[Start Post #2]
Services
Name--Internal Name--Startup Type--State--Service Type--
#Path
##(Version Info)
Ati HotKey Poller--Ati HotKey Poller--Automatic--Running--Win32, running in it's own process--
#C:\WINDOWS\system32\Ati2evxx.exe
##(ATI Technologies Inc. [Ver = 6.14.10.4155 | Size = 434176 bytes | Date = 12/16/2006 9:42:48 PM | Attr = ])
AVG7 Alert Manager Server--Avg7Alrt--Automatic--Running--Win32, running in it's own process--
#C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
##(GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 343552 bytes | Date = 11/1/2006 4:23:46 PM | Attr = ])
AVG7 Update Service--Avg7UpdSvc--Automatic--Running--Win32, running in it's own process--
#C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
##(GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 49664 bytes | Date = 11/1/2006 4:23:54 PM | Attr = ])
AVG E-mail Scanner--AVGEMS--Automatic--Running--Win32, running in it's own process--
#C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
##(GRISOFT, s.r.o. [Ver = 7.5.0.432 | Size = 323072 bytes | Date = 1/30/2007 10:47:36 PM | Attr = ])
Creative Service for CDROM Access--Creative Service for CDROM Access--Automatic--Running--Win32, running in it's own process--
#C:\WINDOWS\system32\CTsvcCDA.EXE
##(Creative Technology Ltd [Ver = 1.0.1.0 | Size = 44032 bytes | Date = 12/13/1999 9:01:00 AM | Attr = ])
LexBce Server--LexBceS--Automatic--Running--Win32, running in it's own process--
#C:\WINDOWS\system32\LEXBCES.EXE
##(Lexmark International, Inc. [Ver = 9.35 | Size = 307200 bytes | Date = 8/29/2003 8:54:16 AM | Attr = ])
Files
Full Path
#Details
%SystemDrive%
#
%ProgramFilesDir%
#
%WinDir%
#
%System%
#
C:\WINDOWS\SYSTEM32\aswBoot.exe
#UPX! ( [Ver = 4, 6, 763, 0 | Size = 503296 bytes | Date = 1/27/2006 5:38:10 PM | Attr = ])
C:\WINDOWS\SYSTEM32\avisynth.dll
#UPX! (The Public [Ver = 2, 5, 6, 0 | Size = 308224 bytes | Date = 10/28/2005 11:44:12 AM | Attr = ])
C:\WINDOWS\SYSTEM32\d3dx9_25.dll
#aspack (Microsoft Corporation [Ver = 9.06.168.0000 | Size = 2337488 bytes | Date = 3/18/2005 5:19:58 PM | Attr = ])
C:\WINDOWS\SYSTEM32\d3dx9_26.dll
#aspack (Microsoft Corporation [Ver = 9.07.239.0000 | Size = 2297552 bytes | Date = 5/26/2005 3:34:52 PM | Attr = ])
C:\WINDOWS\SYSTEM32\d3dx9_27.dll
#aspack (Microsoft Corporation [Ver = 9.08.299.0000 | Size = 2319568 bytes | Date = 7/22/2005 7:59:04 PM | Attr = ])
C:\WINDOWS\SYSTEM32\d3dx9_28.dll
#aspack (Microsoft Corporation [Ver = 9.10.455.0000 | Size = 2323664 bytes | Date = 12/5/2005 6:09:18 PM | Attr = ])
C:\WINDOWS\SYSTEM32\d3dx9_29.dll
#aspack (Microsoft Corporation [Ver = 9.11.519.0000 | Size = 2332368 bytes | Date = 2/3/2006 7:43:16 AM | Attr = ])
C:\WINDOWS\SYSTEM32\d3dx9_30.dll
#aspack (Microsoft Corporation [Ver = 9.12.589.0000 | Size = 2388176 bytes | Date = 3/31/2006 11:40:58 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dfrg.msc
#PEC2 ( [Ver = | Size = 41397 bytes | Date = 8/12/2004 8:56:50 AM | Attr = ])
C:\WINDOWS\SYSTEM32\DivX.dll
#PEC2 (DivX, Inc. [Ver = 6.4.0.51 | Size = 635486 bytes | Date = 12/12/2006 11:25:20 AM | Attr = ])
C:\WINDOWS\SYSTEM32\DivX.dll
#PECompact2 (DivX, Inc. [Ver = 6.4.0.51 | Size = 635486 bytes | Date = 12/12/2006 11:25:20 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dtssource.ax
#UPX! ( [Ver = | Size = 67072 bytes | Date = 1/4/2003 7:42:32 PM | Attr = ])
C:\WINDOWS\SYSTEM32\LegitCheckControl.dll
#PTech (Microsoft Corporation [Ver = 1.5.0530.0 | Size = 579888 bytes | Date = 5/17/2006 10:23:38 AM | Attr = ])
C:\WINDOWS\SYSTEM32\MRT.exe
#PECompact2 (Microsoft Corporation [Ver = 1.24.1635.0 | Size = 10980776 bytes | Date = 1/2/2007 6:19:44 PM | Attr = ])
C:\WINDOWS\SYSTEM32\MRT.exe
#aspack (Microsoft Corporation [Ver = 1.24.1635.0 | Size = 10980776 bytes | Date = 1/2/2007 6:19:44 PM | Attr = ])
C:\WINDOWS\SYSTEM32\ntdll.dll
#aspack (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 708096 bytes | Date = 8/12/2004 9:02:34 AM | Attr = ])
C:\WINDOWS\SYSTEM32\nusrmgr.cpl
#WSUD (Microsoft Corporation [Ver = 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) | Size = 257024 bytes | Date = 8/12/2004 9:02:44 AM | Attr = ])
C:\WINDOWS\SYSTEM32\rasdlg.dll
#Umonitor (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 657920 bytes | Date = 8/12/2004 9:04:02 AM | Attr = ])
C:\WINDOWS\SYSTEM32\wbdbase.deu
#winsync ( [Ver = | Size = 1309184 bytes | Date = 8/12/2004 9:08:50 AM | Attr = ])
%System%\Drivers folder and sub-folders
#
C:\WINDOWS\SYSTEM32\drivers\avg7core.sys
#UPX! (GRISOFT, s.r.o. [Ver = 7.5.0.429 | Size = 816672 bytes | Date = 11/1/2006 4:23:58 PM | Attr = ])
C:\WINDOWS\SYSTEM32\drivers\avg7core.sys
#FSG! (GRISOFT, s.r.o. [Ver = 7.5.0.429 | Size = 816672 bytes | Date = 11/1/2006 4:23:58 PM | Attr = ])
C:\WINDOWS\SYSTEM32\drivers\avg7core.sys
#PEC2 (GRISOFT, s.r.o. [Ver = 7.5.0.429 | Size = 816672 bytes | Date = 11/1/2006 4:23:58 PM | Attr = ])
C:\WINDOWS\SYSTEM32\drivers\avg7core.sys
#aspack (GRISOFT, s.r.o. [Ver = 7.5.0.429 | Size = 816672 bytes | Date = 11/1/2006 4:23:58 PM | Attr = ])
%windir% + sub-dirs for System or Hidden files less than 60 days old
#
C:\WINDOWS\bootstat.dat
# ( [Ver = | Size = 2048 bytes | Date = 2/6/2007 9:22:20 PM | Attr = S])
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\7a199afb2eb748baf4e4a35c4281d089\BITA6.tmp
# ( [Ver = | Size = 25755448 bytes | Date = 12/21/2006 9:25:44 PM | Attr = H ])
C:\WINDOWS\system32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB929969.cat
# ( [Ver = | Size = 7894 bytes | Date = 12/22/2006 11:53:02 AM | Attr = S])
C:\WINDOWS\system32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\oem31.CAT
# ( [Ver = | Size = 142045 bytes | Date = 1/8/2007 8:50:54 AM | Attr = S])
C:\WINDOWS\system32\config\default.LOG
# ( [Ver = | Size = 1024 bytes | Date = 2/6/2007 9:27:42 PM | Attr = H ])
C:\WINDOWS\system32\config\SAM.LOG
# ( [Ver = | Size = 1024 bytes | Date = 2/6/2007 9:22:58 PM | Attr = H ])
C:\WINDOWS\system32\config\SECURITY.LOG
# ( [Ver = | Size = 1024 bytes | Date = 2/6/2007 9:26:26 PM | Attr = H ])
C:\WINDOWS\system32\config\software.LOG
# ( [Ver = | Size = 1024 bytes | Date = 2/6/2007 9:34:56 PM | Attr = H ])
C:\WINDOWS\system32\config\system.LOG
# ( [Ver = | Size = 1024 bytes | Date = 2/6/2007 9:27:06 PM | Attr = H ])
C:\WINDOWS\system32\config\systemprofile\ntuser.dat.LOG
# ( [Ver = | Size = 1024 bytes | Date = 1/28/2007 2:37:06 PM | Attr = H ])
C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\CX_40997.CAT
# ( [Ver = | Size = 142045 bytes | Date = 1/8/2007 8:50:54 AM | Attr = S])
C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\CX_40997.CAT
# ( [Ver = | Size = 142045 bytes | Date = 1/8/2007 8:50:54 AM | Attr = S])
C:\WINDOWS\Tasks\SA.DAT
# ( [Ver = | Size = 6 bytes | Date = 2/6/2007 9:22:28 PM | Attr = H ])
CPL files
#
C:\WINDOWS\SYSTEM32\access.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 68608 bytes | Date = 8/12/2004 8:55:44 AM | Attr = ])
C:\WINDOWS\SYSTEM32\appwiz.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 549888 bytes | Date = 8/12/2004 8:55:48 AM | Attr = ])
C:\WINDOWS\SYSTEM32\BACSCPL.cpl
# ( [Ver = 7, 5, 2, 0 | Size = 24576 bytes | Date = 4/20/2004 11:07:08 AM | Attr = ])
C:\WINDOWS\SYSTEM32\bthprops.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 110592 bytes | Date = 8/12/2004 8:55:58 AM | Attr = ])
C:\WINDOWS\SYSTEM32\desk.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 135168 bytes | Date = 8/12/2004 8:56:50 AM | Attr = ])
