WiredWX Christian Hobby Weather Tools
Would you like to react to this message? Create an account in a few clicks or log in to continue.

WiredWX Christian Hobby Weather ToolsLog in

 


descriptionFreezing computer; Slow; Virus? EmptyFreezing computer; Slow; Virus?

more_horiz
My computer is running very slow and freezing after being on for about fifteen minutes. Whenever I run an anti-virus, it freezes. Help?

Please and thank you.

descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

more_horiz
Hi,

Please review the Pre-Posting Instructions link in my signature and we'll go from there

descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

more_horiz
I'm very sorry, it's been awhile since I've posted.

OTL logfile created on: 10/12/2010 4:37:52 PM - Run 1
OTL by OldTimer - Version 3.2.15.1 Folder = C:\Documents and Settings\Owner.OWNER-58B0B3773\My Documents\Jams
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

511.00 Mb Total Physical Memory | 306.00 Mb Available Physical Memory | 60.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 91.00% Paging File free
Paging file location(s): C:\pagefile.sys 1024 2048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 127.99 Gb Total Space | 49.59 Gb Free Space | 38.75% Space Free | Partition Type: NTFS

Computer Name: OWNER-58B0B3773 | User Name: Owner | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2010/10/12 16:33:44 | 000,576,000 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner.OWNER-58B0B3773\My Documents\Jams\OTL.com
PRC - [2008/04/13 17:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (SafeList) ==========

MOD - [2010/10/12 16:33:44 | 000,576,000 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner.OWNER-58B0B3773\My Documents\Jams\OTL.com
MOD - [2008/04/13 17:10:20 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx


========== Win32 Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- C:\WINDOWS\System32\appmgmts.dll -- (AppMgmt)
SRV - [2010/08/13 12:58:56 | 000,144,672 | ---- | M] (Apple Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010/06/28 13:57:15 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner)
SRV - [2010/06/28 13:57:15 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner)
SRV - [2010/06/28 13:57:15 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2010/05/14 11:00:26 | 000,249,136 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
SRV - [2009/10/14 19:59:54 | 000,099,688 | R--- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\WINDOWS\system32\IcdSptSv.exe -- (ICDSPTSV)
SRV - [2009/04/27 22:58:24 | 000,094,208 | ---- | M] () [Auto | Stopped] -- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxdnserv.exe -- (lxdnCATSCustConnectService)
SRV - [2007/11/28 03:12:40 | 000,589,824 | ---- | M] ( ) [Auto | Stopped] -- C:\WINDOWS\System32\lxdncoms.exe -- (lxdn_device)


========== Driver Services (SafeList) ==========

DRV - [2010/06/28 13:37:52 | 000,046,672 | ---- | M] (ALWIL Software) [Kernel | System | Stopped] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2010/06/28 13:37:30 | 000,165,456 | ---- | M] (ALWIL Software) [Kernel | System | Stopped] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2010/06/28 13:33:13 | 000,023,376 | ---- | M] (ALWIL Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2010/06/28 13:32:45 | 000,100,176 | ---- | M] (ALWIL Software) [File_System | Auto | Stopped] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2010/06/28 13:32:33 | 000,017,744 | ---- | M] (ALWIL Software) [File_System | Auto | Stopped] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2010/06/28 13:32:16 | 000,028,880 | ---- | M] (ALWIL Software) [Kernel | System | Stopped] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2008/04/13 11:45:29 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2008/04/13 11:36:39 | 000,040,960 | ---- | M] (Silicon Integrated Systems Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\sisagp.sys -- (sisagp)
DRV - [2005/11/22 15:44:00 | 003,804,416 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2004/08/03 15:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2003/07/28 16:19:00 | 001,341,339 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2001/08/17 07:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\URLSearchHook: {03402f96-3dc7-4285-bc50-9e81fefafe43} - C:\Program Files\AIM Toolbar\aimtb.dll (AOL LLC.)

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.aol.com/
IE - HKCU\..\URLSearchHook: {03402f96-3dc7-4285-bc50-9e81fefafe43} - C:\Program Files\AIM Toolbar\aimtb.dll (AOL LLC.)
IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

FF - HKLM\software\mozilla\Firefox\Extensions\\msntoolbar@msn.com: C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\Firefox [2010/05/23 21:16:39 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2010/08/23 00:04:51 | 000,000,000 | ---D | M]

[2010/01/14 22:18:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Application Data\Mozilla\Extensions
[2010/01/14 22:18:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Application Data\Mozilla\Extensions\mozswing@mozswing.org
[2009/12/30 18:58:41 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions

O1 HOSTS File: ([2004/08/04 05:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O2 - BHO: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll (Google Inc.)
O2 - BHO: (AIM Toolbar Loader) - {b0cda128-b425-4eef-a174-61a11ac5dbf8} - C:\Program Files\AIM Toolbar\aimtb.dll (AOL LLC.)
O2 - BHO: (MSN Toolbar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\npwinext.dll (Microsoft Corporation)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Veoh Video Compass) - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll (Veoh Networks)
O3 - HKLM\..\Toolbar: (AIM Toolbar) - {61539ecd-cc67-4437-a03c-9aaccbd14326} - C:\Program Files\AIM Toolbar\aimtb.dll (AOL LLC.)
O3 - HKLM\..\Toolbar: (MSN Toolbar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\npwinext.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (AIM Toolbar) - {61539ECD-CC67-4437-A03C-9AACCBD14326} - C:\Program Files\AIM Toolbar\aimtb.dll (AOL LLC.)
O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe (Apple Inc.)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [DVDTray] C:\Program Files\Ahead\ODD Toolkit\dvdtray.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [lxdnamon] C:\Program Files\Lexmark 2600 Series\lxdnamon.exe ()
O4 - HKLM..\Run: [lxdnmon.exe] C:\Program Files\Lexmark 2600 Series\lxdnmon.exe ()
O4 - HKLM..\Run: [Microsoft Default Manager] C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Microsoft Works Portfolio] C:\Program Files\Microsoft Works\WksSb.exe (Microsoft® Corporation)
O4 - HKLM..\Run: [MSN Toolbar] C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\mswinext.exe (Microsoft Corp.)
O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe (NVIDIA Corporation)
O4 - HKLM..\Run: [PhotoExplosionCalCheck] C:\Program Files\Nova Development\Photo Explosion 3.0 SE\CalCheck.exe (Ulead Systems, Inc.)
O4 - HKLM..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe (Hewlett-Packard)
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\soundman.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [WorksFUD] C:\Program Files\Microsoft Works\wkfud.exe (Microsoft® Corporation)
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKCU..\Run: [VeohPlugin] C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe (Veoh Networks)
O4 - Startup: C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup\Microsoft Works Calendar Reminders.lnk = C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe (Microsoft® Corporation)
O4 - Startup: C:\Documents and Settings\Owner.OWNER-58B0B3773\Start Menu\Programs\Startup\Cyber-shot Viewer Media Check Tool.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe (Sony Corporation)
O4 - Startup: C:\Documents and Settings\Owner.OWNER-58B0B3773\Start Menu\Programs\Startup\PowerReg Scheduler.exe ()
O4 - Startup: C:\Documents and Settings\Owner.OWNER-58B0B3773\Start Menu\Programs\Startup\Registration IL-2 Sturmovik 1946.LNK = C:\Program Files\Ubisoft\IL-2 Sturmovik 1946\RegistrationReminder.exe File not found
O4 - Startup: C:\Documents and Settings\Owner.OWNER-58B0B3773\Start Menu\Programs\Startup\Registration Lock On ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} https://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab (Facebook Photo Uploader 5 Control)

descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

more_horiz
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.87.76.182 68.87.78.134
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Owner.OWNER-58B0B3773\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Owner.OWNER-58B0B3773\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2001/01/17 00:45:15 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
NetSvcs: HidServ - C:\WINDOWS\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found


SafeBootMin: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vds - Service
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

SafeBootNet: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Vector Graphics Rendering (VML)
ActiveX: {166B1BCA-3F9C-11CF-8075-444553540000} - Macromedia Shockwave Director 8.5
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 6.4
ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation
ActiveX: {2A202491-F00D-11cf-87CC-0020AFEECF20} - Macromedia Shockwave Director 8.5
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Dynamic HTML Data Binding for Java
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe
ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Advanced Authoring
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow
ActiveX: {44BBA851-CC51-11CF-AAFA-00AA00B6015C} - rundll32.exe advpack.dll,LaunchINFSection %SystemRoot%\INF\wpie4x86.inf,PerUserStub
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015C} - Microsoft DirectX
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - DirectAnimation Java Classes
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} - .NET Framework
ActiveX: {73FA19D0-2D75-11D2-995D-00C04F98BBC9} - Web Folders
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install

descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

more_horiz
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - .NET Framework
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Task Scheduler
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Adobe Flash Player
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigIE
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE

Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.ffds - C:\Program Files\Combined Community Codec Pack\Filters\FFDShow\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)

CREATERESTOREPOINT
Error starting restore point: The function was called in safe mode.
Error closing restore point: The sequence number is invalid.

========== Files/Folders - Created Within 30 Days ==========

[2010/10/12 14:53:29 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Recent
[2010/10/12 14:34:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Application Data\AVP 2009
[2010/10/12 14:34:36 | 000,000,000 | ---D | C] -- C:\Program Files\Adware Pro
[2010/08/11 22:07:48 | 000,409,600 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdncoin.dll
[2010/08/11 21:58:10 | 000,438,272 | ---- | C] ( ) -- C:\WINDOWS\System32\LXDNhcp.dll
[2010/08/11 21:58:10 | 000,364,544 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdninpa.dll
[2010/08/11 21:58:10 | 000,339,968 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdniesc.dll
[2010/08/11 21:58:09 | 001,101,824 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdnserv.dll
[2010/08/11 21:58:09 | 000,843,776 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdnusb1.dll
[2010/08/11 21:58:09 | 000,053,248 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdnprox.dll
[2010/08/11 21:58:08 | 000,647,168 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdnpmui.dll
[2010/08/11 21:58:08 | 000,569,344 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdnlmpm.dll
[2010/08/11 21:58:07 | 000,663,552 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdnhbn3.dll
[2010/08/11 21:58:04 | 000,376,832 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdncomm.dll
[2010/08/11 21:58:03 | 000,851,968 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdncomc.dll
[8 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2010/10/12 16:30:34 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/10/12 14:34:39 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\MSVolumeAP.dll
[2010/10/12 14:34:37 | 000,000,668 | ---- | M] () -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Application Data\Microsoft\Internet Explorer\Quick Launch\AdwarePro.lnk
[2010/10/12 14:34:37 | 000,000,650 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\AdwarePro.lnk
[2010/10/11 17:26:52 | 000,000,880 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/10/11 08:58:01 | 000,000,884 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/10/10 15:03:07 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\Adobe Reader 9.lnk
[2010/10/10 08:35:51 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/10/07 23:18:08 | 000,432,356 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/10/07 23:18:08 | 000,067,312 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/10/07 18:42:31 | 000,001,580 | ---- | M] () -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Desktop\LimeWire 5.5.16.lnk
[2010/10/06 18:13:01 | 000,002,519 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\Jasc Paint Shop Pro 8.lnk
[2010/10/06 18:12:05 | 000,052,224 | ---- | M] () -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/10/05 16:16:42 | 000,000,104 | ---- | M] () -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Desktop\Internet.lnk
[2010/10/04 16:23:23 | 000,002,137 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\iTunes.lnk
[2010/09/28 12:43:02 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/09/23 18:19:00 | 000,001,604 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\QuickTime Player.lnk
[2010/09/20 15:00:01 | 000,002,483 | ---- | M] () -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Desktop\Microsoft Word.lnk
[8 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010/10/12 14:34:39 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\MSVolumeAP.dll
[2010/10/12 14:34:37 | 000,000,668 | ---- | C] () -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Application Data\Microsoft\Internet Explorer\Quick Launch\AdwarePro.lnk
[2010/10/12 14:34:37 | 000,000,650 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\AdwarePro.lnk
[2010/10/10 15:03:07 | 000,001,729 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\Adobe Reader 9.lnk
[2010/10/07 18:42:31 | 000,001,580 | ---- | C] () -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Desktop\LimeWire 5.5.16.lnk
[2010/10/05 16:16:42 | 000,000,104 | ---- | C] () -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Desktop\Internet.lnk
[2010/09/23 18:28:53 | 000,002,137 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\iTunes.lnk
[2010/09/23 18:19:00 | 000,001,604 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\QuickTime Player.lnk
[2010/09/04 23:41:20 | 000,000,000 | ---- | C] () -- C:\WINDOWS\DVEdit.INI
[2010/09/04 23:34:05 | 000,122,880 | ---- | C] () -- C:\WINDOWS\System32\trc.dll
[2010/09/04 23:32:59 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2010/09/04 23:32:29 | 000,124,264 | R--- | C] () -- C:\WINDOWS\System32\mp3dec.dll
[2010/09/04 23:32:29 | 000,010,600 | R--- | C] () -- C:\WINDOWS\System32\IcdSptSvps.dll
[2010/09/04 23:32:28 | 000,081,920 | R--- | C] () -- C:\WINDOWS\System32\dsp_trc.dll
[2010/08/11 22:07:52 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxdnvs.dll
[2010/08/11 22:06:32 | 000,782,336 | ---- | C] () -- C:\WINDOWS\System32\lxdndrs.dll
[2010/08/11 22:06:32 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\lxdncaps.dll
[2010/08/11 22:06:31 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\lxdncnv4.dll
[2010/08/11 21:58:28 | 000,000,044 | ---- | C] () -- C:\WINDOWS\System32\lxdnrwrd.ini
[2010/08/11 21:58:10 | 000,348,160 | ---- | C] () -- C:\WINDOWS\System32\LXDNinst.dll
[2010/08/11 21:58:06 | 000,208,896 | ---- | C] () -- C:\WINDOWS\System32\lxdngrd.dll
[2010/02/13 16:32:23 | 000,000,819 | ---- | C] () -- C:\WINDOWS\CoDUO.INI
[2010/02/13 15:50:16 | 000,000,766 | ---- | C] () -- C:\WINDOWS\CoD.INI
[2010/01/23 00:46:29 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010/01/14 18:45:51 | 000,000,287 | ---- | C] () -- C:\WINDOWS\game.ini
[2010/01/13 20:07:22 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2010/01/13 19:52:31 | 000,003,654 | ---- | C] () -- C:\WINDOWS\System32\drivers\Sonyhcp.dll
[2010/01/13 19:45:49 | 000,000,020 | ---- | C] () -- C:\WINDOWS\Hposcv07.INI
[2010/01/13 19:25:44 | 000,052,224 | ---- | C] () -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/01/13 16:54:41 | 000,157,184 | ---- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll
[2010/01/13 06:58:45 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI

========== Custom Scans ==========


< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[8 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\system32\*.exe /lockedfiles >
[8 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2010/01/13 06:56:13 | 000,094,208 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
[2010/01/13 06:56:13 | 000,634,880 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
[2010/01/13 06:56:13 | 000,884,736 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav

descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

more_horiz
[2010/01/13 06:56:13 | 000,884,736 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav

< %systemroot%\system32\*.sys >
[2004/08/04 05:00:00 | 000,009,029 | ---- | M] () -- C:\WINDOWS\system32\ansi.sys
[2004/08/04 05:00:00 | 000,027,097 | ---- | M] () -- C:\WINDOWS\system32\country.sys
[2004/08/04 05:00:00 | 000,004,768 | ---- | M] () -- C:\WINDOWS\system32\himem.sys
[2004/08/04 05:00:00 | 000,042,809 | ---- | M] () -- C:\WINDOWS\system32\key01.sys
[2004/08/04 05:00:00 | 000,042,537 | ---- | M] () -- C:\WINDOWS\system32\keyboard.sys
[2004/08/04 05:00:00 | 000,027,866 | ---- | M] () -- C:\WINDOWS\system32\ntdos.sys
[2004/08/04 05:00:00 | 000,029,146 | ---- | M] () -- C:\WINDOWS\system32\ntdos404.sys
[2004/08/04 05:00:00 | 000,029,370 | ---- | M] () -- C:\WINDOWS\system32\ntdos411.sys
[2004/08/04 05:00:00 | 000,029,274 | ---- | M] () -- C:\WINDOWS\system32\ntdos412.sys
[2004/08/04 05:00:00 | 000,029,146 | ---- | M] () -- C:\WINDOWS\system32\ntdos804.sys
[2004/08/04 05:00:00 | 000,033,840 | ---- | M] () -- C:\WINDOWS\system32\ntio.sys
[2004/08/04 05:00:00 | 000,034,560 | ---- | M] () -- C:\WINDOWS\system32\ntio404.sys
[2004/08/04 05:00:00 | 000,035,648 | ---- | M] () -- C:\WINDOWS\system32\ntio411.sys
[2004/08/04 05:00:00 | 000,035,424 | ---- | M] () -- C:\WINDOWS\system32\ntio412.sys
[2004/08/04 05:00:00 | 000,034,560 | ---- | M] () -- C:\WINDOWS\system32\ntio804.sys
[2008/04/13 11:44:59 | 000,017,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\watchdog.sys
[2010/06/23 06:44:04 | 001,851,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\win32k.sys
[8 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.dll >
[2008/04/13 17:11:48 | 000,004,255 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv01nt5.dll
[2008/04/13 17:11:48 | 000,003,967 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv02nt5.dll
[2008/04/13 17:11:48 | 000,003,615 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv05nt5.dll
[2008/04/13 17:11:48 | 000,003,647 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv07nt5.dll
[2008/04/13 17:11:48 | 000,003,135 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv08nt5.dll
[2008/04/13 17:11:48 | 000,003,711 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv09nt5.dll
[2008/04/13 17:11:48 | 000,003,775 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv11nt5.dll
[2008/04/13 17:11:50 | 000,021,183 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv01nt5.dll
[2008/04/13 17:11:50 | 000,011,359 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv02nt5.dll
[2008/04/13 17:11:50 | 000,025,471 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv04nt5.dll
[2008/04/13 17:11:50 | 000,014,143 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv06nt5.dll
[2008/04/13 17:11:50 | 000,017,279 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv10nt5.dll
[2008/04/13 17:11:50 | 000,015,423 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
[2008/04/13 17:12:05 | 000,003,901 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\siint5.dll
[2001/07/03 21:39:00 | 000,003,654 | ---- | M] () -- C:\WINDOWS\system32\drivers\Sonyhcp.dll
[2008/04/13 17:12:08 | 000,011,325 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\vchnt5.dll

< %systemroot%\system32\drivers\*.ini >

< %systemroot%\system32\drivers\*.exe >

< %SYSTEMDRIVE%\*.* >
[2009/08/04 20:40:39 | 000,000,000 | ---- | M] () -- C:\-798455803
[2001/01/17 00:45:15 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2009/01/27 14:05:33 | 000,000,211 | -HS- | M] () -- C:\Boot.bak
[2010/01/13 15:04:19 | 000,000,282 | -HS- | M] () -- C:\boot.ini
[2004/08/03 23:00:00 | 000,260,272 | ---- | M] () -- C:\cmldr
[2010/01/02 16:31:46 | 000,024,079 | ---- | M] () -- C:\ComboFix.txt
[2001/01/17 00:45:15 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2009/11/21 10:09:25 | 000,000,000 | ---- | M] () -- C:\debug.log
[2001/09/05 23:00:58 | 001,700,352 | ---- | M] (Microsoft Corporation) -- C:\gdiplus.dll
[2001/01/17 00:45:15 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010/03/25 20:26:28 | 000,001,366 | -H-- | M] () -- C:\IPH.PH
[2009/10/30 23:21:32 | 000,003,549 | ---- | M] () -- C:\LGSInst.Log
[2009/01/16 15:17:34 | 000,000,478 | ---- | M] () -- C:\LOG1B.log
[2010/04/30 01:16:28 | 000,000,109 | ---- | M] () -- C:\mbam-error.txt
[2001/01/17 00:45:15 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2001/01/17 04:04:53 | 000,000,992 | ---- | M] () -- C:\net_save.dna
[2008/09/03 17:11:24 | 000,054,600 | ---- | M] (BitTorrent, Inc.) -- C:\npbittorrent.dll
[2009/12/30 20:02:22 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2009/12/30 21:07:24 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2010/10/12 16:30:28 | 1073,741,824 | -HS- | M] () -- C:\pagefile.sys
[2001/01/17 00:53:10 | 000,000,796 | ---- | M] () -- C:\SiSSetup.txt
[2001/01/17 00:53:01 | 000,001,043 | ---- | M] () -- C:\SiSSetup1.ini
[2001/01/17 00:53:10 | 000,000,256 | ---- | M] () -- C:\SiSUnist.ini
[2008/11/14 23:52:56 | 000,120,402 | ---- | M] () -- C:\StarBurn.log
[2009/08/22 14:51:20 | 000,194,242 | ---- | M] () -- C:\yes.txt

