I tried several times to run kapersky scan but received page error notice each time. I followed other instructions and here is dekher report
Deckard's System Scanner v20071014.68
Run by phuqtoo on 2008-05-24 23:59:17
Computer is in Normal Mode.
--------------------------------------------------------------------------------
Total Physical Memory: 248 MiB (512 MiB recommended).-- HijackThis (run as phuqtoo.exe) ---------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:59:40 PM, on 5/24/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\netdde.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\system32\clipsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\tlntsvr.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Program Files\Belkin\USB F5D7050\Wireless Utility\Belkinwcui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\notepad.exe
C:\Documents and Settings\phuqtoo\Desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\phuqtoo.exe
C:\Program Files\Dr. System\MrClean.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://google.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
http://windowsupdate.microsoft.com/O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe -expressboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BySoft FreeRAM] C:\Program Files\BySoft FreeRAM\FreeRAM.exe
O4 - Startup: AutorunsDisabled
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: AutorunsDisabled
O4 - Global Startup: Belkin Wireless USB Utility.lnk = C:\Program Files\Belkin\USB F5D7050\Wireless Utility\Belkinwcui.exe
O9 - Extra button: (no name) - AutorunsDisabled - (no file)
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky.com/kos/eng/partne ... nicode.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://www.update.microsoft.com/windows ... 9618387393O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://www.update.microsoft.com/microso ... 9618774799O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: ETJ - Unknown owner - C:\DOCUME~1\phuqtoo\LOCALS~1\Temp\ETJ.exe (file missing)
O23 - Service: GFQMBW - Unknown owner - C:\DOCUME~1\phuqtoo\LOCALS~1\Temp\GFQMBW.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: WRPU - Unknown owner - C:\DOCUME~1\phuqtoo\LOCALS~1\Temp\WRPU.exe (file missing)
O24 - Desktop Component 0: (no name) - (no file)
--
End of file - 5385 bytes
-- Files created between 2008-04-24 and 2008-05-24 -----------------------------
2008-05-24 19:24:53 0 d-------- C:\Program Files\BySoft FreeRAM
2008-05-24 01:35:43 0 d-------- C:\Program Files\WinPcap
2008-05-24 01:19:59 0 d-------- C:\Program Files\Champion Software
2008-05-24 01:18:20 0 d-------- C:\Program Files\Dr. System
2008-05-24 01:17:44 0 d-------- C:\Program Files\SerialMon
2008-05-24 01:14:41 0 d-------- C:\Program Files\Karen's Power Tools
2008-05-24 01:13:52 0 d-------- C:\Documents and Settings\All Users\Application Data\Karen's Power Tools
2008-05-23 07:05:09 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\Wireshark
2008-05-23 06:51:10 0 d-------- C:\Program Files\Wireshark
2008-05-23 06:37:55 0 d-------- C:\Program Files\Vasilios Applications
2008-05-23 06:36:32 17408 --a------ C:\psapi.dll <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>
2008-05-21 14:44:00 0 d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-05-21 14:43:56 0 d-------- C:\WINDOWS\system32\Kaspersky Lab
2008-05-21 14:10:18 0 dr-h---c- C:\Documents and Settings\phuqtoo\Recent
2008-05-21 13:34:06 0 d-------- C:\Program Files\Quick StartUp
2008-05-21 13:25:38 0 d-------- C:\Program Files\Windows XP Tweaks
2008-05-21 10:30:04 0 d-------- C:\Program Files\CCleaner
2008-05-21 09:04:29 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\LimeWire
2008-05-21 08:59:15 0 d-------- C:\Program Files\Java
2008-05-21 08:58:32 0 d-------- C:\Program Files\Common Files\Java
2008-05-21 08:55:03 0 d-------- C:\Program Files\LimeWire
2008-05-19 21:16:50 0 d------c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\Application Data\Identities
2008-05-19 21:16:34 0 d--h---c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\NetHood