C:\WINDOWS\SYSTEM32\firewall.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 80384 bytes | Date = 8/12/2004 8:57:24 AM | Attr = ])
C:\WINDOWS\SYSTEM32\hdwwiz.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 155136 bytes | Date = 8/12/2004 8:57:42 AM | Attr = ])
C:\WINDOWS\SYSTEM32\inetcpl.cpl
# (Microsoft Corporation [Ver = 7.00.5730.11 (winmain(wmbla).061017-1135) | Size = 1817088 bytes | Date = 10/17/2006 1:05:48 PM | Attr = ])
C:\WINDOWS\SYSTEM32\intl.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 129536 bytes | Date = 8/12/2004 8:58:08 AM | Attr = ])
C:\WINDOWS\SYSTEM32\irprops.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 380416 bytes | Date = 8/12/2004 8:58:16 AM | Attr = ])
C:\WINDOWS\SYSTEM32\javacpl.cpl
# (Sun Microsystems, Inc. [Ver = 6.0.0.105 | Size = 69632 bytes | Date = 1/30/2007 6:35:30 PM | Attr = ])
C:\WINDOWS\SYSTEM32\joy.cpl
# (Microsoft Corporation [Ver = 5.03.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 68608 bytes | Date = 8/12/2004 8:58:22 AM | Attr = ])
C:\WINDOWS\SYSTEM32\main.cpl
# (Microsoft Corporation [Ver = 5.1.2403.1 | Size = 187904 bytes | Date = 8/12/2004 8:59:12 AM | Attr = ])
C:\WINDOWS\SYSTEM32\mmsys.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 618496 bytes | Date = 8/12/2004 8:59:56 AM | Attr = ])
C:\WINDOWS\SYSTEM32\ncpa.cpl
# (Microsoft Corporation [Ver = 5.1.2600.0 (xpclient.010817-1148) | Size = 35840 bytes | Date = 8/12/2004 9:01:36 AM | Attr = ])
C:\WINDOWS\SYSTEM32\netsetup.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 25600 bytes | Date = 8/12/2004 9:02:08 AM | Attr = ])
C:\WINDOWS\SYSTEM32\nusrmgr.cpl
# (Microsoft Corporation [Ver = 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) | Size = 257024 bytes | Date = 8/12/2004 9:02:44 AM | Attr = ])
C:\WINDOWS\SYSTEM32\odbccp32.cpl
# (Microsoft Corporation [Ver = 3.525.1117.0 (xpsp_sp2_rtm.040803-2158) | Size = 32768 bytes | Date = 8/12/2004 9:02:52 AM | Attr = ])
C:\WINDOWS\SYSTEM32\powercfg.cpl
# (Microsoft Corporation [Ver = 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) | Size = 114688 bytes | Date = 8/12/2004 9:03:40 AM | Attr = ])
C:\WINDOWS\SYSTEM32\sysdm.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 298496 bytes | Date = 8/12/2004 9:06:56 AM | Attr = ])
C:\WINDOWS\SYSTEM32\telephon.cpl
# (Microsoft Corporation [Ver = 5.1.2600.0 (xpclient.010817-1148) | Size = 28160 bytes | Date = 8/12/2004 9:07:14 AM | Attr = ])
C:\WINDOWS\SYSTEM32\timedate.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 94208 bytes | Date = 8/12/2004 9:07:18 AM | Attr = ])
C:\WINDOWS\SYSTEM32\USBAudio.cpl
# (Creative Technology Ltd. [Ver = 2.4.5.0 | Size = 176128 bytes | Date = 2/18/2004 12:52:50 PM | Attr = ])
C:\WINDOWS\SYSTEM32\wscui.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 148480 bytes | Date = 8/12/2004 9:10:30 AM | Attr = ])
C:\WINDOWS\SYSTEM32\wuaucpl.cpl
# (Microsoft Corporation [Ver = 5.8.0.2469 built by: lab01_n(wmbla) | Size = 174360 bytes | Date = 5/26/2005 7:16:30 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\access.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 68608 bytes | Date = 8/12/2004 8:55:44 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\appwiz.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 549888 bytes | Date = 8/12/2004 8:55:48 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\bthprops.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 110592 bytes | Date = 8/12/2004 8:55:58 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\desk.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 135168 bytes | Date = 8/12/2004 8:56:50 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\firewall.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 80384 bytes | Date = 8/12/2004 8:57:24 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\hdwwiz.