Log.Txt
Logfile of random's system information tool 1.08 (written by random/random)
Run by Rob Leach at 2010-09-21 17:33:26
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 48 GB (32%) free of 150 GB
Total RAM: 510 MB (66% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:33:46, on 21/09/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Application Updater\ApplicationUpdater.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\KService\KService.exe
C:\Program Files\Memeo\AutoBackup\MemeoBackgroundService.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\Rob Leach\Desktop\RSIT.exe
C:\Program Files\trend micro\Rob Leach.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.co.uk/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://g.msn.co.uk/0SEENGB/SAOS01?FORM=TOOLBRO2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Catcher Class - {ADECBED6-0366-4377-A739-E69DFBA04663} - C:\Program Files\Moyea\FLV Downloader\MoyeaCth.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) -
http://www.musicnotes.com/download/mnviewer.cabO16 - DPF: {1C11B948-582A-433F-A98D-A8C4D5CC64F2} (20-20 Technologies 3D Room Planner) -
http://magnet.2020.net/virtualplanner/C ... _Win32.cabO16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) -
http://acs.pandasoftware.com/activescan ... stubie.cabO16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class) -
http://picasaweb.google.com/s/v/33.06/uploader2.cabO16 - DPF: {493ACF15-5CD9-4474-82A6-91670C3DD66E} (LinkedIn ContactFinderControl) -
http://www.linkedin.com/cab/LinkedInCon ... ontrol.cabO16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) -
http://upload.facebook.com/controls/Fac ... oader3.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/microsoftup ... 4571785562O16 - DPF: {6D2EF4B4-CB62-4C0B-85F3-B79C236D702C} (ContactExtractor Class) -
http://www.facebook.com/controls/contactx.dllO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.microsoft.com/microsoftup ... 0680357593O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) -
http://www.kodakgallery.co.uk/downloads ... ofupld.cabO16 - DPF: {6F750202-1362-4815-A476-88533DE61D0C} (Kodak Gallery Easy Upload Manager Class) -
http://www.kodakgallery.co.uk/downloads ... ofupld.cabO16 - DPF: {6F750203-1362-4815-A476-88533DE61D0C} (Kodak Gallery Easy Upload Manager Class) -
http://www.kodakgallery.co.uk/downloads ... ofupld.cabO16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} -
http://download.eset.com/special/eos/OnlineScanner.cabO16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) -
http://upload.facebook.com/controls/200 ... ader55.cabO16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) -
http://messenger.zone.msn.com/binary/Me ... b31267.cabO16 - DPF: {90A29DA5-D020-4B18-8660-6689520C7CD7} (DmiReader Class) -
http://support.euro.dell.com/global/app ... OFILER.CABO16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) -
http://www.sibelius.com/download/softwa ... Plugin.cabO16 - DPF: {A9CF3378-D60E-40A8-927D-7EA0D5B0AA98} (Bonusprint Image Uploader Version 6.x Control) -
http://webalbum.bonusprint.com/ukipc01/ ... oader6.cabO16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) -
http://messenger.msn.com/download/msnme ... loader.cabO16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) -
http://static.photobox.co.uk/sg/common/uploader.cabO16 - DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} (Facebook Photo Uploader 4) -
http://upload.facebook.com/controls/Fac ... der4_5.cabO16 - DPF: {D821DC4A-0814-435E-9820-661C543A4679} (CRLDownloadWrapper Class) -
http://drmlicense.one.microsoft.com/crl ... crlocx.ocxO16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cabO16 - DPF: {FF1CD9A3-00CD-45C1-8182-4EEC229A182D} (Plaxo Auto-Import Utility) -
https://www.plaxo.com/activex/plx_upldr-2k-xp.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{D1678CC5-DC47-40D3-84CE-F00E0E69C957}: NameServer = 192.168.0.1
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\KService\KService.exe
O23 - Service: MemeoBackgroundService - Memeo - C:\Program Files\Memeo\AutoBackup\MemeoBackgroundService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
--
End of file - 11010 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Google Software Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{AA2B31D1-1639-48B5-BD6F-841FB6A9896D}.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{E7B292D1-9F90-4728-AB45-9512483DC2FB}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-07-21 1619296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-04-28 259696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ADECBED6-0366-4377-A739-E69DFBA04663}]