< %PROGRAMFILES%\*. >
[2010/09/20 15:50:29 | 000,000,000 | ---D | M] -- C:\Program Files\Abbyy FineReader 6.0 Sprint
[2010/01/14 18:41:16 | 000,000,000 | ---D | M] -- C:\Program Files\Activision
[2010/10/10 15:01:08 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe
[2010/10/12 14:34:44 | 000,000,000 | ---D | M] -- C:\Program Files\Adware Pro
[2010/01/13 19:56:58 | 000,000,000 | ---D | M] -- C:\Program Files\Ahead
[2009/09/30 20:14:12 | 000,000,000 | ---D | M] -- C:\Program Files\AIM
[2010/01/13 18:55:00 | 000,000,000 | ---D | M] -- C:\Program Files\AIM Toolbar
[2010/03/25 20:26:13 | 000,000,000 | ---D | M] -- C:\Program Files\AIM7
[2010/02/25 17:44:54 | 000,000,000 | ---D | M] -- C:\Program Files\Alwil Software
[2008/05/01 21:26:43 | 000,000,000 | ---D | M] -- C:\Program Files\AOL
[2008/12/26 18:48:27 | 000,000,000 | ---D | M] -- C:\Program Files\Apple Software Update
[2009/07/19 17:48:16 | 000,000,000 | ---D | M] -- C:\Program Files\Audacity
[2001/01/17 00:52:20 | 000,000,000 | ---D | M] -- C:\Program Files\Avance Sound Manager
[2001/01/17 00:52:19 | 000,000,000 | ---D | M] -- C:\Program Files\AvRack
[2010/05/23 22:20:41 | 000,000,000 | ---D | M] -- C:\Program Files\AVS4YOU
[2008/10/09 11:58:44 | 000,000,000 | ---D | M] -- C:\Program Files\Badongo
[2010/01/13 19:31:07 | 000,000,000 | ---D | M] -- C:\Program Files\BitTorrent
[2010/06/22 20:51:24 | 000,000,000 | ---D | M] -- C:\Program Files\Bonjour
[2010/06/30 21:53:22 | 000,000,000 | ---D | M] -- C:\Program Files\Call of Duty
[2010/04/08 01:04:07 | 000,000,000 | ---D | M] -- C:\Program Files\CCleaner
[2009/08/07 16:19:57 | 000,000,000 | ---D | M] -- C:\Program Files\CleanUp!
[2010/01/13 19:30:02 | 000,000,000 | ---D | M] -- C:\Program Files\Combined Community Codec Pack
[2010/08/11 22:21:08 | 000,000,000 | ---D | M] -- C:\Program Files\Common Files
[2001/01/17 00:43:08 | 000,000,000 | ---D | M] -- C:\Program Files\ComPlus Applications
[2008/05/16 20:20:24 | 000,000,000 | ---D | M] -- C:\Program Files\Coupons
[2009/01/16 14:59:45 | 000,000,000 | ---D | M] -- C:\Program Files\DNA
[2008/05/08 13:27:05 | 000,000,000 | ---D | M] -- C:\Program Files\e frontier
[2008/05/05 00:42:17 | 000,000,000 | ---D | M] -- C:\Program Files\Easy MPEG AVI DIVX WMV RM to DVD
[2009/01/27 13:16:05 | 000,000,000 | ---D | M] -- C:\Program Files\Enigma Software Group
[2009/08/08 12:52:32 | 000,000,000 | ---D | M] -- C:\Program Files\ERUNT
[2010/01/04 01:26:51 | 000,000,000 | ---D | M] -- C:\Program Files\ESET
[2010/08/12 23:23:24 | 000,000,000 | ---D | M] -- C:\Program Files\Glary Utilities
[2010/01/13 19:37:08 | 000,000,000 | ---D | M] -- C:\Program Files\Google
[2001/01/17 04:16:42 | 000,000,000 | ---D | M] -- C:\Program Files\Hewlett-Packard
[2009/09/09 19:04:00 | 000,000,000 | ---D | M] -- C:\Program Files\HP
[2010/09/04 23:32:06 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information
[2010/08/12 02:12:05 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Explorer
[2010/09/23 18:26:55 | 000,000,000 | ---D | M] -- C:\Program Files\iPod
[2010/09/23 18:28:41 | 000,000,000 | ---D | M] -- C:\Program Files\iTunes
[2001/01/17 01:45:36 | 000,000,000 | ---D | M] -- C:\Program Files\Jasc Software Inc
[2010/05/28 17:15:17 | 000,000,000 | ---D | M] -- C:\Program Files\Java
[2010/08/11 22:13:44 | 000,000,000 | ---D | M] -- C:\Program Files\Lexmark 2600 Series
[2010/08/18 22:24:14 | 000,000,000 | ---D | M] -- C:\Program Files\Lexmark Toolbar
[2010/10/07 18:42:32 | 000,000,000 | ---D | M] -- C:\Program Files\LimeWire
[2008/07/30 13:57:43 | 000,000,000 | ---D | M] -- C:\Program Files\Logitech
[2010/04/30 01:16:27 | 000,000,000 | ---D | M] -- C:\Program Files\Malwarebytes' Anti-Malware
[2009/08/07 16:02:47 | 000,000,000 | ---D | M] -- C:\Program Files\Malwarebytes' Anti_-Malware
[2009/11/18 17:41:07 | 000,000,000 | ---D | M] -- C:\Program Files\McAfee
[2008/05/01 21:21:43 | 000,000,000 | ---D | M] -- C:\Program Files\McAfee.com
[2010/01/13 19:18:05 | 000,000,000 | ---D | M] -- C:\Program Files\Messenger
[2010/05/23 21:16:43 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft
[2001/01/17 01:56:33 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft ActiveSync
[2001/01/17 02:04:33 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Encarta
[2001/01/17 00:45:21 | 000,000,000 | ---D | M] -- C:\Program Files\microsoft frontpage
[2001/01/17 01:59:50 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Money
[2001/01/17 01:56:29 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Office
[2010/01/13 20:12:14 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Picture It! 2002
[2010/09/30 15:26:15 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Silverlight
[2001/01/17 02:00:30 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Streets & Trips
[2010/01/13 20:07:44 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Works
[2001/01/17 01:52:54 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Works Suite 2002
[2010/08/12 02:09:25 | 000,000,000 | ---D | M] -- C:\Program Files\Movie Maker
[2009/12/30 21:34:41 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox
[2009/08/05 18:25:56 | 000,000,000 | ---D | M] -- C:\Program Files\MSBuild
[2001/01/17 00:42:41 | 000,000,000 | ---D | M] -- C:\Program Files\MSN
[2001/01/17 00:42:30 | 000,000,000 | ---D | M] -- C:\Program Files\MSN Gaming Zone
[2010/05/23 21:16:38 | 000,000,000 | ---D | M] -- C:\Program Files\MSN Toolbar
[2010/05/23 21:17:04 | 000,000,000 | ---D | M] -- C:\Program Files\MSN Toolbar Installer
[2008/05/03 03:02:13 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 4.0
[2010/01/07 18:16:09 | 000,000,000 | ---D | M] -- C:\Program Files\M_alwarebytes' Anti_-Malware
[2010/01/13 19:12:43 | 000,000,000 | ---D | M] -- C:\Program Files\NetMeeting
[2009/08/06 15:34:52 | 000,000,000 | ---D | M] -- C:\Program Files\Network Associates
[2010/03/19 16:30:17 | 000,000,000 | ---D | M] -- C:\Program Files\New Folder
[2010/08/11 22:17:14 | 000,000,000 | ---D | M] -- C:\Program Files\Nova Development
[2010/01/13 15:05:50 | 000,000,000 | ---D | M] -- C:\Program Files\Online Services
[2010/05/12 03:01:43 | 000,000,000 | ---D | M] -- C:\Program Files\Outlook Express
[2009/08/07 17:36:45 | 000,000,000 | ---D | M] -- C:\Program Files\Panda Security
[2010/09/23 18:19:14 | 000,000,000 | ---D | M] -- C:\Program Files\QuickTime
[2009/10/04 23:14:53 | 000,000,000 | ---D | M] -- C:\Program Files\real
[2010/01/13 16:54:49 | 000,000,000 | ---D | M] -- C:\Program Files\Realtek AC97
[2009/08/05 18:24:33 | 000,000,000 | ---D | M] -- C:\Program Files\Reference Assemblies
[2010/03/11 02:59:28 | 000,000,000 | ---D | M] -- C:\Program Files\Safari
[2010/09/04 23:34:27 | 000,000,000 | ---D | M] -- C:\Program Files\Sony
[2009/10/05 00:25:45 | 000,000,000 | ---D | M] -- C:\Program Files\Spybot - Search & Destroy
[2009/08/09 16:47:10 | 000,000,000 | ---D | M] -- C:\Program Files\Sun
[2009/08/28 14:01:02 | 000,000,000 | ---D | M] -- C:\Program Files\SUPERAntiSpyware
[2001/01/17 04:04:34 | 000,000,000 | ---D | M] -- C:\Program Files\support.com
[2001/01/17 01:36:56 | 000,000,000 | ---D | M] -- C:\Program Files\SystemRequirementsLab
[2009/08/10 14:56:08 | 000,000,000 | ---D | M] -- C:\Program Files\S_pybot - Search & Destroy
[2008/05/02 16:14:43 | 000,000,000 | ---D | M] -- C:\Program Files\The Weather Channel FW
[2010/02/17 22:36:22 | 000,000,000 | ---D | M] -- C:\Program Files\Ubi Soft
[2010/02/17 22:30:43 | 000,000,000 | ---D | M] -- C:\Program Files\Ubisoft
[2001/01/17 00:49:55 | 000,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information
[2010/05/23 21:07:15 | 000,000,000 | ---D | M] -- C:\Program Files\Veoh Networks
[2008/05/09 15:09:26 | 000,000,000 | ---D | M] -- C:\Program Files\VideoLAN
[2009/08/28 13:54:14 | 000,000,000 | ---D | M] -- C:\Program Files\VS Revo Group
[2010/08/12 12:16:38 | 000,000,000 | ---D | M] -- C:\Program Files\Web Publish
[2008/06/11 17:53:05 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live
[2008/06/11 17:57:34 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live Favorites
[2008/06/11 17:59:17 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live Toolbar
[2008/05/02 14:40:56 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Connect 2
[2010/01/13 19:40:09 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Player
[2010/01/13 19:12:40 | 000,000,000 | ---D | M] -- C:\Program Files\Windows NT
[2009/12/30 18:50:33 | 000,000,000 | -H-D | M] -- C:\Program Files\WindowsUpdate
[2010/01/13 19:58:55 | 000,000,000 | ---D | M] -- C:\Program Files\WinRAR
[2001/01/17 00:45:21 | 000,000,000 | ---D | M] -- C:\Program Files\xerox
[2009/08/07 16:19:23 | 000,000,000 | ---D | M] -- C:\Program Files\Yahoo!
[2010/05/23 22:22:33 | 000,000,000 | ---D | M] -- C:\Program Files\YouTube Downloader
[2009/02/15 14:14:12 | 000,000,000 | ---D | M] -- C:\Program Files\Zune
< %appdata%\*.* >
[2010/01/13 06:58:16 | 000,000,062 | -HS- | M] () -- C:\Documents and Settings\Owner.OWNER-58B0B3773\Application Data\desktop.ini


< MD5 for: AGP440.SYS >
[2004/08/04 05:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2010/01/13 19:06:59 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2010/01/13 19:06:59 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/13 11:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/13 11:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

< MD5 for: ATAPI.SYS >
[2004/08/04 05:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2010/01/13 19:06:59 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2010/01/13 19:06:59 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/13 11:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/13 11:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004/08/04 05:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

< MD5 for: DISK.SYS >
[2004/08/04 05:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:disk.sys
[2010/01/13 19:06:59 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:disk.sys
[2010/01/13 19:06:59 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:disk.sys
[2004/08/04 05:00:00 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:\WINDOWS\$NtServicePackUninstall$\disk.sys
[2008/04/13 11:40:47 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\ServicePackFiles\i386\disk.sys
[2008/04/13 11:40:47 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\system32\drivers\disk.sys

< MD5 for: EVENTLOG.DLL >
[2008/04/13 17:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008/04/13 17:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\system32\eventlog.dll
[2004/08/04 05:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll

< MD5 for: NETLOGON.DLL >
[2008/04/13 17:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/13 17:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
[2009/02/06 11:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\netlogon.dll
[2009/02/06 11:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:\WINDOWS\$hf_mig$\KB975467\SP2QFE\netlogon.dll
[2004/08/04 05:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll

< MD5 for: SCECLI.DLL >
[2004/08/04 05:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008/04/13 17:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008/04/13 17:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: USBSTOR.SYS >
[2004/08/04 05:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:usbstor.sys
[2010/01/13 19:06:59 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbstor.sys
[2010/01/13 19:06:59 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:usbstor.sys
[2004/08/04 00:08:48 | 000,026,496 | ---- | M] (Microsoft Corporation) MD5=6CD7B22193718F1D17A47A1CD6D37E75 -- C:\WINDOWS\$NtServicePackUninstall$\usbstor.sys
[2008/04/13 11:45:38 | 000,026,368 | ---- | M] (Microsoft Corporation) MD5=A32426D9B14A089EAA1D922E0C5801A9 -- C:\WINDOWS\ServicePackFiles\i386\usbstor.sys
[2008/04/13 11:45:38 | 000,026,368 | ---- | M] (Microsoft Corporation) MD5=A32426D9B14A089EAA1D922E0C5801A9 -- C:\WINDOWS\system32\drivers\usbstor.sys

< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2010-10-08 06:19:11

========== Files - Unicode (All) ==========
[2008/05/20 20:41:12 | 000,000,000 | ---D | M](C:\WINDOWS\System32\CatR??t) -- C:\WINDOWS\System32\CatRооt
[2001/01/16 16:36:09 | 000,000,000 | ---D | C](C:\WINDOWS\System32\CatR??t) -- C:\WINDOWS\System32\CatRооt

========== Hard Links - Junction Points - Mount Points - Symbolic Links ==========
[C:\WINDOWS\$hf_mig$\{29F8DDC1-9487-49b8-B27E-3E0C3C1298FF}] -> \Device\__max++>\^ -> Mount Point

========== Alternate Data Streams ==========

@Alternate Data Stream - 1171 bytes -> C:\Documents and Settings\Owner.OWNER-58B0B3773\Start Menu\Programs\Startup\Registration Lock On: Modern Air Combat.LNK

< End of report >

descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

more_horiz
Hi,

You have a really nasty infection but, nothing we can't vanquish


  1. Download Win32kDiag from any of the following locations and save it to your Desktop.

  • Double-click Win32kDiag.exe to run Win32kDiag and let it finish.
  • When it states "Finished! Press any key to exit...", press any key on your keyboard to close the program.
  • Double-click on the Win32kDiag.txt file that is located on your Desktop and post the entire contents of that log as a reply to this topic.
  • descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Thank you for the quick answer!!


    Running from: C:\Documents and Settings\Owner.OWNER-58B0B3773\Desktop\Win32kDiag.exe

    Log file at : C:\Documents and Settings\Owner.OWNER-58B0B3773\Desktop\Win32kDiag.txt

    WARNING: Could not get backup privileges!

    Searching 'C:\WINDOWS'...



    Found mount point : C:\WINDOWS\$hf_mig$\{29F8DDC1-9487-49b8-B27E-3E0C3C1298FF}

    Mount point destination : \Device\__max++>\^



    Finished!

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    We need to run the tool with the following command to fix some malware related changes.

    Click on Start->Run, and copy-paste the following command (the bolded text) into the "Open" box, and click OK:

    "%userprofile%\desktop\win32kdiag.exe" -f -r

    When it's finished, there will be a log called Win32kDiag.txt on your
    desktop. Please open it with notepad and post the contents here.
    =====

    Please download ComboFix Freezing computer; Slow; Virus? Combofix from BleepingComputer.com

    Alternate link: GeeksToGo.com

    Rename ComboFix.exe to commy.exe before you save it to your Desktop
    • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools A guide to do this can be found here
    • Click Start>Run then copy paste the following command into the Run box & click OK "%userprofile%\desktop\commy.exe" /stepdel
    • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
    • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console

    Freezing computer; Slow; Virus? Query_RC
    Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    I got the first thing to work, but the combofix failed after level 50.

    Running from: C:\Documents and Settings\Owner.OWNER-58B0B3773\desktop\win32kdiag.exe

    Log file at : C:\Documents and Settings\Owner.OWNER-58B0B3773\Desktop\Win32kDiag.txt

    Removing all found mount points.

    Attempting to reset file permissions.

    WARNING: Could not get backup privileges!

    Searching 'C:\WINDOWS'...



    Found mount point : C:\WINDOWS\$hf_mig$\{29F8DDC1-9487-49b8-B27E-3E0C3C1298FF}

    Mount point destination : \Device\__max++>\^

    Removing mount point : C:\WINDOWS\$hf_mig$\{29F8DDC1-9487-49b8-B27E-3E0C3C1298FF}

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Ok. Let's try this first

    Please download and run this tool.

    Download Malwarebytes' Anti-Malware from Here

    Double Click mbam-setup.exe to install the application.

    • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
    • If an update is found, it will download and install the latest version.
    • Once the program has loaded, select "Perform Quick Scan", then click Scan.
    • The scan may take some time to finish,so please be patient.
    • When the scan is complete, click OK, then Show Results to view the results.
    • Make sure that everything is checked, and click Remove Selected.
    • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Note)
    • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
    Note:
    If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts.
    Click OK to either and let MBAM proceed with the disinfection process.
    If asked to restart the computer, please do so immediately.


    Post the contents of the MBAM Log

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    It found two things.

    Malwarebytes' Anti-Malware 1.46
    www.malwarebytes.org

    Database version: 4792

    Windows 5.1.2600 Service Pack 3 (Safe Mode)
    Internet Explorer 8.0.6001.18702

    10/12/2010 10:39:40 PM
    mbam-log-2010-10-12 (22-39-40).txt

    Scan type: Quick scan
    Objects scanned: 207586
    Time elapsed: 9 minute(s), 30 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 2

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    (No malicious items detected)

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    C:\Documents and Settings\All Users.WINDOWS\Desktop\AdwarePro.lnk (Rogue.AdwarePro) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Application Data\Microsoft\Internet Explorer\Quick Launch\AdwarePro.lnk (Rogue.AdwarePro) -> Quarantined and deleted successfully.

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Ok. Try ComboFix now please

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    ComboFix 10-10-12.03 - Owner 10/13/2010 15:44:48.1.1 - x86 NETWORK
    Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.511.370 [GMT -7:00]
    Running from: c:\documents and settings\Owner.OWNER-58B0B3773\desktop\commy.exe
    Command switches used :: /stepdel
    .

    ((((((((((((((((((((((((( Files Created from 2010-09-13 to 2010-10-13 )))))))))))))))))))))))))))))))
    .

    2010-10-13 01:27 . 2010-10-13 01:40 -------- d-----w- C:\commy
    2010-10-12 21:34 . 2010-10-12 21:53 -------- d-----w- c:\documents and settings\Owner.OWNER-58B0B3773\Application Data\AVP 2009
    2010-10-12 00:37 . 2010-10-12 00:38 -------- d-----w- c:\documents and settings\Administrator.OWNER-58B0B3773
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin7.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin6.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin5.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin4.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin3.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin2.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin.dll
    2010-09-23 01:10 . 2010-09-23 01:10 103864 ----a-w- c:\program files\Internet Explorer\PLUGINS\nppdf32.dll

    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2004-08-04 12:00 94784 --sh--w- c:\windows\twain.dll
    2008-04-14 00:12 50688 --sh--w- c:\windows\twain_32.dll
    2008-04-14 00:11 1028096 --sh--w- c:\windows\system32\mfc42.dll
    2008-04-14 00:12 57344 --sh--w- c:\windows\system32\msvcirt.dll
    2008-04-14 00:12 413696 --sh--w- c:\windows\system32\msvcp60.dll
    2008-04-14 00:12 551936 --sh--w- c:\windows\system32\oleaut32.dll
    2008-04-14 00:12 11776 --sh--w- c:\windows\system32\regsvr32.exe
    .

