ComboFix 09-05-29.01 - Shayne Johnson 30/05/2009 17:56.2 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.2047.1560 [GMT 10:00]
Running from: c:\documents and settings\Shayne Johnson\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Shayne Johnson\Desktop\CFScript.txt
FILE ::
"c:\StubInstaller.exe"
"c:\windows\ieocx.dll.vir"
"c:\windows\system32\drivers\UACvbqjbabwucfmlwm.sys.vir"
"c:\windows\system32\uacinit.dll.vir"
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Shayne Johnson\Application Data\Azureus
c:\documents and settings\Shayne Johnson\Application Data\Azureus\.certs
c:\documents and settings\Shayne Johnson\Application Data\Azureus\.keystore
c:\documents and settings\Shayne Johnson\Application Data\Azureus\.lock
c:\documents and settings\Shayne Johnson\Application Data\Azureus\active\cache.dat
c:\documents and settings\Shayne Johnson\Application Data\Azureus\azureus.config
c:\documents and settings\Shayne Johnson\Application Data\Azureus\azureus.config.bak
c:\documents and settings\Shayne Johnson\Application Data\Azureus\azureus.statistics
c:\documents and settings\Shayne Johnson\Application Data\Azureus\azureus.statistics.bak
c:\documents and settings\Shayne Johnson\Application Data\Azureus\banips.config
c:\documents and settings\Shayne Johnson\Application Data\Azureus\banips.config.bak
c:\documents and settings\Shayne Johnson\Application Data\Azureus\dht\addresses.dat
c:\documents and settings\Shayne Johnson\Application Data\Azureus\dht\block.dat
c:\documents and settings\Shayne Johnson\Application Data\Azureus\dht\contacts.dat
c:\documents and settings\Shayne Johnson\Application Data\Azureus\dht\diverse.dat
c:\documents and settings\Shayne Johnson\Application Data\Azureus\dht\general.dat
c:\documents and settings\Shayne Johnson\Application Data\Azureus\dht\version.dat
c:\documents and settings\Shayne Johnson\Application Data\Azureus\downloads.config
c:\documents and settings\Shayne Johnson\Application Data\Azureus\downloads.config.bak
c:\documents and settings\Shayne Johnson\Application Data\Azureus\friends.config
c:\documents and settings\Shayne Johnson\Application Data\Azureus\friends.config.bak
c:\documents and settings\Shayne Johnson\Application Data\Azureus\ipfilter.cache
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\alerts_1.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\AutoSpeed_1.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\AutoSpeedSearchHistory_1.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\clientid_1.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\debug_1.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\debug_2.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\Friends_1.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\NetStatus_1.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\seltrace_1.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\seltrace_2.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\SpeedMan_1.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\SpeedMan_2.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\thread_1.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\logs\thread_2.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\net\pm_4804.dat
c:\documents and settings\Shayne Johnson\Application Data\Azureus\plugins\azupnpav\azupnpav_0.2.1.jar
c:\documents and settings\Shayne Johnson\Application Data\Azureus\plugins\azupnpav\azupnpav_0.2.1.zip
c:\documents and settings\Shayne Johnson\Application Data\Azureus\plugins\azupnpav\azupnpav_0.2.2.jar
c:\documents and settings\Shayne Johnson\Application Data\Azureus\plugins\azupnpav\azupnpav_0.2.2.zip
c:\documents and settings\Shayne Johnson\Application Data\Azureus\plugins\azupnpav\azupnpav_0.2.5.jar
c:\documents and settings\Shayne Johnson\Application Data\Azureus\plugins\azupnpav\azupnpav_0.2.5.zip
c:\documents and settings\Shayne Johnson\Application Data\Azureus\plugins\azupnpav\plugin.properties
c:\documents and settings\Shayne Johnson\Application Data\Azureus\plugins\azupnpav\plugin.properties_0.2.1
c:\documents and settings\Shayne Johnson\Application Data\Azureus\plugins\azupnpav\plugin.properties_0.2.2
c:\documents and settings\Shayne Johnson\Application Data\Azureus\plugins\azupnpav\plugin.properties_0.2.5
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tables.config
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tables.config.bak
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tmp\AZU42284.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tmp\AZU42285.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tmp\AZU42286.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tmp\AZU42287.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tmp\AZU42288.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tmp\AZU42289.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tmp\AZU42290.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tmp\AZU42291.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tmp\AZU42292.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\-'mininova.org'-_The.Witcher.[MULTI5][PCDVD][
WwW.GamesTorrents.CoM].t3411.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\-'mininova.org'-_www.bitreactor.to_Worms.4.Mayhem-RELOADED.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\-'mininova.org'-_www[1].bitreactor.to_Warhammer_Mark_Of_Chaos_Razor1911.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\(PSX)_Parappa_The_Rapper_-_Full_CD.3325307.TPB.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\[Snarf-It.org]_10.25.06.Dark_Messiah_Of_Might_And_Magic_CLONEDVD-PROCYON.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\[Snarf-It.org]_S.T.A.L.K.E.R._STALKER__Shadow_of_Chernobyl-ViTALiTY[2].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\[Snarf-It.org]_Worms_Armageddon.rar.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\[TBox].S.T.A.L.K.E.R..(STALKER)..Shadow.of.Chernobyl-ViTALiTY[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\[TBox]_Cradle_of_Filth[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\__EW_QL_Symphonic_Orchestra_Gold_Edition_VST...[
www.btmon.com].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\_EW_QL_Symphonic_Orchestra_Gold_Edition_VST...[
