WiredWX Hobby Weather ToolsLog in

 


microsoft.com and malwarebytes.com won't load.

2 posters

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz

Code:

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
[2009/12/16 21:04:22 | 00,000,498 | ---- | M] () -- C:\WINDOWS\tasks\McAfee.com Update Check (HOME-desktop).job
[2009/12/16 21:04:22 | 00,000,498 | ---- | M] () -- C:\WINDOWS\tasks\McAfee.com Update Check (DESKTOP-desktop).job
[2009/12/16 19:36:40 | 00,000,310 | ---- | M] () -- C:\WINDOWS\tasks\Orb Index when idle.job
[2009/12/16 19:17:18 | 00,509,138 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009/12/16 19:17:18 | 00,432,686 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009/12/16 19:17:18 | 00,067,516 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009/12/16 19:13:01 | 00,016,608 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\WINDOWS\gdrv.sys
[2009/12/16 19:12:54 | 00,000,004 | ---- | M] () -- C:\Documents and Settings\desktop\tray.pid
[2009/12/16 19:12:52 | 00,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009/12/16 19:12:52 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009/12/16 19:12:51 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009/12/16 19:12:04 | 03,407,872 | ---- | M] () -- C:\Documents and Settings\desktop\ntuser.dat
[2009/12/16 19:11:55 | 00,000,178 | -HS- | M] () -- C:\Documents and Settings\desktop\ntuser.ini
[2009/12/16 19:11:31 | 00,000,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2009/12/16 13:54:44 | 00,000,375 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics
[2009/12/16 13:44:33 | 00,004,757 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2009/12/16 13:39:45 | 00,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2009/12/15 00:40:43 | 00,000,039 | ---- | M] () -- C:\Documents and Settings\desktop\jagex_runescape_preferences.dat
[2009/12/15 00:36:26 | 00,000,069 | ---- | M] () -- C:\Documents and Settings\desktop\jagex_runescape_preferences2.dat
[2009/12/15 00:28:27 | 00,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deploytk.dll
[2009/12/15 00:28:27 | 00,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2009/12/15 00:28:27 | 00,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2009/12/15 00:28:27 | 00,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2009/12/15 00:28:27 | 00,073,728 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
[2009/12/14 19:29:19 | 38,651,6991 | ---- | M] () -- C:\TRUE_BLOOD_SEASON1_DISC5.ISO
[2009/12/14 14:04:30 | 00,018,944 | ---- | M] () -- C:\Documents and Settings\desktop\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/12/13 10:42:41 | 00,025,600 | ---- | M] () -- C:\Documents and Settings\desktop\My Documents\LIQUID  TRANSPORT FUEL  DECEMBER  2009CON'T.xlr
[2009/12/13 10:29:59 | 00,026,112 | ---- | M] () -- C:\Documents and Settings\desktop\My Documents\LIQUID  TRANSPORT FUEL  DECEMBER  2009.xls
[2009/12/13 09:49:38 | 00,018,432 | ---- | M] () -- C:\Documents and Settings\desktop\My Documents\LIQUID  TRANSPORT FUEL TAXES DECEMBER  2009..xlr
[2009/12/08 19:38:00 | 00,000,120 | ---- | M] () -- C:\Documents and Settings\desktop\Application Data\FixVTS.ini
[2009/12/08 19:06:16 | 00,028,160 | ---- | M] () -- C:\Documents and Settings\desktop\Desktop\msommemo.doc
[2009/12/08 16:34:40 | 00,000,572 | ---- | M] () -- C:\Documents and Settings\desktop\Desktop\POM for Windows 3.lnk
[2009/12/06 16:33:56 | 00,049,152 | ---- | M] () -- C:\Documents and Settings\desktop\Desktop\racea.doc
[2009/12/06 06:11:09 | 00,000,313 | ---- | M] () -- C:\Documents and Settings\desktop\My Documents\My Documents.lnk
[2009/12/05 16:39:53 | 00,027,648 | ---- | M] () -- C:\Documents and Settings\desktop\My Documents\lehman ted a.doc
[2009/12/04 11:20:29 | 00,073,728 | ---- | M] () -- C:\Documents and Settings\desktop\My Documents\Fax Cover Page.doc
[2009/12/03 16:14:06 | 00,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2009/12/03 16:13:56 | 00,019,160 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2009/12/01 21:33:15 | 00,041,472 | ---- | M] () -- C:\Documents and Settings\desktop\Desktop\HWBook1(1).xls
[2009/12/01 20:30:16 | 00,000,628 | ---- | M] () -- C:\WINDOWS\win.ini
[2009/11/30 14:33:46 | 00,041,872 | ---- | M] () -- C:\WINDOWS\System32\xfcodec.dll
[2009/11/29 00:19:30 | 00,000,861 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Orb.lnk
[2009/11/27 17:11:42 | 00,023,180 | ---- | M] () -- C:\WINDOWS\System32\productregistry
[2009/11/27 17:11:42 | 00,000,875 | ---- | M] () -- C:\Documents and Settings\desktop\Start Menu\Programs\Startup\SDK Tray Menu.lnk
[2009/11/27 17:11:15 | 00,000,116 | ---- | M] () -- C:\Documents and Settings\desktop\.asadminpass
[2009/11/27 17:11:07 | 00,000,779 | ---- | M] () -- C:\Documents and Settings\desktop\.asadmintruststore
[2009/11/27 16:35:17 | 00,000,818 | ---- | M] () -- C:\Documents and Settings\desktop\Desktop\HijackThis.lnk
[2009/11/27 16:15:06 | 00,000,734 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.bak
[2009/11/27 15:29:23 | 00,000,572 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/11/24 02:39:31 | 00,138,504 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009/11/24 02:39:22 | 00,214,488 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2009/11/24 02:39:22 | 00,214,488 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2009/11/24 02:24:38 | 02,373,712 | ---- | M] () -- C:\WINDOWS\System32\pbsvc.exe
[2009/11/23 20:23:35 | 00,159,168 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\afcdp.sys
[2009/11/23 20:23:32 | 00,902,432 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\tdrpm251.sys
[2009/11/23 20:23:32 | 00,570,016 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\timntr.sys
[2009/11/23 20:23:26 | 00,157,248 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\snapman.sys
[2009/11/23 20:23:26 | 00,000,864 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Acronis True Image Home 2010.lnk
[2009/11/22 16:20:49 | 00,028,160 | ---- | M] () -- C:\Documents and Settings\desktop\Desktop\Layout Distance Examples.xls
[2009/11/19 22:18:25 | 00,000,578 | ---- | M] () -- C:\Documents and Settings\desktop\Desktop\XFire.lnk
[2009/11/19 15:27:23 | 04,282,432 | -H-- | M] () -- C:\Documents and Settings\desktop\Local Settings\Application Data\IconCache.db
[2009/11/19 14:53:36 | 00,113,040 | ---- | M] () -- C:\WINDOWS\hpoins07.dat
[2009/11/19 14:49:47 | 00,001,808 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
[2009/11/19 14:49:33 | 00,000,984 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\HP Solution Center.lnk
[2009/11/19 14:36:46 | 00,068,456 | ---- | M] () -- C:\Documents and Settings\desktop\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/11/19 14:36:23 | 00,266,208 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/11/19 03:38:22 | 00,000,803 | ---- | M] () -- C:\Documents and Settings\desktop\Desktop\Internet Explorer.lnk
[2009/11/19 03:26:22 | 00,001,475 | ---- | M] () -- C:\Documents and Settings\desktop\Desktop\Windows Explorer.lnk
[2009/11/19 03:24:40 | 00,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak
[2009/11/19 02:07:23 | 00,001,869 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Borderlands.lnk
[2009/11/19 01:47:12 | 00,075,064 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2009/11/19 01:34:24 | 00,000,223 | RHS- | M] () -- C:\boot.ini
[2009/11/19 01:26:22 | 00,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2009/11/19 01:26:13 | 00,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2009/11/19 01:13:54 | 00,000,727 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\McAfee Security Center.lnk
[2009/11/19 01:12:02 | 00,000,000 | ---- | M] () -- C:\WINDOWS\ativpsrm.bin
[2009/11/19 00:59:17 | 00,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2009/11/19 00:59:17 | 00,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2009/11/19 00:43:03 | 00,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2009/11/19 00:42:31 | 00,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2009/11/19 00:40:49 | 00,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2009/11/19 00:40:49 | 00,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2009/11/19 00:40:49 | 00,000,000 | RHS- | M] () -- C:\IO.SYS
[2009/11/19 00:40:49 | 00,000,000 | ---- | M] () -- C:\WINDOWS\control.ini
[2009/11/19 00:40:49 | 00,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2009/11/19 00:40:49 | 00,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2009/11/19 00:40:47 | 00,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2009/11/19 00:40:47 | 00,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2009/11/19 00:40:47 | 00,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2009/11/19 00:40:39 | 00,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2009/11/19 00:40:01 | 00,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2009/11/19 00:40:01 | 00,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2009/11/19 00:37:51 | 00,021,640 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009/11/19 00:37:42 | 00,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini
[2009/11/19 00:37:42 | 00,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini
[2009/11/18 19:34:16 | 00,005,208 | ---- | M] () -- C:\WINDOWS\System32\pid.PNF
[2009/11/18 19:31:47 | 00,000,231 | ---- | M] () -- C:\WINDOWS\system.ini
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
[2009/12/16 13:57:38 | 00,000,498 | ---- | C] () -- C:\WINDOWS\tasks\McAfee.com Update Check (DESKTOP-desktop).job
[2009/12/16 13:54:24 | 00,000,375 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics
[2009/12/15 00:31:35 | 00,000,069 | ---- | C] () -- C:\Documents and Settings\desktop\jagex_runescape_preferences2.dat
[2009/12/15 00:30:13 | 00,000,039 | ---- | C] () -- C:\Documents and Settings\desktop\jagex_runescape_preferences.dat
[2009/12/14 19:15:48 | 38,651,6991 | ---- | C] () -- C:\TRUE_BLOOD_SEASON1_DISC5.ISO
[2009/12/08 19:38:00 | 00,000,120 | ---- | C] () -- C:\Documents and Settings\desktop\Application Data\FixVTS.ini
[2009/12/08 19:06:15 | 00,028,160 | ---- | C] () -- C:\Documents and Settings\desktop\Desktop\msommemo.doc
[2009/12/08 16:34:40 | 00,000,572 | ---- | C] () -- C:\Documents and Settings\desktop\Desktop\POM for Windows 3.lnk
[2009/12/06 15:02:28 | 00,049,152 | ---- | C] () -- C:\Documents and Settings\desktop\Desktop\racea.doc
[2009/12/06 06:35:13 | 00,026,112 | ---- | C] () -- C:\Documents and Settings\desktop\My Documents\LIQUID  TRANSPORT FUEL  DECEMBER  2009.xls
[2009/12/06 06:11:09 | 00,000,313 | ---- | C] () -- C:\Documents and Settings\desktop\My Documents\My Documents.lnk
[2009/12/04 15:53:22 | 00,027,648 | ---- | C] () -- C:\Documents and Settings\desktop\My Documents\lehman ted a.doc
[2009/12/01 21:36:03 | 00,000,616 | ---- | C] () -- C:\Documents and Settings\desktop\Desktop\Shortcut to BitComet.lnk
[2009/12/01 21:33:15 | 00,041,472 | ---- | C] () -- C:\Documents and Settings\desktop\Desktop\HWBook1(1).xls
[2009/11/30 14:33:46 | 00,041,872 | ---- | C] () -- C:\WINDOWS\System32\xfcodec.dll
[2009/11/29 00:19:32 | 00,000,310 | ---- | C] () -- C:\WINDOWS\tasks\Orb Index when idle.job
[2009/11/29 00:19:30 | 00,000,861 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Orb.lnk
[2009/11/27 17:24:19 | 03,407,872 | ---- | C] () -- C:\Documents and Settings\desktop\ntuser.dat
[2009/11/27 17:14:27 | 00,000,004 | ---- | C] () -- C:\Documents and Settings\desktop\tray.pid
[2009/11/27 17:11:42 | 00,000,875 | ---- | C] () -- C:\Documents and Settings\desktop\Start Menu\Programs\Startup\SDK Tray Menu.lnk
[2009/11/27 17:11:15 | 00,000,116 | ---- | C] () -- C:\Documents and Settings\desktop\.asadminpass
[2009/11/27 17:11:07 | 00,000,779 | ---- | C] () -- C:\Documents and Settings\desktop\.asadmintruststore
[2009/11/27 17:09:48 | 00,023,180 | ---- | C] () -- C:\WINDOWS\System32\productregistry
[2009/11/27 16:35:17 | 00,000,818 | ---- | C] () -- C:\Documents and Settings\desktop\Desktop\HijackThis.lnk
[2009/11/27 15:29:23 | 00,000,572 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/11/24 02:24:38 | 02,373,712 | ---- | C] () -- C:\WINDOWS\System32\pbsvc.exe
[2009/11/23 20:23:26 | 00,000,864 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Acronis True Image Home 2010.lnk
[2009/11/23 01:08:59 | 00,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009/11/22 16:20:49 | 00,028,160 | ---- | C] () -- C:\Documents and Settings\desktop\Desktop\Layout Distance Examples.xls
[2009/11/20 00:10:19 | 00,497,664 | ---- | C] () -- C:\WINDOWS\System32\ac3filter.acm
[2009/11/19 22:18:27 | 00,000,578 | ---- | C] () -- C:\Documents and Settings\desktop\Desktop\XFire.lnk
[2009/11/19 14:49:47 | 00,001,808 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
[2009/11/19 14:49:33 | 00,000,984 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\HP Solution Center.lnk
[2009/11/19 14:44:19 | 00,000,738 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2009/11/19 14:44:17 | 00,113,040 | ---- | C] () -- C:\WINDOWS\hpoins07.dat
[2009/11/19 14:44:17 | 00,021,124 | ---- | C] () -- C:\WINDOWS\hpomdl07.dat
[2009/11/19 03:24:41 | 00,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak
[2009/11/19 02:07:23 | 00,001,869 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Borderlands.lnk
[2009/11/19 01:47:36 | 00,138,504 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009/11/19 01:47:29 | 00,214,488 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2009/11/19 01:47:17 | 00,214,488 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2009/11/19 01:47:12 | 00,075,064 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2009/11/19 01:42:51 | 00,018,944 | ---- | C] () -- C:\Documents and Settings\desktop\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/11/19 01:26:22 | 00,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2009/11/19 01:26:13 | 00,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2009/11/19 01:13:54 | 00,000,727 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\McAfee Security Center.lnk
[2009/11/19 01:13:54 | 00,000,498 | ---- | C] () -- C:\WINDOWS\tasks\McAfee.com Update Check (HOME-desktop).job
[2009/11/19 01:13:44 | 00,023,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\NaiFiltr.sys
[2009/11/19 01:12:02 | 00,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin
[2009/11/19 01:07:59 | 00,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2009/11/19 01:07:59 | 00,354,816 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisdecd.dll
[2009/11/19 01:07:59 | 00,052,224 | ---- | C] () -- C:\WINDOWS\System32\msdvbnp.ax
[2009/11/19 01:07:59 | 00,052,224 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdvbnp.ax
[2009/11/19 01:07:59 | 00,030,208 | ---- | C] () -- C:\WINDOWS\System32\psisrndr.ax
[2009/11/19 01:07:59 | 00,030,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisrndr.ax
[2009/11/19 01:03:20 | 00,593,920 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2009/11/19 01:03:18 | 00,018,440 | R--- | C] () -- C:\WINDOWS\atiogl.xml
[2009/11/19 01:03:08 | 00,007,167 | R--- | C] () -- C:\WINDOWS\System32\atifglpf.xml
[2009/11/19 01:03:02 | 00,887,724 | R--- | C] () -- C:\WINDOWS\System32\ativva6x.dat
[2009/11/19 01:03:02 | 00,197,655 | R--- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2009/11/19 01:03:02 | 00,000,003 | R--- | C] () -- C:\WINDOWS\System32\ativva5x.dat
[2009/11/19 00:59:17 | 00,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2009/11/19 00:59:17 | 00,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2009/11/19 00:58:35 | 00,000,553 | R--- | C] () -- C:\WINDOWS\USetup.iss
[2009/11/19 00:44:32 | 00,000,803 | ---- | C] () -- C:\Documents and Settings\desktop\Desktop\Internet Explorer.lnk
[2009/11/19 00:44:18 | 00,001,475 | ---- | C] () -- C:\Documents and Settings\desktop\Desktop\Windows Explorer.lnk
[2009/11/19 00:44:18 | 00,000,178 | -HS- | C] () -- C:\Documents and Settings\desktop\ntuser.ini
[2009/11/19 00:43:03 | 00,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2009/11/19 00:42:31 | 00,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2009/11/19 00:42:27 | 00,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls
[2009/11/19 00:42:08 | 00,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
[2009/11/19 00:42:08 | 00,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
[2009/11/19 00:42:07 | 00,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2009/11/19 00:41:58 | 00,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
[2009/11/19 00:41:57 | 01,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2009/11/19 00:41:52 | 00,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2009/11/19 00:41:50 | 00,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2009/11/19 00:41:48 | 00,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2009/11/19 00:41:37 | 13,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2009/11/19 00:41:32 | 00,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2009/11/19 00:41:29 | 00,094,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\fpencode.dll
[2009/11/19 00:41:22 | 00,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2009/11/19 00:41:18 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
[2009/11/19 00:41:18 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
[2009/11/19 00:41:18 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
[2009/11/19 00:41:18 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
[2009/11/19 00:41:18 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
[2009/11/19 00:41:18 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
[2009/11/19 00:41:17 | 00,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
[2009/11/19 00:41:17 | 00,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
[2009/11/19 00:41:17 | 00,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
[2009/11/19 00:41:17 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
[2009/11/19 00:41:17 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
[2009/11/19 00:41:17 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
[2009/11/19 00:41:17 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
[2009/11/19 00:41:17 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
[2009/11/19 00:41:17 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
[2009/11/19 00:41:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
[2009/11/19 00:41:15 | 00,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
[2009/11/19 00:41:15 | 00,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
[2009/11/19 00:41:15 | 00,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
[2009/11/19 00:41:15 | 00,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
[2009/11/19 00:41:15 | 00,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
[2009/11/19 00:41:15 | 00,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
[2009/11/19 00:41:15 | 00,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
[2009/11/19 00:41:15 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
[2009/11/19 00:41:15 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
[2009/11/19 00:41:15 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
[2009/11/19 00:41:14 | 00,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
[2009/11/19 00:41:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
[2009/11/19 00:41:13 | 00,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
[2009/11/19 00:41:13 | 00,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
[2009/11/19 00:41:13 | 00,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
[2009/11/19 00:41:13 | 00,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
[2009/11/19 00:41:13 | 00,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
[2009/11/19 00:41:13 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
[2009/11/19 00:40:49 | 00,002,577 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2009/11/19 00:40:49 | 00,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2009/11/19 00:40:49 | 00,000,000 | RHS- | C] () -- C:\IO.SYS
[2009/11/19 00:40:49 | 00,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2009/11/19 00:40:49 | 00,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2009/11/19 00:40:47 | 00,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2009/11/19 00:40:47 | 00,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2009/11/19 00:40:46 | 00,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2009/11/19 00:40:01 | 00,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2009/11/19 00:40:01 | 00,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2009/11/19 00:39:57 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2009/11/19 00:39:43 | 04,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2009/11/19 00:39:22 | 00,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2009/11/19 00:39:22 | 00,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2009/11/19 00:39:14 | 00,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2009/11/19 00:38:17 | 00,376,832 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msinfo.dll
[2009/11/19 00:37:51 | 00,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009/11/19 00:36:46 | 00,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe Stucco.bmp
[2009/11/19 00:36:46 | 00,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
[2009/11/19 00:36:45 | 00,065,954 | ---- | C] () -- C:\WINDOWS\Prairie Wind.bmp
[2009/11/19 00:36:45 | 00,026,680 | ---- | C] () -- C:\WINDOWS\River Sumida.bmp
[2009/11/19 00:36:45 | 00,026,582 | ---- | C] () -- C:\WINDOWS\Greenstone.bmp
[2009/11/19 00:36:45 | 00,017,362 | ---- | C] () -- C:\WINDOWS\Rhododendron.bmp
[2009/11/19 00:36:45 | 00,017,336 | ---- | C] () -- C:\WINDOWS\Gone Fishing.bmp
[2009/11/19 00:36:45 | 00,017,062 | ---- | C] () -- C:\WINDOWS\Coffee Bean.bmp
[2009/11/19 00:36:45 | 00,016,730 | ---- | C] () -- C:\WINDOWS\FeatherTexture.bmp
[2009/11/19 00:36:44 | 00,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
[2009/11/19 00:36:44 | 00,065,978 | ---- | C] () -- C:\WINDOWS\Soap Bubbles.bmp
[2009/11/19 00:36:44 | 00,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
[2009/11/19 00:36:44 | 00,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
[2009/11/19 00:36:44 | 00,001,272 | ---- | C] () -- C:\WINDOWS\Blue Lace 16.bmp
[2009/11/19 00:36:43 | 00,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
[2009/11/19 00:36:43 | 00,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
[2009/11/19 00:36:43 | 00,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
[2009/11/19 00:36:43 | 00,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
[2009/11/19 00:36:43 | 00,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
[2009/11/19 00:36:41 | 00,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2009/11/19 00:36:40 | 00,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2009/11/19 00:36:39 | 00,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2009/11/19 00:36:32 | 00,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2009/11/18 19:34:16 | 00,005,208 | ---- | C] () -- C:\WINDOWS\System32\pid.PNF
[2009/11/18 19:31:55 | 00,004,757 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2009/11/18 19:31:50 | 01,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2009/11/18 19:31:50 | 00,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2009/11/18 19:31:49 | 00,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2009/11/18 19:31:49 | 00,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2009/11/18 19:31:47 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls
[2009/11/18 19:31:47 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
[2009/11/18 19:31:43 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls
[2009/11/18 19:31:43 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
[2009/11/18 19:31:43 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls
[2009/11/18 19:31:43 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
[2009/11/18 19:31:43 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls
[2009/11/18 19:31:43 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
[2009/11/18 19:31:40 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls
[2009/11/18 19:31:40 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
[2009/11/18 19:31:40 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls
[2009/11/18 19:31:40 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
[2009/11/18 19:31:40 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls
[2009/11/18 19:31:40 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
[2009/11/18 19:31:36 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls
[2009/11/18 19:31:36 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
[2009/11/18 19:31:36 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls
[2009/11/18 19:31:36 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
[2009/11/18 19:31:36 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls
[2009/11/18 19:31:36 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
[2009/11/18 19:31:36 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls
[2009/11/18 19:31:36 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
[2009/11/18 19:31:36 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls
[2009/11/18 19:31:36 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
[2009/11/18 19:31:34 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls
[2009/11/18 19:31:34 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
[2009/11/18 19:31:34 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls
[2009/11/18 19:31:34 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
[2009/11/18 19:31:34 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls
[2009/11/18 19:31:34 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
[2009/11/18 19:31:31 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_852.nls
[2009/11/18 19:31:31 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_852.nls
[2009/11/18 19:31:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls
[2009/11/18 19:31:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
[2009/11/18 19:31:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls
[2009/11/18 19:31:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
[2009/11/18 19:31:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls
[2009/11/18 19:31:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
[2009/11/18 19:31:29 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls
[2009/11/18 19:31:29 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
[2009/11/18 19:31:25 | 00,001,688 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2009/11/18 19:29:39 | 02,144,487 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5.CAT
[2009/11/18 19:29:39 | 01,296,669 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP3.CAT
[2009/11/18 19:29:39 | 00,797,189 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2009/11/18 19:29:39 | 00,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2009/11/18 19:29:39 | 00,171,588 | ---- | C] () -- C:\WINDOWS\System32\dllcache\startoc.cat
[2009/11/18 19:29:39 | 00,037,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2009/11/18 19:29:39 | 00,034,063 | ---- | C] () -- C:\WINDOWS\System32\dllcache\FP4.CAT
[2009/11/18 19:29:39 | 00,026,991 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn7.cat
[2009/11/18 19:29:39 | 00,016,535 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IMS.CAT
[2009/11/18 19:29:39 | 00,014,433 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn9.cat
[2009/11/18 19:29:39 | 00,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2009/11/18 19:29:39 | 00,012,363 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSMSGS.CAT
[2009/11/18 19:29:39 | 00,010,027 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSTSWEB.CAT
[2009/11/18 19:29:39 | 00,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2009/11/18 19:29:39 | 00,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2009/11/18 19:29:39 | 00,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2009/11/18 19:29:38 | 00,402,264 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5INF.CAT
[2009/11/18 19:28:54 | 00,266,208 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/11/18 19:28:27 | 00,000,223 | RHS- | C] () -- C:\boot.ini
[2009/11/18 19:28:24 | 00,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2008/10/07 09:13:30 | 00,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
[2008/10/07 09:13:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008/10/07 09:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
[2008/10/07 09:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
[2008/10/07 09:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008/10/07 09:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
[2008/10/07 09:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
[2008/10/07 09:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
[2008/10/07 09:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
[2008/10/07 09:13:20 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
[2008/04/14 07:00:00 | 00,168,032 | RHS- | C] () -- C:\WINDOWS\System32\pxeqog.dll
[2001/07/06 15:30:00 | 00,003,399 | ---- | C] () -- C:\WINDOWS\System32\hptcpmon.ini
< End of report >

