Logfile of random's system information tool 1.06 (written by random/random)
Run by Jennifer at 2009-11-06 08:16:32
Microsoft® Windows Vista™ Home Premium
System drive C: has 157 GB (53%) free of 295 GB
Total RAM: 894 MB (26% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:16:46 AM, on 11/6/2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16916)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\RtHDVCpl.exe
C:\WINDOWS\System32\wpcumi.exe
C:\WINDOWS\vphc600.exe
C:\Program Files\DivX Installer\groupmanager.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Panasonic\VideoCamSuite\VideoCamSuiteAutoStart.exe
C:\Program Files\Philips\SPC 600NC PC Camera\TrayMin600.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Safari\Safari.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Users\Jennifer\AppData\Local\Temp\hrk40d4n.tmp\RSIT.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\Jennifer.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.yahoo.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://us.rd.yahoo.com/customize/ie/def ... .yahoo.comR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://us.rd.yahoo.com/customize/ie/def ... earch.htmlR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://us.rd.yahoo.com/customize/ie/def ... .yahoo.comR0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: EmailBHO - {647FD14A-C4F1-46F4-8FC3-0B40F54226F7} - C:\Program Files\jZip\WebmailPlugin.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [WPCUMI] C:\Windows\system32\WpcUmi.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [phc600] C:\Windows\vphc600.exe
O4 - HKLM\..\Run: [GroupManager] C:\Program Files\DivX Installer\groupmanager.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Auto run of VideoCam Suite 1.0.lnk = ?
O4 - Global Startup: Install Pending Files.LNK = C:\Program Files\SIFXINST\SIFXINST.EXE
O4 - Global Startup: TrayMin600.exe.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver -
res://C:\Windows\system32\GPhotos.scr/200
O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O13 - Gopher Prefix:
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - B.H.A Corporation - C:\WINDOWS\System32\bgsvcgen.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
--
End of file - 8471 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Google Software Updater.job
C:\Windows\tasks\User_Feed_Synchronization-{80B1681D-E9D0-4C93-94B6-7F06C37955C4}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll [2009-07-30 909040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-07-15 1586472]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2009-08-28 1111320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897}]
Yahoo! IE Services Button - C:\Program Files\Yahoo!\Common\yiesrvc.dll [2007-12-12 222448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{647FD14A-C4F1-46F4-8FC3-0B40F54226F7}]
jZip Webmail plugin - C:\Program Files\jZip\WebmailPlugin.dll [2009-03-02 591296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll [2009-09-02 1107200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [2009-03-24 668656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
SingleInstance Class - C:\Program Files\Yahoo!\Companion\Installs\cpn2\YTSingleInstance.dll [2009-07-30 159472]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll [2009-07-30 909040]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll [2009-09-02 1107200]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2007-12-09 1006264]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-03-09 4390912]
"WPCUMI"=C:\Windows\system32\WpcUmi.exe [2006-11-02 176128]
"Skytel"=C:\Windows\Skytel.exe [2007-03-09 1822720]
"phc600"=C:\Windows\vphc600.exe [2006-10-16 344064]