www.btmon.com].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\{mininova.org}_Cubase.SX.v3.1.1.944-H2O.with.ED.SX3.Video.Tutorials-DELiRiUM.DVDr.UNOX.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\{mininova.org}_Pimsleur_Gigatorrent.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\~MegaNova.Org~_-_[isoHunt]_Heroes_of_Might_and_Magic_5_Collectors_Edition-RELOADED.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\300.DVDSCR.XviD-NEPTUNE[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Akercocke-Choronzon-(retail)-2003-RNS.4320842.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AOAA_-_Before_the_Throne_of_Infection_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Asphalt_4_Elite_Racing_HD__(WVGA_Version).4717881.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AUTODESK.ALIASSTUDIO.V2008-ISO_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AUTODESK.ALIASSTUDIO.V2009.DVD-ISO_[NT_-_NeMeSYZ.com]_[mininova].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Autodesk_AliasStudio_2009_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Autodesk_AutoCAD_2008_Full_Version_Incl_Keygen_[H33T]_[Original][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Azgard_Defence_w__Serial_Key.4464823.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU14181.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU1430.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU1434.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU22618.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU22634.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU26930.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU26932.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU26935.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU26961.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU27686.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU27966.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU29329.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU29332.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU30892.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU37380.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU37382.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU3854.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU3857.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU45231.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU47125.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU47128.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU57861.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU58882.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU60579.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\AZU65528.tmp
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\b-mininova.org-d__Half_Life_2_+_Day_of_Defeat_Source_+_Deathmatch_+_Lost_Coast_+_Metastasis_2[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Behemoth_-_Demigod_nova_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Behemoth_-_Ezkaton_(2008)[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Behemoth_-_The_Apostasy_[2007].4514224.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\BitDefender.Total.Security.2009+Patch[Tested][SADEL_ANWAR]_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Cannibal_Corpse_-_Kill_(2006)_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Cattle_Decapitation-The_Harvest_Floor-2009-wWw.FiveMP3.CoM_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Command_And_Conquer_3_Tiberium_Wars_Kane_Edition_DVD9-FLT[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Command_And_Conquer_3_Tiberium_Wars_Kane_Edition_DVD9-FLT_Rarfix_flt-cnc3.081[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Cynic_-_Traced_In_Air_(2008).4403362.TPB_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\d-mininova.org-b__www.so-king.com_soft_EW.QL.Symphonic.Choirs.VSTi.DXi.AU.RTAS.HYBRiD.DVDR.D2-AI[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Daemon_Tools_Pro_Advanced_v4_10[
www.btmon.com].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Decrepit_Birth_(USA)_-_Diminishing_Between_Worlds_(2008)_[mp3@320]_[Death_Metal]_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Drumkit_From_Hell_2_East_West_Quantum_Leap.3527568.TPB.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Eragon.2006.PROPER.DVDRip.XviD-FLAiTE[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\EW_QL_Symphonic_Orchestra_Gold_Edition_VST...[
www.btmon.com].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\EZ_DRUMMER_COMPLETE_COLLECTION_by_FTF96[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Fallout.1.and.2[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\fenopy_Final_Fantasy_IX__9___NTSC-US__4CDs.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Final_Fantasy_IX_9_NTSC-US_4CDs[
www.btmon.com].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\FriendBlaster_Pro_10.2.0_CRACKED.4539025.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\FriendBlaster_Pro_10.3.2_cracked_-_LillBert.4784605.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\FriendBlasterPro_Patch_[WORKING][6k_Pregathered_ID].4403026.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\FriendBlasterPro_v10.1.6_Patch.4419722.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\FriendBlasterProCrack-Bden.zip_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Gears_of_war_[PC-DVD]_[Multi5]_[
www.topetorrent.com]_[mininova].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Gothic_3_-_English_Version_(Image_Only).3539871.TPB.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Gothic_3____beni0__[-www.meganova.org-].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Guitar Pro 5.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Guitar_Pro_v5.2_(Full_Version_with_CD_Key)_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Guthrie_Govan_-_Erotic_Cakes_2006_[mininova].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\IK_Multimedia_Amplitube_v2.1_+_Amplitube_Metal_v1.0__[With_Keygen_BEAT]_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Iniquity_-_Discografía_[heavytorrents.org]_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Jade.Empire.SE.[PROCYON].Fix.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Jade_Empire_Special_Edition_CLONEDVD-PROCYON_%5Bwww.NewTorrents.info%5D[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Jamiroquai_-_High_Times_(The_Singles_1992-2006)_[2006]_[Alternative]_[
www.file24ever.com]_[mininova].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Jamiroquai_[mininova].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\M.E.PC.crack.rar_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Mage.Knight.Apocalypse-RELOADED_[