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz
and here's the Extras log


Code:

OTL Extras logfile created on: 12/16/2009 9:05:00 PM - Run 1
OTL by OldTimer - Version 3.1.17.0    Folder = C:\Documents and Settings\desktop\My Documents\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
2.00 Gb Total Physical Memory | 1.59 Gb Available Physical Memory | 79.60% Memory free
3.85 Gb Paging File | 3.45 Gb Available in Paging File | 89.61% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 59.01 Gb Total Space | 40.38 Gb Free Space | 68.44% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 6.10 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive F: | 76.69 Gb Total Space | 24.47 Gb Free Space | 31.91% Space Free | Partition Type: NTFS
G: Drive not present or media not loaded
Drive H: | 872.50 Gb Total Space | 448.08 Gb Free Space | 51.36% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded
 
Computer Name: DESKTOP
Current User Name: desktop
Logged in as Administrator.
 
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
 
[color=#E56717]========== Extra Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== File Associations ==========[/color]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- Reg Error: Key error. File not found
 
[color=#E56717]========== Shell Spawning ==========[/color]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~2\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
 
[color=#E56717]========== Security Center Settings ==========[/color]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"56781:TCP" = 56781:TCP:*:Enabled:BitComet 56781 TCP
"56781:UDP" = 56781:UDP:*:Enabled:BitComet 56781 UDP
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"4885:TCP" = 4885:TCP:*:Enabled:rmcgbud
 
[color=#E56717]========== Authorized Applications List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"F:\Program Files\Xfire\Xfire.exe" = F:\Program Files\Xfire\Xfire.exe:*:Enabled:Xfire -- (Xfire Inc.)
"F:\Program Files\Wolfenstein - Enemy Territory\ET.exe" = F:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Enabled:ET -- ()
"H:\Program Files\2K Games\Gearbox Software\Borderlands\Binaries\Borderlands.exe" = H:\Program Files\2K Games\Gearbox Software\Borderlands\Binaries\Borderlands.exe:*:Enabled:Borderlands -- (Take-Two Interactive Software, Inc.)
"F:\Program Files\BitComet\BitComet.exe" = F:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet -- (www.BitComet.com)
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE" = C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe" = C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" = C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe -- ()
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe -- (Hewlett-Packard)
"C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe" = C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe -- (Hewlett-Packard)
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe -- (Hewlett-Packard Co.)
"C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe -- ()
"C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe:*:Enabled:hpqdia.exe -- ( )
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe -- (Hewlett-Packard Co.)
"C:\WINDOWS\system32\PnkBstrA.exe" = C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA -- ()
"C:\WINDOWS\system32\PnkBstrB.exe" = C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB -- ()
"C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox -- (Mozilla Corporation)
"C:\Documents and Settings\desktop\Local Settings\Temp\java_ee_sdk-5_08-jdk-6u17-windows(2).exe2\package\jre\bin\javaw.exe" = C:\Documents and Settings\desktop\Local Settings\Temp\java_ee_sdk-5_08-jdk-6u17-windows(2).exe2\package\jre\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary -- File not found
"C:\Program Files\Orb Networks\Orb\bin\Orb.exe" = C:\Program Files\Orb Networks\Orb\bin\Orb.exe:*:Enabled:Orb -- (Orb Networks, Inc.)
"C:\Program Files\Orb Networks\Orb\bin\OrbLauncher.exe" = C:\Program Files\Orb Networks\Orb\bin\OrbLauncher.exe:*:Enabled:OrbLauncher -- (Orb Networks)
"C:\Program Files\Orb Networks\Orb\bin\OrbSetupWizard.exe" = C:\Program Files\Orb Networks\Orb\bin\OrbSetupWizard.exe:*:Enabled:OrbSetupWizard -- ()
"C:\Program Files\Orb Networks\Orb\bin\OrbControlPanel.exe" = C:\Program Files\Orb Networks\Orb\bin\OrbControlPanel.exe:*:Enabled:OrbControlPanel -- ()
"C:\Program Files\Orb Networks\Orb\bin\OrbStreamerClient.exe" = C:\Program Files\Orb Networks\Orb\bin\OrbStreamerClient.exe:*:Enabled:Orb Stream Client -- ()
 