"GroupManager"=C:\Program Files\DivX Installer\groupmanager.exe [2009-04-15 32256]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2009-11-02 2028312]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-09-05 417792]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-10-28 141600]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-09 1232896]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2006-11-02 125440]
"Messenger (Yahoo!)"=C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [2009-05-26 4351216]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2006-11-02 201728]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Auto run of VideoCam Suite 1.0.lnk - C:\Program Files\Panasonic\VideoCamSuite\VideoCamSuiteAutoStart.exe
Install Pending Files.LNK - C:\Program Files\SIFXINST\SIFXINST.EXE
TrayMin600.exe.lnk - C:\Program Files\Philips\SPC 600NC PC Camera\TrayMin600.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="avgrsstx.dll"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======List of files/folders created in the last 2 months======
2009-11-06 08:16:32 ----D---- C:\rsit
2009-11-06 08:01:11 ----A---- C:\Windows\system32\tdlwsp.dll
2009-11-06 07:34:49 ----SHD---- C:\Config.Msi
2009-11-04 17:42:59 ----A---- C:\Windows\system32\mshtml.dll
2009-11-02 19:46:40 ----D---- C:\Program Files\Trend Micro
2009-10-31 23:56:36 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2009-10-31 23:55:14 ----D---- C:\Program Files\SUPERAntiSpyware
2009-10-31 18:28:37 ----D---- C:\ProgramData\Spybot - Search & Destroy
2009-10-31 18:28:37 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-10-31 12:22:58 ----D---- C:\Program Files\Common Files\ArcSoft
2009-10-31 12:22:09 ----A---- C:\Windows\system32\unicows.dll
2009-10-31 12:22:09 ----A---- C:\Windows\PCDLIB32.DLL
2009-10-31 12:18:44 ----A---- C:\Windows\system32\emVFW.dll
2009-10-31 12:18:44 ----A---- C:\Windows\system32\emUSD.dll
2009-10-31 12:18:43 ----A---- C:\Windows\system32\emYUV.dll
2009-10-31 10:13:47 ----A---- C:\Windows\system32\GEARAspi.dll
2009-10-31 10:12:27 ----D---- C:\Program Files\iPod
2009-10-31 10:12:02 ----D---- C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-10-31 10:12:02 ----D---- C:\Program Files\iTunes
2009-10-31 10:04:24 ----D---- C:\Program Files\QuickTime
2009-10-31 09:48:15 ----AD---- C:\ProgramData\TEMP
2009-10-31 02:20:04 ----A---- C:\Windows\system32\unregmp2.exe
2009-10-31 02:20:03 ----A---- C:\Windows\system32\spwmp.dll
2009-10-31 02:20:02 ----A---- C:\Windows\system32\dxmasf.dll
2009-10-29 18:23:14 ----D---- C:\ProgramData\52978435
2009-10-28 18:30:18 ----HDC---- C:\ProgramData\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}
2009-10-28 18:29:37 ----D---- C:\ProgramData\Lavasoft
2009-10-28 18:29:37 ----D---- C:\Program Files\Lavasoft
2009-10-27 16:32:23 ----A---- C:\Windows\system32\wmp.dll
2009-10-27 16:32:23 ----A---- C:\Windows\system32\wmp(282).dll
2009-10-27 16:32:11 ----A---- C:\Windows\system32\wmploc.DLL
2009-10-27 16:32:11 ----A---- C:\Windows\system32\wmploc(283).DLL
2009-10-25 18:15:38 ----D---- C:\Users\Jennifer\AppData\Roaming\ArcSoft
2009-10-25 16:29:10 ----SHD---- C:\Users\Jennifer\AppData\Roaming\Windows System Defender
2009-10-25 15:38:47 ----D---- C:\Program Files\ArcSoft
2009-10-25 15:37:07 ----D---- C:\Program Files\USB_video_device
2009-10-15 13:47:15 ----A---- C:\Windows\system32\wdigest.dll
2009-10-15 13:47:15 ----A---- C:\Windows\system32\msv1_0.dll
2009-10-15 13:47:14 ----A---- C:\Windows\system32\secur32.dll
2009-10-15 13:47:14 ----A---- C:\Windows\system32\lsass.exe
2009-10-15 13:47:14 ----A---- C:\Windows\system32\lsasrv.dll
2009-10-15 13:47:02 ----A---- C:\Windows\system32\wininet.dll
2009-10-15 13:47:01 ----A---- C:\Windows\system32\urlmon.dll
2009-10-15 13:47:00 ----A---- C:\Windows\system32\ieframe.dll
2009-10-15 13:46:59 ----A---- C:\Windows\system32\mstime.dll
2009-10-15 13:46:59 ----A---- C:\Windows\system32\ieapfltr.dll
2009-10-15 13:46:58 ----A---- C:\Windows\system32\occache.dll
2009-10-15 13:46:58 ----A---- C:\Windows\system32\msfeeds.dll
