here are the logs. I had a very difficult time installing anything. Everytime I started an installer the program would quit. I had to start more than 50 instances of the installer at the same time just to get one install to continue.
I downloaded AntiVir but my sytem will not let me turn on the guard feature. The error message is as follows:
"The application module c:\program files\avira\antivir personaledition classic\avconfig.exe cannot be found or has been modified or destroyed. The AVCONFIG.EXE cannot be started. Please check the insatallation!"
Also, I cannot start in safe mode and I have run dskchk, recovery console, and also tried running as a different user. No problems found during dskchk. Over the computer runs incredibly slow! Thanks for any help possible.
RSIT Info Log:
info.txt logfile of random's system information tool 1.05 2009-02-18 17:03:41
======Uninstall list======
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\System32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A90000000001}
Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE
Big Fish Games Client-->C:\Program Files\bfgclient\Uninstall.exe
Compact Wireless-G USB Network Adapter with SpeedBooster-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{65563451-00B6-458C-9F9A-03A7757355A6}\setup.exe" -l0x9
Delmar's Comprehensive Medical Assisting Clinical Skills-->C:\PROGRA~1\DELMAR~1\CLINIC~1\UNWISE.EXE C:\PROGRA~1\DELMAR~1\CLINIC~1\INSTALL.LOG
Express Burn-->C:\Program Files\NCH Swift Sound\ExpressBurn\uninst.exe
Express Rip-->C:\Program Files\NCH Swift Sound\ExpressRip\uninst.exe
Golden Records-->C:\Program Files\NCH Swift Sound\Golden\uninst.exe
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Mozilla Firefox (2.0.0.15)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
Music Manager-->"C:\Program Files\fmc\uninstall.exe"
Print Workshop 2008-->MsiExec.exe /I{20F6E330-B570-486A-A954-F018EC815705}
Prism Video Converter-->C:\Program Files\NCH Software\Prism\uninst.exe
Safe_Mode_Fixer_Trial 1.2.0-->"C:\Program Files\Safe_Mode_Fixer\unins000.exe"
Security Update for Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
SoundTap Streaming Audio Recorder-->C:\Program Files\NCH Swift Sound\SoundTap\uninst.exe
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Switch-->C:\Program Files\NCH Swift Sound\Switch\uninst.exe
VideoLAN VLC media player 0.8.6h-->C:\Program Files\VideoLAN\VLC\uninstall.exe
VNC Free Edition 4.1.3-->"C:\Program Files\RealVNC\VNC4\unins000.exe"
WavePad Uninstall-->C:\Program Files\NCH Swift Sound\WavePad\uninst.exe
Windows Resource Kit Tools - SubInAcl.exe-->MsiExec.exe /X{D3EE034D-5B92-4A55-AA02-2E6D0A6A96EE}
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
Wondershare Flash SlideShow Builder (2.3.1.0)-->"C:\Program Files\Wondershare\Flash SlideShow Builder\unins000.exe"
======Security center information======
AV: Avira AntiVir PersonalEdition (disabled)
System event log
Computer Name: COMPAQ
Event Code: 10005
Message: DCOM got error "%1058" attempting to start the service SENS with arguments ""
in order to run the server:
{D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E}
Record Number: 5
Source Name: DCOM
Time Written: 20090218000739.000000-300
Event Type: error
User: NT AUTHORITY\SYSTEM
Computer Name: COMPAQ
Event Code: 10005
Message: DCOM got error "%1058" attempting to start the service SENS with arguments ""
in order to run the server:
{D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E}
Record Number: 4
Source Name: DCOM
Time Written: 20090218000739.000000-300
Event Type: error
User: NT AUTHORITY\SYSTEM
Computer Name: COMPAQ
Event Code: 10
Message: This drive has not been shown to support digital audio playback.
Record Number: 3
Source Name: redbook
Time Written: 20090217235828.000000-300
Event Type: information
User:
Computer Name: COMPAQ
Event Code: 6005
Message: The Event log service was started.
Record Number: 2
Source Name: EventLog
Time Written: 20090217234557.000000-300
Event Type: information
User:
Computer Name: COMPAQ
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 2 Uniprocessor Free.
Record Number: 1
Source Name: EventLog
Time Written: 20090217234557.000000-300
Event Type: information
User:
Application event log
Computer Name: COMPAQ
Event Code: 1000
Message: Performance counters for the TermService (Terminal Services) service were loaded successfully.
The Record Data contains the new index values assigned
to this service.
Record Number: 5
Source Name: LoadPerf
Time Written: 20090218000322.000000-300
Event Type: information
User:
Computer Name: COMPAQ
Event Code: 1001
Message: Performance counters for the TermService (Terminal Services) service were removed successfully.
The Record Data contains the new values of the system Last Counter and
Last Help registry entries.
Record Number: 4
Source Name: LoadPerf
Time Written: 20090218000322.000000-300
Event Type: information
User:
Computer Name: COMPAQ
Event Code: 1002
Message: Performance counters for the RSVP (QoS RSVP) service are already in Performance
Registry, no need to re-install again.
Record Number: 3
Source Name: LoadPerf
Time Written: 20090218000236.000000-300
Event Type: information
User:
Computer Name: COMPAQ
Event Code: 1002
Message: Performance counters for the PSched (QoS Packet Scheduler) service are already in Performance
Registry, no need to re-install again.
Record Number: 2
Source Name: LoadPerf
Time Written: 20090218000233.000000-300
Event Type: information
User:
Computer Name: COMPAQ
Event Code: 1002
Message: Performance counters for the RemoteAccess (Routing and Remote Access) service are already in Performance
Registry, no need to re-install again.
