Main
Deckard's System Scanner v20071014.68
Run by Matija Hocevar on 2008-01-22 18:59:42
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
-- Last 5 Restore Point(s) --
44: 2008-01-22 17:54:52 UTC - RP89 - Deckard's System Scanner Restore Point
43: 2008-01-21 08:24:37 UTC - RP88 - Uniblue RegistryBooster
42: 2008-01-20 22:16:07 UTC - RP87 - System Checkpoint
41: 2008-01-19 20:45:59 UTC - RP86 - System Checkpoint
40: 2008-01-18 20:05:33 UTC - RP85 - Shockwave Player
-- First Restore Point --
1: 2007-12-13 15:38:37 UTC - RP46 - Removed Need For Speed - Porsche Unleashed
Backed up registry hives.
Performed disk cleanup.
-- HijackThis (run as Matija Hocevar.exe) --------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:01:58, on 22.1.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.20696)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\explorer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Documents and Settings\Matija Hocevar\Application Data\m\flec006.exe
C:\Documents and Settings\Matija Hocevar\Desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\MATIJA~1.EXE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.si/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2] C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe /S
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1275210071-583907252-725345543-1003\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Matija Hocevar')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
O4 - S-1-5-21-1275210071-583907252-725345543-1003 Startup: Mobiola Web Camera 2 for S60 3rd Edition.lnk = C:\Program Files\Mobiola Web Camera 2 for S60\BtCam.exe (User 'Matija Hocevar')
O4 - S-1-5-21-1275210071-583907252-725345543-1003 User Startup: Mobiola Web Camera 2 for S60 3rd Edition.lnk = C:\Program Files\Mobiola Web Camera 2 for S60\BtCam.exe (User 'Matija Hocevar')
O4 - Startup: Mobiola Web Camera 2 for S60 3rd Edition.lnk = C:\Program Files\Mobiola Web Camera 2 for S60\BtCam.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4D3DDD7C-689F-4ACA-B278-38608AB83875}: NameServer = 193.189.160.13 193.189.160.23
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 7913 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R1 srosa (Megadrv3) - c:\windows\system32\drivers\srosa.sys
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
R2 Nero BackItUp Scheduler 3 - c:\program files\nero\nero8\nero backitup\nbservice.exe
R3 ServiceLayer - "c:\program files\pc connectivity solution\servicelayer.exe" <Not Verified; Nokia.; PC Connectivity Solution>
-- Device Manager: Disabled ----------------------------------------------------
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: SM Bus Controller
Device ID: PCI\VEN_10DE&DEV_0084&SUBSYS_57001462&REV_A1\3&13C0B0C5&0&09
Manufacturer:
Name: SM Bus Controller
PNP Device ID: PCI\VEN_10DE&DEV_0084&SUBSYS_57001462&REV_A1\3&13C0B0C5&0&09
Service:
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Other PCI Bridge Device
Device ID: PCI\VEN_10DE&DEV_008C&SUBSYS_570C1462&REV_A3\3&13C0B0C5&0&20
Manufacturer:
Name: Other PCI Bridge Device
PNP Device ID: PCI\VEN_10DE&DEV_008C&SUBSYS_570C1462&REV_A3\3&13C0B0C5&0&20
Service:
Class GUID: {EEC5AD98-8080-425F-922A-DABF3DE3F69A}
Description: Nokia E50
Device ID: ROOT\WPD\0000
Manufacturer: Nokia
Name: Nokia E50
PNP Device ID: ROOT\WPD\0000
Service: WUDFRd
-- Scheduled Tasks -------------------------------------------------------------
2008-01-22 16:00:00 384 --a------ C:\WINDOWS\Tasks\HPpromotions journeysoftware.job
2008-01-16 14:56:03 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
-- Files created between 2007-12-22 and 2008-01-22 -----------------------------
2008-01-22 13:15:57 0 d--h----- C:\Documents and Settings\Matija Hocevar\Application Data\m
2008-01-21 17:14:37 0 d-------- C:\WINDOWS\system32\Kaspersky Lab
2008-01-21 17:14:37 0 d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-01-21 17:14:35 0 d-------- C:\WINDOWS\LastGood
2008-01-21 13:27:43 0 d-------- C:\Program Files\Trend Micro
2008-01-21 13:26:08 0 d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-01-21 09:35:17 0 d-------- C:\Documents and Settings\Matija Hocevar\Application Data\PrevxCSI
2008-01-21 09:22:31 0 d-------- C:\Documents and Settings\Matija Hocevar\Application Data\Uniblue
2008-01-21 01:38:15 0 d-------- C:\Documents and Settings\Matija Hocevar\.housecall6.6
2008-01-18 13:07:29 0 d-------- C:\Program Files\Makayama
2008-01-18 01:40:46 70660 --a------ C:\WINDOWS\system32\mdelk.exe
2008-01-18 01:25:26 114688 --a------ C:\WINDOWS\system32\btcamvideosource.dll <Not Verified; Warelex LLC; Mobiola Video Source>
2008-01-18 01:25:25 0 d-------- C:\Program Files\Mobiola Web Camera 2 for S60
2008-01-18 01:20:51 0 d-------- C:\Program Files\Mobiola Web Camera 2 for S60 3rd Edition
2008-01-18 01:19:09 0 d-------- C:\WINDOWS\system32\drivers\down
2008-01-17 23:57:34 0 d-------- C:\Documents and Settings\All Users\Application Data\Nokia
2008-01-16 15:25:52 0 d-------- C:\Program Files\iPod
2008-01-16 15:25:48 0 d-------- C:\Program Files\iTunes
2008-01-16 15:24:43 0 d-------- C:\Program Files\QuickTime
