report cont.
--- Browser helper object list ---
{53707962-6F74-2D53-2644-206D7942484F} ()
BHO name:
CLSID name:
description: Spybot-S&D IE Browser plugin
classification: Legitimate
known filename: SDhelper.dll
info link:
http://spybot.eon.net.au/
info source: Patrick M. Kolla
Path: C:\PROGRA~1\SPYBOT~1\
Long name: SDHelper.dll
Short name:
Date (created): 10/30/2005 8:46:48 AM
Date (last access): 11/4/2005 12:32:28 AM
Date (last write): 5/31/2005 1:04:00 AM
Filesize: 853672
Attributes: archive
MD5: 250D787A5712D7768DDC133B3E477759
CRC32: D4589A41
Version: 1.4.0.0
--- ActiveX list ---
DirectAnimation Java Classes (DirectAnimation Java Classes)
DPF name: DirectAnimation Java Classes
CLSID name:
Installer:
Codebase: file://C:\WINDOWS\Java\classes\dajava.cab
description:
classification: Legitimate
known filename: %WINDIR%\Java\classes\dajava.cab
info link:
info source: Patrick M. Kolla
Microsoft XML Parser for Java (Microsoft XML Parser for Java)
DPF name: Microsoft XML Parser for Java
CLSID name:
Installer:
Codebase: file://C:\WINDOWS\Java\classes\xmldso.cab
description:
classification: Legitimate
known filename: %WINDIR%\Java\classes\xmldso.cab
info link:
info source: Patrick M. Kolla
{00000074-9980-0010-8000-00AA00389B71} ()
DPF name:
CLSID name:
Installer: C:\WINDOWS\Downloaded Program Files\voxacm.inf
Codebase:
http://codecs.microsoft.com/codecs/i386/voxacm.CAB
description:
classification: Open for discussion
known filename: IEAWSDC.DLL
info link:
info source: Safer Networking Ltd.
{00000161-0000-0010-8000-00AA00389B71} ()
DPF name:
CLSID name:
Installer: C:\WINDOWS\Downloaded Program Files\msaudio.inf
Codebase:
http://codecs.microsoft.com/codecs/i386/msaudio.cab
description: Microsoft Audio Codec
classification: Legitimate
known filename: MSAUDIO.CAB
info link:
info source: Patrick M. Kolla
{166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control)
DPF name:
CLSID name: Shockwave ActiveX Control
Installer:
Codebase:
description: Macromedia ShockWave Flash Player 7
classification: Legitimate
known filename: SWDIR.DLL
info link:
info source: Patrick M. Kolla
{254AA86E-5655-4518-AA87-185D7CC41801} (Rescue Technician Console)
DPF name:
CLSID name: Rescue Technician Console
Installer: C:\WINDOWS\Downloaded Program Files\RescueControl.inf
Codebase:
https://secure.logmeinrescue.com/TechConsole/RescueControl.cab
Path: C:\WINDOWS\Downloaded Program Files\
Long name: RescueControl.dll
Short name: RESCUE~1.DLL
Date (created): 7/7/2005 5:58:24 PM
Date (last access): 11/4/2005 1:03:36 AM
Date (last write): 10/13/2005 12:06:22 PM
Filesize: 1880800
Attributes: archive
MD5: B61028562302D5555811B3A67F33F9BD
CRC32: 8CB42BD9
Version: 1.0.0.84
{30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class)
DPF name:
CLSID name: YInstStarter Class
Installer: C:\Program Files\Yahoo!\Common\yinst.inf
Codebase: C:\Program Files\Yahoo!\Common\yinsthelper.dll
description: Yahoo! Installation helper
classification: Legitimate
known filename: %SystemRoot%\Downloaded Program Files\yinsthelper.dll
info link:
info source: Patrick M. Kolla
Path: C:\Program Files\Yahoo!\Common\
Long name: yinsthelper.dll
Short name: YINSTH~1.DLL
Date (created): 8/10/2005 8:10:10 PM
Date (last access): 10/31/2005 11:21:02 AM
Date (last write): 11/7/2004 3:29:46 PM
Filesize: 173168
Attributes: archive
MD5: 4C0658E518FA9D08E884DB717A7087AE
CRC32: FFDA1549
Version: 2004.11.7.1
{3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} (Office Update Installation Engine)
DPF name:
CLSID name: Office Update Installation Engine
Installer: C:\WINDOWS\Downloaded Program Files\opuc.inf
Codebase:
http://office.microsoft.com/officeupdate/content/opuc2.cab
description:
classification: Legitimate
known filename: opuc.dll
info link:
info source: Safer Networking Ltd.