Record Number: 1
Source Name: LoadPerf
Time Written: 20090218000221.000000-300
Event Type: information
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\WBEM
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 4 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=0402
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO
-----------------EOF-----------------
RSIT Log File:
Logfile of random's system information tool 1.05 (written by random/random)
Run by Sean at 2009-02-18 17:03:02
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 7 GB (17%) free of 38 GB
Total RAM: 632 MB (62% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:03:08 PM, on 2/18/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\pctspk.exe
C:\Program Files\RealVNC\VNC4\WinVNC4.exe
C:\Program Files\Compact Wireless-G USB Network Adapter with SpeedBooster\WLService.exe
C:\Program Files\Compact Wireless-G USB Network Adapter with SpeedBooster\WUSB54GSC.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\Documents and Settings\Sean\Desktop\RSIT.exe
C:\Program Files\trend micro\Sean.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BearSharePersonalization - {DD1849EA-8403-4441-8DFF-7575AAE1DC16} - C:\Program Files\BearShare Applications\Personalization\BearSharePersonalizationIE_v1047.dll (file missing)
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://www.update.microsoft.com/win...ls/en/x86/client/wuweb_site.cab?1234934639483
O17 - HKLM\System\CCS\Services\Tcpip\..\{B6B20F53-3460-43E8-A55F-EAAD87B2A90F}: NameServer = 192.168.1.1
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Unknown owner - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe (file missing)
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - RealVNC Ltd. - C:\Program Files\RealVNC\VNC4\WinVNC4.exe
O23 - Service: WUSB54GSCSVC - GEMTEKS - C:\Program Files\Compact Wireless-G USB Network Adapter with SpeedBooster\WLService.exe
--
End of file - 3564 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DD1849EA-8403-4441-8DFF-7575AAE1DC16}]
BearSharePersonalization - C:\Program Files\BearShare Applications\Personalization\BearSharePersonalizationIE_v1047.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe []
"avgnt"=C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe /min []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe /background []
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=
scecli
scecli
scecli
scecli
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winhhemdf.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winhhemdf.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winltlhv.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winltlhv.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winkfxsa.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winkfxsa.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winfbcp.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winfbcp.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winooonmm.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winooonmm.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winuars.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winuars.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\wincqhb.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\wincqhb.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winewfxif.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winewfxif.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winqvgxdj.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winqvgxdj.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\wincohy.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\wincohy.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winublf.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winublf.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\wingpps.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\wingpps.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winghmn.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winghmn.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winwuviei.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winwuviei.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winxsysi.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winxsysi.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\windkhq.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\windkhq.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winvhxkdj.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winvhxkdj.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winwlxlbf.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winwlxlbf.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winxgome.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winxgome.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winfsup.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winfsup.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winfblg.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winfblg.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winytklsd.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winytklsd.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winnunao.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winnunao.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winctxuwy.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winctxuwy.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winvhkpnn.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winvhkpnn.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\wintsqsu.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\wintsqsu.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winsejrsk.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winsejrsk.exe:*:Enabled:ipsec"
