Here it is
ComboFix 09-09-10.01 - Administrator 09/10/2009 22:21.2.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.246.107 [GMT -5:00]
Running from: c:\documents and settings\Administrator\My Documents\Combo-Fix.exe
AV: AVG Anti-Virus Free *On-access scanning disabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\data
c:\windows\Installer\1f3c6326.msi
c:\windows\system32\wscsvc32.exe
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_UACd.sys
-------\Service_UACd.sys
((((((((((((((((((((((((( Files Created from 2009-08-11 to 2009-09-11 )))))))))))))))))))))))))))))))
.
2009-09-11 02:32 . 2009-09-11 02:32 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\AVG Security Toolbar
2009-09-11 02:28 . 2009-09-11 02:28 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-09-11 02:28 . 2009-09-11 02:28 108552 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-09-11 02:28 . 2009-09-11 02:28 335240 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-09-11 02:28 . 2009-09-11 02:28 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-09-11 02:27 . 2009-09-11 02:27 -------- d-----w- c:\windows\system32\drivers\Avg
2009-09-11 02:27 . 2009-09-11 02:30 -------- d-----w- c:\documents and settings\All Users\Application Data\AVG Security Toolbar
2009-09-11 02:21 . 2009-09-11 02:21 -------- d-----w- C:\AVGTemp
2009-09-10 19:59 . 2009-08-03 18:36 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-09-10 19:59 . 2009-09-10 19:59 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware2
2009-09-10 19:59 . 2009-08-03 18:36 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-09-10 00:46 . 2009-06-21 21:44 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2009-09-09 22:30 . 2009-09-10 00:24 -------- d-----w- C:\Sysclean
2009-09-09 22:23 . 2009-09-09 22:24 -------- d-----w- c:\program files\CCleaner
2009-09-08 20:57 . 2009-09-08 20:57 -------- d-----w- c:\documents and settings\Administrator\Application Data\ConsumerSoft
2009-09-08 20:57 . 2009-09-08 20:57 -------- d-----w- c:\program files\ConsumerSoft
2009-09-07 11:14 . 2009-09-07 11:14 -------- d-sh--w- c:\windows\system32\config\systemprofile\IETldCache
2009-09-06 13:48 . 2009-09-06 13:48 -------- d-----w- c:\program files\Common Files\Adobe AIR
2009-09-06 13:44 . 2009-09-07 01:35 -------- d-----w- c:\documents and settings\All Users\Application Data\NOS
2009-09-06 13:14 . 2009-09-06 13:36 -------- d-----w- c:\documents and settings\Administrator\.SunDownloadManager
2009-08-30 23:27 . 2009-08-30 23:27 136 ----a-w- c:\documents and settings\Administrator\Local Settings\Application Data\fusioncache.dat
2009-08-30 23:26 . 2001-06-22 02:39 73728 ----a-w- c:\windows\system32\drivers\SENTINEL.SYS
2009-08-30 23:26 . 2001-06-22 02:39 49664 ----a-w- c:\windows\system32\SNTI386.DLL
2009-08-30 23:26 . 2001-06-22 02:39 18432 ----a-w- c:\windows\system32\RNBOVDD.DLL
2009-08-30 23:26 . 2001-06-22 02:39 20032 ----a-r- c:\windows\system32\drivers\SNTNLUSB.SYS
2009-08-30 23:25 . 2009-08-30 23:25 -------- d-----w- c:\windows\system32\RNBOSENT
2009-08-30 23:21 . 2009-08-30 23:25 -------- d-----w- c:\program files\Common Files\Rockwell
2009-08-30 23:21 . 2009-08-30 23:25 -------- d-----w- c:\program files\Rockwell Software
2009-08-26 23:12 . 2009-08-26 23:12 -------- d-----w- c:\documents and settings\Administrator\Application Data\AVG8
2009-08-24 15:14 . 2009-08-24 15:14 -------- d-sh--w- c:\documents and settings\Administrator\PrivacIE
2009-08-20 01:02 . 2009-08-20 01:02 -------- d-----w- c:\program files\iPod
2009-08-20 01:02 . 2009-08-20 01:03 -------- d-----w- c:\program files\iTunes
2009-08-20 01:02 . 2009-08-20 01:03 -------- d-----w- c:\documents and settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-08-20 00:59 . 2009-08-20 00:59 -------- d-----w- c:\program files\Bonjour
2009-08-20 00:57 . 2009-08-20 00:58 -------- d-----w- c:\program files\QuickTime
2009-08-18 21:54 . 2009-08-18 21:54 -------- d-----w- C:\_OTM
2009-08-18 09:37 . 2009-08-18 09:37 -------- d-sh--w- c:\documents and settings\NetworkService\IETldCache
2009-08-18 09:36 . 2009-08-18 09:36 -------- d-sh--w- c:\documents and settings\Administrator\IETldCache
2009-08-18 02:08 . 2009-07-03 17:09 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2009-08-18 02:08 . 2009-07-03 17:09 246272 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2009-08-18 02:08 . 2009-09-10 08:00 -------- d-----w- c:\windows\ie8updates
2009-08-18 02:08 . 2009-07-01 07:08 101376 -c----w- c:\windows\system32\dllcache\iecompat.dll
2009-08-18 02:04 . 2009-08-18 02:08 -------- dc-h--w- c:\windows\ie8
2009-08-18 01:05 . 2009-08-18 01:05 -------- d-----w- c:\program files\Alwil Software
2009-08-16 13:04 . 2009-08-16 13:04 -------- d-----w- c:\documents and settings\Administrator\Application Data\Malwarebytes