 
[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center
"{0611BD4E-4FE4-4a62-B0C0-18A4CC463428}" = CP_Package_Variety1
"{06B06D3B-C133-B15E-AF47-F7FE7F48DE49}" = CCC Help Turkish
"{07300F01-89CA-4CF8-92BD-2A605EB83C95}" = EasySaver B9.0205.1
"{09984AEC-6B9F-4ca7-B78D-CB44D4771DA3}" = Destinations
"{0A5ECD3B-191A-67C7-A04D-D4900C9501E5}" = Catalyst Control Center Graphics Previews Common
"{0B33B738-AD79-4E32-90C5-E67BFB10BBFF}" = AiO_Scan
"{13F3917B56CD4C25848BDC69916971BB}" = DivX Converter
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{1C139D7D-9FEA-468d-A9C8-2A6E3BDE564A}" = CP_Package_Variety3
"{1E71806D-587E-3DF8-0BA0-6010E3B4F071}" = CCC Help Swedish
"{2133CB3F-F891-4081-8681-FEE2B2419FF4}" = Orb Runtime libraries
"{2466E904-7E48-4597-9321-722CF02930EB}" = 5600
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java(TM) 6 Update 17
"{26CC62F3-F66B-4F41-9679-421FCE3F03ED}" = ccc-core-static
"{2CADCEAB-D5DA-44D6-B5FC-7DEE87AB3C0C}" = Unload
"{30C19FF2-7FBA-4d09-B9DE-1659977F64F6}" = TrayApp
"{3113E537-41F6-8C1B-109A-38C76DE69271}" = Catalyst Control Center Localization All
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{37E5CADC-C146-F72B-EEFE-ABB1C5DC7D98}" = CCC Help Spanish
"{3EC4020D-3D75-ABCD-9BF1-E4D911D4CDED}" = Catalyst Control Center Graphics Full New
"{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker
"{4918D7C5-9025-B706-DEF2-5E29AB5EAFEA}" = Catalyst Control Center Graphics Light
"{4C007A32-9570-725E-4C9A-70BB36785835}" = CCC Help Norwegian
"{4D5CB2B2-DD58-D8B0-FC08-58A2DC897C23}" = CCC Help English
"{4E457212-AD7F-1747-9D9F-76BA98D44CC2}" = CCC Help Portuguese
"{516CB854-B95B-42AB-7887-9CFC24784A42}" = CCC Help Czech
"{52B65911-1559-4ED5-9461-46957FDD48CD}" = Borderlands
"{53408AC4-2698-A35E-B41C-571BD549E212}" = Catalyst Control Center Core Implementation
"{53F3256D-DB6A-0E06-7874-A60D87B6AE5C}" = CCC Help Chinese Traditional
"{54E3707F-808E-4fd4-95C9-15D1AB077E5D}" = NewCopy
"{55408879-D7FF-01C2-DAC4-4146E1439304}" = CCC Help Polish
"{56F8AFC3-FA98-4ff1-9673-8A026CBF85BE}" = WebReg
"{58B2C07A-CD58-CC42-2DF3-8F433EEF339B}" = CCC Help Finnish
"{5B4FA5EA-8C08-4B6D-AAF4-003A1AB8FFBA}" = CCC Help Russian
"{5B79CFD1-6845-4158-9D7D-6BE89DF2C135}" = HP PSC & OfficeJet 5.3.B
"{5DA6F06A-B389-407B-BF8C-1548767914D8}" = ATI Problem Report Wizard
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{6BB6627C-694F-4FDC-A3E5-C7F4BED4C724}" = DocProc
"{784B383D-1498-77AA-6085-A9EF197193D0}" = CCC Help Italian
"{7850A6D2-CBEA-4728-9877-F1BEDEA9F619}" = AiOSoftware
"{78A1F747-520C-E068-ED99-08E7C4F75E2A}" = ccc-core-preinstall
"{79AE776D-FA42-4040-B5F3-F317500D0FCD}" = ATI AVIVO Codecs
"{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec
"{7C9B95B7-B598-4398-B30F-7F6827192E6C}" = ProductContext
"{818ABC3C-635C-4651-8183-D0E9640B7DD1}" = HP Update
"{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders  (English) 12
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{910FC2D0-4BBF-08B1-DED9-96615AC9C33A}" = ccc-utility
"{923A7F5A-1E8C-4FBE-8DF6-85940A60A79F}" = Readme
"{96AFFF85-9DBE-BE4A-326E-6F12535D2AA8}" = CCC Help Chinese Standard
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A10D9B03-AABB-47D7-8A30-2FEA97E70BC7}" = Quake Live Mozilla Plugin
"{A195B13E-A5E3-4BAF-A995-7F70F445CD06}" = ScannerCopy
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A96E97134CA649888820BCDE5E300BBD}" = H.264 Decoder
"{AAC389499AEF40428987B3D30CFC76C9}" = MKV Splitter
"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
"{ADD461BD-0409-186A-8056-C1F51B782EDA}" = CCC Help Greek
"{AEF9DC35ADDF4825B049ACBFD1C6EB37}" = AAC Decoder
"{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
"{B3471105-8237-6DC4-C8EF-DD4E71344398}" = CCC Help Dutch
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Plus Web Player
"{B824B5C9-849F-4b9e-9EA7-6FD8CD8116DA}" = CP_Package_Variety2
"{B996AE66-10DB-4ac5-B151-E8B4BFBC42FC}" = BufferChm
"{B9F8DBD5-EFAF-F5FB-B862-33D4FFC6354C}" = Catalyst Control Center HydraVision Full
"{BCF93617-DD69-74B7-FBDC-0B0AEFAE7D43}" = CCC Help Thai
"{BFD5AC8A-5884-4da8-9873-3DF8E3DCCE18}" = 5600Trb
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C151CE54-E7EA-4804-854B-F515368B0798}" = AMD Processor Driver
"{C2F1F96A-057E-5819-B52E-FEA1D1D2933B}" = Acronis True Image Home
"{C506A18C-1469-4678-B094-F4EC9DAE6DB7}" = Scan
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CC7984C5-020D-4944-85A0-58D09D4A8BFB}" = 5600_Help
"{CE24344F-DFD8-40C8-8FD8-C9740B5F25AC}" = Fax
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CFCF9764-6D75-2EAD-D274-45278E48167C}" = CCC Help Japanese
"{D3D79A61-3E3A-7D3D-F094-2614CE007D9F}" = CCC Help Korean
"{D3E434C7-8542-5C5C-FE02-1090E7A1C04A}" = Catalyst Control Center Graphics Full Existing
"{D56B0E27-4A3E-46C9-B5C1-D93D580C099C}" = NVIDIA PhysX v8.10.29
"{D9D93D74-107D-4BD3-87D0-AABCF7C98BD5}" = Catalyst Control Center - Branding
"{E30DFCDA-9CB6-B062-A0DB-B48D295D6545}" = CCC Help Hungarian
"{E3F90083-80D4-4b5a-87C7-E97E12F5516D}" = HPProductAssistant
"{E8AEA11B-E60A-455E-B008-E4E763604612}" = Browser Configuration Utility
"{EA103B64-C0E4-4C0E-A506-751590E1653D}" = SolutionCenter
"{EA14702F-74A1-7A7B-032C-98DEA06F01BE}" = CCC Help German
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F4423F03-A62C-57C2-BF6E-6AC06D27E094}" = CCC Help French
"{F4C2E5F5-2970-45f4-ABD3-C180C4D961C4}" = Status
"{F9D0A12A-1641-A4DB-4649-F7AB1F3A0F59}" = CCC Help Danish
"{FCCDE84B-0154-459E-A8F2-C6B3FA5C1881}" = HydraVision
"{FE64AE29-0883-4C70-8388-DC026019C900}" = HP Image Zone Express
"AC3Filter" = AC3Filter (remove only)
"AC3Filter_is1" = AC3Filter 1.63b
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"All ATI Software" = ATI - Software Uninstall Utility
"ATI Display Driver" = ATI Display Driver
"DivX Plus DirectShow Filters" = DivX Plus DirectShow Filters
"Edraw Max_is1" = Edraw Max 5.1
"ENTERPRISE" = Microsoft Office Enterprise 2007
"FLAC" = FLAC 1.2.1b (remove only)
"Guild Wars" = Guild Wars
"HijackThis" = HijackThis 2.0.2
"HP Imaging Device Functions" = HP Imaging Device Functions 5.3
"HP Solution Center & Imaging Support Tools" = HP Solution Center & Imaging Support Tools 5.3
"ie8" = Windows Internet Explorer 8
"ImgBurn" = ImgBurn
"Java Platform, Enterprise Edition 5 SDK" = Java Platform, Enterprise Edition 5 SDK
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mcafee SecurityCenter" = McAfee SecurityCenter
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.5.6)" = Mozilla Firefox (3.5.6)
"Nero - Burning Rom!UninstallKey" = Nero 6 Enterprise Edition
"Orb" = Orb
"POM-QM for Windows (Version 3)" = POM-QM for Windows (Version 3)
"PunkBusterSvc" = PunkBuster Services
"QSuite_is1" = QSuite 1.0
"VirusScan Online" = McAfee VirusScan
"WinRAR archiver" = WinRAR archiver
 
[color=#E56717]========== Last 10 Event Log Errors ==========[/color]
 
[ Application Events ]
Error - 12/9/2009 10:16:04 AM | Computer Name = HOME | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
 from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
 with error: This network connection does not exist. 
 
Error - 12/9/2009 10:16:05 AM | Computer Name = HOME | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
 from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
 with error: This network connection does not exist. 
 
Error - 12/9/2009 10:16:05 AM | Computer Name = HOME | Source = crypt32 | ID = 131077
Description = Failed auto update retrieval of third-party root certificate from:
 <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/323C118E1BF7B8B65254E2E2100DD6029037F096.crt>
 with error: This network connection does not exist. 
 
Error - 12/9/2009 10:16:05 AM | Computer Name = HOME | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
 from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
 with error: This network connection does not exist. 
 
Error - 12/9/2009 10:16:05 AM | Computer Name = HOME | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
 from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
 with error: This network connection does not exist. 
 
Error - 12/9/2009 10:16:05 AM | Computer Name = HOME | Source = crypt32 | ID = 131077
Description = Failed auto update retrieval of third-party root certificate from:
 <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/323C118E1BF7B8B65254E2E2100DD6029037F096.crt>
 with error: This network connection does not exist. 
 
Error - 12/9/2009 10:16:05 AM | Computer Name = HOME | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
 from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
 with error: This network connection does not exist. 
 
Error - 12/9/2009 10:16:05 AM | Computer Name = HOME | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
 from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
 with error: This network connection does not exist. 
 
Error - 12/9/2009 10:16:05 AM | Computer Name = HOME | Source = crypt32 | ID = 131077
Description = Failed auto update retrieval of third-party root certificate from:
 <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/323C118E1BF7B8B65254E2E2100DD6029037F096.crt>
 with error: This network connection does not exist. 
 
Error - 12/9/2009 10:16:05 AM | Computer Name = HOME | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
 from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
 with error: This network connection does not exist. 
 
[ System Events ]
Error - 12/16/2009 3:04:24 PM | Computer Name = DESKTOP | Source = Srv | ID = 2011
Description = The server's configuration parameter "irpstacksize" is too small for
 the server to use a local device.  Please increase the value of this parameter.
 
Error - 12/16/2009 3:04:24 PM | Computer Name = DESKTOP | Source = Srv | ID = 2011
Description = The server's configuration parameter "irpstacksize" is too small for
 the server to use a local device.  Please increase the value of this parameter.
 
Error - 12/16/2009 3:04:28 PM | Computer Name = DESKTOP | Source = Srv | ID = 2011
Description = The server's configuration parameter "irpstacksize" is too small for
 the server to use a local device.  Please increase the value of this parameter.
 
Error - 12/16/2009 3:04:28 PM | Computer Name = DESKTOP | Source = Srv | ID = 2011
Description = The server's configuration parameter "irpstacksize" is too small for
 the server to use a local device.  Please increase the value of this parameter.
 
Error - 12/16/2009 3:13:49 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
 with arguments ""  in order to run the server:  {1BE1F766-5536-11D1-B726-00C04FB926AF}
 
Error - 12/16/2009 3:15:16 PM | Computer Name = DESKTOP | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
  AmdPPM  Fips
 
Error - 12/16/2009 3:38:42 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
 with arguments ""  in order to run the server:  {1BE1F766-5536-11D1-B726-00C04FB926AF}
 
Error - 12/16/2009 3:41:02 PM | Computer Name = DESKTOP | Source = Service Control Manager | ID = 7023
Description = The Driver Task service terminated with the following error:  %%1114
 
Error - 12/16/2009 8:06:48 PM | Computer Name = DESKTOP | Source = Service Control Manager | ID = 7023
Description = The Driver Task service terminated with the following error:  %%1114
 
Error - 12/16/2009 8:14:37 PM | Computer Name = DESKTOP | Source = Service Control Manager | ID = 7023
Description = The Driver Task service terminated with the following error:  %%1114
 
 
< End of report >

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz
im pretty sure this is a virus... as i tried that winsock fix and it didn't work. I can't get to the microsoft update page. And when i go into my services. Automatic updates is disabled, so is the BITs, and when i start them and restart my computer they are disabled again.

i've also tried other things, like deleting my restore points, and running MBAM in safe mode.

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz
Guess we need to go deeper.

Download the GMER rootkit scan from here: GMER

  1. Unzip it and start GMER.
  2. Click the >>> tab and then click the Scan button.
  3. Once done, click the Copy button.
  4. This will copy the results to your clipboard.
  5. Paste the results in your next reply.
Note:
If you're having problems with running GMER.exe, try it in safe mode. This tools works in safe mode.
You can also try renaming it since some malware blocks GMER.

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz
that program GMER, screws up my computer, i let it run and when it was finished i came back and hit copy but when i tried to open firefox to post the results an error kept coming up. and when i tried to exit the program a bunch of other errors came up. i tried opening task manager and an error came up. i could barely restart my computer... i tried it a second time and it did the same thing.

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz
Can you post a screenshot? is there a red line that shows something is ***hidden***?

If so, there is a confirmed rootkit hiding.

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz
ok i got it to save, heres the log.

GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2009-12-18 23:21:50
Windows 5.1.2600 Service Pack 3
Running: 71ck5qp6.exe; Driver: C:\DOCUME~1\desktop\LOCALS~1\Temp\fxddapoc.sys


---- Kernel code sections - GMER 1.0.15 ----

.text C:\WINDOWS\system32\DRIVERS\ati2mtag.sys section is writeable [0xB571F000, 0x230C27, 0xE8000020]

---- User code sections - GMER 1.0.15 ----

.text C:\WINDOWS\RTHDCPL.EXE[1060] WS2_32.dll!connect 71AB4A07 5 Bytes JMP 10005C5B c:\progra~1\mcafee.com\vso\McVSSkt.dll (McAfee VirusScan Winsock Helper DLL/Networks Associates Technology, Inc)
.text C:\WINDOWS\System32\svchost.exe[1084] ntdll.dll!NtQueryInformationProcess 7C90D7FE 5 Bytes JMP 01E59DD2
.text C:\WINDOWS\System32\svchost.exe[1084] NETAPI32.dll!NetpwPathCanonicalize 5B86A3A9 5 Bytes JMP 01E59D72
.text C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe[1108] WS2_32.dll!connect 71AB4A07 5 Bytes JMP 00C35C5B c:\progra~1\mcafee.com\vso\McVSSkt.dll (McAfee VirusScan Winsock Helper DLL/Networks Associates Technology, Inc)
.text C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe[1152] WS2_32.dll!connect 71AB4A07 5 Bytes JMP 015C5C5B c:\progra~1\mcafee.com\vso\McVSSkt.dll (McAfee VirusScan Winsock Helper DLL/Networks Associates Technology, Inc)
.text C:\WINDOWS\system32\svchost.exe[1160] ntdll.dll!NtQueryInformationProcess 7C90D7FE 5 Bytes JMP 007D9DD2
.text C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe[1176] WS2_32.dll!connect 71AB4A07 5 Bytes JMP 10005C5B c:\progra~1\mcafee.com\vso\McVSSkt.dll (McAfee VirusScan Winsock Helper DLL/Networks Associates Technology, Inc)
.text C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe[1552] WS2_32.dll!connect 71AB4A07 5 Bytes JMP 10005C5B c:\progra~1\mcafee.com\vso\McVSSkt.dll (McAfee VirusScan Winsock Helper DLL/Networks Associates Technology, Inc)
.text C:\Program Files\HP\HP Software Update\HPWuSchd2.exe[1584] WS2_32.dll!connect 71AB4A07 5 Bytes JMP 10005C5B c:\progra~1\mcafee.com\vso\McVSSkt.dll (McAfee VirusScan Winsock Helper DLL/Networks Associates Technology, Inc)
.text C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe[1712] WS2_32.dll!connect 71AB4A07 5 Bytes JMP 02845C5B c:\progra~1\mcafee.com\vso\McVSSkt.dll (McAfee VirusScan Winsock Helper DLL/Networks Associates Technology, Inc)
.text C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe[1828] WS2_32.dll!connect 71AB4A07 5 Bytes JMP 10005C5B c:\progra~1\mcafee.com\vso\McVSSkt.dll (McAfee VirusScan Winsock Helper DLL/Networks Associates Technology, Inc)
.text ...

---- Devices - GMER 1.0.15 ----

AttachedDevice \FileSystem\Ntfs \Ntfs tdrpm251.sys (Acronis Try&Decide Volume Filter Driver/Acronis)
AttachedDevice \FileSystem\Ntfs \Ntfs NaiFiltr.sys
AttachedDevice \Driver\Ftdisk \Device\HarddiskVolume1 tdrpm251.sys (Acronis Try&Decide Volume Filter Driver/Acronis)
AttachedDevice \Driver\Ftdisk \Device\HarddiskVolume1 sr.sys (System Restore Filesystem Filter Driver/Microsoft Corporation)
AttachedDevice \Driver\Ftdisk \Device\HarddiskVolume1 sr.sys (System Restore Filesystem Filter Driver/Microsoft Corporation)
AttachedDevice \Driver\Ftdisk \Device\HarddiskVolume2 tdrpm251.sys (Acronis Try&Decide Volume Filter Driver/Acronis)
AttachedDevice \Driver\Ftdisk \Device\HarddiskVolume2 sr.sys (System Restore Filesystem Filter Driver/Microsoft Corporation)
AttachedDevice \Driver\Ftdisk \Device\HarddiskVolume2 sr.sys (System Restore Filesystem Filter Driver/Microsoft Corporation)
AttachedDevice \Driver\Ftdisk \Device\HarddiskVolume3 tdrpm251.sys (Acronis Try&Decide Volume Filter Driver/Acronis)
AttachedDevice \Driver\Ftdisk \Device\HarddiskVolume3 sr.sys (System Restore Filesystem Filter Driver/Microsoft Corporation)
AttachedDevice \Driver\Ftdisk \Device\HarddiskVolume3 sr.sys (System Restore Filesystem Filter Driver/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz
Hello.