2008-05-19 21:16:34 0 dr-----c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\My Documents
2008-05-19 21:16:34 0 d--h---c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\Local Settings
2008-05-19 21:16:34 0 dr-----c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\Favorites
2008-05-19 21:16:34 0 d------c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\Desktop
2008-05-19 21:16:34 0 d--hs--c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\Cookies
2008-05-19 21:16:34 0 dr-h---c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\Application Data
2008-05-19 21:16:34 0 d---s--c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\Application Data\Microsoft
2008-05-19 21:16:33 0 d--h---c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\Templates
2008-05-19 21:16:33 0 dr-----c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\Start Menu
2008-05-19 21:16:33 0 dr-h---c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\SendTo
2008-05-19 21:16:33 0 dr-h---c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\Recent
2008-05-19 21:16:33 0 d--h---c- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\PrintHood
2008-05-19 21:16:33 786432 --ah----- C:\Documents and Settings\Guest.PHUQ2-N66C1KNDO\NTUSER.DAT
2008-05-19 18:31:46 0 d-------- C:\Program Files\Trend Micro
2008-05-12 03:05:59 0 d-------- C:\Program Files\MSXML 6.0
2008-05-11 21:50:02 0 d-------- C:\Program Files\RolloSONIC 1.0
2008-05-11 20:58:43 0 dr-----c- C:\Documents and Settings\LocalService\My Documents
2008-05-11 20:58:36 0 dr-h---c- C:\Documents and Settings\LocalService\Recent
2008-05-11 20:00:37 0 d--h----- C:\WINDOWS\PIF
2008-05-11 19:56:06 0 d-------- C:\Program Files\Windows Media Connect 2
2008-05-11 19:44:23 0 d-------- C:\WINDOWS\system32\LogFiles
2008-05-11 19:44:23 0 d-------- C:\WINDOWS\system32\drivers\UMDF
2008-05-11 19:35:34 0 d-------- C:\Program Files\MSBuild
2008-05-11 19:15:33 0 d-------- C:\WINDOWS\system32\XPSViewer
2008-05-11 19:13:45 0 d-------- C:\Program Files\Reference Assemblies
2008-05-11 19:01:09 3002806 --a------ C:\WINDOWS\system32\DTOK
2008-05-11 18:59:32 752 --a------ C:\WINDOWS\system32\tmp.reg
2008-05-11 18:56:56 3003200 --a------ C:\WINDOWS\system32\MIDOTLF
2008-05-11 18:33:10 0 d-------- C:\WINDOWS\system32\URTTemp
2008-05-11 17:52:17 0 d-------- C:\WINDOWS\network diagnostic
2008-05-11 15:01:07 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\AVGTOOLBAR
2008-05-11 08:22:23 0 d-------- C:\WINDOWS\Prefetch
2008-05-11 00:01:42 1160 --a------ C:\WINDOWS\mozver.dat
2008-05-10 22:20:37 0 d-------- C:\WINDOWS\PAC207
2008-05-10 22:10:33 0 d-------- C:\WINDOWS\Downloaded Installations
2008-05-10 16:24:22 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\vlc
2008-05-10 15:34:49 0 d-------- C:\Program Files\VideoLAN
2008-05-10 07:02:27 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\Google
2008-05-10 07:00:32 0 d-------- C:\webcam driver pack
2008-05-10 06:46:21 0 --a------ C:\SQ.bin
2008-05-10 04:17:50 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\Macromedia
2008-05-10 04:17:46 0 d------c- C:\Documents and Settings\All Users\Application Data\Google
2008-05-10 04:17:39 0 d-------- C:\Program Files\Google
2008-05-10 04:13:01 0 --a------ C:\WINDOWS\nsreg.dat
2008-05-10 04:12:55 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\Mozilla
2008-05-10 04:12:10 402944 -ra------ C:\WINDOWS\system32\drivers\BLKWGU.sys <Not Verified; Belkin Corporation; Wireless G USB Network Adapter>
2008-05-09 06:06:34 0 d-------- C:\Program Files\Windows Defender
2008-05-09 00:14:51 0 d-------- C:\WINDOWS\pss
2008-05-08 22:42:18 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\Comodo
2008-05-08 22:42:12 0 d------c- C:\Documents and Settings\All Users\Application Data\comodo
2008-05-08 22:42:09 0 d-------- C:\Program Files\COMODO
2008-05-08 17:25:54 0 d--hs---- C:\found.000
2008-05-01 11:02:00 0 d---s--c- C:\Documents and Settings\LocalService.NT AUTHORITY\Cookies
2008-05-01 11:02:00 0 d------c- C:\Documents and Settings\LocalService.NT AUTHORITY\Application Data