www.NewTorrents.info].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Mass.Effect.[English][PCDVD][
WwW.GamesTorrents.CoM].t4121_[mininova].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Mass_Effect_gmfix_working_crack_really_this_time.4220207.TPB.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Maximum_The_Hormone_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Native.Instruments.Guitar.Rig.v3.0-AMPLiFY.rar_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Never_Winter_Nights__-mininova.org-_[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Neverwinter_Nights_2_CLONEDVD-PROCYON_[
www.NewTorrents.info].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\New.!!!.Bigtitsroundasses.episode..Karma.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Obscura_-_Cosmogenesis_(2009)_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Oceano_-_Depths_(2009)_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Old_Man's_Child_-_Slaves_Of_The_World_(2009)_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Palm_Heroes_v1.03_ENG___Crack_[PocketPC].4188098.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\PCSX2_0.9.2_Bios_and_Plugins.rar.torrent[
www.btmon.com].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Psycroptic-Ob(Servant)-(Advance)-2008-FNT_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\S.T.A.L.K.E.R.Shadow.of.Chernobyl-ViTALiTY[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\scientology.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Stalker_-_Shadow_of_Chernobyl_Prima_Game_Guide(f81).3650721.TPB.torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Strapping_young_lad_-_the_new_black.4198452.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Sunbelt_VIPRE_Antivirus___Antispyware_v3.1.2416___Patch_[RH].4712676.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\The.Elder.Scrolls.IV.Oblivion.The.Shivering.Isles.PROPER-RELOADED[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\The_Absence_-_Riders_Of_The_Plague_320kbps_(2007)_.3767045.TPB[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\The_Faceless_-_Planetary_Dulaity_(2008)_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\The_Faceless_(2_songs_from_Planetary_Duality)[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\The_Red_Shore_-_Unconsecrated_(2008)_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\The_Red_Shore_(Aus)_-_Lost_Verses_(2009)_[mp3@vbr]_[Technical_Death-Metalcore]_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Toontrack_DFH_EZdrummer_VSTi_1.02_+_coctail_bank[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Toontrack_EZDrummer_-_DRUMKIT_FROM_HELL_EZX.zip_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\Tyra_from_Big_Tits_Round_Asses[
www.btmon.com].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\WaveMachine.Labs.Drumagog.Platinum.VST.RTAS.v4.09c.incl.Keygen-AiR_%5Bwww.NewTorrents.info%5D[1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\WaveMachine.Labs.Drumagog.Platinum.VST.RTAS.v4.11.Incl.Keygen-AiR(plus750MB.gog.samples)_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\torrents\WaveMachine.Labs.Drumagog.VST.RTAS.v4.09.incl.Keygen-AiR.RAR_[mininova][1].torrent
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tracker.config
c:\documents and settings\Shayne Johnson\Application Data\Azureus\tracker.config.bak
c:\documents and settings\Shayne Johnson\Application Data\Azureus\update.log
c:\documents and settings\Shayne Johnson\Application Data\Azureus\update.properties
c:\program files\Azureus
c:\program files\Azureus\AzureusUpdater.exe
c:\program files\Azureus\javaw.exe.manifest
c:\program files\Azureus\msvcr71.dll
c:\program files\Azureus\plugins\azplugins\azplugins_1.9.1.jar
c:\program files\Azureus\plugins\azplugins\azplugins_2.0.jar
c:\program files\Azureus\plugins\azplugins\azplugins_2.1.1.jar
c:\program files\Azureus\plugins\azplugins\azplugins_2.1.4.jar
c:\program files\Azureus\plugins\azrating\azrating_1.3.1.jar
c:\program files\Azureus\plugins\azrating\azrating_1.3.jar
c:\program files\Azureus\plugins\azupdater\azupdater_1.8.5.zip
c:\program files\Azureus\plugins\azupdater\azupdater_1.8.8.zip
c:\program files\Azureus\plugins\azupdater\azupdaterpatcher_1.8.3.jar
c:\program files\Azureus\plugins\azupdater\azupdaterpatcher_1.8.5.jar
c:\program files\Azureus\plugins\azupdater\azupdaterpatcher_1.8.8.jar
c:\program files\Azureus\plugins\azupdater\plugin.properties
c:\program files\Azureus\plugins\azupdater\plugin.properties_1.8.5
c:\program files\Azureus\plugins\azupdater\plugin.properties_1.8.8
c:\program files\Azureus\plugins\azupdater\Updater.jar
c:\program files\Azureus\plugins\azupdater\Updater.jar.bak
c:\program files\Azureus\swt-awt-win32-3139.dll
c:\program files\Azureus\swt-awt-win32-3318.dll
c:\program files\Azureus\swt-gdip-win32-3139.dll
c:\program files\Azureus\swt-gdip-win32-3318.dll
c:\program files\Azureus\swt-wgl-win32-3318.dll
c:\program files\Azureus\swt-win32-3139.dll
c:\program files\Azureus\swt-win32-3318.dll
c:\program files\Azureus\Uninstall.exe
c:\program files\Shareaza
c:\program files\Shareaza\Downloads\BangBus Bang Bus - Isabelle.mpeg
c:\program files\Shareaza\Downloads\Metadata\BangBus Bang Bus - Isabelle.mpeg.xml
c:\program files\Soulseek
c:\program files\Soulseek\attrstrings.cfg
c:\program files\Soulseek\autoaway.cfg
c:\program files\Soulseek\chatrooms.cfg
c:\program files\Soulseek\chatui.cfg
c:\program files\Soulseek\dlbans.cfg
c:\program files\Soulseek\extensions.cfg
c:\program files\Soulseek\hotlist.cfg
c:\program files\Soulseek\ignores.cfg
c:\program files\Soulseek\login.cfg
c:\program files\Soulseek\pchat.cfg
c:\program files\Soulseek\port.cfg
c:\program files\Soulseek\queue.cfg
c:\program files\Soulseek\queue2.cfg
c:\program files\Soulseek\rcmnd.cfg
c:\program files\Soulseek\save.cfg
c:\program files\Soulseek\search.cfg
c:\program files\Soulseek\shared.cfg
c:\program files\Soulseek\ticker.cfg
c:\program files\Soulseek\transfersview.cfg
c:\program files\Soulseek\ui.cfg
c:\program files\Soulseek\userinfo.cfg
c:\program files\Soulseek\usernotes.cfg
c:\program files\Soulseek\wishlist.cfg
c:\program files\utorrent
c:\StubInstaller.exe
c:\windows\ieocx.dll.vir
c:\windows\system32\drivers\UACvbqjbabwucfmlwm.sys.vir
c:\windows\system32\uacinit.dll.vir
.
