18 14:39:57 ----D---- F:\Program Files\Schtserv PsoBB
2009-12-15 21:55:13 ----D---- F:\Program Files\Malwarebytes' Anti-Malware
2009-12-15 21:46:30 ----D---- F:\WINDOWS\ERDNT
2009-12-15 21:46:15 ----SD---- F:\Akuma
2009-12-15 20:07:15 ----D---- F:\Program Files\Trend Micro
2009-12-14 23:47:27 ----D---- F:\Documents and Settings\AkumaHokoru\Application Data\abgx360
2009-12-11 06:07:18 ----D---- F:\Program Files\AWC
2009-12-11 03:41:34 ----HDC---- F:\WINDOWS\$NtUninstallKB970430$
2009-12-11 03:41:25 ----HDC---- F:\WINDOWS\$NtUninstallKB974318$
2009-12-11 03:41:12 ----HDC---- F:\WINDOWS\$NtUninstallKB976325$
2009-12-11 03:41:01 ----HDC---- F:\WINDOWS\$NtUninstallKB973904$
2009-12-11 03:40:53 ----HDC---- F:\WINDOWS\$NtUninstallKB974392$
2009-12-11 03:40:38 ----HDC---- F:\WINDOWS\$NtUninstallKB971737$
2009-12-09 18:18:14 ----A---- F:\WINDOWS\system32\d3dx10_41.dll
2009-12-09 18:18:14 ----A---- F:\WINDOWS\system32\D3DCompiler_41.dll
2009-12-09 18:18:12 ----A---- F:\WINDOWS\system32\D3DX9_41.dll
2009-12-09 18:18:11 ----A---- F:\WINDOWS\system32\XAudio2_4.dll
2009-12-09 18:18:11 ----A---- F:\WINDOWS\system32\XAPOFX1_3.dll
2009-12-09 18:18:09 ----A---- F:\WINDOWS\system32\xactengine3_4.dll
2009-12-09 18:18:08 ----A---- F:\WINDOWS\system32\X3DAudio1_6.dll
2009-12-09 18:18:07 ----A---- F:\WINDOWS\system32\d3dx10_40.dll
2009-12-09 18:18:07 ----A---- F:\WINDOWS\system32\D3DCompiler_40.dll
2009-12-09 18:18:05 ----A---- F:\WINDOWS\system32\D3DX9_40.dll
2009-12-09 18:18:04 ----A---- F:\WINDOWS\system32\XAudio2_3.dll
2009-12-09 18:18:04 ----A---- F:\WINDOWS\system32\XAPOFX1_2.dll
2009-12-09 18:18:03 ----A---- F:\WINDOWS\system32\xactengine3_3.dll
2009-12-09 18:18:01 ----A---- F:\WINDOWS\system32\X3DAudio1_5.dll
2009-12-09 18:18:00 ----A---- F:\WINDOWS\system32\XAudio2_2.dll
2009-12-09 18:18:00 ----A---- F:\WINDOWS\system32\XAPOFX1_1.dll
2009-12-09 18:17:59 ----A---- F:\WINDOWS\system32\xactengine3_2.dll
2009-12-09 18:17:57 ----A---- F:\WINDOWS\system32\d3dx10_39.dll
2009-12-09 18:17:57 ----A---- F:\WINDOWS\system32\D3DCompiler_39.dll
2009-12-09 18:17:56 ----A---- F:\WINDOWS\system32\D3DX9_39.dll
2009-12-09 18:17:54 ----A---- F:\WINDOWS\system32\XAudio2_1.dll
2009-12-09 18:17:54 ----A---- F:\WINDOWS\system32\XAPOFX1_0.dll
2009-12-09 18:17:53 ----A---- F:\WINDOWS\system32\xactengine3_1.dll
2009-12-09 18:17:52 ----A---- F:\WINDOWS\system32\X3DAudio1_4.dll
2009-12-09 18:17:51 ----A---- F:\WINDOWS\system32\D3DCompiler_38.dll
2009-12-09 18:17:50 ----A---- F:\WINDOWS\system32\d3dx10_38.dll
2009-12-09 18:17:49 ----A---- F:\WINDOWS\system32\D3DX9_38.dll
2009-12-09 18:17:48 ----A---- F:\WINDOWS\system32\XAudio2_0.dll
2009-12-09 18:17:47 ----A---- F:\WINDOWS\system32\xactengine3_0.dll
2009-12-09 18:17:46 ----A---- F:\WINDOWS\system32\X3DAudio1_3.dll
2009-12-09 18:17:45 ----A---- F:\WINDOWS\system32\d3dx10_37.dll
2009-12-09 18:17:45 ----A---- F:\WINDOWS\system32\D3DCompiler_37.dll
2009-12-09 18:17:43 ----A---- F:\WINDOWS\system32\D3DX9_37.dll
2009-12-09 18:16:38 ----D---- F:\WINDOWS\Logs
2009-12-09 18:05:15 ----D---- F:\Program Files\1C Company
2009-12-09 17:27:27 ----D---- F:\Documents and Settings\All Users\Application Data\NOS
2009-12-09 10:24:25 ----D---- F:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-12-09 03:51:01 ----RASH---- F:\WINDOWS\system32\regwizx.dll
2009-11-30 03:22:52 ----D---- F:\Program Files\VirtualDub-1.9.7
2009-11-25 15:57:26 ----A---- F:\WINDOWS\War3Unin.exe
2009-11-25 15:55:53 ----D---- F:\Program Files\Warcraft III
2009-11-24 21:31:54 ----D---- F:\Program Files\GGPO
2009-11-24 21:31:34 ----D---- F:\Documents and Settings\All Users\Application Data\Adobe
2009-11-24 21:28:41 ----D---- F:\Program Files\Common Files\Adobe AIR
2009-11-24 15:45:20 ----HDC---- F:\WINDOWS\$NtUninstallKB976098-v2$
2009-11-24 15:45:05 ----HDC---- F:\WINDOWS\$NtUninstallKB973687$
2009-11-20 15:12:25 ----D---- F:\Program Files\abgx360
2009-11-20 02:41:49 ----HDC---- F:\WINDOWS\$NtUninstallKB961118$
======List of files/folders modified in the last 1 months======