  • Download combofix from here
    Link 1

    1. If you are using Firefox, make sure that your download settings are as follows:

    * Tools->Options->Main tab
    * Set to "Always ask me where to Save the files".

    2. During the download, rename Combofix to Combo-Fix as follows:

    microsoft.com and malwarebytes.com won't load. - Page 2 CF_download_FF

    microsoft.com and malwarebytes.com won't load. - Page 2 CF_download_rename

    3. It is important you rename Combofix during the download, but not after.
    4. Please do not rename Combofix to other names, but only to the one indicated.
    5. Close any open browsers.
    6. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

  • We need to disable your local AV (Anti-virus) before running Combofix.
  • See HERE for how to disable your AV.
  • Double click on ComboFix.exe.
  • Follow the prompts. NOTE:
  • ComboFix will check to see if the Microsoft Windows Recovery Console is installed.
    ***It's strongly recommended to have the Recovery Console installed before doing any malware removal.***

    **Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will automatically proceed with its scan.


  • The Recovery Console provides a recovery/repair mode should a problem occur during a Combofix run.

    microsoft.com and malwarebytes.com won't load. - Page 2 Cf410

  • Allow ComboFix to download the Recovery Console.
  • Accept the End-User License Agreement.
  • The Recovery Console will be installed.
  • You will then get this next prompt that asks if you want to continue the malware scan, select yes

    microsoft.com and malwarebytes.com won't load. - Page 2 Cf510

  • Allow combofix to run
  • Post C:\combofix.txt back here.

    Note:
    Do not mouseclick combofix's window whilst it's running. That may cause it to stall.

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz
the link for combo fix says 404 not found

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz
nvm i went to the website and downloaded it. here's the log:

Code:

ComboFix 09-12-21.02 - desktop 12/22/2009  0:27.1.2 - x86
Microsoft Windows XP Home Edition  5.1.2600.3.1252.1.1033.18.2046.1382 [GMT -5:00]
Running from: c:\documents and settings\desktop\My Documents\Downloads\Combo-Fix.exe
.

(((((((((((((((((((((((((((((((((((((((  Other Deletions  )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\desktop\Application Data\inst.exe
c:\windows\system32\pxeqog.dll

.
(((((((((((((((((((((((((((((((((((((((  Drivers/Services  )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_LTDWXG
-------\Service_ltdwxg


(((((((((((((((((((((((((  Files Created from 2009-11-22 to 2009-12-22  )))))))))))))))))))))))))))))))
.

2009-12-22 00:14 . 2009-12-22 00:14   --------   d-----w-   c:\documents and settings\desktop\Application Data\Sammsoft
2009-12-22 00:13 . 2009-12-22 00:13   --------   d-----w-   c:\program files\Advanced Registry Optimizer
2009-12-20 07:54 . 2009-12-20 07:54   --------   d-----w-   c:\program files\iPod
2009-12-20 07:54 . 2009-12-20 07:55   --------   d-----w-   c:\program files\iTunes
2009-12-20 07:54 . 2009-12-20 07:55   --------   d-----w-   c:\documents and settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-12-20 07:53 . 2009-12-20 07:53   --------   d-----w-   c:\program files\Bonjour
2009-12-20 07:52 . 2009-12-20 07:52   --------   d-----w-   c:\documents and settings\desktop\Local Settings\Application Data\Apple
2009-12-20 07:52 . 2009-12-20 07:52   --------   d-----w-   c:\program files\Apple Software Update
2009-12-20 07:52 . 2009-12-20 07:54   --------   d-----w-   c:\program files\Common Files\Apple
2009-12-20 07:52 . 2009-12-20 07:52   --------   d-----w-   c:\documents and settings\All Users\Application Data\Apple
2009-12-20 07:43 . 2009-12-20 07:57   --------   d-----w-   c:\documents and settings\desktop\Local Settings\Application Data\Apple Computer
2009-12-20 07:43 . 2009-12-20 07:57   --------   d-----w-   c:\documents and settings\desktop\Application Data\Apple Computer
2009-12-20 07:42 . 2009-12-20 07:53   --------   d-----w-   c:\program files\QuickTime
2009-12-20 07:41 . 2009-12-20 07:54   --------   d-----w-   c:\documents and settings\All Users\Application Data\Apple Computer
2009-12-20 07:40 . 2009-12-20 07:40   --------   d-----w-   c:\windows\Downloaded Installations
2009-12-20 04:56 . 2009-12-20 04:56   --------   d-----w-   c:\documents and settings\Owner
2009-12-20 00:38 . 2009-12-20 00:38   --------   d-----w-   c:\documents and settings\desktop\Application Data\Vso
2009-12-20 00:38 . 2009-12-20 00:38   47360   ----a-w-   c:\windows\system32\drivers\pcouffin.sys
2009-12-20 00:38 . 2009-12-20 00:38   47360   ----a-w-   c:\documents and settings\desktop\Application Data\pcouffin.sys
2009-12-19 16:49 . 2009-12-19 16:49   643072   ----a-w-   c:\documents and settings\desktop\Application Data\RipIt4Me\updater\ri4mupdater.exe
2009-12-19 16:48 . 2009-12-19 17:19   --------   d-----w-   c:\documents and settings\desktop\Application Data\RipIt4Me
2009-12-18 03:26 . 2009-12-18 03:26   --------   d-----w-   c:\documents and settings\desktop\Application Data\dvdcss
2009-12-17 02:25 . 2009-12-17 02:25   --------   d-----w-   c:\program files\OTL
2009-12-16 19:14 . 2009-12-16 19:14   4844296   ----a-w-   c:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2009-12-16 18:54 . 2008-04-14 12:00   26624   ----a-w-   c:\documents and settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
2009-12-15 05:31 . 2009-12-15 05:36   69   ----a-w-   c:\documents and settings\desktop\jagex_runescape_preferences2.dat
2009-12-15 05:30 . 2009-12-15 05:40   39   ----a-w-   c:\documents and settings\desktop\jagex_runescape_preferences.dat
2009-12-15 05:30 . 2009-12-15 05:30   --------   d-----w-   c:\windows\.jagex_cache_32
2009-12-15 05:29 . 2009-12-15 05:29   --------   d-----w-   c:\windows\Sun
2009-12-15 05:28 . 2009-12-15 05:28   411368   ----a-w-   c:\windows\system32\deploytk.dll
2009-12-15 05:28 . 2009-12-15 05:28   --------   d-----w-   c:\program files\Java
2009-12-15 05:28 . 2009-12-15 05:28   152576   ----a-w-   c:\documents and settings\desktop\Application Data\Sun\Java\jre1.6.0_17\lzma.dll
2009-12-15 05:27 . 2009-12-15 05:27   79488   ----a-w-   c:\documents and settings\desktop\Application Data\Sun\Java\jre1.6.0_17\gtapi.dll
2009-12-09 01:01 . 2009-12-09 01:01   --------   d-----w-   c:\program files\QSuite
2009-12-08 21:34 . 1998-10-26 17:07   72192   ----a-w-   c:\windows\system32\SSMEDT32.DLL
2009-12-08 21:34 . 1998-05-06 20:59   72192   ----a-w-   c:\windows\system32\ssprn32.dll
2009-12-08 21:34 . 1998-04-24 06:00   368912   ----a-w-   c:\windows\system32\vbar332.dll
2009-12-07 11:23 . 2009-12-20 01:14   --------   d-----w-   c:\documents and settings\All Users\Application Data\DVD Shrink
2009-12-06 14:00 . 2009-12-06 14:00   --------   d-----w-   c:\documents and settings\desktop\Application Data\Image Zone Express
2009-12-04 19:09 . 2009-12-04 19:09   --------   d-----w-   c:\program files\FLAC
2009-12-04 18:24 . 2009-12-04 18:25   --------   d-----w-   c:\documents and settings\desktop\Application Data\AdobeUM
2009-11-30 19:33 . 2009-11-30 19:33   41872   ----a-w-   c:\windows\system32\xfcodec.dll
2009-11-29 05:19 . 2009-11-29 05:20   --------   d-----w-   c:\documents and settings\All Users\Application Data\OrbNetworks
2009-11-29 05:19 . 2009-11-29 05:19   --------   d-----w-   c:\program files\Orb Networks
2009-11-28 16:11 . 2009-11-28 16:11   --------   d-----w-   c:\windows\system32\wbem\Repository
2009-11-28 16:11 . 2009-12-04 18:24   --------   d-----w-   c:\documents and settings\desktop\Local Settings\Application Data\Adobe
2009-11-28 16:11 . 2009-11-28 16:11   --------   d-----w-   c:\documents and settings\desktop\Local Settings\Application Data\NOS
2009-11-27 23:15 . 2009-11-28 16:11   --------   d-----w-   c:\documents and settings\desktop\Local Settings\Application Data\Adobe(2)
2009-11-27 22:24 . 2009-12-04 18:24   --------   d-----w-   c:\program files\Common Files\Adobe
2009-11-27 22:18 . 2009-11-27 22:18   --------   d-----w-   c:\program files\JavaRA
2009-11-27 22:08 . 2009-11-27 22:08   --------   d-----w-   C:\Sun
2009-11-27 20:29 . 2009-11-27 20:29   --------   d-----w-   c:\documents and settings\desktop\Application Data\Malwarebytes
2009-11-27 20:29 . 2009-12-03 21:14   38224   ----a-w-   c:\windows\system32\drivers\mbamswissarmy.sys
2009-11-27 20:29 . 2009-12-03 21:13   19160   ----a-w-   c:\windows\system32\drivers\mbam.sys
2009-11-27 20:29 . 2009-11-27 20:29   --------   d-----w-   c:\documents and settings\All Users\Application Data\Malwarebytes
2009-11-27 05:50 . 2009-11-27 05:50   --------   d-sh--w-   c:\documents and settings\desktop\IECompatCache
2009-11-24 07:39 . 2009-11-24 08:43   363584   ----a-w-   c:\documents and settings\desktop\Application Data\id Software\quakelive\home\baseq3\cgamex86.dll
2009-11-24 07:39 . 2009-11-24 08:43   179264   ----a-w-   c:\documents and settings\desktop\Application Data\id Software\quakelive\home\baseq3\uix86.dll
2009-11-24 07:39 . 2009-11-24 07:39   887856   ----a-w-   c:\documents and settings\desktop\Application Data\id Software\quakelive\home\pb\pbcl.dll
2009-11-24 07:39 . 2009-11-24 07:39   57344   ----a-w-   c:\documents and settings\desktop\Application Data\id Software\quakelive\home\pb\pbag.dll
2009-11-24 07:39 . 2009-11-24 07:39   2407488   ----a-w-   c:\documents and settings\desktop\Application Data\id Software\quakelive\home\baseq3\quakelive.dll
2009-11-24 07:24 . 2009-11-24 07:24   --------   d-----w-   c:\documents and settings\desktop\Application Data\id Software
2009-11-24 07:24 . 2009-11-24 07:24   2373712   ----a-w-   c:\windows\system32\pbsvc.exe
2009-11-24 07:24 . 2009-11-24 07:24   --------   d-----w-   c:\documents and settings\All Users\Application Data\id Software
2009-11-24 05:30 . 2009-12-19 04:50   --------   d-----w-   c:\documents and settings\desktop\Application Data\vlc
2009-11-24 01:23 . 2009-11-24 01:23   --------   d-----w-   c:\documents and settings\LocalService\Application Data\Xfire
2009-11-24 01:23 . 2009-11-24 01:23   159168   ----a-w-   c:\windows\system32\drivers\afcdp.sys
2009-11-24 01:23 . 2009-11-24 01:23   902432   ----a-w-   c:\windows\system32\drivers\tdrpm251.sys
2009-11-24 01:23 . 2009-11-24 01:23   570016   ----a-w-   c:\windows\system32\drivers\timntr.sys
2009-11-24 01:23 . 2009-11-24 01:23   157248   ----a-w-   c:\windows\system32\drivers\snapman.sys
2009-11-24 01:23 . 2009-11-24 01:23   --------   d-----w-   c:\program files\Common Files\Acronis
2009-11-24 01:23 . 2009-11-24 01:23   --------   d-----w-   c:\program files\Acronis
2009-11-23 06:09 . 2009-11-23 06:09   --------   d-----w-   c:\documents and settings\desktop\Application Data\DivX
2009-11-23 03:55 . 2009-11-23 03:55   --------   d-sh--w-   c:\windows\ftpcache
2009-11-22 19:03 . 2004-03-02 21:37   125184   ------w-   c:\windows\system32\drivers\imagesrv.sys
2009-11-22 19:03 . 2004-03-02 21:37   5504   ------w-   c:\windows\system32\drivers\imagedrv.sys
2009-11-22 19:03 . 2009-11-22 19:03   --------   d-----w-   c:\program files\Common Files\Ahead
2009-11-22 19:03 . 2004-07-26 21:16   476320   ------w-   c:\windows\system32\ImagXpr7.dll
2009-11-22 19:03 . 2004-07-26 21:16   471040   ------w-   c:\windows\system32\ImagXRA7.dll
2009-11-22 19:03 . 2004-07-26 21:16   262144   ------w-   c:\windows\system32\ImagXR7.dll
2009-11-22 19:03 . 2004-07-26 21:16   1568768   ------w-   c:\windows\system32\ImagX7.dll
2009-11-22 19:03 . 2001-07-09 15:50   155648   ----a-w-   c:\windows\system32\NeroCheck.exe
2009-11-22 19:03 . 2000-06-26 15:45   106496   ----a-w-   c:\windows\system32\TwnLib20.dll
2009-11-22 19:03 . 2009-11-22 19:03   --------   d-----w-   c:\program files\Ahead
2009-11-22 19:02 . 2009-12-09 22:49   --------   d-----w-   c:\documents and settings\desktop\Application Data\ImgBurn