2009-10-15 13:46:58 ----A---- C:\Windows\system32\iertutil.dll
2009-10-15 13:46:58 ----A---- C:\Windows\system32\iedkcs32.dll
2009-10-15 13:46:58 ----A---- C:\Windows\system32\ieaksie.dll
2009-10-15 13:46:58 ----A---- C:\Windows\system32\dxtmsft.dll
2009-10-15 13:46:57 ----A---- C:\Windows\system32\mshtmled.dll
2009-10-15 13:46:57 ----A---- C:\Windows\system32\jsproxy.dll
2009-10-15 13:46:57 ----A---- C:\Windows\system32\ieencode.dll
2009-10-15 13:46:57 ----A---- C:\Windows\system32\icardie.dll
2009-10-15 13:46:57 ----A---- C:\Windows\system32\dxtrans.dll
2009-10-15 13:46:56 ----A---- C:\Windows\system32\pngfilt.dll
2009-10-15 13:46:56 ----A---- C:\Windows\system32\ieUnatt.exe
2009-10-15 13:46:56 ----A---- C:\Windows\system32\ieui.dll
2009-10-15 13:46:56 ----A---- C:\Windows\system32\iesetup.dll
2009-10-15 13:46:56 ----A---- C:\Windows\system32\iernonce.dll
2009-10-15 13:46:56 ----A---- C:\Windows\system32\ie4uinit.exe
2009-10-15 13:46:56 ----A---- C:\Windows\system32\advpack.dll
2009-10-15 13:46:56 ----A---- C:\Windows\system32\admparse.dll
2009-10-15 13:46:55 ----A---- C:\Windows\system32\mshtmler.dll
2009-10-15 13:46:55 ----A---- C:\Windows\system32\ieakui.dll
2009-10-15 13:46:32 ----A---- C:\Windows\system32\ntoskrnl.exe
2009-10-15 13:46:32 ----A---- C:\Windows\system32\ntkrnlpa.exe
2009-10-15 13:46:17 ----A---- C:\Windows\system32\psisdecd.dll
2009-10-15 13:46:17 ----A---- C:\Windows\system32\EncDec.dll
2009-10-15 13:46:14 ----A---- C:\Windows\system32\mcmde.dll
2009-10-15 13:45:55 ----A---- C:\Windows\system32\msasn1.dll
2009-10-15 13:45:48 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2009-10-14 19:11:33 ----A---- C:\Windows\system32\xactengine2_8.dll
2009-10-14 19:11:33 ----A---- C:\Windows\system32\x3daudio1_2.dll
2009-10-14 19:11:30 ----A---- C:\Windows\system32\d3dx10_34.dll
2009-10-14 19:11:30 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2009-10-14 19:11:26 ----A---- C:\Windows\system32\d3dx9_34.dll
2009-10-14 19:11:24 ----A---- C:\Windows\system32\xinput1_3.dll
2009-10-07 18:57:40 ----D---- C:\Users\Jennifer\AppData\Roaming\SLiteChat
2009-10-07 18:53:35 ----D---- C:\Program Files\Dooglio.NET
2009-10-03 23:42:49 ----D---- C:\Program Files\Microsoft
2009-10-03 11:20:10 ----A---- C:\Windows\system32\wups2.dll
2009-10-03 11:20:10 ----A---- C:\Windows\system32\wucltux.dll
2009-10-03 11:20:10 ----A---- C:\Windows\system32\wuauclt.exe
2009-10-03 11:20:09 ----A---- C:\Windows\system32\wuaueng.dll
2009-10-03 11:19:24 ----A---- C:\Windows\system32\wups.dll
2009-10-03 11:19:24 ----A---- C:\Windows\system32\wudriver.dll
2009-10-03 11:19:24 ----A---- C:\Windows\system32\wuapi.dll
2009-10-03 11:18:35 ----A---- C:\Windows\system32\wuwebv.dll
2009-10-03 11:18:35 ----A---- C:\Windows\system32\wuapp.exe
2009-10-02 16:34:13 ----A---- C:\Windows\system32\MpSigStub.exe
2009-09-09 18:38:47 ----A---- C:\Windows\system32\netiohlp.dll
2009-09-09 18:38:45 ----A---- C:\Windows\system32\tcpipcfg.dll
2009-09-09 18:38:44 ----A---- C:\Windows\system32\TCPSVCS.EXE
2009-09-09 18:38:44 ----A---- C:\Windows\system32\ROUTE.EXE
2009-09-09 18:38:44 ----A---- C:\Windows\system32\NETSTAT.EXE
2009-09-09 18:38:44 ----A---- C:\Windows\system32\netiougc.exe
2009-09-09 18:38:44 ----A---- C:\Windows\system32\MRINFO.EXE
2009-09-09 18:38:44 ----A---- C:\Windows\system32\HOSTNAME.EXE
2009-09-09 18:38:44 ----A---- C:\Windows\system32\finger.exe
2009-09-09 18:38:44 ----A---- C:\Windows\system32\ARP.EXE
2009-09-09 18:38:43 ----A---- C:\Windows\system32\netevent.dll
2009-09-09 18:37:18 ----A---- C:\Windows\system32\wlansvc.dll
2009-09-09 18:37:18 ----A---- C:\Windows\system32\wlansec.dll
2009-09-09 18:37:18 ----A---- C:\Windows\system32\wlanmsm.dll
2009-09-09 18:37:18 ----A---- C:\Windows\system32\wlanhlp.dll
2009-09-09 18:37:18 ----A---- C:\Windows\system32\wlanapi.dll
2009-09-09 18:37:18 ----A---- C:\Windows\system32\L2SecHC.dll
2009-09-09 18:37:12 ----A---- C:\Windows\system32\WMVCORE.DLL
2009-09-09 18:37:11 ----A---- C:\Windows\system32\rrinstaller.exe
2009-09-09 18:37:11 ----A---- C:\Windows\system32\mfps.dll
2009-09-09 18:37:11 ----A---- C:\Windows\system32\mf.dll
2009-09-09 18:37:10 ----A---- C:\Windows\system32\mfpmp.exe
2009-09-09 18:37:10 ----A---- C:\Windows\system32\mferror.dll
2009-09-09 18:35:36 ----A---- C:\Windows\system32\jscript.dll
2009-09-08 16:32:30 ----D---- C:\89f1cda1df57308b3f86
2009-09-08 05:49:01 ----D---- C:\Program Files\MSXML 4.0
======List of files/folders modified in the last 2 months======
2009-11-06 08:16:36 ----D---- C:\Windows\Temp
2009-11-06 08:15:03 ----D---- C:\Windows\Tasks
2009-11-06 08:10:19 ----D---- C:\Windows\System32
2009-11-06 08:10:19 ----D---- C:\Windows\inf
2009-11-06 08:10:19 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-11-06 07:55:48 ----D---- C:\Windows\system32\drivers
2009-11-06 07:53:29 ----SHD---- C:\System Volume Information
2009-11-06 07:52:54 ----HD---- C:\$AVG8.VAULT$
2009-11-06 07:42:38 ----RD---- C:\Program Files
2009-11-06 07:41:58 ----SHD---- C:\Windows\Installer
2009-11-06 07:41:21 ----D---- C:\Windows\Prefetch
2009-11-06 07:41:18 ----D---- C:\Program Files\DivX
2009-11-06 07:38:31 ----D---- C:\Program Files\Common Files\AVSMedia
2009-11-06 07:38:28 ----D---- C:\Program Files\AVS4YOU
2009-11-06 07:35:23 ----D---- C:\Program Files\Common Files
2009-11-06 03:02:13 ----D---- C:\Windows\winsxs
2009-11-05 20:36:07 ----D---- C:\ProgramData\Google Updater
2009-11-05 20:36:02 ----D---- C:\Windows\system32\Tasks
2009-11-05 03:20:04 ----HD---- C:\ProgramData
2009-11-05 03:20:04 ----D---- C:\WINDOWS
2009-11-05 03:18:38 ----D---- C:\Windows\system32\catroot2
2009-11-05 03:11:17 ----D---- C:\Users\Jennifer\AppData\Roaming\Skype
2009-11-05 03:00:20 ----D---- C:\Users\Jennifer\AppData\Roaming\skypePM
2009-11-04 17:55:09 ----D---- C:\Users\Jennifer\AppData\Roaming\OpenOffice.org2
2009-11-04 17:41:16 ----D---- C:\Windows\system32\catroot
2009-11-01 11:44:52 ----D---- C:\Program Files\Mozilla Firefox
2009-11-01 11:44:48 ----D---- C:\Users\Jennifer\AppData\Roaming\Mozilla
2009-11-01 11:41:30 ----D---- C:\Program Files\Common Files\PX Storage Engine
2009-11-01 11:39:48 ----D---- C:\Program Files\PokerStars
2009-11-01 11:39:33 ----D---- C:\Program Files\PokerStars.NET
2009-11-01 09:55:25 ----D---- C:\Windows\system32\en-US
2009-11-01 09:55:12 ----D---- C:\Program Files\Windows Media Player
2009-11-01 09:50:13 ----D---- C:\Program Files\Media Catalog Studio
2009-10-31 20:53:01 ----D---- C:\Users\Jennifer\AppData\Roaming\Apple Computer
2009-10-31 12:30:50 ----D---- C:\Windows\twain_32
2009-10-31 10:13:46 ----DC---- C:\Windows\system32\DRVSTORE
2009-10-31 10:12:26 ----D---- C:\Program Files\Common Files\Apple
2009-10-31 09:38:43 ----D---- C:\Program Files\Safari
2009-10-31 02:05:24 ----D---- C:\Windows\system32\wbem
2009-10-31 02:04:16 ----D---- C:\Windows\system32\config
2009-10-31 02:03:32 ----D---- C:\Program Files\Windows Photo Gallery
2009-10-31 02:03:31 ----D---- C:\Windows\system32\spool
2009-10-31 02:03:31 ----D---- C:\Windows\system32\CodeIntegrity
2009-10-31 02:03:25 ----D---- C:\Program Files\Common Files\DivX Shared
2009-10-31 02:03:19 ----D---- C:\Windows\registration
2009-10-31 01:50:56 ----D---- C:\Windows\Logs
2009-10-28 18:39:14 ----D---- C:\Program Files\Google
2009-10-25 15:49:12 ----HD---- C:\Program Files\InstallShield Installation Information
2009-10-24 16:55:59 ----D---- C:\Program Files\Graboid
2009-10-16 19:41:30 ----D---- C:\Program Files\PKR
2009-10-16 06:09:53 ----D---- C:\Windows\Microsoft.NET
2009-10-16 06:09:46 ----RSD---- C:\Windows\assembly
2009-10-16 05:46:49 ----D---- C:\Windows\system32\migration
2009-10-16 05:46:49 ----D---- C:\Program Files\Internet Explorer
2009-10-16 05:46:45 ----D---- C:\Windows\AppPatch