2009-12-19 05:47:17 ----D---- F:\WINDOWS\Prefetch
2009-12-18 23:13:13 ----D---- F:\WINDOWS\Temp
2009-12-18 19:12:40 ----D---- F:\Program Files\Steam
2009-12-18 17:51:03 ----D---- F:\Documents and Settings\AkumaHokoru\Application Data\Skype
2009-12-18 14:59:12 ----RD---- F:\Program Files
2009-12-18 13:56:01 ----D---- F:\Documents and Settings\AkumaHokoru\Application Data\uTorrent
2009-12-18 13:25:35 ----D---- F:\Program Files\Mozilla Firefox
2009-12-18 03:54:47 ----D---- F:\Documents and Settings\AkumaHokoru\Application Data\mIRC
2009-12-16 09:48:53 ----D---- F:\Program Files\BCDC++
2009-12-16 02:02:33 ----D---- F:\WINDOWS\system32\CatRoot2
2009-12-15 21:56:12 ----SD---- F:\WINDOWS\Tasks
2009-12-15 21:55:20 ----D---- F:\Documents and Settings\AkumaHokoru\Application Data\Malwarebytes
2009-12-15 21:55:16 ----D---- F:\WINDOWS\system32\drivers
2009-12-15 21:51:42 ----D---- F:\Program Files\mIRC
2009-12-15 21:48:18 ----D---- F:\WINDOWS
2009-12-15 21:45:10 ----D---- F:\Program Files\Trillian
2009-12-15 21:33:06 ----D---- F:\Documents and Settings\AkumaHokoru\Application Data\Mozilla
2009-12-15 21:30:14 ----A---- F:\WINDOWS\SchedLgU.Txt
2009-12-14 21:27:06 ----D---- F:\Program Files\JDownloader
2009-12-11 06:12:29 ----D---- F:\WINDOWS\system32
2009-12-11 06:00:15 ----A---- F:\WINDOWS\system32\PerfStringBackup.INI
2009-12-11 03:41:40 ----HD---- F:\WINDOWS\inf
2009-12-11 03:41:38 ----RSHDC---- F:\WINDOWS\system32\dllcache
2009-12-11 03:41:31 ----A---- F:\WINDOWS\imsins.BAK
2009-12-11 03:41:00 ----HD---- F:\WINDOWS\$hf_mig$
2009-12-09 18:18:16 ----D---- F:\WINDOWS\system32\DirectX
2009-12-09 18:17:25 ----RSD---- F:\WINDOWS\assembly
2009-12-09 11:59:46 ----SHD---- F:\System Volume Information
2009-12-09 11:59:46 ----D---- F:\WINDOWS\system32\Restore
2009-12-09 11:59:06 ----D---- F:\WINDOWS\network diagnostic
2009-12-03 02:00:54 ----SD---- F:\Documents and Settings\All Users\Application Data\Microsoft
2009-12-01 15:06:19 ----A---- F:\WINDOWS\system32\MRT.exe
2009-12-01 04:21:46 ----D---- F:\Program Files\Unlocker
2009-11-24 21:31:57 ----SHD---- F:\WINDOWS\Installer
2009-11-24 21:28:41 ----D---- F:\Program Files\Common Files
2009-11-22 04:29:04 ----D---- F:\Program Files\ReNamer
2009-11-20 04:16:52 ----D---- F:\WINDOWS\Microsoft.NET
2009-11-20 02:43:22 ----D---- F:\WINDOWS\system32\CatRoot
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Intel Processor Driver; F:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 kbdhid;Keyboard HID Driver; F:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
R1 nod32drv;nod32drv; F:\WINDOWS\system32\drivers\nod32drv.sys [2009-11-18 15424]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; F:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-02-28 12032]
R2 AMON;AMON; F:\WINDOWS\system32\drivers\amon.sys [2009-11-18 512096]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; F:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; F:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Microsoft HID Class Driver; F:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); F:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-06-05 4284928]
R3 MBAMProtector;MBAMProtector; \??\F:\WINDOWS\system32\drivers\mbam.sys []
R3 mouhid;Mouse HID Driver; F:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 nv;nv; F:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-01-15 6301248]
R3 RTL8023xp;Realtek 10/100/1000 NIC Family all in one NDIS XP Driver; F:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2006-02-26 81408]
R3 USBAAPL;Apple Mobile USB Driver; F:\WINDOWS\System32\Drivers\usbaapl.sys [2009-08-28 40448]
R3 usbccgp;Microsoft USB Generic Parent Driver; F:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; F:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 Enabled Hub; F:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 USBSTOR;USB Mass Storage Driver; F:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; F:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 ab1hklil;ab1hklil; F:\WINDOWS\system32\drivers\ab1hklil.sys []