.
((((((((((((((((((((((((((((((((((((((((  Find3M Report  ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-22 05:30 . 2009-11-19 05:56   16608   ----a-w-   c:\windows\gdrv.sys
2009-12-21 05:30 . 2009-11-19 13:40   --------   d-----w-   c:\documents and settings\All Users\Application Data\Microsoft Help
2009-12-20 07:43 . 2009-11-19 05:56   --------   d--h--w-   c:\program files\InstallShield Installation Information
2009-12-20 07:41 . 2009-11-19 05:56   --------   d-----w-   c:\program files\Common Files\InstallShield
2009-12-18 05:47 . 2009-11-19 06:44   --------   d-----w-   c:\documents and settings\desktop\Application Data\Xfire
2009-12-18 05:44 . 2009-11-19 06:47   138328   ----a-w-   c:\windows\system32\drivers\PnkBstrK.sys
2009-12-18 05:44 . 2009-11-19 06:47   214816   ----a-w-   c:\windows\system32\PnkBstrB.exe
2009-12-16 19:13 . 2009-12-16 19:13   --------   d-----w-   c:\documents and settings\Administrator\Application Data\Malwarebytes
2009-11-21 02:31 . 2009-11-20 17:41   --------   d-----w-   c:\documents and settings\All Users\Application Data\NOS
2009-11-20 21:27 . 2009-11-20 21:24   --------   d-----w-   c:\documents and settings\desktop\Application Data\HpUpdate
2009-11-20 21:27 . 2009-11-19 19:45   --------   d-----w-   c:\program files\HP
2009-11-20 20:33 . 2009-11-20 20:33   625728   ----a-w-   c:\documents and settings\All Users\Application Data\id Software\QuakeLive\npquakezero.dll
2009-11-20 20:31 . 2009-11-20 20:31   2373712   ----a-w-   c:\documents and settings\All Users\Application Data\id Software\QuakeLive\pbsvc.exe
2009-11-20 17:41 . 2009-11-20 17:41   1962544   ----a-w-   c:\documents and settings\All Users\Application Data\NOS\Adobe_Downloads\install_flash_player_ax.exe
2009-11-20 09:15 . 2009-11-19 05:40   76487   ----a-w-   c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-11-20 05:11 . 2009-11-20 05:10   --------   d-----w-   c:\program files\AC3Filter
2009-11-20 05:09 . 2009-11-20 05:09   --------   d-----w-   c:\program files\DivX
2009-11-20 05:09 . 2009-11-20 05:09   --------   d-----w-   c:\program files\Common Files\DivX Shared
2009-11-19 20:25 . 2009-11-19 20:25   --------   d-----w-   c:\program files\2K Games
2009-11-19 19:53 . 2009-11-19 19:44   113040   ----a-w-   c:\windows\hpoins07.dat
2009-11-19 19:50 . 2009-11-19 19:50   --------   d-----w-   c:\documents and settings\All Users\Application Data\HP
2009-11-19 19:49 . 2009-11-19 19:49   --------   d-----w-   c:\program files\Common Files\HP
2009-11-19 19:48 . 2009-11-19 19:48   --------   d-----w-   c:\program files\Common Files\Hewlett-Packard
2009-11-19 19:40 . 2009-11-19 19:40   --------   d-----w-   c:\documents and settings\desktop\Application Data\HP
2009-11-19 19:36 . 2009-11-19 06:12   68456   ----a-w-   c:\documents and settings\desktop\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-11-19 14:00 . 2009-11-19 14:00   --------   d-----w-   c:\program files\Reference Assemblies
2009-11-19 13:44 . 2009-11-19 13:44   --------   d-----w-   c:\program files\Microsoft Works
2009-11-19 13:44 . 2009-11-19 13:44   --------   d-----w-   c:\program files\MSBuild
2009-11-19 13:43 . 2009-11-19 13:43   --------   d-----w-   c:\program files\Microsoft.NET
2009-11-19 13:41 . 2009-11-19 13:41   --------   d-----w-   c:\program files\Microsoft Visual Studio 8
2009-11-19 07:07 . 2009-11-19 07:07   --------   d-sh--w-   c:\documents and settings\All Users\Application Data\SecuROM
2009-11-19 06:47 . 2009-11-19 06:47   75064   ----a-w-   c:\windows\system32\PnkBstrA.exe
2009-11-19 06:44 . 2009-11-19 06:44   --------   d-----w-   c:\documents and settings\NetworkService\Application Data\Xfire
2009-11-19 06:34 . 2009-11-19 06:34   --------   d-----w-   c:\program files\AGEIA Technologies
2009-11-19 06:33 . 2009-11-19 06:33   --------   d-----w-   c:\program files\Common Files\Wise Installation Wizard
2009-11-19 06:28 . 2009-11-19 06:28   --------   d-----w-   c:\documents and settings\desktop\Application Data\Blitware
2009-11-19 06:26 . 2009-11-19 06:26   0   ----a-w-   c:\windows\nsreg.dat
2009-11-19 06:13 . 2009-11-19 06:13   --------   d-----w-   c:\program files\McAfee.com
2009-11-19 06:13 . 2009-11-19 06:13   --------   d-----w-   c:\documents and settings\All Users\Application Data\McAfee.com
2009-11-19 06:12 . 2009-11-19 06:12   --------   d-----w-   c:\documents and settings\desktop\Application Data\ATI
2009-11-19 06:12 . 2009-11-19 06:12   --------   d-----w-   c:\documents and settings\All Users\Application Data\ATI
2009-11-19 06:12 . 2009-11-19 06:12   0   ----a-w-   c:\windows\ativpsrm.bin
2009-11-19 06:10 . 2009-11-19 06:02   --------   d-----w-   c:\program files\ATI Technologies
2009-11-19 06:08 . 2009-11-19 06:08   --------   d-----w-   c:\program files\Common Files\ATI Technologies
2009-11-19 05:59 . 2009-11-19 05:57   --------   d-----w-   c:\program files\Realtek
2009-11-19 05:57 . 2009-11-19 05:57   --------   d-----w-   c:\program files\AMD
2009-11-19 05:57 . 2009-11-19 05:57   --------   d-----w-   c:\documents and settings\desktop\Application Data\InstallShield
2009-11-19 05:56 . 2009-11-19 05:56   --------   d-----w-   c:\program files\Browser Configuration Utility
2009-11-19 05:56 . 2009-11-19 05:56   --------   d-----w-   c:\program files\Gigabyte
2009-11-19 05:41 . 2009-11-19 05:41   --------   d-----w-   c:\program files\microsoft frontpage
2009-11-19 05:37 . 2009-11-19 05:37   21640   ----a-w-   c:\windows\system32\emptyregdb.dat
2009-11-14 00:49 . 2009-11-20 05:09   9464   ------w-   c:\windows\system32\drivers\cdralw2k.sys
2009-11-14 00:49 . 2009-11-20 05:09   9336   ------w-   c:\windows\system32\drivers\cdr4_xp.sys
2009-11-14 00:49 . 2009-11-20 05:09   43528   ------w-   c:\windows\system32\drivers\PxHelp20.sys
2009-11-14 00:49 . 2009-11-20 05:09   129784   ------w-   c:\windows\system32\pxafs.dll
2009-11-14 00:49 . 2009-11-20 05:09   120056   ------w-   c:\windows\system32\pxcpyi64.exe
2009-11-14 00:49 . 2009-11-20 05:09   118520   ------w-   c:\windows\system32\pxinsi64.exe
2009-11-14 00:47 . 2009-11-14 00:47   90112   ----a-w-   c:\windows\system32\dpl100.dll
2009-11-14 00:47 . 2009-11-14 00:47   856064   ----a-w-   c:\windows\system32\divx_xx0c.dll
2009-11-14 00:47 . 2009-11-14 00:47   856064   ----a-w-   c:\windows\system32\divx_xx07.dll
2009-11-14 00:47 . 2009-11-14 00:47   847872   ----a-w-   c:\windows\system32\divx_xx0a.dll
2009-11-14 00:47 . 2009-11-14 00:47   843776   ----a-w-   c:\windows\system32\divx_xx16.dll
2009-11-14 00:47 . 2009-11-14 00:47   839680   ----a-w-   c:\windows\system32\divx_xx11.dll
2009-11-14 00:47 . 2009-11-14 00:47   696320   ----a-w-   c:\windows\system32\DivX.dll
2009-11-12 22:07 . 2009-11-12 22:07   79144   ----a-w-   c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.0.2.25\SetupAdmin.exe
.

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz

Code:


(((((((((((((((((((((((((((((((((((((  Reg Loading Points  ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AROReminder"="c:\program files\Advanced Registry Optimizer\ARO.exe" [2009-03-25 2135168]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2009-01-13 18084864]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-07-15 98304]
"McRegWiz"="c:\progra~1\mcafee.com\agent\mcregwiz.exe" [2003-09-02 135168]
"VSOCheckTask"="c:\progra~1\mcafee.com\vso\mcmnhdlr.exe" [2003-08-08 122880]
"VirusScan Online"="c:\progra~1\mcafee.com\vso\mcvsshld.exe" [2003-08-18 163840]
"MCAgentExe"="c:\progra~1\mcafee.com\agent\mcagent.exe" [2003-08-27 245760]
"MCUpdateExe"="c:\progra~1\mcafee.com\agent\mcupdate.exe" [2003-08-21 180224]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"TrueImageMonitor.exe"="c:\program files\Acronis\TrueImageHome\TrueImageMonitor.exe" [2009-09-12 5048488]
"Acronis Scheduler2 Service"="c:\program files\Common Files\Acronis\Schedule2\schedhlp.exe" [2009-09-12 357384]
"Orb"="c:\program files\Orb Networks\Orb\bin\OrbLauncher.exe" [2009-10-07 573904]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-15 149280]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-11 417792]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-11-12 141600]

c:\documents and settings\desktop\Start Menu\Programs\Startup\
SDK Tray Menu.lnk - c:\sun\SDK\jdk\bin\javaw.exe [2009-11-27 139264]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2005-5-11 282624]

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"f:\\Program Files\\Xfire\\Xfire.exe"=
"f:\\Program Files\\Wolfenstein - Enemy Territory\\ET.exe"=
"h:\\Program Files\\2K Games\\Gearbox Software\\Borderlands\\Binaries\\Borderlands.exe"=
"f:\\Program Files\\BitComet\\BitComet.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqDIA.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Program Files\\Orb Networks\\Orb\\bin\\Orb.exe"=
"c:\\Program Files\\Orb Networks\\Orb\\bin\\OrbLauncher.exe"=
"c:\\Program Files\\Orb Networks\\Orb\\bin\\OrbSetupWizard.exe"=
"c:\\Program Files\\Orb Networks\\Orb\\bin\\OrbControlPanel.exe"=
"c:\\Program Files\\Orb Networks\\Orb\\bin\\OrbStreamerClient.exe"=
"c:\\Program Files\\Gigabyte\\EasySaver\\UpdExe.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"56781:TCP"= 56781:TCP:BitComet 56781 TCP
"56781:UDP"= 56781:UDP:BitComet 56781 UDP
"4885:TCP"= 4885:TCP:rmcgbud

R0 tdrpman251;Acronis Try&Decide and Restore Points filter (build 251);c:\windows\system32\drivers\tdrpm251.sys [11/23/2009 8:23 PM 902432]
R2 afcdpsrv;Acronis Nonstop Backup service;c:\program files\Common Files\Acronis\CDP\afcdpsrv.exe [11/23/2009 8:23 PM 2326920]
R2 ES lite Service;ES lite Service for program management.;c:\program files\Gigabyte\EasySaver\essvr.exe [11/19/2009 12:56 AM 68136]
R3 afcdp;afcdp;c:\windows\system32\drivers\afcdp.sys [11/23/2009 8:23 PM 159168]
R3 NaiFiltr;NaiFiltr;c:\windows\system32\drivers\NaiFiltr.sys [11/19/2009 1:13 AM 23296]
.
------- Supplementary Scan -------
.
uStart Page = hxxp://netmail.verizon.net/
uInternet Settings,ProxyOverride = *.local
IE: &D&ownload &with BitComet - f:\program files\BitComet\BitComet.exe/AddLink.htm
IE: &D&ownload all video with BitComet - f:\program files\BitComet\BitComet.exe/AddVideo.htm
IE: &D&ownload all with BitComet - f:\program files\BitComet\BitComet.exe/AddAllLink.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\desktop\Application Data\Mozilla\Firefox\Profiles\teufqk9d.default\
FF - plugin: c:\documents and settings\All Users\Application Data\id Software\QuakeLive\npquakezero.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-22 00:30
Windows 5.1.2600 Service Pack 3 NTFS

scanning hȋdden processes ... 

scanning hȋdden autostart entries ...

scanning hȋdden files ... 

scan completed successfully
hȋdden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(720)
c:\windows\system32\Ati2evxx.dll

- - - - - - - > 'explorer.exe'(3524)
c:\windows\system32\WININET.dll
c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
c:\progra~1\mcafee.com\vso\McVSSkt.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Common Files\Acronis\Schedule2\schedul2.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\progra~1\mcafee.com\vso\mcvsrte.exe
c:\windows\system32\HPZipm12.exe
c:\windows\system32\PnkBstrA.exe
c:\progra~1\mcafee.com\vso\mcshield.exe
c:\windows\system32\wscntfy.exe
c:\windows\RTHDCPL.EXE
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
c:\program files\Orb Networks\Orb\bin\Orb.exe
c:\program files\HP\Digital Imaging\bin\hpqSTE08.exe
c:\program files\iPod\bin\iPodService.exe
c:\program files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
.
**************************************************************************
.
Completion time: 2009-12-22  00:32:05 - machine was rebooted
ComboFix-quarantined-files.txt  2009-12-22 05:32

Pre-Run: 44,847,263,744 bytes free
Post-Run: 45,538,062,336 bytes free

WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect /usepmtimer

- - End Of File - - 1EE51D69CE6673159C9DB3278D52DE4C

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz

  1. Close any open browsers.
  2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
  3. Open notepad and copy/paste the text in the quotebox below into it:

    File::
    c:\windows\bk23567.dat

  4. Save this as CFScript.txt, in the same location as ComboFix.exe

    microsoft.com and malwarebytes.com won't load. - Page 2 Cfscriptb4i

  5. Referring to the picture above, drag CFScript into ComboFix.exe
  6. When finished, it shall produce a log for you at C:\ComboFix.txt
  7. Please post the contents of the log in your next reply.

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz
here it is:

Code:

ComboFix 09-12-21.02 - desktop 12/22/2009  13:11:48.2.2 - x86
Microsoft Windows XP Home Edition  5.1.2600.3.1252.1.1033.18.2046.1672 [GMT -5:00]
Running from: c:\documents and settings\desktop\My Documents\Downloads\Combo-Fix.exe
Command switches used :: c:\documents and settings\desktop\My Documents\Downloads\CFScript.txt

FILE ::
"c:\windows\bk23567.dat"
.

(((((((((((((((((((((((((  Files Created from 2009-11-22 to 2009-12-22  )))))))))))))))))))))))))))))))
.