((((((((((((((((((((((((( Files Created from 2009-04-28 to 2009-05-30 )))))))))))))))))))))))))))))))
.
2009-05-29 12:21 . 2009-05-29 12:21 -------- d-----w c:\program files\Common Files\Creative Labs Shared
2009-05-24 03:07 . 2009-05-24 03:29 -------- d-----w c:\program files\PhotoScape
2009-05-23 15:08 . 2009-04-29 07:51 2933624 ----a-w c:\documents and settings\Shayne Johnson\Application Data\Simply Super Software\Trojan Remover\jjw1.exe
2009-05-23 07:18 . 2009-05-23 07:18 -------- d-----w c:\documents and settings\Shayne Johnson\Application Data\PACE Anti-Piracy
2009-05-23 07:18 . 2009-05-23 07:18 -------- d-----w c:\documents and settings\All Users\Application Data\PACE Anti-Piracy
2009-05-23 07:18 . 2009-05-23 07:18 -------- d-----w c:\program files\Common Files\PACE Anti-Piracy
2009-05-23 07:18 . 2009-05-23 07:18 -------- d-----w c:\documents and settings\Shayne Johnson\Local Settings\Application Data\PACE Anti-Piracy
2009-05-23 06:58 . 2009-05-23 06:58 69632 ----a-r c:\documents and settings\Shayne Johnson\Application Data\Microsoft\Installer\{66F49D6A-E999-4DB0-ADB6-EE546806E340}\NewShortcut2_33D628D2DE174DBC9E7D9A4B4649EF81.exe
2009-05-23 06:58 . 2009-05-23 06:58 29926 ----a-r c:\documents and settings\Shayne Johnson\Application Data\Microsoft\Installer\{66F49D6A-E999-4DB0-ADB6-EE546806E340}\ARPPRODUCTICON.exe
2009-05-23 06:58 . 2009-05-23 06:58 -------- d-----w c:\program files\Antares Audio Technologies
2009-05-23 06:58 . 2009-05-23 06:58 -------- d-----w c:\documents and settings\Shayne Johnson\Application Data\Antares
2009-05-20 11:41 . 2009-05-20 11:45 -------- d-----w c:\documents and settings\Shayne Johnson\Application Data\REAPER
2009-05-20 11:41 . 2009-05-20 11:41 -------- d-----w c:\program files\REAPER
2009-05-20 07:58 . 2009-05-20 07:58 -------- d-----w c:\program files\AnalogX
2009-05-19 11:53 . 2009-05-19 20:41 -------- d-----w c:\documents and settings\Shayne Johnson\Application Data\Twain
2009-05-19 11:43 . 2009-05-19 11:43 -------- d-----w c:\documents and settings\Shayne Johnson\Application Data\ptidl
2009-05-19 11:43 . 2009-05-19 11:43 10752 ----a-w c:\documents and settings\Shayne Johnson\Application Data\ptidl\ptidl.exe
2009-05-10 10:34 . 2008-06-19 07:24 28544 ----a-w c:\windows\system32\drivers\pavboot.sys
2009-05-10 10:34 . 2009-05-10 10:34 -------- d-----w c:\program files\Panda Security
2009-05-10 10:06 . 2009-05-10 10:06 -------- d-----w c:\documents and settings\Shayne Johnson\Application Data\Malwarebytes
2009-05-10 09:45 . 2009-05-10 09:45 -------- d-----w c:\documents and settings\All Users\Application Data\Office Genuine Advantage
2009-05-10 09:39 . 2006-06-19 03:01 69632 ----a-w c:\windows\system32\ztvcabinet.dll
2009-05-10 09:39 . 2006-05-25 05:52 162304 ----a-w c:\windows\system32\ztvunrar36.dll
2009-05-10 09:39 . 2005-08-25 15:50 77312 ----a-w c:\windows\system32\ztvunace26.dll
2009-05-10 09:39 . 2003-02-02 10:06 153088 ----a-w c:\windows\system32\UNRAR3.dll
2009-05-10 09:39 . 2002-03-05 15:00 75264 ----a-w c:\windows\system32\unacev2.dll
2009-05-10 09:39 . 2009-05-10 09:39 -------- d-----w c:\program files\Trojan Remover
2009-05-10 09:39 . 2009-05-10 09:39 -------- d-----w c:\documents and settings\Shayne Johnson\Application Data\Simply Super Software
2009-05-10 09:39 . 2009-05-10 09:39 -------- d-----w c:\documents and settings\All Users\Application Data\Simply Super Software
2009-05-10 09:16 . 2009-05-10 09:16 -------- d-----w c:\documents and settings\Shayne Johnson\Application Data\AVGTOOLBAR
2009-05-10 09:16 . 2009-05-10 09:18 -------- d-----w c:\documents and settings\All Users\Application Data\avg8
2009-05-10 09:16 . 2009-05-10 09:16 -------- d-----w c:\program files\AVG
2009-05-10 09:13 . 2009-05-10 09:13 -------- d-----w c:\program files\Trend Micro