2008-05-01 11:02:00 0 d---s--c- C:\Documents and Settings\LocalService.NT AUTHORITY\Application Data\Microsoft
2008-05-01 11:01:59 229376 --ah----- C:\Documents and Settings\LocalService.NT AUTHORITY\NTUSER.DAT
2008-05-01 11:01:59 0 d--h---c- C:\Documents and Settings\LocalService.NT AUTHORITY\Local Settings
2008-05-01 11:01:56 0 d--h---c- C:\Documents and Settings\NetworkService.NT AUTHORITY\Local Settings
2008-05-01 11:01:56 0 d---s--c- C:\Documents and Settings\NetworkService.NT AUTHORITY\Cookies
2008-05-01 11:01:56 0 d------c- C:\Documents and Settings\NetworkService.NT AUTHORITY\Application Data
2008-05-01 11:01:56 0 d---s--c- C:\Documents and Settings\NetworkService.NT AUTHORITY\Application Data\Microsoft
2008-05-01 11:01:55 229376 --ah----- C:\Documents and Settings\NetworkService.NT AUTHORITY\NTUSER.DAT
2008-05-01 11:00:53 0 d--h----- C:\$AVG8.VAULT$
2008-05-01 05:25:13 0 d-------- C:\WINDOWS\system32\drivers\Avg
2008-05-01 05:24:59 0 d-------- C:\Documents and Settings\All Users\Application Data\avg8
2008-05-01 05:22:50 0 d-------- C:\Program Files\AVG
2008-05-01 04:52:28 0 d-------- C:\WINDOWS\system32\appmgmt
2008-05-01 04:52:25 0 d------c- C:\Documents and Settings\LocalService\Start Menu
2008-05-01 04:28:42 0 d------c- C:\Documents and Settings\All Users\Application Data\Privacyware
2008-05-01 02:51:08 0 d-------- C:\Program Files\HiddenFinder
2008-05-01 02:42:30 86528 --a------ C:\WINDOWS\system32\VACFix.exe <Not Verified; S!Ri.URZ; VACFix>
2008-05-01 02:42:30 82432 --a------ C:\WINDOWS\system32\IEDFix.exe <Not Verified; S!Ri.URZ; IEDFix>
2008-05-01 02:42:24 0 --a------ C:\WINDOWS\system32\WS2Fix.exe
2008-05-01 02:42:24 289144 --a------ C:\WINDOWS\system32\VCCLSID.exe <Not Verified; S!Ri; >
2008-05-01 02:42:24 51200 --a------ C:\WINDOWS\system32\dumphive.exe
2008-05-01 02:38:23 0 d-------- C:\WINDOWS\peernet
2008-05-01 02:38:22 0 d-------- C:\WINDOWS\provisioning
2008-05-01 02:33:19 0 d-------- C:\WINDOWS\ServicePackFiles
2008-05-01 02:26:53 0 d-------- C:\WINDOWS\system32\ReinstallBackups
2008-05-01 02:21:51 0 d-------- C:\WINDOWS\EHome
2008-05-01 01:24:43 4212 --ah----- C:\WINDOWS\system32\zllictbl.dat
2008-05-01 00:52:16 288417 --a------ C:\WINDOWS\system32\SrchSTS.exe <Not Verified; S!Ri; SrchSTS>
2008-05-01 00:52:16 53248 --a------ C:\WINDOWS\system32\Process.exe <Not Verified;
http://www.beyondlogic.org; Command Line Process Utility>
2008-05-01 00:41:57 0 dr-----c- C:\Documents and Settings\NetworkService\My Documents
2008-05-01 00:41:30 0 dr-h---c- C:\Documents and Settings\NetworkService\Recent
2008-05-01 00:35:14 0 d-------- C:\WINDOWS\Internet Logs
2008-04-30 23:58:16 26112 --a------ C:\WINDOWS\system32\xpsp1hfm.exe <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>
2008-04-30 23:57:50 0 d-------- C:\WINDOWS\RegisteredPackages
2008-04-30 23:35:12 0 d------c- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2008-04-30 22:35:56 0 d--h----- C:\WINDOWS\system32\GroupPolicy
2008-04-30 22:13:43 0 d-------- C:\WINDOWS\system32\PreInstall
2008-04-30 22:13:39 0 d--h----- C:\WINDOWS\$hf_mig$
2008-04-30 22:12:25 0 d-------- C:\WINDOWS\system32\bits
2008-04-30 22:06:38 0 d-------- C:\WINDOWS\SoftwareDistribution
2008-04-30 22:06:06 0 d--hs---- C:\Documents and Settings\phuqtoo\UserData
2008-04-30 22:04:47 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\Opera
2008-04-30 22:03:28 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-04-30 22:01:20 0 d-------- C:\Program Files\Belkin
2008-04-30 22:01:00 0 d-------- C:\Program Files\Common Files\InstallShield
2008-04-30 21:41:59 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\Adobe
2008-04-30 21:18:53 0 d-------- C:\Program Files\Common Files\Adobe
2008-04-30 21:17:04 306688 --a------ C:\WINDOWS\IsUninst.exe <Not Verified; InstallShield Software Corporation; InstallShield® unInstaller>
2008-04-30 21:10:32 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\WinPatrol
2008-04-30 21:10:26 0 d-------- C:\Program Files\BillP Studios
2008-04-30 20:43:25 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\OnlineArmor(2)