Catcher Class - C:\Program Files\Moyea\FLV Downloader\MoyeaCth.dll [2007-12-05 94208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-12-05 764912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [2009-04-28 470512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-09-21 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-09-21 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BA52B914-B692-46c4-B683-905236F6F655}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-04-28 259696]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-07-16 2065760]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2004-11-11 4583424]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AsioReg]
REGSVR32.EXE /S CTASIO.DLL []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent DNA]
C:\Program Files\DNA\btdna.exe [2009-11-06 323392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-07-27 1983816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-03-18 767312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTDVDDet]
C:\Program Files\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE [2002-09-30 45056]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTHelper]
C:\WINDOWS\system32\CTHELPER.EXE [2003-02-20 28672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTSysVol]
C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe [2002-10-29 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools-1033]
C:\Program Files\D-Tools\daemon.exe [2004-08-22 81920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DVDLauncher]
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe [2004-10-12 57344]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif]
C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe [2004-06-29 135168]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMEKRMIG6.1]
C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE [2004-08-04 44032]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-03 208952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IntelMeM]
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe [2003-09-03 221184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\kdx]
C:\WINDOWS\kdx\KHost.exe [2005-12-12 2236416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideoRepair]
C:\Program Files\Logitech\Video\ISStart.exe [2003-08-29 188416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideoTray]
C:\Program Files\Logitech\Video\LogiTray.exe [2003-08-29 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Memeo Instant Backup]
C:\Program Files\Memeo\AutoBackup\MemeoLauncher2.exe [2010-04-23 136416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBJ]
C:\Program Files\Ahead\Nero BackItUp\NBJ.exe [2005-04-08 1953792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2004-11-11 4583424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2006-10-25 282624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-12-08 68856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2007-01-15 185896]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
C:\Program Files\TomTom HOME 2\HOMERunner.exe [2008-12-09 234856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateManager]
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe [2004-01-07 110592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdReg]
C:\WINDOWS\UpdReg.EXE [2000-05-11 90112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^DSLMON.lnk]
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe [2003-07-08 962663]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^EPSON Status Monitor 3 Environment Check 2.lnk]
C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_SRCV02.EXE [2001-08-23 135680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Logitech Desktop Messenger.lnk]
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe [2005-04-21 169472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Rob Leach^Start Menu^Programs^Startup^BHODemon 2.0.lnk]
C:\PROGRA~1\BHODEM~1\BHODemon.exe [2005-06-19 946176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Rob Leach^Start Menu^Programs^Startup^Notmad Manager.lnk]