2009-08-16 13:03 . 2009-09-07 11:36 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-08-15 23:57 . 2009-08-15 23:57 -------- d-----w- c:\program files\Enigma Software Group
2009-08-15 22:11 . 2009-08-15 22:11 -------- d-----w- c:\program files\Trend Micro
2009-08-15 21:43 . 2009-08-15 21:43 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-08-13 09:37 . 2009-07-10 13:27 1315328 -c----w- c:\windows\system32\dllcache\msoe.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-09-11 02:27 . 2008-06-27 23:13 -------- d-----w- c:\documents and settings\All Users\Application Data\avg8
2009-09-10 19:45 . 2009-03-24 20:35 -------- d-----w- c:\documents and settings\All Users\Application Data\Google Updater
2009-09-07 18:28 . 2008-12-25 05:50 1324 ----a-w- c:\windows\system32\d3d9caps.dat
2009-09-06 13:54 . 2006-02-22 20:29 -------- d-----w- c:\program files\Common Files\Adobe
2009-08-30 23:27 . 2006-09-06 22:10 27072 ----a-w- c:\documents and settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-08-20 01:02 . 2008-03-30 05:16 -------- d-----w- c:\program files\Common Files\Apple
2009-08-16 12:54 . 2009-01-30 06:09 -------- d-----w- c:\documents and settings\Administrator\Application Data\MP3Rocket
2009-08-05 09:01 . 2006-02-22 10:18 204800 ----a-w- c:\windows\system32\mswebdvd.dll
2009-07-17 19:01 . 2006-02-22 10:17 58880 ----a-w- c:\windows\system32\atl.dll
2009-07-14 04:43 . 2006-02-22 10:21 286208 ----a-w- c:\windows\system32\wmpdxm.dll
2009-07-03 17:09 . 2006-02-22 10:19 915456 ----a-w- c:\windows\system32\wininet.dll
2009-06-25 08:25 . 2006-02-22 10:19 54272 ----a-w- c:\windows\system32\wdigest.dll
2009-06-25 08:25 . 2006-02-22 10:19 56832 ----a-w- c:\windows\system32\secur32.dll
2009-06-25 08:25 . 2006-02-22 10:19 147456 ----a-w- c:\windows\system32\schannel.dll
2009-06-25 08:25 . 2006-02-22 10:18 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-06-25 08:25 . 2006-02-22 10:18 730112 ----a-w- c:\windows\system32\lsasrv.dll
2009-06-25 08:25 . 2006-02-22 10:18 301568 ----a-w- c:\windows\system32\kerberos.dll
2009-06-24 11:18 . 2006-02-22 10:18 92928 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2009-06-16 14:36 . 2006-02-22 10:19 119808 ----a-w- c:\windows\system32\t2embed.dll
2009-06-16 14:36 . 2006-02-22 10:18 81920 ----a-w- c:\windows\system32\fontsub.dll
2007-12-06 18:40 . 2007-12-06 18:39 2447 ----a-w- c:\program files\ALLTEL Internet Accelerator Client setup.log
.
(((((((((((((((((((((((((((((
SnapShot@2009-08-17_23.45.39 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-11-07 07:19 . 2007-11-07 07:19 54272 c:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_ecc42bd1\vcomp90.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 62976 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90rus.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 46080 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90kor.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 46592 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90jpn.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 64512 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90ita.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 66048 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90fra.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 65024 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90esp.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 65024 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90esn.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 56832 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90enu.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 66560 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90deu.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 39936 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90cht.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 38912 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90chs.dll
+ 2008-07-29 11:07 . 2008-07-29 11:07 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfcm90u.dll
+ 2008-07-29 11:07 . 2008-07-29 11:07 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfcm90.dll
+ 2007-01-29 08:58 . 2009-07-14 11:03 46080 c:\windows\system32\tzchange.exe
+ 2006-09-06 22:40 . 2009-01-07 23:21 26144 c:\windows\system32\spupdsvc.exe
+ 2007-11-30 21:05 . 2009-01-07 23:20 16928 c:\windows\system32\spmsg.dll
+ 2009-08-30 23:25 . 2001-06-22 02:39 20032 c:\windows\system32\RNBOSENT\SNTNLUSB.SYS
+ 2009-08-30 23:25 . 2001-06-22 02:39 32768 c:\windows\system32\RNBOSENT\SETUPX86.EXE
+ 2006-02-22 10:19 . 2009-03-08 09:31 46592 c:\windows\system32\pngfilt.dll
+ 2006-06-29 13:05 . 2009-01-07 23:20 23552 c:\windows\system32\normaliz.dll
- 2006-06-29 13:05 . 2006-06-29 13:05 23552 c:\windows\system32\normaliz.dll
- 2006-06-28 22:59 . 2006-06-28 22:59 24576 c:\windows\system32\nlsdl.dll
+ 2006-06-28 22:59 . 2009-01-07 23:20 24576 c:\windows\system32\nlsdl.dll