"C:\Documents and Settings\Sean\Local Settings\Application Data\Adobe\Reader 9.0\Setup Files\AIRShareInstaller.exe"="C:\Documents and Settings\Sean\Local Settings\Application Data\Adobe\Reader 9.0\Setup Files\AIRShareInstaller.exe:*:Enabled:ipsec"
"C:\WINDOWS\Explorer.EXE"="C:\WINDOWS\Explorer.EXE:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winejmuf.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winejmuf.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winiocn.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winiocn.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winaqfiv.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winaqfiv.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winskgeog.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winskgeog.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winlueio.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winlueio.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winpwgul.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winpwgul.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winsned.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winsned.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winbgtt.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winbgtt.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winocir.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winocir.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winnbiekk.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winnbiekk.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winvloq.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winvloq.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winlhuq.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winlhuq.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winhoif.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winhoif.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winncmce.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winncmce.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\windcdqq.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\windcdqq.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winexjfv.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winexjfv.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\wincyie.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\wincyie.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winfxheq.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winfxheq.exe:*:Enabled:ipsec"
"C:\Program Files\Compact Wireless-G USB Network Adapter with SpeedBooster\PCARmDrv.exe"="C:\Program Files\Compact Wireless-G USB Network Adapter with SpeedBooster\PCARmDrv.exe:*:Enabled:ipsec"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled

xpsp2res.dll,-22019"
"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"="C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\windbvsl.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\windbvsl.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winfekjf.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winfekjf.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\windgrjls.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\windgrjls.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winqwof.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winqwof.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winggoa.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winggoa.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\wincgttpd.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\wincgttpd.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winuxbwcb.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winuxbwcb.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winjwrrc.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winjwrrc.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\windbvg.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\windbvg.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winoinqec.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winoinqec.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winpefquv.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winpefquv.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winmmrihb.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winmmrihb.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winabdp.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winabdp.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winwthah.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winwthah.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winulklgu.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winulklgu.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winspeif.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winspeif.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winobkkmn.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winobkkmn.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winkctqc.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winkctqc.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winrerduc.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winrerduc.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\wingfhme.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\wingfhme.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winjnrc.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winjnrc.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\wintaabgb.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\wintaabgb.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winkbcy.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winkbcy.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winfkmnw.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winfkmnw.exe:*:Enabled:ipsec"