C:\PROGRA~1\REDCHA~1\NOTMAD~1\notmgr.exe []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-07-16 12536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-02-15 236928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Real\RealPlayer\realplay.exe"="C:\Program Files\Real\RealPlayer\realplay.exe:*:Disabled:RealPlayer"
"C:\Program Files\NetMeeting\CONF.EXE"="C:\Program Files\NetMeeting\CONF.EXE:*:Enabled:Windows® NetMeeting®"
"C:\WINDOWS\kdx\KHost.exe"="C:\WINDOWS\kdx\KHost.exe:*:Enabled:Delivery Manager"
"C:\Program Files\KService\KService.exe"="C:\Program Files\KService\KService.exe:*:Enabled:Delivery Manager Service"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Common Files\PocketSoft\RTPatch\AutoRTP\artpschd.exe"="C:\Program Files\Common Files\PocketSoft\RTPatch\AutoRTP\artpschd.exe:*:Enabled:artpschd"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\WINDOWS\SYSTEM32\DPVSETUP.EXE"="C:\WINDOWS\SYSTEM32\DPVSETUP.EXE:*:Disabled:Microsoft DirectPlay Voice Test"
"C:\Program Files\Photo Story 3 for Windows\PhotoStory3.exe"="C:\Program Files\Photo Story 3 for Windows\PhotoStory3.exe:*:Enabled:Photo Story 3 for Windows"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:DNA"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Spotify\spotify.exe"="C:\Program Files\Spotify\spotify.exe:*:Enabled:Spotify"
"C:\Program Files\AVG\AVG9\avgupd.exe"="C:\Program Files\AVG\AVG9\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG9\avgnsx.exe"="C:\Program Files\AVG\AVG9\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
======List of files/folders created in the last 1 months======
2010-09-21 17:33:26 ----D---- C:\rsit
2010-09-21 08:32:25 ----D---- C:\Program Files\ESET
2010-09-21 08:09:04 ----SHD---- C:\RECYCLER
2010-09-21 08:00:33 ----D---- C:\Program Files\Common Files\Java
2010-09-21 08:00:15 ----A---- C:\WINDOWS\system32\javaws.exe
2010-09-21 08:00:15 ----A---- C:\WINDOWS\system32\deployJava1.dll
2010-09-21 08:00:14 ----A---- C:\WINDOWS\system32\javaw.exe
2010-09-21 08:00:14 ----A---- C:\WINDOWS\system32\java.exe
2010-09-21 07:41:50 ----SHD---- C:\Config.Msi
2010-09-21 06:24:14 ----D---- C:\WINDOWS\temp
2010-09-21 06:24:11 ----A---- C:\ComboFix.txt
2010-09-18 08:42:44 ----A---- C:\WINDOWS\{00000004-00000000-00000002-00001102-00000004-10031102}.BAK
2010-09-16 17:50:42 ----D---- C:\Documents and Settings\Rob Leach\Application Data\Amazon
2010-09-16 17:49:33 ----D---- C:\Program Files\Amazon
2010-09-16 11:18:03 ----D---- C:\Documents and Settings\Rob Leach\Application Data\Memeo
2010-09-16 11:16:39 ----D---- C:\Program Files\Common Files\Memeo
2010-09-16 11:16:36 ----D---- C:\Program Files\Memeo
2010-09-16 10:33:01 ----D---- C:\Program Files\Trend Micro
2010-09-16 08:41:26 ----A---- C:\Boot.bak
2010-09-16 08:41:20 ----RASHD---- C:\cmdcons
2010-09-16 08:37:28 ----A---- C:\WINDOWS\zip.exe
2010-09-16 08:37:28 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-09-16 08:37:28 ----A---- C:\WINDOWS\SWSC.exe
2010-09-16 08:37:28 ----A---- C:\WINDOWS\SWREG.exe
2010-09-16 08:37:28 ----A---- C:\WINDOWS\sed.exe
2010-09-16 08:37:28 ----A---- C:\WINDOWS\PEV.exe
2010-09-16 08:37:28 ----A---- C:\WINDOWS\NIRCMD.exe
2010-09-16 08:37:28 ----A---- C:\WINDOWS\MBR.exe
2010-09-16 08:37:28 ----A---- C:\WINDOWS\grep.exe
2010-09-16 08:37:17 ----D---- C:\WINDOWS\ERDNT
2010-09-16 08:36:41 ----D---- C:\Qoobox
2010-09-16 07:36:20 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2010-09-16 07:36:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2010-09-16 07:36:04 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-09-16 07:35:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2010-09-16 07:35:49 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2010-09-16 07:35:42 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-09-16 07:35:14 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-09-16 07:34:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2010-09-16 07:34:48 ----HDC---- C:\WINDOWS\$NtUninstallKB981852$
2010-09-16 07:34:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2010-09-16 07:34:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2010-09-16 07:34:18 ----HDC---- C:\WINDOWS\$NtUninstallKB982802$
2010-09-16 07:32:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2160329$
2010-09-16 07:32:09 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2010-09-16 07:32:00 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2010-09-16 07:31:41 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-09-16 07:31:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2286198$
2010-09-16 07:31:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2141007$