S3 Wdf01000;Kernel Mode Driver Frameworks service; F:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; F:\WINDOWS\system32\DRIVERS\xusb21.sys [2009-04-08 56448]
S4 IntelIde;IntelIde; F:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; F:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-08-28 144672]
R2 Bonjour Service;Bonjour Service; F:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 JavaQuickStarterService;Java Quick Starter; F:\Program Files\Java\jre6\bin\jqs.exe [2009-11-18 153376]
R2 MBAMService;MBAMService; F:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2009-12-03 276816]
R2 NOD32krn;NOD32 Kernel Service; F:\Program Files\Eset\nod32krn.exe [2009-11-18 552064]
R2 NVSvc;NVIDIA Display Driver Service; F:\WINDOWS\system32\nvsvc32.exe [2009-01-15 163908]
R3 iPod Service;iPod Service; F:\Program Files\iPod\bin\iPodService.exe [2009-10-28 545568]
S3 aspnet_state;ASP.NET State Service; F:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; F:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 DAUpdaterSvc;Dragon Age: Origins - Content Updater; F:\Program Files\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [2009-07-26 25832]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; F:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; F:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; F:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
info.txt
info.txt logfile of random's system information tool 1.06 2009-12-19 05:47:40
======Uninstall list======
-->MsiExec /X{1C4551A6-4743-4093-91E4-1477CD655043}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 F:\WINDOWS\INF\PCHealth.inf
abgx360 v1.0.2-->"F:\Program Files\abgx360\uninstall.exe"
Adobe AIR-->f:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Flash Player 10 Plugin-->F:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Apple Application Support-->MsiExec.exe /I{B607C354-CD79-4D22-86D1-92DC94153F42}
Apple Mobile Device Support-->MsiExec.exe /I{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Audiosurf-->"F:\Program Files\Steam\steam.exe" steam://uninstall/12900
AWC V3.0.7-->"F:\Program Files\AWC\unins000.exe"
BCDC++ 0.689ax-->"F:\Program Files\BCDC++\unins000.exe"
Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
CDisplay 1.8-->"F:\Program Files\CDisplay\unins000.exe"
Combined Community Codec Pack 2008-09-21 16:18-->"F:\Program Files\Combined Community Codec Pack\unins000.exe"
Dragon Age: Origins-->F:\Program Files\Common Files\BioWare\Uninstall Dragon Age.exe
Garry's Mod-->"F:\Program Files\Steam\steam.exe" steam://uninstall/4000
GGPO-->MsiExec.exe /X{68BD9036-0952-4849-AE7A-963BB53EDB71}
High Definition Audio Driver Package - KB888111-->"F:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
HijackThis 2.0.2-->"F:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->F:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->F:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows XP (KB952287)-->"F:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB961118)-->"F:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB970653-v3)-->"F:\WINDOWS\$NtUninstallKB970653-v3$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB976098-v2)-->"F:\WINDOWS\$NtUninstallKB976098-v2$\spuninst\spuninst.exe"
ImgBurn-->"F:\Program Files\ImgBurn\uninstall.exe"
iTunes-->MsiExec.exe /I{D1A74FBB-CA8D-4CCA-9B89-BAAA436DB178}
Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216017FF}
JDownloader-->F:\Program Files\JDownloader\uninstall.exe
JRAID-->RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x9 -removeonly
Kings Bounty Armored Princess-->"F:\Program Files\1C Company\Kings Bounty Armored Princess\unins000.exe"
Left 4 Dead 2-->"F:\Program Files\Steam\steam.exe" steam://uninstall/550
Magic Online III-->F:\Program Files\InstallShield Installation Information\{AF7733C1-FB0B-4FED-9730-E0433AF7A2EF}\setup.exe -runfromtemp -l0x0009 -removeonly
Magic Workstation 0.94f-->"F:\Program Files\Magic Workstation\unins000.exe"