"C:\WINDOWS\system32\wscntfy.exe"="C:\WINDOWS\system32\wscntfy.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winipwjkm.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winipwjkm.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\wintjsusr.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\wintjsusr.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winufvdv.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winufvdv.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winfxwgrg.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winfxwgrg.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winfqwtk.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winfqwtk.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\windyweo.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\windyweo.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winqpsywa.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winqpsywa.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winycjqq.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winycjqq.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winpadqb.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winpadqb.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\wintvkndv.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\wintvkndv.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winjkht.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winjkht.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winkfgwi.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winkfgwi.exe:*:Enabled:ipsec"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winruwl.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winruwl.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winxknm.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winxknm.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winkjiwl.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winkjiwl.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winwramkd.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winwramkd.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winvgvlya.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winvgvlya.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winjfempd.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winjfempd.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winmbsl.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winmbsl.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winuqjllg.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winuqjllg.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winnydk.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winnydk.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winjpvxg.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winjpvxg.exe:*:Enabled:ipsec"
"C:\DOCUME~1\Sean\LOCALS~1\Temp\winnmsmh.exe"="C:\DOCUME~1\Sean\LOCALS~1\Temp\winnmsmh.exe:*:Enabled:ipsec"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled

xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled

xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2009-02-18 17:03:02 ----D---- C:\rsit
2009-02-18 15:26:40 ----D---- C:\Program Files\Avira
2009-02-18 15:26:40 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
2009-02-18 15:02:21 ----D---- C:\WINDOWS\Prefetch
2009-02-18 01:05:35 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2009-02-18 00:44:51 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-02-18 00:36:40 ----A---- C:\WINDOWS\003135_.tmp
2009-02-18 00:24:22 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2009-02-18 00:06:39 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2009-02-17 23:54:27 ----A---- C:\WINDOWS\pnplog.txt
2009-02-17 23:47:28 ----A---- C:\WINDOWS\system32\spxcoins.dll
2009-02-17 23:47:28 ----A---- C:\WINDOWS\system32\irclass.dll
2009-02-17 23:46:53 ----RA---- C:\WINDOWS\SET4C.tmp
2009-02-17 23:46:49 ----RA---- C:\WINDOWS\SET40.tmp
2009-02-17 23:46:47 ----RA---- C:\WINDOWS\SET3D.tmp
2009-02-17 23:39:54 ----A---- C:\WINDOWS\ntbtlog.txt
2009-02-15 19:50:33 ----D---- C:\Program Files\Delmar Medical Assisting
2009-02-13 01:53:15 ----D---- C:\WINDOWS\SoftwareDistribution
2009-02-13 01:26:41 ----D---- C:\WINDOWS\pss
2009-02-13 01:14:16 ----D---- C:\Program Files\Safe_Mode_Fixer
2009-02-13 00:46:08 ----D---- C:\MSXML3msms
2009-02-13 00:20:44 ----D---- C:\WINDOWS\WBEM
2009-02-13 00:18:53 ----HDC---- C:\WINDOWS\ie7
2009-02-13 00:18:31 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2009-02-13 00:17:59 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2009-02-12 23:26:07 ----D---- C:\Program Files\Windows Resource Kits
2009-02-12 22:54:36 ----D---- C:\325441e5af4fd760757909
2009-02-12 22:50:14 ----HDC---- C:\WINDOWS\$NtUninstallKB914440$
2009-02-12 22:50:01 ----HDC---- C:\WINDOWS\$NtUninstallKB904942$