    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-10-13 39408]
    "VeohPlugin"="c:\program files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe" [2010-04-28 2633976]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "SoundMan"="SOUNDMAN.EXE" [2005-11-11 90112]
    "TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2010-01-14 198160]
    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
    "Share-to-Web Namespace Daemon"="c:\program files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" [2001-07-03 57344]
    "NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
    "DVDTray"="c:\program files\Ahead\ODD Toolkit\DVDTray.exe" [2004-09-03 65536]
    "WorksFUD"="c:\program files\Microsoft Works\wkfud.exe" [2001-10-05 24576]
    "Microsoft Works Portfolio"="c:\program files\Microsoft Works\WksSb.exe" [2001-08-22 331830]
    "Microsoft Works Update Detection"="c:\program files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe" [2001-08-16 28738]
    "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2003-07-28 4841472]
    "nwiz"="nwiz.exe" [2003-07-28 323584]
    "AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2010-04-13 47392]
    "MSN Toolbar"="c:\program files\MSN Toolbar\Platform\4.0.0379.0\mswinext.exe" [2009-12-09 240992]
    "Microsoft Default Manager"="c:\program files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" [2009-07-17 288080]
    "lxdnmon.exe"="c:\program files\Lexmark 2600 Series\lxdnmon.exe" [2010-02-04 660136]
    "lxdnamon"="c:\program files\Lexmark 2600 Series\lxdnamon.exe" [2010-02-04 16040]
    "PhotoExplosionCalCheck"="c:\program files\Nova Development\Photo Explosion 3.0 SE\calcheck.exe" [2006-09-20 69632]
    "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-08-10 421888]
    "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-09-01 421160]
    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-09-23 35760]
    "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-21 932288]

    c:\documents and settings\Owner.OWNER-58B0B3773\Start Menu\Programs\Startup\
    Cyber-shot Viewer Media Check Tool.lnk - c:\program files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe [2010-1-13 155648]
    PowerReg Scheduler.exe [2010-2-17 256000]

    c:\documents and settings\All Users.WINDOWS\Start Menu\Programs\Startup\
    Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]
    Microsoft Works Calendar Reminders.lnk - c:\program files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe [2001-8-6 24633]

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"=
    "c:\\Program Files\\AIM7\\aim.exe"=
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
    "c:\\Program Files\\BitTorrent\\bittorrent.exe"=
    "c:\\Program Files\\Call of Duty\\CoDMP.exe"=
    "c:\\Program Files\\Veoh Networks\\VeohWebPlayer\\veohwebplayer.exe"=
    "c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
    "c:\\WINDOWS\\system32\\lxdncoms.exe"=
    "c:\\Program Files\\Lexmark 2600 Series\\lxdnmon.exe"=
    "c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdnpswx.exe"=
    "c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdntime.exe"=
    "c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdnjswx.exe"=
    "c:\\Program Files\\Lexmark 2600 Series\\frun.exe"=
    "c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdnwbgw.exe"=
    "c:\\Program Files\\iTunes\\iTunes.exe"=
    "c:\\Program Files\\LimeWire\\LimeWire.exe"=

    S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [1/13/2010 7:37 PM 135664]
    S2 lxdn_device;lxdn_device;c:\windows\system32\lxdncoms.exe -service --> c:\windows\system32\lxdncoms.exe -service [?]
    S2 lxdnCATSCustConnectService;lxdnCATSCustConnectService;c:\windows\system32\spool\drivers\w32x86\3\lxdnserv.exe [8/11/2010 10:07 PM 94208]
    .
    Contents of the 'Scheduled Tasks' folder

    2010-09-28 c:\windows\Tasks\AppleSoftwareUpdate.job
    - c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 20:34]

    2010-10-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-14 02:37]

    2010-10-11 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-14 02:37]
    .
    .
    ------- Supplementary Scan -------
    .
    uStart Page = hxxp://www.aol.com/
    uInternet Settings,ProxyOverride = *.local
    IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
    .
    - - - - ORPHANS REMOVED - - - -

    WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
    AddRemove-avast5 - c:\program files\Alwil Software\Avast5\aswRunDll.exe


    .
    --------------------- LOCKED REGISTRY KEYS ---------------------

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10i_ActiveX.exe,-101"

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
    "Enabled"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
    @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10i_ActiveX.exe"

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker4"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    --------------------- DLLs Loaded Under Running Processes ---------------------

    - - - - - - - > 'explorer.exe'(1988)
    c:\windows\system32\WININET.dll
    c:\windows\system32\ieframe.dll
    .
    Completion time: 2010-10-13 16:00:35
    ComboFix-quarantined-files.txt 2010-10-13 23:00
    ComboFix2.txt 2010-01-02 23:31

    Pre-Run: 61,747,015,680 bytes free
    Post-Run: 61,726,007,296 bytes free

    - - End Of File - - AE90D2F1B8C6A875954E32201B96F94F

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Re-running ComboFix to remove infections:

    1. Close any open browsers.
    2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
    3. Open notepad and copy/paste the text in the quotebox below into it:

      Folder::
      c:\documents and settings\Owner.OWNER-58B0B3773\Application Data\AVP 2009


    4. Save this as CFScript.txt, in the same location as ComboFix.exe

      Freezing computer; Slow; Virus? Cfscriptb4

    5. Referring to the picture above, drag CFScript into ComboFix.exe
    6. When finished, it shall produce a log for you at C:\ComboFix.txt
    7. Please post the contents of the log in your next reply.

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    ComboFix 10-10-12.03 - Owner 10/13/2010 19:54:47.2.1 - x86
    Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.511.172 [GMT -7:00]
    Running from: c:\documents and settings\Owner.OWNER-58B0B3773\Desktop\commy.exe
    Command switches used :: c:\documents and settings\Owner.OWNER-58B0B3773\Desktop\CFScript.txt
    .

    ((((((((((((((((((((((((( Files Created from 2010-09-14 to 2010-10-14 )))))))))))))))))))))))))))))))
    .

    2010-10-13 01:27 . 2010-10-13 01:40 -------- d-----w- C:\commy
    2010-10-12 00:37 . 2010-10-12 00:38 -------- d-----w- c:\documents and settings\Administrator.OWNER-58B0B3773
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin7.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin6.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin5.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin4.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin3.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin2.dll
    2010-09-24 01:19 . 2010-09-24 01:19 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin.dll
    2010-09-23 01:10 . 2010-09-23 01:10 103864 ----a-w- c:\program files\Internet Explorer\PLUGINS\nppdf32.dll

    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2004-08-04 12:00 94784 --sh--w- c:\windows\twain.dll
    2008-04-14 00:12 50688 --sh--w- c:\windows\twain_32.dll
    2008-04-14 00:11 1028096 --sh--w- c:\windows\system32\mfc42.dll
    2008-04-14 00:12 57344 --sh--w- c:\windows\system32\msvcirt.dll
    2008-04-14 00:12 413696 --sh--w- c:\windows\system32\msvcp60.dll
    2008-04-14 00:12 551936 --sh--w- c:\windows\system32\oleaut32.dll
    2008-04-14 00:12 11776 --sh--w- c:\windows\system32\regsvr32.exe
    .

    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-10-13 39408]
    "VeohPlugin"="c:\program files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe" [2010-04-28 2633976]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "SoundMan"="SOUNDMAN.EXE" [2005-11-11 90112]
    "TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2010-01-14 198160]
    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
    "Share-to-Web Namespace Daemon"="c:\program files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" [2001-07-03 57344]
    "NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
    "DVDTray"="c:\program files\Ahead\ODD Toolkit\DVDTray.exe" [2004-09-03 65536]
    "WorksFUD"="c:\program files\Microsoft Works\wkfud.exe" [2001-10-05 24576]
    "Microsoft Works Portfolio"="c:\program files\Microsoft Works\WksSb.exe" [2001-08-22 331830]
    "Microsoft Works Update Detection"="c:\program files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe" [2001-08-16 28738]
    "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2003-07-28 4841472]
    "nwiz"="nwiz.exe" [2003-07-28 323584]
    "AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2010-04-13 47392]
    "MSN Toolbar"="c:\program files\MSN Toolbar\Platform\4.0.0379.0\mswinext.exe" [2009-12-09 240992]
    "Microsoft Default Manager"="c:\program files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" [2009-07-17 288080]
    "lxdnmon.exe"="c:\program files\Lexmark 2600 Series\lxdnmon.exe" [2010-02-04 660136]
    "lxdnamon"="c:\program files\Lexmark 2600 Series\lxdnamon.exe" [2010-02-04 16040]
    "PhotoExplosionCalCheck"="c:\program files\Nova Development\Photo Explosion 3.0 SE\calcheck.exe" [2006-09-20 69632]
    "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-08-10 421888]
    "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-09-01 421160]
    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-09-23 35760]
    "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-21 932288]

    c:\documents and settings\Owner.OWNER-58B0B3773\Start Menu\Programs\Startup\
    Cyber-shot Viewer Media Check Tool.lnk - c:\program files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe [2010-1-13 155648]
    PowerReg Scheduler.exe [2010-2-17 256000]

    c:\documents and settings\All Users.WINDOWS\Start Menu\Programs\Startup\
    Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]
    Microsoft Works Calendar Reminders.lnk - c:\program files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe [2001-8-6 24633]

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"=
    "c:\\Program Files\\AIM7\\aim.exe"=
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
    "c:\\Program Files\\BitTorrent\\bittorrent.exe"=
    "c:\\Program Files\\Call of Duty\\CoDMP.exe"=
    "c:\\Program Files\\Veoh Networks\\VeohWebPlayer\\veohwebplayer.exe"=
    "c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
    "c:\\WINDOWS\\system32\\lxdncoms.exe"=
    "c:\\Program Files\\Lexmark 2600 Series\\lxdnmon.exe"=
    "c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdnpswx.exe"=
    "c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdntime.exe"=
    "c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdnjswx.exe"=
    "c:\\Program Files\\Lexmark 2600 Series\\frun.exe"=
    "c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdnwbgw.exe"=
    "c:\\Program Files\\iTunes\\iTunes.exe"=
    "c:\\Program Files\\LimeWire\\LimeWire.exe"=

    R2 lxdn_device;lxdn_device;c:\windows\system32\lxdncoms.exe -service --> c:\windows\system32\lxdncoms.exe -service [?]
    R2 lxdnCATSCustConnectService;lxdnCATSCustConnectService;c:\windows\system32\spool\drivers\w32x86\3\lxdnserv.exe [8/11/2010 10:07 PM 94208]
    S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [1/13/2010 7:37 PM 135664]
    .
    Contents of the 'Scheduled Tasks' folder

    2010-09-28 c:\windows\Tasks\AppleSoftwareUpdate.job
    - c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 20:34]

    2010-10-14 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-14 02:37]

    2010-10-11 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-14 02:37]
    .
    .
    ------- Supplementary Scan -------
    .
    uStart Page = hxxp://www.aol.com/
    uInternet Settings,ProxyOverride = *.local
    IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
    .
    - - - - ORPHANS REMOVED - - - -

    WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)


    .
    --------------------- LOCKED REGISTRY KEYS ---------------------

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10i_ActiveX.exe,-101"

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
    "Enabled"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
    @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10i_ActiveX.exe"

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker4"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    Completion time: 2010-10-13 20:10:51
    ComboFix-quarantined-files.txt 2010-10-14 03:10
    ComboFix2.txt 2010-10-13 23:00
    ComboFix3.txt 2010-01-02 23:31

    Pre-Run: 61,178,273,792 bytes free
    Post-Run: 61,165,154,304 bytes free

    - - End Of File - - 33EFD45276C09B3073E0C37525CBC0A0

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Please run a free online scan with the ESET Online Scanner
    Note: You will need to use Internet Explorer for this scan

    • Tick the box next to YES, I accept the Terms of Use
    • Click Start
    • When asked, allow the ActiveX control to install
    • Click Start
    • Make sure that the options Remove found threats and the option Scan unwanted applications is checked
    • Click Scan (This scan can take several hours, so please be patient)
    • Once the scan is completed, you may close the window
    • Use Notepad to open the logfile located at C:\Program Files\EsetOnlineScanner\log.txt
    • Copy and paste that log as a reply to this topic

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    I can't complete the scan, it keeps freezing on me.

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Try this

    Please go to Kaspersky website and perform an online antivirus scan.

    1. Read through the requirements and privacy statement and click on Accept button.
    2. It will start downloading and installing the scanner and virus definitions. You will be prompted to install an application from Kaspersky. Click Run.
    3. When the downloads have finished, click on Settings.
    4. Make sure these boxes are checked (ticked). If they are not, please tick them and click on the Save button:
        Spyware, Adware, Dialers, and other potentially dangerous programs
        Archives
        Mail databases
  • Click on My Computer under Scan.
  • Once the scan is complete, it will display the results. Click on View Scan Report.
  • You will see a list of infected items there. Click on Save Report As....
  • Save this report to a convenient place. Change the Files of type to Text file (.txt) before clicking on the Save button.
  • Please post this log in your next reply.
  • descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    I can't get passed downloading the updates, the computer freezes, and now I can't get the website to update any longer.

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Before we start fixing anything you should print out these instructions or copy them to a NotePad file so they will be accessible. Some steps will require you to disconnect from the Internet or use Safe Mode and you will not have access to this page.

    Please download Dr.Web CureIt and save it to your desktop. DO NOT perform a scan yet.
    alternate download link
    Note: The file will be randomly named (i.e. 5mkuvc4z.exe).

    Reboot your computer in "Safe Mode" using the F8 method. To do this, restart your computer and after hearing your computer beep once during startup (but before the Windows icon appears) press the F8 key repeatedly. A menu will appear with several options. Use the arrow keys to navigate and select the option to run Windows in "Safe Mode".

    Scan with Dr.Web CureIt as follows:

    • Double-click on the randomly named file to open the program and click Start. (There is no need to update if you just downloaded the most current version
    • Read the anti-virus check by DrWeb scanner prompt and click Ok where asked to Start scan now? Allow the setup.exe to load if asked by any of your security programs.
    • The Express scan will automatically begin.
      (This is a short scan of files currently running in memory, boot sectors, and targeted folders).
    • If prompted to dowload the Full version Free Trial, ignore and click the X to close the window.
    • If an infected object is found, you will be prompted to move anything that cannot be cured. Click Yes to All. (This will move any detected files to the C:\Documents and Settings\userprofile\DoctorWeb\Quarantine folder if they can't be cured)



    • After the Express Scan is finished, put a check next to Complete scan to scan all local disks and removable media.
    • In the top menu, click Settings > Change settings, and uncheck "Heuristic analysis" under the "Scanning" tab, then click Apply, Ok.
    • Back at the main window, click the green arrow "Start Scanning" button on the right under the Dr.Web logo.
    • Please be patient as this scan could take a long time to complete.
    • When the scan has finished, a message will be displayed at the bottom indicating if any viruses were found.
    • Click Select All, then choose Cure > Move incurable.
    • In the top menu, click file and choose save report list.
    • Save the DrWeb.csv report to your desktop.
    • Exit Dr.Web Cureit when done.
    • Important! Reboot your computer because it could be possible that files in use will be moved/deleted during reboot.
    • After reboot, post the contents of the log from Dr.Web in your next reply. (You can use Notepad to open the DrWeb.cvs report)

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Well the scan didn't finish all of the way so I'm not too sure what to do now but I checked in the program files and found a log there. The scan wasn't long but it's something so I'll post what was there. The scan stopped and started a few times, since I turned off the computer when it froze, waited a few moments and started another one in attempt to finish it all, so I think this is at least three scan attempts, I'm not too sure.

    =============================================================================
    Dr.Web Scanner for Windows v5.00.4 (5.00.4.06300)
    (c) Doctor Web, Ltd., 1992-2009
    Log generated on: 2009-08-06, 18:13:40 [Owner]
    Command line: "C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\6thu5.exe" /lng /ini:setup_XP.ini
    Operating system: Windows XP Home Edition x86 (Build 2600), Service Pack 3
    =============================================================================
    DwShield started
    Engine version: 5.00 (5.00.0.12182)
    Engine API version: 2.02
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\1a21e52f - 3229 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\81c142b3 - 6071 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\a3423e9b - 4983 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\608fd496 - 2139 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\1bf7b7e6 - 3732 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\b32bb323 - 6424 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\6392c398 - 5242 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\7e2335c7 - 2770 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\d791899c - 2685 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\3c52d86a - 3327 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\df48875c - 4697 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\e3786d3c - 2792 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\018037c3 - 5841 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\5625e7a0 - 2260 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\139f6b76 - 4796 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\ad998546 - 5098 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\f29315b3 - 4891 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\286d6c79 - 5033 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\7e030c47 - 3254 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\ca02c0e7 - 5206 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\52b18f66 - 7585 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\3e1efceb - 5298 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\3d172356 - 5947 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\22944197 - 6039 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\109344a8 - 5309 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\5f740792 - 3511 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\977b0c3c - 2495 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\00ed8c82 - 4565 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\02757c55 - 4467 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\4a205d58 - 5196 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\a32387fc - 2359 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\e85cb2db - 1938 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\a30d4c0f - 3335 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\1bb42c25 - 3185 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\5b175b65 - 1468 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\1b9bacdd - 280 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\ce798895 - 567 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\c5dbe35a - 1194 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\c874f086 - 423328 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\391ff965 - 102 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\0a0f0eb2 - 665 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\c069f408 - 626 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\7b970d8d - 49 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\0ad4b000 - 712 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\fb171027 - 925 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\9a003018 - 840 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\abdd7dff - 3316 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\0cb936b8 - 19303 virus records
    Total virus records: 599074
    [Self-checking] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\6thu5.exe
    Key file: C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\setup.key
    License key number: 0010867178
    Registered to: A User
    License key activates on: 2009-06-03
    License key expires on: 2009-12-04
    Process in memory: System:4 - OK
    Process in memory: C:\Program Files\Internet Explorer\iexplore.exe:156 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\l9gl97.exe:204 - OK
    Process in memory: C:\Program Files\Java\jre6\bin\jqs.exe:248 - OK
    Process in memory: C:\Program Files\McAfee\MBK\MBackMonitor.exe:320 - OK
    Process in memory: \SystemRoot\System32\smss.exe:464 - OK
    Process in memory: \??\C:\WINDOWS\system32\csrss.exe:528 - OK
    Process in memory: c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe:532 - OK
    Process in memory: \??\C:\WINDOWS\system32\winlogon.exe:552 - OK
    Process in memory: C:\WINDOWS\system32\services.exe:596 - OK
    Process in memory: C:\WINDOWS\system32\lsass.exe:608 - OK
    Process in memory: C:\Program Files\AIM6\aolsoftware.exe:644 - OK
    Process in memory: C:\Documents and Settings\Owner\My Documents\don't delete me\avg_free_stb_all_8_30_cnet.exe:648 - OK
    Process in memory: C:\WINDOWS\system32\svchost.exe:756 - OK
    Process in memory: C:\WINDOWS\system32\svchost.exe:816 - OK
    Process in memory: C:\Documents and Settings\Owner\My Documents\don't delete me\n242578z.exe:844 - OK
    Process in memory: C:\WINDOWS\System32\svchost.exe:884 - OK
    Process in memory: c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe:912 - OK
    Process in memory: C:\WINDOWS\system32\svchost.exe:916 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\is-9N31P.tmp\spybotsd162.tmp:992 - OK
    Process in memory: C:\WINDOWS\System32\svchost.exe:1084 - OK
    Process in memory: C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe:1112 - OK
    Process in memory: C:\Program Files\McAfee\MPF\MPFSrv.exe:1168 - OK
    Process in memory: C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe:1196 - OK
    Process in memory: C:\WINDOWS\System32\svchost.exe:1240 - OK
    Process in memory: C:\WINDOWS\Explorer.exe:1276 - OK
    Process in memory: C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe:1356 - OK
    Process in memory: C:\WINDOWS\System32\svchost.exe:1476 - OK
    Process in memory: C:\Program Files\Zune\ZuneLauncher.exe:1556 - OK
    Process in memory: C:\Program Files\Common Files\Real\Update_OB\realsched.exe:1564 - OK
    Process in memory: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe:1592 - OK
    Process in memory: C:\WINDOWS\system32\ctfmon.exe:1600 - OK
    Process in memory: C:\Program Files\AIM6\aim6.exe:1608 - OK
    Process in memory: C:\WINDOWS\system32\nvsvc32.exe:1656 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\b.exe:1700 - OK
    Process in memory: C:\WINDOWS\System32\svchost.exe:1784 - OK
    Process in memory: C:\WINDOWS\system32\ctfmon.exe:1816 - OK
    Process in memory: C:\Documents and Settings\Owner\My Documents\don't delete me\spybotsd162.exe:1932 - OK
    Process in memory: C:\WINDOWS\system32\spoolsv.exe:2044 - OK
    Process in memory: C:\Program Files\Viewpoint\Common\ViewpointService.exe:2080 - OK
    Process in memory: c:\WINDOWS\system32\ZuneBusEnum.exe:2156 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\is-GKF5D.tmp\spybotsd162[1].tmp:2456 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\6thu5.exe:2812 - OK
    Process in memory: c:\PROGRA~1\mcafee.com\agent\mcagent.exe:3016 - OK
    Process in memory: C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe:3096 - OK
    Process in memory: C:\Program Files\Alwil Software\Avast4\ashWebSv.exe:3140 - OK
    Process in memory: C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\0CHG5EE9\spybotsd162[1].exe:3288 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\7zS52.tmp\stub.exe:3428 - OK
    Process in memory: C:\WINDOWS\System32\alg.exe:3468 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\is-SJHP2.tmp\spybotsd162.tmp:3532 - OK
    Process in memory: C:\WINDOWS\system32\msiexec.exe:3596 - OK
    Process in memory: C:\Documents and Settings\Owner\My Documents\don't delete me\spybotsd162.exe:3980 - OK
    Process in memory: C:\WINDOWS\system32\rundll32.exe:4004 - OK
    Process in memory: C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe:4044 - OK
    [Memory scanning] No viruses found
    Master Boot Record HDD1 - OK
    Active OS/2 or WinNT Boot Sector HDD1 - OK

    [Scan path] c:\documents and settings\all users\start menu\programs\startup\desktop.ini
    c:\documents and settings\all users\start menu\programs\startup\desktop.ini - OK

    [Scan path] c:\documents and settings\default user\start menu\programs\startup\desktop.ini
    c:\documents and settings\default user\start menu\programs\startup\desktop.ini - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\7zs52.tmp\avgstubres.dll
    c:\documents and settings\owner\local settings\temp\7zs52.tmp\avgstubres.dll - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\7zs52.tmp\stub.exe
    c:\documents and settings\owner\local settings\temp\7zs52.tmp\stub.exe - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\b.exe
    c:\documents and settings\owner\local settings\temp\b.exe packed by FLY-CODE
    >c:\documents and settings\owner\local settings\temp\b.exe - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\hgu8ynfx.dll
    c:\documents and settings\owner\local settings\temp\hgu8ynfx.dll packed by ASPACK
    >c:\documents and settings\owner\local settings\temp\hgu8ynfx.dll - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\is-47kad.tmp\isxdl.dll
    c:\documents and settings\owner\local settings\temp\is-47kad.tmp\isxdl.dll - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\is-9n31p.tmp\spybotsd162.tmp
    c:\documents and settings\owner\local settings\temp\is-9n31p.tmp\spybotsd162.tmp - archive BINARYRES
    >c:\documents and settings\owner\local settings\temp\is-9n31p.tmp\spybotsd162.tmp/data001 - OK
    >c:\documents and settings\owner\local settings\temp\is-9n31p.tmp\spybotsd162.tmp/data005 packed by BINARYRES
    >>c:\documents and settings\owner\local settings\temp\is-9n31p.tmp\spybotsd162.tmp/data005 - unpack error - archive corrupted

