info.txt logfile of random's system information tool 1.06 2009-04-11 20:05:21
======Uninstall list======
Adobe Flash Player 10 Plugin-->C:\WINNT\System32\Macromed\Flash\uninstall_plugin.exe
Adobe Flash Player ActiveX-->C:\WINNT\System32\Macromed\Flash\uninstall_activeX.exe
Ask Toolbar-->"C:\Program Files\AskBarDis\unins001.exe"
Canon MP150-->"C:\WINNT\system32\CanonMP Uninstaller Information\{CA9A3609-3ECC-4574-8824-A8161A71A603}\DelDrv.exe" /U:{CA9A3609-3ECC-4574-8824-A8161A71A603} /L0x0009
FrostWire 4.17.2-->C:\Program Files\FrostWire\Uninstall.exe
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for MDAC 2.53 (KB927779)-->"C:\WINNT\$SQLUninstallMDAC25SP3-KB927779-x86-ENU$\spuninst\spuninst.exe"
Java(TM) 6 Update 5-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Mozilla Firefox (3.0.4)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
Panda ActiveScan-->C:\WINNT\System32\ASUninst.exe Panda ActiveScan
Prism Video Converter-->C:\Program Files\NCH Software\Prism\uninst.exe
SA30xx Device Manager-->C:\Program Files\InstallShield Installation Information\{289CDCBA-1E82-460A-9DCA-E9FB6BAC1A42}\setup.exe -runfromtemp -l0x0009 -removeonly
SA30xx Media Converter-->C:\Program Files\InstallShield Installation Information\{1E06D48E-5448-4BCC-9F87-9FB4EBD59898}\setup.exe -runfromtemp -l0x0009 -removeonly
Security Update for DirectX 9 (KB951698)-->"C:\WINNT\$NtUninstallKB951698_DX9$\spuninst\spuninst.exe"
Security Update for Windows 2000 (KB941569)-->"C:\WINNT\$NtUninstallKB941569$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB911564)-->"C:\WINNT\$NtUninstallKB911564$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB952069)-->"C:\WINNT\$NtUninstallKB952069_WM71$\spuninst\spuninst.exe"
Security Update for Windows Media Player 6.4 (KB925398)-->"C:\WINNT\$NtUninstallKB925398_WMP64$\spuninst\spuninst.exe"
Security Update for Windows Media Player 6.4 (KB954600)-->"C:\WINNT\$NtUninstallKB954600_WM41$\spuninst\spuninst.exe"
Security Update for Windows Media Player 9 (KB936782)-->"C:\WINNT\$NtUninstallKB936782_WMP9$\spuninst\spuninst.exe"
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Update Rollup 1 for Windows 2000 SP4-->"C:\WINNT\$NtUpdateRollupPackUninstall$\spuninst\spuninst.exe"
WavePad Sound Editor-->C:\Program Files\NCH Swift Sound\WavePad\uninst.exe
Windows 2000 Hotfix - KB842773-->C:\WINNT\$NtUninstallKB842773$\spuninst\spuninst.exe
Windows 2000 Hotfix - KB893756-->"C:\WINNT\$NtUninstallKB893756$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB896358-->"C:\WINNT\$NtUninstallKB896358$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB896422-->"C:\WINNT\$NtUninstallKB896422$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB896423-->"C:\WINNT\$NtUninstallKB896423$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB899587-->"C:\WINNT\$NtUninstallKB899587$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB899589-->"C:\WINNT\$NtUninstallKB899589$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB900725-->"C:\WINNT\$NtUninstallKB900725$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB901017-->"C:\WINNT\$NtUninstallKB901017$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB901214-->"C:\WINNT\$NtUninstallKB901214$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB905414-->"C:\WINNT\$NtUninstallKB905414$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB905495-->"C:\WINNT\$NtUninstallKB905495-IE6SP1-20050805.184113$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB905749-->"C:\WINNT\$NtUninstallKB905749$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB908519-->"C:\WINNT\$NtUninstallKB908519$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB908531-->"C:\WINNT\$NtUninstallKB908531$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB911280-->"C:\WINNT\$NtUninstallKB911280$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB913580-->"C:\WINNT\$NtUninstallKB913580$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB914388-->"C:\WINNT\$NtUninstallKB914388$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB917008-->"C:\WINNT\$NtUninstallKB917008$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB917537-->"C:\WINNT\$NtUninstallKB917537$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB918118-->"C:\WINNT\$NtUninstallKB918118$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB920213-->"C:\WINNT\$NtUninstallKB920213$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB920670-->"C:\WINNT\$NtUninstallKB920670$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB920683-->"C:\WINNT\$NtUninstallKB920683$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB920685-->"C:\WINNT\$NtUninstallKB920685$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB921398-->"C:\WINNT\$NtUninstallKB921398$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB922582-->"C:\WINNT\$NtUninstallKB922582$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB923191-->"C:\WINNT\$