2009-01-23 03:03:54 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2009-01-23 03:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2009-01-23 03:03:38 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2009-01-23 03:03:31 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2009-01-23 03:02:56 ----HDC---- C:\WINDOWS\$NtUninstallKB958215_0$
2009-01-23 03:02:46 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2009-01-23 03:02:39 ----HDC---- C:\WINDOWS\$NtUninstallKB951698_0$
2009-01-23 03:02:30 ----HDC---- C:\WINDOWS\$NtUninstallKB954211_0$
2009-01-23 03:02:16 ----HDC---- C:\WINDOWS\$NtUninstallKB956841_0$
2009-01-23 03:02:04 ----HDC---- C:\WINDOWS\$NtUninstallKB960714_0$
2009-01-23 03:01:51 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2009-01-23 03:01:44 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$
2009-01-23 03:01:37 ----HDC---- C:\WINDOWS\$NtUninstallKB958687_0$
2009-01-23 03:01:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2009-01-23 03:01:22 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2009-01-23 03:01:12 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2009-01-23 03:01:05 ----HDC---- C:\WINDOWS\$NtUninstallKB938464_0$
2009-01-23 03:00:59 ----HDC---- C:\WINDOWS\$NtUninstallKB954600_0$
2009-01-23 03:00:52 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2009-01-23 03:00:44 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2009-01-23 03:00:37 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2009-01-23 03:00:26 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2009-01-22 21:50:49 ----D---- C:\OKIDATA
2009-01-19 14:33:54 ----SHD---- C:\RECYCLER
2009-01-19 14:32:09 ----D---- C:\Program Files\RealVNC
2009-01-19 10:51:26 ----D---- C:\WINDOWS\system32\LogFiles
2009-01-19 10:03:29 ----A---- C:\WINDOWS\system32\xpsp3res.dll
2009-01-19 08:38:02 ----A---- C:\WINDOWS\system32\SETF1F.tmp
2009-01-19 08:38:00 ----A---- C:\WINDOWS\system32\SETF07.tmp
2009-01-19 08:38:00 ----A---- C:\WINDOWS\system32\SETF03.tmp
2009-01-19 08:37:59 ----A---- C:\WINDOWS\system32\SETF02.tmp
2009-01-19 08:37:59 ----A---- C:\WINDOWS\system32\SETEFD.tmp
2009-01-19 08:37:58 ----D---- C:\WINDOWS\system32\en-us
2009-01-19 08:37:58 ----A---- C:\WINDOWS\system32\SETEF9.tmp
2009-01-19 08:37:57 ----D---- C:\WINDOWS\system32\scripting
2009-01-19 08:37:54 ----D---- C:\WINDOWS\system32\en
2009-01-19 08:37:54 ----D---- C:\WINDOWS\l2schemas
2009-01-19 08:31:57 ----A---- C:\WINDOWS\SET489.tmp
2009-01-19 08:31:52 ----A---- C:\WINDOWS\system32\SET463.tmp
2009-01-19 08:31:52 ----A---- C:\WINDOWS\system32\SET45E.tmp
2009-01-19 08:31:51 ----A---- C:\WINDOWS\system32\SET45B.tmp
2009-01-19 08:31:51 ----A---- C:\WINDOWS\system32\SET456.tmp
2009-01-19 08:31:49 ----A---- C:\WINDOWS\system32\SET450.tmp
2009-01-19 08:31:49 ----A---- C:\WINDOWS\system32\SET44B.tmp
2009-01-19 08:31:49 ----A---- C:\WINDOWS\system32\SET44A.tmp
2009-01-19 08:31:48 ----A---- C:\WINDOWS\system32\SET447.tmp
2009-01-19 08:31:48 ----A---- C:\WINDOWS\system32\SET446.tmp
2009-01-19 08:31:48 ----A---- C:\WINDOWS\system32\SET445.tmp
2009-01-19 08:31:47 ----A---- C:\WINDOWS\system32\SET441.tmp
2009-01-19 08:31:47 ----A---- C:\WINDOWS\system32\SET440.tmp
2009-01-19 08:31:46 ----A---- C:\WINDOWS\system32\SET43F.tmp
2009-01-19 08:31:45 ----A---- C:\WINDOWS\system32\SET439.tmp
2009-01-19 08:31:44 ----A---- C:\WINDOWS\system32\SET437.tmp
2009-01-19 08:31:43 ----A---- C:\WINDOWS\system32\SET434.tmp
2009-01-19 08:31:43 ----A---- C:\WINDOWS\system32\SET430.tmp
2009-01-19 08:31:41 ----A---- C:\WINDOWS\system32\SET42B.tmp
2009-01-19 08:31:40 ----A---- C:\WINDOWS\system32\SET424.tmp
2009-01-19 08:31:39 ----A---- C:\WINDOWS\system32\SET41C.tmp
2009-01-19 08:31:39 ----A---- C:\WINDOWS\system32\SET41B.tmp
2009-01-19 08:31:38 ----A---- C:\WINDOWS\system32\SET416.tmp
2009-01-19 08:31:36 ----A---- C:\WINDOWS\system32\SET414.tmp
2009-01-19 08:31:36 ----A---- C:\WINDOWS\system32\SET411.tmp
2009-01-19 08:31:35 ----A---- C:\WINDOWS\system32\SET40F.tmp
2009-01-19 08:31:35 ----A---- C:\WINDOWS\system32\SET40E.tmp
2009-01-19 08:31:34 ----A---- C:\WINDOWS\system32\SET40C.tmp
2009-01-19 08:31:34 ----A---- C:\WINDOWS\system32\SET40A.tmp
2009-01-19 08:31:34 ----A---- C:\WINDOWS\system32\SET409.tmp
2009-01-19 08:31:33 ----A---- C:\WINDOWS\system32\SET408.tmp
2009-01-19 08:31:32 ----A---- C:\WINDOWS\system32\SET407.tmp
2009-01-19 08:31:32 ----A---- C:\WINDOWS\system32\SET405.tmp
2009-01-19 08:31:32 ----A---- C:\WINDOWS\system32\SET404.tmp
2009-01-19 08:31:30 ----A---- C:\WINDOWS\system32\SET3FC.tmp
2009-01-19 08:31:27 ----A---- C:\WINDOWS\system32\SET3E5.tmp
2009-01-19 08:31:24 ----A---- C:\WINDOWS\system32\SET3D0.tmp
2009-01-19 08:31:24 ----A---- C:\WINDOWS\system32\SET3CF.tmp
2009-01-19 08:31:22 ----A---- C:\WINDOWS\system32\SET3BC.tmp
2009-01-19 08:31:19 ----A---- C:\WINDOWS\system32\SET3B1.tmp
2009-01-19 08:31:19 ----A---- C:\WINDOWS\system32\SET3AD.tmp
2009-01-19 08:31:17 ----A---- C:\WINDOWS\system32\SET3A3.tmp
2009-01-19 08:31:16 ----A---- C:\WINDOWS\system32\SET3A2.tmp
2009-01-19 08:31:15 ----A---- C:\WINDOWS\system32\SET3A1.tmp
2009-01-19 08:31:15 ----A---- C:\WINDOWS\system32\SET39F.tmp
2009-01-19 08:31:14 ----A---- C:\WINDOWS\system32\SET39A.tmp
2009-01-19 08:31:13 ----A---- C:\WINDOWS\system32\SET391.tmp
2009-01-19 08:31:12 ----A---- C:\WINDOWS\system32\SET38D.tmp
2009-01-19 08:31:11 ----A---- C:\WINDOWS\system32\SET387.tmp
2009-01-19 08:31:11 ----A---- C:\WINDOWS\system32\SET386.tmp
2009-01-19 08:31:11 ----A---- C:\WINDOWS\system32\SET385.tmp
2009-01-19 08:31:10 ----A---- C:\WINDOWS\system32\SET383.tmp
2009-01-19 08:31:09 ----A---- C:\WINDOWS\system32\SET37D.tmp
2009-01-19 08:31:07 ----A---- C:\WINDOWS\system32\SET367.tmp
2009-01-19 08:31:06 ----A---- C:\WINDOWS\system32\SET362.tmp