    [Scan path] c:\documents and settings\owner\local settings\temp\is-g6mu2.tmp\isxdl.dll
    c:\documents and settings\owner\local settings\temp\is-g6mu2.tmp\isxdl.dll - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\is-gkf5d.tmp\spybotsd162[1].tmp
    c:\documents and settings\owner\local settings\temp\is-gkf5d.tmp\spybotsd162[1].tmp - archive BINARYRES
    >c:\documents and settings\owner\local settings\temp\is-gkf5d.tmp\spybotsd162[1].tmp/data001 - OK
    >c:\documents and settings\owner\local settings\temp\is-gkf5d.tmp\spybotsd162[1].tmp/data005 packed by BINARYRES
    >>c:\documents and settings\owner\local settings\temp\is-gkf5d.tmp\spybotsd162[1].tmp/data005 - unpack error - archive corrupted

    [Scan path] c:\documents and settings\owner\local settings\temp\is-q38m0.tmp\isxdl.dll
    c:\documents and settings\owner\local settings\temp\is-q38m0.tmp\isxdl.dll - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\is-sjhp2.tmp\spybotsd162.tmp
    c:\documents and settings\owner\local settings\temp\is-sjhp2.tmp\spybotsd162.tmp - archive BINARYRES
    >c:\documents and settings\owner\local settings\temp\is-sjhp2.tmp\spybotsd162.tmp/data001 - OK
    >c:\documents and settings\owner\local settings\temp\is-sjhp2.tmp\spybotsd162.tmp/data005 packed by BINARYRES
    >>c:\documents and settings\owner\local settings\temp\is-sjhp2.tmp\spybotsd162.tmp/data005 - unpack error - archive corrupted

    [Scan path] c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe
    c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe - archive BINARYRES
    >c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe/data001 packed by ASPACK
    >>c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe/data001 - OK
    >c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe/data002 - OK
    >c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe/data003 - OK
    c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\rarsfx0\l9gl97.exe
    c:\documents and settings\owner\local settings\temp\rarsfx0\l9gl97.exe - OK

    [Scan path] c:\documents and settings\owner\local settings\temporary internet files\content.ie5\0chg5ee9\spybotsd162[1].exe
    c:\documents and settings\owner\local settings\temporary internet files\content.ie5\0chg5ee9\spybotsd162[1].exe packed by BINARYRES
    >c:\documents and settings\owner\local settings\temporary internet files\content.ie5\0chg5ee9\spybotsd162[1].exe - archive INNO SETUP
    >c:\documents and settings\owner\local settings\temporary internet files\content.ie5\0chg5ee9\spybotsd162[1].exe - OK
    c:\documents and settings\owner\local settings\temporary internet files\content.ie5\0chg5ee9\spybotsd162[1].exe:Zone.Identifier - OK

    -----------------------------------------------------------------------------
    Scan statistics
    -----------------------------------------------------------------------------
    Scanned: 73
    Infected: 0
    Modifications: 0
    Suspicious: 0
    Adware: 0
    Dialers: 0
    Jokes: 0
    Riskware: 0
    Hacktools: 0
    Cured: 0
    Deleted: 0
    Renamed: 0
    Moved: 0
    Ignored: 0
    Scan speed: 121 Kb/s
    Scan time: 00:00:39
    -----------------------------------------------------------------------------

    Scanning interrupted by user! - no viruses found
    Process in memory: System:4 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\l9gl97.exe:204 - OK
    Process in memory: C:\Program Files\Java\jre6\bin\jqs.exe:248 - OK
    Process in memory: C:\Program Files\McAfee\MBK\MBackMonitor.exe:320 - OK
    Process in memory: \SystemRoot\System32\smss.exe:464 - OK
    Process in memory: \??\C:\WINDOWS\system32\csrss.exe:528 - OK
    Process in memory: c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe:532 - OK
    Process in memory: \??\C:\WINDOWS\system32\winlogon.exe:552 - OK
    Process in memory: C:\WINDOWS\system32\services.exe:596 - OK
    Process in memory: C:\WINDOWS\system32\lsass.exe:608 - OK
    Process in memory: C:\Program Files\AIM6\aolsoftware.exe:644 - OK
    Process in memory: C:\Documents and Settings\Owner\My Documents\don't delete me\avg_free_stb_all_8_30_cnet.exe:648 - OK
    Process in memory: C:\WINDOWS\system32\svchost.exe:756 - OK
    Process in memory: C:\WINDOWS\system32\svchost.exe:816 - OK
    Process in memory: C:\Documents and Settings\Owner\My Documents\don't delete me\n242578z.exe:844 - OK
    Process in memory: C:\WINDOWS\System32\svchost.exe:884 - OK
    Process in memory: c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe:912 - OK
    Process in memory: C:\WINDOWS\system32\svchost.exe:916 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\is-9N31P.tmp\spybotsd162.tmp:992 - OK
    Process in memory: C:\WINDOWS\System32\svchost.exe:1084 - OK
    [Memory scanning] No viruses found

    -----------------------------------------------------------------------------
    Scan statistics
    -----------------------------------------------------------------------------
    Scanned: 20
    Infected: 0
    Modifications: 0
    Suspicious: 0
    Adware: 0
    Dialers: 0
    Jokes: 0
    Riskware: 0
    Hacktools: 0
    Cured: 0
    Deleted: 0
    Renamed: 0
    Moved: 0
    Ignored: 0
    Scan speed: 0 Kb/s
    Scan time: 00:00:35
    -----------------------------------------------------------------------------

    Scanning interrupted by user! - no viruses found
    =============================================================================
    Total session statistics
    =============================================================================
    Scanned: 93
    Infected: 0
    Modifications: 0
    Suspicious: 0
    Adware: 0
    Dialers: 0
    Jokes: 0
    Riskware: 0
    Hacktools: 0
    Cured: 0
    Deleted: 0
    Renamed: 0
    Moved: 0
    Ignored: 0
    Scan speed: 135 Kb/s
    Scan time: 00:00:35
    =============================================================================

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Dr.Web Scanner for Windows v5.00.4 (5.00.4.06300)
    (c) Doctor Web, Ltd., 1992-2009
    Log generated on: 2009-08-06, 18:30:41 [Owner]
    Command line: "C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\6thu5.exe" /lng /ini:setup_XP.ini
    Operating system: Windows XP Home Edition x86 (Build 2600), Service Pack 3
    =============================================================================
    DwShield started
    Engine version: 5.00 (5.00.0.12182)
    Engine API version: 2.02
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\1a21e52f - 3229 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\81c142b3 - 6071 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\a3423e9b - 4983 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\608fd496 - 2139 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\1bf7b7e6 - 3732 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\b32bb323 - 6424 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\6392c398 - 5242 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\7e2335c7 - 2770 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\d791899c - 2685 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\3c52d86a - 3327 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\df48875c - 4697 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\e3786d3c - 2792 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\018037c3 - 5841 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\5625e7a0 - 2260 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\139f6b76 - 4796 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\ad998546 - 5098 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\f29315b3 - 4891 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\286d6c79 - 5033 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\7e030c47 - 3254 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\ca02c0e7 - 5206 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\52b18f66 - 7585 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\3e1efceb - 5298 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\3d172356 - 5947 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\22944197 - 6039 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\109344a8 - 5309 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\5f740792 - 3511 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\977b0c3c - 2495 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\00ed8c82 - 4565 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\02757c55 - 4467 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\4a205d58 - 5196 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\a32387fc - 2359 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\e85cb2db - 1938 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\a30d4c0f - 3335 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\1bb42c25 - 3185 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\5b175b65 - 1468 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\1b9bacdd - 280 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\ce798895 - 567 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\c5dbe35a - 1194 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\c874f086 - 423328 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\391ff965 - 102 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\0a0f0eb2 - 665 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\c069f408 - 626 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\7b970d8d - 49 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\0ad4b000 - 712 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\fb171027 - 925 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\9a003018 - 840 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\abdd7dff - 3316 virus records
    [Virus database] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\0cb936b8 - 19303 virus records
    Total virus records: 599074
    [Self-checking] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\6thu5.exe
    Key file: C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\setup.key
    License key number: 0010867178
    Registered to: A User
    License key activates on: 2009-06-03
    License key expires on: 2009-12-04
    Process in memory: System:4 - OK
    Process in memory: \SystemRoot\System32\smss.exe:376 - OK
    Process in memory: \??\C:\WINDOWS\system32\csrss.exe:440 - OK
    Process in memory: \??\C:\WINDOWS\system32\winlogon.exe:464 - OK
    Process in memory: c:\PROGRA~1\mcafee\msc\mcuimgr.exe:484 - OK
    Process in memory: C:\WINDOWS\system32\services.exe:508 - OK
    Process in memory: C:\WINDOWS\system32\lsass.exe:520 - OK
    Process in memory: C:\WINDOWS\system32\svchost.exe:660 - OK
    Process in memory: C:\WINDOWS\system32\svchost.exe:732 - OK
    Process in memory: C:\WINDOWS\System32\svchost.exe:844 - OK
    Process in memory: C:\WINDOWS\System32\svchost.exe:856 - OK
    Process in memory: C:\WINDOWS\System32\svchost.exe:972 - OK
    Process in memory: C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe:1088 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\6thu5.exe:1124 - OK
    Process in memory: C:\Program Files\McAfee\MPF\MPFSrv.exe:1148 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\l9gl97.exe:1396 - OK
    Process in memory: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe:1440 - OK
    Process in memory: C:\WINDOWS\Explorer.exe:1508 - OK
    Process in memory: c:\PROGRA~1\mcafee.com\agent\mcagent.exe:1592 - OK
    Process in memory: C:\Documents and Settings\Owner\My Documents\don't delete me\n242578z.exe:1776 - OK
    Process in memory: C:\DOCUME~1\Owner\LOCALS~1\Temp\AVGDownloadManager\packages\35\setup.exe:1920 - OK
    [Memory scanning] No viruses found
    Master Boot Record HDD1 - OK
    Active OS/2 or WinNT Boot Sector HDD1 - OK

    [Scan path] c:\documents and settings\all users\start menu\programs\startup\desktop.ini
    c:\documents and settings\all users\start menu\programs\startup\desktop.ini - OK

    [Scan path] c:\documents and settings\default user\start menu\programs\startup\desktop.ini
    c:\documents and settings\default user\start menu\programs\startup\desktop.ini - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\avgdownloadmanager\update\avgstubres.dll
    c:\documents and settings\owner\local settings\temp\avgdownloadmanager\update\avgstubres.dll - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\avgdownloadmanager\update\stub.exe
    c:\documents and settings\owner\local settings\temp\avgdownloadmanager\update\stub.exe - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\hgu8ynfx.dll
    c:\documents and settings\owner\local settings\temp\hgu8ynfx.dll packed by ASPACK
    >c:\documents and settings\owner\local settings\temp\hgu8ynfx.dll - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe
    c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe - archive BINARYRES
    >c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe/data001 packed by ASPACK
    >>c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe/data001 - OK
    >c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe/data002 - OK
    >c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe/data003 - OK
    c:\documents and settings\owner\local settings\temp\rarsfx0\6thu5.exe - OK

    [Scan path] c:\documents and settings\owner\local settings\temp\rarsfx0\l9gl97.exe
    c:\documents and settings\owner\local settings\temp\rarsfx0\l9gl97.exe - OK

    [Scan path] c:\documents and settings\owner\my documents\don't delete me\n242578z.exe
    c:\documents and settings\owner\my documents\don't delete me\n242578z.exe - archive ZIP
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/be-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/bg-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/cn-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/cs-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/de-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/dwebio16.dll - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/dwebio32.dll packed by ASPACK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/dwebio32.dll - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/dwebllio.dll packed by ASPACK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/dwebllio.dll - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/el-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm - archive CHM
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/#IDXHDR - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/#ITBITS - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/#IVB - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/#STRINGS - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/#SYSTEM - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/#TOPICS - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/#URLSTR - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/#URLTBL - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/#WINDOWS - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/$FIftiMain - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/$OBJINST - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/$WWAssociativeLinks/BTree - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/$WWAssociativeLinks/Data - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/$WWAssociativeLinks/Map - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/$WWAssociativeLinks/Property - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/$WWKeywordLinks/Property - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/bull.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/butpause2.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/butstart1.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/butstop3.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/com_params.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/CSHelp.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/default.css - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/en-drwebgui.hhc - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/en-drwebgui_popup_text.js - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/helpman_topicinit.js - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/idd_aboutbox.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/idd_curesettings.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/idd_dialog_main.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/idd_dialog_scan.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/idd_dialog_scan_path.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/idd_dialog_stat.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/idd_proppage_actions.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/idd_proppage_common.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/idd_proppage_log.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/idd_proppage_scan.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/idd_proppage_types.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/intro.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/legal.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/open.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/ph_adv.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc01.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc02.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc03.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc_action.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc_action_adv.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc_drweb_logo.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc_general.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc_inf.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc_log.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc_path_mask.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc_scan.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc_stat.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/sc_types.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/scan_params.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/scan_settings.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm/scanning.htm - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/en-drwebgui.chm - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/eo-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/es-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/et-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/fr-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/hu-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/it-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ja-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ko-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/lt-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/lv-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/nl-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/no-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/pl-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/pt-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm - archive CHM
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/#IDXHDR - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/#ITBITS - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/#IVB - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/#STRINGS - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/#SYSTEM - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/#TOPICS - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/#URLSTR - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/#URLTBL - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/#WINDOWS - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/$FIftiMain - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/$OBJINST - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/$WWAssociativeLinks/BTree - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/$WWAssociativeLinks/Data - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/$WWAssociativeLinks/Map - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/$WWAssociativeLinks/Property - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/$WWKeywordLinks/Property - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/bull.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/butpause.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/butstart.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/butstop.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/com_params.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/CSHelp.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/default.css - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/helpman_topicinit.js - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/idd_aboutbox.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/idd_curesettings.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/idd_dialog_main.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/idd_dialog_scan.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/idd_dialog_scan_path.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/idd_dialog_stat.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/idd_proppage_actions.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/idd_proppage_common.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/idd_proppage_log.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/idd_proppage_scan.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/idd_proppage_types.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/intro.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/open.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/ph_adv.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/ru-drwebgui.hhc - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/ru-drwebgui_popup_text.js - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc01.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc02.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc03.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc_action.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc_action_adv.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc_drweb_logo.zoom76.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc_general.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc_inf.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc_log.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc_path_mask.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc_scan.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc_stat.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/sc_types.png - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/scan_params.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/scan_settings.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/scanning.htm - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm/topic.htm - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-drwebgui.chm - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ru-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/setup.dll - archive BINARYRES
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/setup.dll/data001 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/setup.dll - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/setup.key - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/setup_me.ini - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/setup_xp.ini - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/sk-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/tr-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/uk-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/uz-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/zh-scan - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat - archive ZIP
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_cureit.ico - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ar-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ar-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ar-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ar-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ar-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ar-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ar.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/az-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/az-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/az-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/az-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/az-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/az-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/az.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/be-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/be-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/be-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/be-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/be-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/be-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/be.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/bg-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/bg-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/bg-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/bg-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/bg-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/bg-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/bg.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cn-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cn-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cn-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cn-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cn.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cs-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cs-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cs-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cs-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cs-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cs-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cs.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/de-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/de-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/de-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/de-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/de-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/de-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/de.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/el-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/el-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/el-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/el-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/el-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/el-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/el.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/en-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/en-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/en-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/en-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/en-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/en-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/en.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/eo-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/eo-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/eo-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/eo-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/eo-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/eo-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/eo.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/es-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/es-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/es-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/es-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/es-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/es-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/es.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/et-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/et-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/et-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/et-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/et-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/et-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/et.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fa-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fa-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fa-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fa-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fa-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fa-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fa.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fi-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fi-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fi-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fi-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fi-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fi-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fi.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fr-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fr-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fr-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fr-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fr-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fr-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fr.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hu-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hu-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hu-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hu-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hu-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hu-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hu.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hy-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hy-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hy-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hy-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hy-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hy-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hy.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/it-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/it-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/it-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/it-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/it-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/it.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ja-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ja-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ja-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ja-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ja.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ka-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ka-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ka-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ka-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ka-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ka-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ka.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ko-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ko-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ko-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ko-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ko.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lt-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lt-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lt-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lt-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lt-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lt-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lt.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lv-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lv-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lv-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lv-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lv-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lv-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lv.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/nl-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/nl-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/nl-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/nl-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/nl.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/no-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/no-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/no-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/no.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pl-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pl-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pl-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pl-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pl-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pl-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pl.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pt-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pt-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pt-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pt-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pt-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pt-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pt.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru-banner0.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru-banner1.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru-history.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sk-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sk-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sk-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sk-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sk-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sk-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sk.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sl-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sl-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sl-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sl-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sl-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sl-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sl.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sr-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sr-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sr-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sr-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sr-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sr-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sr.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/th-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/th-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/th-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/th-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/th-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/th-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/th.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/tr-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/tr-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/tr-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/tr-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/tr-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/tr-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/tr.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uk-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uk-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uk-history.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uk-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uk-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uk-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uk-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uk.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uz-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uz-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uz-slogan.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uz-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uz-title.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uz-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uz.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/vi-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/vi-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/vi-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/vi-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/vi.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/zh-2.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/zh-action.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/zh-start.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/zh-update.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/zh.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_exit.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_globe.bmp - OK

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_green.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_help-mirror.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_help.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_help0-mirror.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_help0.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_history.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_logo.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_main-mirror.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/_main.bmp - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ar-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ar-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/az-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/az-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/be-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/be-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/bg-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/bg-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cn-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cn-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cs-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/cs-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/de-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/de-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/el-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/el-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/en-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/en-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/eo-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/eo-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/es-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/es-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/et-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/et-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fa-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fa-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fi-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fi-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fr-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/fr-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hu-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hu-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hy-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/hy-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/it-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/it-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ja-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ja-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ka-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ka-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ko-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ko-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lt-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lt-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lv-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/lv-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/nl-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/nl-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/no-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/no-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pl-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pl-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pt-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/pt-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/ru-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sk-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sk-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sl-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sl-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sr-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/sr-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/th-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/th-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/tr-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/tr-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uk-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uk-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uz-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/uz-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/vi-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/vi-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/zh-help.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/zh-start.txt - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat/l9gl97.ini - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.dat - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/l9gl97.exe - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/6thu5.exe - archive BINARYRES
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/6thu5.exe/data001 packed by ASPACK
    >>>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/6thu5.exe/data001 - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/6thu5.exe/data002 - OK
    >>c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/6thu5.exe/data003 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/6thu5.exe - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/c5dbe35a - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ce798895 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/1b9bacdd - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/5b175b65 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/1bb42c25 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/a30d4c0f - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/e85cb2db - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/a32387fc - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/4a205d58 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/02757c55 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/00ed8c82 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/977b0c3c - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/5f740792 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/109344a8 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/22944197 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/3d172356 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/3e1efceb - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/52b18f66 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ca02c0e7 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/7e030c47 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/286d6c79 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/f29315b3 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/ad998546 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/139f6b76 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/5625e7a0 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/018037c3 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/e3786d3c - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/df48875c - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/3c52d86a - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/d791899c - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/7e2335c7 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/6392c398 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/b32bb323 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/1bf7b7e6 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/608fd496 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/a3423e9b - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/81c142b3 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/c874f086 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/0cb936b8 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/abdd7dff - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/1a21e52f - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/9a003018 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/fb171027 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/0ad4b000 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/7b970d8d - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/c069f408 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/0a0f0eb2 - OK
    >c:\documents and settings\owner\my documents\don't delete me\n242578z.exe/391ff965 - OK
    c:\documents and settings\owner\my documents\don't delete me\n242578z.exe - OK
    c:\documents and settings\owner\my documents\don't delete me\n242578z.exe:Zone.Identifier - OK

    [Scan path] c:\documents and settings\owner\start menu\programs\startup\desktop.ini
    c:\documents and settings\owner\start menu\programs\startup\desktop.ini - OK

    [Scan path] c:\program files\aim6\aim6.exe
    c:\program files\aim6\aim6.exe - OK

    [Scan path] c:\program files\alwil software\avast4\ashdisp.exe
    c:\program files\alwil software\avast4\ashdisp.exe - OK

    [Scan path] c:\program files\alwil software\avast4\ashmaisv.exe
    c:\program files\alwil software\avast4\ashmaisv.exe - OK

    [Scan path] c:\program files\alwil software\avast4\ashserv.exe
    c:\program files\alwil software\avast4\ashserv.exe - OK

    [Scan path] c:\program files\alwil software\avast4\ashshell.dll
    c:\program files\alwil software\avast4\ashshell.dll - OK

    [Scan path] c:\program files\alwil software\avast4\ashwebsv.exe
    c:\program files\alwil software\avast4\ashwebsv.exe - OK

    [Scan path] c:\program files\alwil software\avast4\aswupdsv.exe
    c:\program files\alwil software\avast4\aswupdsv.exe - OK

    [Scan path] c:\program files\aol\aim toolbar 5.0\aoltb.dll
    c:\program files\aol\aim toolbar 5.0\aoltb.dll - OK

    [Scan path] c:\program files\combined community codec pack\filters\ffdshow\ff_vfw.dll
    c:\program files\combined community codec pack\filters\ffdshow\ff_vfw.dll - OK

    [Scan path] c:\program files\common files\adobe\acrobat\activex\pdfshell.dll
    c:\program files\common files\adobe\acrobat\activex\pdfshell.dll - OK

    [Scan path] c:\program files\common files\adobe\updater5\adobeupdater.exe
    c:\program files\common files\adobe\updater5\adobeupdater.exe - OK

    [Scan path] c:\program files\common files\mcafee\core\mccoreps.dll
    c:\program files\common files\mcafee\core\mccoreps.dll - OK

    [Scan path] c:\program files\common files\mcafee\core\mcevtbrk.dll
    c:\program files\common files\mcafee\core\mcevtbrk.dll - OK

    [Scan path] c:\program files\common files\mcafee\hackerwatch\hwapi.dll
    c:\program files\common files\mcafee\hackerwatch\hwapi.dll - OK

    [Scan path] c:\program files\common files\mcafee\mcproxy\mcproxy.exe
    c:\program files\common files\mcafee\mcproxy\mcproxy.exe - OK

    [Scan path] c:\program files\common files\mcafee\mna\mcnasvc.exe
    c:\program files\common files\mcafee\mna\mcnasvc.exe - OK

    [Scan path] c:\program files\common files\mcafee\msc\mcutil\8,1,114,0\mcutil.dll
    c:\program files\common files\mcafee\msc\mcutil\8,1,114,0\mcutil.dll - OK

    [Scan path] c:\program files\common files\mcafee\msc\sqlite3.dll
    c:\program files\common files\mcafee\msc\sqlite3.dll - OK

    [Scan path] c:\program files\common files\microsoft shared\information retrieval\msitss.dll
    c:\program files\common files\microsoft shared\information retrieval\msitss.dll - OK

    [Scan path] c:\program files\common files\microsoft shared\speech\sapi.cpl
    c:\program files\common files\microsoft shared\speech\sapi.cpl - OK

    [Scan path] c:\program files\common files\microsoft shared\web folders\msonsext.dll
    c:\program files\common files\microsoft shared\web folders\msonsext.dll - OK

    [Scan path] c:\program files\common files\real\update_ob\realsched.exe
    c:\program files\common files\real\update_ob\realsched.exe - OK

    [Scan path] c:\program files\common files\system\ole db\oledb32.dll
    c:\program files\common files\system\ole db\oledb32.dll - OK

    [Scan path] c:\program files\dna\dnacpl.cpl
    c:\program files\dna\dnacpl.cpl - OK

    [Scan path] c:\program files\google\common\google updater\googleupdaterservice.exe
    c:\program files\google\common\google updater\googleupdaterservice.exe - OK

    [Scan path] c:\program files\google\google toolbar\component\fastsearch_a8904fb862bd9564.dll
    c:\program files\google\google toolbar\component\fastsearch_a8904fb862bd9564.dll - OK

    [Scan path] c:\program files\google\google toolbar\googletoolbar.dll
    c:\program files\google\google toolbar\googletoolbar.dll - OK

    [Scan path] c:\program files\hewlett-packard\hp share-to-web\hpgs2wns.dll
    c:\program files\hewlett-packard\hp share-to-web\hpgs2wns.dll - OK

    [Scan path] c:\program files\hp\hpcoretech\comp\hpuiprot.dll
    c:\program files\hp\hpcoretech\comp\hpuiprot.dll - OK

    [Scan path] c:\program files\java\jre1.6.0_05\bin\npjpi160_05.dll
    c:\program files\java\jre1.6.0_05\bin\npjpi160_05.dll - OK

    [Scan path] c:\program files\java\jre1.6.0_07\bin\npjpi160_07.dll
    c:\program files\java\jre1.6.0_07\bin\npjpi160_07.dll - OK

    [Scan path] c:\program files\java\jre6\bin\jqs.exe
    c:\program files\java\jre6\bin\jqs.exe - OK

    [Scan path] c:\program files\java\jre6\bin\npjpi160_11.dll
    c:\program files\java\jre6\bin\npjpi160_11.dll - OK

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    [Scan path] c:\program files\java\jre6\lib\deploy\jqs\jqs.conf
    c:\program files\java\jre6\lib\deploy\jqs\jqs.conf - OK

    [Scan path] c:\program files\mcafee.com\agent\mcagent.exe
    c:\program files\mcafee.com\agent\mcagent.exe - OK

    [Scan path] c:\program files\mcafee.com\agent\mcagntps.dll
    c:\program files\mcafee.com\agent\mcagntps.dll - OK

    [Scan path] c:\program files\mcafee\mbk\l10n.dll
    c:\program files\mcafee\mbk\l10n.dll - OK

    [Scan path] c:\program files\mcafee\mbk\logonhook.exe
    c:\program files\mcafee\mbk\logonhook.exe - OK

    [Scan path] c:\program files\mcafee\mbk\mbackmonitor.exe
    c:\program files\mcafee\mbk\mbackmonitor.exe - OK

    [Scan path] c:\program files\mcafee\mbk\mbkclient.dll
    c:\program files\mcafee\mbk\mbkclient.dll - OK

    [Scan path] c:\program files\mcafee\mbk\mbkprov.dll
    c:\program files\mcafee\mbk\mbkprov.dll - OK

    [Scan path] c:\program files\mcafee\mpf\l10n.dll
    c:\program files\mcafee\mpf\l10n.dll - OK

    [Scan path] c:\program files\mcafee\mpf\mc\mpfmisp.dll
    c:\program files\mcafee\mpf\mc\mpfmisp.dll - OK

    [Scan path] c:\program files\mcafee\mpf\mpfsrv.exe
    c:\program files\mcafee\mpf\mpfsrv.exe - OK

    [Scan path] c:\program files\mcafee\mps\mpscfg.dll
    c:\program files\mcafee\mps\mpscfg.dll - OK

    [Scan path] c:\program files\mcafee\mps\mpsmisp.dll
    c:\program files\mcafee\mps\mpsmisp.dll - OK

    [Scan path] c:\program files\mcafee\mps\mpspc.dll
    c:\program files\mcafee\mps\mpspc.dll - OK

    [Scan path] c:\program files\mcafee\mps\mpspii.dll
    c:\program files\mcafee\mps\mpspii.dll - OK

    [Scan path] c:\program files\mcafee\mps\mpspv.dll
    c:\program files\mcafee\mps\mpspv.dll - OK

    [Scan path] c:\program files\mcafee\mps\mpsres.dll
    c:\program files\mcafee\mps\mpsres.dll - OK

    [Scan path] c:\program files\mcafee\mqc\qcconsol.exe
    c:\program files\mcafee\mqc\qcconsol.exe - OK

    [Scan path] c:\program files\mcafee\msc\mccfgpv.dll
    c:\program files\mcafee\msc\mccfgpv.dll - OK

    [Scan path] c:\program files\mcafee\msc\mccobres.dll
    c:\program files\mcafee\msc\mccobres.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcdemenu.dll
    c:\program files\mcafee\msc\mcdemenu.dll - OK

    [Scan path] c:\program files\mcafee\msc\mclocres.dll
    c:\program files\mcafee\msc\mclocres.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcmispps.dll
    c:\program files\mcafee\msc\mcmispps.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcmscsvc.exe
    c:\program files\mcafee\msc\mcmscsvc.exe - OK

    [Scan path] c:\program files\mcafee\msc\mcmscver.dll
    c:\program files\mcafee\msc\mcmscver.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcnmccor.dll
    c:\program files\mcafee\msc\mcnmccor.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcnmclor.dll
    c:\program files\mcafee\msc\mcnmclor.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcnmcprv.dll
    c:\program files\mcafee\msc\mcnmcprv.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcnmcres.dll
    c:\program files\mcafee\msc\mcnmcres.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcprotpv.dll
    c:\program files\mcafee\msc\mcprotpv.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcregobj\8,0,226,0\mcregobj.dll
    c:\program files\mcafee\msc\mcregobj\8,0,226,0\mcregobj.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcres.dll
    c:\program files\mcafee\msc\mcres.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcshllps.dll
    c:\program files\mcafee\msc\mcshllps.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcsubmgr\8,1,133,0\mcsubmgr.dll
    c:\program files\mcafee\msc\mcsubmgr\8,1,133,0\mcsubmgr.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcuicfg.dll
    c:\program files\mcafee\msc\mcuicfg.dll - OK

    [Scan path] c:\program files\mcafee\msc\mcuimgr.exe
    c:\program files\mcafee\msc\mcuimgr.exe - OK

    [Scan path] c:\program files\mcafee\msc\oem\108\mccobres.dll
    c:\program files\mcafee\msc\oem\108\mccobres.dll - OK

    [Scan path] c:\program files\mcafee\virusscan\mcods.exe
    c:\program files\mcafee\virusscan\mcods.exe - OK

    [Scan path] c:\program files\mcafee\virusscan\mcshield.exe
    c:\program files\mcafee\virusscan\mcshield.exe - OK

    [Scan path] c:\program files\mcafee\virusscan\mcsysmon.exe
    c:\program files\mcafee\virusscan\mcsysmon.exe - OK

    [Scan path] c:\program files\mcafee\virusscan\mcvspp.dll
    c:\program files\mcafee\virusscan\mcvspp.dll - OK

    [Scan path] c:\program files\mcafee\virusscan\mvsap.dll
    c:\program files\mcafee\virusscan\mvsap.dll - OK

    [Scan path] c:\program files\mcafee\virusscan\mvscfg.dll
    c:\program files\mcafee\virusscan\mvscfg.dll - OK

    [Scan path] c:\program files\mcafee\virusscan\mvscp.dll
    c:\program files\mcafee\virusscan\mvscp.dll - OK

    [Scan path] c:\program files\mcafee\virusscan\scriptsn.dll
    c:\program files\mcafee\virusscan\scriptsn.dll - OK

    [Scan path] c:\program files\messenger\msmsgs.exe
    c:\program files\messenger\msmsgs.exe - OK

    [Scan path] c:\program files\microsoft money\system\mnyviewer.dll
    c:\program files\microsoft money\system\mnyviewer.dll - OK

    [Scan path] c:\program files\microsoft office\office10\msohev.dll
    c:\program files\microsoft office\office10\msohev.dll - OK

    [Scan path] c:\program files\outlook express\setup50.exe
    c:\program files\outlook express\setup50.exe - OK

    [Scan path] c:\program files\outlook express\wabfind.dll
    c:\program files\outlook express\wabfind.dll - OK

    [Scan path] c:\program files\quicktime\qtsystem\quicktime.cpl
    c:\program files\quicktime\qtsystem\quicktime.cpl - OK

    [Scan path] c:\program files\quicktime\qttask.exe
    c:\program files\quicktime\qttask.exe - OK

    [Scan path] c:\program files\real\realplayer\rpshell.dll
    c:\program files\real\realplayer\rpshell.dll - OK

    [Scan path] c:\program files\spybot - search & destroy\advcheck.dll
    c:\program files\spybot - search & destroy\advcheck.dll packed by BINARYRES
    >c:\program files\spybot - search & destroy\advcheck.dll - archive NSIS
    >c:\program files\spybot - search & destroy\advcheck.dll - OK

    [Scan path] c:\program files\spybot - search & destroy\sdhelper.dll
    c:\program files\spybot - search & destroy\sdhelper.dll - OK

    [Scan path] c:\program files\spybot - search & destroy\teatimer.exe
    c:\program files\spybot - search & destroy\teatimer.exe - OK

    [Scan path] c:\program files\superantispyware\sasdifsv.sys
    c:\program files\superantispyware\sasdifsv.sys - OK

    [Scan path] c:\program files\superantispyware\sasenum.sys
    c:\program files\superantispyware\sasenum.sys - OK

    [Scan path] c:\program files\superantispyware\saskutil.sys
    c:\program files\superantispyware\saskutil.sys - OK

    [Scan path] c:\program files\superantispyware\sasseh.dll
    c:\program files\superantispyware\sasseh.dll - OK

    [Scan path] c:\program files\superantispyware\saswinlo.dll
    c:\program files\superantispyware\saswinlo.dll - OK

    [Scan path] c:\program files\superantispyware\superantispyware.exe
    c:\program files\superantispyware\superantispyware.exe - OK

    [Scan path] c:\program files\viewpoint\common\viewpointservice.exe
    c:\program files\viewpoint\common\viewpointservice.exe - OK

    [Scan path] c:\program files\windows live toolbar\msntb.dll
    c:\program files\windows live toolbar\msntb.dll - OK

    [Scan path] c:\program files\windows live toolbar\msntbup.exe
    c:\program files\windows live toolbar\msntbup.exe - OK

    [Scan path] c:\program files\windows live\installer\wlsetupsvc.exe
    c:\program files\windows live\installer\wlsetupsvc.exe - OK

    [Scan path] c:\program files\windows live\messenger\fsshext.8.5.1302.1018.dll
    c:\program files\windows live\messenger\fsshext.8.5.1302.1018.dll - OK

    [Scan path] c:\program files\windows live\messenger\msgrapp.8.5.1302.1018.dll
    c:\program files\windows live\messenger\msgrapp.8.5.1302.1018.dll - OK

    [Scan path] c:\program files\windows live\messenger\msnmsgr.exe
    c:\program files\windows live\messenger\msnmsgr.exe - OK

    [Scan path] c:\program files\windows live\messenger\usnsvc.exe
    c:\program files\windows live\messenger\usnsvc.exe - OK

    [Scan path] c:\program files\windows media player\wmpnetwk.exe
    c:\program files\windows media player\wmpnetwk.exe - OK

    [Scan path] c:\program files\winrar\rarext.dll
    c:\program files\winrar\rarext.dll - OK

    [Scan path] c:\program files\zune\zunelauncher.exe
    c:\program files\zune\zunelauncher.exe - OK

    [Scan path] c:\program files\zune\zunenss.exe
    c:\program files\zune\zunenss.exe - OK

    [Scan path] c:\windows\apppatch\acadproc.dll
    c:\windows\apppatch\acadproc.dll - OK

    [Scan path] c:\windows\apppatch\acgenral.dll
    c:\windows\apppatch\acgenral.dll - OK

    [Scan path] c:\windows\downloaded program files\as2stubie.dll
    c:\windows\downloaded program files\as2stubie.dll - OK

    [Scan path] c:\windows\downloaded program files\sysreqlab2.dll
    c:\windows\downloaded program files\sysreqlab2.dll - OK

    [Scan path] c:\windows\explorer.exe
    c:\windows\explorer.exe - OK

    [Scan path] c:\windows\inf\msmsgs.inf
    c:\windows\inf\msmsgs.inf - OK

    [Scan path] c:\windows\inf\msnetmtg.inf
    c:\windows\inf\msnetmtg.inf - OK

    [Scan path] c:\windows\inf\unregmp2.exe
    c:\windows\inf\unregmp2.exe - OK

    [Scan path] c:\windows\inf\wmp11.inf
    c:\windows\inf\wmp11.inf - OK

    [Scan path] c:\windows\microsoft.net\framework\v2.0.50727\aspnet_state.exe
    c:\windows\microsoft.net\framework\v2.0.50727\aspnet_state.exe - OK

    [Scan path] c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe
    c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe - OK

    [Scan path] c:\windows\microsoft.net\framework\v3.0\windows communication foundation\infocard.exe
    c:\windows\microsoft.net\framework\v3.0\windows communication foundation\infocard.exe - OK

    [Scan path] c:\windows\microsoft.net\framework\v3.0\windows communication foundation\smsvchost.exe
    c:\windows\microsoft.net\framework\v3.0\windows communication foundation\smsvchost.exe - OK

    [Scan path] c:\windows\microsoft.net\framework\v3.0\wpf\presentationfontcache.exe
    c:\windows\microsoft.net\framework\v3.0\wpf\presentationfontcache.exe - OK

    [Scan path] c:\windows\msagent\agentpsh.dll
    c:\windows\msagent\agentpsh.dll - OK

    [Scan path] c:\windows\pchealth\helpctr\binaries\pchsvc.dll
    c:\windows\pchealth\helpctr\binaries\pchsvc.dll - OK

    [Scan path] c:\windows\system32\activeds.dll
    c:\windows\system32\activeds.dll packed by FLY-CODE
    >c:\windows\system32\activeds.dll - OK

    [Scan path] c:\windows\system32\adsldpc.dll
    c:\windows\system32\adsldpc.dll - OK

    [Scan path] c:\windows\system32\advapi32.dll
    c:\windows\system32\advapi32.dll - OK

    [Scan path] c:\windows\system32\advpack.dll
    c:\windows\system32\advpack.dll - OK

    [Scan path] c:\windows\system32\alg.exe
    c:\windows\system32\alg.exe - OK

    [Scan path] c:\windows\system32\alrsvc.dll
    c:\windows\system32\alrsvc.dll - OK

    [Scan path] c:\windows\system32\apphelp.dll
    c:\windows\system32\apphelp.dll - OK

    [Scan path] c:\windows\system32\appwiz.cpl
    c:\windows\system32\appwiz.cpl - OK

    [Scan path] c:\windows\system32\atl.dll
    c:\windows\system32\atl.dll - OK

    [Scan path] c:\windows\system32\audiodev.dll
    c:\windows\system32\audiodev.dll packed by PESTUB
    >c:\windows\system32\audiodev.dll - OK

    [Scan path] c:\windows\system32\audiosrv.dll
    c:\windows\system32\audiosrv.dll - OK

    [Scan path] c:\windows\system32\authz.dll
    c:\windows\system32\authz.dll - OK

    [Scan path] c:\windows\system32\autochk.exe
    c:\windows\system32\autochk.exe - OK

    [Scan path] c:\windows\system32\basesrv.dll
    c:\windows\system32\basesrv.dll - OK

    [Scan path] c:\windows\system32\browselc.dll
    c:\windows\system32\browselc.dll packed by ZLIB
    >c:\windows\system32\browselc.dll - archive BINARYRES
    >>c:\windows\system32\browselc.dll/data001 - OK
    >c:\windows\system32\browselc.dll - OK

    [Scan path] c:\windows\system32\browser.dll
    c:\windows\system32\browser.dll - OK

    [Scan path] c:\windows\system32\browseui.dll
    c:\windows\system32\browseui.dll - OK

    [Scan path] c:\windows\system32\cabinet.dll
    c:\windows\system32\cabinet.dll - OK

    [Scan path] c:\windows\system32\cabview.dll
    c:\windows\system32\cabview.dll - OK

    [Scan path] c:\windows\system32\certcli.dll
    c:\windows\system32\certcli.dll - OK

    [Scan path] c:\windows\system32\cisvc.exe
    c:\windows\system32\cisvc.exe - OK

    [Scan path] c:\windows\system32\clbcatq.dll
    c:\windows\system32\clbcatq.dll - OK

    [Scan path] c:\windows\system32\clipsrv.exe
    c:\windows\system32\clipsrv.exe - OK

    [Scan path] c:\windows\system32\clusapi.dll
    c:\windows\system32\clusapi.dll - OK

    [Scan path] c:\windows\system32\cnbjmon.dll
    c:\windows\system32\cnbjmon.dll - OK

    [Scan path] c:\windows\system32\comctl32.dll
    c:\windows\system32\comctl32.dll - OK

    [Scan path] c:\windows\system32\comdlg32.dll
    c:\windows\system32\comdlg32.dll - OK

    [Scan path] c:\windows\system32\comres.dll
    c:\windows\system32\comres.dll - OK

    [Scan path] c:\windows\system32\config\systemprofile\start menu\programs\startup\desktop.ini
    c:\windows\system32\config\systemprofile\start menu\programs\startup\desktop.ini - OK

    [Scan path] c:\windows\system32\credui.dll
    c:\windows\system32\credui.dll - OK

    [Scan path] c:\windows\system32\crypt32.dll
    c:\windows\system32\crypt32.dll - OK

    [Scan path] c:\windows\system32\cryptdll.dll
    c:\windows\system32\cryptdll.dll - OK

    [Scan path] c:\windows\system32\cryptext.dll
    c:\windows\system32\cryptext.dll - OK

    [Scan path] c:\windows\system32\cryptnet.dll
    c:\windows\system32\cryptnet.dll - OK

    [Scan path] c:\windows\system32\cryptsvc.dll
    c:\windows\system32\cryptsvc.dll - OK

    [Scan path] c:\windows\system32\cryptui.dll
    c:\windows\system32\cryptui.dll - OK

    [Scan path] c:\windows\system32\cscdll.dll
    c:\windows\system32\cscdll.dll - OK

    [Scan path] c:\windows\system32\cscui.dll
    c:\windows\system32\cscui.dll - OK

    [Scan path] c:\windows\system32\csrsrv.dll
    c:\windows\system32\csrsrv.dll - OK

    [Scan path] c:\windows\system32\csrss.exe
    c:\windows\system32\csrss.exe - OK

    [Scan path] c:\windows\system32\ctfmon.exe
    c:\windows\system32\ctfmon.exe - OK