Path: C:\WINDOWS\
Long name: opuc.dll
Short name:
Date (created): 8/27/2003 4:10:30 AM
Date (last access): 11/4/2005 1:11:42 AM
Date (last write): 1/18/2005 12:07:18 AM
Filesize: 326656
Attributes:
MD5: 20393D64F69F26361A97FD9AFB3C9243
CRC32: 0B4DBA7F
Version: 11.0.6466.0
{556EEC63-31E2-47C3-BF29-DFF799D2FE04} (Remote Access ActiveX Client)
DPF name:
CLSID name: Remote Access ActiveX Client
Installer: C:\WINDOWS\Downloaded Program Files\RACtrl.inf
Codebase:
https://secure.logmein.com/activex/RACtrl.cab
Path: C:\WINDOWS\Downloaded Program Files\
Long name: RACtrl.dll
Short name:
Date (created): 9/29/2005 5:19:48 PM
Date (last access): 11/4/2005 12:40:36 AM
Date (last write): 9/29/2005 5:19:48 PM
Filesize: 1282792
Attributes: archive
MD5: 9F6232005A0DD9CFE0E8CC41B485EC0A
CRC32: F7EBA7CB
Version: 1.0.0.222
{8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.3.1_15)
DPF name: Java Runtime Environment 1.3.1_15
CLSID name: Java Plug-in 1.3.1_15
Installer: C:\WINDOWS\Downloaded Program Files\jinstall-1_3_1_15.inf
Codebase:
http://java.sun.com/products/plugin/1.3/jinstall-13-win32.cab
description: Sun Java
classification: Legitimate
known filename: %PROGRAM FILES%\JabaSoft\JRE\*\Bin\npjava131.dll
info link:
info source: Patrick M. Kolla
Path: C:\Program Files\JavaSoft\JRE\1.3.1_15\bin\
Long name: NPJava131_15.dll
Short name: NPJAVA~1.DLL
Date (created): 1/29/2005 2:50:20 PM
Date (last access): 11/1/2005 7:30:26 AM
Date (last write): 12/8/2004 8:40:24 AM
Filesize: 53365
Attributes:
MD5: E3FD389B57416687BD51F6077CAE81A3
CRC32: 5BBA9C9F
Version: 1.3.1.15
{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBA} (Java Runtime Environment 1.3.1_15)
DPF name: Java Runtime Environment 1.3.1_15
CLSID name: Java Plug-in 1.3.1_15
Installer: c:\winnt\Downloaded Program Files\jinstall_1_3_1_15.inf
Codebase:
http://java.sun.com/products/plugin/autodl/jinstall-1_3_1_15-windows-i586.cab
Path: C:\Program Files\JavaSoft\JRE\1.3.1_15\bin\
Long name: NPJava131_15.dll
Short name: NPJAVA~1.DLL
Date (created): 1/29/2005 2:50:20 PM
Date (last access): 11/4/2005 1:18:04 AM
Date (last write): 12/8/2004 8:40:24 AM
Filesize: 53365
Attributes:
MD5: E3FD389B57416687BD51F6077CAE81A3
CRC32: 5BBA9C9F
Version: 1.3.1.15
{D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object)
DPF name:
CLSID name: Shockwave Flash Object
Installer: C:\WINDOWS\Downloaded Program Files\swflash.inf
Codebase:
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
description: Macromedia Shockwave Flash Player
classification: Legitimate
known filename:
info link:
info source: Patrick M. Kolla
Path: C:\WINDOWS\system32\Macromed\Flash\
Long name: Flash.ocx
Short name:
Date (created): 4/8/2004 5:51:02 PM
Date (last access): 11/4/2005 12:37:22 AM
Date (last write): 4/8/2004 5:51:02 PM
Filesize: 939368
Attributes: archive
MD5: 2FB1D6FAB135CEE391AB3D70E1C26347
CRC32: 488FA4EC
Version: 7.0.19.0
{FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control)
DPF name:
CLSID name: Performance Viewer Activex Control
Installer: C:\WINDOWS\Downloaded Program Files\RACtrl.inf
Codebase:
https://secure.logmein.com/activex/ractrl.cab
Path: C:\WINDOWS\Downloaded Program Files\
Long name: RACtrl.dll
Short name:
Date (created): 9/29/2005 5:19:48 PM
Date (last access): 11/4/2005 12:40:36 AM
Date (last write): 9/29/2005 5:19:48 PM
Filesize: 1282792
Attributes: archive
MD5: 9F6232005A0DD9CFE0E8CC41B485EC0A
CRC32: F7EBA7CB
Version: 1.0.0.222