2010-09-16 07:30:54 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2010-09-16 07:09:44 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-09-16 07:05:17 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2010-09-15 22:22:06 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-09-15 22:21:52 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-09-15 21:42:30 ----HDC---- C:\WINDOWS\$NtUninstallKB980218$
2010-09-15 21:42:17 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-09-15 21:41:52 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-09-15 21:41:36 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-09-15 21:41:25 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-09-15 21:41:13 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-09-15 21:40:59 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-09-15 21:40:23 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-09-15 21:39:36 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-09-15 21:39:21 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-09-15 21:39:05 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-09-15 21:38:49 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-09-15 21:38:32 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-09-15 21:38:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-09-15 21:38:02 ----HDC---- C:\WINDOWS\$NtUninstallKB961503$
2010-09-15 21:37:39 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-09-15 21:37:25 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-09-15 21:37:08 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-09-15 21:36:56 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-09-15 21:35:41 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-09-15 21:35:27 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-09-15 21:33:51 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-09-15 21:31:59 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-09-15 21:29:43 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-09-15 21:29:17 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-09-15 21:29:04 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-09-15 21:28:53 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-09-15 21:28:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-09-15 21:28:24 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-09-15 21:28:11 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-09-15 21:27:57 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-09-15 21:27:46 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-09-15 21:27:26 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-09-15 21:26:58 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-09-15 21:25:50 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-09-15 21:25:36 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-09-15 21:25:21 ----HDC---- C:\WINDOWS\$NtUninstallKB953155$
2010-09-15 21:25:11 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-09-15 21:24:56 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-09-15 21:24:46 ----HDC---- C:\WINDOWS\$NtUninstallKB979559$
2010-09-15 21:24:11 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2010-09-15 21:21:54 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-09-15 21:21:42 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-09-15 21:21:23 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-09-15 21:21:05 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-09-15 21:19:56 ----A---- C:\WINDOWS\system32\MRT.INI
2010-09-15 21:19:55 ----D---- C:\WINDOWS\system32\MpEngineStore
2010-09-15 21:11:30 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-09-15 21:10:57 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-09-15 21:10:42 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-09-15 21:10:30 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-09-15 21:10:18 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2010-09-15 21:10:07 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-09-15 21:09:55 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-09-15 21:09:39 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-09-15 21:09:27 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2010-09-15 21:09:00 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-09-15 21:08:48 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-09-15 21:08:35 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-09-15 21:08:21 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-09-15 21:07:33 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP10$