2008-04-30 20:14:31 0 d------c- C:\Documents and Settings\Guest\Templates
2008-04-30 20:14:31 262144 --ah----- C:\Documents and Settings\Guest\NTUSER.DAT
2008-04-30 20:14:31 0 d------c- C:\Documents and Settings\Guest\Local Settings
2008-04-30 20:14:31 0 d------c- C:\Documents and Settings\Guest\Cookies
2008-04-30 20:14:31 0 d------c- C:\Documents and Settings\Guest\Application Data
2008-04-30 20:14:31 0 d------c- C:\Documents and Settings\Guest\Application Data\Microsoft
2008-04-30 19:56:27 0 d-------- C:\Program Files\Tall Emu
2008-04-30 19:54:33 0 d-------- C:\Program Files\Mozilla Firefox(2)
2008-04-30 19:54:12 0 d-------- C:\Program Files\Opera
2008-04-30 19:54:09 3145728 --a------ C:\Documents and Settings\phuqtoo\ntuser.dat
2008-04-30 19:54:09 229376 --a------ C:\Documents and Settings\NetworkService\ntuser.dat
2008-04-30 19:54:09 229376 --a------ C:\Documents and Settings\LocalService\ntuser.dat
2008-04-30 19:46:50 0 d------c- C:\Documents and Settings\All Users\Application Data\WEBREG
2008-04-30 19:31:55 0 d------c- C:\Documents and Settings\All Users\Application Data\HP
2008-04-30 19:31:03 0 d---s---- C:\WINDOWS\system32\Microsoft
2008-04-30 19:28:37 0 d-------- C:\Program Files\Common Files\HP
2008-04-30 19:27:52 0 d------c- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
2008-04-30 19:27:15 0 d------c- C:\WINDOWS\system32\DRVSTORE
2008-04-30 19:26:15 0 d-------- C:\Program Files\HP
2008-04-30 19:24:43 2828 --a------ C:\WINDOWS\hphmdl15.dat
2008-04-30 19:24:43 137639 --a------ C:\WINDOWS\HPHins15.dat
2008-04-30 18:59:55 0 d-------- C:\WINDOWS\system32\NtmsData
2008-04-30 18:57:11 0 d--hs---- C:\WINDOWS\Installer
2008-04-30 18:57:08 0 d------c- C:\Documents and Settings\phuqtoo\Application Data\Identities
2008-04-30 18:56:56 0 d--h----- C:\Documents and Settings\phuqtoo\Templates
2008-04-30 18:56:56 0 dr------- C:\Documents and Settings\phuqtoo\Start Menu
2008-04-30 18:56:56 0 dr-h----- C:\Documents and Settings\phuqtoo\SendTo
2008-04-30 18:56:56 0 d--h----- C:\Documents and Settings\phuqtoo\PrintHood
2008-04-30 18:56:56 0 d--h----- C:\Documents and Settings\phuqtoo\NetHood
2008-04-30 18:56:56 0 dr------- C:\Documents and Settings\phuqtoo\My Documents
2008-04-30 18:56:56 0 d--h----- C:\Documents and Settings\phuqtoo\Local Settings
2008-04-30 18:56:56 0 dr------- C:\Documents and Settings\phuqtoo\Favorites
2008-04-30 18:56:56 0 d------c- C:\Documents and Settings\phuqtoo\Desktop
2008-04-30 18:56:56 0 d--hs--c- C:\Documents and Settings\phuqtoo\Cookies
2008-04-30 18:56:56 0 d--h---c- C:\Documents and Settings\phuqtoo\Application Data
2008-04-30 18:56:21 0 d--hs---- C:\System Volume Information
2008-04-30 18:56:19 0 d--h---c- C:\Documents and Settings\LocalService\Local Settings
2008-04-30 18:56:19 0 d--hs--c- C:\Documents and Settings\LocalService\Cookies
2008-04-30 18:56:19 0 d------c- C:\Documents and Settings\LocalService\Application Data
2008-04-30 18:56:19 0 d---s--c- C:\Documents and Settings\LocalService\Application Data\Microsoft
2008-04-30 18:56:18 0 d--h---c- C:\Documents and Settings\NetworkService\Local Settings
2008-04-30 18:56:18 0 d---s--c- C:\Documents and Settings\NetworkService\Cookies
2008-04-30 18:56:18 0 d------c- C:\Documents and Settings\NetworkService\Application Data
2008-04-30 18:56:18 0 d---s--c- C:\Documents and Settings\NetworkService\Application Data\Microsoft
2008-04-30 18:52:43 0 d-------- C:\WINDOWS\system32\xircom
2008-04-30 18:52:43 0 d-------- C:\Program Files\microsoft frontpage
2008-04-30 18:52:27 266240 --ah----- C:\Documents and Settings\Default User\NTUSER.DAT
2008-04-30 18:52:20 0 -rahs---- C:\MSDOS.SYS
2008-04-30 18:52:20 0 -rahs---- C:\IO.SYS
2008-04-30 18:52:20 0 --a------ C:\CONFIG.SYS
2008-04-30 18:52:20 0 --a------ C:\AUTOEXEC.BAT
2008-04-30 18:51:12 0 d--hs--c- C:\Documents and Settings\All Users\DRM
2008-04-30 18:51:00 0 dr------- C:\WINDOWS\Offline Web Pages
2008-04-30 18:51:00 0 d---s---- C:\WINDOWS\Downloaded Program Files
2008-04-30 18:50:27 0 d-------- C:\WINDOWS\system32\DirectX
2008-04-30 18:49:51 0 d---s---- C:\WINDOWS\Tasks