2009-05-10 09:12 . 2009-04-06 05:32 15504 ----a-w c:\windows\system32\drivers\mbam.sys
2009-05-10 09:12 . 2009-04-06 05:32 38496 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys
2009-05-10 09:12 . 2009-05-10 09:12 -------- d-----w c:\program files\Malwarebytes' Anti-Malware
2009-05-10 09:12 . 2009-05-10 09:12 -------- d-----w c:\documents and settings\All Users\Application Data\Malwarebytes
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-05-29 12:25 . 2006-11-10 05:00 -------- d-----w c:\program files\Steam
2009-05-29 12:22 . 2006-07-24 08:48 -------- d--h--w c:\program files\InstallShield Installation Information
2009-05-29 12:22 . 2005-10-29 11:35 444952 ----a-w c:\windows\system32\wrap_oal.dll
2009-05-29 12:22 . 2005-10-29 11:32 109080 ----a-w c:\windows\system32\OpenAL32.dll
2009-05-27 10:14 . 2009-01-12 09:51 32 ----a-w c:\windows\msocreg32.dat
2009-05-27 05:41 . 2006-07-24 09:04 -------- d-----w c:\documents and settings\All Users\Application Data\Creative
2009-05-23 23:26 . 2009-04-16 21:37 -------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
2009-05-18 11:50 . 2006-07-25 10:52 -------- d-----w c:\program files\Winamp
2009-05-13 11:22 . 2006-12-10 11:46 -------- d-----w c:\program files\Windows Live Safety Center
2009-05-10 09:08 . 2007-08-29 07:27 -------- d-----w c:\documents and settings\All Users\Application Data\Avg7
2009-05-10 09:03 . 2009-04-28 10:53 -------- d-----w c:\program files\BitDefender
2009-05-10 09:03 . 2009-04-28 10:53 -------- d-----w c:\program files\Common Files\BitDefender
2009-05-09 07:24 . 2008-09-03 09:53 -------- d-----w c:\documents and settings\Shayne Johnson\Application Data\Skype
2009-05-06 07:45 . 2008-09-03 09:53 -------- d-----w c:\documents and settings\Shayne Johnson\Application Data\skypePM
2009-04-28 15:02 . 2008-12-03 09:01 -------- d-----w c:\program files\FriendBlasterPro
2009-04-28 11:03 . 2006-07-24 12:04 115960 ----a-w c:\documents and settings\Shayne Johnson\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-04-28 10:51 . 2007-08-26 11:41 223784 ----a-w c:\documents and settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2009-04-19 10:06 . 2009-04-19 10:06 -------- d-----w c:\program files\Common Files\Windows Live
2009-04-17 08:52 . 2009-04-17 08:52 -------- d-----w c:\program files\Microsoft ActiveSync
2009-04-17 08:51 . 2009-04-17 08:51 -------- d-----w c:\program files\Windows Mobile Device Handbook
2009-04-16 21:44 . 2009-04-16 21:37 -------- d-----w c:\program files\Easy Adder
2009-04-16 17:19 . 2008-12-21 02:30 -------- d-----w c:\program files\Google
2009-04-16 17:01 . 2008-08-29 12:42 -------- d-----w c:\documents and settings\All Users\Application Data\Microsoft Help
2009-04-15 10:51 . 2009-04-15 10:51 -------- d-----w c:\program files\CSV Easy
2009-04-10 01:09 . 2009-04-10 01:08 116 ----a-w c:\documents and settings\Shayne Johnson\Application Data\netstat.bat
2009-04-10 01:09 . 2009-04-10 01:08 116 ----a-w c:\documents and settings\Shayne Johnson\Application Data\netstat.bat
2009-04-01 08:26 . 2009-04-01 08:26 -------- d-----w c:\program files\Microsoft Works
2009-04-01 08:25 . 2009-04-01 08:25 -------- d-----w c:\program files\Microsoft.NET
2009-04-01 08:10 . 2007-09-26 05:16 -------- d-----w c:\documents and settings\Shayne Johnson\Application Data\GetRightToGo
2009-03-18 10:46 . 2009-03-18 10:46 737280 ----a-w c:\windows\iun6002.exe
2009-03-06 14:22 . 2004-08-04 12:00 284160 ----a-w c:\windows\system32\pdh.dll
2009-03-05 06:55 . 2009-03-19 15:49 4604240 ----a-w c:\documents and settings\All Users\Application Data\Microsoft\Windows Defender\Definition Updates\{326F52A0-E5BA-4774-9D5B-04D69FA713F3}\mpengine.dll
2009-03-03 00:18 . 2004-08-04 12:00 826368 ----a-w c:\windows\system32\wininet.dll
.
((((((((((((((((((((((((((((( SnapShot@2009-05-29_08.23.20 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-05-29 12:21 . 2008-10-07 15:22 15384 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\pfmodnt.sys
+ 2009-05-29 12:21 . 2008-10-07 15:22 95768 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\emupia2k.sys
+ 2009-05-29 12:21 . 2008-10-07 15:21 14360 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\ctprxy2k.sys
+ 2009-05-29 12:21 . 2008-10-07 15:21 72728 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\CTHWIUT.sys
+ 2009-05-29 12:21 . 2008-10-07 13:44 86016 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\ctcoinst.dll
+ 2009-05-29 12:21 . 2008-10-07 13:23 26919 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\ctd20x.dat
+ 2009-05-29 12:21 . 2008-07-11 05:40 56509 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\ctdnlstr.dat
+ 2009-05-29 12:21 . 2008-04-14 00:12 23552 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\i386\wdmaud.drv
+ 2009-05-29 12:21 . 2008-04-13 18:45 49408 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\i386\stream.sys
+ 2009-05-29 12:21 . 2008-04-13 18:45 60160 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\i386\drmk.sys
+ 2009-05-29 12:21 . 2008-10-07 13:26 10240 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\sfman32.dll
+ 2009-05-29 12:21 . 2008-10-07 13:26 16384 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\regplib.exe
+ 2009-05-29 12:21 . 2008-10-07 13:26 68608 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\piaproxy.dll
+ 2009-05-29 12:21 . 2008-10-07 13:23 12800 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\killapps.exe
+ 2009-05-29 12:21 . 2001-07-11 00:51 77824 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\eaxac3.dll
+ 2009-05-29 12:21 . 2008-10-07 13:23 36864 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\devreg.dll
+ 2009-05-29 12:21 . 2008-10-07 13:41 39424 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\CTxfiSpk.dll
+ 2009-05-29 12:21 . 2008-10-07 13:37 47104 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\CTxfiReg.exe
+ 2009-05-29 12:21 . 2008-10-07 13:41 23552 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\Ctxfihlp.exe
+ 2009-05-29 12:21 . 2008-10-07 13:41 41472 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\CTxfiBtn.dll
+ 2009-05-29 12:21 . 2007-03-13 00:32 89336 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\ctpxst32.exe
+ 2009-05-29 12:21 . 2008-10-07 13:26 74752 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\ctosuser.dll
+ 2009-05-29 12:21 . 2008-10-07 13:27 53248 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\ctdproxy.dll
+ 2009-05-29 12:21 . 2008-10-07 13:27 50688 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\ctasio.dll
+ 2009-05-29 12:21 . 2008-10-07 13:37 15360 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\Ct20xspi.dll
+ 2009-05-29 12:21 . 2006-12-05 04:52 48400 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\AddCat.exe
+ 2009-05-29 12:21 . 2008-10-07 13:42 48640 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\ac3api.dll
+ 2009-05-29 12:21 . 2008-10-07 13:42 60928 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\a3d.dll
+ 2009-05-29 12:21 . 2008-10-07 13:23 2091 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\cts20x.dat
+ 2009-05-29 12:21 . 2008-10-07 13:41 2560 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\lang\i386\CtxfiRes.dll
+ 2009-05-29 12:21 . 2008-04-14 00:11 4096 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\i386\ksuser.dll
+ 2009-05-29 12:21 . 2008-10-07 13:23 7680 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\enlocstr.exe
+ 2009-05-29 12:21 . 2008-10-07 15:22 158744 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\ctsfm2k.sys
+ 2009-05-29 12:21 . 2008-10-07 15:21 130072 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\ctoss2k.sys
+ 2009-05-29 12:21 . 2008-10-07 13:44 181248 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\ctdvinst.dll
+ 2009-05-29 12:21 . 2008-10-07 15:21 347080 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\ctdvda2k.sys
+ 2009-05-29 12:21 . 2008-10-07 15:21 526232 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\ctaud2k.sys
+ 2009-05-29 12:21 . 2008-10-07 15:21 511000 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\ctac32k.sys
+ 2009-05-29 12:21 . 2008-10-07 15:21 171032 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\CT20XUT.sys
+ 2009-05-29 12:21 . 2008-10-07 13:26 275257 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0760W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 277688 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP073AW.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 277688 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0730W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 357983 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0679W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 357983 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0678W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 275766 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP055AW.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 276094 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0550W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 275508 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP046CW.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 275508 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP046BW.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 275508 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP046AW.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 275836 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0469W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 275836 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0468W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 275836 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0466W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 275836 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0465W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 275836 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0464W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 276282 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0463W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 275836 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0462W.DAT