2010-09-15 21:06:00 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-09-15 21:05:37 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-09-15 20:24:11 ----D---- C:\Program Files\Sophos
2010-09-15 20:18:17 ----D---- C:\WINDOWS\Prefetch
2010-09-15 20:15:12 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2010-09-15 20:11:34 ----N---- C:\WINDOWS\system32\ieencode.dll
2010-09-15 20:01:06 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-09-15 17:48:16 ----D---- C:\WINDOWS\dell
2010-09-15 17:48:16 ----ASH---- C:\pagefile.sys
2010-09-15 17:17:25 ----A---- C:\WINDOWS\OEWABLog.txt
2010-09-15 17:16:31 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-09-15 17:15:20 ----D---- C:\Program Files\ComPlus Applications
2010-09-15 16:58:58 ----A---- C:\WINDOWS\imsins.BAK
2010-09-15 16:58:43 ----A---- C:\WINDOWS\system32\irclass.dll
2010-09-15 16:58:42 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-09-15 16:57:35 ----A---- C:\WINDOWS\setuplog.txt
2010-08-26 09:47:34 ----D---- C:\Program Files\Game_Maker8
2010-08-25 17:11:03 ----D---- C:\Documents and Settings\Rob Leach\Application Data\Recolored
2010-08-22 15:07:00 ----D---- C:\Documents and Settings\Rob Leach\Application Data\Malwarebytes
2010-08-22 15:06:36 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2010-08-22 15:06:35 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-08-22 15:06:35 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2010-08-22 15:06:35 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
======List of files/folders modified in the last 1 months======
2010-09-21 14:58:18 ----SD---- C:\WINDOWS\Tasks
2010-09-21 08:32:29 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-09-21 08:32:29 ----D---- C:\WINDOWS\system32\CatRoot2
2010-09-21 08:32:25 ----RD---- C:\Program Files
2010-09-21 08:21:58 ----D---- C:\WINDOWS\system32\drivers\Avg
2010-09-21 08:10:50 ----A---- C:\WINDOWS\ModemLog_Intel(R) 537EP V9x DF PCI Modem.txt
2010-09-21 08:09:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-09-21 08:09:04 ----D---- C:\WINDOWS\SYSTEM32
2010-09-21 08:09:04 ----D---- C:\WINDOWS
2010-09-21 08:03:14 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
2010-09-21 08:00:52 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-09-21 08:00:48 ----D---- C:\Documents and Settings\Rob Leach\Application Data\Adobe
2010-09-21 08:00:33 ----SHD---- C:\WINDOWS\Installer
2010-09-21 08:00:33 ----D---- C:\Program Files\Common Files
2010-09-21 07:59:57 ----D---- C:\Program Files\Java
2010-09-21 07:48:53 ----D---- C:\Program Files\Common Files\Adobe
2010-09-21 06:24:15 ----D---- C:\WINDOWS\system32\DRIVERS
2010-09-21 06:17:14 ----A---- C:\WINDOWS\system.ini
2010-09-21 06:17:07 ----D---- C:\WINDOWS\system32\drivers\ETC
2010-09-21 06:15:12 ----D---- C:\WINDOWS\system32\CONFIG
2010-09-21 06:12:02 ----D---- C:\WINDOWS\AppPatch
2010-09-20 19:32:19 ----D---- C:\Documents and Settings\All Users\Application Data\Google Updater
2010-09-18 08:02:59 ----D---- C:\WINDOWS\pss
2010-09-16 16:27:39 ----D---- C:\Program Files\BHODemon 2
2010-09-16 11:10:50 ----HD---- C:\WINDOWS\INF
2010-09-16 08:41:26 ----RASH---- C:\boot.ini
2010-09-16 08:34:45 ----D---- C:\WINDOWS\system32\WBEM
2010-09-16 08:34:44 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-09-16 07:37:19 ----A---- C:\WINDOWS\WIN.INI
2010-09-16 07:36:22 ----RSHDC---- C:\WINDOWS\system32\DLLCACHE
2010-09-16 07:36:09 ----HD---- C:\WINDOWS\$hf_mig$
2010-09-16 07:20:43 ----HDC---- C:\WINDOWS\$NtUninstallKB917953$
2010-09-16 07:05:20 ----D---- C:\Program Files\Movie Maker
2010-09-15 21:41:42 ----D---- C:\Program Files\Messenger
2010-09-15 21:38:11 ----D---- C:\WINDOWS\system32\CatRoot
2010-09-15 21:11:53 ----A---- C:\WINDOWS\system32\MRT.exe
2010-09-15 21:11:02 ----D---- C:\Program Files\Outlook Express
2010-09-15 20:17:48 ----D---- C:\WINDOWS\system32\Setup
2010-09-15 20:17:47 ----RSD---- C:\WINDOWS\Fonts
2010-09-15 20:17:09 ----D---- C:\WINDOWS\SECURITY
2010-09-15 20:11:38 ----D---- C:\WINDOWS\IME
2010-09-15 20:11:37 ----D---- C:\WINDOWS\Help
2010-09-15 20:11:29 ----D---- C:\Program Files\Internet Explorer
2010-09-15 20:11:28 ----D---- C:\WINDOWS\PeerNet
2010-09-15 20:07:53 ----D---- C:\WINDOWS\system32\Restore
2010-09-15 20:07:52 ----D---- C:\WINDOWS\system32\NPP
2010-09-15 20:07:49 ----D---- C:\WINDOWS\MSAGENT
2010-09-15 20:07:48 ----D---- C:\WINDOWS\SRCHASST