    [Scan path] c:\windows\system32\davclnt.dll
    c:\windows\system32\davclnt.dll - OK

    [Scan path] c:\windows\system32\deskadp.dll
    c:\windows\system32\deskadp.dll - OK

    [Scan path] c:\windows\system32\deskmon.dll
    c:\windows\system32\deskmon.dll - OK

    [Scan path] c:\windows\system32\deskperf.dll
    c:\windows\system32\deskperf.dll - OK

    [Scan path] c:\windows\system32\dfshim.dll
    c:\windows\system32\dfshim.dll - OK

    [Scan path] c:\windows\system32\dfsshlex.dll
    c:\windows\system32\dfsshlex.dll - OK

    [Scan path] c:\windows\system32\dhcpcsvc.dll
    c:\windows\system32\dhcpcsvc.dll - OK

    [Scan path] c:\windows\system32\digest.dll
    c:\windows\system32\digest.dll - OK

    [Scan path] c:\windows\system32\dimsntfy.dll
    c:\windows\system32\dimsntfy.dll - OK

    [Scan path] c:\windows\system32\diskcopy.dll
    c:\windows\system32\diskcopy.dll - OK

    [Scan path] c:\windows\system32\dllhost.exe
    c:\windows\system32\dllhost.exe - OK

    [Scan path] c:\windows\system32\dmadmin.exe
    c:\windows\system32\dmadmin.exe - OK

    [Scan path] c:\windows\system32\dmserver.dll
    c:\windows\system32\dmserver.dll - OK

    [Scan path] c:\windows\system32\dnsapi.dll
    c:\windows\system32\dnsapi.dll - OK

    [Scan path] c:\windows\system32\dnsrslvr.dll
    c:\windows\system32\dnsrslvr.dll - OK

    [Scan path] c:\windows\system32\docprop.dll
    c:\windows\system32\docprop.dll - OK

    [Scan path] c:\windows\system32\docprop2.dll
    c:\windows\system32\docprop2.dll - OK

    [Scan path] c:\windows\system32\dot3api.dll
    c:\windows\system32\dot3api.dll - OK

    [Scan path] c:\windows\system32\dot3dlg.dll
    c:\windows\system32\dot3dlg.dll - OK

    [Scan path] c:\windows\system32\dot3gpclnt.dll
    c:\windows\system32\dot3gpclnt.dll - OK

    [Scan path] c:\windows\system32\dot3svc.dll
    c:\windows\system32\dot3svc.dll - OK

    [Scan path] c:\windows\system32\drivers\aavmker4.sys
    c:\windows\system32\drivers\aavmker4.sys - OK

    [Scan path] c:\windows\system32\drivers\acpi.sys
    c:\windows\system32\drivers\acpi.sys - OK

    [Scan path] c:\windows\system32\drivers\aec.sys
    c:\windows\system32\drivers\aec.sys - OK

    [Scan path] c:\windows\system32\drivers\afd.sys
    c:\windows\system32\drivers\afd.sys - OK

    [Scan path] c:\windows\system32\drivers\afs2k.sys
    c:\windows\system32\drivers\afs2k.sys - OK

    [Scan path] c:\windows\system32\drivers\alcxwdm.sys
    c:\windows\system32\drivers\alcxwdm.sys - OK

    [Scan path] c:\windows\system32\drivers\arp1394.sys
    c:\windows\system32\drivers\arp1394.sys - OK

    [Scan path] c:\windows\system32\drivers\aswfsblk.sys
    c:\windows\system32\drivers\aswfsblk.sys - OK

    [Scan path] c:\windows\system32\drivers\aswsp.sys
    c:\windows\system32\drivers\aswsp.sys - OK

    [Scan path] c:\windows\system32\drivers\aswtdi.sys
    c:\windows\system32\drivers\aswtdi.sys - OK

    [Scan path] c:\windows\system32\drivers\asyncmac.sys
    c:\windows\system32\drivers\asyncmac.sys - OK

    [Scan path] c:\windows\system32\drivers\atapi.sys
    c:\windows\system32\drivers\atapi.sys - OK

    [Scan path] c:\windows\system32\drivers\atmarpc.sys
    c:\windows\system32\drivers\atmarpc.sys - OK

    [Scan path] c:\windows\system32\drivers\audstub.sys
    c:\windows\system32\drivers\audstub.sys - OK

    [Scan path] c:\windows\system32\drivers\beep.sys
    c:\windows\system32\drivers\beep.sys - OK

    [Scan path] c:\windows\system32\drivers\cdaudio.sys
    c:\windows\system32\drivers\cdaudio.sys - OK

    [Scan path] c:\windows\system32\drivers\cdrom.sys
    c:\windows\system32\drivers\cdrom.sys - OK

    [Scan path] c:\windows\system32\drivers\disk.sys
    c:\windows\system32\drivers\disk.sys - OK

    [Scan path] c:\windows\system32\drivers\dmboot.sys
    c:\windows\system32\drivers\dmboot.sys - OK

    [Scan path] c:\windows\system32\drivers\dmio.sys
    c:\windows\system32\drivers\dmio.sys - OK

    [Scan path] c:\windows\system32\drivers\dmload.sys
    c:\windows\system32\drivers\dmload.sys - OK

    [Scan path] c:\windows\system32\drivers\dmusic.sys
    c:\windows\system32\drivers\dmusic.sys - OK

    [Scan path] c:\windows\system32\drivers\drmkaud.sys
    c:\windows\system32\drivers\drmkaud.sys - OK

    [Scan path] c:\windows\system32\drivers\fdc.sys
    c:\windows\system32\drivers\fdc.sys - OK

    [Scan path] c:\windows\system32\drivers\fips.sys
    c:\windows\system32\drivers\fips.sys - OK

    [Scan path] c:\windows\system32\drivers\flpydisk.sys
    c:\windows\system32\drivers\flpydisk.sys - OK

    [Scan path] c:\windows\system32\drivers\fltmgr.sys
    c:\windows\system32\drivers\fltmgr.sys - OK

    [Scan path] c:\windows\system32\drivers\fs_rec.sys
    c:\windows\system32\drivers\fs_rec.sys - OK

    [Scan path] c:\windows\system32\drivers\ftdisk.sys
    c:\windows\system32\drivers\ftdisk.sys - OK

    [Scan path] c:\windows\system32\drivers\gameenum.sys
    c:\windows\system32\drivers\gameenum.sys - OK

    [Scan path] c:\windows\system32\drivers\hidusb.sys
    c:\windows\system32\drivers\hidusb.sys - OK

    [Scan path] c:\windows\system32\drivers\hpzid412.sys
    c:\windows\system32\drivers\hpzid412.sys - OK

    [Scan path] c:\windows\system32\drivers\hpzipr12.sys
    c:\windows\system32\drivers\hpzipr12.sys - OK

    [Scan path] c:\windows\system32\drivers\hpzius12.sys
    c:\windows\system32\drivers\hpzius12.sys - OK

    [Scan path] c:\windows\system32\drivers\http.sys
    c:\windows\system32\drivers\http.sys - OK

    [Scan path] c:\windows\system32\drivers\i8042prt.sys
    c:\windows\system32\drivers\i8042prt.sys - OK

    [Scan path] c:\windows\system32\drivers\imapi.sys
    c:\windows\system32\drivers\imapi.sys - OK

    [Scan path] c:\windows\system32\drivers\incdrm.sys
    c:\windows\system32\drivers\incdrm.sys - OK

    [Scan path] c:\windows\system32\drivers\intelppm.sys
    c:\windows\system32\drivers\intelppm.sys - OK

    [Scan path] c:\windows\system32\drivers\ip6fw.sys
    c:\windows\system32\drivers\ip6fw.sys - OK

    [Scan path] c:\windows\system32\drivers\ipfltdrv.sys
    c:\windows\system32\drivers\ipfltdrv.sys - OK

    [Scan path] c:\windows\system32\drivers\ipinip.sys
    c:\windows\system32\drivers\ipinip.sys - OK

    [Scan path] c:\windows\system32\drivers\ipnat.sys
    c:\windows\system32\drivers\ipnat.sys - OK

    [Scan path] c:\windows\system32\drivers\ipsec.sys
    c:\windows\system32\drivers\ipsec.sys - OK

    [Scan path] c:\windows\system32\drivers\irenum.sys
    c:\windows\system32\drivers\irenum.sys - OK

    [Scan path] c:\windows\system32\drivers\isapnp.sys
    c:\windows\system32\drivers\isapnp.sys - OK

    [Scan path] c:\windows\system32\drivers\kbdclass.sys
    c:\windows\system32\drivers\kbdclass.sys - OK

    [Scan path] c:\windows\system32\drivers\kbdhid.sys
    c:\windows\system32\drivers\kbdhid.sys - OK

    [Scan path] c:\windows\system32\drivers\kmixer.sys
    c:\windows\system32\drivers\kmixer.sys - OK

    [Scan path] c:\windows\system32\drivers\ksecdd.sys
    c:\windows\system32\drivers\ksecdd.sys - OK

    [Scan path] c:\windows\system32\drivers\mfeavfk.sys
    c:\windows\system32\drivers\mfeavfk.sys - OK

    [Scan path] c:\windows\system32\drivers\mfebopk.sys
    c:\windows\system32\drivers\mfebopk.sys - OK

    [Scan path] c:\windows\system32\drivers\mfehidk.sys
    c:\windows\system32\drivers\mfehidk.sys - OK

    [Scan path] c:\windows\system32\drivers\mferkdk.sys
    c:\windows\system32\drivers\mferkdk.sys - OK

    [Scan path] c:\windows\system32\drivers\mfesmfk.sys
    c:\windows\system32\drivers\mfesmfk.sys - OK

    [Scan path] c:\windows\system32\drivers\mnmdd.sys
    c:\windows\system32\drivers\mnmdd.sys - OK

    [Scan path] c:\windows\system32\drivers\mouclass.sys
    c:\windows\system32\drivers\mouclass.sys - OK

    [Scan path] c:\windows\system32\drivers\mouhid.sys
    c:\windows\system32\drivers\mouhid.sys - OK

    [Scan path] c:\windows\system32\drivers\mountmgr.sys
    c:\windows\system32\drivers\mountmgr.sys - OK

    [Scan path] c:\windows\system32\drivers\mpfp.sys
    c:\windows\system32\drivers\mpfp.sys - OK

    [Scan path] c:\windows\system32\drivers\mrxdav.sys
    c:\windows\system32\drivers\mrxdav.sys - OK

    [Scan path] c:\windows\system32\drivers\mrxsmb.sys
    c:\windows\system32\drivers\mrxsmb.sys - OK

    [Scan path] c:\windows\system32\drivers\msfs.sys
    c:\windows\system32\drivers\msfs.sys - OK

    [Scan path] c:\windows\system32\drivers\msgpc.sys
    c:\windows\system32\drivers\msgpc.sys - OK

    [Scan path] c:\windows\system32\drivers\mskssrv.sys
    c:\windows\system32\drivers\mskssrv.sys - OK

    [Scan path] c:\windows\system32\drivers\msmpu401.sys
    c:\windows\system32\drivers\msmpu401.sys - OK

    [Scan path] c:\windows\system32\drivers\mspclock.sys
    c:\windows\system32\drivers\mspclock.sys - OK

    [Scan path] c:\windows\system32\drivers\mspqm.sys
    c:\windows\system32\drivers\mspqm.sys - OK

    [Scan path] c:\windows\system32\drivers\mssmbios.sys
    c:\windows\system32\drivers\mssmbios.sys - OK

    [Scan path] c:\windows\system32\drivers\mup.sys
    c:\windows\system32\drivers\mup.sys - OK

    [Scan path] c:\windows\system32\drivers\ndis.sys
    c:\windows\system32\drivers\ndis.sys - OK

    [Scan path] c:\windows\system32\drivers\ndistapi.sys
    c:\windows\system32\drivers\ndistapi.sys - OK

    [Scan path] c:\windows\system32\drivers\ndisuio.sys
    c:\windows\system32\drivers\ndisuio.sys - OK

    [Scan path] c:\windows\system32\drivers\ndiswan.sys
    c:\windows\system32\drivers\ndiswan.sys - OK

    [Scan path] c:\windows\system32\drivers\netbios.sys
    c:\windows\system32\drivers\netbios.sys - OK

    [Scan path] c:\windows\system32\drivers\netbt.sys
    c:\windows\system32\drivers\netbt.sys - OK

    [Scan path] c:\windows\system32\drivers\nic1394.sys
    c:\windows\system32\drivers\nic1394.sys - OK

    [Scan path] c:\windows\system32\drivers\npfs.sys
    c:\windows\system32\drivers\npfs.sys - OK

    [Scan path] c:\windows\system32\drivers\null.sys
    c:\windows\system32\drivers\null.sys - OK

    [Scan path] c:\windows\system32\drivers\nv4_mini.sys
    c:\windows\system32\drivers\nv4_mini.sys - OK

    [Scan path] c:\windows\system32\drivers\nwlnkflt.sys
    c:\windows\system32\drivers\nwlnkflt.sys - OK

    [Scan path] c:\windows\system32\drivers\nwlnkfwd.sys
    c:\windows\system32\drivers\nwlnkfwd.sys - OK

    [Scan path] c:\windows\system32\drivers\ohci1394.sys
    c:\windows\system32\drivers\ohci1394.sys - OK

    [Scan path] c:\windows\system32\drivers\parport.sys
    c:\windows\system32\drivers\parport.sys - OK

    [Scan path] c:\windows\system32\drivers\partmgr.sys
    c:\windows\system32\drivers\partmgr.sys - OK

    [Scan path] c:\windows\system32\drivers\pavboot.sys
    c:\windows\system32\drivers\pavboot.sys - OK

    [Scan path] c:\windows\system32\drivers\pci.sys
    c:\windows\system32\drivers\pci.sys - OK

    [Scan path] c:\windows\system32\drivers\pciide.sys
    c:\windows\system32\drivers\pciide.sys - OK

    [Scan path] c:\windows\system32\drivers\processr.sys
    c:\windows\system32\drivers\processr.sys - OK

    [Scan path] c:\windows\system32\drivers\psched.sys
    c:\windows\system32\drivers\psched.sys - OK

    [Scan path] c:\windows\system32\drivers\ptilink.sys
    c:\windows\system32\drivers\ptilink.sys - OK

    [Scan path] c:\windows\system32\drivers\rasacd.sys
    c:\windows\system32\drivers\rasacd.sys - OK

    [Scan path] c:\windows\system32\drivers\rasl2tp.sys
    c:\windows\system32\drivers\rasl2tp.sys - OK

    [Scan path] c:\windows\system32\drivers\raspppoe.sys
    c:\windows\system32\drivers\raspppoe.sys - OK

    [Scan path] c:\windows\system32\drivers\raspptp.sys
    c:\windows\system32\drivers\raspptp.sys - OK

    [Scan path] c:\windows\system32\drivers\raspti.sys
    c:\windows\system32\drivers\raspti.sys - OK

    [Scan path] c:\windows\system32\drivers\rdbss.sys
    c:\windows\system32\drivers\rdbss.sys - OK

    [Scan path] c:\windows\system32\drivers\rdpcdd.sys
    c:\windows\system32\drivers\rdpcdd.sys - OK

    [Scan path] c:\windows\system32\drivers\rdpwd.sys
    c:\windows\system32\drivers\rdpwd.sys - OK

    [Scan path] c:\windows\system32\drivers\redbook.sys
    c:\windows\system32\drivers\redbook.sys - OK

    [Scan path] c:\windows\system32\drivers\rtl8139.sys
    c:\windows\system32\drivers\rtl8139.sys - OK

    [Scan path] c:\windows\system32\drivers\scsiport.sys
    c:\windows\system32\drivers\scsiport.sys - OK

    [Scan path] c:\windows\system32\drivers\secdrv.sys
    c:\windows\system32\drivers\secdrv.sys - OK

    [Scan path] c:\windows\system32\drivers\serenum.sys
    c:\windows\system32\drivers\serenum.sys - OK

    [Scan path] c:\windows\system32\drivers\serial.sys
    c:\windows\system32\drivers\serial.sys - OK

    [Scan path] c:\windows\system32\drivers\sfloppy.sys
    c:\windows\system32\drivers\sfloppy.sys - OK

    [Scan path] c:\windows\system32\drivers\sisagp.sys
    c:\windows\system32\drivers\sisagp.sys - OK

    [Scan path] c:\windows\system32\drivers\sonypvu1.sys
    c:\windows\system32\drivers\sonypvu1.sys - OK

    [Scan path] c:\windows\system32\drivers\splitter.sys
    c:\windows\system32\drivers\splitter.sys - OK

    [Scan path] c:\windows\system32\drivers\sr.sys
    c:\windows\system32\drivers\sr.sys - OK

    [Scan path] c:\windows\system32\drivers\srv.sys
    c:\windows\system32\drivers\srv.sys - OK

    [Scan path] c:\windows\system32\drivers\swenum.sys
    c:\windows\system32\drivers\swenum.sys - OK

    [Scan path] c:\windows\system32\drivers\swmidi.sys
    c:\windows\system32\drivers\swmidi.sys - OK

    [Scan path] c:\windows\system32\drivers\sysaudio.sys
    c:\windows\system32\drivers\sysaudio.sys - OK

    [Scan path] c:\windows\system32\drivers\tcpip.sys
    c:\windows\system32\drivers\tcpip.sys - OK

    [Scan path] c:\windows\system32\drivers\tdpipe.sys
    c:\windows\system32\drivers\tdpipe.sys - OK

    [Scan path] c:\windows\system32\drivers\tdtcp.sys
    c:\windows\system32\drivers\tdtcp.sys - OK

    [Scan path] c:\windows\system32\drivers\termdd.sys
    c:\windows\system32\drivers\termdd.sys - OK

    [Scan path] c:\windows\system32\drivers\update.sys
    c:\windows\system32\drivers\update.sys - OK

    [Scan path] c:\windows\system32\drivers\usbccgp.sys
    c:\windows\system32\drivers\usbccgp.sys - OK

    [Scan path] c:\windows\system32\drivers\usbhub.sys
    c:\windows\system32\drivers\usbhub.sys - OK

    [Scan path] c:\windows\system32\drivers\usbohci.sys
    c:\windows\system32\drivers\usbohci.sys - OK

    [Scan path] c:\windows\system32\drivers\usbprint.sys
    c:\windows\system32\drivers\usbprint.sys - OK

    [Scan path] c:\windows\system32\drivers\usbscan.sys
    c:\windows\system32\drivers\usbscan.sys - OK

    [Scan path] c:\windows\system32\drivers\usbstor.sys
    c:\windows\system32\drivers\usbstor.sys - OK

    [Scan path] c:\windows\system32\drivers\vga.sys
    c:\windows\system32\drivers\vga.sys - OK

    [Scan path] c:\windows\system32\drivers\volsnap.sys
    c:\windows\system32\drivers\volsnap.sys - OK

    [Scan path] c:\windows\system32\drivers\wanarp.sys
    c:\windows\system32\drivers\wanarp.sys - OK

    [Scan path] c:\windows\system32\drivers\wdf01000.sys
    c:\windows\system32\drivers\wdf01000.sys - OK

    [Scan path] c:\windows\system32\drivers\wdmaud.sys
    c:\windows\system32\drivers\wdmaud.sys - OK

    [Scan path] c:\windows\system32\drivers\winusb.sys
    c:\windows\system32\drivers\winusb.sys - OK

    [Scan path] c:\windows\system32\drivers\wmbenum.sys
    c:\windows\system32\drivers\wmbenum.sys - OK

    [Scan path] c:\windows\system32\drivers\wmfilter.sys
    c:\windows\system32\drivers\wmfilter.sys - OK

    [Scan path] c:\windows\system32\drivers\wmvirhid.sys
    c:\windows\system32\drivers\wmvirhid.sys - OK

    [Scan path] c:\windows\system32\drivers\wmxlcore.sys
    c:\windows\system32\drivers\wmxlcore.sys - OK

    [Scan path] c:\windows\system32\drivers\wudfpf.sys
    c:\windows\system32\drivers\wudfpf.sys - OK

    [Scan path] c:\windows\system32\drivers\wudfrd.sys
    c:\windows\system32\drivers\wudfrd.sys - OK

    [Scan path] c:\windows\system32\drivers\zumbus.sys
    c:\windows\system32\drivers\zumbus.sys - OK

    [Scan path] c:\windows\system32\drprov.dll
    c:\windows\system32\drprov.dll - OK

    [Scan path] c:\windows\system32\dskquota.dll
    c:\windows\system32\dskquota.dll - OK

    [Scan path] c:\windows\system32\dskquoui.dll
    c:\windows\system32\dskquoui.dll - OK

    [Scan path] c:\windows\system32\dsquery.dll
    c:\windows\system32\dsquery.dll - OK

    [Scan path] c:\windows\system32\dssec.dll
    c:\windows\system32\dssec.dll - OK

    [Scan path] c:\windows\system32\dsuiext.dll
    c:\windows\system32\dsuiext.dll - OK

    [Scan path] c:\windows\system32\eapolqec.dll
    c:\windows\system32\eapolqec.dll - OK

    [Scan path] c:\windows\system32\eappcfg.dll
    c:\windows\system32\eappcfg.dll - OK

    [Scan path] c:\windows\system32\eappprxy.dll
    c:\windows\system32\eappprxy.dll - OK

    [Scan path] c:\windows\system32\eapsvc.dll
    c:\windows\system32\eapsvc.dll - OK