- 2006-02-22 10:18 . 2006-10-17 16:28 48128 c:\windows\system32\mshtmler.dll
+ 2006-02-22 10:18 . 2009-03-08 09:31 48128 c:\windows\system32\mshtmler.dll
+ 2006-02-22 10:18 . 2009-03-08 09:31 66560 c:\windows\system32\mshtmled.dll
- 2006-02-22 10:18 . 2006-10-17 16:56 45568 c:\windows\system32\mshta.exe
+ 2006-02-22 10:18 . 2009-03-08 09:31 45568 c:\windows\system32\mshta.exe
+ 2006-10-17 16:58 . 2009-03-08 09:31 13312 c:\windows\system32\msfeedssync.exe
+ 2006-11-08 02:03 . 2009-07-03 17:09 55296 c:\windows\system32\msfeedsbs.dll
+ 2006-02-22 10:18 . 2009-03-08 09:34 43008 c:\windows\system32\licmgr10.dll
+ 2006-02-22 10:18 . 2009-07-03 17:09 25600 c:\windows\system32\jsproxy.dll
+ 2006-02-22 10:18 . 2009-03-08 09:32 94720 c:\windows\system32\inseng.dll
+ 1999-01-28 15:44 . 1999-01-28 15:44 49152 c:\windows\system32\INETWH32.dll
+ 2006-02-22 10:18 . 2009-03-08 09:31 34816 c:\windows\system32\imgutil.dll
+ 2006-11-07 08:26 . 2009-03-08 09:32 36864 c:\windows\system32\ieudinit.exe
+ 2006-02-22 10:18 . 2009-03-08 09:32 71680 c:\windows\system32\iesetup.dll
+ 2006-02-22 10:18 . 2009-03-08 09:32 55808 c:\windows\system32\iernonce.dll
- 2006-06-29 13:05 . 2006-06-29 13:05 26112 c:\windows\system32\idndl.dll
+ 2006-06-29 13:05 . 2009-01-07 23:20 26112 c:\windows\system32\idndl.dll
+ 2006-10-17 16:58 . 2009-03-08 09:31 59904 c:\windows\system32\icardie.dll
+ 1998-12-09 00:53 . 1998-12-09 00:53 31744 c:\windows\system32\hlp95en.dll
+ 2009-08-20 00:53 . 2009-07-09 17:16 39424 c:\windows\system32\DRVSTORE\usbaapl_872A2434B7205D4BD84BBE53811BDCE15F347D5B\usbaapl.sys
+ 2009-08-20 00:53 . 2009-07-09 17:16 17408 c:\windows\system32\DRVSTORE\netaapl_F433E854B3FF3BEE74986FDE8E16A64162342BFF\netaapl.sys
+ 2009-08-20 01:03 . 2009-03-19 21:32 23400 c:\windows\system32\DRVSTORE\GEARAspiWD_F475AF659D36685632E9BD97B57E9D9661FF3FFD\x86\GEARAspiWDM.sys
+ 2008-01-29 17:01 . 2009-03-19 21:32 23400 c:\windows\system32\drivers\GEARAspiWDM.sys
+ 2008-12-12 16:11 . 2008-12-12 16:11 61440 c:\windows\system32\dnssd.dll
+ 2008-12-12 16:18 . 2008-12-12 16:18 87336 c:\windows\system32\dns-sd.exe
+ 2009-06-25 08:25 . 2009-06-25 08:25 54272 c:\windows\system32\dllcache\wdigest.dll
+ 2009-02-03 19:59 . 2009-06-25 08:25 56832 c:\windows\system32\dllcache\secur32.dll
- 2009-02-03 19:59 . 2009-02-03 19:59 56832 c:\windows\system32\dllcache\secur32.dll
+ 2006-02-22 10:19 . 2009-03-08 09:31 46592 c:\windows\system32\dllcache\pngfilt.dll
- 2006-02-22 10:18 . 2006-10-17 16:28 48128 c:\windows\system32\dllcache\mshtmler.dll
+ 2006-02-22 10:18 . 2009-03-08 09:31 48128 c:\windows\system32\dllcache\mshtmler.dll
+ 2006-02-22 10:18 . 2009-03-08 09:31 66560 c:\windows\system32\dllcache\mshtmled.dll
- 2006-02-22 10:18 . 2006-10-17 16:56 45568 c:\windows\system32\dllcache\mshta.exe
+ 2006-02-22 10:18 . 2009-03-08 09:31 45568 c:\windows\system32\dllcache\mshta.exe
+ 2007-10-10 23:55 . 2009-07-03 17:09 55296 c:\windows\system32\dllcache\msfeedsbs.dll
+ 2006-02-22 10:18 . 2009-03-08 09:34 43008 c:\windows\system32\dllcache\licmgr10.dll
+ 2009-06-24 11:18 . 2009-06-24 11:18 92928 c:\windows\system32\dllcache\ksecdd.sys
+ 2006-02-22 10:18 . 2009-07-03 17:09 25600 c:\windows\system32\dllcache\jsproxy.dll
+ 2006-02-22 10:18 . 2009-03-08 09:32 94720 c:\windows\system32\dllcache\inseng.dll
+ 2006-02-22 10:18 . 2009-03-08 09:31 34816 c:\windows\system32\dllcache\imgutil.dll
+ 2006-02-22 10:18 . 2009-03-08 09:32 71680 c:\windows\system32\dllcache\iesetup.dll
+ 2006-02-22 10:18 . 2009-03-08 09:32 55808 c:\windows\system32\dllcache\iernonce.dll
+ 2007-10-10 23:55 . 2009-03-08 09:31 59904 c:\windows\system32\dllcache\icardie.dll
+ 2006-02-22 19:33 . 2009-03-08 09:24 68608 c:\windows\system32\dllcache\hmmapi.dll
+ 2009-06-29 16:12 . 2009-03-08 09:33 18944 c:\windows\system32\dllcache\corpol.dll
+ 2006-02-22 10:17 . 2009-03-08 09:32 72704 c:\windows\system32\dllcache\admparse.dll
+ 2006-02-22 10:17 . 2009-03-08 09:33 18944 c:\windows\system32\corpol.dll
+ 2006-02-22 19:38 . 2009-09-10 09:37 32768 c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
- 2006-02-22 19:38 . 2008-09-08 17:55 32768 c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
- 2006-02-22 19:38 . 2008-09-08 17:55 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2006-02-22 19:38 . 2009-09-10 00:43 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2009-09-06 12:18 . 2009-09-06 12:18 16384 c:\windows\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT
+ 2009-09-07 11:14 . 2009-09-09 22:09 16384 c:\windows\system32\config\systemprofile\IETldCache\index.dat
+ 2006-02-22 19:38 . 2009-09-10 00:43 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
- 2006-02-22 19:38 . 2008-09-08 17:55 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
+ 2002-01-05 06:18 . 2002-01-05 06:18 84992 c:\windows\system32\atl70.dll