2010-09-15 20:07:45 ----D---- C:\Program Files\NetMeeting
2010-09-15 20:07:42 ----D---- C:\WINDOWS\system32\Com
2010-09-15 20:07:40 ----D---- C:\Program Files\Windows NT
2010-09-15 20:07:40 ----D---- C:\Program Files\Windows Media Player
2010-09-15 20:07:36 ----D---- C:\Program Files\Common Files\System
2010-09-15 20:07:17 ----D---- C:\WINDOWS\system32\OOBE
2010-09-15 20:07:16 ----D---- C:\WINDOWS\system32\USMT
2010-09-15 20:07:14 ----D---- C:\WINDOWS\SYSTEM
2010-09-15 20:03:39 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-09-15 20:00:59 ----D---- C:\WINDOWS\EHome
2010-09-15 19:54:47 ----D---- C:\WINDOWS\Debug
2010-09-15 18:33:37 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-09-15 18:30:24 ----D---- C:\WINDOWS\SoftwareDistribution
2010-09-15 18:12:50 ----HDC---- C:\WINDOWS\ie8
2010-09-15 18:12:33 ----D---- C:\WINDOWS\system32\en-US
2010-09-15 17:57:20 ----HDC---- C:\WINDOWS\$NtUninstallKB896423$
2010-09-15 17:54:29 ----D---- C:\WINDOWS\Media
2010-09-15 17:50:44 ----D---- C:\WINDOWS\TWAIN_32
2010-09-15 17:49:53 ----D---- C:\WINDOWS\system32\ICSXML
2010-09-15 17:49:20 ----D---- C:\WINDOWS\system32\1033
2010-09-15 17:48:17 ----D---- C:\WINDOWS\WinSxS
2010-09-15 17:48:16 ----D---- C:\WINDOWS\Driver Cache
2010-09-15 17:28:48 ----SD---- C:\Documents and Settings\Rob Leach\Application Data\Microsoft
2010-09-15 17:28:39 ----D---- C:\WINDOWS\Registration
2010-09-15 17:27:29 ----SHD---- C:\System Volume Information
2010-09-15 17:17:22 ----A---- C:\WINDOWS\ODBCINST.INI
2010-09-15 17:17:02 ----ASH---- C:\WINDOWS\fonts\DESKTOP.INI
2010-09-15 17:16:59 ----D---- C:\WINDOWS\system32\IAS
2010-09-15 17:16:33 ----RD---- C:\WINDOWS\Web
2010-09-15 17:16:31 ----SD---- C:\WINDOWS\occache
2010-09-15 17:16:25 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-09-15 17:02:30 ----AD---- C:\DRIVERS
2010-09-15 16:58:36 ----ASH---- C:\Documents and Settings\All Users\Application Data\DESKTOP.INI
2010-09-15 07:36:16 ----HDC---- C:\WINDOWS\$NtUninstallKB920670$
2010-09-13 08:52:49 ----A---- C:\WINDOWS\CDFACE32.INI
2010-09-09 17:18:29 ----D---- C:\Program Files\Microsoft Silverlight
2010-09-02 16:53:13 ----D---- C:\Program Files\SpywareBlaster
2010-08-27 10:59:25 ----D---- C:\WINDOWS\network diagnostic
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-14 42368]
R0 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-14 44928]
R0 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-14 42752]
R0 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-14 43008]
R0 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2004-08-12 13952]
R0 d347bus;d347bus; C:\WINDOWS\system32\DRIVERS\d347bus.sys [2004-08-22 155136]
R0 d347prt;d347prt; C:\WINDOWS\System32\Drivers\d347prt.sys [2004-08-22 5248]
R0 iaStor;Intel AHCI Controller; C:\WINDOWS\system32\DRIVERS\iaStor.sys [2004-06-29 477952]
R0 Lbd;Lbd; C:\WINDOWS\system32\DRIVERS\Lbd.sys [2009-03-09 64160]
R0 ohci1394;OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 pavboot;pavboot; C:\WINDOWS\system32\drivers\pavboot.sys [2008-06-19 28544]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2008-04-08 43872]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2004-12-09 47104]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2004-10-28 6656]
R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\WINDOWS\System32\drivers\sfsync02.sys [2004-12-03 20544]
R0 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-14 40960]
R0 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-14 42240]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-07-16 216400]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-06-02 29584]
R1 AvgTdiX;AVG Free8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2010-07-16 243024]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 omci;OMCI WDM Device Driver; C:\WINDOWS\system32\DRIVERS\omci.sys [2002-11-08 17217]
R2 CDRPDACC;Arrowkey Device Access; \??\C:\Program Files\321Studios\Shared\CDRPDACC.SYS []
R2 PfModNT;PfModNT; \??\C:\WINDOWS\system32\drivers\PfModNT.sys []
R3 Afc;PPdus ASPI Shell; C:\WINDOWS\system32\drivers\Afc.sys [2005-02-22 11776]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 b57w2k;Broadcom NetXtreme 57xx Gigabit Controller; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2004-05-29 186112]
R3 ctac32k;Creative AC3 Software Decoder; C:\WINDOWS\System32\drivers\ctac32k.sys [2003-02-20 135040]
R3 ctaud2k;Creative Audio Driver (WDM); C:\WINDOWS\system32\drivers\ctaud2k.sys [2003-03-26 498688]