2008-04-30 18:49:49 0 d-------- C:\Program Files\Common Files\MSSoap
2008-04-30 18:49:41 0 d-------- C:\WINDOWS\srchasst
2008-04-30 18:49:39 0 d-------- C:\WINDOWS\system32\Macromed
2008-04-30 18:49:36 0 d-------- C:\Program Files\Movie Maker
2008-04-30 18:49:16 0 d-------- C:\WINDOWS\system32\Restore
2008-04-30 18:49:16 0 d-------- C:\WINDOWS\PCHealth
2008-04-30 18:48:24 22720 --a------ C:\WINDOWS\system32\emptyregdb.dat
2008-04-30 18:48:06 0 d-------- C:\WINDOWS\Registration
2008-04-30 18:47:58 0 d--h----- C:\Program Files\WindowsUpdate
2008-04-30 18:47:58 0 d-------- C:\Program Files\Online Services
2008-04-30 18:47:49 0 d-------- C:\Program Files\Messenger
2008-04-30 18:47:41 0 d-------- C:\Program Files\MSN Gaming Zone
2008-04-30 18:46:44 0 d-------- C:\Program Files\Windows NT
2008-04-30 18:46:36 0 d-------- C:\WINDOWS\system32\MsDtc
2008-04-30 18:46:35 0 d-------- C:\WINDOWS\system32\Com
2008-04-30 11:40:04 0 d-------- C:\Program Files\Common Files\ODBC
2008-04-30 11:40:01 0 dr------- C:\Program Files
2008-04-30 11:40:01 0 d-------- C:\Program Files\Common Files
2008-04-30 11:40:01 0 d-------- C:\Program Files\Common Files\SpeechEngines
2008-04-30 11:39:38 0 d--h---c- C:\Documents and Settings\Default User\Templates
2008-04-30 11:39:38 0 dr-----c- C:\Documents and Settings\Default User\Start Menu
2008-04-30 11:39:38 0 dr-h---c- C:\Documents and Settings\Default User\Local Settings
2008-04-30 11:39:38 0 d--h---c- C:\Documents and Settings\All Users\Templates
2008-04-30 11:39:38 0 dr-----c- C:\Documents and Settings\All Users\Start Menu
2008-04-30 11:39:38 0 d------c- C:\Documents and Settings\All Users\Favorites
2008-04-30 11:39:38 0 dr-----c- C:\Documents and Settings\All Users\Documents
2008-04-30 11:39:38 0 d------c- C:\Documents and Settings\All Users\Desktop
2008-04-30 11:39:37 0 dr-h---c- C:\Documents and Settings\Default User\SendTo
2008-04-30 11:39:37 0 d--h---c- C:\Documents and Settings\Default User\Recent
2008-04-30 11:39:37 0 d--h---c- C:\Documents and Settings\Default User\PrintHood
2008-04-30 11:39:37 0 d--h---c- C:\Documents and Settings\Default User\NetHood
2008-04-30 11:39:37 0 d------c- C:\Documents and Settings\Default User\My Documents
2008-04-30 11:39:37 0 d------c- C:\Documents and Settings\Default User\Favorites
2008-04-30 11:39:37 0 d------c- C:\Documents and Settings\Default User\Desktop
2008-04-30 11:39:37 0 d--hs--c- C:\Documents and Settings\Default User\Cookies
2008-04-30 11:39:26 0 d-------- C:\WINDOWS\system32\CatRoot2
2008-04-30 11:39:26 0 d-------- C:\WINDOWS\system32\CatRoot
2008-04-30 11:39:21 0 dr-h---c- C:\Documents and Settings\Default User\Application Data
2008-04-30 11:39:21 0 d---s--c- C:\Documents and Settings\Default User\Application Data\Microsoft
2008-04-30 11:39:20 0 dr-h----- C:\Documents and Settings\All Users\Application Data
2008-04-30 11:39:20 0 d---s--c- C:\Documents and Settings\All Users\Application Data\Microsoft
2008-04-30 11:38:58 0 d-------- C:\Documents and Settings
2008-04-30 11:32:08 0 d-------- C:\WINDOWS
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\WinSxS
2008-04-30 11:32:08 0 dr------- C:\WINDOWS\Web
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\twain_32
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\wins
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\wbem
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\usmt
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\spool
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\ShellExt
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\Setup
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\ras
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\oobe
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\npp
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\mui
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\inetsrv
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\IME
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\icsxml
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\ias
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\export