+ 2006-02-22 10:17 . 2009-03-08 09:32 72704 c:\windows\system32\admparse.dll
+ 2009-09-06 13:51 . 2009-09-06 13:51 20480 c:\windows\Installer\49db27.msi
+ 2009-09-06 13:48 . 2009-09-06 13:48 26624 c:\windows\Installer\49db22.msi
+ 2009-08-30 23:21 . 2009-08-30 23:21 28160 c:\windows\Installer\{EFDCE57C-A7C0-4111-9965-E9D21A89BC35}\misc.exe
+ 2009-08-30 23:25 . 2009-08-30 23:25 45056 c:\windows\Installer\{30E45D79-A117-41C9-81E7-004F2B183249}\SC_FTLicCHM.82B48EB2_2F5A_4997_AD1E_9023D8CCEBD7.exe
+ 2009-08-30 23:25 . 2009-08-30 23:25 40960 c:\windows\Installer\{30E45D79-A117-41C9-81E7-004F2B183249}\SC_FTActTool.EXE.82B48EB2_2F5A_4997_AD1E_9023D8CCEBD7.exe
+ 2009-08-30 23:25 . 2009-08-30 23:25 45056 c:\windows\Installer\{30E45D79-A117-41C9-81E7-004F2B183249}\NewShortcut2.82B48EB2_2F5A_4997_AD1E_9023D8CCEBD7.exe
+ 2009-08-30 23:25 . 2009-08-30 23:25 61440 c:\windows\Installer\{30E45D79-A117-41C9-81E7-004F2B183249}\NewShortcut1.82B48EB2_2F5A_4997_AD1E_9023D8CCEBD7.exe
+ 2009-08-30 23:25 . 2009-08-30 23:25 40960 c:\windows\Installer\{30E45D79-A117-41C9-81E7-004F2B183249}\ARPPRODUCTICON.exe
+ 2009-08-20 00:59 . 2009-08-20 00:59 86016 c:\windows\Installer\{07287123-B8AC-41CE-8346-3D777245C35B}\PrntWzrdIco.exe
+ 2009-08-18 02:09 . 2009-03-08 09:33 12288 c:\windows\ie8updates\KB972260-IE8\xpshims.dll
+ 2009-08-18 02:09 . 2009-03-08 09:31 55296 c:\windows\ie8updates\KB972260-IE8\msfeedsbs.dll
+ 2009-08-18 02:09 . 2009-03-08 09:33 25600 c:\windows\ie8updates\KB972260-IE8\jsproxy.dll
+ 2009-08-18 02:06 . 2009-03-08 19:23 58464 c:\windows\ie8\spuninst\iecustom.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 44544 c:\windows\ie8\pngfilt.dll
+ 2009-08-18 02:04 . 2006-10-17 16:28 48128 c:\windows\ie8\mshtmler.dll
+ 2009-08-18 02:04 . 2006-10-17 16:56 45568 c:\windows\ie8\mshta.exe
+ 2009-08-18 02:04 . 2006-10-17 16:58 12288 c:\windows\ie8\msfeedssync.exe
+ 2009-08-18 02:04 . 2009-06-29 16:12 52224 c:\windows\ie8\msfeedsbs.dll
+ 2009-08-18 02:04 . 2006-10-17 17:05 40960 c:\windows\ie8\licmgr10.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 27648 c:\windows\ie8\jsproxy.dll
+ 2009-08-18 02:04 . 2006-11-07 08:26 92672 c:\windows\ie8\inseng.dll
+ 2009-08-18 02:04 . 2006-10-17 16:57 36352 c:\windows\ie8\imgutil.dll
+ 2009-08-18 02:04 . 2006-11-07 08:26 55296 c:\windows\ie8\iesetup.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 44544 c:\windows\ie8\iernonce.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 78336 c:\windows\ie8\ieencode.dll
+ 2009-08-18 02:04 . 2009-06-29 11:07 70656 c:\windows\ie8\ie4uinit.exe
+ 2009-08-18 02:04 . 2009-06-29 16:12 63488 c:\windows\ie8\icardie.dll
+ 2009-08-18 02:04 . 2006-10-17 16:44 60416 c:\windows\ie8\hmmapi.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 17408 c:\windows\ie8\corpol.dll
+ 2009-08-18 02:04 . 2006-11-07 08:26 71680 c:\windows\ie8\admparse.dll
+ 2009-08-30 23:25 . 2009-08-30 23:25 16384 c:\windows\assembly\GAC\RockwellSoftware.FactoryTalk.Diagnostics.ReaderLib\1.0.0.0__08edf02f4d5b3281\RockwellSoftware.FactoryTalk.Diagnostics.ReaderLib.dll
+ 2009-08-30 23:25 . 2009-08-30 23:25 24576 c:\windows\assembly\GAC\RockwellSoftware.FactoryTalk.Diagnostics.ReaderCOM\2.0.10.122__08edf02f4d5b3281\RockwellSoftware.FactoryTalk.Diagnostics.ReaderCOM.dll
+ 2009-08-30 23:25 . 2009-08-30 23:25 24576 c:\windows\assembly\GAC\RockwellSoftware.FactoryTalk.Diagnostics.ReaderCOM\1.7.0.14__08edf02f4d5b3281\RockwellSoftware.FactoryTalk.Diagnostics.ReaderCOM.dll
+ 2009-08-30 23:25 . 2009-08-30 23:25 12288 c:\windows\assembly\GAC\RockwellSoftware.FactoryTalk.Diagnostics.ReaderCOM\1.1.0.17__08edf02f4d5b3281\RockwellSoftware.FactoryTalk.Diagnostics.ReaderCOM.dll
+ 2009-08-30 23:25 . 2009-08-30 23:25 28672 c:\windows\assembly\GAC\RockwellSoftware.FactoryTalk.Diagnostics.PIA\1.1.0.0__08edf02f4d5b3281\RockwellSoftware.FactoryTalk.Diagnostics.PIA.dll
+ 2009-08-18 02:08 . 2009-03-08 09:35 2048 c:\windows\ie8updates\KB972636-IE8\iecompat.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 655872 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcr90.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 572928 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcp90.dll
+ 2008-07-29 08:54 . 2008-07-29 08:54 225280 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcm90.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 159032 c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_353599c2\atl90.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 161784 c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_d01483b2\atl90.dll
+ 2007-09-24 01:53 . 2009-01-07 23:21 121856 c:\windows\system32\xmllite.dll
- 2007-09-24 01:53 . 2008-04-14 00:12 121856 c:\windows\system32\xmllite.dll
+ 2006-10-17 17:05 . 2009-03-08 09:34 208384 c:\windows\system32\WinFXDocObj.exe
+ 2006-02-22 10:19 . 2009-03-08 09:34 236544 c:\windows\system32\webcheck.dll
+ 2006-02-22 10:19 . 2009-03-08 09:33 420352 c:\windows\system32\vbscript.dll