NtUninstallKB923191$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB923810-->"C:\WINNT\$NtUninstallKB923810$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB923980-->"C:\WINNT\$NtUninstallKB923980$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB924270-->"C:\WINNT\$NtUninstallKB924270$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB924667-->"C:\WINNT\$NtUninstallKB924667$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB925902-->"C:\WINNT\$NtUninstallKB925902$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB926122-->"C:\WINNT\$NtUninstallKB926122$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB926247-->"C:\WINNT\$NtUninstallKB926247$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB926436-->"C:\WINNT\$NtUninstallKB926436$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB927891-->"C:\WINNT\$NtUninstallKB927891$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB928843-->"C:\WINNT\$NtUninstallKB928843$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB930178-->"C:\WINNT\$NtUninstallKB930178$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB931784-->"C:\WINNT\$NtUninstallKB931784$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB933729-->"C:\WINNT\$NtUninstallKB933729$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB935839-->"C:\WINNT\$NtUninstallKB935839$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB935840-->"C:\WINNT\$NtUninstallKB935840$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB937894-->"C:\WINNT\$NtUninstallKB937894$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB938464-->"C:\WINNT\$NtUninstallKB938464-IE6SP1-20080429.120000$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB938827-->"C:\WINNT\$NtUninstallKB938827$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB943055-->"C:\WINNT\$NtUninstallKB943055$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB943485-->"C:\WINNT\$NtUninstallKB943485$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB944338-->"C:\WINNT\$NtUninstallKB944338$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB945553-->"C:\WINNT\$NtUninstallKB945553$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB948590-->"C:\WINNT\$NtUninstallKB948590$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB950749-->"C:\WINNT\$NtUninstallKB950749$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB950974-->"C:\WINNT\$NtUninstallKB950974$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB951066-->"C:\WINNT\$NtUninstallKB951066-OE6SP1-20080625.120000$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB951071-->"C:\WINNT\$NtUninstallKB951071$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB951698-->"C:\WINNT\$NtUninstallKB951698$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB951748-->"C:\WINNT\$NtUninstallKB951748$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB952954-->"C:\WINNT\$NtUninstallKB952954$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB954211-->"C:\WINNT\$NtUninstallKB954211$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB955069-->"C:\WINNT\$NtUninstallKB955069$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB956390-->"C:\WINNT\$NtUninstallKB956390-IE6SP1-20080820.120000$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB956391-->"C:\WINNT\$NtUninstallKB956391$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB956802-->"C:\WINNT\$NtUninstallKB956802$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB957095-->"C:\WINNT\$NtUninstallKB957095$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB957097-->"C:\WINNT\$NtUninstallKB957097$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB958215-->"C:\WINNT\$NtUninstallKB958215-IE6SP1-20081016.120000$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB958644-->"C:\WINNT\$NtUninstallKB958644$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB958687-->"C:\WINNT\$NtUninstallKB958687$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB958690-->"C:\WINNT\$NtUninstallKB958690$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB960225-->"C:\WINNT\$NtUninstallKB960225$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB960714-->"C:\WINNT\$NtUninstallKB960714-IE6SP1-20081211.120000$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB960715-->"C:\WINNT\$NtUninstallKB960715$\spuninst\spuninst.exe"
Windows 2000 Hotfix - KB967715-->"C:\WINNT\$NtUninstallKB967715$\spuninst\spuninst.exe"
Windows 2000 Service Pack 4-->C:\WINNT\$NtServicePackUninstall$\spuninst\spuninst.exe
Windows Installer 3.1 (KB893803)-->"C:\WINNT\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
WinPatrol 2009-->C:\PROGRA~1\BILLPS~1\WINPAT~1\Setup.exe /remove /q0
WinZip 12.0-->MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240B7}
Xfire (remove only)-->"C:\Program Files\Xfire\uninst.exe"
======System event log======
Computer Name: Q-97FBMBPER9UG0
Event Code: 7
Message: The device, \Device\Harddisk0\DR0, has a bad block.