Malwarebytes' Anti-Malware-->"F:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->F:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7-->"F:\WINDOWS\$NtUninstallWdf01007$\spuninst\spuninst.exe"
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
mIRC-->F:\Program Files\mIRC\uninstall.exe _?=F:\Program Files\mIRC
Mozilla Firefox (3.5.6)-->F:\Program Files\Mozilla Firefox\uninstall\helper.exe
Mp3tag v2.42-->F:\Program Files\Mp3tag\Mp3tagUninstall.EXE
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MTG GamePack for Magic Workstation-->"F:\Program Files\Magic Workstation\unins001.exe"
NOD32 Antivirus System-->F:\Program Files\Eset\Setup\setup.exe /UNINSTALL
NOD32 FiX v2.1-->"F:\Program Files\Eset\unins000.exe"
NVIDIA Drivers-->F:\WINDOWS\system32\nvuninst.exe UninstallGUI
NVIDIA PhysX-->MsiExec.exe /X{1C4551A6-4743-4093-91E4-1477CD655043}
Phantasy Star Online Blue Burst 1.0-->"F:\Program Files\Phantasy Star Online Blue Burst\unins000.exe"
QuickSFV (Remove only)-->F:\Program Files\QuickSFV\QSFVUNST.EXE F:\Program Files\QuickSFV\
QuickTime-->MsiExec.exe /I{A429C2AE-EBF1-4F81-A221-1C115CAADDAD}
Realtek High Definition Audio Driver-->RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x9 -removeonly
ReNamer-->"F:\Program Files\ReNamer\unins000.exe"
Security Update for Windows Media Player (KB952069)-->"F:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB954155)-->"F:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB968816)-->"F:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB973540)-->"F:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB973540)-->"F:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe"
Security Update for Windows XP (KB923561)-->"F:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Security Update for Windows XP (KB923789)-->F:\WINDOWS\system32\MacroMed\Flash\genuinst.exe F:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Security Update for Windows XP (KB946648)-->"F:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950762)-->"F:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950974)-->"F:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951066)-->"F:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"F:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951748)-->"F:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952004)-->"F:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952954)-->"F:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Security Update for Windows XP (KB954459)-->"F:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Security Update for Windows XP (KB955069)-->"F:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956572)-->"F:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956744)-->"F:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956802)-->"F:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956803)-->"F:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956844)-->"F:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Security Update for Windows XP (KB957097)-->"F:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958644)-->"F:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958687)-->"F:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958869)-->"F:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Security Update for Windows XP (KB959426)-->"F:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Security Update for Windows XP (KB960225)-->"F:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Security Update for Windows XP (KB960803)-->"F:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Security Update for Windows XP (KB960859)-->"F:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Security Update for Windows XP (KB961371-v2)-->"F:\WINDOWS\$NtUninstallKB961371-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB961501)-->"F:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Security Update for Windows XP (KB969059)-->"F:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Security Update for Windows XP (KB969947)-->"F:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe"