2009-10-16 05:46:42 ----D---- C:\Program Files\Windows Mail
2009-10-16 05:46:41 ----D---- C:\Windows\ehome
2009-10-11 10:23:53 ----D---- C:\ProgramData\Yahoo! Companion
2009-10-11 10:05:57 ----D---- C:\Program Files\Common Files\InstallShield
2009-10-02 13:01:57 ----A---- C:\Windows\system32\mrt.exe
2009-09-10 02:20:08 ----D---- C:\Program Files\Microsoft Silverlight
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\Windows\System32\Drivers\avgldx86.sys [2009-08-28 335240]
R1 AvgMfx86;AVG Minifilter x86 Resident Driver; C:\Windows\System32\Drivers\avgmfx86.sys [2009-08-28 27784]
R1 AvgTdiX;AVG Free8 Network Redirector; C:\Windows\System32\Drivers\avgtdix.sys [2009-06-12 108552]
R1 cdrbsdrv;cdrbsdrv; C:\Windows\system32\drivers\cdrbsdrv.sys [2006-02-20 33408]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-23 11776]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2007-09-29 3154944]
R3 DCamUSBEMPIA;USB 2861 Video; C:\Windows\system32\DRIVERS\emDevice.sys [2007-06-21 171136]
R3 emAudio;USB EMP Audio Device; C:\Windows\system32\drivers\emAudio.sys [2007-01-12 22912]
R3 FiltUSBEMPIA;USB Device Lower Filter; C:\Windows\system32\DRIVERS\emFilter.sys [2007-06-21 5248]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2009-05-18 26600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-03-12 1747936]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2006-10-18 7680]
R3 phc600;USB PC Camera (SPC600NC); C:\Windows\system32\DRIVERS\phc600.sys [2006-10-16 422144]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2006-12-08 67072]
R3 ScanUSBEMPIA;USB Still Image Capture Device; C:\Windows\system32\DRIVERS\emScan.sys [2007-06-21 5120]
R3 usbaudio;USB Audio Driver (WDM); C:\Windows\system32\drivers\usbaudio.sys [2007-03-05 71552]
R3 VST_DPV;VST_DPV; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2006-11-02 987648]
R3 VSTHWBS2;VSTHWBS2; C:\Windows\system32\DRIVERS\VSTBS23.SYS [2006-11-02 251904]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2006-11-02 654336]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2006-11-02 82560]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2006-11-02 5632]
S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys []
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\ialmnt5.sys [2006-11-02 1302492]
S3 motmodem;Motorola USB CDC ACM Driver; C:\Windows\system32\DRIVERS\motmodem.sys [2007-06-18 23680]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2006-11-02 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2006-11-02 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2006-11-02 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2006-11-02 6016]
S3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2006-11-02 47104]
S3 SPLITCAM;Splitcam, WDM Camera Stream Splitter; C:\Windows\system32\DRIVERS\splitcam.sys []
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2009-06-05 39424]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2006-11-02 39936]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-06-05 144712]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2007-09-29 610304]
R2 avg8emc;AVG Free8 E-mail Scanner; C:\PROGRA~1\AVG\AVG8\avgemc.exe [2009-08-28 908056]
R2 avg8wd;AVG Free8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2009-08-28 297752]
R2 bgsvcgen;B's Recorder GOLD Library General Service; C:\WINDOWS\System32\bgsvcgen.exe [2007-06-15 145504]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-05-15 935208]
R2 PrismXL;PrismXL; C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS [2007-12-09 65536]
R2 YahooAUService;Yahoo! Updater; C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe [2008-11-09 602392]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2009-10-28 545568]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-24 183280]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
-----------------EOF-----------------