Record Number: 2713
Source Name: Disk
Time Written: 20081109190934.000000-360
Event Type: error
User:
Computer Name: Q-97FBMBPER9UG0
Event Code: 7
Message: The device, \Device\Harddisk0\DR0, has a bad block.
Record Number: 2712
Source Name: Disk
Time Written: 20081109190927.000000-360
Event Type: error
User:
Computer Name: Q-97FBMBPER9UG0
Event Code: 7
Message: The device, \Device\Harddisk0\DR0, has a bad block.
Record Number: 2711
Source Name: Disk
Time Written: 20081109190920.000000-360
Event Type: error
User:
Computer Name: Q-97FBMBPER9UG0
Event Code: 7
Message: The device, \Device\Harddisk0\DR0, has a bad block.
Record Number: 2710
Source Name: Disk
Time Written: 20081109190914.000000-360
Event Type: error
User:
Computer Name: Q-97FBMBPER9UG0
Event Code: 7
Message: The device, \Device\Harddisk0\DR0, has a bad block.
Record Number: 2709
Source Name: Disk
Time Written: 20081109190907.000000-360
Event Type: error
User:
=====Application event log=====
Computer Name: Q-97FBMBPER9UG0
Event Code: 3101
Message: Unable to read IO control information from NBT device.
Record Number: 106
Source Name: perfctrs
Time Written: 20080219220123.000000-360
Event Type: error
User:
Computer Name: Q-97FBMBPER9UG0
Event Code: 3101
Message: Unable to read IO control information from NBT device.
Record Number: 103
Source Name: perfctrs
Time Written: 20080216201550.000000-360
Event Type: error
User:
Computer Name: Q-97FBMBPER9UG0
Event Code: 3101
Message: Unable to read IO control information from NBT device.
Record Number: 101
Source Name: perfctrs
Time Written: 20080215141219.000000-360
Event Type: error
User:
Computer Name: Q-97FBMBPER9UG0
Event Code: 3101
Message: Unable to read IO control information from NBT device.
Record Number: 99
Source Name: perfctrs
Time Written: 20080214230317.000000-360
Event Type: error
User:
Computer Name: Q-97FBMBPER9UG0
Event Code: 1000
Message:
Record Number: 26
Source Name: Microsoft Windows Media Player
Time Written: 20070909003920.000000-300
Event Type: error
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Os2LibPath"=%SystemRoot%\system32\os2\dll;
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=5
"PROCESSOR_IDENTIFIER"=x86 Family 5 Model 8 Stepping 1, GenuineIntel
"PROCESSOR_REVISION"=0801
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
-----------------EOF-----------------
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrator at 2009-04-11 20:03:01
Microsoft Windows 2000 Professional Service Pack 4
System drive C: has 8 GB (67%) free of 11 GB
Total RAM: 127 MB (9% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:04, on 2009-04-11
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\Explorer.EXE
C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Administrator.Q-97FBMBPER9UG0\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Administrator.exe
C:\WINNT\system32\taskmgr.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.ask.com?gcht=HC&o=101676&l=dis
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar1.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL (file missing)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar1.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL (file missing)