+ 2009-05-29 12:21 . 2008-10-07 13:26 275836 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\Data\CTP0460W.DAT
+ 2009-05-29 12:21 . 2008-07-11 05:40 321512 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\ctdlang.dat
+ 2009-05-29 12:21 . 2008-04-13 19:19 146048 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\i386\portcls.sys
+ 2009-05-29 12:21 . 2008-04-13 19:16 141056 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\i386\ks.sys
+ 2009-05-29 12:21 . 2008-10-07 13:26 108544 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\sfms32.dll
+ 2009-05-29 12:21 . 2008-04-22 20:07 805400 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\oalinst.exe
+ 2009-05-29 12:21 . 2008-10-07 13:30 114688 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\ctemupia.dll
+ 2009-05-29 12:21 . 2008-10-07 13:27 193024 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\ct_oal.dll
+ 2009-05-29 12:21 . 2008-07-17 23:39 595249 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\APOIM32.exe
+ 2009-05-29 12:21 . 2008-10-07 15:22 1177624 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\ha20x2k.sys
+ 2009-05-29 12:21 . 2008-10-07 15:21 1324056 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Win2K_XP\i386\CTEXFIFX.sys
+ 2009-05-29 12:21 . 2008-10-07 13:37 1212928 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\CTxfispi.exe
+ 2009-05-29 12:21 . 2008-09-25 05:40 20888640 c:\windows\system32\ReinstallBackups\
0018\DriverFiles\Common\i386\AppSetup.exe
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 5724184]
"Steam"="c:\program files\steam\steam.exe" [2009-05-19 1217784]
"Creative Detector"="c:\program files\Creative\MediaSource\Detector\CTDetect.exe" [2004-12-02 102400]
"CurseClient"="c:\program files\Curse\CurseClient.exe" [2008-10-10 4789760]
"H/PC Connection Agent"="c:\program files\Microsoft ActiveSync\wcescomm.exe" [2006-11-13 1289000]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"type32"="c:\program files\Microsoft IntelliType Pro\type32.exe" [2005-03-15 196608]
"AudioDrvEmulator"="c:\program files\Creative\Shared Files\Module Loader\DLLML.exe" [2005-11-04 49152]
"SunJavaUpdateSched"="c:\program files\Java\jre1.6.0_02\bin\jusched.exe" [2007-07-11 132496]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe" [2006-05-16 213936]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2006-05-16 86960]
"Name of App"="c:\program files\SAMSUNG\FW LiveUpdate\FWManager.exe" [2007-04-05 684118]
"H2O"="c:\program files\SyncroSoft\Pos\H2O\cledx.exe" [2005-10-22 385024]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-02 13529088]
"CTDVDDET"="c:\program files\Creative\Sound Blaster X-Fi\DVDAudio\CTDVDDET.EXE" [2003-06-17 45056]
"RCSystem"="c:\program files\Creative\Shared Files\Module Loader\DLLML.exe" [2005-11-04 49152]
"VolPanel"="c:\program files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanel.exe" [2005-10-14 122880]
"UpdReg"="c:\windows\UpdReg.EXE" [2000-05-10 90112]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2008-08-03 36352]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-05-02 86016]
"IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2006-11-21 842584]
"TrojanScanner"="c:\program files\Trojan Remover\Trjscan.exe" [2009-04-29 1053576]
"MSConfig"="c:\windows\PCHealth\HelpCtr\Binaries\MSConfig.exe" [2008-04-14 169984]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2008-11-04 413696]
"ISUSPM"="c:\program files\Common Files\InstallShield\UpdateService\isuspm.exe" [2006-05-16 213936]
"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2008-05-02 1630208]
"CTHelper"="CTHELPER.EXE" - c:\windows\system32\CtHelper.exe [2008-02-20 19456]
"CTxfiHlp"="CTXFIHLP.EXE" - c:\windows\system32\Ctxfihlp.exe [2008-10-07 23552]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"PcSync"="c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2006-11-09 1634304]
"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2007-08-23 437160]
c:\documents and settings\Shayne Johnson\Start Menu\Programs\Startup\
OneNote 2007 Screen Clipper and Launcher.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2007-12-7 101440]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"=
"c:\\Program Files\\Fury\\Binaries\\DiamondWare\\dwTVC.exe"=
"c:\\Program Files\\ICQLite\\ICQLite.exe"=
"c:\\Program Files\\Sony\\Station\\Launchpad\\LaunchPad.exe"=
"c:\\Program Files\\mIRC\\mirc.exe"=
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\Program Files\\Autodesk\\3ds Max 9\\3dsmax.exe"=
"c:\\Program Files\\Autodesk\\Backburner\\monitor.exe"=
"c:\\Program Files\\Autodesk\\Backburner\\manager.exe"=
"c:\\Program Files\\Autodesk\\Backburner\\server.exe"=
"c:\\Program Files\\Steam\\steam.exe"=
"c:\\Program Files\\Flagship Studios\\Hellgate London\\Launcher.exe"=
"c:\\Program Files\\Steam\\SteamApps\\goofpig\\team fortress 2\\hl2.exe"=
"c:\\Program Files\\Mass Effect\\Binaries\\MassEffect.exe"=
"c:\\Program Files\\Mass Effect\\MassEffectLauncher.exe"=
"c:\\Program Files\\Electronic Arts\\EADM\\Core.exe"=
"c:\\Program Files\\Electronic Arts\\Battlefield 2142\\BF2142.exe"=
"c:\\Program Files\\Electronic Arts\\Warhammer Online - Age of Reckoning\\warpatch.exe"=
"c:\\Program Files\\Reallusion\\CrazyTalk for Skype\\CT4Skype.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"c:\\Program Files\\Curse\\CurseClient.exe"=
"c:\\Program Files\\Sony\\Media Manager for WALKMAN\\MediaManager.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
"c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Steinberg\\Cubase SX 3\\Cubasesx3.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3724:TCP"= 3724:TCP:*

isabled:Blizzard Downloader
"6112:TCP"= 6112:TCP:Blizzard Downloader
"9420:TCP"= 9420:TCP:*

isabled:Red Swoosh
"5000:UDP"= 5000:UDP:*

isabled:Red Swoosh
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
R0 pavboot;pavboot;c:\windows\system32\drivers\pavboot.sys [10/05/2009 8:34 PM 28544]
R2 libusbd;LibUsb-Win32 - Daemon, Version 0.1.10.1;system32\libusbd-nt.exe --> system32\libusbd-nt.exe [?]