+ 2006-02-22 10:19 . 2009-03-08 09:34 105984 c:\windows\system32\url.dll
- 2006-02-22 10:19 . 2009-06-29 16:12 105984 c:\windows\system32\url.dll
+ 2000-09-27 18:09 . 2000-09-27 18:09 133120 c:\windows\system32\RSLGX_DB.DLL
+ 2005-09-03 20:23 . 2005-09-03 20:23 651264 c:\windows\system32\RSLGX_CT.dll
+ 2006-02-22 10:18 . 2009-07-03 17:09 206848 c:\windows\system32\occache.dll
+ 2002-01-05 08:37 . 2002-01-05 08:37 344064 c:\windows\system32\msvcr70.dll
+ 2002-01-05 08:40 . 2002-01-05 08:40 487424 c:\windows\system32\msvcp70.dll
+ 2006-02-22 10:18 . 2009-03-08 09:32 611840 c:\windows\system32\mstime.dll
+ 2006-02-22 10:18 . 2009-03-08 09:34 193536 c:\windows\system32\msrating.dll
+ 2006-02-22 10:18 . 2009-03-08 09:22 156160 c:\windows\system32\msls31.dll
- 2006-02-22 10:18 . 2006-11-08 02:03 156160 c:\windows\system32\msls31.dll
+ 2006-11-08 02:03 . 2009-07-03 17:09 594432 c:\windows\system32\msfeeds.dll
+ 2009-01-07 23:20 . 2009-01-07 23:20 265720 c:\windows\system32\msdbg2.dll
+ 2002-01-05 09:36 . 2002-01-05 09:36 964608 c:\windows\system32\mfc70u.dll
+ 2002-01-05 09:48 . 2002-01-05 09:48 974848 c:\windows\system32\mfc70.dll
+ 2006-02-22 10:18 . 2009-06-22 06:44 726528 c:\windows\system32\jscript.dll
+ 2006-11-08 02:03 . 2009-03-08 09:22 164352 c:\windows\system32\ieui.dll
+ 2006-02-22 10:18 . 2009-07-03 17:09 184320 c:\windows\system32\iepeers.dll
+ 2006-02-22 10:18 . 2009-07-03 17:09 386048 c:\windows\system32\iedkcs32.dll
+ 2006-10-17 16:27 . 2009-03-08 09:11 445952 c:\windows\system32\ieapfltr.dll
+ 2006-02-22 10:18 . 2009-03-08 09:32 163840 c:\windows\system32\ieakui.dll
+ 2006-02-22 10:18 . 2009-03-08 09:33 229376 c:\windows\system32\ieaksie.dll
+ 2006-02-22 10:18 . 2009-03-08 09:33 125952 c:\windows\system32\ieakeng.dll
+ 2006-02-22 10:18 . 2009-07-03 11:01 173056 c:\windows\system32\ie4uinit.exe
+ 2008-01-29 17:02 . 2008-04-17 17:12 107368 c:\windows\system32\GEARAspi.dll
- 2008-01-29 17:02 . 2008-04-17 19:12 107368 c:\windows\system32\GEARAspi.dll
+ 2006-02-22 10:17 . 2009-03-08 09:31 216064 c:\windows\system32\dxtrans.dll
+ 2006-02-22 10:17 . 2009-03-08 09:31 348160 c:\windows\system32\dxtmsft.dll
+ 2009-08-20 01:03 . 2008-04-17 17:12 107368 c:\windows\system32\DRVSTORE\GEARAspiWD_F475AF659D36685632E9BD97B57E9D9661FF3FFD\x86\GEARAspi.dll
+ 2006-02-22 10:19 . 2009-07-03 17:09 915456 c:\windows\system32\dllcache\wininet.dll
+ 2006-02-22 10:19 . 2009-03-08 09:34 236544 c:\windows\system32\dllcache\webcheck.dll
+ 2006-02-22 19:33 . 2009-03-08 09:33 759296 c:\windows\system32\dllcache\VGX.dll
+ 2008-05-09 10:53 . 2009-03-08 09:33 420352 c:\windows\system32\dllcache\vbscript.dll
- 2006-02-22 10:19 . 2009-06-29 16:12 105984 c:\windows\system32\dllcache\url.dll
+ 2006-02-22 10:19 . 2009-03-08 09:34 105984 c:\windows\system32\dllcache\url.dll
+ 2009-01-07 23:20 . 2009-01-07 23:20 134144 c:\windows\system32\dllcache\sqmapi.dll
+ 2009-01-07 23:20 . 2009-01-07 23:20 474112 c:\windows\system32\dllcache\shlwapi.dll
+ 2008-12-05 06:54 . 2009-06-25 08:25 147456 c:\windows\system32\dllcache\schannel.dll
+ 2006-02-22 10:18 . 2009-07-03 17:09 206848 c:\windows\system32\dllcache\occache.dll
+ 2009-06-25 08:25 . 2009-06-25 08:25 136192 c:\windows\system32\dllcache\msv1_0.dll
+ 2006-02-22 10:18 . 2009-03-08 09:32 611840 c:\windows\system32\dllcache\mstime.dll
+ 2006-02-22 10:18 . 2009-03-08 09:34 193536 c:\windows\system32\dllcache\msrating.dll
- 2006-02-22 10:18 . 2006-11-08 02:03 156160 c:\windows\system32\dllcache\msls31.dll
+ 2006-02-22 10:18 . 2009-03-08 09:22 156160 c:\windows\system32\dllcache\msls31.dll
+ 2007-10-10 23:55 . 2009-07-03 17:09 594432 c:\windows\system32\dllcache\msfeeds.dll
+ 2009-04-17 02:25 . 2009-06-25 08:25 730112 c:\windows\system32\dllcache\lsasrv.dll
+ 2009-06-25 08:25 . 2009-06-25 08:25 301568 c:\windows\system32\dllcache\kerberos.dll
+ 2008-05-09 10:53 . 2009-06-22 06:44 726528 c:\windows\system32\dllcache\jscript.dll
+ 2006-02-22 19:33 . 2009-03-08 19:09 638816 c:\windows\system32\dllcache\iexplore.exe
+ 2006-02-22 10:18 . 2009-07-03 17:09 184320 c:\windows\system32\dllcache\iepeers.dll
+ 2006-02-22 10:18 . 2009-07-03 17:09 386048 c:\windows\system32\dllcache\iedkcs32.dll
+ 2007-10-10 23:55 . 2009-03-08 09:11 445952 c:\windows\system32\dllcache\ieapfltr.dll
+ 2006-02-22 10:18 . 2009-03-08 09:32 163840 c:\windows\system32\dllcache\ieakui.dll
+ 2006-02-22 10:18 . 2009-03-08 09:33 229376 c:\windows\system32\dllcache\ieaksie.dll
+ 2006-02-22 10:18 . 2009-03-08 09:33 125952 c:\windows\system32\dllcache\ieakeng.dll
+ 2006-02-22 10:18 . 2009-07-03 11:01 173056 c:\windows\system32\dllcache\ie4uinit.exe
+ 2006-02-22 10:17 . 2009-03-08 09:31 216064 c:\windows\system32\dllcache\dxtrans.dll
+ 2006-02-22 10:17 . 2009-03-08 09:31 348160 c:\windows\system32\dllcache\dxtmsft.dll
+ 2006-02-22 10:17 . 2009-03-08 09:32 128512 c:\windows\system32\dllcache\advpack.dll