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe -expressboot
O4 - HKCU\..\Run: [Performance Center] C:\Program Files\Ascentive\Performance Center\APCMain.exe -m
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (file missing)
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O24 - Desktop Component 0: (no name) - file:///C:/Documents%20and%20Settings/Administrator.Q-97FBMBPER9UG0/Desktop/Wallpapers/Gears%20Of%20War/GearsEmblem.jpg
--
End of file - 4277 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
AskBar BHO - C:\Program Files\AskBarDis\bar\bin\askBar1.dll [2008-09-08 279944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll [2008-02-22 509328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A057A204-BACC-4D26-9990-79A187E2698E}]
AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E718888-423F-11D2-876E-00A0C9082467} - &Radio - C:\WINNT\System32\msdxm.ocx [2005-03-31 844560]
{3041d03e-fd4b-44e0-b742-2d9b88305f98} - Ask Toolbar - C:\Program Files\AskBarDis\bar\bin\askBar1.dll [2008-09-08 279944]
{A057A204-BACC-4D26-9990-79A187E2698E} - AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Synchronization Manager"=mobsync.exe /logon []
"WinPatrol"=C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe [2009-03-17 337216]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Performance Center"=C:\Program Files\Ascentive\Performance Center\APCMain.exe -m []
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-01-26 2144088]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSEXESVC]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PSEXESVC]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=149
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======List of files/folders created in the last 1 months======
2009-04-11 20:03:01 ----D---- C:\rsit
2009-04-11 17:45:26 ----A---- C:\WINNT\PSEXESVC.EXE
2009-04-11 17:45:03 ----D---- C:\WINNT\temp
2009-04-11 17:33:59 ----A---- C:\WINNT\zip.exe
2009-04-11 17:33:59 ----A---- C:\WINNT\VFIND.exe
2009-04-11 17:33:59 ----A---- C:\WINNT\SWSC.exe
2009-04-11 17:33:59 ----A---- C:\WINNT\SWREG.exe
2009-04-11 17:33:59 ----A---- C:\WINNT\sed.exe
2009-04-11 17:33:59 ----A---- C:\WINNT\grep.exe
2009-04-11 17:33:59 ----A---- C:\WINNT\fdsv.exe
2009-04-11 17:33:58 ----A---- C:\WINNT\SWXCACLS.exe
2009-04-11 17:33:39 ----D---- C:\WINNT\ERDNT
2009-04-11 17:33:36 ----D---- C:\CleanMe
2009-04-11 17:33:31 ----A---- C:\WINNT\system32\CF15570.exe
2009-04-11 17:32:30 ----D---- C:\Qoobox
2009-04-11 17:32:15 ----A---- C:\pv.exe
2009-04-09 21:37:16 ----D---- C:\Documents and Settings\Administrator.Q-97FBMBPER9UG0\Application Data\AVGTOOLBAR
2009-04-09 20:16:09 ----D---- C:\Program Files\AVG
2009-04-09 20:16:08 ----D---- C:\Documents and Settings\All Users.WINNT\Application Data\avg8
2009-04-09 20:15:53 ----D---- C:\WINNT\winsxs
2009-04-06 18:01:02 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-04-06 17:48:56 ----HD---- C:\Documents and Settings\All Users.WINNT\Application Data\CanonBJ
2009-04-06 17:48:16 ----A---- C:\WINNT\system32\CNMVS7K.DLL
2009-04-06 17:48:13 ----A---- C:\WINNT\system32\CNMLM7K.DLL
2009-04-05 18:56:36 ----A---- C:\WINNT\system32\MRT.exe