    [Scan path] c:\windows\system32\ersvc.dll
    c:\windows\system32\ersvc.dll - OK

    [Scan path] c:\windows\system32\es.dll
    c:\windows\system32\es.dll - OK

    [Scan path] c:\windows\system32\esent.dll
    c:\windows\system32\esent.dll - OK

    [Scan path] c:\windows\system32\eventlog.dll
    c:\windows\system32\eventlog.dll - OK

    [Scan path] c:\windows\system32\extmgr.dll
    c:\windows\system32\extmgr.dll - OK

    [Scan path] c:\windows\system32\firewall.cpl
    c:\windows\system32\firewall.cpl - OK

    [Scan path] c:\windows\system32\fontext.dll
    c:\windows\system32\fontext.dll - archive BINARYRES
    >c:\windows\system32\fontext.dll/data001 packed by MS COMPRESS
    >>c:\windows\system32\fontext.dll/data001 - OK
    >c:\windows\system32\fontext.dll/data002 packed by MS COMPRESS
    >>c:\windows\system32\fontext.dll/data002 - OK
    c:\windows\system32\fontext.dll - OK

    [Scan path] c:\windows\system32\gdi32.dll
    c:\windows\system32\gdi32.dll - OK

    [Scan path] c:\windows\system32\hhctrl.ocx
    c:\windows\system32\hhctrl.ocx - OK

    [Scan path] c:\windows\system32\hnetcfg.dll
    c:\windows\system32\hnetcfg.dll - OK

    [Scan path] c:\windows\system32\hpzipm12.exe
    c:\windows\system32\hpzipm12.exe - OK

    [Scan path] c:\windows\system32\hpzlnt09.dll
    c:\windows\system32\hpzlnt09.dll - OK

    [Scan path] c:\windows\system32\hticons.dll
    c:\windows\system32\hticons.dll - OK

    [Scan path] c:\windows\system32\iac25_32.ax
    c:\windows\system32\iac25_32.ax - OK

    [Scan path] c:\windows\system32\icaapi.dll
    c:\windows\system32\icaapi.dll - OK

    [Scan path] c:\windows\system32\iccvid.dll
    c:\windows\system32\iccvid.dll - OK

    [Scan path] c:\windows\system32\icmui.dll
    c:\windows\system32\icmui.dll - OK

    [Scan path] c:\windows\system32\ie4uinit.exe
    c:\windows\system32\ie4uinit.exe - OK

    [Scan path] c:\windows\system32\iedkcs32.dll
    c:\windows\system32\iedkcs32.dll - OK

    [Scan path] c:\windows\system32\ieframe.dll
    c:\windows\system32\ieframe.dll - OK

    [Scan path] c:\windows\system32\iertutil.dll
    c:\windows\system32\iertutil.dll - OK

    [Scan path] c:\windows\system32\ieudinit.exe
    c:\windows\system32\ieudinit.exe - OK

    [Scan path] c:\windows\system32\imaadp32.acm
    c:\windows\system32\imaadp32.acm - OK

    [Scan path] c:\windows\system32\imagehlp.dll
    c:\windows\system32\imagehlp.dll - OK

    [Scan path] c:\windows\system32\imapi.exe
    c:\windows\system32\imapi.exe - OK

    [Scan path] c:\windows\system32\imm32.dll
    c:\windows\system32\imm32.dll - OK

    [Scan path] c:\windows\system32\inetcomm.dll
    c:\windows\system32\inetcomm.dll - OK

    [Scan path] c:\windows\system32\iphlpapi.dll
    c:\windows\system32\iphlpapi.dll - OK

    [Scan path] c:\windows\system32\ipnathlp.dll
    c:\windows\system32\ipnathlp.dll - OK

    [Scan path] c:\windows\system32\ir32_32.dll
    c:\windows\system32\ir32_32.dll - OK

    [Scan path] c:\windows\system32\ir41_32.ax
    c:\windows\system32\ir41_32.ax - OK

    [Scan path] c:\windows\system32\ir50_32.dll
    c:\windows\system32\ir50_32.dll - OK

    [Scan path] c:\windows\system32\itss.dll
    c:\windows\system32\itss.dll - OK

    [Scan path] c:\windows\system32\iyuv_32.dll
    c:\windows\system32\iyuv_32.dll - OK

    [Scan path] c:\windows\system32\jscript.dll
    c:\windows\system32\jscript.dll - OK

    [Scan path] c:\windows\system32\jsproxy.dll
    c:\windows\system32\jsproxy.dll - OK

    [Scan path] c:\windows\system32\kerberos.dll
    c:\windows\system32\kerberos.dll - OK

    [Scan path] c:\windows\system32\kernel32.dll
    c:\windows\system32\kernel32.dll - OK

    [Scan path] c:\windows\system32\kmsvc.dll
    c:\windows\system32\kmsvc.dll - OK

    [Scan path] c:\windows\system32\l3codeca.acm
    c:\windows\system32\l3codeca.acm - OK

    [Scan path] c:\windows\system32\legitcheckcontrol.dll
    c:\windows\system32\legitcheckcontrol.dll - OK

    [Scan path] c:\windows\system32\linkinfo.dll
    c:\windows\system32\linkinfo.dll - OK

    [Scan path] c:\windows\system32\lmhsvc.dll
    c:\windows\system32\lmhsvc.dll - OK

    [Scan path] c:\windows\system32\localspl.dll
    c:\windows\system32\localspl.dll - OK

    [Scan path] c:\windows\system32\locator.exe
    c:\windows\system32\locator.exe - OK

    [Scan path] c:\windows\system32\logon.scr
    c:\windows\system32\logon.scr - OK

    [Scan path] c:\windows\system32\logonui.exe
    c:\windows\system32\logonui.exe - OK

    [Scan path] c:\windows\system32\lsasrv.dll
    c:\windows\system32\lsasrv.dll - OK

    [Scan path] c:\windows\system32\lsass.exe
    c:\windows\system32\lsass.exe - OK

    [Scan path] c:\windows\system32\lz32.dll
    c:\windows\system32\lz32.dll - OK

    [Scan path] c:\windows\system32\midimap.dll
    c:\windows\system32\midimap.dll - OK

    [Scan path] c:\windows\system32\mlang.dll
    c:\windows\system32\mlang.dll - OK

    [Scan path] c:\windows\system32\mmcshext.dll
    c:\windows\system32\mmcshext.dll - OK

    [Scan path] c:\windows\system32\mmsys.cpl
    c:\windows\system32\mmsys.cpl - OK

    [Scan path] c:\windows\system32\mnmsrvc.exe
    c:\windows\system32\mnmsrvc.exe - OK

    [Scan path] c:\windows\system32\mpr.dll
    c:\windows\system32\mpr.dll - OK

    [Scan path] c:\windows\system32\mprapi.dll
    c:\windows\system32\mprapi.dll packed by FLY-CODE
    >c:\windows\system32\mprapi.dll - OK

    [Scan path] c:\windows\system32\mprdim.dll
    c:\windows\system32\mprdim.dll - OK

    [Scan path] c:\windows\system32\msacm32.dll
    c:\windows\system32\msacm32.dll - OK

    [Scan path] c:\windows\system32\msacm32.drv
    c:\windows\system32\msacm32.drv - OK

    [Scan path] c:\windows\system32\msadp32.acm
    c:\windows\system32\msadp32.acm - OK

    [Scan path] c:\windows\system32\msapsspc.dll
    c:\windows\system32\msapsspc.dll - OK

    [Scan path] c:\windows\system32\msasn1.dll
    c:\windows\system32\msasn1.dll - OK

    [Scan path] c:\windows\system32\msaud32.acm
    c:\windows\system32\msaud32.acm - OK

    [Scan path] c:\windows\system32\mscoree.dll
    c:\windows\system32\mscoree.dll - OK

    [Scan path] c:\windows\system32\mscories.dll
    c:\windows\system32\mscories.dll - OK

    [Scan path] c:\windows\system32\msctfime.ime
    c:\windows\system32\msctfime.ime - OK

    [Scan path] c:\windows\system32\msdtc.exe
    c:\windows\system32\msdtc.exe - OK

    [Scan path] c:\windows\system32\msg711.acm
    c:\windows\system32\msg711.acm - OK

    [Scan path] c:\windows\system32\msg723.acm
    c:\windows\system32\msg723.acm - OK

    [Scan path] c:\windows\system32\msgina.dll
    c:\windows\system32\msgina.dll - OK

    [Scan path] c:\windows\system32\msgsm32.acm
    c:\windows\system32\msgsm32.acm - OK

    [Scan path] c:\windows\system32\msgsvc.dll
    c:\windows\system32\msgsvc.dll - OK

    [Scan path] c:\windows\system32\msh261.drv
    c:\windows\system32\msh261.drv - OK

    [Scan path] c:\windows\system32\msh263.drv
    c:\windows\system32\msh263.drv - OK

    [Scan path] c:\windows\system32\mshtml.dll
    c:\windows\system32\mshtml.dll packed by ZLIB
    >c:\windows\system32\mshtml.dll - archive BINARYRES
    >>c:\windows\system32\mshtml.dll/data001 - OK
    >>c:\windows\system32\mshtml.dll/data002 - OK
    >c:\windows\system32\mshtml.dll - OK

    [Scan path] c:\windows\system32\msi.dll
    c:\windows\system32\msi.dll - OK

    [Scan path] c:\windows\system32\msieftp.dll
    c:\windows\system32\msieftp.dll - OK

    [Scan path] c:\windows\system32\msiexec.exe
    c:\windows\system32\msiexec.exe - OK

    [Scan path] c:\windows\system32\msimg32.dll
    c:\windows\system32\msimg32.dll - OK

    [Scan path] c:\windows\system32\msnsspc.dll
    c:\windows\system32\msnsspc.dll - OK

    [Scan path] c:\windows\system32\mspmsnsv.dll
    c:\windows\system32\mspmsnsv.dll - OK

    [Scan path] c:\windows\system32\msprivs.dll
    c:\windows\system32\msprivs.dll - OK

    [Scan path] c:\windows\system32\msrle32.dll
    c:\windows\system32\msrle32.dll - OK

    [Scan path] c:\windows\system32\mstask.dll
    c:\windows\system32\mstask.dll - OK

    [Scan path] c:\windows\system32\mstlsapi.dll
    c:\windows\system32\mstlsapi.dll - OK

    [Scan path] c:\windows\system32\msv1_0.dll
    c:\windows\system32\msv1_0.dll - OK

    [Scan path] c:\windows\system32\msvcp60.dll
    c:\windows\system32\msvcp60.dll - OK

    [Scan path] c:\windows\system32\msvcrt.dll
    c:\windows\system32\msvcrt.dll - OK

    [Scan path] c:\windows\system32\msvidc32.dll
    c:\windows\system32\msvidc32.dll - OK

    [Scan path] c:\windows\system32\msvidctl.dll
    c:\windows\system32\msvidctl.dll - OK

    [Scan path] c:\windows\system32\mswsock.dll
    c:\windows\system32\mswsock.dll - OK

    [Scan path] c:\windows\system32\msxml3.dll
    c:\windows\system32\msxml3.dll - OK

    [Scan path] c:\windows\system32\msxml4.dll
    c:\windows\system32\msxml4.dll - OK

    [Scan path] c:\windows\system32\msyuv.dll
    c:\windows\system32\msyuv.dll - OK

    [Scan path] c:\windows\system32\mydocs.dll
    c:\windows\system32\mydocs.dll - OK

    [Scan path] c:\windows\system32\ncobjapi.dll
    c:\windows\system32\ncobjapi.dll - OK

    [Scan path] c:\windows\system32\nddeapi.dll
    c:\windows\system32\nddeapi.dll - OK

    [Scan path] c:\windows\system32\netapi32.dll
    c:\windows\system32\netapi32.dll - OK

    [Scan path] c:\windows\system32\netcfgx.dll
    c:\windows\system32\netcfgx.dll - OK

    [Scan path] c:\windows\system32\netdde.exe
    c:\windows\system32\netdde.exe - OK

    [Scan path] c:\windows\system32\netlogon.dll
    c:\windows\system32\netlogon.dll - OK

    [Scan path] c:\windows\system32\netman.dll
    c:\windows\system32\netman.dll - OK

    [Scan path] c:\windows\system32\netplwiz.dll
    c:\windows\system32\netplwiz.dll - OK

    [Scan path] c:\windows\system32\netrap.dll
    c:\windows\system32\netrap.dll - OK

    [Scan path] c:\windows\system32\netsetup.cpl
    c:\windows\system32\netsetup.cpl - OK

    [Scan path] c:\windows\system32\netshell.dll
    c:\windows\system32\netshell.dll - OK

    [Scan path] c:\windows\system32\netui0.dll
    c:\windows\system32\netui0.dll - OK

    [Scan path] c:\windows\system32\netui1.dll
    c:\windows\system32\netui1.dll - OK

    [Scan path] c:\windows\system32\normaliz.dll
    c:\windows\system32\normaliz.dll - OK

    [Scan path] c:\windows\system32\ntdll.dll
    c:\windows\system32\ntdll.dll - OK

    [Scan path] c:\windows\system32\ntdsapi.dll
    c:\windows\system32\ntdsapi.dll - OK

    [Scan path] c:\windows\system32\ntlanman.dll
    c:\windows\system32\ntlanman.dll - OK

    [Scan path] c:\windows\system32\ntlanui2.dll
    c:\windows\system32\ntlanui2.dll - OK

    [Scan path] c:\windows\system32\ntmarta.dll
    c:\windows\system32\ntmarta.dll packed by FLY-CODE
    >c:\windows\system32\ntmarta.dll - OK

    [Scan path] c:\windows\system32\ntmssvc.dll
    c:\windows\system32\ntmssvc.dll - OK

    [Scan path] c:\windows\system32\ntsd.exe
    c:\windows\system32\ntsd.exe - OK

    [Scan path] c:\windows\system32\ntshrui.dll
    c:\windows\system32\ntshrui.dll - OK

    [Scan path] c:\windows\system32\nvcpl.dll
    c:\windows\system32\nvcpl.dll - OK

    [Scan path] c:\windows\system32\nvshell.dll
    c:\windows\system32\nvshell.dll - OK

    [Scan path] c:\windows\system32\nvsvc32.exe
    c:\windows\system32\nvsvc32.exe - OK

    [Scan path] c:\windows\system32\occache.dll
    c:\windows\system32\occache.dll - OK

    [Scan path] c:\windows\system32\odbc32.dll
    c:\windows\system32\odbc32.dll - OK

    [Scan path] c:\windows\system32\odbcint.dll
    c:\windows\system32\odbcint.dll - OK

    [Scan path] c:\windows\system32\ole32.dll
    c:\windows\system32\ole32.dll - OK

    [Scan path] c:\windows\system32\oleaut32.dll
    c:\windows\system32\oleaut32.dll - OK

    [Scan path] c:\windows\system32\olecli32.dll
    c:\windows\system32\olecli32.dll - OK

    [Scan path] c:\windows\system32\olecnv32.dll
    c:\windows\system32\olecnv32.dll - OK

    [Scan path] c:\windows\system32\olesvr32.dll
    c:\windows\system32\olesvr32.dll - OK

    [Scan path] c:\windows\system32\olethk32.dll
    c:\windows\system32\olethk32.dll - OK

    [Scan path] c:\windows\system32\onex.dll
    c:\windows\system32\onex.dll - OK

    [Scan path] c:\windows\system32\photowiz.dll
    c:\windows\system32\photowiz.dll - OK

    [Scan path] c:\windows\system32\pjlmon.dll
    c:\windows\system32\pjlmon.dll - OK

    [Scan path] c:\windows\system32\powrprof.dll
    c:\windows\system32\powrprof.dll - OK

    [Scan path] c:\windows\system32\printui.dll
    c:\windows\system32\printui.dll - OK

    [Scan path] c:\windows\system32\profmap.dll
    c:\windows\system32\profmap.dll - OK

    [Scan path] c:\windows\system32\psapi.dll
    c:\windows\system32\psapi.dll - OK

    [Scan path] c:\windows\system32\qagentrt.dll
    c:\windows\system32\qagentrt.dll - OK

    [Scan path] c:\windows\system32\qmgr.dll
    c:\windows\system32\qmgr.dll - OK

    [Scan path] c:\windows\system32\qutil.dll
    c:\windows\system32\qutil.dll - OK

    [Scan path] c:\windows\system32\rasadhlp.dll
    c:\windows\system32\rasadhlp.dll - OK

    [Scan path] c:\windows\system32\rasapi32.dll
    c:\windows\system32\rasapi32.dll - OK

    [Scan path] c:\windows\system32\rasauto.dll
    c:\windows\system32\rasauto.dll - OK

    [Scan path] c:\windows\system32\raschap.dll
    c:\windows\system32\raschap.dll - OK

    [Scan path] c:\windows\system32\rasman.dll
    c:\windows\system32\rasman.dll - OK

    [Scan path] c:\windows\system32\rasmans.dll
    c:\windows\system32\rasmans.dll - OK

    [Scan path] c:\windows\system32\rastls.dll
    c:\windows\system32\rastls.dll - OK

    [Scan path] c:\windows\system32\regapi.dll
    c:\windows\system32\regapi.dll - OK

    [Scan path] c:\windows\system32\regsvr32.exe
    c:\windows\system32\regsvr32.exe - OK

    [Scan path] c:\windows\system32\remotepg.dll
    c:\windows\system32\remotepg.dll - OK

    [Scan path] c:\windows\system32\riched20.dll
    c:\windows\system32\riched20.dll - OK

    [Scan path] c:\windows\system32\riched32.dll
    c:\windows\system32\riched32.dll - OK

    [Scan path] c:\windows\system32\rpcrt4.dll
    c:\windows\system32\rpcrt4.dll - OK

    [Scan path] c:\windows\system32\rpcss.dll
    c:\windows\system32\rpcss.dll - OK

    [Scan path] c:\windows\system32\rsaenh.dll
    c:\windows\system32\rsaenh.dll - OK

    [Scan path] c:\windows\system32\rshx32.dll
    c:\windows\system32\rshx32.dll - OK

    [Scan path] c:\windows\system32\rsvp.exe
    c:\windows\system32\rsvp.exe - OK

    [Scan path] c:\windows\system32\rsvpsp.dll
    c:\windows\system32\rsvpsp.dll - OK

    [Scan path] c:\windows\system32\rtutils.dll
    c:\windows\system32\rtutils.dll - OK

    [Scan path] c:\windows\system32\rundll32.exe
    c:\windows\system32\rundll32.exe - OK

    [Scan path] c:\windows\system32\samlib.dll
    c:\windows\system32\samlib.dll - OK

    [Scan path] c:\windows\system32\samsrv.dll
    c:\windows\system32\samsrv.dll - OK

    [Scan path] c:\windows\system32\scardsvr.exe
    c:\windows\system32\scardsvr.exe - OK

    [Scan path] c:\windows\system32\scesrv.dll
    c:\windows\system32\scesrv.dll - OK

    [Scan path] c:\windows\system32\schannel.dll
    c:\windows\system32\schannel.dll - OK

    [Scan path] c:\windows\system32\schedsvc.dll
    c:\windows\system32\schedsvc.dll - OK

    [Scan path] c:\windows\system32\sclgntfy.dll
    c:\windows\system32\sclgntfy.dll - OK

    [Scan path] c:\windows\system32\scroller.scr
    c:\windows\system32\scroller.scr packed by ASPACK
    >c:\windows\system32\scroller.scr - OK

    [Scan path] c:\windows\system32\seclogon.dll
    c:\windows\system32\seclogon.dll - OK

    [Scan path] c:\windows\system32\secur32.dll
    c:\windows\system32\secur32.dll - OK

    [Scan path] c:\windows\system32\sendmail.dll
    c:\windows\system32\sendmail.dll - OK

    [Scan path] c:\windows\system32\sens.dll
    c:\windows\system32\sens.dll - OK

    [Scan path] c:\windows\system32\sensapi.dll
    c:\windows\system32\sensapi.dll - OK

    [Scan path] c:\windows\system32\services.exe
    c:\windows\system32\services.exe - OK

    [Scan path] c:\windows\system32\sessmgr.exe
    c:\windows\system32\sessmgr.exe - OK

    [Scan path] c:\windows\system32\setupapi.dll
    c:\windows\system32\setupapi.dll - OK

    [Scan path] c:\windows\system32\sfc.dll
    c:\windows\system32\sfc.dll - OK

    [Scan path] c:\windows\system32\sfc_os.dll
    c:\windows\system32\sfc_os.dll - OK

    [Scan path] c:\windows\system32\shdocvw.dll
    c:\windows\system32\shdocvw.dll - OK

    [Scan path] c:\windows\system32\shell32.dll
    c:\windows\system32\shell32.dll - OK

    [Scan path] c:\windows\system32\shimeng.dll
    c:\windows\system32\shimeng.dll - OK

    [Scan path] c:\windows\system32\shimgvw.dll
    c:\windows\system32\shimgvw.dll - OK

    [Scan path] c:\windows\system32\shlwapi.dll
    c:\windows\system32\shlwapi.dll - OK

    [Scan path] c:\windows\system32\shmedia.dll
    c:\windows\system32\shmedia.dll - OK

    [Scan path] c:\windows\system32\shmgrate.exe
    c:\windows\system32\shmgrate.exe - OK

    [Scan path] c:\windows\system32\shscrap.dll
    c:\windows\system32\shscrap.dll - OK