2009-12-22 05:53 . 2009-12-22 05:53   691696   ----a-w-   c:\windows\system32\drivers\sptd.sys
2009-12-22 05:51 . 2009-12-22 06:02   --------   d-----w-   c:\documents and settings\desktop\Application Data\DAEMON Tools Pro
2009-12-22 05:51 . 2009-12-22 05:52   --------   d-----w-   c:\documents and settings\All Users\Application Data\DAEMON Tools Pro
2009-12-22 05:37 . 2009-12-22 05:37   --------   d-----w-   c:\program files\MSXML 4.0
2009-12-20 07:54 . 2009-12-20 07:54   --------   d-----w-   c:\program files\iPod
2009-12-20 07:54 . 2009-12-20 07:55   --------   d-----w-   c:\program files\iTunes
2009-12-20 07:54 . 2009-12-20 07:55   --------   d-----w-   c:\documents and settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-12-20 07:53 . 2009-12-20 07:53   --------   d-----w-   c:\program files\Bonjour
2009-12-20 07:52 . 2009-12-20 07:52   --------   d-----w-   c:\documents and settings\desktop\Local Settings\Application Data\Apple
2009-12-20 07:52 . 2009-12-20 07:52   --------   d-----w-   c:\program files\Apple Software Update
2009-12-20 07:52 . 2009-12-20 07:54   --------   d-----w-   c:\program files\Common Files\Apple
2009-12-20 07:52 . 2009-12-20 07:52   --------   d-----w-   c:\documents and settings\All Users\Application Data\Apple
2009-12-20 07:43 . 2009-12-20 07:57   --------   d-----w-   c:\documents and settings\desktop\Local Settings\Application Data\Apple Computer
2009-12-20 07:43 . 2009-12-20 07:57   --------   d-----w-   c:\documents and settings\desktop\Application Data\Apple Computer
2009-12-20 07:42 . 2009-12-20 07:53   --------   d-----w-   c:\program files\QuickTime
2009-12-20 07:41 . 2009-12-20 07:54   --------   d-----w-   c:\documents and settings\All Users\Application Data\Apple Computer
2009-12-20 07:40 . 2009-12-20 07:40   --------   d-----w-   c:\windows\Downloaded Installations
2009-12-20 04:56 . 2009-12-20 04:56   --------   d-----w-   c:\documents and settings\Owner
2009-12-20 00:38 . 2009-12-20 00:38   --------   d-----w-   c:\documents and settings\desktop\Application Data\Vso
2009-12-20 00:38 . 2009-12-20 00:38   47360   ----a-w-   c:\windows\system32\drivers\pcouffin.sys
2009-12-20 00:38 . 2009-12-20 00:38   47360   ----a-w-   c:\documents and settings\desktop\Application Data\pcouffin.sys
2009-12-19 16:49 . 2009-12-19 16:49   643072   ----a-w-   c:\documents and settings\desktop\Application Data\RipIt4Me\updater\ri4mupdater.exe
2009-12-19 16:48 . 2009-12-19 17:19   --------   d-----w-   c:\documents and settings\desktop\Application Data\RipIt4Me
2009-12-18 03:26 . 2009-12-18 03:26   --------   d-----w-   c:\documents and settings\desktop\Application Data\dvdcss
2009-12-17 02:25 . 2009-12-17 02:25   --------   d-----w-   c:\program files\OTL
2009-12-16 19:14 . 2009-12-16 19:14   4844296   ----a-w-   c:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2009-12-16 18:54 . 2008-04-14 12:00   26624   ----a-w-   c:\documents and settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
2009-12-15 05:31 . 2009-12-15 05:36   69   ----a-w-   c:\documents and settings\desktop\jagex_runescape_preferences2.dat
2009-12-15 05:30 . 2009-12-15 05:40   39   ----a-w-   c:\documents and settings\desktop\jagex_runescape_preferences.dat
2009-12-15 05:30 . 2009-12-15 05:30   --------   d-----w-   c:\windows\.jagex_cache_32
2009-12-15 05:29 . 2009-12-15 05:29   --------   d-----w-   c:\windows\Sun
2009-12-15 05:28 . 2009-12-15 05:28   411368   ----a-w-   c:\windows\system32\deploytk.dll
2009-12-15 05:28 . 2009-12-15 05:28   --------   d-----w-   c:\program files\Java
2009-12-15 05:28 . 2009-12-15 05:28   152576   ----a-w-   c:\documents and settings\desktop\Application Data\Sun\Java\jre1.6.0_17\lzma.dll
2009-12-15 05:27 . 2009-12-15 05:27   79488   ----a-w-   c:\documents and settings\desktop\Application Data\Sun\Java\jre1.6.0_17\gtapi.dll
2009-12-09 01:01 . 2009-12-09 01:01   --------   d-----w-   c:\program files\QSuite
2009-12-08 21:34 . 1998-10-26 17:07   72192   ----a-w-   c:\windows\system32\SSMEDT32.DLL
2009-12-08 21:34 . 1998-05-06 20:59   72192   ----a-w-   c:\windows\system32\ssprn32.dll
2009-12-08 21:34 . 1998-04-24 06:00   368912   ----a-w-   c:\windows\system32\vbar332.dll
2009-12-07 11:23 . 2009-12-20 01:14   --------   d-----w-   c:\documents and settings\All Users\Application Data\DVD Shrink
2009-12-06 14:00 . 2009-12-06 14:00   --------   d-----w-   c:\documents and settings\desktop\Application Data\Image Zone Express
2009-12-04 19:09 . 2009-12-04 19:09   --------   d-----w-   c:\program files\FLAC
2009-12-04 18:24 . 2009-12-04 18:25   --------   d-----w-   c:\documents and settings\desktop\Application Data\AdobeUM
2009-11-30 19:33 . 2009-11-30 19:33   41872   ----a-w-   c:\windows\system32\xfcodec.dll
2009-11-29 05:19 . 2009-11-29 05:20   --------   d-----w-   c:\documents and settings\All Users\Application Data\OrbNetworks
2009-11-29 05:19 . 2009-11-29 05:19   --------   d-----w-   c:\program files\Orb Networks
2009-11-28 16:11 . 2009-11-28 16:11   --------   d-----w-   c:\windows\system32\wbem\Repository
2009-11-28 16:11 . 2009-12-04 18:24   --------   d-----w-   c:\documents and settings\desktop\Local Settings\Application Data\Adobe
2009-11-28 16:11 . 2009-11-28 16:11   --------   d-----w-   c:\documents and settings\desktop\Local Settings\Application Data\NOS
2009-11-27 23:15 . 2009-11-28 16:11   --------   d-----w-   c:\documents and settings\desktop\Local Settings\Application Data\Adobe(2)
2009-11-27 22:24 . 2009-12-04 18:24   --------   d-----w-   c:\program files\Common Files\Adobe
2009-11-27 22:18 . 2009-11-27 22:18   --------   d-----w-   c:\program files\JavaRA
2009-11-27 22:08 . 2009-11-27 22:08   --------   d-----w-   C:\Sun
2009-11-27 20:29 . 2009-11-27 20:29   --------   d-----w-   c:\documents and settings\desktop\Application Data\Malwarebytes
2009-11-27 20:29 . 2009-12-03 21:14   38224   ----a-w-   c:\windows\system32\drivers\mbamswissarmy.sys
2009-11-27 20:29 . 2009-12-03 21:13   19160   ----a-w-   c:\windows\system32\drivers\mbam.sys
2009-11-27 20:29 . 2009-11-27 20:29   --------   d-----w-   c:\documents and settings\All Users\Application Data\Malwarebytes
2009-11-27 05:50 . 2009-11-27 05:50   --------   d-sh--w-   c:\documents and settings\desktop\IECompatCache
2009-11-24 07:39 . 2009-11-24 08:43   363584   ----a-w-   c:\documents and settings\desktop\Application Data\id Software\quakelive\home\baseq3\cgamex86.dll
2009-11-24 07:39 . 2009-11-24 08:43   179264   ----a-w-   c:\documents and settings\desktop\Application Data\id Software\quakelive\home\baseq3\uix86.dll
2009-11-24 07:39 . 2009-11-24 07:39   887856   ----a-w-   c:\documents and settings\desktop\Application Data\id Software\quakelive\home\pb\pbcl.dll
2009-11-24 07:39 . 2009-11-24 07:39   57344   ----a-w-   c:\documents and settings\desktop\Application Data\id Software\quakelive\home\pb\pbag.dll
2009-11-24 07:39 . 2009-11-24 07:39   2407488   ----a-w-   c:\documents and settings\desktop\Application Data\id Software\quakelive\home\baseq3\quakelive.dll
2009-11-24 07:24 . 2009-11-24 07:24   --------   d-----w-   c:\documents and settings\desktop\Application Data\id Software
2009-11-24 07:24 . 2009-11-24 07:24   2373712   ----a-w-   c:\windows\system32\pbsvc.exe
2009-11-24 07:24 . 2009-11-24 07:24   --------   d-----w-   c:\documents and settings\All Users\Application Data\id Software
2009-11-24 05:30 . 2009-12-19 04:50   --------   d-----w-   c:\documents and settings\desktop\Application Data\vlc
2009-11-24 01:23 . 2009-11-24 01:23   --------   d-----w-   c:\documents and settings\LocalService\Application Data\Xfire
2009-11-24 01:23 . 2009-11-24 01:23   159168   ----a-w-   c:\windows\system32\drivers\afcdp.sys
2009-11-24 01:23 . 2009-11-24 01:23   902432   ----a-w-   c:\windows\system32\drivers\tdrpm251.sys
2009-11-24 01:23 . 2009-11-24 01:23   570016   ----a-w-   c:\windows\system32\drivers\timntr.sys
2009-11-24 01:23 . 2009-11-24 01:23   157248   ----a-w-   c:\windows\system32\drivers\snapman.sys
2009-11-24 01:23 . 2009-11-24 01:23   --------   d-----w-   c:\program files\Common Files\Acronis
2009-11-24 01:23 . 2009-11-24 01:23   --------   d-----w-   c:\program files\Acronis
2009-11-23 06:09 . 2009-11-23 06:09   --------   d-----w-   c:\documents and settings\desktop\Application Data\DivX
2009-11-23 03:55 . 2009-11-23 03:55   --------   d-sh--w-   c:\windows\ftpcache
2009-11-22 19:03 . 2004-03-02 21:37   125184   ------w-   c:\windows\system32\drivers\imagesrv.sys
2009-11-22 19:03 . 2004-03-02 21:37   5504   ------w-   c:\windows\system32\drivers\imagedrv.sys
2009-11-22 19:03 . 2009-11-22 19:03   --------   d-----w-   c:\program files\Common Files\Ahead
2009-11-22 19:03 . 2004-07-26 21:16   476320   ------w-   c:\windows\system32\ImagXpr7.dll
2009-11-22 19:03 . 2004-07-26 21:16   471040   ------w-   c:\windows\system32\ImagXRA7.dll
2009-11-22 19:03 . 2004-07-26 21:16   262144   ------w-   c:\windows\system32\ImagXR7.dll
2009-11-22 19:03 . 2004-07-26 21:16   1568768   ------w-   c:\windows\system32\ImagX7.dll
2009-11-22 19:03 . 2001-07-09 15:50   155648   ----a-w-   c:\windows\system32\NeroCheck.exe
2009-11-22 19:03 . 2000-06-26 15:45   106496   ----a-w-   c:\windows\system32\TwnLib20.dll
2009-11-22 19:03 . 2009-11-22 19:03   --------   d-----w-   c:\program files\Ahead
2009-11-22 19:02 . 2009-12-09 22:49   --------   d-----w-   c:\documents and settings\desktop\Application Data\ImgBurn

.
((((((((((((((((((((((((((((((((((((((((  Find3M Report  ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-22 18:10 . 2009-11-19 05:56   16608   ----a-w-   c:\windows\gdrv.sys
2009-12-21 05:30 . 2009-11-19 13:40   --------   d-----w-   c:\documents and settings\All Users\Application Data\Microsoft Help
2009-12-20 07:43 . 2009-11-19 05:56   --------   d--h--w-   c:\program files\InstallShield Installation Information
2009-12-20 07:41 . 2009-11-19 05:56   --------   d-----w-   c:\program files\Common Files\InstallShield
2009-12-18 05:47 . 2009-11-19 06:44   --------   d-----w-   c:\documents and settings\desktop\Application Data\Xfire
2009-12-18 05:44 . 2009-11-19 06:47   138328   ----a-w-   c:\windows\system32\drivers\PnkBstrK.sys
2009-12-18 05:44 . 2009-11-19 06:47   214816   ----a-w-   c:\windows\system32\PnkBstrB.exe
2009-12-16 19:13 . 2009-12-16 19:13   --------   d-----w-   c:\documents and settings\Administrator\Application Data\Malwarebytes
2009-11-21 02:31 . 2009-11-20 17:41   --------   d-----w-   c:\documents and settings\All Users\Application Data\NOS
2009-11-20 21:27 . 2009-11-20 21:24   --------   d-----w-   c:\documents and settings\desktop\Application Data\HpUpdate
2009-11-20 21:27 . 2009-11-19 19:45   --------   d-----w-   c:\program files\HP
2009-11-20 20:33 . 2009-11-20 20:33   625728   ----a-w-   c:\documents and settings\All Users\Application Data\id Software\QuakeLive\npquakezero.dll
2009-11-20 20:31 . 2009-11-20 20:31   2373712   ----a-w-   c:\documents and settings\All Users\Application Data\id Software\QuakeLive\pbsvc.exe
2009-11-20 17:41 . 2009-11-20 17:41   1962544   ----a-w-   c:\documents and settings\All Users\Application Data\NOS\Adobe_Downloads\install_flash_player_ax.exe
2009-11-20 09:15 . 2009-11-19 05:40   76487   ----a-w-   c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-11-20 05:11 . 2009-11-20 05:10   --------   d-----w-   c:\program files\AC3Filter
2009-11-20 05:09 . 2009-11-20 05:09   --------   d-----w-   c:\program files\DivX
2009-11-20 05:09 . 2009-11-20 05:09   --------   d-----w-   c:\program files\Common Files\DivX Shared
2009-11-19 20:25 . 2009-11-19 20:25   --------   d-----w-   c:\program files\2K Games
2009-11-19 19:53 . 2009-11-19 19:44   113040   ----a-w-   c:\windows\hpoins07.dat
2009-11-19 19:50 . 2009-11-19 19:50   --------   d-----w-   c:\documents and settings\All Users\Application Data\HP
2009-11-19 19:49 . 2009-11-19 19:49   --------   d-----w-   c:\program files\Common Files\HP
2009-11-19 19:48 . 2009-11-19 19:48   --------   d-----w-   c:\program files\Common Files\Hewlett-Packard
2009-11-19 19:40 . 2009-11-19 19:40   --------   d-----w-   c:\documents and settings\desktop\Application Data\HP
2009-11-19 19:36 . 2009-11-19 06:12   68456   ----a-w-   c:\documents and settings\desktop\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-11-19 14:00 . 2009-11-19 14:00   --------   d-----w-   c:\program files\Reference Assemblies
2009-11-19 13:44 . 2009-11-19 13:44   --------   d-----w-   c:\program files\Microsoft Works
2009-11-19 13:44 . 2009-11-19 13:44   --------   d-----w-   c:\program files\MSBuild
2009-11-19 13:43 . 2009-11-19 13:43   --------   d-----w-   c:\program files\Microsoft.NET
2009-11-19 13:41 . 2009-11-19 13:41   --------   d-----w-   c:\program files\Microsoft Visual Studio 8
2009-11-19 07:07 . 2009-11-19 07:07   --------   d-sh--w-   c:\documents and settings\All Users\Application Data\SecuROM
2009-11-19 06:47 . 2009-11-19 06:47   75064   ----a-w-   c:\windows\system32\PnkBstrA.exe
2009-11-19 06:44 . 2009-11-19 06:44   --------   d-----w-   c:\documents and settings\NetworkService\Application Data\Xfire
2009-11-19 06:34 . 2009-11-19 06:34   --------   d-----w-   c:\program files\AGEIA Technologies
2009-11-19 06:33 . 2009-11-19 06:33   --------   d-----w-   c:\program files\Common Files\Wise Installation Wizard
2009-11-19 06:28 . 2009-11-19 06:28   --------   d-----w-   c:\documents and settings\desktop\Application Data\Blitware
2009-11-19 06:26 . 2009-11-19 06:26   0   ----a-w-   c:\windows\nsreg.dat
2009-11-19 06:13 . 2009-11-19 06:13   --------   d-----w-   c:\program files\McAfee.com
2009-11-19 06:13 . 2009-11-19 06:13   --------   d-----w-   c:\documents and settings\All Users\Application Data\McAfee.com
2009-11-19 06:12 . 2009-11-19 06:12   --------   d-----w-   c:\documents and settings\desktop\Application Data\ATI
2009-11-19 06:12 . 2009-11-19 06:12   --------   d-----w-   c:\documents and settings\All Users\Application Data\ATI
2009-11-19 06:12 . 2009-11-19 06:12   0   ----a-w-   c:\windows\ativpsrm.bin
2009-11-19 06:10 . 2009-11-19 06:02   --------   d-----w-   c:\program files\ATI Technologies
2009-11-19 06:08 . 2009-11-19 06:08   --------   d-----w-   c:\program files\Common Files\ATI Technologies
2009-11-19 05:59 . 2009-11-19 05:57   --------   d-----w-   c:\program files\Realtek
2009-11-19 05:57 . 2009-11-19 05:57   --------   d-----w-   c:\program files\AMD
2009-11-19 05:57 . 2009-11-19 05:57   --------   d-----w-   c:\documents and settings\desktop\Application Data\InstallShield
2009-11-19 05:56 . 2009-11-19 05:56   --------   d-----w-   c:\program files\Browser Configuration Utility
2009-11-19 05:56 . 2009-11-19 05:56   --------   d-----w-   c:\program files\Gigabyte
2009-11-19 05:41 . 2009-11-19 05:41   --------   d-----w-   c:\program files\microsoft frontpage
2009-11-19 05:37 . 2009-11-19 05:37   21640   ----a-w-   c:\windows\system32\emptyregdb.dat
2009-11-14 00:49 . 2009-11-20 05:09   9464   ------w-   c:\windows\system32\drivers\cdralw2k.sys
2009-11-14 00:49 . 2009-11-20 05:09   9336   ------w-   c:\windows\system32\drivers\cdr4_xp.sys
2009-11-14 00:49 . 2009-11-20 05:09   43528   ------w-   c:\windows\system32\drivers\PxHelp20.sys
2009-11-14 00:49 . 2009-11-20 05:09   129784   ------w-   c:\windows\system32\pxafs.dll
2009-11-14 00:49 . 2009-11-20 05:09   120056   ------w-   c:\windows\system32\pxcpyi64.exe
2009-11-14 00:49 . 2009-11-20 05:09   118520   ------w-   c:\windows\system32\pxinsi64.exe
2009-11-14 00:47 . 2009-11-14 00:47   90112   ----a-w-   c:\windows\system32\dpl100.dll
2009-11-14 00:47 . 2009-11-14 00:47   856064   ----a-w-   c:\windows\system32\divx_xx0c.dll
2009-11-14 00:47 . 2009-11-14 00:47   856064   ----a-w-   c:\windows\system32\divx_xx07.dll
2009-11-14 00:47 . 2009-11-14 00:47   847872   ----a-w-   c:\windows\system32\divx_xx0a.dll
2009-11-14 00:47 . 2009-11-14 00:47   843776   ----a-w-   c:\windows\system32\divx_xx16.dll
2009-11-14 00:47 . 2009-11-14 00:47   839680   ----a-w-   c:\windows\system32\divx_xx11.dll
2009-11-14 00:47 . 2009-11-14 00:47   696320   ----a-w-   c:\windows\system32\DivX.dll
2009-11-12 22:07 . 2009-11-12 22:07   79144   ----a-w-   c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.0.2.25\SetupAdmin.exe
2009-10-29 07:45 . 2008-04-14 12:00   916480   ----a-w-   c:\windows\system32\wininet.dll
2009-10-21 05:38 . 2008-04-14 12:00   75776   ----a-w-   c:\windows\system32\strmfilt.dll
2009-10-21 05:38 . 2008-04-14 12:00   25088   ----a-w-   c:\windows\system32\httpapi.dll
2009-10-20 16:20 . 2008-04-14 12:00   265728   ----a-w-   c:\windows\system32\drivers\http.sys
2009-10-13 10:30 . 2008-04-14 12:00   270336   ----a-w-   c:\windows\system32\oakley.dll
2009-10-12 13:38 . 2008-04-14 12:00   149504   ----a-w-   c:\windows\system32\rastls.dll
2009-10-12 13:38 . 2008-04-14 12:00   79872   ----a-w-   c:\windows\system32\raschap.dll
.