Security Update for Windows XP (KB970238)-->"F:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Security Update for Windows XP (KB970430)-->"F:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971486)-->"F:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971557)-->"F:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971633)-->"F:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971657)-->"F:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971961)-->"F:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973354)-->"F:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973507)-->"F:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973525)-->"F:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973869)-->"F:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973904)-->"F:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974112)-->"F:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974318)-->"F:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974392)-->"F:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974455)-->"F:\WINDOWS\$NtUninstallKB974455$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974571)-->"F:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975025)-->"F:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975467)-->"F:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Security Update for Windows XP (KB976325)-->"F:\WINDOWS\$NtUninstallKB976325$\spuninst\spuninst.exe"
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
Skype™ 4.1-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36}
Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
Street Fighter IV-->"F:\Program Files\Steam\steam.exe" steam://uninstall/21660
System Requirements Lab-->MsiExec.exe /I{1E99F5D7-4262-4C7C-9135-F066E7485811}
Team Fortress 2-->"F:\Program Files\Steam\steam.exe" steam://uninstall/440
Trillian-->F:\Program Files\Trillian\trillian.exe /uninstall
Unlocker 1.8.7-->F:\Program Files\Unlocker\uninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->F:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Update for Windows XP (KB951978)-->"F:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Update for Windows XP (KB961503)-->"F:\WINDOWS\$NtUninstallKB961503$\spuninst\spuninst.exe"
Update for Windows XP (KB967715)-->"F:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Update for Windows XP (KB968389)-->"F:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Update for Windows XP (KB971737)-->"F:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Update for Windows XP (KB973687)-->"F:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Update for Windows XP (KB973815)-->"F:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Update for Windows XP (KB976749)-->"F:\WINDOWS\$NtUninstallKB976749$\spuninst\spuninst.exe"
Windows Live Call-->MsiExec.exe /I{F6BD194C-4190-4D73-B1B1-C48C99921BFE}
Windows Live Communications Platform-->MsiExec.exe /I{ED00D08A-3C5F-488D-93A0-A04F21F23956}
Windows Live Essentials-->F:\Program Files\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}
Windows Live Messenger-->MsiExec.exe /X{A85FD55B-891B-4314-97A5-EA96C0BD80B5}
Windows Live Sign-in Assistant-->MsiExec.exe /I{45338B07-A236-4270-9A77-EBB4115517B5}
Windows Live Upload Tool-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Windows XP Service Pack 3-->"F:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR archiver-->F:\Program Files\WinRAR\uninstall.exe
=====HijackThis Backups=====
O24 - Desktop Component 0: (no name) - F:\WINDOWS\Web\Wallpaper\bleach.png [2009-12-15]
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank [2009-12-15]
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local [2009-12-15]
======Security center information======
AV: ESET NOD32 antivirus system 2.70 (outdated)
======System event log======
Computer Name: AKUMA
Event Code: 64008
Message: The protected system file f:\windows\system32\drivers\usbport.sys could not be verified as valid because Windows
File Protection is terminating.