2008-01-10 13:46:43 0 d-------- C:\Documents and Settings\Matija Hocevar\Application Data\vlc
2008-01-09 21:05:48 0 d-------- C:\Documents and Settings\Matija Hocevar\Application Data\dvdcss
2008-01-09 20:56:19 0 d-------- C:\Program Files\VideoLAN
2008-01-09 12:36:59 0 d-------- C:\Program Files\ratDVD
2008-01-02 23:24:18 0 d-------- C:\Program Files\FileName Pro
2007-12-22 16:32:32 0 d-------- C:\Documents and Settings\Matija Hocevar\Application Data\Nokia Multimedia Player
2007-12-22 16:32:01 0 d-------- C:\Documents and Settings\Matija Hocevar\Phone Browser
-- Find3M Report ---------------------------------------------------------------
2008-01-21 01:33:27 0 d-------- C:\Program Files\Avast4
2008-01-19 13:42:28 0 d-------- C:\Documents and Settings\Matija Hocevar\Application Data\uTorrent
2008-01-18 21:05:51 2058 --a------ C:\WINDOWS\mozver.dat
2008-01-18 13:45:42 0 d-------- C:\Program Files\eMule
2008-01-18 00:01:49 0 d-------- C:\Documents and Settings\Matija Hocevar\Application Data\PC Suite
2008-01-18 00:01:48 0 d-------- C:\Documents and Settings\Matija Hocevar\Application Data\Nokia
2008-01-17 23:54:04 0 d-------- C:\Program Files\Nokia
2008-01-17 23:52:40 0 d-------- C:\Program Files\Common Files\Nokia
2008-01-13 00:51:02 0 d---s---- C:\Documents and Settings\Matija Hocevar\Application Data\Microsoft
2007-12-22 16:32:32 0 d-------- C:\Documents and Settings\Matija Hocevar\Application Data\Nokia Multimedia Player
2007-12-15 12:37:32 298 --a------ C:\WINDOWS\EReg072.dat
2007-12-15 12:36:52 0 d-------- C:\Program Files\Electronic Arts
2007-12-10 21:33:57 0 d-------- C:\Program Files\Common Files
2007-12-10 21:33:57 0 d-------- C:\Program Files\Common Files\DirectX
2007-12-06 22:31:40 0 d-------- C:\Documents and Settings\Matija Hocevar\Application Data\Command & Conquer 3 Tiberium Wars
2007-12-06 22:11:33 0 d-------- C:\Program Files\SystemRequirementsLab
2007-12-03 15:05:26 0 d-------- C:\Documents and Settings\Matija Hocevar\Application Data\Apple Computer
2007-11-29 21:17:41 0 d-------- C:\Program Files\MessengerDiscovery
2007-11-29 21:13:35 0 d-------- C:\Program Files\MSN Messenger
2007-11-28 22:18:33 0 d--h----- C:\Program Files\InstallShield Installation Information
2007-11-22 14:31:34 0 d-------- C:\Program Files\AC3Filter
2007-11-22 14:26:21 0 d-------- C:\Program Files\ffdshow
2007-11-22 14:24:29 0 d-------- C:\Program Files\DivX
2007-11-18 17:23:30 70273 --a------ C:\WINDOWS\hpoins05.dat
2007-11-16 21:31:31 0 --a------ C:\WINDOWS\nsreg.dat
2007-11-16 19:38:55 62 --ahs---- C:\Documents and Settings\Matija Hocevar\Application Data\desktop.ini
2007-11-16 18:52:11 0 -rahs---- C:\MSDOS.SYS
2007-11-16 18:52:11 0 -rahs---- C:\IO.SYS
2007-11-16 18:52:11 0 --a------ C:\CONFIG.SYS
2007-11-16 18:52:11 0 --a------ C:\AUTOEXEC.BAT
2007-11-16 18:48:47 21640 --a------ C:\WINDOWS\system32\emptyregdb.dat
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WinampAgent"="C:\Program Files\Winamp\winampa.exe" []
"NeroFilterCheck"="C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe" []
"NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [20.09.2007 09:51]
"PCSuiteTrayApplication"="C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe" [18.06.2007 15:10]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [13.09.2004 15:49]
"SoundMan"="SOUNDMAN.EXE" [17.11.2006 05:42 C:\WINDOWS\soundman.exe]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [10.10.2007 19:51]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [25.09.2007 01:11]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [04.10.2007 17:14]
"nwiz"="nwiz.exe" [04.10.2007 17:14 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [04.10.2007 17:14]
"avast!"="C:\PROGRA~1\Avast4\ashDisp.exe" [21.01.2008 18:03]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [10.01.2008 15:27]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [15.01.2008 03:22]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [04.08.2004 00:56]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe" [20.09.2007 15:35]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [17.11.2007 12:53]
"Uniblue RegistryBooster 2"="C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe" []
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [22.01.2008 18:59]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\runonce]
"ShowDeskFix"=regsvr32 /s /n /i:u shell32
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"Nokia.PCSync"=C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [4.11.2004 19:28:24]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"=0 (0x0)
SafeBoot registry key needs repairs. This machine cannot enter Safe Mode.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
@="Driver Group"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
@="DiskDrive"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
@="Hdc"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
@="Keyboard"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
@="Mouse"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
@="System"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
@="Volume"
-- End of Deckard's System Scanner: finished at 2008-01-22 19:02:27 ------------