Hi, Askey127,
First of all, thanks for your time again!
1) I do not recall having Windows XP re-installed, even if I did, it would be with the original CD
2) I don't receive errors for Windows update. I did not set it on automatic update though. I did set it that way after I read your message and I did OK.
3) When should I turn the Script blocking on?
----------------------------------------------------------------------------------
Microsoft Windows XP [Version 5.1.2600]
(C) Copyright 1985-2001 Microsoft Corp.
C:\Documents and Settings\My Account>chkdsk
The type of the file system is NTFS.
WARNING! F parameter not specified.
Running CHKDSK in read-only mode.
CHKDSK is verifying files (stage 1 of 3)...
File verification completed.
CHKDSK is verifying indexes (stage 2 of 3)...
Index verification completed.
CHKDSK is recovering lost files.
CHKDSK is verifying security descriptors (stage 3 of 3)...
Security descriptor verification completed.
CHKDSK discovered free space marked as allocated in the
master file table (MFT) bitmap.
CHKDSK discovered free space marked as allocated in the volume bitmap.
Windows found problems with the file system.
Run CHKDSK with the /F (fix) option to correct these.
117113849 KB total disk space.
13568724 KB in 40217 files.
11664 KB in 2920 indexes.
0 KB in bad sectors.
131561 KB in use by the system.
65536 KB occupied by the log file.
103401900 KB available on disk.
4096 bytes in each allocation unit.
29278462 total allocation units on disk.
25850475 allocation units available on disk.
C:\Documents and Settings\ My Account >
-----------------------------------------------------------------------------
WinPFind3 logfile created on: 5/5/2007 8:15:28 AM
WinPFind3U by OldTimer - Version 1.0.34 Folder = C:\Documents and Settings\My Account\Desktop\WinPFind3u\
Microsoft Windows XP Service Pack 1 (Version = 5.1.2600)
Internet Explorer (Version = 6.0.2800.1106)
1021.98 Mb Total Physical Memory | 599.87 Mb Available Physical Memory | 58.70% Memory free
2.41 Gb Paging File | 2.03 Gb Available in Paging File | 84.52% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072;
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 111.69 Gb Total Space | 98.61 Gb Free Space | 88.29% Space Free
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
Computer Name: DFL5DG51
Current User Name: My Account
Logged in as Administrator.
Current Boot Mode: Normal
[Processes - Non-Microsoft Only]
asfagent.exe -> %ProgramFiles%\Intel\ASF Agent\ASFAgent.exe -> Intel Corporation [Ver = 4.0.7.0 | Size = 114688 bytes | Modified Date = 2/10/2003 2:52:30 AM | Attr = ]
cvpnd.exe -> %ProgramFiles%\Kaiser\VPN Client\cvpnd.exe -> Cisco Systems, Inc. [Ver = 3.6.1 (Rel) | Size = 1282112 bytes | Modified Date = 9/3/2002 2:46:36 PM | Attr = ]
directcd.exe -> %ProgramFiles%\Roxio\Easy CD Creator 5\DirectCD\Directcd.exe -> Roxio [Ver = 5.3.4.21 | Size = 684032 bytes | Modified Date = 12/17/2002 10:28:00 AM | Attr = ]
directcd.exe -> %ProgramFiles%\Roxio\Easy CD Creator 5\DirectCD\Directcd.exe -> Roxio [Ver = 5.3.4.21 | Size = 684032 bytes | Modified Date = 12/17/2002 10:28:00 AM | Attr = ]