2009-01-19 08:31:05 ----A---- C:\WINDOWS\system32\SET35B.tmp
2009-01-19 08:31:05 ----A---- C:\WINDOWS\system32\SET359.tmp
2009-01-19 08:31:04 ----A---- C:\WINDOWS\system32\SET357.tmp
2009-01-19 08:31:03 ----A---- C:\WINDOWS\system32\SET353.tmp
2009-01-19 08:31:01 ----A---- C:\WINDOWS\system32\SET33F.tmp
2009-01-19 08:31:01 ----A---- C:\WINDOWS\system32\SET33D.tmp
2009-01-19 08:30:59 ----A---- C:\WINDOWS\system32\SET335.tmp
2009-01-19 08:30:59 ----A---- C:\WINDOWS\system32\SET333.tmp
2009-01-19 08:30:58 ----A---- C:\WINDOWS\system32\SET32B.tmp
2009-01-19 08:30:57 ----A---- C:\WINDOWS\system32\SET323.tmp
2009-01-19 08:30:56 ----A---- C:\WINDOWS\system32\SET320.tmp
2009-01-19 08:30:55 ----A---- C:\WINDOWS\system32\SET31F.tmp
2009-01-19 08:30:55 ----A---- C:\WINDOWS\system32\SET31E.tmp
2009-01-19 08:30:54 ----A---- C:\WINDOWS\system32\SET31D.tmp
2009-01-19 08:30:54 ----A---- C:\WINDOWS\system32\SET31A.tmp
2009-01-19 08:30:52 ----A---- C:\WINDOWS\system32\SET30F.tmp
2009-01-19 08:30:50 ----A---- C:\WINDOWS\system32\SET308.tmp
2009-01-19 08:30:50 ----A---- C:\WINDOWS\system32\SET307.tmp
2009-01-19 08:30:49 ----A---- C:\WINDOWS\system32\SET305.tmp
2009-01-19 08:30:49 ----A---- C:\WINDOWS\system32\SET301.tmp
2009-01-19 08:30:49 ----A---- C:\WINDOWS\system32\SET300.tmp
2009-01-19 08:30:48 ----A---- C:\WINDOWS\system32\SET2FC.tmp
2009-01-19 08:30:48 ----A---- C:\WINDOWS\system32\SET2FB.tmp
2009-01-19 08:30:48 ----A---- C:\WINDOWS\system32\SET2F8.tmp
2009-01-19 08:30:46 ----A---- C:\WINDOWS\system32\SET2EC.tmp
2009-01-19 08:30:45 ----A---- C:\WINDOWS\system32\SET2E8.tmp
2009-01-19 08:30:44 ----A---- C:\WINDOWS\system32\SET2E4.tmp
2009-01-19 08:30:43 ----A---- C:\WINDOWS\system32\SET2E2.tmp
2009-01-19 08:30:43 ----A---- C:\WINDOWS\system32\SET2E0.tmp
2009-01-19 08:30:42 ----A---- C:\WINDOWS\system32\SET2DF.tmp
2009-01-19 08:30:42 ----A---- C:\WINDOWS\system32\SET2DE.tmp
2009-01-19 08:30:42 ----A---- C:\WINDOWS\system32\SET2DD.tmp
2009-01-19 08:30:42 ----A---- C:\WINDOWS\system32\SET2DB.tmp
2009-01-19 08:30:40 ----A---- C:\WINDOWS\system32\SET2D2.tmp
2009-01-19 08:30:40 ----A---- C:\WINDOWS\system32\SET2CF.tmp
2009-01-19 08:30:40 ----A---- C:\WINDOWS\system32\SET2CE.tmp
2009-01-19 08:30:39 ----A---- C:\WINDOWS\system32\SET2CC.tmp
2009-01-19 08:30:38 ----A---- C:\WINDOWS\system32\SET2C9.tmp
2009-01-19 08:30:36 ----A---- C:\WINDOWS\system32\SET2BC.tmp
2009-01-19 08:30:35 ----A---- C:\WINDOWS\system32\SET2B8.tmp
2009-01-19 08:30:35 ----A---- C:\WINDOWS\system32\SET2B7.tmp
2009-01-19 08:30:34 ----A---- C:\WINDOWS\system32\SET2B6.tmp
2009-01-19 08:30:34 ----A---- C:\WINDOWS\system32\SET2B5.tmp
2009-01-19 08:30:33 ----A---- C:\WINDOWS\system32\SET2AF.tmp
2009-01-19 08:30:31 ----A---- C:\WINDOWS\system32\SET2AA.tmp
2009-01-19 08:30:30 ----A---- C:\WINDOWS\system32\SET2A8.tmp
2009-01-19 08:30:30 ----A---- C:\WINDOWS\system32\SET2A1.tmp
2009-01-19 08:30:29 ----A---- C:\WINDOWS\system32\SET2A0.tmp
2009-01-19 08:30:29 ----A---- C:\WINDOWS\system32\SET29D.tmp
2009-01-19 08:30:28 ----A---- C:\WINDOWS\system32\SET29A.tmp
2009-01-19 08:30:28 ----A---- C:\WINDOWS\system32\SET299.tmp
2009-01-19 08:30:27 ----A---- C:\WINDOWS\system32\SET296.tmp
2009-01-19 08:30:26 ----A---- C:\WINDOWS\system32\SET295.tmp
2009-01-19 08:30:25 ----A---- C:\WINDOWS\system32\SET293.tmp
2009-01-19 08:30:24 ----A---- C:\WINDOWS\system32\SET290.tmp
2009-01-19 08:30:23 ----A---- C:\WINDOWS\system32\SET28E.tmp
2009-01-19 08:30:23 ----A---- C:\WINDOWS\system32\SET28D.tmp
2009-01-19 08:30:22 ----A---- C:\WINDOWS\system32\SET28C.tmp
2009-01-19 08:30:21 ----A---- C:\WINDOWS\system32\SET287.tmp
2009-01-19 08:30:21 ----A---- C:\WINDOWS\system32\SET286.tmp
2009-01-19 08:30:21 ----A---- C:\WINDOWS\system32\SET285.tmp
2009-01-19 08:30:20 ----A---- C:\WINDOWS\system32\SET280.tmp
2009-01-19 08:30:19 ----A---- C:\WINDOWS\system32\SET27D.tmp
2009-01-19 08:30:19 ----A---- C:\WINDOWS\system32\SET27A.tmp
2009-01-19 08:30:18 ----A---- C:\WINDOWS\system32\SET279.tmp
2009-01-19 08:30:18 ----A---- C:\WINDOWS\system32\SET278.tmp
2009-01-19 08:30:17 ----A---- C:\WINDOWS\system32\SET276.tmp
2009-01-19 08:30:17 ----A---- C:\WINDOWS\system32\SET275.tmp
2009-01-19 08:30:17 ----A---- C:\WINDOWS\system32\SET274.tmp
2009-01-19 08:30:17 ----A---- C:\WINDOWS\system32\SET272.tmp
2009-01-19 08:30:17 ----A---- C:\WINDOWS\system32\SET271.tmp
2009-01-19 08:30:16 ----A---- C:\WINDOWS\system32\SET270.tmp
2009-01-19 08:30:16 ----A---- C:\WINDOWS\system32\SET26F.tmp
2009-01-19 08:30:16 ----A---- C:\WINDOWS\system32\SET26E.tmp
2009-01-19 08:30:15 ----A---- C:\WINDOWS\system32\SET26B.tmp
2009-01-19 08:30:15 ----A---- C:\WINDOWS\system32\SET26A.tmp
2009-01-19 08:30:13 ----A---- C:\WINDOWS\system32\SET263.tmp
2009-01-19 08:30:13 ----A---- C:\WINDOWS\system32\SET262.tmp
2009-01-19 08:30:11 ----A---- C:\WINDOWS\system32\SET250.tmp
2009-01-19 08:30:10 ----A---- C:\WINDOWS\system32\SET24C.tmp
2009-01-19 08:30:10 ----A---- C:\WINDOWS\system32\SET24A.tmp
2009-01-19 08:30:09 ----A---- C:\WINDOWS\system32\SET247.tmp
2009-01-19 08:30:09 ----A---- C:\WINDOWS\system32\SET246.tmp
2009-01-19 08:30:08 ----A---- C:\WINDOWS\system32\SET244.tmp
2009-01-19 08:30:06 ----A---- C:\WINDOWS\system32\SET238.tmp
2009-01-19 08:30:06 ----A---- C:\WINDOWS\system32\SET237.tmp
2009-01-19 08:30:06 ----A---- C:\WINDOWS\system32\SET236.tmp
2009-01-19 08:30:05 ----A---- C:\WINDOWS\system32\SET234.tmp
2009-01-19 08:30:04 ----A---- C:\WINDOWS\system32\SET232.tmp
2009-01-19 08:30:03 ----A---- C:\WINDOWS\system32\SET226.tmp
2009-01-19 08:30:02 ----A---- C:\WINDOWS\system32\SET220.tmp