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz

Code:

(((((((((((((((((((((((((((((  SnapShot@2009-12-22_05.30.41  )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-09-30 21:45 . 2008-09-30 21:45   91656              c:\windows\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.1.0_x-ww_2a41bceb\msxml4r.dll
+ 2009-12-22 18:10 . 2009-12-22 18:10   16384              c:\windows\Temp\Perflib_Perfdata_750.dat
+ 2009-12-22 18:10 . 2009-12-22 18:10   16384              c:\windows\Temp\Perflib_Perfdata_738.dat
+ 2008-04-14 12:00 . 2009-10-28 15:07   46080              c:\windows\system32\tzchange.exe
- 2008-04-14 12:00 . 2009-07-14 11:03   46080              c:\windows\system32\tzchange.exe
- 2008-04-14 12:00 . 2009-12-20 07:18   67516              c:\windows\system32\perfc009.dat
+ 2008-04-14 12:00 . 2009-12-22 18:14   67516              c:\windows\system32\perfc009.dat
- 2009-03-08 09:31 . 2009-08-29 08:08   55296              c:\windows\system32\msfeedsbs.dll
+ 2009-03-08 09:31 . 2009-10-29 07:45   55296              c:\windows\system32\msfeedsbs.dll
- 2008-04-14 12:00 . 2009-08-29 08:08   25600              c:\windows\system32\jsproxy.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   25600              c:\windows\system32\jsproxy.dll
- 2009-11-19 08:28 . 2009-08-29 08:08   12800              c:\windows\system32\dllcache\xpshims.dll
+ 2009-11-19 08:28 . 2009-10-29 07:45   12800              c:\windows\system32\dllcache\xpshims.dll
+ 2008-04-14 12:00 . 2009-10-21 05:38   75776              c:\windows\system32\dllcache\strmfilt.dll
- 2008-04-14 12:00 . 2008-04-14 12:00   75776              c:\windows\system32\dllcache\strmfilt.dll
+ 2008-04-14 12:00 . 2009-10-12 13:38   79872              c:\windows\system32\dllcache\raschap.dll
- 2008-04-14 12:00 . 2008-04-14 12:00   79872              c:\windows\system32\dllcache\raschap.dll
- 2009-11-19 08:28 . 2009-08-29 08:08   55296              c:\windows\system32\dllcache\msfeedsbs.dll
+ 2009-11-19 08:28 . 2009-10-29 07:45   55296              c:\windows\system32\dllcache\msfeedsbs.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   25600              c:\windows\system32\dllcache\jsproxy.dll
- 2008-04-14 12:00 . 2009-08-29 08:08   25600              c:\windows\system32\dllcache\jsproxy.dll
+ 2008-04-14 12:00 . 2009-10-21 05:38   25088              c:\windows\system32\dllcache\httpapi.dll
+ 2009-12-22 05:37 . 2009-12-22 05:37   32768              c:\windows\Installer\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}\icon.exe
+ 2009-12-22 05:39 . 2009-08-29 08:08   12800              c:\windows\ie8updates\KB976325-IE8\xpshims.dll
+ 2009-12-22 05:39 . 2009-08-29 08:08   55296              c:\windows\ie8updates\KB976325-IE8\msfeedsbs.dll
+ 2009-12-22 05:39 . 2009-08-29 08:08   25600              c:\windows\ie8updates\KB976325-IE8\jsproxy.dll
+ 2009-12-22 05:44 . 2009-12-22 05:44   60928              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\b4a9e413d5cd6d6ec2d50aa05381e293\UIAutomationProvider.ni.dll
+ 2009-12-22 06:20 . 2009-12-22 06:20   37888              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\8acb476a0d4ee17a12881e17ae74a6af\System.Windows.Presentation.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   36864              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\4b87ca3482a3c0ee733e028ecee7de65\System.Web.DynamicData.Design.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   94208              c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\a0c71055364bd356971791284c3fb910\System.ComponentModel.DataAnnotations.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   82944              c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\f9a75bbdc2ce7db578b5977766a09b99\System.AddIn.Contract.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   47104              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\3dd0f86c966c75755d62eab8ddf0634c\PresentationFontCache.ni.exe
+ 2009-12-22 05:43 . 2009-12-22 05:43   39424              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\034d081fe294bab1ee1ecc98c1181424\PresentationCFFRasterizer.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   55296              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\f2673aec397c52796aef05bb9d2668df\Microsoft.Vsa.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   65024              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\d513fe1a81c441e7656a9b062cff4e9f\Microsoft.Build.Framework.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   74752              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\c5d504724d7f351b1d034615dbb72a2a\Microsoft.Build.Framework.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   14336              c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\a664ccab020f93f1d533919f57131190\dfsvc.ni.exe
+ 2009-12-22 06:18 . 2009-12-22 06:18   25600              c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\e63d6d26b8a664cfdfbd4ad75e03c14d\Accessibility.ni.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   77824              c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   77824              c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   81920              c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   81920              c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   81920              c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   81920              c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   32768              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   32768              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   12800              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   12800              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   28672              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   28672              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   77824              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   77824              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   36864              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   36864              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   77824              c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   77824              c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   13312              c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   13312              c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   10752              c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   10752              c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   72192              c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   72192              c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   69120              c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   69120              c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   8192              c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   8192              c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   7168              c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   7168              c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   5632              c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   5632              c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   6656              c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   6656              c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   8192              c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   8192              c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   113664              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   113664              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   258048              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   258048              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2008-04-14 12:00 . 2009-08-25 09:17   354816              c:\windows\system32\winhttp.dll
+ 2008-04-14 12:00 . 2009-12-22 18:14   432686              c:\windows\system32\perfh009.dat
- 2008-04-14 12:00 . 2009-12-20 07:18   432686              c:\windows\system32\perfh009.dat
+ 2008-04-14 12:00 . 2009-10-29 07:45   206848              c:\windows\system32\occache.dll
- 2008-04-14 12:00 . 2009-08-29 08:08   206848              c:\windows\system32\occache.dll
- 2009-03-08 09:32 . 2009-08-29 08:08   594432              c:\windows\system32\msfeeds.dll
+ 2009-03-08 09:32 . 2009-10-29 07:45   594432              c:\windows\system32\msfeeds.dll
+ 2008-04-14 12:00 . 2009-06-22 06:44   726528              c:\windows\system32\jscript.dll
- 2008-04-14 12:00 . 2009-03-08 09:33   726528              c:\windows\system32\jscript.dll
- 2008-04-14 12:00 . 2009-08-29 08:08   184320              c:\windows\system32\iepeers.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   184320              c:\windows\system32\iepeers.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   387584              c:\windows\system32\iedkcs32.dll
- 2008-04-14 12:00 . 2009-08-29 08:08   387584              c:\windows\system32\iedkcs32.dll
+ 2008-04-14 12:00 . 2009-10-28 14:40   173056              c:\windows\system32\ie4uinit.exe
- 2008-04-14 12:00 . 2009-08-28 10:35   173056              c:\windows\system32\ie4uinit.exe
- 2008-04-14 12:00 . 2009-08-29 08:08   916480              c:\windows\system32\dllcache\wininet.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   916480              c:\windows\system32\dllcache\wininet.dll
+ 2008-04-14 12:00 . 2009-08-25 09:17   354816              c:\windows\system32\dllcache\winhttp.dll
+ 2008-04-14 12:00 . 2009-10-12 13:38   149504              c:\windows\system32\dllcache\rastls.dll
- 2008-04-14 12:00 . 2009-08-29 08:08   206848              c:\windows\system32\dllcache\occache.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   206848              c:\windows\system32\dllcache\occache.dll
+ 2008-04-14 12:00 . 2009-10-13 10:30   270336              c:\windows\system32\dllcache\oakley.dll
- 2008-04-14 12:00 . 2008-04-14 12:00   270336              c:\windows\system32\dllcache\oakley.dll
+ 2009-11-19 08:28 . 2009-10-29 07:45   594432              c:\windows\system32\dllcache\msfeeds.dll
- 2009-11-19 08:28 . 2009-08-29 08:08   594432              c:\windows\system32\dllcache\msfeeds.dll
- 2008-04-14 12:00 . 2009-03-08 09:33   726528              c:\windows\system32\dllcache\jscript.dll
+ 2008-04-14 12:00 . 2009-06-22 06:44   726528              c:\windows\system32\dllcache\jscript.dll
+ 2009-11-19 08:28 . 2009-10-29 07:45   246272              c:\windows\system32\dllcache\ieproxy.dll
- 2009-11-19 08:28 . 2009-08-29 08:08   246272              c:\windows\system32\dllcache\ieproxy.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   184320              c:\windows\system32\dllcache\iepeers.dll
- 2008-04-14 12:00 . 2009-08-29 08:08   184320              c:\windows\system32\dllcache\iepeers.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   387584              c:\windows\system32\dllcache\iedkcs32.dll
- 2008-04-14 12:00 . 2009-08-29 08:08   387584              c:\windows\system32\dllcache\iedkcs32.dll
+ 2008-04-14 12:00 . 2009-10-28 14:40   173056              c:\windows\system32\dllcache\ie4uinit.exe
- 2008-04-14 12:00 . 2009-08-28 10:35   173056              c:\windows\system32\dllcache\ie4uinit.exe
+ 2009-10-20 16:20 . 2009-10-20 16:20   265728              c:\windows\system32\dllcache\http.sys
+ 2009-08-08 04:51 . 2009-08-08 04:51   989016              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
+ 2009-03-20 16:48 . 2009-03-20 16:48   183808              c:\windows\Installer\6a609.msp
+ 2009-12-22 05:37 . 2009-12-22 05:37   432640              c:\windows\Installer\6a5fe.msi
+ 2009-12-22 05:39 . 2009-08-29 08:08   916480              c:\windows\ie8updates\KB976325-IE8\wininet.dll
+ 2009-12-22 05:39 . 2009-05-26 11:40   382840              c:\windows\ie8updates\KB976325-IE8\spuninst\updspapi.dll
+ 2009-12-22 05:39 . 2009-05-26 11:40   231288              c:\windows\ie8updates\KB976325-IE8\spuninst\spuninst.exe
+ 2009-12-22 05:39 . 2009-08-29 08:08   206848              c:\windows\ie8updates\KB976325-IE8\occache.dll
+ 2009-12-22 05:39 . 2009-08-29 08:08   594432              c:\windows\ie8updates\KB976325-IE8\msfeeds.dll
+ 2009-12-22 05:39 . 2009-08-29 08:08   246272              c:\windows\ie8updates\KB976325-IE8\ieproxy.dll
+ 2009-12-22 05:39 . 2009-08-29 08:08   184320              c:\windows\ie8updates\KB976325-IE8\iepeers.dll
+ 2009-12-22 05:39 . 2009-08-29 08:08   387584              c:\windows\ie8updates\KB976325-IE8\iedkcs32.dll
+ 2009-12-22 05:39 . 2009-08-28 10:35   173056              c:\windows\ie8updates\KB976325-IE8\ie4uinit.exe
+ 2009-12-22 05:38 . 2008-07-08 13:02   382840              c:\windows\ie8updates\KB971961-IE8\spuninst\updspapi.dll
+ 2009-12-22 05:38 . 2008-07-08 13:02   231288              c:\windows\ie8updates\KB971961-IE8\spuninst\spuninst.exe
+ 2009-12-22 05:38 . 2009-03-08 09:33   726528              c:\windows\ie8updates\KB971961-IE8\jscript.dll
+ 2009-10-20 16:20 . 2009-10-20 16:20   265728              c:\windows\Driver Cache\i386\http.sys
+ 2009-11-19 14:02 . 2009-11-19 14:02   303104              c:\windows\assembly\temp\18EPW28FLS\System.Runtime.Remoting.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   321536              c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\e2098e43d115155d6ba91ba3a7e577cf\WsatConfig.ni.exe
+ 2009-12-22 05:44 . 2009-12-22 05:44   240128              c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\bf92bc207f927cbbd6dfc9dc0c3eae68\WindowsFormsIntegration.ni.dll
+ 2009-12-22 05:44 . 2009-12-22 05:44   187904              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\6f488b7644dc50a083868e91a4014466\UIAutomationTypes.ni.dll
+ 2009-12-22 05:44 . 2009-12-22 05:44   447488              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\c2fbf25609b704061a93500efa6f241d\UIAutomationClient.ni.dll
+ 2009-12-22 06:20 . 2009-12-22 06:20   400896              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\eb23b78564687badff1bd1f1d0a0ec97\System.Xml.Linq.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   129536              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\e7666364bf9f3ba5f4833c9efedd8218\System.Web.Routing.ni.dll
+ 2009-12-22 06:20 . 2009-12-22 06:20   202240              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\b5f1b8791e6c47e5bd5e7018c346c586\System.Web.RegularExpressions.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   859648              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\884eacddf339b8b342f66aedff5f8ef9\System.Web.Extensions.Design.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   328704              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\9e199645bd26f1afe58ebe185d1e7f0f\System.Web.Entity.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   301056              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\652017ebe962ab2eb271c2524f31cd61\System.Web.Entity.Design.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   547328              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\d0070c1c1a642ae30394e00bc0d82336\System.Web.DynamicData.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   141312              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\1896753d02d146be1988d32241300f51\System.Web.Abstractions.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   627200              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\408e637346ef628a3f54fb1b9b83ac9f\System.Transactions.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   212992              c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\1f61bccb700d687775cf778dd77752e9\System.ServiceProcess.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   676352              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Security\a9e9b885a6601469c4058375cc74d856\System.Security.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   311296              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\9bc34a79af9c3ed2cf17a0226c769b4c\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   621056              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\5f74a84e9d28c2332c51f6e30da0e125\System.Net.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   998400              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\2c208e4c5521f31057ea7d6e93c6a567\System.Management.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   330752              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\818b20a7c6f3b2fe97bf008ca24080c1\System.Management.Instrumentation.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   381440              c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\6c273eb9d1ee8b66b5ecb073de4b785d\System.IO.Log.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   212992              c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\7222db518afb4eaaa138824278249bc7\System.IdentityModel.Selectors.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   280064              c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\8a7d0bd0057a8ed38291d5662248f7a1\System.EnterpriseServices.Wrapper.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   627712              c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\8a7d0bd0057a8ed38291d5662248f7a1\System.EnterpriseServices.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   208384              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\ca6d7208c0fb72ff97429f2636ced321\System.Drawing.Design.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   881152              c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\c92fc19800e701c90f90ab7a2ab44c47\System.DirectoryServices.AccountManagement.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   455680              c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\a601f47a98ee67df424685c9a66ea449\System.DirectoryServices.Protocols.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   939008              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\b91b44015859163646f210d284f7166a\System.Data.Services.Client.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   354816              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\1b35297e07b85071daecdb06f96750a1\System.Data.Services.Design.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   756736              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\cf906bf9146d1f0013451ec63b58e064\System.Data.Entity.Design.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   135680              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\4ff4134b0d490c090e03d74e104517c4\System.Data.DataSetExtensions.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   971264              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\7c743462baccf29b3567b0e3ec9ac134\System.Configuration.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   141312              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\443e3a85c491b2de4a2ac654cb957484\System.Configuration.Install.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   633856              c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\cba35f47925431a54d0e6ae147a292f1\System.AddIn.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   366080              c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\6af32fe5cbec0aa54e2efa6910c73651\SMSvcHost.ni.exe
+ 2009-12-22 06:18 . 2009-12-22 06:18   256000              c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\7602d7687fb9bd21cd9ae60d2b187c99\SMDiagnostics.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   320512              c:\windows\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\a23dc25782df04533a13e348203e4dc5\ServiceModelReg.ni.exe
+ 2009-12-22 05:43 . 2009-12-22 05:43   258048              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\96f74da5fc40b92f09069230bc0df4f0\PresentationFramework.Royale.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   539648              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\3bb4d16b042b72c2c85a0f8ac9d48f28\PresentationFramework.Luna.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   368128              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\30c5c2682d3c5bdaa83bb9a36ee48afa\PresentationFramework.Aero.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   224768              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\07e952efd70f5608e221a008e6231ace\PresentationFramework.Classic.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   133632              c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\eade8c1c9c1e8e5ffb50e6c9b9af0f6a\MSBuild.ni.exe
+ 2009-12-22 06:18 . 2009-12-22 06:18   386560              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\fc4d66e0a92b3767006a84f2519d2457\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   144384              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\58ca3ecc52b7246b448c109817198a0b\Microsoft.Build.Utilities.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   175104              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\4dd43724dd92026577c6f588270137a0\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   839680              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\8c651f75bb741330370986dcad8e9e5b\Microsoft.Build.Engine.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   222720              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\a6dcbae619ccd938bfe808c54d6d3ae0\Microsoft.Build.Conversion.v3.5.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   220672              c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\77688ce14f221ed94a9f442ae4736123\CustomMarshalers.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   410112              c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\a17c65f0cffaa4f792dd38d50df9d526\ComSvcConfig.ni.exe
+ 2009-12-22 06:18 . 2009-12-22 06:18   842240              c:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\85d7c111956b478766d90625b35d963f\AspNetMMCExt.ni.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   839680              c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   839680              c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   835584              c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   835584              c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   114688              c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   114688              c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   258048              c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   258048              c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   131072              c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   131072              c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   303104              c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   303104              c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   258048              c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   258048              c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   372736              c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   372736              c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   626688              c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   626688              c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   401408              c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   401408              c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   188416              c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   188416              c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   970752              c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   970752              c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   745472              c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   745472              c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   425984              c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   425984              c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   110592              c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   110592              c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   659456              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   659456              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   372736              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   372736              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   110592              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   110592              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   749568              c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   749568              c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   655360              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   655360              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   348160              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   348160              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   507904              c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   507904              c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   261632              c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   261632              c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   113664              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   113664              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   258048              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   258048              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   486400              c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   486400              c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2008-09-30 21:42 . 2008-09-30 21:42   1286152              c:\windows\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9870.0_x-ww_a32d74cf\msxml4.dll
- 2008-04-14 12:00 . 2009-08-29 08:08   1208832              c:\windows\system32\urlmon.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   1208832              c:\windows\system32\urlmon.dll
+ 2008-04-14 12:00 . 2009-07-31 15:05   1372672              c:\windows\system32\msxml6.dll
+ 2008-09-30 21:43 . 2008-09-30 21:43   1286152              c:\windows\system32\msxml4.dll
+ 2008-04-14 12:00 . 2009-07-31 04:35   1172480              c:\windows\system32\msxml3.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   5940736              c:\windows\system32\mshtml.dll
- 2009-03-08 09:32 . 2009-08-29 08:08   1985536              c:\windows\system32\iertutil.dll
+ 2009-03-08 09:32 . 2009-10-29 07:45   1985536              c:\windows\system32\iertutil.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   1208832              c:\windows\system32\dllcache\urlmon.dll
- 2008-04-14 12:00 . 2009-08-29 08:08   1208832              c:\windows\system32\dllcache\urlmon.dll
+ 2008-04-14 12:00 . 2009-07-31 15:05   1372672              c:\windows\system32\dllcache\msxml6.dll
+ 2008-04-14 12:00 . 2009-07-31 04:35   1172480              c:\windows\system32\dllcache\msxml3.dll
+ 2008-04-14 12:00 . 2009-10-29 07:45   5940736              c:\windows\system32\dllcache\mshtml.dll
- 2009-11-19 08:28 . 2009-08-29 08:08   1985536              c:\windows\system32\dllcache\iertutil.dll
+ 2009-11-19 08:28 . 2009-10-29 07:45   1985536              c:\windows\system32\dllcache\iertutil.dll
+ 2009-08-08 04:51 . 2009-08-08 04:51   5812560              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
- 2008-11-25 09:59 . 2008-11-25 09:59   4546560              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
+ 2009-08-08 04:51 . 2009-08-08 04:51   4546560              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
+ 2009-12-22 05:39 . 2009-08-29 08:08   1208832              c:\windows\ie8updates\KB976325-IE8\urlmon.dll
+ 2009-12-22 05:39 . 2009-08-29 08:08   5940224              c:\windows\ie8updates\KB976325-IE8\mshtml.dll
+ 2009-12-22 05:39 . 2009-08-29 08:08   1985536              c:\windows\ie8updates\KB976325-IE8\iertutil.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   3313664              c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\204d6e5b335134f23ca37638b9227ecf\WindowsBase.ni.dll
+ 2009-12-22 05:44 . 2009-12-22 05:44   1049600              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\0f2ed6a204eb13841e99b77025464afc\UIAutomationClientsideProviders.ni.dll
+ 2009-12-22 05:42 . 2009-12-22 05:42   7868416              c:\windows\assembly\NativeImages_v2.0.50727_32\System\3de5bd01124463d7862bd173af90bc83\System.ni.dll
+ 2009-12-22 05:44 . 2009-12-22 05:44   5450752              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\5913d3f81e77194ec833991b1047a532\System.Xml.ni.dll
+ 2009-12-22 06:20 . 2009-12-22 06:20   1356288              c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\fa48917b13629d8effa80dd4a2f2973d\System.WorkflowServices.ni.dll
+ 2009-12-22 06:20 . 2009-12-22 06:20   1908224              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\6fe66ee6f3c81996bc148f1ebe7ec030\System.Workflow.Runtime.ni.dll
+ 2009-12-22 06:20 . 2009-12-22 06:20   4514304              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\9d0b61f2f1ebdc300bd970f594c422ef\System.Workflow.ComponentModel.ni.dll
+ 2009-12-22 06:20 . 2009-12-22 06:20   2992640              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\65328898148a720d394f802f192fc2a0\System.Workflow.Activities.ni.dll
+ 2009-12-22 06:20 . 2009-12-22 06:20   1840640              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\ea07ac791bb5cb9f83679e3dd1a0c0cc\System.Web.Services.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   2209280              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\29e2f8b1fb691ced973acf49fcee6ec1\System.Web.Mobile.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   2403328              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\981dea02bc63c0c083e335adf9018788\System.Web.Extensions.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   1917440              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Speech\99594bae1d022502925f5b9dfcdaae9a\System.Speech.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   1706496              c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\e182695d05ea57257568bc5f3208aca7\System.ServiceModel.Web.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   2338304              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\67ad55827f2542552b576170f0a7dc56\System.Runtime.Serialization.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   1035264              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\e5313735a40c0800f116e27fba4754db\System.Printing.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   1056768              c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\c3b18fef5c6dc3bcdbe5df699fd21a55\System.IdentityModel.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   1587200              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\abb2ac7e08bee026f857d8fa36f9fe6f\System.Drawing.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   1116672              c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\f47ebb9db460874b1bcbfc391dc970b1\System.DirectoryServices.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   1801216              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\c94a427baa7683f4221b91f90c18461b\System.Deployment.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   6616576              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\694c07365e0fd6bba0bc304d4d2404a7\System.Data.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   2510336              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\272152f0cc139490729e215611a4b244\System.Data.SqlXml.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   1328128              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\112a48e34620a0210eb850040da8a31b\System.Data.Services.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   2516480              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\32788c58ff9f8324460604cf1fe7681b\System.Data.Linq.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   9924096              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\9012cac7819660f61f1c69cf8e4f2ccf\System.Data.Entity.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   2295296              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\c0a42d2ad8a4078040b334f6770ea11f\System.Core.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   2128896              c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\954685c29689d2a6126ceca1fd55e904\ReachFramework.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   1657856              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\a3a6f52ce1d09a7bdccc8e7fc664792d\PresentationUI.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   1451008              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\f906701365083c1473db31519147e263\PresentationBuildTasks.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   1712128              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\6eee9b772b6d12d3dbd82f118c2ab2e5\Microsoft.VisualBasic.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   1093120              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\f19e9b439636d0744597fff1331cad04\Microsoft.Transactions.Bridge.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   2332160              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\5b1af7b5be24c7ace065fe1c81c2b650\Microsoft.JScript.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   1620992              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\9eec1cc7ac37e0c7f3205e8156149c5a\Microsoft.Build.Tasks.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   1966080              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\28c0730288453d57d5dcd62903c4d31b\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   1888768              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\5dd4f58999eed37c12aee7ea9f9863ac\Microsoft.Build.Engine.ni.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   3149824              c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   3149824              c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   2048000              c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   2048000              c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   5025792              c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   5025792              c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   5062656              c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   5062656              c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2009-12-22 05:40 . 2009-12-22 05:40   5242880              c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   5242880              c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   2933248              c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   2933248              c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   4546560              c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
- 2009-11-19 14:02 . 2009-11-19 14:02   4546560              c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2009-11-19 08:24 . 2009-12-01 20:06   25966024              c:\windows\system32\MRT.exe
+ 2009-03-08 09:39 . 2009-10-29 07:45   11069952              c:\windows\system32\ieframe.dll
+ 2009-11-19 08:28 . 2009-10-29 07:45   11069952              c:\windows\system32\dllcache\ieframe.dll
+ 2009-08-15 01:32 . 2009-08-15 01:32   11110912              c:\windows\Installer\6a614.msp
+ 2009-12-22 05:39 . 2009-08-29 08:08   11069440              c:\windows\ie8updates\KB976325-IE8\ieframe.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   12430848              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\d2ea8d76f015817db1607075812b555f\System.Windows.Forms.ni.dll
+ 2009-12-22 06:19 . 2009-12-22 06:19   11796992              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\5cea03cfb008f2eac1439a9905467f37\System.Web.ni.dll
+ 2009-12-22 06:18 . 2009-12-22 06:18   17317888              c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\06d6eab93282d2b136a377bd50b7c5a9\System.ServiceModel.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   10683392              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\8b82e08c008924d51833cb0884bcbfc5\System.Design.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   14327808              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\58c7ac6b6054038dc9346d7ec8e32b4c\PresentationFramework.ni.dll
+ 2009-12-22 05:43 . 2009-12-22 05:43   12216320              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\94badbd64df59de7da249f71da38b1c2\PresentationCore.ni.dll
+ 2009-12-22 05:41 . 2009-12-22 05:41   11486720              c:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7124a40b9998f7b63c86bd1a2125ce26\mscorlib.ni.dll
.