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 155136 bytes | Date = 8/12/2004 8:57:42 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\inetcpl.cpl
# (Microsoft Corporation [Ver = 7.00.5730.11 (winmain(wmbla).061017-1135) | Size = 1817088 bytes | Date = 10/17/2006 1:05:48 PM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\intl.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 129536 bytes | Date = 8/12/2004 8:58:08 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\irprops.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 380416 bytes | Date = 8/12/2004 8:58:16 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\joy.cpl
# (Microsoft Corporation [Ver = 5.03.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 68608 bytes | Date = 8/12/2004 8:58:22 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\main.cpl
# (Microsoft Corporation [Ver = 5.1.2403.1 | Size = 187904 bytes | Date = 8/12/2004 8:59:12 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\mmsys.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 618496 bytes | Date = 8/12/2004 8:59:56 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\ncpa.cpl
# (Microsoft Corporation [Ver = 5.1.2600.0 (xpclient.010817-1148) | Size = 35840 bytes | Date = 8/12/2004 9:01:36 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\netsetup.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 25600 bytes | Date = 8/12/2004 9:02:08 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\nusrmgr.cpl
# (Microsoft Corporation [Ver = 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) | Size = 257024 bytes | Date = 8/12/2004 9:02:44 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\odbccp32.cpl
# (Microsoft Corporation [Ver = 3.525.1117.0 (xpsp_sp2_rtm.040803-2158) | Size = 32768 bytes | Date = 8/12/2004 9:02:52 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\powercfg.cpl
# (Microsoft Corporation [Ver = 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) | Size = 114688 bytes | Date = 8/12/2004 9:03:40 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\sapi.cpl
# (Microsoft Corporation [Ver = 5.1.4111.00 (xpsp_sp2_rtm.040803-2158) | Size = 155648 bytes | Date = 8/12/2004 9:04:40 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\sysdm.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 298496 bytes | Date = 8/12/2004 9:06:56 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\telephon.cpl
# (Microsoft Corporation [Ver = 5.1.2600.0 (xpclient.010817-1148) | Size = 28160 bytes | Date = 8/12/2004 9:07:14 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\timedate.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 94208 bytes | Date = 8/12/2004 9:07:18 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\wscui.cpl
# (Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 148480 bytes | Date = 8/12/2004 9:10:30 AM | Attr = ])
C:\WINDOWS\SYSTEM32\dllcache\wuaucpl.cpl
# (Microsoft Corporation [Ver = 5.8.0.2469 built by: lab01_n(wmbla) | Size = 174360 bytes | Date = 5/26/2005 7:16:30 AM | Attr = ])
Auto-Start Folders
#
HKLM->Explorer\Shell Folders\\Common Startup
# = C:\Documents and Settings\All Users\Start Menu\Programs\Startup
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini
#( [Ver = | Size = 84 bytes | Date = 1/7/2006 3:09:22 PM | Attr = HS])
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\TV Remote Control.lnk
#C:\Program Files\KWorld Multimedia\PVR-TV 2800 Utilities\EPIARCtl.exe ( [Ver = 3, 0, 1, 0 | Size = 69632 bytes | Date = 6/16/2005 5:22:50 PM | Attr = ])
HKLM->Explorer\User Shell Folders\\Common Startup
# = %ALLUSERSPROFILE%\Start Menu\Programs\Startup
HKLM->Explorer\Shell Folders\\Startup