2009-04-05 18:55:50 ----A---- C:\WINNT\system32\jit.dll
2009-04-05 18:55:50 ----A---- C:\WINNT\setdebug.exe
2009-04-05 18:55:49 ----A---- C:\WINNT\system32\javaee.dll
2009-04-05 18:55:48 ----A---- C:\WINNT\system32\dx3j.dll
2009-04-05 18:54:53 ----A---- C:\WINNT\system32\wjview.exe
2009-04-05 18:54:50 ----A---- C:\WINNT\system32\vmhelper.dll
2009-04-05 18:54:49 ----A---- C:\WINNT\system32\msjdbc10.dll
2009-04-05 18:54:45 ----A---- C:\WINNT\system32\msjava.dll
2009-04-05 18:54:44 ----A---- C:\WINNT\system32\msawt.dll
2009-04-05 18:54:43 ----A---- C:\WINNT\system32\jview.exe
2009-04-05 18:54:43 ----A---- C:\WINNT\system32\jdbgmgr.exe
2009-04-05 18:54:40 ----A---- C:\WINNT\system32\javart.dll
2009-04-05 18:54:40 ----A---- C:\WINNT\system32\javaprxy.dll
2009-04-05 18:54:39 ----A---- C:\WINNT\system32\javacypt.dll
2009-04-05 18:54:30 ----A---- C:\WINNT\system32\clspack.exe
2009-04-05 16:19:51 ----D---- C:\Documents and Settings\All Users.WINNT\Application Data\NCH Software
2009-04-05 14:01:20 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-04-05 13:30:55 ----D---- C:\Program Files\Panda Security
2009-04-05 12:56:13 ----D---- C:\Documents and Settings\Administrator.Q-97FBMBPER9UG0\Application Data\Help
2009-04-04 17:04:21 ----D---- C:\Documents and Settings\Administrator.Q-97FBMBPER9UG0\Application Data\WinPatrol
2009-04-04 17:03:50 ----D---- C:\Program Files\BillP Studios
2009-04-04 10:44:27 ----D---- C:\Program Files\FrostWire
2009-04-04 10:42:55 ----D---- C:\Program Files\AskBarDis
2009-03-29 14:34:32 ----HD---- C:\WINNT\system32\CanonMP Uninstaller Information
2009-03-29 14:34:20 ----A---- C:\WINNT\system32\CNCU150.DLL
2009-03-29 14:34:20 ----A---- C:\WINNT\system32\CNCL150.DLL
2009-03-29 14:33:44 ----A---- C:\WINNT\system32\cocpyinf.dll
2009-03-29 14:33:43 ----HD---- C:\CanonMP
2009-03-28 00:39:28 ----D---- C:\Documents and Settings\Administrator.Q-97FBMBPER9UG0\Application Data\NCH Software
2009-03-27 23:44:06 ----D---- C:\Program Files\NCH Software
2009-03-25 07:57:29 ----HD---- C:\WINNT\$SQLUninstallMDAC25SP3-KB927779-x86-ENU$
2009-03-25 07:56:06 ----HD---- C:\WINNT\$NtUninstallKB936782_WMP9$
2009-03-25 07:54:31 ----HD---- C:\WINNT\$NtUninstallKB952069_WM71$
2009-03-25 07:54:00 ----HD---- C:\WINNT\$NtUninstallKB925398_WMP64$
2009-03-25 07:53:28 ----HD---- C:\WINNT\$NtUninstallKB911564$
2009-03-25 07:52:53 ----HD---- C:\WINNT\$NtUninstallKB954600_WM41$
2009-03-24 15:46:58 ----D---- C:\Program Files\Adaptec
2009-03-24 08:13:03 ----HD---- C:\WINNT\$NtUninstallKB917537$
2009-03-24 08:10:51 ----HD---- C:\WINNT\$NtUninstallKB951071$
2009-03-24 08:09:40 ----HD---- C:\WINNT\$NtUninstallKB926247$
2009-03-24 08:08:07 ----HD---- C:\WINNT\$NtUninstallKB951698_DX9$
2009-03-23 07:25:05 ----D---- C:\Program Files\Common Files\Hypnotizer
2009-03-23 05:48:47 ----A---- C:\WINNT\system32\drmstor.dll
2009-03-23 05:48:47 ----A---- C:\WINNT\system32\drmclien.dll
2009-03-23 03:10:22 ----D---- C:\FOUND.000
2009-03-22 20:51:50 ----A---- C:\Cucu_Video_log.txt
2009-03-22 20:28:58 ----D---- C:\Documents and Settings\Administrator.Q-97FBMBPER9UG0\Application Data\vlc
2009-03-22 19:40:57 ----D---- C:\Program Files\VideoLAN
2009-03-22 19:27:03 ----A---- C:\WINNT\system32\snprfdll.dll
2009-03-22 19:26:59 ----A---- C:\WINNT\system32\smtpctrs.ini
2009-03-22 19:26:59 ----A---- C:\WINNT\system32\smtpctrs.dll
2009-03-22 19:26:59 ----A---- C:\WINNT\system32\smtpapi.dll
2009-03-22 19:26:58 ----A---- C:\WINNT\system32\rwnh.dll
2009-03-22 19:26:57 ----A---- C:\WINNT\system32\regtrace.exe
2009-03-22 19:26:57 ----A---- C:\WINNT\system32\ntfsdrct.ini
2009-03-22 19:26:56 ----A---- C:\WINNT\system32\fcachdll.dll
2009-03-22 19:26:56 ----A---- C:\WINNT\system32\dt_ctrl.dll
2009-03-22 19:26:55 ----A---- C:\WINNT\system32\adsiisex.dll
2009-03-22 19:25:34 ----D---- C:\WINNT\system32\msmq
2009-03-22 18:33:36 ----D---- C:\Documents and Settings\Administrator.Q-97FBMBPER9UG0\Application Data\Malwarebytes
2009-03-22 18:33:05 ----D---- C:\Documents and Settings\All Users.WINNT\Application Data\Malwarebytes
2009-03-22 15:20:24 ----A---- C:\WINNT\system32\msvcp60.dll
2009-03-22 15:20:23 ----A---- C:\WINNT\system32\mfc42.dll
2009-03-22 15:20:23 ----A---- C:\WINNT\system32\atl.dll
2009-03-22 15:17:01 ----N---- C:\WINNT\system32\MSVBVM60.DLL
2009-03-22 14:27:20 ----D---- C:\Documents and Settings\Administrator.Q-97FBMBPER9UG0\Application Data\Xfire
2009-03-22 14:25:58 ----D---- C:\Program Files\Xfire
2009-03-22 14:08:47 ----A---- C:\WINNT\system32\msvidctl.dll
2009-03-22 14:08:46 ----A---- C:\WINNT\system32\psisdecd.dll
2009-03-22 14:08:45 ----A---- C:\WINNT\system32\wstdecod.dll
2009-03-22 14:08:45 ----A---- C:\WINNT\system32\msyuv.dll
2009-03-22 14:08:44 ----A---- C:\WINNT\system32\ksuser.dll
2009-03-22 14:08:40 ----A---- C:\WINNT\system32\qedwipes.dll
2009-03-22 14:08:39 ----A---- C:\WINNT\system32\qedit.dll
2009-03-22 14:08:39 ----A---- C:\WINNT\system32\mswebdvd.dll
2009-03-22 14:08:39 ----A---- C:\WINNT\system32\msdmo.dll
2009-03-22 14:08:36 ----A---- C:\WINNT\system32\qdvd.dll
2009-03-22 14:08:35 ----A---- C:\WINNT\system32\qdv.dll
2009-03-22 14:08:35 ----A---- C:\WINNT\system32\qcap.dll
2009-03-22 14:08:35 ----A---- C:\WINNT\system32\mciqtz32.dll
2009-03-22 14:08:35 ----A---- C:\WINNT\system32\encapi.dll
2009-03-22 14:08:35 ----A---- C:\WINNT\system32\devenum.dll
2009-03-22 14:08:35 ----A---- C:\WINNT\system32\amstream.dll
2009-03-22 14:08:34 ----A---- C:\WINNT\system32\d3dxof.dll
2009-03-22 14:08:34 ----A---- C:\WINNT\system32\d3drm.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\dswave.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\dmusic.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\dmsynth.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\dmstyle.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\dmscript.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\dmloader.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\dmime.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\dmcompos.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\dmband.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\d3dramp.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\d3dpmesh.dll
2009-03-22 14:08:33 ----A---- C:\WINNT\system32\d3dim.dll
2009-03-22 14:08:32 ----A---- C:\WINNT\system32\dinput8.dll
2009-03-22 14:08:30 ----A---- C:\WINNT\system32\d3d9.dll