    [Scan path] c:\windows\system32\shsvcs.dll
    c:\windows\system32\shsvcs.dll - OK

    [Scan path] c:\windows\system32\sirenacm.dll
    c:\windows\system32\sirenacm.dll - OK

    [Scan path] c:\windows\system32\sl_anet.acm
    c:\windows\system32\sl_anet.acm - OK

    [Scan path] c:\windows\system32\slayerxp.dll
    c:\windows\system32\slayerxp.dll - OK

    [Scan path] c:\windows\system32\smlogsvc.exe
    c:\windows\system32\smlogsvc.exe - OK

    [Scan path] c:\windows\system32\smss.exe
    c:\windows\system32\smss.exe - OK

    [Scan path] c:\windows\system32\spoolsv.exe
    c:\windows\system32\spoolsv.exe - OK

    [Scan path] c:\windows\system32\srsvc.dll
    c:\windows\system32\srsvc.dll - OK

    [Scan path] c:\windows\system32\srvsvc.dll
    c:\windows\system32\srvsvc.dll - OK

    [Scan path] c:\windows\system32\ssdpsrv.dll
    c:\windows\system32\ssdpsrv.dll - OK

    [Scan path] c:\windows\system32\svchost.exe
    c:\windows\system32\svchost.exe - OK

    [Scan path] c:\windows\system32\sxs.dll
    c:\windows\system32\sxs.dll - OK

    [Scan path] c:\windows\system32\syncui.dll
    c:\windows\system32\syncui.dll - OK

    [Scan path] c:\windows\system32\tapi32.dll
    c:\windows\system32\tapi32.dll - OK

    [Scan path] c:\windows\system32\tapisrv.dll
    c:\windows\system32\tapisrv.dll - OK

    [Scan path] c:\windows\system32\tcpmon.dll
    c:\windows\system32\tcpmon.dll - OK

    [Scan path] c:\windows\system32\termsrv.dll
    c:\windows\system32\termsrv.dll - OK

    [Scan path] c:\windows\system32\themeui.dll
    c:\windows\system32\themeui.dll - OK

    [Scan path] c:\windows\system32\trkwks.dll
    c:\windows\system32\trkwks.dll - OK

    [Scan path] c:\windows\system32\tsbyuv.dll
    c:\windows\system32\tsbyuv.dll - OK

    [Scan path] c:\windows\system32\tssoft32.acm
    c:\windows\system32\tssoft32.acm - OK

    [Scan path] c:\windows\system32\twext.dll
    c:\windows\system32\twext.dll - OK

    [Scan path] c:\windows\system32\umpnpmgr.dll
    c:\windows\system32\umpnpmgr.dll - OK

    [Scan path] c:\windows\system32\upnphost.dll
    c:\windows\system32\upnphost.dll - OK

    [Scan path] c:\windows\system32\ups.exe
    c:\windows\system32\ups.exe - OK

    [Scan path] c:\windows\system32\url.dll
    c:\windows\system32\url.dll - OK

    [Scan path] c:\windows\system32\urlmon.dll
    c:\windows\system32\urlmon.dll - OK

    [Scan path] c:\windows\system32\usbmon.dll
    c:\windows\system32\usbmon.dll - OK

    [Scan path] c:\windows\system32\user32.dll
    c:\windows\system32\user32.dll - OK

    [Scan path] c:\windows\system32\userenv.dll
    c:\windows\system32\userenv.dll - OK

    [Scan path] c:\windows\system32\userinit.exe
    c:\windows\system32\userinit.exe - OK

    [Scan path] c:\windows\system32\uxtheme.dll
    c:\windows\system32\uxtheme.dll - OK

    [Scan path] c:\windows\system32\vbscript.dll
    c:\windows\system32\vbscript.dll - OK

    [Scan path] c:\windows\system32\version.dll
    c:\windows\system32\version.dll - OK

    [Scan path] c:\windows\system32\vssapi.dll
    c:\windows\system32\vssapi.dll - OK

    [Scan path] c:\windows\system32\vssvc.exe
    c:\windows\system32\vssvc.exe - OK

    [Scan path] c:\windows\system32\w32time.dll
    c:\windows\system32\w32time.dll - OK

    [Scan path] c:\windows\system32\w3ssl.dll
    c:\windows\system32\w3ssl.dll - OK

    [Scan path] c:\windows\system32\wbem\esscli.dll
    c:\windows\system32\wbem\esscli.dll - OK

    [Scan path] c:\windows\system32\wbem\fastprox.dll
    c:\windows\system32\wbem\fastprox.dll - OK

    [Scan path] c:\windows\system32\wbem\ncprov.dll
    c:\windows\system32\wbem\ncprov.dll - OK

    [Scan path] c:\windows\system32\wbem\repdrvfs.dll
    c:\windows\system32\wbem\repdrvfs.dll - OK

    [Scan path] c:\windows\system32\wbem\wbemcomn.dll
    c:\windows\system32\wbem\wbemcomn.dll - OK

    [Scan path] c:\windows\system32\wbem\wbemcore.dll
    c:\windows\system32\wbem\wbemcore.dll - OK

    [Scan path] c:\windows\system32\wbem\wbemess.dll
    c:\windows\system32\wbem\wbemess.dll - OK

    [Scan path] c:\windows\system32\wbem\wbemprox.dll
    c:\windows\system32\wbem\wbemprox.dll - OK

    [Scan path] c:\windows\system32\wbem\wbemsvc.dll
    c:\windows\system32\wbem\wbemsvc.dll - OK

    [Scan path] c:\windows\system32\wbem\winmgmt.exe
    c:\windows\system32\wbem\winmgmt.exe - OK

    [Scan path] c:\windows\system32\wbem\wmiapsrv.exe
    c:\windows\system32\wbem\wmiapsrv.exe - OK

    [Scan path] c:\windows\system32\wbem\wmiprvsd.dll
    c:\windows\system32\wbem\wmiprvsd.dll - OK

    [Scan path] c:\windows\system32\wbem\wmisvc.dll
    c:\windows\system32\wbem\wmisvc.dll - OK

    [Scan path] c:\windows\system32\wbem\wmiutils.dll
    c:\windows\system32\wbem\wmiutils.dll - OK

    [Scan path] c:\windows\system32\wdigest.dll
    c:\windows\system32\wdigest.dll - OK

    [Scan path] c:\windows\system32\wdmaud.drv
    c:\windows\system32\wdmaud.drv - OK

    [Scan path] c:\windows\system32\webcheck.dll
    c:\windows\system32\webcheck.dll - OK

    [Scan path] c:\windows\system32\webclnt.dll
    c:\windows\system32\webclnt.dll - OK

    [Scan path] c:\windows\system32\wiascr.dll
    c:\windows\system32\wiascr.dll - OK

    [Scan path] c:\windows\system32\wiaservc.dll
    c:\windows\system32\wiaservc.dll - OK

    [Scan path] c:\windows\system32\wiashext.dll
    c:\windows\system32\wiashext.dll - OK

    [Scan path] c:\windows\system32\winhttp.dll
    c:\windows\system32\winhttp.dll - OK

    [Scan path] c:\windows\system32\wininet.dll
    c:\windows\system32\wininet.dll - OK

    [Scan path] c:\windows\system32\winipsec.dll
    c:\windows\system32\winipsec.dll - OK

    [Scan path] c:\windows\system32\winlogon.exe
    c:\windows\system32\winlogon.exe - OK

    [Scan path] c:\windows\system32\winmm.dll
    c:\windows\system32\winmm.dll - OK

    [Scan path] c:\windows\system32\winrnr.dll
    c:\windows\system32\winrnr.dll - OK

    [Scan path] c:\windows\system32\winscard.dll
    c:\windows\system32\winscard.dll - OK

    [Scan path] c:\windows\system32\winspool.drv
    c:\windows\system32\winspool.drv - OK

    [Scan path] c:\windows\system32\winsrv.dll
    c:\windows\system32\winsrv.dll - OK

    [Scan path] c:\windows\system32\winsta.dll
    c:\windows\system32\winsta.dll packed by FLY-CODE
    >c:\windows\system32\winsta.dll - OK

    [Scan path] c:\windows\system32\wintrust.dll
    c:\windows\system32\wintrust.dll - OK

    [Scan path] c:\windows\system32\wkssvc.dll
    c:\windows\system32\wkssvc.dll - OK

    [Scan path] c:\windows\system32\wldap32.dll
    c:\windows\system32\wldap32.dll - OK

    [Scan path] c:\windows\system32\wlnotify.dll
    c:\windows\system32\wlnotify.dll - OK

    [Scan path] c:\windows\system32\wmi.dll
    c:\windows\system32\wmi.dll - OK

    [Scan path] c:\windows\system32\wmpshell.dll
    c:\windows\system32\wmpshell.dll - OK

    [Scan path] c:\windows\system32\wpdshext.dll
    c:\windows\system32\wpdshext.dll - OK

    [Scan path] c:\windows\system32\wpdshserviceobj.dll
    c:\windows\system32\wpdshserviceobj.dll - OK

    [Scan path] c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2_32.dll - OK

    [Scan path] c:\windows\system32\ws2help.dll
    c:\windows\system32\ws2help.dll - OK

    [Scan path] c:\windows\system32\wscsvc.dll
    c:\windows\system32\wscsvc.dll - OK

    [Scan path] c:\windows\system32\wshext.dll
    c:\windows\system32\wshext.dll - OK

    [Scan path] c:\windows\system32\wshtcpip.dll
    c:\windows\system32\wshtcpip.dll - OK

    [Scan path] c:\windows\system32\wtsapi32.dll
    c:\windows\system32\wtsapi32.dll - OK

    [Scan path] c:\windows\system32\wuaucpl.cpl
    c:\windows\system32\wuaucpl.cpl - OK

    [Scan path] c:\windows\system32\wuauserv.dll
    c:\windows\system32\wuauserv.dll - OK

    [Scan path] c:\windows\system32\wudfsvc.dll
    c:\windows\system32\wudfsvc.dll packed by PESTUB
    >c:\windows\system32\wudfsvc.dll - OK

    [Scan path] c:\windows\system32\wzcsapi.dll
    c:\windows\system32\wzcsapi.dll - OK

    [Scan path] c:\windows\system32\wzcsvc.dll
    c:\windows\system32\wzcsvc.dll - OK

    [Scan path] c:\windows\system32\xmlprov.dll
    c:\windows\system32\xmlprov.dll - OK

    [Scan path] c:\windows\system32\xpsp2res.dll
    c:\windows\system32\xpsp2res.dll - OK

    [Scan path] c:\windows\system32\xpsshhdr.dll
    c:\windows\system32\xpsshhdr.dll - OK

    [Scan path] c:\windows\system32\zipfldr.dll
    c:\windows\system32\zipfldr.dll - OK

    [Scan path] c:\windows\system32\zunebusenum.exe
    c:\windows\system32\zunebusenum.exe - OK

    [Scan path] c:\windows\system32\zunewlancfgsvc.exe
    c:\windows\system32\zunewlancfgsvc.exe packed by FLY-CODE
    >c:\windows\system32\zunewlancfgsvc.exe - OK

    [Scan path] c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcr80.dll
    c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcr80.dll - OK

    [Scan path] c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll - OK

    -----------------------------------------------------------------------------
    Scan statistics
    -----------------------------------------------------------------------------
    Scanned: 1188
    Infected: 0
    Modifications: 0
    Suspicious: 0
    Adware: 0
    Dialers: 0
    Jokes: 0
    Riskware: 0
    Hacktools: 0
    Cured: 0
    Deleted: 0
    Renamed: 0
    Moved: 0
    Ignored: 0
    Scan speed: 1964 Kb/s
    Scan time: 00:01:41
    -----------------------------------------------------------------------------

    =============================================================================
    Total session statistics
    =============================================================================
    Scanned: 1188
    Infected: 0
    Modifications: 0
    Suspicious: 0
    Adware: 0
    Dialers: 0
    Jokes: 0
    Riskware: 0
    Hacktools: 0
    Cured: 0
    Deleted: 0
    Renamed: 0
    Moved: 0
    Ignored: 0
    Scan speed: 1331 Kb/s
    Scan time: 00:02:29
    =============================================================================

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Download ATF Cleaner

    • Double-click ATF-Cleaner.exe to run the program.
    • Click Select All found at the bottom of the list.
    • Click the Empty Selected button.
    If you use Firefox browser, do this also:

    • Click Firefox at the top and choose Select All from the list.
    • Click the Empty Selected button.
    • NOTE : If you would like to keep your saved passwords, please click No at the prompt.
    If you use Opera browser, do this also:

    • Click Opera at the top and choose Select All from the list.
    • Click the Empty Selected button.
    • NOTE : If you would like to keep your saved passwords, please click No at the prompt.
    Click Exit on the Main menu to close the program.

    After that please let me know how things are running

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Ran the scan, it worked for a few minutes longer but then it froze.

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Hi,

    Let's see what this picks up

    Before we start fixing anything you should print out these instructions or copy them to a NotePad file so they will be accessible. Some steps will require you to disconnect from the Internet or use Safe Mode and you will not have access to this page.

    Please download Dr.Web CureIt and save it to your desktop. DO NOT perform a scan yet.
    alternate download link
    Note: The file will be randomly named (i.e. 5mkuvc4z.exe).

    Reboot your computer in "Safe Mode" using the F8 method. To do this, restart your computer and after hearing your computer beep once during startup (but before the Windows icon appears) press the F8 key repeatedly. A menu will appear with several options. Use the arrow keys to navigate and select the option to run Windows in "Safe Mode".

    Scan with Dr.Web CureIt as follows:

    • Double-click on the randomly named file to open the program and click Start. (There is no need to update if you just downloaded the most current version
    • Read the anti-virus check by DrWeb scanner prompt and click Ok where asked to Start scan now? Allow the setup.exe to load if asked by any of your security programs.
    • The Express scan will automatically begin.
      (This is a short scan of files currently running in memory, boot sectors, and targeted folders).
    • If prompted to dowload the Full version Free Trial, ignore and click the X to close the window.
    • If an infected object is found, you will be prompted to move anything that cannot be cured. Click Yes to All. (This will move any detected files to the C:\Documents and Settings\userprofile\DoctorWeb\Quarantine folder if they can't be cured)



    • After the Express Scan is finished, put a check next to Complete scan to scan all local disks and removable media.
    • In the top menu, click Settings > Change settings, and uncheck "Heuristic analysis" under the "Scanning" tab, then click Apply, Ok.
    • Back at the main window, click the green arrow "Start Scanning" button on the right under the Dr.Web logo.
    • Please be patient as this scan could take a long time to complete.
    • When the scan has finished, a message will be displayed at the bottom indicating if any viruses were found.
    • Click Select All, then choose Cure > Move incurable.
    • In the top menu, click file and choose save report list.
    • Save the DrWeb.csv report to your desktop.
    • Exit Dr.Web Cureit when done.
    • Important! Reboot your computer because it could be possible that files in use will be moved/deleted during reboot.
    • After reboot, post the contents of the log from Dr.Web in your next reply. (You can use Notepad to open the DrWeb.cvs report)

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    The scan didn't get to finish once again. It got around a third of the way done before the computer froze once more.

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Did you try in Safe Mode? I'm leaning toward the freezing being more of a hardware issue

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Yes I opened it up in Safe Mode but it still froze about a third of the way through the scan.

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Hi,

    Sorry for the delay. Must have missed this thread. Is the machine still performing badly?

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Yes it is still freezing every fifteen or twenty minutes, it really varies.

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Download SuperAntiSpyware

    • Load SuperAntiSpyware and click the Check for updates button.
    • Once the update is finished click the Scan your computer button.
    • Check Perform Complete Scan and then next.
    • SuperAntiSpyware will now scan your computer and when its finished it will list all the infections it has found.
    • Make sure that they all have a check next to them and press next.
    • Click finish and you will be taken back to the main interface.
    • Click Preferences and then click the statistics/logs tab. Click the dated log and press view log and a text file will appear.
    • Copy and paste the log onto the forum.

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    This went well.

    PERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 10/20/2010 at 09:47 PM

    Application Version : 4.44.1000

    Core Rules Database Version : 5725
    Trace Rules Database Version: 3422

    Scan type : Quick Scan
    Total Scan Time : 00:07:44

    Memory items scanned : 448
    Memory threats detected : 0
    Registry items scanned : 2022
    Registry threats detected : 0
    File items scanned : 7595
    File threats detected : 269

    Adware.Tracking Cookie
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@pro-market[2].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@themis-media[2].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@imrworldwide[4].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@adecn[4].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@adultswim[1].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@media6degrees[6].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@statcounter[7].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@lucidmedia[1].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@legolas-media[6].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@at.atwola[4].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@www.burstbeacon[6].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@revsci[6].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@collective-media[5].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@ads.adultswim[1].txt
    C:\Documents and Settings\Owner.OWNER-58B0B3773\Cookies\owner@invitemedia[2].txt
    adimages.scrippsnetworks.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    cdn2.themis-media.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    cdn4.specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    convoad.technoratimedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    i.adultswim.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    ia.media-imdb.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    m1.2mdn.net [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media-macys2.pictela.net [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media.entertonement.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media.ign.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media.mtvnservices.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media.scanscout.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media.socialvibe.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media1.break.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    msnbcmedia.msn.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    objects.tremormedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    s0.2mdn.net [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    secure-us.imrworldwide.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    serving-sys.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    smsar1.presidiomedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    static.2mdn.net [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    static.themis-media.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    udn.specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    www.soundclick.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    wwwstatic.megaporn.com [ C:\Documents and Settings\HelpAssistant\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    .revsci.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .revsci.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .revsci.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .revsci.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .atdmt.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .atdmt.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .questionmarket.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .media6degrees.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .media6degrees.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .microsoftwindows.112.2o7.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .overture.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .overture.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .sixapart.adbureau.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .doubleclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificmedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .media6degrees.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    cdn4.specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .bs.serving-sys.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    cdn4.specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .apmebf.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .network.realmedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .burstnet.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    www.burstnet.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .burstnet.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .content.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .imrworldwide.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .imrworldwide.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .interclick.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .a1.interclick.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .a1.interclick.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .a1.interclick.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .a1.interclick.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .a1.interclick.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ads.bridgetrack.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ads.bridgetrack.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ads.bridgetrack.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ads.bridgetrack.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .content.yieldmanager.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .collective-media.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .yieldmanager.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .tribalfusion.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .revsci.net [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    network.realmedia.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .adserver.adtechus.com [ C:\Documents and Settings\HelpAssistant\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    adimages.scrippsnetworks.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    cdn2.themis-media.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    cdn4.specificclick.net [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    convoad.technoratimedia.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    i.adultswim.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    ia.media-imdb.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    m1.2mdn.net [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media-macys2.pictela.net [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media.entertonement.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media.ign.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media.mtvnservices.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media.scanscout.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media.socialvibe.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    media1.break.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    msnbcmedia.msn.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    objects.tremormedia.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    s0.2mdn.net [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    secure-us.imrworldwide.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    serving-sys.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    smsar1.presidiomedia.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    static.2mdn.net [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    static.themis-media.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    udn.specificclick.net [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    www.soundclick.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    wwwstatic.megaporn.com [ C:\Documents and Settings\Owner\Application Data\Macromedia\Flash Player\#SharedObjects\K3BS4VZ5 ]
    .revsci.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .revsci.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .revsci.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .revsci.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .atdmt.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .atdmt.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .questionmarket.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .media6degrees.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .media6degrees.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .microsoftwindows.112.2o7.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .overture.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .overture.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .sixapart.adbureau.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .doubleclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificmedia.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .media6degrees.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    cdn4.specificclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .bs.serving-sys.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .serving-sys.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    cdn4.specificclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .specificclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .apmebf.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .network.realmedia.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .burstnet.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    www.burstnet.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .burstnet.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ad.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .content.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .imrworldwide.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .imrworldwide.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .ads.pointroll.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .interclick.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .a1.interclick.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .a1.interclick.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .a1.interclick.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .a1.interclick.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .a1.interclick.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ads.bridgetrack.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ads.bridgetrack.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ads.bridgetrack.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    ads.bridgetrack.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .content.yieldmanager.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .collective-media.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .yieldmanager.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .advertising.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .tribalfusion.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .fastclick.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .revsci.net [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .realmedia.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    network.realmedia.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    .adserver.adtechus.com [ C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\m27m607o.default\cookies.sqlite ]
    cdn2.themis-media.com [ C:\Documents and Settings\Owner.OWNER-58B0B3773\Application Data\Macromedia\Flash Player\#SharedObjects\34HPV9ZV ]
    games.adultswim.com [ C:\Documents and Settings\Owner.OWNER-58B0B3773\Application Data\Macromedia\Flash Player\#SharedObjects\34HPV9ZV ]
    media.ign.com [ C:\Documents and Settings\Owner.OWNER-58B0B3773\Application Data\Macromedia\Flash Player\#SharedObjects\34HPV9ZV ]
    s0.2mdn.net [ C:\Documents and Settings\Owner.OWNER-58B0B3773\Application Data\Macromedia\Flash Player\#SharedObjects\34HPV9ZV ]

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    Hi,

    I believe your freezing is down to insufficient RAM in the machine. If you upgrade it should solve it

    descriptionFreezing computer; Slow; Virus? EmptyRe: Freezing computer; Slow; Virus?

    more_horiz
    privacy_tip Permissions in this forum:
    You cannot reply to topics in this forum