R2 WinDefend;Windows Defender;c:\program files\Windows Defender\MsMpEng.exe [3/11/2006 6:19 PM 13592]
R3 CLEDX;Team H2O CLEDX service;c:\windows\system32\drivers\cledx.sys [26/12/2006 10:49 AM 33792]
R3 CT20XUT.SYS;CT20XUT.SYS;c:\windows\system32\drivers\CT20XUT.sys [8/10/2008 1:21 AM 171032]
R3 CTEXFIFX.SYS;CTEXFIFX.SYS;c:\windows\system32\drivers\CTEXFIFX.sys [8/10/2008 1:21 AM 1324056]
R3 CTHWIUT.SYS;CTHWIUT.SYS;c:\windows\system32\drivers\CTHWIUT.sys [8/10/2008 1:21 AM 72728]
R3 libusb0;LibUsb-Win32 - Kernel Driver, Version 0.1.10.1;c:\windows\system32\drivers\libusb0.sys [24/06/2008 9:52 PM 33792]
S2 nvtvSND;nVidia WDM TVAudio Crossbar;c:\windows\system32\DRIVERS\nvtvsnd.sys --> c:\windows\system32\DRIVERS\nvtvsnd.sys [?]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [29/05/2009 10:21 PM 79360]
S3 CT20XUT;CT20XUT;c:\windows\system32\drivers\CT20XUT.sys [8/10/2008 1:21 AM 171032]
S3 CTEXFIFX;CTEXFIFX;c:\windows\system32\drivers\CTEXFIFX.sys [8/10/2008 1:21 AM 1324056]
S3 CTHWIUT;CTHWIUT;c:\windows\system32\drivers\CTHWIUT.sys [8/10/2008 1:21 AM 72728]
S3 FXDRV;FXDRV;\??\d:\fxdrv.sys --> d:\Fxdrv.sys [?]
S3 hamachi_oem;PlayLinc Adapter;c:\windows\system32\drivers\gan_adapter.sys [28/08/2006 11:54 PM 10664]
S3 PortlUSB;PortlUSB;c:\windows\system32\drivers\H10USB.sys [24/06/2004 2:52 PM 7552]
S3 SBRE;SBRE;\??\c:\windows\system32\drivers\SBREdrv.sys --> c:\windows\system32\drivers\SBREdrv.sys [?]
.
Contents of the 'Scheduled Tasks' folder
2009-05-28 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 02:34]
2009-05-29 c:\windows\Tasks\MP Scheduled Scan.job
- c:\program files\Windows Defender\MpCmdRun.exe [2006-11-03 08:20]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com.au/
IE: {{d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\documents and settings\Shayne Johnson\Start Menu\Programs\IMVU\Run IMVU.lnk
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-05-30 17:59
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
CTxfiHlp = CTXFIHLP.EXE?
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-1644491937-1343024091-682003330-1004\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:a0,cd,fe,5c,74,70,f0,e0,fe,dd,3f,57,6a,0b,12,07,09,41,3c,a4,66,db,4a,
33,70,23,9d,42,c6,2b,0e,1e,f6,5b,47,fa,e6,59,57,06,a9,df,92,e5,b4,77,e0,fe,\
"??"=hex:cf,55,c7,95,2b,14,4d,f8,66,7b,0c,1b,19,52,fe,22
[HKEY_USERS\S-1-5-21-1644491937-1343024091-682003330-1004\Software\SecuROM\License information*]
"datasecu"=hex:5c,55,d6,96,78,5c,ff,a2,06,24,2e,aa,54,b7,8f,7a,46,cf,6a,1d,4d,
6e,40,0e,e6,56,a0,d2,d8,25,d5,ab,f1,44,39,c8,fd,59,b0,51,07,aa,d8,16,7c,32,\
"rkeysecu"=hex:cb,bd,f2,61,5a,4e,c6,95,f2,29,8b,82,ba,6b,3d,44
.
Completion time: 2009-05-30 18:01
ComboFix-quarantined-files.txt 2009-05-30 08:00
ComboFix2.txt 2009-05-29 08:29
Pre-Run: 35,793,203,200 bytes free
Post-Run: 36,117,147,648 bytes free
Current=2 Default=2 Failed=0 LastKnownGood=5 Sets=1,2,3,4,5
550 --- E O F --- 2009-05-09 23:08