2009-01-19 08:30:02 ----A---- C:\WINDOWS\system32\SET21E.tmp
2009-01-19 08:30:01 ----A---- C:\WINDOWS\system32\SET21D.tmp
2009-01-19 08:30:00 ----A---- C:\WINDOWS\system32\SET21C.tmp
2009-01-19 08:30:00 ----A---- C:\WINDOWS\system32\SET21B.tmp
2009-01-19 08:29:59 ----A---- C:\WINDOWS\system32\SET215.tmp
2009-01-19 08:29:58 ----A---- C:\WINDOWS\system32\SET20D.tmp
2009-01-19 08:29:58 ----A---- C:\WINDOWS\system32\SET20C.tmp
2009-01-19 08:29:57 ----A---- C:\WINDOWS\system32\SET20B.tmp
2009-01-19 08:29:56 ----A---- C:\WINDOWS\system32\SET205.tmp
2009-01-19 08:29:56 ----A---- C:\WINDOWS\system32\SET204.tmp
2009-01-19 08:29:55 ----A---- C:\WINDOWS\system32\SET200.tmp
2009-01-19 08:29:55 ----A---- C:\WINDOWS\system32\SET1FF.tmp
2009-01-19 08:29:54 ----A---- C:\WINDOWS\system32\SET1FB.tmp
2009-01-19 08:29:54 ----A---- C:\WINDOWS\system32\SET1FA.tmp
2009-01-19 08:29:53 ----A---- C:\WINDOWS\system32\SET1F8.tmp
2009-01-19 08:29:53 ----A---- C:\WINDOWS\system32\SET1F7.tmp
2009-01-19 08:29:46 ----A---- C:\WINDOWS\system32\SET1F6.tmp
2009-01-19 08:29:45 ----A---- C:\WINDOWS\system32\SET1F5.tmp
2009-01-19 08:29:45 ----A---- C:\WINDOWS\system32\SET1F3.tmp
2009-01-19 08:29:45 ----A---- C:\WINDOWS\system32\SET1F1.tmp
2009-01-19 08:29:44 ----A---- C:\WINDOWS\system32\SET1EC.tmp
2009-01-19 08:29:42 ----A---- C:\WINDOWS\system32\SET1DC.tmp
2009-01-19 08:29:41 ----A---- C:\WINDOWS\system32\SET1DB.tmp
2009-01-19 08:29:41 ----A---- C:\WINDOWS\system32\SET1DA.tmp
2009-01-19 08:29:41 ----A---- C:\WINDOWS\system32\SET1D9.tmp
2009-01-19 08:29:41 ----A---- C:\WINDOWS\system32\SET1D8.tmp
2009-01-19 08:29:40 ----A---- C:\WINDOWS\system32\SET1D5.tmp
2009-01-19 08:29:39 ----A---- C:\WINDOWS\system32\SET1D2.tmp
2009-01-19 08:29:39 ----A---- C:\WINDOWS\system32\SET1D1.tmp
2009-01-19 08:29:36 ----A---- C:\WINDOWS\system32\SET1C4.tmp
2009-01-19 08:29:36 ----A---- C:\WINDOWS\system32\SET1C1.tmp
2009-01-19 08:29:35 ----A---- C:\WINDOWS\system32\SET1C0.tmp
2009-01-19 08:29:34 ----A---- C:\WINDOWS\system32\SET1B9.tmp
2009-01-19 08:29:33 ----A---- C:\WINDOWS\system32\SET1B8.tmp
2009-01-19 08:29:33 ----A---- C:\WINDOWS\system32\SET1B5.tmp
2009-01-19 08:29:32 ----A---- C:\WINDOWS\system32\SET1B1.tmp
2009-01-19 08:29:31 ----A---- C:\WINDOWS\system32\SET1B0.tmp
2009-01-19 08:29:31 ----A---- C:\WINDOWS\system32\SET1AB.tmp
2009-01-19 08:29:30 ----A---- C:\WINDOWS\system32\SET1A5.tmp
2009-01-19 08:29:30 ----A---- C:\WINDOWS\system32\SET1A4.tmp
2009-01-19 08:29:30 ----A---- C:\WINDOWS\system32\SET1A3.tmp
2009-01-19 08:29:29 ----A---- C:\WINDOWS\system32\SET1A2.tmp
2009-01-19 08:29:29 ----A---- C:\WINDOWS\system32\SET1A1.tmp
2009-01-19 08:29:28 ----A---- C:\WINDOWS\system32\SET19C.tmp
2009-01-19 08:29:28 ----A---- C:\WINDOWS\system32\SET19B.tmp
2009-01-19 08:29:27 ----A---- C:\WINDOWS\system32\SET19A.tmp
2009-01-19 08:29:27 ----A---- C:\WINDOWS\system32\SET198.tmp
2009-01-19 08:29:27 ----A---- C:\WINDOWS\system32\SET197.tmp
2009-01-19 08:29:26 ----A---- C:\WINDOWS\system32\SET194.tmp
2009-01-19 08:29:25 ----A---- C:\WINDOWS\system32\SET18D.tmp
2009-01-19 08:29:24 ----A---- C:\WINDOWS\system32\SET18C.tmp
2009-01-19 08:29:24 ----A---- C:\WINDOWS\system32\SET18A.tmp
2009-01-19 08:29:24 ----A---- C:\WINDOWS\system32\SET187.tmp
2009-01-19 08:29:23 ----A---- C:\WINDOWS\system32\SET186.tmp
2009-01-19 08:29:23 ----A---- C:\WINDOWS\system32\SET185.tmp
2009-01-19 08:29:23 ----A---- C:\WINDOWS\system32\SET184.tmp
2009-01-19 08:29:20 ----A---- C:\WINDOWS\system32\SET17A.tmp
2009-01-19 08:29:20 ----A---- C:\WINDOWS\system32\SET179.tmp
2009-01-19 08:29:20 ----A---- C:\WINDOWS\system32\SET178.tmp
2009-01-19 08:29:19 ----A---- C:\WINDOWS\system32\SET177.tmp
2009-01-19 08:29:19 ----A---- C:\WINDOWS\system32\SET175.tmp
2009-01-19 08:29:19 ----A---- C:\WINDOWS\system32\SET174.tmp
2009-01-19 08:29:18 ----A---- C:\WINDOWS\system32\SET173.tmp
2009-01-19 08:29:18 ----A---- C:\WINDOWS\system32\SET172.tmp
2009-01-19 08:29:18 ----A---- C:\WINDOWS\system32\SET171.tmp
2009-01-19 08:29:17 ----A---- C:\WINDOWS\system32\SET16F.tmp
2009-01-19 08:29:17 ----A---- C:\WINDOWS\system32\SET16E.tmp
2009-01-19 08:29:15 ----A---- C:\WINDOWS\system32\SET168.tmp
2009-01-19 08:29:13 ----A---- C:\WINDOWS\system32\SET159.tmp
2009-01-19 08:29:12 ----A---- C:\WINDOWS\system32\SET156.tmp
2009-01-19 08:29:11 ----A---- C:\WINDOWS\system32\SET155.tmp
2009-01-19 08:29:11 ----A---- C:\WINDOWS\system32\SET14E.tmp
2009-01-19 08:29:10 ----A---- C:\WINDOWS\system32\SET14C.tmp
2009-01-19 08:29:10 ----A---- C:\WINDOWS\system32\SET14A.tmp
2009-01-19 08:29:09 ----A---- C:\WINDOWS\system32\SET148.tmp
2009-01-19 08:29:09 ----A---- C:\WINDOWS\system32\SET147.tmp
2009-01-19 08:29:06 ----D---- C:\WINDOWS\network diagnostic
2009-01-19 08:27:27 ----A---- C:\WINDOWS\002766_.tmp
2009-01-19 00:03:36 ----A---- C:\WINDOWS\system32\qmgr.dll
2009-01-19 00:01:13 ----A---- C:\WINDOWS\system32\sessmgr.exe
======List of files/folders modified in the last 1 months======
2009-02-18 17:03:08 ----D---- C:\Program Files\Trend Micro
2009-02-18 17:00:04 ----D---- C:\WINDOWS\temp
2009-02-18 16:46:00 ----D---- C:\WINDOWS
2009-02-18 16:42:29 ----D---- C:\WINDOWS\system32\drivers
2009-02-18 16:41:12 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-02-18 16:26:52 ----DC---- C:\WINDOWS\system32\dllcache
2009-02-18 16:26:46 ----D---- C:\WINDOWS\system32
2009-02-18 15:58:46 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-02-18 15:57:52 ----D---- C:\Program Files\Outlook Express
2009-02-18 15:57:48 ----D---- C:\Program Files\NetMeeting
2009-02-18 15:57:45 ----D---- C:\Program Files\Print Workshop 2008