+ 2006-02-22 10:17 . 2009-03-08 09:32 128512 c:\windows\system32\advpack.dll
- 2006-09-06 21:58 . 1998-07-30 17:51 305152 c:\windows\IsUninst.exe
+ 2006-09-06 21:58 . 1998-07-30 18:51 305152 c:\windows\IsUninst.exe
+ 2009-08-27 08:01 . 2009-08-27 08:01 195584 c:\windows\Installer\1dc1d2fa.msi
+ 2009-08-26 23:00 . 2009-08-26 23:00 228352 c:\windows\Installer\1bd24bb1.msi
+ 2009-08-20 01:04 . 2009-08-20 01:04 102400 c:\windows\Installer\{99ECF41F-5CCA-42BD-B8B8-A8333E2E2944}\iTunesIco.exe
+ 2009-08-18 02:08 . 2008-07-08 13:02 382840 c:\windows\ie8updates\KB972636-IE8\spuninst\updspapi.dll
+ 2009-08-18 02:08 . 2008-07-08 13:02 231288 c:\windows\ie8updates\KB972636-IE8\spuninst\spuninst.exe
+ 2009-08-18 02:09 . 2009-03-08 09:34 914944 c:\windows\ie8updates\KB972260-IE8\wininet.dll
+ 2009-08-18 02:09 . 2009-05-26 11:40 382840 c:\windows\ie8updates\KB972260-IE8\spuninst\updspapi.dll
+ 2009-08-18 02:09 . 2009-05-26 11:40 231288 c:\windows\ie8updates\KB972260-IE8\spuninst\spuninst.exe
+ 2009-08-18 02:09 . 2009-03-08 09:34 109568 c:\windows\ie8updates\KB972260-IE8\occache.dll
+ 2009-08-18 02:09 . 2009-03-08 09:32 594432 c:\windows\ie8updates\KB972260-IE8\msfeeds.dll
+ 2009-08-18 02:09 . 2009-03-08 09:33 246784 c:\windows\ie8updates\KB972260-IE8\ieproxy.dll
+ 2009-08-18 02:09 . 2009-03-08 09:31 183808 c:\windows\ie8updates\KB972260-IE8\iepeers.dll
+ 2009-08-18 02:09 . 2009-03-08 19:09 391536 c:\windows\ie8updates\KB972260-IE8\iedkcs32.dll
+ 2009-08-18 02:09 . 2009-03-08 09:32 173056 c:\windows\ie8updates\KB972260-IE8\ie4uinit.exe
+ 2009-09-10 08:00 . 2008-07-08 13:02 382840 c:\windows\ie8updates\KB971961-IE8\spuninst\updspapi.dll
+ 2009-09-10 08:00 . 2008-07-08 13:02 231288 c:\windows\ie8updates\KB971961-IE8\spuninst\spuninst.exe
+ 2009-09-10 08:00 . 2009-03-08 09:33 726528 c:\windows\ie8updates\KB971961-IE8\jscript.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 827392 c:\windows\ie8\wininet.dll
+ 2009-08-18 02:04 . 2006-10-17 17:05 206336 c:\windows\ie8\winfxdocobj.exe
+ 2009-08-18 02:04 . 2009-06-29 16:12 233472 c:\windows\ie8\webcheck.dll
+ 2009-08-18 02:04 . 2007-07-12 23:31 765952 c:\windows\ie8\vgx.dll
+ 2009-08-18 02:04 . 2008-05-09 10:53 430080 c:\windows\ie8\vbscript.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 105984 c:\windows\ie8\url.dll
+ 2009-08-18 02:06 . 2009-01-07 23:21 382496 c:\windows\ie8\spuninst\updspapi.dll
+ 2009-08-18 02:06 . 2009-01-07 23:20 231456 c:\windows\ie8\spuninst\spuninst.exe
+ 2009-08-18 02:04 . 2006-09-06 21:43 213216 c:\windows\ie8\spuninst.exe
+ 2009-08-18 02:04 . 2009-06-29 16:12 102912 c:\windows\ie8\occache.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 671232 c:\windows\ie8\mstime.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 193024 c:\windows\ie8\msrating.dll
+ 2009-08-18 02:04 . 2006-11-08 02:03 156160 c:\windows\ie8\msls31.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 477696 c:\windows\ie8\mshtmled.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 459264 c:\windows\ie8\msfeeds.dll
+ 2009-08-18 02:04 . 2008-05-09 10:53 512000 c:\windows\ie8\jscript.dll
+ 2009-08-18 02:04 . 2009-06-29 08:35 634632 c:\windows\ie8\iexplore.exe
+ 2009-08-18 02:04 . 2006-11-08 02:03 180736 c:\windows\ie8\ieui.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 268288 c:\windows\ie8\iertutil.dll
+ 2009-08-18 02:04 . 2006-11-08 02:03 287744 c:\windows\ie8\ieproxy.dll
+ 2009-08-18 02:04 . 2006-11-08 02:03 191488 c:\windows\ie8\iepeers.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 385024 c:\windows\ie8\iedkcs32.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 380928 c:\windows\ie8\ieapfltr.dll
+ 2009-08-18 02:04 . 2009-06-29 08:33 161792 c:\windows\ie8\ieakui.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 230400 c:\windows\ie8\ieaksie.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 153088 c:\windows\ie8\ieakeng.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 214528 c:\windows\ie8\dxtrans.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 347136 c:\windows\ie8\dxtmsft.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 124928 c:\windows\ie8\advpack.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 3783672 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfc90u.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 3768312 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfc90.dll
+ 2006-02-22 10:21 . 2009-05-20 09:56 2458112 c:\windows\system32\WMVCore.dll
- 2006-02-22 10:21 . 2008-06-18 11:03 2458112 c:\windows\system32\WMVCore.dll
+ 2006-02-22 10:19 . 2009-07-03 17:09 1208832 c:\windows\system32\urlmon.dll
+ 2006-02-22 10:18 . 2009-07-19 13:18 5937152 c:\windows\system32\mshtml.dll
+ 2006-10-17 16:57 . 2009-07-03 17:09 1985536 c:\windows\system32\iertutil.dll
+ 2006-09-06 04:01 . 2009-02-07 02:07 3698584 c:\windows\system32\ieapfltr.dat