Use the SFC utility to verify the integrity of the file at a later time.
Record Number: 99
Source Name: Windows File Protection
Time Written: 20091118081903.000000-300
Event Type: warning
User:
Computer Name: AKUMA
Event Code: 64008
Message: The protected system file f:\windows\system32\drivers\usbhub.sys could not be verified as valid because Windows
File Protection is terminating.
Use the SFC utility to verify the integrity of the file at a later time.
Record Number: 98
Source Name: Windows File Protection
Time Written: 20091118081903.000000-300
Event Type: warning
User:
Computer Name: AKUMA
Event Code: 64008
Message: The protected system file f:\windows\system32\usbui.dll could not be verified as valid because Windows
File Protection is terminating.
Use the SFC utility to verify the integrity of the file at a later time.
Record Number: 97
Source Name: Windows File Protection
Time Written: 20091118081903.000000-300
Event Type: warning
User:
Computer Name: MACHINENAME
Event Code: 7
Message: The device, \Device\CdRom0, has a bad block.
Record Number: 5
Source Name: Cdrom
Time Written: 20091118005451.000000-300
Event Type: error
User:
Computer Name: MACHINENAME
Event Code: 7
Message: The device, \Device\CdRom0, has a bad block.
Record Number: 4
Source Name: Cdrom
Time Written: 20091118005444.000000-300
Event Type: error
User:
=====Application event log=====
Computer Name: AKUMA
Event Code: 1000
Message: Faulting application shpsobb.exe, version 0.0.0.0, faulting module shpsobb.exe, version 0.0.0.0, fault address 0x00388fd2.
Record Number: 342
Source Name: Application Error
Time Written: 20091215033533.000000-300
Event Type: error
User:
Computer Name: AKUMA
Event Code: 1000
Message: Faulting application shpsobb.exe, version 0.0.0.0, faulting module shpsobb.exe, version 0.0.0.0, fault address 0x00388fd2.
Record Number: 340
Source Name: Application Error
Time Written: 20091215033522.000000-300
Event Type: error
User:
Computer Name: AKUMA
Event Code: 1002
Message: Hanging application AWC.exe, version 3.0.0.8, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
Record Number: 339
Source Name: Application Hang
Time Written: 20091215010209.000000-300
Event Type: error
User:
Computer Name: AKUMA
Event Code: 1002
Message: Hanging application AWC.exe, version 3.0.0.8, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
Record Number: 329
Source Name: Application Hang
Time Written: 20091211061439.000000-300
Event Type: error
User:
Computer Name: AKUMA
Event Code: 1002
Message: Hanging application AWC.exe, version 3.0.0.8, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
Record Number: 328
Source Name: Application Hang
Time Written: 20091211061330.000000-300
Event Type: error
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;F:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 6 Stepping 5, GenuineIntel
"PROCESSOR_REVISION"=0605
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=.;F:\Program Files\QuickTime\QTSystem\QTJava.zip
"QTJAVA"=F:\Program Files\QuickTime\QTSystem\QTJava.zip
-----------------EOF-----------------