2009-03-22 14:08:30 ----A---- C:\WINNT\system32\d3d8.dll
2009-03-22 14:08:28 ----A---- C:\WINNT\system32\dxdiagn.dll
2009-03-22 14:08:27 ----A---- C:\WINNT\system32\dxdllreg.exe
2009-03-22 14:08:27 ----A---- C:\WINNT\system32\dxdiag.exe
2009-03-22 14:08:27 ----A---- C:\WINNT\system32\dsdmoprp.dll
2009-03-22 14:08:27 ----A---- C:\WINNT\system32\dsdmo.dll
2009-03-22 14:08:27 ----A---- C:\WINNT\system32\dpvvox.dll
2009-03-22 14:08:27 ----A---- C:\WINNT\system32\dpvsetup.exe
2009-03-22 14:08:26 ----A---- C:\WINNT\system32\dpvoice.dll
2009-03-22 14:08:26 ----A---- C:\WINNT\system32\dpvacm.dll
2009-03-22 14:08:26 ----A---- C:\WINNT\system32\dpnsvr.exe
2009-03-22 14:08:26 ----A---- C:\WINNT\system32\dpnlobby.dll
2009-03-22 14:08:26 ----A---- C:\WINNT\system32\dimap.dll
2009-03-22 14:08:26 ----A---- C:\WINNT\system32\diactfrm.dll
2009-03-22 14:08:25 ----A---- C:\WINNT\system32\pid.dll
2009-03-22 14:08:25 ----A---- C:\WINNT\system32\dx8vb.dll
2009-03-22 14:08:25 ----A---- C:\WINNT\system32\dpnhupnp.dll
2009-03-22 14:08:25 ----A---- C:\WINNT\system32\dpnhpast.dll
2009-03-22 14:08:25 ----A---- C:\WINNT\system32\dpnet.dll
2009-03-22 14:08:25 ----A---- C:\WINNT\system32\dpnaddr.dll
2009-03-22 14:08:25 ----A---- C:\WINNT\system32\d3d8thk.dll
2009-03-22 14:08:24 ----A---- C:\WINNT\system32\gcdef.dll
2009-03-22 14:08:24 ----A---- C:\WINNT\system32\dx7vb.dll
2009-03-22 14:08:23 ----A---- C:\WINNT\system32\dsound3d.dll
2009-03-22 14:08:23 ----A---- C:\WINNT\system32\dsound.dll
2009-03-22 14:08:23 ----A---- C:\WINNT\system32\dpwsockx.dll
2009-03-22 14:08:23 ----A---- C:\WINNT\system32\dpmodemx.dll
2009-03-22 14:08:23 ----A---- C:\WINNT\system32\dplayx.dll
2009-03-22 14:08:23 ----A---- C:\WINNT\system32\dplaysvr.exe
2009-03-22 14:08:22 ----A---- C:\WINNT\system32\dinput.dll
2009-03-22 14:08:22 ----A---- C:\WINNT\system32\ddraw.dll
2009-03-22 14:08:22 ----A---- C:\WINNT\system32\d3dim700.dll
2009-03-22 14:08:07 ----D---- C:\WINNT\system32\DirectX
2009-03-22 14:07:25 ----D---- C:\Program Files\Philips
2009-03-22 14:01:53 ----D---- C:\Documents and Settings\All Users.WINNT\Application Data\WinZip
2009-03-22 10:10:19 ----HD---- C:\WINNT\$NtUninstallKB960715$
2009-03-22 10:09:52 ----HD---- C:\WINNT\$NtUninstallKB960714-IE6SP1-20081211.120000$
2009-03-22 10:09:31 ----HD---- C:\WINNT\$NtUninstallKB967715$
2009-03-22 10:08:30 ----HD---- C:\WINNT\$NtUninstallKB960225$
2009-03-22 10:07:58 ----HD---- C:\WINNT\$NtUninstallKB958215-IE6SP1-20081016.120000$
2009-03-22 10:07:36 ----HD---- C:\WINNT\$NtUninstallKB958687$
2009-03-22 10:07:17 ----HD---- C:\WINNT\$NtUninstallKB956802$
2009-03-22 10:06:44 ----HD---- C:\WINNT\$NtUninstallKB958690$
2009-03-21 14:02:49 ----D---- C:\Documents and Settings\Administrator.Q-97FBMBPER9UG0\Application Data\AdobeUM
2009-03-21 12:48:24 ----D---- C:\Documents and Settings\Administrator.Q-97FBMBPER9UG0\Application Data\FrostWire
2009-03-21 12:18:03 ----D---- C:\Program Files\uTorrent
2009-03-21 12:17:53 ----D---- C:\Documents and Settings\Administrator.Q-97FBMBPER9UG0\Application Data\uTorrent
2009-03-20 17:25:02 ----A---- C:\WINNT\system32\xfcodec.dll
======List of files/folders modified in the last 1 months======
2009-04-11 17:51:32 ----A---- C:\WINNT\system.ini