# = C:\Documents and Settings\SB\Start Menu\Programs\Startup
C:\Documents and Settings\SB\Start Menu\Programs\Startup\desktop.ini
#( [Ver = | Size = 84 bytes | Date = 1/7/2006 3:09:22 PM | Attr = HS])
HKCU->Explorer\User Shell Folders\\Startup
# = %USERPROFILE%\Start Menu\Programs\Startup
Miscellaneous Auto-Start Files
#
System.ini->[Boot]\\Shell
#Explorer.exe
Wininit.ini: Line 1
#[rename]
Config.nt: Line 52
#dos=high, umb
Config.nt: Line 53
#device=%SystemRoot%\system32\himem.sys
Config.nt: Line 54
#files=40
Config.nt: Line 56
#device=%SystemRoot%\system32\haspdos.sys
Config.nt: Line 59
#ntcmdprompt
AutoExec.nt: Line 1
#@echo off
AutoExec.nt: Line 8
#lh %SystemRoot%\system32\mscdexnt.exe
AutoExec.nt: Line 11
#lh %SystemRoot%\system32\redir
AutoExec.nt: Line 14
#lh %SystemRoot%\system32\dosx
AutoExec.nt: Line 36
#SET BLASTER=A220 I5 D1 P330 T3
AutoExec.bat: Line 1
#SET TI83PLUSDIR=C:\PROGRA~1\TIEDUC~1\TI-83P~1
AutoExec.bat: Line 2
#PATH=%PATH%;C:\PROGRA~1\COMMON~1\MUVEET~1\030625
Miscellaneous Folders
#
AllUsers ApplicationData Folder
#
C:\Documents and Settings\All Users\Application Data\desktop.ini
# ( [Ver = | Size = 62 bytes | Date = 1/7/2006 7:00:22 AM | Attr = HS])
CurrentUser ApplicationData Folder
#
C:\Documents and Settings\SB\Application Data\desktop.ini
# ( [Ver = | Size = 62 bytes | Date = 1/7/2006 7:00:22 AM | Attr = HS])
C:\Documents and Settings\SB\Application Data\GDIPFONTCACHEV1.DAT
# ( [Ver = | Size = 24968 bytes | Date = 10/20/2006 3:57:18 PM | Attr = ])
C:\Documents and Settings\SB\Application Data\ViewerApp.dat
# ( [Ver = | Size = 560 bytes | Date = 8/25/2006 1:27:00 PM | Attr = ])
Program Files Folder
#
Common Files Folder
#
DPF files
#
{0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75}
#CKAVWebScan Object - CodeBase =
http://www.kaspersky.com/kos/english/ka ... nicode.cab
{166B1BCA-3F9C-11CF-8075-444553540000}
#Shockwave ActiveX Control - CodeBase =
http://fpdownload.macromedia.com/get/sh ... tor/sw.cab
{17492023-C23A-453E-A040-C7C580BBF700}
#Windows Genuine Advantage Validation Tool - CodeBase =
http://go.microsoft.com/fwlink/?linkid=39204
{233C1507-6A77-46A4-9443-F871F945D258}
#Shockwave ActiveX Control - CodeBase =
http://fpdownload.macromedia.com/get/sh ... tor/sw.cab
{6414512B-B978-451D-A0D8-FCFDF33E833C}
#WUWebControl Class - CodeBase =
http://update.microsoft.com/windowsupda ... 6675056578
{6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
#MUWebControl Class - CodeBase =
http://update.microsoft.com/microsoftup ... 3756671875
{8AD9C840-044E-11D1-B3E9-00805F499D93}
#Java Plug-in 1.6.0 - CodeBase =
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
{9A9307A0-7DA4-4DAF-B042-5009F29E09E1}
#ActiveScan Installer Class - CodeBase =
http://acs.pandasoftware.com/activescan ... asinst.cab
{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}
#Java Plug-in 1.6.0 - CodeBase =
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
#Java Plug-in 1.6.0 - CodeBase =
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Hosts file = 732 bytes. Reading all entries.
#C:\WINDOWS\System32\drivers\etc\Hosts
# Copyright (c) 1993-1999 Microsoft Corp.
#
#
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
#
#
# This file contains the mappings of IP addresses to host names. Each
#
# entry should be kept on an individual line. The IP address should
#
# be placed in the first column followed by the corresponding host name.
#
# The IP address and the host name should be separated by at least one
#
# space.
#
#
#
# Additionally, comments (such as these) may be inserted on individual
#
# lines or following the machine name denoted by a '#' symbol.
#
#
#
# For example:
#
#
#
# 102.54.94.97 rhino.acme.com # source server
#
# 38.25.63.10 x.acme.com # x client host
#
#
127.0.0.1 localhost
#