Thank you very much for taking your time to help me and I do understand that I'm not the only one having problems and that it might take awhile, but it sure is worth the wait! And Here's my Log.txt:
Logfile of random's system information tool 1.05 (written by random/random)
Run by Kinh Tran at 2008-12-20 14:01:48
Microsoft Windows XP Professional Service Pack 3
System drive D: has 3 GB (9%) free of 30 GB
Total RAM: 255 MB (5% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:03:34 PM, on 12/20/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\Program Files\Windows Defender\MsMpEng.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Java\jre6\bin\jusched.exe
D:\Program Files\iTunes\iTunesHelper.exe
D:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
D:\Program Files\WINPENJR\win32\AcrEmChk.exe
D:\Program Files\NETGEAR\WG121 Configuration Utility\wlancfg8.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\WINDOWS\system32\nvsvc32.exe
D:\WINDOWS\system32\svchost.exe
D:\Program Files\Canon\CAL\CALMAIN.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\Program Files\Mozilla Firefox\firefox.exe
D:\Documents and Settings\Kinh Tran\Desktop\RSIT.exe
D:\Program Files\Trend Micro\HijackThis\Kinh Tran.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Yahoo!
R3 - URLSearchHook: Yahoo! ¤u¨ã¦C - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - D:\PROGRA~1\Yahoo!\Companion\Installs\cpn3\yt.dll
F3 - REG:win.ini: load=D:\WINDOWS\system32\jkhfc.exe
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - D:\PROGRA~1\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {36ee258a-7001-4d6b-ae9a-3126e4523625} - D:\WINDOWS\system32\negonito.dll (file missing)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - D:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - d:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - D:\Program Files\Google\GoogleToolbarNotifier\2.0.1121.2472\swg.dll
O2 - BHO: (no name) - {B9557C96-7F76-4644-AAE6-3A32F7EB4BAB} - (no file)
O3 - Toolbar: Yahoo! ¤u¨ã¦C - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - D:\PROGRA~1\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - d:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE D:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [iTunesHelper] "D:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [bejozuseto] Rundll32.exe "D:\WINDOWS\system32\higihape.dll",s
O4 - HKLM\..\Run: [CPMf79c3322] Rundll32.exe "d:\windows\system32\napigowu.dll",a
O4 - HKCU\..\Run: [Custom.exe] D:\Program Files\WINPENJR\win32\Custom.EXE
O4 - HKCU\..\Run: [SpybotSD TeaTimer] D:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\RunOnce: [SpybotDeletingB5316] command /c del "d:\windows\system32\hajegiwa.dll_old"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: PenPower Email Touchpad.lnk = D:\Program Files\WINPENJR\win32\AcrEmChk.exe
O4 - Global Startup: Smart Wizard Wireless Settings.lnk = D:\Program Files\NETGEAR\WG121 Configuration Utility\wlancfg8.exe
O8 - Extra context menu item: &AIM Search - res://D:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - D:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - D:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) -
http://www.sibelius.com/download/software/win/ActiveXPlugin.cab
O20 - AppInit_DLLs: D:\WINDOWS\system32\tomatofi.dll d:\windows\system32\napigowu.dll
O20 - Winlogon Notify: ddccccb - ddccccb.dll (file missing)
O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - d:\windows\system32\napigowu.dll
O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - d:\windows\system32\napigowu.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - D:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - D:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Computer, Inc. - D:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Windows Tracks Washer Registry Service (WTWService) - Unknown owner - D:\Program Files\Internet Tracks Washer\washservice.exe (file missing)
--
End of file - 7850 bytes
======Scheduled tasks folder======
D:\WINDOWS\tasks\gumjhvap.job
D:\WINDOWS\tasks\MP Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - D:\PROGRA~1\Yahoo!\Companion\Installs\cpn3\yt.dll [2007-12-18 817936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-01-12 63128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{36ee258a-7001-4d6b-ae9a-3126e4523625}]
D:\WINDOWS\system32\negonito.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - D:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-09-15 1562960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897}]
Yahoo! IE Services Button - D:\Program Files\Yahoo!\Common\yiesrvc.dll [2007-12-12 222448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files\Java\jre6\bin\ssv.dll [2008-12-14 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - d:\program files\google\googletoolbar4.dll [2007-01-19 2403392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - D:\Program Files\Google\GoogleToolbarNotifier\2.0.1121.2472\swg.dll [2008-01-06 323568]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B9557C96-7F76-4644-AAE6-3A32F7EB4BAB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! ¤u¨ã¦C - D:\PROGRA~1\Yahoo!\Companion\Installs\cpn3\yt.dll [2007-12-18 817936]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - d:\program files\google\googletoolbar4.dll [2007-01-19 2403392]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=D:\WINDOWS\system32\NvCpl.dll [2004-07-15 4112384]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=D:\WINDOWS\system32\NvMcTray.dll [2004-07-15 81920]
"Logitech Hardware Abstraction Layer"=KHALMNPR.EXE []
"!AVG Anti-Spyware"=D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe [2008-04-08 6731312]
"SunJavaUpdateSched"=D:\Program Files\Java\jre6\bin\jusched.exe [2008-12-14 136600]
"iTunesHelper"=D:\Program Files\iTunes\iTunesHelper.exe [2006-10-30 256576]
"bejozuseto"=D:\WINDOWS\system32\higihape.dll [2008-09-16 62563]
"CPMf79c3322"=d:\windows\system32\napigowu.dll [2008-12-20 95845]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Custom.exe"=D:\Program Files\WINPENJR\win32\Custom.EXE [2007-02-01 77824]
"SpybotSD TeaTimer"=D:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2008-09-16 1833296]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SpybotDeletingB5316"=command /c del d:\windows\system32\hajegiwa.dll_old []
D:\Documents and Settings\All Users\Start Menu\Programs\Startup
Adobe Reader Speed Launch.lnk - D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
PenPower Email Touchpad.lnk - D:\Program Files\WINPENJR\win32\AcrEmChk.exe
Smart Wizard Wireless Settings.lnk - D:\Program Files\NETGEAR\WG121 Configuration Utility\wlancfg8.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="D:\WINDOWS\system32\tomatofi.dll d:\windows\system32\napigowu.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ddccccb]
ddccccb.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
D:\WINDOWS\system32\WgaLogon.dll [2008-09-05 241704]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - d:\windows\system32\napigowu.dll [2008-12-20 95845]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - d:\windows\system32\napigowu.dll [2008-12-20 95845]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"=D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll [2007-05-30 79408]
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"=D:\PROGRA~1\WIFD1F~1\MpShHook.dll [2006-11-03 83224]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
D:\WINDOWS\system32\tomatofi.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll,
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AVG Anti-Spyware Driver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AVG Anti-Spyware Guard]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AVG Anti-Spyware Driver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AVG Anti-Spyware Guard]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled

xpsp2res.dll,-22019"
"D:\Program Files\Starcraft\StarCraft.exe"="D:\Program Files\Starcraft\StarCraft.exe:*:Enabled:Starcraft"
"D:\Program Files\Messenger\msmsgs.exe"="D:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"D:\Program Files\Yahoo!\Messenger\YPager.exe"="D:\Program Files\Yahoo!\Messenger\YPager.exe:*:Enabled:Yahoo! Messenger"
"D:\Program Files\Yahoo!\Messenger\YServer.exe"="D:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server"
"D:\Program Files\Internet Explorer\IEXPLORE.EXE"="D:\Program Files\Internet Explorer\IEXPLORE.EXE:*

isabled:Internet Explorer"
"D:\Program Files\MSN Messenger\msnmsgr.exe"="D:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 6.2"
"D:\Program Files\AIM\aim.exe"="D:\Program Files\AIM\aim.exe:*:Enabled:AOL Instant Messenger"
"D:\Program Files\Common Files\AOL\Loader\aolload.exe"="D:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader"
"D:\Program Files\Common Files\AOL\1124472680\ee\AOLServiceHost.exe"="D:\Program Files\Common Files\AOL\1124472680\ee\AOLServiceHost.exe:*:Enabled:AOL Services"
"D:\Documents and Settings\Kinh Tran\Desktop\Victoria stuff\anime_manga stuff ^ - ^\Fruits Basket stuff\Fruits Basket anime\Cardcaptor stuff\utorrent.exe"="D:\Documents and Settings\Kinh Tran\Desktop\Victoria stuff\anime_manga stuff ^ - ^\Fruits Basket stuff\Fruits Basket anime\Cardcaptor stuff\utorrent.exe:*:Enabled:utorrent"
"D:\Documents and Settings\Kinh Tran\Desktop\Victoria stuff\utorrent.exe"="D:\Documents and Settings\Kinh Tran\Desktop\Victoria stuff\utorrent.exe:*:Enabled:µTorrent"
"D:\Documents and Settings\Kinh Tran\Desktop\Victoria stuff\anime_manga stuff ^ - ^\Fruits Basket stuff\torrents\utorrent.exe"="D:\Documents and Settings\Kinh Tran\Desktop\Victoria stuff\anime_manga stuff ^ - ^\Fruits Basket stuff\torrents\utorrent.exe:*:Enabled:µTorrent"
"D:\Program Files\Common Files\AOL\1156894881\ee\aolsoftware.exe"="D:\Program Files\Common Files\AOL\1156894881\ee\aolsoftware.exe:*:Enabled:AOL Services"
"D:\Program Files\Common Files\AOL\1156894881\ee\aim6.exe"="D:\Program Files\Common Files\AOL\1156894881\ee\aim6.exe:*:Enabled:AIM"
"D:\Victoria stuff\anime_manga stuff ^ - ^\fruits basket stuff\torrents\utorrent.exe"="D:\Victoria stuff\anime_manga stuff ^ - ^\fruits basket stuff\torrents\utorrent.exe:*:Enabled:µTorrent"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled

xpsp3res.dll,-20000"
"D:\Program Files\Azureus\Azureus.exe"="D:\Program Files\Azureus\Azureus.exe:*:Enabled:Azureus"
"D:\Documents and Settings\Kinh Tran\Desktop\utorrent.exe"="D:\Documents and Settings\Kinh Tran\Desktop\utorrent.exe:*:Enabled:µTorrent"
"D:\Program Files\Softnyx\Rakion\Bin\rakion.bin"="D:\Program Files\Softnyx\Rakion\Bin\rakion.bin:*:Enabled:rakion"
"D:\Program Files\ppfilm\jfCacheMgr.exe"="D:\Program Files\ppfilm\jfCacheMgr.exe:*:Enabled:jfCacheMgr(http://www.ppfilm.cn)"
"D:\Program Files\ppfilm\KmLiveUpdate.exe"="D:\Program Files\ppfilm\KmLiveUpdate.exe:*:Enabled:KmLiveUpdate(http://www.ppfilm.cn)"
"D:\Program Files\ppfilm\ppFilmPlayer.exe"="D:\Program Files\ppfilm\ppFilmPlayer.exe:*:Enabled

pFilmPlayer"
"D:\Nexon\MapleStory\MapleStory.exe"="D:\Nexon\MapleStory\MapleStory.exe:*:Enabled:MapleStory"
"D:\Program Files\mIRC\mirc.exe"="D:\Program Files\mIRC\mirc.exe:*:Enabled:mIRC"
"D:\Program Files\Windows CE Services\DccMan.exe"="D:\Program Files\Windows CE Services\DccMan.exe:*

isabled:Connection Manager"
"D:\Program Files\Mozilla Firefox\firefox.exe"="D:\Program Files\Mozilla Firefox\firefox.exe:*

isabled:Firefox"
"D:\Program Files\Windows CE Services\DCCMAN .EXE"="D:\Program Files\Windows CE Services\DCCMAN .EXE:*:Enabled:Connection Manager"
"D:\Program Files\ppfilm\jfCacheMgr .exe"="D:\Program Files\ppfilm\jfCacheMgr .exe:*:Enabled:?????????"
"D:\Program Files\ppfilm\jfCacheMgr .exe"="D:\Program Files\ppfilm\jfCacheMgr .exe:*:Enabled:?????????"
"D:\Program Files\Orbitdownloader\orbitnet.exe"="D:\Program Files\Orbitdownloader\orbitnet.exe:*:Enabled

2P service of Orbit Downloader"
"D:\Program Files\Free Music Zilla\FMZilla.exe"="D:\Program Files\Free Music Zilla\FMZilla.exe:*

isabled:FMZilla Module"
"D:\Program Files\Orbitdownloader\orbitdm.exe"="D:\Program Files\Orbitdownloader\orbitdm.exe:*

isabled:Orbit"
"D:\Program Files\ppfilm\jfCacheMgr .exe"="D:\Program Files\ppfilm\jfCacheMgr .exe:*:Enabled:?????????"
"D:\Program Files\iTunes\iTunes.exe"="D:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"D:\WINDOWS\explorer.exe"="D:\WINDOWS\explorer.exe:*:Enabled:Explorer"
"D:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"="D:\Program Files\Spybot - Search & Destroy\TeaTimer.exe:*:Enabled:TeaTimer"
"D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe"="D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe:*:Enabled:avgas"
"D:\WINDOWS\system32\logonuiX.exe"="D:\WINDOWS\system32\logonuiX.exe:*:Enabled:logonuiX"
"D:\WINDOWS\system32\winlogon.exe"="D:\WINDOWS\system32\winlogon.exe:*:Enabled:winlogon"
"D:\WINDOWS\system32\services.exe"="D:\WINDOWS\system32\services.exe:*:Enabled:services"
"D:\WINDOWS\system32\logonui.exe"="D:\WINDOWS\system32\logonui.exe:*:Enabled:logonui"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled

xpsp2res.dll,-22019"
"D:\Program Files\MSN Messenger\msnmsgr.exe"="D:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 6.2"
"D:\Program Files\AIM\aim.exe"="D:\Program Files\AIM\aim.exe:*:Enabled:AOL Instant Messenger"
"D:\Program Files\Common Files\AOL\1124472680\ee\AOLServiceHost.exe"="D:\Program Files\Common Files\AOL\1124472680\ee\AOLServiceHost.exe:*:Enabled:AOL Services"
"D:\Program Files\Common Files\AOL\Loader\aolload.exe"="D:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled

xpsp3res.dll,-20000"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\C]
shell\AutoRun\command - C:\setupSNK.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1e59835d-4e20-11dc-9e5a-00095bd326f2}]
shell\AutoRun\command - E:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{48d9c57d-694a-11dc-9e5f-00095bd326f2}]
shell\AutoRun\command - E:\LaunchU3.exe -a
======File associations======
.js - open - NOTEPAD.EXE %1
.reg - open - regedit.exe "%1" %*
.scr - open - "%1" %*
.vbs - open - NOTEPAD.EXE %1
======List of files/folders created in the last 1 months======
2008-12-20 14:01:48 ----D---- D:\rsit
2008-12-20 13:55:03 ----SH---- D:\WINDOWS\system32\okavoyup.ini
2008-12-19 22:52:29 ----SH---- D:\WINDOWS\system32\ihaluvap.ini
2008-12-19 10:53:05 ----SH---- D:\WINDOWS\system32\ulilagur.ini
2008-12-18 22:04:51 ----SH---- D:\WINDOWS\system32\agisisit.ini
2008-12-18 10:04:58 ----SH---- D:\WINDOWS\system32\ebelabik.ini
2008-12-14 21:25:43 ----D---- D:\Program Files\Trend Micro
2008-12-14 19:40:21 ----A---- D:\WINDOWS\system32\javaws.exe
2008-12-14 19:40:21 ----A---- D:\WINDOWS\system32\javaw.exe
2008-12-14 19:40:21 ----A---- D:\WINDOWS\system32\java.exe
2008-12-14 19:40:21 ----A---- D:\WINDOWS\system32\deploytk.dll
2008-12-10 16:51:38 ----ASH---- D:\WINDOWS\system32\jejavaso.dll
2008-12-06 23:32:20 ----A---- D:\WINDOWS\wininit.ini
2008-12-06 20:46:36 ----D---- D:\Documents and Settings\All Users\Application Data\Innovative Solutions
2008-12-06 20:45:29 ----D---- D:\Program Files\Innovative Solutions
2008-12-06 19:40:41 ----A---- D:\WINDOWS\system32\STKIT432.DLL
2008-12-05 19:54:23 ----D---- D:\Program Files\Common Files\Wise Installation Wizard
2008-12-05 19:40:35 ----D---- D:\Program Files\CCleaner
2008-12-05 18:49:30 ----D---- D:\Program Files\XoftSpySE
2008-12-05 18:24:58 ----D---- D:\Program Files\PocketRAR
2008-12-05 18:23:46 ----D---- D:\Program Files\Common Files\Stardock
2008-12-04 19:40:45 ----A---- D:\WINDOWS\SchedLgU.Txt
2008-12-04 17:02:32 ----D---- D:\Documents and Settings\Kinh Tran\Application Data\Uniblue
2008-12-03 20:45:17 ----D---- D:\Documents and Settings\Kinh Tran\Application Data\AppleWorks
2008-12-02 21:34:28 ----A---- D:\WINDOWS\system32\wbbfon(2).dll
2008-12-02 21:33:38 ----A---- D:\WINDOWS\system32\7365458b-.txt
2008-12-02 21:16:16 ----A---- D:\WINDOWS\system32\TDSSrkivlyvf.dll
2008-12-02 21:16:10 ----A---- D:\WINDOWS\system32\TDSSyngjmcqa.dll
2008-12-02 21:16:09 ----A---- D:\WINDOWS\system32\TDSSwrtwrmqf.dll
2008-12-02 21:16:08 ----A---- D:\WINDOWS\system32\TDSSstgbvxct.dll
2008-12-02 21:14:53 ----A---- D:\WINDOWS\system32\TDSSyeavvdqu.dll
2008-12-02 21:14:18 ----A---- D:\WINDOWS\system32\pmnnoPge.dll
2008-12-02 21:13:57 ----A---- D:\WINDOWS\system32\gs73gfidgf.dll
2008-12-02 21:13:22 ----A---- D:\WINDOWS\system32\prunnet.exe
2008-11-28 18:30:08 ----HD---- D:\WINDOWS\PIF
======List of files/folders modified in the last 1 months======
2008-12-20 14:01:47 ----D---- D:\WINDOWS\Prefetch
2008-12-20 13:55:08 ----D---- D:\WINDOWS\system32
2008-12-20 13:54:58 ----ASH---- D:\WINDOWS\system32\puyovako.dll
2008-12-20 13:54:58 ----ASH---- D:\WINDOWS\system32\napigowu.dll
2008-12-20 13:53:57 ----D---- D:\Program Files\Mozilla Firefox
2008-12-20 00:52:59 ----SHD---- D:\WINDOWS\Installer
2008-12-19 23:00:02 ----D---- D:\WINDOWS\Temp
2008-12-19 22:52:21 ----N---- D:\WINDOWS\system32\pavulahi.dll
2008-12-19 22:52:21 ----ASH---- D:\WINDOWS\system32\vopuvemi.dll
2008-12-19 11:39:21 ----D---- D:\WINDOWS
2008-12-19 10:54:57 ----D---- D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-12-19 10:53:00 ----N---- D:\WINDOWS\system32\rugalilu.dll
2008-12-19 10:53:00 ----ASH---- D:\WINDOWS\system32\mowukiwe.dll
2008-12-19 09:12:40 ----SD---- D:\WINDOWS\Tasks
2008-12-18 22:04:26 ----N---- D:\WINDOWS\system32\tisisiga.dll
2008-12-18 22:04:26 ----ASH---- D:\WINDOWS\system32\jekosefu.dll
2008-12-18 16:15:07 ----RSD---- D:\WINDOWS\assembly
2008-12-18 16:15:07 ----D---- D:\Config.Msi
2008-12-18 10:04:54 ----N---- D:\WINDOWS\system32\kibalebe.dll
2008-12-18 10:04:54 ----ASH---- D:\WINDOWS\system32\demoliyo.dll
2008-12-16 17:27:17 ----ASH---- D:\WINDOWS\system32\yulejoka.dll
2008-12-16 17:27:15 ----ASH---- D:\WINDOWS\system32\dorigome.dll
2008-12-14 21:25:43 ----AD---- D:\Program Files
2008-12-14 20:02:07 ----SHD---- D:\System Volume Information
2008-12-14 20:02:07 ----D---- D:\WINDOWS\system32\Restore
2008-12-14 19:39:03 ----D---- D:\Program Files\Java
2008-12-14 17:29:18 ----A---- D:\WINDOWS\system32\tahalopu.dll
2008-12-12 18:47:50 ----ASH---- D:\WINDOWS\system32\javibizo.dll
2008-12-11 13:41:33 ----ASH---- D:\WINDOWS\system32\wewedaka.dll
2008-12-10 22:40:20 ----ASH---- D:\WINDOWS\system32\zebigimi.dll
2008-12-10 22:40:20 ----ASH---- D:\WINDOWS\system32\nubagida.dll
2008-12-10 21:40:02 ----ASH---- D:\WINDOWS\system32\pepeyepu.dll
2008-12-10 21:40:02 ----ASH---- D:\WINDOWS\system32\nizuputa.dll
2008-12-10 20:39:47 ----ASH---- D:\WINDOWS\system32\wunuzima.dll
2008-12-10 19:04:45 ----ASH---- D:\WINDOWS\system32\lesorari.dll
2008-12-10 19:04:44 ----ASH---- D:\WINDOWS\system32\zesumozo.dll
2008-12-10 18:05:24 ----ASH---- D:\WINDOWS\system32\potiwesi.dll
2008-12-10 18:05:24 ----ASH---- D:\WINDOWS\system32\petaziwe.dll
2008-12-10 16:51:35 ----ASH---- D:\WINDOWS\system32\vasamazo.dll
2008-12-08 18:48:31 ----A---- D:\WINDOWS\LogonStudio.ini
2008-12-08 15:39:32 ----ASH---- D:\WINDOWS\system32\fubuhara.dll
2008-12-07 22:01:02 ----ASH---- D:\WINDOWS\system32\hofegope.dll
2008-12-06 23:31:46 ----D---- D:\Program Files\Enigma Software Group
2008-12-06 21:38:51 ----A---- D:\WINDOWS\system32\logonuiX.exe
2008-12-06 21:24:07 ----D---- D:\WINDOWS\system32\config
2008-12-06 20:47:46 ----D---- D:\Program Files\Spybot - Search & Destroy
2008-12-06 20:46:36 ----RSD---- D:\WINDOWS\Fonts
2008-12-06 20:01:27 ----ASH---- D:\WINDOWS\system32\biwifasi.dll
2008-12-05 19:55:05 ----D---- D:\WINDOWS\system32\drivers
2008-12-05 19:55:05 ----D---- D:\Program Files\Lavasoft
2008-12-05 19:54:23 ----AD---- D:\Program Files\Common Files
2008-12-05 19:51:07 ----D---- D:\Documents and Settings\All Users\Application Data\Lavasoft
2008-12-05 18:48:11 ----D---- D:\Documents and Settings\All Users\Application Data\Viewpoint
2008-12-05 18:46:50 ----D---- D:\Documents and Settings\Kinh Tran\Application Data\uTorrent
2008-12-05 18:25:25 ----D---- D:\WINDOWS\system32\wbem
2008-12-05 18:25:25 ----D---- D:\WINDOWS\Registration
2008-12-04 15:55:58 ----D---- D:\Program Files\Malwarebytes' Anti-Malware
2008-12-03 19:39:09 ----D---- D:\WINDOWS\Minidump
2008-12-03 19:39:09 ----D---- D:\WINDOWS\Debug
2008-12-02 21:29:59 ----A---- D:\WINDOWS\system32\PerfStringBackup.INI
2008-11-25 23:54:42 ----D---- D:\Documents and Settings\Kinh Tran\Application Data\U3
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AVG Anti-Spyware Driver;AVG Anti-Spyware Driver; \??\D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys []
R1 AvgAsCln;AVG Anti-Spyware Clean Driver; D:\WINDOWS\System32\DRIVERS\AvgAsCln.sys [2007-05-30 10872]
R2 mdmxsdk;mdmxsdk; D:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2004-08-03 11868]
R3 ac97intc;Intel(r) 82801 Audio Driver Install Service (WDM); D:\WINDOWS\system32\drivers\ac97intc.sys [2001-08-17 96256]
R3 E100B;Intel(R) PRO Adapter Driver; D:\WINDOWS\system32\DRIVERS\e100b325.sys [2001-08-17 117760]
R3 GEARAspiWDM;GEAR CDRom Filter; D:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys [2006-09-19 15664]
R3 HidUsb;Microsoft HID Class Driver; D:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HSF_DP;HSF_DP; D:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys [2004-08-03 1041536]
R3 HSFHWBS2;HSFHWBS2; D:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys [2004-08-03 220032]
R3 MODEMCSA;Unimodem Streaming Filter Device; D:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
R3 mouhid;Mouse HID Driver; D:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 nv;nv; D:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-07-15 2459712]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; D:\WINDOWS\System32\Drivers\RootMdm.sys [2001-08-23 5888]
R3 usbhub;USB2 Enabled Hub; D:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; D:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 wg121;NETGEAR WG121 802.11g Wireless USB2.0 Adapter; D:\WINDOWS\system32\DRIVERS\wg121nd5.sys [2003-11-28 337216]
R3 winachsf;winachsf; D:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys [2004-08-03 685056]
S1 kbdhid;Keyboard HID Driver; D:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
S3 EagleNT;EagleNT; \??\D:\WINDOWS\system32\drivers\EagleNT.sys []
S3 LMouKE;Logitech SetPoint Mouse Filter Driver; D:\WINDOWS\system32\DRIVERS\LMouKE.Sys []
S3 npkcrypt;npkcrypt; \??\D:\Documents and Settings\Kinh Tran\Desktop\programs\RebirthRO\npkcrypt.sys []
S3 NPPTNT2;NPPTNT2; \??\D:\WINDOWS\system32\npptNT2.sys []
S3 SMALUSB;Digital Camera Driver; D:\WINDOWS\system32\DRIVERS\smalidt.sys [2002-05-30 9344]
S3 usbccgp;Microsoft USB Generic Parent Driver; D:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Microsoft USB PRINTER Class; D:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;USB Scanner Driver; D:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;USB Mass Storage Driver; D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; D:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; D:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 XDva202;XDva202; \??\D:\WINDOWS\system32\XDva202.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aawservice;Lavasoft Ad-Aware Service; D:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-07-07 611664]
R2 AVG Anti-Spyware Guard;AVG Anti-Spyware Guard; D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe [2007-05-30 312880]
R2 CCALib8;Canon Camera Access Library 8; D:\Program Files\Canon\CAL\CALMAIN.exe [2005-09-30 96341]
R2 JavaQuickStarterService;Java Quick Starter; D:\Program Files\Java\jre6\bin\jqs.exe [2008-12-14 152984]
R2 NVSvc;NVIDIA Display Driver Service; D:\WINDOWS\system32\nvsvc32.exe [2004-07-15 114755]
R2 WinDefend;Windows Defender; D:\Program Files\Windows Defender\MsMpEng.exe [2006-11-03 13592]
R3 iPod Service;iPod Service; D:\Program Files\iPod\bin\iPodService.exe [2006-10-30 492608]
S3 aspnet_state;ASP.NET State Service; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 gusvc;Google Updater Service; D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-01-25 138168]
S3 ose;Office Source Engine; D:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 usprserv;User Privilege Service; D:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; D:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S3 WTWService;Windows Tracks Washer Registry Service; D:\Program Files\Internet Tracks Washer\washservice.exe []
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; D:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
S4 Viewpoint Manager Service;Viewpoint Manager Service; D:\Program Files\Viewpoint\Common\ViewpointService.exe []
-----------------EOF-----------------