directcd.exe -> %ProgramFiles%\Roxio\Easy CD Creator 5\DirectCD\Directcd.exe -> Roxio [Ver = 5.3.4.21 | Size = 684032 bytes | Modified Date = 12/17/2002 10:28:00 AM | Attr = ]
dlg.exe -> %ProgramFiles%\Digital Line Detect\DLG.exe -> BVRP Software [Ver = 1, 0, 0, 1 | Size = 24576 bytes | Modified Date = 9/12/2002 7:28:14 AM | Attr = ]
dlg.exe -> %ProgramFiles%\Digital Line Detect\DLG.exe -> BVRP Software [Ver = 1, 0, 0, 1 | Size = 24576 bytes | Modified Date = 9/12/2002 7:28:14 AM | Attr = ]
dlg.exe -> %ProgramFiles%\Digital Line Detect\DLG.exe -> BVRP Software [Ver = 1, 0, 0, 1 | Size = 24576 bytes | Modified Date = 9/12/2002 7:28:14 AM | Attr = ]
dsentry.exe -> %System32%\DSentry.exe -> Dell - Advanced Desktop Engineering [Ver = 1, 0, 2, 0 | Size = 28672 bytes | Modified Date = 8/14/2002 4:22:52 PM | Attr = R ]
dsentry.exe -> %System32%\DSentry.exe -> Dell - Advanced Desktop Engineering [Ver = 1, 0, 2, 0 | Size = 28672 bytes | Modified Date = 8/14/2002 4:22:52 PM | Attr = R ]
dsentry.exe -> %System32%\DSentry.exe -> Dell - Advanced Desktop Engineering [Ver = 1, 0, 2, 0 | Size = 28672 bytes | Modified Date = 8/14/2002 4:22:52 PM | Attr = R ]
hkcmd.exe -> %System32%\hkcmd.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 114688 bytes | Modified Date = 4/6/2003 10:07:38 PM | Attr = ]
hkcmd.exe -> %System32%\hkcmd.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 114688 bytes | Modified Date = 4/6/2003 10:07:38 PM | Attr = ]
hkcmd.exe -> %System32%\hkcmd.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 114688 bytes | Modified Date = 4/6/2003 10:07:38 PM | Attr = ]
hotsync.exe -> %ProgramFiles%\Sony Handheld\HOTSYNC.EXE -> Palm, Inc. [Ver = 4.0.4 | Size = 299008 bytes | Modified Date = 8/9/2002 4:36:20 PM | Attr = ]
lexbces.exe -> %System32%\lexbces.exE -> Lexmark International, Inc. [Ver = 9.39 | Size = 303104 bytes | Modified Date = 3/5/2004 1:09:00 PM | Attr = ]
navapsvc.exe -> %ProgramFiles%\Norton AntiVirus\Navapsvc.exe -> Symantec Corporation [Ver = 8.00.58 | Size = 115792 bytes | Modified Date = 8/16/2001 6:16:12 PM | Attr = ]
navapw32.exe -> %ProgramFiles%\Norton AntiVirus\Navapw32.exe -> Symantec Corporation [Ver = 8.00.58 | Size = 74832 bytes | Modified Date = 8/16/2001 5:52:42 PM | Attr = ]
navapw32.exe -> %ProgramFiles%\Norton AntiVirus\Navapw32.exe -> Symantec Corporation [Ver = 8.00.58 | Size = 74832 bytes | Modified Date = 8/16/2001 5:52:42 PM | Attr = ]
navapw32.exe -> %ProgramFiles%\Norton AntiVirus\Navapw32.exe -> Symantec Corporation [Ver = 8.00.58 | Size = 74832 bytes | Modified Date = 8/16/2001 5:52:42 PM | Attr = ]
qttask.exe -> %ProgramFiles%\QuickTime\qttask.exe -> Apple Computer, Inc. [Ver = 6.3 | Size = 77824 bytes | Modified Date = 8/10/2004 12:27:12 PM | Attr = ]
qttask.exe -> %ProgramFiles%\QuickTime\qttask.exe -> Apple Computer, Inc. [Ver = 6.3 | Size = 77824 bytes | Modified Date = 8/10/2004 12:27:12 PM | Attr = ]
qttask.exe -> %ProgramFiles%\QuickTime\qttask.exe -> Apple Computer, Inc. [Ver = 6.3 | Size = 77824 bytes | Modified Date = 8/10/2004 12:27:12 PM | Attr = ]
realplay.exe -> %ProgramFiles%\Real\RealPlayer\realplay.exe -> RealNetworks, Inc. [Ver = 6.0.9.584 | Size = 26112 bytes | Modified Date = 8/10/2004 12:26:56 PM | Attr = ]
realplay.exe -> %ProgramFiles%\Real\RealPlayer\realplay.exe -> RealNetworks, Inc. [Ver = 6.0.9.584 | Size = 26112 bytes | Modified Date = 8/10/2004 12:26:56 PM | Attr = ]
realplay.exe -> %ProgramFiles%\Real\RealPlayer\realplay.exe -> RealNetworks, Inc. [Ver = 6.0.9.584 | Size = 26112 bytes | Modified Date = 8/10/2004 12:26:56 PM | Attr = ]
winpfind3u.exe -> %UserDesktop%\WinPFind3u\WinPFind3U.exe -> OldTimer Tools [Ver = 1.0.34.0 | Size = 318976 bytes | Modified Date = 4/10/2007 10:00:18 PM | Attr = ]
[Win32 Services - Non-Microsoft Only]
(ASFAgent) ASF Agent [Win32_Own | Auto | Running] -> %ProgramFiles%\Intel\ASF Agent\ASFAgent.exe -> Intel Corporation [Ver = 4.0.7.0 | Size = 114688 bytes | Modified Date = 2/10/2003 2:52:30 AM | Attr = ]
(CVPND) Cisco Systems, Inc. VPN Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Kaiser\VPN Client\cvpnd.exe -> Cisco Systems, Inc. [Ver = 3.6.1 (Rel) | Size = 1282112 bytes | Modified Date = 9/3/2002 2:46:36 PM | Attr = ]
(dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> %System32%\DMADMIN.EXE -> Microsoft Corp., Veritas Software [Ver = 2600.0.503.0 | Size = 204800 bytes | Modified Date = 3/19/2004 3:35:18 PM | Attr = ]
(LexBceS) LexBce Server [Win32_Own | Auto | Running] -> %System32%\lexbces.exE -> Lexmark International, Inc. [Ver = 9.39 | Size = 303104 bytes | Modified Date = 3/5/2004 1:09:00 PM | Attr = ]
(navapsvc) Norton AntiVirus Auto Protect Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Norton AntiVirus\Navapsvc.exe -> Symantec Corporation [Ver = 8.00.58 | Size = 115792 bytes | Modified Date = 8/16/2001 6:16:12 PM | Attr = ]
(NetSvc) Intel NCS NetService [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Intel\NCS\Sync\NetSvc.exe -> Intel(R) Corporation [Ver = 1.2.26.0 | Size = 143360 bytes | Modified Date = 3/3/2003 11:33:40 AM | Attr = ]
(SBService) ScriptBlocking Service [Win32_Own | Disabled | Stopped] -> %CommonProgramFiles%\Symantec Shared\Script Blocking\SBServ.exe -> Symantec Corporation [Ver = 1, 1, 0, 126 | Size = 54408 bytes | Modified Date = 8/13/2001 11:18:36 PM | Attr = ]
(SoftUpdate) Update Service For Windows [Win32_Shared | Auto | Stopped] -> %SystemRoot%\SoftUpdate.exe -> File not found
[Registry - Non-Microsoft Only]
< Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
AdaptecDirectCD -> %ProgramFiles%\Roxio\Easy CD Creator 5\DirectCD\Directcd.exe -> Roxio [Ver = 5.3.4.21 | Size = 684032 bytes | Modified Date = 12/17/2002 10:28:00 AM | Attr = ]
DVDSentry -> %System32%\DSentry.exe -> Dell - Advanced Desktop Engineering [Ver = 1, 0, 2, 0 | Size = 28672 bytes | Modified Date = 8/14/2002 4:22:52 PM | Attr = R ]
HotKeysCmds -> %System32%\hkcmd.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 114688 bytes | Modified Date = 4/6/2003 10:07:38 PM | Attr = ]
IgfxTray -> %System32%\igfxtray.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Modified Date = 4/6/2003 10:19:52 PM | Attr = ]
MSPY2002 -> %System32%\IME\PINTLGNT\IMSCINST.EXE -> [Ver = | Size = 59392 bytes | Modified Date = 3/31/2003 3:00:00 AM | Attr = ]
NAV Agent -> %ProgramFiles%\Norton AntiVirus\Navapw32.exe -> Symantec Corporation [Ver = 8.00.58 | Size = 74832 bytes | Modified Date = 8/16/2001 5:52:42 PM | Attr = ]
QuickTime Task -> %ProgramFiles%\QuickTime\qttask.exe -> Apple Computer, Inc. [Ver = 6.3 | Size = 77824 bytes | Modified Date = 8/10/2004 12:27:12 PM | Attr = ]
RealTray -> %ProgramFiles%\Real\RealPlayer\realplay.exe -> RealNetworks, Inc. [Ver = 6.0.9.584 | Size = 26112 bytes | Modified Date = 8/10/2004 12:26:56 PM | Attr = ]
< OptionalComponents [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\
IMAIL -> Installed = 1 ->
MAPI -> Installed = 1 ->
MSFS -> Installed = 1 ->
< Common Startup > -> C:\Documents and Settings\All Users\Start Menu\Programs\Startup
%AllUsersStartup%\Adobe Reader Speed Launch.lnk -> %ProgramFiles%\Adobe\Acrobat 7.0\Reader\reader_sl.exe -> Adobe Systems Incorporated [Ver = 7.0.0.0 | Size = 29696 bytes | Modified Date = 12/14/2004 4:44:06 AM | Attr = ]
%AllUsersStartup%\Digital Line Detect.lnk -> %ProgramFiles%\Digital Line Detect\DLG.exe -> BVRP Software [Ver = 1, 0, 0, 1 | Size = 24576 bytes | Modified Date = 9/12/2002 7:28:14 AM | Attr = ]
%AllUsersStartup%\Kaiser VPN Client.lnk -> %ProgramFiles%\Kaiser\VPN Client\ipsecdialer.exe -> Cisco Systems, Inc. [Ver = 3.6.1 (Rel) | Size = 1269836 bytes | Modified Date = 9/3/2002 2:42:46 PM | Attr = ]
< User Startup > -> C:\Documents and Settings\My Account\Start Menu\Programs\Startup
%UserStartup%\HotSync Manager.lnk -> %ProgramFiles%\Sony Handheld\HOTSYNC.EXE -> Palm, Inc. [Ver = 4.0.4 | Size = 299008 bytes | Modified Date = 8/9/2002 4:36:20 PM | Attr = ]
< AppInit_DLLs [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs
*AppInit_DLLs* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls ->
KB608769M.LOG -> KB608769M.LOG -> File not found
< SecurityProviders [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders
< Winlogon settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
< Winlogon settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
< Winlogon\Notify settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\
igfxcui -> %System32%\igfxsrvc.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 315392 bytes | Modified Date = 4/6/2003 10:06:48 PM | Attr = ]
WgaLogon -> Reg Data - Value does not exist -> File not found
< HOSTS File > (686 bytes) -> C:\WINDOWS\System32\drivers\etc\Hosts
127.0.0.1 localhost -> ->
< Internet Explorer Settings > ->
HKLM: Default_Page_URL ->
http://www.microsoft.com/isapi/redir.dl ... ar=msnhome ->
HKLM: Main\\Default_Search_URL ->
http://www.microsoft.com/isapi/redir.dl ... r=iesearch ->
HKLM: Local Page -> %SystemRoot%\system32\blank.htm ->
HKLM: Search Page -> ->
HKLM: Start Page ->
http://www.yahoo.com ->
HKLM: CustomizeSearch ->
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm ->
HKLM: SearchAssistant ->
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm ->
HKCU: Default_Page_URL ->
http://idoc.wellpoint.com/registration ->
HKCU: Local Page -> C:\WINDOWS\System32\blank.htm ->
HKCU: Search Bar ->
http://us.rd.yahoo.com/customize/ycomp_ ... ch/ie.html ->
HKCU: Search Page ->
http://www.microsoft.com/isapi/redir.dl ... r=iesearch ->
HKCU: Start Page ->
http://www.google.com/ ->
HKCU: URLSearchHooks\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM] -> Reg Data - Key not found [Yahoo! Toolbar] -> File not found
HKCU: ProxyEnable -> 0 ->
HKCU: ProxyOverride -> 127.0.0.1 ->
< BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> %ProgramFiles%\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [AcroIEHlprObj Class] -> Adobe Systems Incorporated [Ver = 7.0.0.2004121400 | Size = 63136 bytes | Modified Date = 12/14/2004 1:56:50 AM | Attr = ]
{53707962-6F74-2D53-2644-206D7942484F} [HKLM] -> %ProgramFiles%\Spybot - Search & Destroy\SDHelper.dll [Reg Data - Value does not exist] -> Safer Networking Limited [Ver = 1, 4, 0, 0 | Size = 853672 bytes | Modified Date = 5/31/2005 1:04:00 AM | Attr = ]
{BDF3E430-B101-42AD-A544-FADC6B084872} [HKLM] -> %ProgramFiles%\Norton AntiVirus\NAVShExt.dll [CNavExtBho Class] -> Symantec Corporation [Ver = 8.00.58 | Size = 102400 bytes | Modified Date = 8/16/2001 4:35:10 PM | Attr = ]
< Internet Explorer ToolBars [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKLM] -> %ProgramFiles%\Norton AntiVirus\NAVShExt.dll [Norton AntiVirus] -> Symantec Corporation [Ver = 8.00.58 | Size = 102400 bytes | Modified Date = 8/16/2001 4:35:10 PM | Attr = ]
{8E718888-423F-11D2-876E-00A0C9082467} [HKLM] -> %System32%\MSDXM.OCX [&Radio] -> [Ver = | Size = 844048 bytes | Modified Date = 9/17/2003 10:01:28 AM | Attr = ]
< Internet Explorer ToolBars [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\
ShellBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKLM] -> %ProgramFiles%\Norton AntiVirus\NAVShExt.dll [Norton AntiVirus] -> Symantec Corporation [Ver = 8.00.58 | Size = 102400 bytes | Modified Date = 8/16/2001 4:35:10 PM | Attr = ]
WebBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKLM] -> %ProgramFiles%\Norton AntiVirus\NAVShExt.dll [Norton AntiVirus] -> Symantec Corporation [Ver = 8.00.58 | Size = 102400 bytes | Modified Date = 8/16/2001 4:35:10 PM | Attr = ]
WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM] -> Reg Data - Key not found [Yahoo! Toolbar] -> File not found
< Internet Explorer Menu Extensions [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\
E&xport to Microsoft Excel -> -> File not found
< DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\
{30698A62-1CCB-49C1-8052-39C5DC391C8B} -> (Intel(R) PRO/1000 MT Network Connection) ->
< Default Protocols [HKLM] - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults
shell -> shell protocol not assigned ->
< Default Protocols [HKCU] - Select to Repair > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults
shell -> shell protocol not assigned ->
< Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\
ipp -> Reg Data - Key not found -> File not found
msdaipp -> Reg Data - Key not found -> File not found
vnd.ms.radio -> %System32%\MSDXM.OCX -> [Ver = | Size = 844048 bytes | Modified Date = 9/17/2003 10:01:28 AM | Attr = ]
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\
{0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} -> CKAVWebScan Object - CodeBase =
http://www.kaspersky.com/kos/eng/partne ... nicode.cab ->
{215B8138-A3CF-44C5-803F-8226143CFC0A} -> Trend Micro ActiveX Scan Agent 6.6 - CodeBase =
http://eu-housecall.trendmicro-europe.c ... hcImpl.cab ->
{6E32070A-766D-4EE6-879C-DC1FA91D2FC3} -> MUWebControl Class - CodeBase =
http://update.microsoft.com/microsoftup ... 3617918562 ->
{89D122E1-99E6-11D2-BB1E-0040053B6D66} -> FnetEdit Class - CodeBase =
http://fnt-bkfd/web-cpr/session/software/fnetedit.cab ->
{90051A81-3018-4826-8B38-DD60B6B53F9C} -> Snapfish File Upload ActiveX Control - CodeBase =
http://www.costcophotocenter.com/CostcoUpload.cab ->
{D27CDB6E-AE6D-11CF-96B8-444553540000} -> - CodeBase =
http://download.macromedia.com/pub/shoc ... wflash.cab ->
Microsoft XML Parser for Java -> - CodeBase =
file://C:\WINDOWS\Java\classes\xmldso.cab ->
[Files/Folders - Created Within 30 days]
fsbl.exe -> %SystemDrive%\fsbl.exe -> F-Secure Corporation [Ver = 2, 2, 1061, 0 | Size = 899952 bytes | Created Date = 5/4/2007 7:12:38 PM | Attr = ]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1071697920 bytes | Created Date = 1/1/1601 8:00:00 AM | Attr = HS]
Nailsetter.exe -> %SystemDrive%\Nailsetter.exe -> [Ver = | Size = 231390 bytes | Created Date = 4/30/2007 5:58:00 AM | Attr = ]
SDFix -> %SystemDrive%\SDFix -> [Folder | Created Date = 5/3/2007 7:16:52 PM | Attr = ]
tsc.zip -> %SystemDrive%\tsc.zip -> [Ver = | Size = 2225045 bytes | Created Date = 4/30/2007 5:54:48 AM | Attr = ]
LastGood -> %SystemRoot%\LastGood -> [Folder | Created Date = 5/4/2007 7:36:03 PM | Attr = ]
msoffice.ini -> %SystemRoot%\msoffice.ini -> [Ver = | Size = 2 bytes | Created Date = 5/3/2007 6:16:03 AM | Attr = ]
Norton AntiVirus - Scan my computer.job -> %SystemRoot%\tasks\Norton AntiVirus - Scan my computer.job -> [Ver = | Size = 472 bytes | Created Date = 4/29/2007 9:23:39 AM | Attr = ]
Symantec NetDetect.job -> %SystemRoot%\tasks\Symantec NetDetect.job -> [Ver = | Size = 420 bytes | Created Date = 4/29/2007 9:22:36 AM | Attr = ]
001.ast -> %System32%\001.ast -> [Ver = | Size = 41368 bytes | Created Date = 5/3/2007 5:56:09 AM | Attr = ]
002.ast -> %System32%\002.ast -> [Ver = | Size = 998279 bytes | Created Date = 5/3/2007 5:56:09 AM | Attr = ]
003.ast -> %System32%\003.ast -> [Ver = | Size = 28 bytes | Created Date = 5/3/2007 5:56:09 AM | Attr = ]
appmgmt -> %System32%\appmgmt -> [Folder | Created Date = 5/3/2007 5:54:59 AM | Attr = ]
asuninst.exe -> %System32%\asuninst.exe -> Panda Software [Ver = 1, 0, 0, 2 | Size = 73728 bytes | Created Date = 4/30/2007 8:54:18 PM | Attr = ]
Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Created Date = 4/30/2007 8:53:20 PM | Attr = ]
Kaspersky Lab -> %System32%\Kaspersky Lab -> [Folder | Created Date = 5/4/2007 7:36:04 PM | Attr = ]
S32EVNT1.DLL -> %System32%\S32EVNT1.DLL -> Symantec Corporation [Ver = 10.3.2.7 | Size = 36864 bytes | Created Date = 4/29/2007 9:22:26 AM | Attr = ]
SYMEVNT.386 -> %System32%\SYMEVNT.386 -> [Ver = | Size = 120379 bytes | Created Date = 4/29/2007 9:22:26 AM | Attr = ]
SYMEVNT1.DLL -> %System32%\SYMEVNT1.DLL -> Symantec Corporation [Ver = 10.3.2.7 | Size = 4032 bytes | Created Date = 4/29/2007 9:22:26 AM | Attr = ]
Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Created Date = 4/30/2007 8:53:21 PM | Attr = ]
SYMEVENT.SYS -> %System32%\drivers\SYMEVENT.SYS -> Symantec Corporation [Ver = 10.3.2.7 | Size = 57696 bytes | Created Date = 4/29/2007 9:22:26 AM | Attr = ]
[Files/Folders - Modified Within 30 days]
fsbl.exe -> %SystemDrive%\fsbl.exe -> F-Secure Corporation [Ver = 2, 2, 1061, 0 | Size = 899952 bytes | Modified Date = 5/4/2007 8:12:40 PM | Attr = ]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 1071697920 bytes | Modified Date = 5/3/2007 8:52:00 PM | Attr = HS]
Nailsetter.exe -> %SystemDrive%\Nailsetter.exe -> [Ver = | Size = 231390 bytes | Modified Date = 4/30/2007 6:58:02 AM | Attr = ]
Program Files -> %ProgramFiles% -> [Folder | Modified Date = 5/3/2007 7:36:16 AM | Attr = R ]
SDFix -> %SystemDrive%\SDFix -> [Folder | Modified Date = 5/3/2007 8:52:28 PM | Attr = ]
System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Modified Date = 4/29/2007 11:24:12 AM | Attr = HS]
tsc.zip -> %SystemDrive%\tsc.zip -> [Ver = | Size = 2225045 bytes | Modified Date = 4/30/2007 6:54:50 AM | Attr = ]
WINDOWS -> %SystemRoot% -> [Folder | Modified Date = 5/4/2007 8:36:06 PM | Attr = ]
BOOTSTAT.DAT -> %SystemRoot%\BOOTSTAT.DAT -> [Ver = | Size = 2048 bytes | Modified Date = 5/3/2007 8:52:00 PM | Attr = S]
Debug -> %SystemRoot%\Debug -> [Folder | Modified Date = 5/1/2007 11:18:58 PM | Attr = ]
Downloaded Program Files -> %SystemRoot%\Downloaded Program Files -> [Folder | Modified Date = 5/4/2007 8:36:06 PM | Attr = S]
INF -> %SystemRoot%\INF -> [Folder | Modified Date = 5/4/2007 8:36:06 PM | Attr = H ]
Installer -> %SystemRoot%\Installer -> [Folder | Modified Date = 5/3/2007 6:56:58 AM | Attr = HS]
LastGood -> %SystemRoot%\LastGood -> [Folder | Modified Date = 5/4/2007 8:36:04 PM | Attr = ]
Minidump -> %SystemRoot%\Minidump -> [Folder | Modified Date = 5/1/2007 11:18:58 PM | Attr = ]
Motive -> %SystemRoot%\Motive -> [Folder | Modified Date = 5/3/2007 7:21:26 AM | Attr = ]
msoffice.ini -> %SystemRoot%\msoffice.ini -> [Ver = | Size = 2 bytes | Modified Date = 5/3/2007 7:16:04 AM | Attr = ]
Prefetch -> %SystemRoot%\Prefetch -> [Folder | Modified Date = 5/5/2007 8:14:26 AM | Attr = ]
QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Modified Date = 5/3/2007 7:38:32 AM | Attr = ]
QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Modified Date = 5/4/2007 7:56:08 AM | Attr = H ]
SYSTEM -> %SystemRoot%\SYSTEM -> [Folder | Modified Date = 5/3/2007 7:17:28 AM | Attr = ]
SYSTEM32 -> %System32% -> [Folder | Modified Date = 5/4/2007 8:36:06 PM | Attr = ]
Tasks -> %SystemRoot%\Tasks -> [Folder | Modified Date = 4/29/2007 10:23:40 AM | Attr = S]
Temp -> %SystemRoot%\Temp -> [Folder | Modified Date = 5/4/2007 8:10:14 PM | Attr = ]
WIN.INI -> %SystemRoot%\WIN.INI -> [Ver = | Size = 802 bytes | Modified Date = 5/3/2007 7:16:18 AM | Attr = ]
Norton AntiVirus - Scan my computer.job -> %SystemRoot%\tasks\Norton AntiVirus - Scan my computer.job -> [Ver = | Size = 472 bytes | Modified Date = 4/29/2007 10:23:42 AM | Attr = ]
SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Modified Date = 5/3/2007 8:52:02 PM | Attr = H ]
Symantec NetDetect.job -> %SystemRoot%\tasks\Symantec NetDetect.job -> [Ver = | Size = 420 bytes | Modified Date = 4/29/2007 6:54:04 PM | Attr = ]
001.ast -> %System32%\001.ast -> [Ver = | Size = 41368 bytes | Modified Date = 5/3/2007 6:56:10 AM | Attr = ]
002.ast -> %System32%\002.ast -> [Ver = | Size = 998279 bytes | Modified Date = 5/3/2007 6:56:10 AM | Attr = ]
003.ast -> %System32%\003.ast -> [Ver = | Size = 28 bytes | Modified Date = 5/3/2007 6:56:10 AM | Attr = ]
appmgmt -> %System32%\appmgmt -> [Folder | Modified Date = 5/3/2007 6:55:00 AM | Attr = ]
CatRoot2 -> %System32%\CatRoot2 -> [Folder | Modified Date = 5/4/2007 9:44:14 PM | Attr = ]
DRIVERS -> %System32%\DRIVERS -> [Folder | Modified Date = 5/3/2007 7:17:28 AM | Attr = ]
FxsTmp -> %System32%\FxsTmp -> [Folder | Modified Date = 4/29/2007 11:01:22 AM | Attr = ]
Help.ico -> %System32%\Help.ico -> [Ver = | Size = 1406 bytes | Modified Date = 4/30/2007 9:53:22 PM | Attr = ]
Kaspersky Lab -> %System32%\Kaspersky Lab -> [Folder | Modified Date = 5/4/2007 8:36:06 PM | Attr = ]
LexFiles.usr -> %System32%\LexFiles.usr -> [Ver = | Size = 4859 bytes | Modified Date = 5/4/2007 7:44:18 PM | Attr = ]
PERFC009.DAT -> %System32%\PERFC009.DAT -> [Ver = | Size = 61930 bytes | Modified Date = 5/3/2007 8:27:12 PM | Attr = ]
PERFH009.DAT -> %System32%\PERFH009.DAT -> [Ver = | Size = 402426 bytes | Modified Date = 5/3/2007 8:27:12 PM | Attr = ]
PerfStringBackup.INI -> %System32%\PerfStringBackup.INI -> [Ver = | Size = 471868 bytes | Modified Date = 5/3/2007 8:27:12 PM | Attr = ]
Restore -> %System32%\Restore -> [Folder | Modified Date = 4/29/2007 11:24:12 AM | Attr = ]
Uninstall.ico -> %System32%\Uninstall.ico -> [Ver = | Size = 2550 bytes | Modified Date = 4/30/2007 9:53:22 PM | Attr = ]
WPA.DBL -> %System32%\WPA.DBL -> [Ver = | Size = 2278 bytes | Modified Date = 5/4/2007 9:41:52 PM | Attr = ]
ETC -> %System32%\drivers\ETC -> [Folder | Modified Date = 5/3/2007 8:50:02 PM | Attr = ]
[File String Scan - Non-Microsoft Only]
UPX! , UPX0 , -> %SystemRoot%\browser.exe -> [Ver = 2, 64, 0, 0 | Size = 43391 bytes | Modified Date = 3/18/2005 4:54:00 AM | Attr = ]
PEC2 , -> %System32%\DFRG.MSC -> [Ver = | Size = 41397 bytes | Modified Date = 3/19/2004 3:35:10 PM | Attr = ]
PTech , -> %System32%\DicomViewFormProj.ocx -> [Ver = 1.5.0.6 | Size = 1538048 bytes | Modified Date = 7/5/2004 5:32:48 PM | Attr = ]
@Alternate Data Stream - 88 bytes -> %System32%\FnetEdit.dll: SummaryInformation ->
@Alternate Data Stream - 0 bytes -> %System32%\FnetEdit.dll:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} ->
winsync , -> %System32%\WBDBASE.DEU -> [Ver = | Size = 1309184 bytes | Modified Date = 3/19/2004 3:44:18 PM | Attr = ]
WSUD , UPX0 , -> %System32%\dllcache\hwxjpn.dll -> [Ver = | Size = 13463552 bytes | Modified Date = 3/31/2003 3:00:00 AM | Attr = ]
< End of report >