R3 ctprxy2k;Creative Proxy Driver; C:\WINDOWS\System32\drivers\ctprxy2k.sys [2003-02-20 6144]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\WINDOWS\System32\drivers\ctsfm2k.sys [2003-02-20 135248]
R3 emupia;E-mu Plug-in Architecture Driver; C:\WINDOWS\System32\drivers\emupia2k.sys [2003-02-20 116000]
R3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:\WINDOWS\System32\drivers\ha10kx2k.sys [2003-03-26 823616]
R3 hap16v2k;Creative P16V HAL Driver; C:\WINDOWS\System32\drivers\hap16v2k.sys [2003-03-26 141536]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntelC51;IntelC51; C:\WINDOWS\system32\DRIVERS\IntelC51.sys [2004-03-05 1233525]
R3 IntelC52;IntelC52; C:\WINDOWS\system32\DRIVERS\IntelC52.sys [2004-03-05 647929]
R3 IntelC53;IntelC53; C:\WINDOWS\system32\DRIVERS\IntelC53.sys [2004-06-15 61157]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
R3 mohfilt;mohfilt; C:\WINDOWS\system32\DRIVERS\mohfilt.sys [2004-03-05 37048]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-12 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-11-11 2738400]
R3 ossrv;Creative OS Services Driver; C:\WINDOWS\system32\drivers\ctoss2k.sys [2003-03-26 189504]
R3 RT73;Belkin Wireless G Plus MIMO USB Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\rt73.sys [2005-11-24 245248]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S2 ADILOADER;General Purpose USB Driver (adildr.sys); C:\WINDOWS\System32\Drivers\adildr.sys [2003-07-17 46167]
S3 adiusbaw;USB ADSL WAN Adapter; C:\WINDOWS\system32\DRIVERS\adiusbaw.sys [2003-03-27 127145]
S3 Ad-Watch Connect Filter;Ad-Watch Connect Kernel Filter; \??\C:\WINDOWS\system32\drivers\NSDriver.sys []
S3 BEHRINGER_2902;usb-audio.de driver for BEHRINGER USB AUDIO; C:\WINDOWS\System32\Drivers\BUSB2902.sys [2006-07-03 110272]
S3 bvrp_pci;bvrp_pci; C:\WINDOWS\system32\drivers\bvrp_pci.sys []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\WINDOWS\System32\drivers\ctdvda2k.sys [2003-03-27 287920]
S3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2001-08-17 117760]
S3 giveio;giveio; \??\C:\WINDOWS\system32\giveio.sys []
S3 Jukebox3;Jukebox3; C:\WINDOWS\system32\DRIVERS\ctpdusb.sys [2003-10-23 16848]
S3 MAUSBML;Service for M-Audio Micro (WDM); C:\WINDOWS\system32\DRIVERS\mausbmr.sys [2007-04-27 124800]
S3 MEMSWEEP2;MEMSWEEP2; \??\C:\WINDOWS\system32\7.tmp []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nm;Network Monitor Driver; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 Pcouffin;Low level access layer for CD devices; C:\WINDOWS\System32\Drivers\Pcouffin.sys []
S3 PID_0920;Logitech QuickCam Express(PID_0920); C:\WINDOWS\system32\DRIVERS\LV532AV.SYS [2003-09-16 152576]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 StreamSurge;StreamSurge Driver (miniport); C:\WINDOWS\system32\DRIVERS\ss.sys []
S3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 usbser;Motorola USB Modem Driver; C:\WINDOWS\system32\DRIVERS\usbser.sys [2008-04-14 26112]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\DRIVERS\wanatw4.sys []
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2005-01-28 18944]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2010-01-08 380928]
R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-07-16 308136]
R2 Creative Service for CDROM Access;Creative Service for CDROM Access; C:\WINDOWS\system32\CTsvcCDA.exe [1999-12-13 44032]
R2 IAANTMon;IAA Event Monitor; C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe [2004-06-29 73852]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-09-21 153376]
R2 KService;KService; C:\Program Files\KService\KService.exe [2005-12-16 2007040]
R2 MemeoBackgroundService;MemeoBackgroundService; C:\Program Files\Memeo\AutoBackup\MemeoBackgroundService.exe [2010-04-23 25824]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2004-11-11 127046]
R2 WMDM PMSP Service;WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [2000-06-26 53520]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 267776]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-05-19 136176]
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-24 183280]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
S3 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S4 EPSONStatusAgent2;EPSON Printer Status Agent2; C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe [2001-08-09 90112]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
-----------------EOF-----------------