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\drivers
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\drivers\etc
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\drivers\disdn
2008-04-30 11:32:08 0 dr-hs--c- C:\WINDOWS\system32\dllcache
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\dhcp
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\config
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\3com_dmi
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\3076
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\2052
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\1054
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\1042
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\1041
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\1037
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\1033
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\1031
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\1028
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system32\1025
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\system
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\security
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\Resources
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\repair
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\mui
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\msapps
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\msagent
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\Media
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\java
2008-04-30 11:32:08 0 d--h----- C:\WINDOWS\inf
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\ime
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\Help
2008-04-30 11:32:08 0 dr--s---- C:\WINDOWS\Fonts
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\Driver Cache
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\Debug
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\Cursors
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\Connection Wizard
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\Config
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\AppPatch
2008-04-30 11:32:08 0 d-------- C:\WINDOWS\addins
-- Find3M Report ---------------------------------------------------------------
2008-04-30 11:39:37 62 --ahs---- C:\Documents and Settings\phuqtoo\Application Data\desktop.ini
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A057A204-BACC-4D26-9990-79A187E2698E}]
05/11/2008 03:01 PM 2050816 --a------ C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{A057A204-BACC-4D26-9990-79A187E2698E}"= C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [05/11/2008 03:01 PM 2050816]
[-HKEY_CLASSES_ROOT\CLSID\{A057A204-BACC-4D26-9990-79A187E2698E}]
[HKEY_CLASSES_ROOT\avgtoolbar.AVGTOOLBAR]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AlcxMonitor"="ALCXMNTR.EXE" [09/07/2004 01:47 PM C:\WINDOWS\ALCXMNTR.EXE]
"AGRSMMSG"="AGRSMMSG.exe" [06/29/2004 09:06 AM C:\WINDOWS\AGRSMMSG.exe]
"IgfxTray"="C:\WINDOWS\System32\igfxtray.exe" [08/20/2004 03:55 PM]
"HotKeysCmds"="C:\WINDOWS\System32\hkcmd.exe" [08/20/2004 03:51 PM]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [05/01/2008 05:25 AM]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" [03/25/2008 04:28 AM]
"WinPatrol"="C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe" [01/26/2008 10:38 PM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [08/04/2004 12:56 AM]
"BySoft FreeRAM"="C:\Program Files\BySoft FreeRAM\FreeRAM.exe" [12/17/2004 01:44 PM]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Gamma Loader.exe.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [4/30/2008 9:18:59 PM]
Belkin Wireless USB Utility.lnk - C:\Program Files\Belkin\USB F5D7050\Wireless Utility\Belkinwcui.exe [10/28/2005 11:23:10 AM]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"appinit_dlls"=avgrsstx.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
hpdevmgmt hpqcxs08 hpqddsvc
-- End of Deckard's System Scanner: finished at 2008-05-25 00:01:00 ------------