2009-02-18 15:57:00 ----D---- C:\Program Files\Movie Maker
2009-02-18 15:56:55 ----D---- C:\Program Files\Mozilla Firefox
2009-02-18 15:56:48 ----D---- C:\Program Files\Internet Explorer
2009-02-18 15:56:36 ----D---- C:\Program Files\fmc
2009-02-18 15:56:21 ----D---- C:\Program Files\Compact Wireless-G USB Network Adapter with SpeedBooster
2009-02-18 15:56:01 ----D---- C:\Program Files\bfgclient
2009-02-18 15:41:14 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-02-18 15:36:09 ----D---- C:\Program Files\Messenger
2009-02-18 15:34:12 ----HD---- C:\WINDOWS\inf
2009-02-18 15:32:28 ----HD---- C:\WINDOWS\$hf_mig$
2009-02-18 15:26:40 ----RD---- C:\Program Files
2009-02-18 15:21:08 ----SHD---- C:\WINDOWS\Installer
2009-02-18 15:21:01 ----A---- C:\WINDOWS\OEWABLog.txt
2009-02-18 15:20:00 ----D---- C:\WINDOWS\system32\CatRoot2
2009-02-18 15:04:09 ----A---- C:\WINDOWS\setuplog.txt
2009-02-18 15:04:02 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-02-18 15:01:45 ----D---- C:\WINDOWS\system32\Setup
2009-02-18 15:01:45 ----D---- C:\WINDOWS\AppPatch
2009-02-18 15:01:44 ----D---- C:\WINDOWS\system32\wbem
2009-02-18 15:01:42 ----RSD---- C:\WINDOWS\Fonts
2009-02-18 01:05:30 ----D---- C:\WINDOWS\system32\CatRoot
2009-02-18 01:05:21 ----D---- C:\WINDOWS\security
2009-02-18 01:00:53 ----D---- C:\Program Files\Windows Media Player
2009-02-18 01:00:34 ----D---- C:\WINDOWS\ime
2009-02-18 01:00:33 ----D---- C:\WINDOWS\Help
2009-02-18 01:00:12 ----D---- C:\WINDOWS\peernet
2009-02-18 00:56:52 ----D---- C:\WINDOWS\system32\Restore
2009-02-18 00:56:51 ----D---- C:\WINDOWS\system32\npp
2009-02-18 00:56:50 ----D---- C:\WINDOWS\msagent
2009-02-18 00:56:48 ----D---- C:\WINDOWS\srchasst
2009-02-18 00:56:45 ----D---- C:\WINDOWS\system32\Com
2009-02-18 00:56:41 ----D---- C:\Program Files\Windows NT
2009-02-18 00:56:35 ----D---- C:\Program Files\Common Files\System
2009-02-18 00:56:05 ----D---- C:\WINDOWS\system32\oobe
2009-02-18 00:56:04 ----D---- C:\WINDOWS\system32\usmt
2009-02-18 00:56:02 ----D---- C:\WINDOWS\system
2009-02-18 00:51:35 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-02-18 00:44:50 ----D---- C:\WINDOWS\EHome
2009-02-18 00:22:58 ----SH---- C:\boot.ini
2009-02-18 00:22:58 ----A---- C:\WINDOWS\win.ini
2009-02-18 00:22:58 ----A---- C:\WINDOWS\system.ini
2009-02-18 00:22:15 ----A---- C:\WINDOWS\system32\wpa.bak
2009-02-18 00:22:02 ----D---- C:\WINDOWS\Registration
2009-02-18 00:17:44 ----SHD---- C:\System Volume Information
2009-02-18 00:15:31 ----D---- C:\WINDOWS\system32\config
2009-02-18 00:07:51 ----A---- C:\WINDOWS\ODBCINST.INI
2009-02-18 00:07:27 ----D---- C:\WINDOWS\system32\ias
2009-02-18 00:06:44 ----RD---- C:\WINDOWS\Web
2009-02-18 00:06:29 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-02-17 23:47:04 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2009-02-17 18:20:35 ----D---- C:\WINDOWS\Media
2009-02-17 18:14:46 ----D---- C:\WINDOWS\twain_32
2009-02-17 18:13:08 ----D---- C:\WINDOWS\system32\icsxml
2009-02-17 18:12:19 ----D---- C:\WINDOWS\system32\1033
2009-02-17 18:10:57 ----D---- C:\WINDOWS\Driver Cache
2009-02-17 18:10:56 ----D---- C:\WINDOWS\WinSxS
2009-02-13 01:47:33 ----D---- C:\WINDOWS\OLDSDVINOD
2009-02-12 23:55:13 ----D---- C:\Documents and Settings\All Users\Application Data\Yahoo!
2009-02-12 23:42:56 ----D---- C:\WINDOWS\system32\bits
2009-02-03 18:21:12 ----A---- C:\WINDOWS\system32\MRT.exe
2009-01-19 14:32:43 ----D---- C:\Documents and Settings
2009-01-19 09:02:38 ----D---- C:\WINDOWS\ServicePackFiles
2009-01-19 08:51:21 ----SD---- C:\WINDOWS\Tasks
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2008-10-30 75072]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2007-03-01 28352]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.2.0.3; C:\WINDOWS\System32\DRIVERS\AegisP.sys [2009-01-18 17801]
R3 aic32p;aic32p; \??\C:\WINDOWS\System32\drivers\nlppjn.sys []
R3 GTNDIS5;GTNDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\GTNDIS5.SYS []
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2004-08-04 12160]
R3 NCHSSVAD;SoundTap Recorder; C:\WINDOWS\system32\drivers\nchssvad.sys [2008-06-08 27136]
R3 Ptserlp;PCTEL Serial Device Driver for PCI; C:\WINDOWS\System32\DRIVERS\ptserlp.sys [2001-08-17 112574]
R3 S3SavageNB;S3SavageNB; C:\WINDOWS\System32\DRIVERS\s3gnbm.sys [2004-08-03 166912]
R3 USB_RNDIS;Compact Wireless-G USB Network Adapter with SpeedBooster; C:\WINDOWS\System32\DRIVERS\usb8023.sys [2008-04-13 12800]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 VIAudio;VIA AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\ac97via.sys [2004-08-03 84480]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\System32\DRIVERS\kbdhid.sys [2008-04-13 14592]
S3 avgntflt;avgntflt; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 RT73;Linksys Home Wireless-G USB Adapter Driver; C:\WINDOWS\System32\DRIVERS\rt73.sys [2005-11-24 245248]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirScheduler;Avira AntiVir Personal - Free Antivirus Scheduler; C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe [2008-10-15 68865]
R2 Pctspk;PCTEL Speaker Phone; C:\WINDOWS\system32\pctspk.exe [2001-08-17 86016]
R2 WinVNC4;VNC Server Version 4; C:\Program Files\RealVNC\VNC4\WinVNC4.exe [2008-10-15 439632]
S2 AntiVirService;Avira AntiVir Personal - Free Antivirus Guard; C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe []
S2 WUSB54GSCSVC;WUSB54GSCSVC; C:\Program Files\Compact Wireless-G USB Network Adapter with SpeedBooster\WLService.exe [2005-07-04 53307]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
-----------------EOF-----------------