+ 2009-08-20 00:53 . 2009-07-09 17:16 2060288 c:\windows\system32\DRVSTORE\usbaapl_872A2434B7205D4BD84BBE53811BDCE15F347D5B\usbaaplrc.dll
+ 2009-08-20 00:53 . 2009-07-09 17:16 1419232 c:\windows\system32\DRVSTORE\netaapl_F433E854B3FF3BEE74986FDE8E16A64162342BFF\wdfcoinstaller01005.dll
- 2006-02-22 10:21 . 2008-06-18 11:03 2458112 c:\windows\system32\dllcache\WMVCore.dll
+ 2006-02-22 10:21 . 2009-05-20 09:56 2458112 c:\windows\system32\dllcache\WMVCore.dll
+ 2006-02-22 10:19 . 2009-07-03 17:09 1208832 c:\windows\system32\dllcache\urlmon.dll
+ 2009-01-07 23:20 . 2009-01-07 23:20 1497088 c:\windows\system32\dllcache\shdocvw.dll
+ 2006-02-22 10:18 . 2009-07-19 13:18 5937152 c:\windows\system32\dllcache\mshtml.dll
+ 2007-10-10 23:55 . 2009-07-03 17:09 1985536 c:\windows\system32\dllcache\iertutil.dll
+ 2007-07-01 03:31 . 2009-02-07 02:07 3698584 c:\windows\system32\dllcache\ieapfltr.dat
+ 2009-01-07 23:20 . 2009-01-07 23:20 1022976 c:\windows\system32\dllcache\browseui.dll
+ 2009-08-20 01:04 . 2009-08-20 01:04 4945408 c:\windows\Installer\70ebef.msi
+ 2009-08-20 00:59 . 2009-08-20 00:59 1659392 c:\windows\Installer\70e8d0.msi
+ 2009-08-20 00:58 . 2009-08-20 00:58 8992256 c:\windows\Installer\70e8cb.msi
+ 2009-08-20 00:53 . 2009-08-20 00:53 3295232 c:\windows\Installer\70e629.msi
+ 2009-09-06 13:54 . 2009-09-06 13:54 3938816 c:\windows\Installer\49db2c.msi
+ 2009-08-30 23:25 . 2009-08-30 23:25 5234688 c:\windows\Installer\307eff1b.msi
+ 2009-08-30 23:21 . 2009-08-30 23:21 3163136 c:\windows\Installer\307eff17.msi
+ 2009-08-18 02:09 . 2009-03-08 09:34 1206784 c:\windows\ie8updates\KB972260-IE8\urlmon.dll
+ 2009-08-18 02:09 . 2009-03-08 09:41 5937152 c:\windows\ie8updates\KB972260-IE8\mshtml.dll
+ 2009-08-18 02:09 . 2009-03-08 09:32 1985024 c:\windows\ie8updates\KB972260-IE8\iertutil.dll
+ 2009-08-18 02:04 . 2009-06-29 16:12 1159680 c:\windows\ie8\urlmon.dll
+ 2009-08-18 02:04 . 2009-07-19 13:33 3597824 c:\windows\ie8\mshtml.dll
+ 2009-08-18 02:04 . 2009-07-19 13:32 6067200 c:\windows\ie8\ieframe.dll
+ 2009-08-18 02:04 . 2009-06-29 08:33 2452872 c:\windows\ie8\ieapfltr.dat
+ 2007-09-24 01:51 . 2009-08-28 21:38 24689600 c:\windows\system32\MRT.exe
+ 2006-11-08 02:03 . 2009-07-19 23:48 11067392 c:\windows\system32\ieframe.dll
+ 2007-10-10 23:55 . 2009-07-19 23:48 11067392 c:\windows\system32\dllcache\ieframe.dll
+ 2009-08-18 02:09 . 2009-03-08 09:39 11063808 c:\windows\ie8updates\KB972260-IE8\ieframe.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{A3BC75A2-1F87-4686-AA43-5347D756017C}"= "c:\program files\AVG\AVG8\Toolbar\IEToolbar.dll" [2009-07-24 1090816]
[HKEY_CLASSES_ROOT\clsid\{a3bc75a2-1f87-4686-aa43-5347d756017c}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
2009-07-24 14:55 1090816 ----a-w- c:\program files\AVG\AVG8\Toolbar\IEToolbar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "c:\program files\AVG\AVG8\Toolbar\IEToolbar.dll" [2009-07-24 1090816]
[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"H/PC Connection Agent"="c:\program files\Microsoft ActiveSync\wcescomm.exe" [2006-11-13 1289000]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PCinfo"="c:\program files\Panasonic\PCINFO\SetDiag.exe" [2005-06-15 45056]
"IntelZeroConfig"="c:\program files\Intel\Wireless\bin\ZCfgSvc.exe" [2005-10-04 401408]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2009-06-04 198160]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-05-26 413696]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-07-13 292128]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-09-11 2007832]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
ALLTEL Internet Accelerator Client.lnk - c:\program files\ALLTEL Communications\ALLTEL Internet Accelerator Client\NGSpawner.exe [2007-12-6 45056]
Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\IntelWireless]
2005-10-04 06:59 110592 ----a-w- c:\program files\Intel\Wireless\Bin\LgNotify.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-09-11 02:28 11952 ----a-w- c:\windows\system32\avgrsstx.dll
[HKLM\~\startupfolder\C:^Documents and Settings^Administrator^Start Menu^Programs^Startup^Picture Motion Browser Media Check Tool.lnk]
path=c:\documents and settings\Administrator\Start Menu\Programs\Startup\Picture Motion Browser Media Check Tool.lnk
backup=c:\windows\pss\Picture Motion Browser Media Check Tool.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Panasonic Hand Writing.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Panasonic Hand Writing.lnk
backup=c:\windows\pss\Panasonic Hand Writing.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^RAMASST.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\RAMASST.lnk
backup=c:\windows\pss\RAMASST.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Fieldbus\\KAPPA\\BIN\\Prjmn.exe"=