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz

Code:


-- Snapshot reset to current date --
.
(((((((((((((((((((((((((((((((((((((  Reg Loading Points  ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2009-01-13 18084864]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-07-15 98304]
"McRegWiz"="c:\progra~1\mcafee.com\agent\mcregwiz.exe" [2003-09-02 135168]
"VSOCheckTask"="c:\progra~1\mcafee.com\vso\mcmnhdlr.exe" [2003-08-08 122880]
"VirusScan Online"="c:\progra~1\mcafee.com\vso\mcvsshld.exe" [2003-08-18 163840]
"MCAgentExe"="c:\progra~1\mcafee.com\agent\mcagent.exe" [2003-08-27 245760]
"MCUpdateExe"="c:\progra~1\mcafee.com\agent\mcupdate.exe" [2003-08-21 180224]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"TrueImageMonitor.exe"="c:\program files\Acronis\TrueImageHome\TrueImageMonitor.exe" [2009-09-12 5048488]
"Acronis Scheduler2 Service"="c:\program files\Common Files\Acronis\Schedule2\schedhlp.exe" [2009-09-12 357384]
"Orb"="c:\program files\Orb Networks\Orb\bin\OrbLauncher.exe" [2009-10-07 573904]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-15 149280]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-11 417792]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-11-12 141600]

c:\documents and settings\desktop\Start Menu\Programs\Startup\
SDK Tray Menu.lnk - c:\sun\SDK\jdk\bin\javaw.exe [2009-11-27 139264]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2005-5-11 282624]

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"f:\\Program Files\\Xfire\\Xfire.exe"=
"f:\\Program Files\\Wolfenstein - Enemy Territory\\ET.exe"=
"h:\\Program Files\\2K Games\\Gearbox Software\\Borderlands\\Binaries\\Borderlands.exe"=
"f:\\Program Files\\BitComet\\BitComet.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqDIA.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Program Files\\Orb Networks\\Orb\\bin\\Orb.exe"=
"c:\\Program Files\\Orb Networks\\Orb\\bin\\OrbLauncher.exe"=
"c:\\Program Files\\Orb Networks\\Orb\\bin\\OrbSetupWizard.exe"=
"c:\\Program Files\\Orb Networks\\Orb\\bin\\OrbControlPanel.exe"=
"c:\\Program Files\\Orb Networks\\Orb\\bin\\OrbStreamerClient.exe"=
"c:\\Program Files\\Gigabyte\\EasySaver\\UpdExe.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"56781:TCP"= 56781:TCP:BitComet 56781 TCP
"56781:UDP"= 56781:UDP:BitComet 56781 UDP
"4885:TCP"= 4885:TCP:rmcgbud

R0 tdrpman251;Acronis Try&Decide and Restore Points filter (build 251);c:\windows\system32\drivers\tdrpm251.sys [11/23/2009 8:23 PM 902432]
R2 afcdpsrv;Acronis Nonstop Backup service;c:\program files\Common Files\Acronis\CDP\afcdpsrv.exe [11/23/2009 8:23 PM 2326920]
R2 ES lite Service;ES lite Service for program management.;c:\program files\Gigabyte\EasySaver\essvr.exe [11/19/2009 12:56 AM 68136]
R3 afcdp;afcdp;c:\windows\system32\drivers\afcdp.sys [11/23/2009 8:23 PM 159168]
R3 NaiFiltr;NaiFiltr;c:\windows\system32\drivers\NaiFiltr.sys [11/19/2009 1:13 AM 23296]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [12/22/2009 12:53 AM 691696]
.
------- Supplementary Scan -------
.
uStart Page = hxxp://netmail.verizon.net/
uInternet Settings,ProxyOverride = *.local
IE: &D&ownload &with BitComet - f:\program files\BitComet\BitComet.exe/AddLink.htm
IE: &D&ownload all video with BitComet - f:\program files\BitComet\BitComet.exe/AddVideo.htm
IE: &D&ownload all with BitComet - f:\program files\BitComet\BitComet.exe/AddAllLink.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\desktop\Application Data\Mozilla\Firefox\Profiles\teufqk9d.default\
FF - plugin: c:\documents and settings\All Users\Application Data\id Software\QuakeLive\npquakezero.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-22 13:14
Windows 5.1.2600 Service Pack 3 NTFS

scanning hȋdden processes ... 

scanning hȋdden autostart entries ...

scanning hȋdden files ... 

scan completed successfully
hȋdden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(720)
c:\windows\system32\Ati2evxx.dll
.
Completion time: 2009-12-22  13:14:56
ComboFix-quarantined-files.txt  2009-12-22 18:14

Pre-Run: 44,954,841,088 bytes free
Post-Run: 44,935,798,784 bytes free

- - End Of File - - 16D8AC869CA3D24408774C1A46689EF5

descriptionmicrosoft.com and malwarebytes.com won't load. - Page 2 EmptyRe: microsoft.com and malwarebytes.com won't load.

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum