My Sharing Folders.lnk -> %UserDocuments%\My Sharing Folders.lnk -> [Ver = | Size = 642 bytes | Modified Date = 14/03/2007 15:05:40 | Attr = ]
Solar Sky -> %UserDocuments%\Solar Sky -> [Folder | Modified Date = 12/02/2007 15:51:56 | Attr = ]
The DOG.doc -> %UserDocuments%\The DOG.doc -> [Ver = | Size = 26112 bytes | Modified Date = 17/02/2007 18:30:16 | Attr = ]
Updater -> %UserDocuments%\Updater -> [Folder | Modified Date = 15/01/2007 11:06:24 | Attr = ]
Adobe Acrobat 7.0 Professional.lnk -> %AllUsersDesktop%\Adobe Acrobat 7.0 Professional.lnk -> [Ver = | Size = 1810 bytes | Modified Date = 23/01/2007 15:50:28 | Attr = ]
Businessware.lnk -> %AllUsersDesktop%\Businessware.lnk -> [Ver = | Size = 1728 bytes | Modified Date = 17/02/2007 23:09:04 | Attr = ]
eBay.lnk -> %AllUsersDesktop%\eBay.lnk -> [Ver = | Size = 1873 bytes | Modified Date = 16/02/2007 22:39:54 | Attr = ]
Google Updater.lnk -> %AllUsersDesktop%\Google Updater.lnk -> [Ver = | Size = 936 bytes | Modified Date = 02/02/2007 20:20:16 | Attr = ]
Trend Micro Anti-Spyware.lnk -> %AllUsersDesktop%\Trend Micro Anti-Spyware.lnk -> [Ver = | Size = 794 bytes | Modified Date = 11/03/2007 22:54:26 | Attr = ]
Windows Live Messenger.lnk -> %AllUsersDesktop%\Windows Live Messenger.lnk -> [Ver = | Size = 1782 bytes | Modified Date = 22/02/2007 07:31:34 | Attr = ]
3SWin.lnk -> %UserDesktop%\3SWin.lnk -> [Ver = | Size = 1719 bytes | Modified Date = 10/03/2007 14:13:58 | Attr = ]
blbeta.exe -> %UserDesktop%\blbeta.exe -> F-Secure Corporation [Ver = 2, 2, 1055, 0 | Size = 899960 bytes | Modified Date = 14/03/2007 09:46:54 | Attr = ]
CCleaner.lnk -> %UserDesktop%\CCleaner.lnk -> [Ver = | Size = 1594 bytes | Modified Date = 10/03/2007 13:58:34 | Attr = ]
cwshredder.exe -> %UserDesktop%\cwshredder.exe -> Trend Micro Incorporated [Ver = 2.19-1099 | Size = 532480 bytes | Modified Date = 11/03/2007 22:47:00 | Attr = ]
Eusing Free Registry Cleaner.lnk -> %UserDesktop%\Eusing Free Registry Cleaner.lnk -> [Ver = | Size = 786 bytes | Modified Date = 28/01/2007 17:35:26 | Attr = ]
Instant Invoice n CashBook 2007.lnk -> %UserDesktop%\Instant Invoice n CashBook 2007.lnk -> [Ver = | Size = 905 bytes | Modified Date = 12/03/2007 09:54:36 | Attr = ]
Microsoft Office Excel 2003 (2).lnk -> %UserDesktop%\Microsoft Office Excel 2003 (2).lnk -> [Ver = | Size = 2495 bytes | Modified Date = 12/03/2007 09:38:34 | Attr = ]
Microsoft Office Outlook 2003.lnk -> %UserDesktop%\Microsoft Office Outlook 2003.lnk -> [Ver = | Size = 2521 bytes | Modified Date = 15/03/2007 11:08:30 | Attr = ]
Microsoft Office Word 2003 (2).lnk -> %UserDesktop%\Microsoft Office Word 2003 (2).lnk -> [Ver = | Size = 2497 bytes | Modified Date = 13/03/2007 09:11:06 | Attr = ]
Panda ActiveScan.lnk -> %UserDesktop%\Panda ActiveScan.lnk -> [Ver = | Size = 1336 bytes | Modified Date = 14/03/2007 09:41:40 | Attr = ]
Proposal Invoice 2.2.lnk -> %UserDesktop%\Proposal Invoice 2.2.lnk -> [Ver = | Size = 721 bytes | Modified Date = 11/03/2007 20:05:06 | Attr = ]
Shortcut to HijackThis.lnk -> %UserDesktop%\Shortcut to HijackThis.lnk -> [Ver = | Size = 768 bytes | Modified Date = 14/03/2007 09:58:20 | Attr = ]
Unused Shortcuts -> %UserDesktop%\Unused Shortcuts -> [Folder | Modified Date = 14/03/2007 09:57:40 | Attr = ]
Windows Media Player.lnk -> %UserDesktop%\Windows Media Player.lnk -> [Ver = | Size = 828 bytes | Modified Date = 13/02/2007 20:46:08 | Attr = ]
WinPFind3u -> %UserDesktop%\WinPFind3u -> [Folder | Modified Date = 15/03/2007 17:19:20 | Attr = ]
winpfind3u.exe -> %UserDesktop%\winpfind3u.exe -> [Ver = | Size = 347122 bytes | Modified Date = 15/03/2007 10:23:38 | Attr = ]
Trend Micro Anti-Spyware.lnk -> %UserStartup%\Trend Micro Anti-Spyware.lnk -> [Ver = | Size = 828 bytes | Modified Date = 11/03/2007 22:54:26 | Attr = ]
Adobe -> %CommonProgramFiles%\Adobe -> [Folder | Modified Date = 15/01/2007 10:37:20 | Attr = ]
Adobe Systems Shared -> %CommonProgramFiles%\Adobe Systems Shared -> [Folder | Modified Date = 15/01/2007 09:48:12 | Attr = ]
Borland Shared -> %CommonProgramFiles%\Borland Shared -> [Folder | Modified Date = 17/02/2007 23:08:02 | Attr = ]
Java -> %CommonProgramFiles%\Java -> [Folder | Modified Date = 12/02/2007 19:45:18 | Attr = ]
Microsoft Shared -> %CommonProgramFiles%\Microsoft Shared -> [Folder | Modified Date = 16/02/2007 03:31:16 | Attr = ]
[File String Scan - All]
aspack , -> %SystemRoot%\Acer.scr -> [Ver = | Size = 187392 bytes | Modified Date = 14/12/2005 20:56:06 | Attr = ]
UPX! , UPX0 , -> %SystemRoot%\EMEAWG.EXE -> [Ver = | Size = 261627 bytes | Modified Date = 28/09/2006 18:43:42 | Attr = ]
PEC2 , -> %System32%\dfrg.msc -> [Ver = | Size = 41397 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
UPX! , UPX0 , -> %System32%\HTCA_SelfExtract.bin -> [Ver = 1, 20, 0, 0 | Size = 67072 bytes | Modified Date = 27/12/2005 15:50:32 | Attr = ]
Thawte Consulting , USERTRUST , -> %System32%\initpki.dll -> Microsoft Corporation [Ver = 5.131.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 147456 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
PTech , -> %System32%\LegitCheckControl.dll -> Microsoft Corporation [Ver = 1.5.0530.0 | Size = 579888 bytes | Modified Date = 17/05/2006 11:23:38 | Attr = ]
PECompact2 , aspack , -> %System32%\MRT.exe -> Microsoft Corporation [Ver = 1.27.1648.0 | Size = 12619736 bytes | Modified Date = 07/03/2007 21:36:32 | Attr = ]
WSUD , -> %System32%\ntbackup.exe -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 1200128 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
aspack , -> %System32%\ntdll.dll -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 708096 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
WSUD , -> %System32%\nusrmgr.cpl -> Microsoft Corporation [Ver = 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) | Size = 257024 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
Umonitor , -> %System32%\rasdlg.dll -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 657920 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
UPX! , UPX0 , -> %System32%\UIVCL.dll -> HiTRUST [Ver = 1.20.0.1 | Size = 822784 bytes | Modified Date = 27/12/2005 15:50:26 | Attr = ]
winsync , -> %System32%\wbdbase.deu -> [Ver = | Size = 1309184 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
PEC2 , WSUD , -> %System32%\wmploc.dll -> Microsoft Corporation [Ver = 11.0.5721.5145 (WMP_11.061018-2006) | Size = 8231936 bytes | Modified Date = 18/10/2006 21:47:20 | Attr = ]
WSUD , -> %System32%\dllcache\ehchsime.dll -> Microsoft Corporation [Ver = 5.1.2700.2180 (private/xpsp_mce.040810-0205) | Size = 1370112 bytes | Modified Date = 10/08/2004 04:11:48 | Attr = ]
UPX! , -> %System32%\dllcache\hwxcht.dll -> Microsoft Corporation [Ver = 1.0.0304.0 | Size = 10096640 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
WSUD , UPX0 , -> %System32%\dllcache\hwxjpn.dll -> [Ver = | Size = 13463552 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
UPX! , WSUD , -> %System32%\dllcache\hwxkor.dll -> Microsoft Corporation [Ver = 1.0.1038.0 | Size = 10129408 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
Thawte Consulting , USERTRUST , -> %System32%\dllcache\initpki.dll -> Microsoft Corporation [Ver = 5.131.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 147456 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
WSUD , -> %System32%\dllcache\ntbackup.exe -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 1200128 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
aspack , -> %System32%\dllcache\ntdll.dll -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 708096 bytes | Modified Date = 10/08/2004 13:00:00 | Attr = ]
WSUD , -> %System32%\dllcache\nusrmgr.cpl -> Microsoft Corporation [Ver = 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) | Size = 257024 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
Umonitor , -> %System32%\dllcache\rasdlg.dll -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 657920 bytes | Modified Date = 10/08/2004 20:00:00 | Attr = ]
PEC2 , WSUD , -> %System32%\dllcache\wmploc.dll -> Microsoft Corporation [Ver = 11.0.5721.5145 (WMP_11.061018-2006) | Size = 8231936 bytes | Modified Date = 18/10/2006 21:47:20 | Attr = ]
UPX! , FSG! , PEC2 , aspack , -> %System32%\drivers\avg7core.sys -> GRISOFT, s.r.o. [Ver = 7.5.0.444 | Size = 775680 bytes | Modified Date = 25/02/2007 09:21:08 | Attr = ]
USERTRUST , -> %UserDocuments%\instinvcbk2007.exe -> [Ver = | Size = 4538976 bytes | Modified Date = 12/03/2007 09:52:36 | Attr = ]
File scan skipped for file %UserDocuments%\MyNewCD.ncd -> File size too big (420146766 bytes) ->
qoologic , urllogic , urllogic , -> %UserDesktop%\cwshredder.exe -> Trend Micro Incorporated [Ver = 2.19-1099 | Size = 532480 bytes | Modified Date = 11/03/2007 22:47:00 | Attr = ]
< End of report >