2009-03-25 08:00:40 ----A---- C:\WINNT\updcustom.dll.log
2009-03-25 07:57:10 ----A---- C:\WINNT\imsins.BAK
2009-03-21 15:19:06 ----A---- C:\WINNT\system32\dfrg.msc
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINNT\System32\Drivers\avgldx86.sys [2009-04-09 325640]
R1 AvgTdiX;AVG Free8 Network Redirector; C:\WINNT\System32\Drivers\avgtdix.sys [2009-04-09 108552]
R3 catchme;catchme; \??\C:\DOCUME~1\ADMINI~1.Q-9\LOCALS~1\Temp\catchme.sys []
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINNT\System32\DRIVERS\CmBatt.sys [2003-06-19 9904]
R3 cwbwdm_device;Crystal WDM Audio Codec Driver; C:\WINNT\system32\drivers\cwbwdm.sys [1999-11-01 79264]
R3 el575nd5;3Com Megahertz 10/100 LAN CardBus PC Card Driver; C:\WINNT\System32\DRIVERS\el575nd5.sys [1999-10-19 77072]
R3 neo20xx;neo20xx; C:\WINNT\System32\DRIVERS\neo20xx.sys [1999-10-18 39888]
R3 uhcd;Microsoft USB Universal Host Controller Driver; C:\WINNT\System32\DRIVERS\uhcd.sys [2003-06-19 32848]
R3 USB_RNDIS;TI AR7 DSL Modem Device Driver; C:\WINNT\System32\DRIVERS\usb8023k.sys [2005-07-20 11136]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\WINNT\System32\DRIVERS\usbhub.sys [2003-06-19 40176]
S1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINNT\System32\Drivers\avgmfx86.sys [2009-04-09 27656]
S1 Cdr4_2K;Cdr4_2K; C:\WINNT\system32\drivers\Cdr4_2K.sys [2007-12-11 9336]
S1 Cdralw2k;Cdralw2k; C:\WINNT\system32\drivers\Cdralw2k.sys [2007-12-11 9464]
S3 CCDECODE;Closed Caption Decoder; C:\WINNT\system32\DRIVERS\CCDECODE.sys [2004-07-09 16384]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINNT\System32\DRIVERS\HPZid412.sys [2006-12-06 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINNT\System32\DRIVERS\HPZipr12.sys [2006-12-06 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINNT\System32\DRIVERS\HPZius12.sys [2006-12-06 21568]
S3 MPE;BDA MPE Filter; C:\WINNT\system32\DRIVERS\MPE.sys [2004-07-09 15104]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINNT\system32\drivers\MSTEE.sys [2002-12-12 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINNT\system32\DRIVERS\NABTSFEC.sys [2004-07-09 83968]
S3 SDTHOOK;SDTHOOK; C:\WINNT\System32\DRIVERS\SDTHOOK.sys [2007-06-05 44928]
S3 SLIP;BDA Slip De-Framer; C:\WINNT\system32\DRIVERS\SLIP.sys [2004-07-09 10880]
S3 streamip;BDA IPSink; C:\WINNT\system32\DRIVERS\StreamIP.sys [2004-07-09 14976]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINNT\System32\DRIVERS\usbprint.sys [2003-06-19 21872]
S3 usbscan;USB Scanner Driver; C:\WINNT\System32\DRIVERS\usbscan.sys [2003-06-19 12592]
S3 USBSTOR;USB Mass Storage Driver; C:\WINNT\System32\DRIVERS\USBSTOR.SYS [2003-06-19 21552]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINNT\system32\DRIVERS\WSTCODEC.SYS [2004-07-09 18688]
S4 dmload;dmload; C:\WINNT\System32\drivers\dmload.sys [2003-06-19 7312]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avg8wd;AVG Free8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2009-04-09 298264]
R2 StiSvc;Still Image Service; C:\WINNT\system32\stisvc.exe [2003-06-19 61712]
S3 WmdmPmSN;Portable Media Serial Number Service; C:\WINNT\System32\svchost.exe [1999-12-07 7952]
-----------------EOF-----------------