"c:\\Fieldbus\\YKIKI\\PRG\\DVMNTMNG.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\ALLTEL Communications\\ALLTEL Internet Accelerator Client\\NettGain1200_C.exe"=
"c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
"c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"c:\\Program Files\\Java\\jre1.6.0_01\\bin\\javaw.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\Rockwell Software\\FactoryTalk Activation\\Tools\\FTActTool.exe"=
"c:\\Program Files\\Rockwell Software\\FactoryTalk Activation\\Tools\\FTActTrans.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [9/10/2009 9:28 PM 335240]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [9/10/2009 9:28 PM 108552]
R2 AdobeActiveFileMonitor6.0;Adobe Active File Monitor V6;c:\program files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [9/11/2007 12:45 AM 124832]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [9/10/2009 9:27 PM 297752]
R2 bgsvc;B's Recorder GOLD Service;c:\program files\B's Recorder GOLD8\bgsvc.exe [2/26/2007 4:00 PM 81920]
R2 brecal;Panasonic Battery Recalibration Driver;c:\program files\Panasonic\BRECAL\Brecal.sys [2/22/2006 3:04 PM 7168]
R2 pcinfo;Panasonic PC Info. Viewer Driver;c:\program files\Panasonic\PCINFO\PCINFO.sys [2/22/2006 3:13 PM 7168]
R2 SDKEY;Panasonic SD Misc. Function Driver;c:\program files\Panasonic\SDKEY\SDKEY.sys [2/22/2006 3:14 PM 8192]
S2 gupdate1c9acc0b7e62482;Google Update Service (gupdate1c9acc0b7e62482);c:\program files\Google\Update\GoogleUpdate.exe [3/24/2009 3:40 PM 133104]
S3 ACGPRS;Sierra Wireless 3G Adapter;c:\windows\system32\drivers\acgprs.sys [2/14/2006 3:07 PM 97280]
S3 FIDMOU;Fujitsu touchpad;c:\windows\system32\drivers\Fidmou.sys [2/22/2006 5:23 AM 23463]
S3 LSWPCv4;Wireless-B Notebook Adapter Driver;c:\windows\system32\drivers\rtl8180.sys [10/1/2003 11:54 AM 184832]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
Contents of the 'Scheduled Tasks' folder
2009-09-08 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-04-11 18:34]
2009-09-11 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-24 20:34]
2009-09-11 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-03-24 20:39]
2009-09-11 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-03-24 20:39]
.
.
------- Supplementary Scan -------
.
uStart Page =
hxxp://m.www.yahoo.com/uInternet Settings,ProxyServer = ›‘|Û‘|´Â²vh²v
uInternet Settings,ProxyOverride = ÿÿÿÿ"‘|†‘|Û‘|
LSP: bmnet.dll
FF - ProfilePath - c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\ijblqsqp.default\
FF - prefs.js: browser.startup.homepage -
hxxp://www.yahoo.com/FF - prefs.js: keyword.URL -
hxxp://us.yhs.search.yahoo.com/avg/search?fr=yhs-avgb&type=yahoo_avg_hs2-tb-web_us&p=FF - component: c:\program files\AVG\AVG8\Firefox\components\avgssff.dll
FF - component: c:\program files\AVG\AVG8\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils2.dll
FF - component: c:\program files\AVG\AVG8\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils3.dll
FF - component: c:\program files\AVG\AVG8\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils35.dll
FF - component: c:\program files\AVG\AVG8\Toolbar\Firefox\avg@igeared\components\xpavgtbapi.dll
FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\Google\Update\1.2.183.7\npGoogleOneClick8.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - true.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2009-09-10 22:36
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-991173501-3096420548-355359547-500\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (Administrator)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,97,65,86,4d,f5,3e,c4,4e,bb,90,e9,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,97,65,86,4d,f5,3e,c4,4e,bb,90,e9,\
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(820)
c:\program files\Intel\Wireless\Bin\LgNotify.dll
- - - - - - - > 'lsass.exe'(876)
c:\windows\system32\bmnet.dll
- - - - - - - > 'explorer.exe'(2984)
c:\windows\system32\WININET.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Intel\Wireless\Bin\EvtEng.exe
c:\program files\Intel\Wireless\Bin\S24EvMon.exe
c:\windows\system32\scardsvr.exe
c:\progra~1\Intel\Wireless\Bin\1XConfig.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\windows\system32\bmwebcfg.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\system32\DVDRAMSV.exe
c:\program files\Intel\Wireless\Bin\RegSrvc.exe
c:\program files\AVG\AVG8\avgrsx.exe
c:\progra~1\AVG\AVG8\avgnsx.exe
c:\progra~1\MICROS~3\rapimgr.exe
c:\program files\ALLTEL Communications\ALLTEL Internet Accelerator Client\NettGain1200_C.exe
c:\program files\iPod\bin\iPodService.exe
.
**************************************************************************
.
Completion time: 2009-09-11 22:43 - machine was rebooted
ComboFix-quarantined-files.txt 2009-09-11 03:43
ComboFix2.txt 2009-08-17 23:49
Pre-Run: 41,897,918,464 bytes free
Post-Run: 42,017,574,912 bytes free
528 --- E O F --- 2009-09-10 08:04