C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - DirectAnimation Java Classes
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.8
ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {61F684C7-B71D-C06D-8637-87A1C70CAFF6} - Internet Explorer
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} - .NET Framework
ActiveX: {73fa19d0-2d75-11d2-995d-00c04f98bbc9} - Web Folders
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
ActiveX: {851FDFAC-B3F9-435A-A49C-B4F18A1737E7} - Microsoft Silverlight 3.0
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {A17E30C4-A9BA-11D4-8673-60DB54C10000} - Reg Error: Value error.
ActiveX: {AA218328-0EA8-4D70-8972-E987A9190FF4} - Reg Error: Value error.
ActiveX: {B508B3F1-A24A-32C0-B310-85786919EF28} - .NET Framework
ActiveX: {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - .NET Framework
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} - .NET Framework
ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Task Scheduler
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} - Adobe Flash Player
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: {EF289A85-8E57-408d-BE47-73B55609861A} - RootsUpdate
ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\ie4uinit.exe -UserIconConfig
ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE
ActiveX: >{C92EB41C-D4C5-4CCA-A444-318AE7FB6FC2} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
CREATERESTOREPOINT
Error starting restore point: System Restore is disabled.
Error closing restore point: System Restore is disabled.
========== Files/Folders - Created Within 30 Days ========== [2011/05/16 12:45:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\McAfee
[2011/05/16 12:40:51 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Owner\Recent
[2011/05/15 18:44:59 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Owner\Start Menu\Programs\Windows XP Recovery
[2011/05/15 18:19:26 | 000,434,176 | -H-- | C] (QNP) -- C:\Documents and Settings\All Users\Application Data\YgslssmSaaRn.exe
[2011/05/07 11:36:13 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\Yahoo
[2011/04/29 12:29:05 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\iTunes
[2011/04/29 12:28:00 | 000,000,000 | -H-D | C] -- C:\Program Files\iPod
[2011/04/29 12:22:03 | 000,000,000 | -H-D | C] -- C:\Program Files\Bonjour
[2008/03/24 18:45:45 | 000,033,792 | RH-- | C] ( ) -- C:\WINDOWS\System32\a3d.dll
[2006/08/16 23:11:02 | 000,009,216 | -H-- | C] ( ) -- C:\WINDOWS\System32\KILLAPPS.EXE
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\Documents and Settings\Owner\My Documents\*.tmp files -> C:\Documents and Settings\Owner\My Documents\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2011/05/16 12:48:59 | 000,000,330 | -H-- | M] () -- C:\WINDOWS\tasks\MP Scheduled Scan.job
[2011/05/16 12:45:55 | 000,013,646 | -H-- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/05/16 12:45:24 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/05/16 12:41:11 | 000,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2011/05/16 12:40:47 | 000,000,880 | -H-- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/05/16 12:36:46 | 000,378,368 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\17424164.exe
[2011/05/16 11:42:04 | 000,000,422 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{3DB9A020-3481-434C-BCEC-AC02BC5A62CB}.job
[2011/05/16 11:38:02 | 000,000,344 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\17424164
[2011/05/15 19:06:08 | 000,064,900 | -H-- | M] () -- C:\WINDOWS\System32\DVCState-{00000005-00000000-00000001-00001102-00000005-002C1102}.rfx
[2011/05/15 19:06:08 | 000,054,800 | -H-- | M] () -- C:\WINDOWS\System32\BMXStateBkp-{00000005-00000000-00000001-00001102-00000005-002C1102}.rfx
[2011/05/15 19:06:08 | 000,054,800 | -H-- | M] () -- C:\WINDOWS\System32\BMXState-{00000005-00000000-00000001-00001102-00000005-002C1102}.rfx
[2011/05/15 19:06:08 | 000,001,080 | -H-- | M] () -- C:\WINDOWS\System32\settingsbkup.sfm
[2011/05/15 19:06:08 | 000,001,080 | -H-- | M] () -- C:\WINDOWS\System32\settings.sfm
[2011/05/15 18:59:10 | 000,000,884 | -H-- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/05/15 18:56:53 | 000,000,040 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\~17424164
[2011/05/15 18:45:05 | 000,000,819 | -H-- | M] () -- C:\Documents and Settings\Owner\Desktop\Windows XP Recovery.lnk
[2011/05/15 18:19:23 | 000,434,176 | -H-- | M] (QNP) -- C:\Documents and Settings\All Users\Application Data\YgslssmSaaRn.exe
[2011/05/15 14:41:39 | 000,000,116 | -H-- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011/05/13 22:04:01 | 000,000,284 | -H-- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/05/11 22:37:05 | 000,000,187 | -H-- | M] () -- C:\WINDOWS\hpbafd.ini
[2011/04/20 12:53:49 | 000,309,992 | -H-- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/04/19 12:52:52 | 000,870,128 | -H-- | M] () -- C:\WINDOWS\System32\mcs.rma
[2011/04/19 12:52:52 | 000,000,004 | -H-- | M] () -- C:\WINDOWS\System32\A18EBC
[2011/04/19 06:43:40 | 000,494,076 | -H-- | M] () -- C:\Documents and Settings\Owner\My Documents\15mrp.pdf
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\Documents and Settings\Owner\My Documents\*.tmp files -> C:\Documents and Settings\Owner\My Documents\*.tmp -> ]
========== Files Created - No Company Name ========== [2011/05/16 12:36:44 | 000,378,368 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\17424164.exe
[2011/05/16 11:38:02 | 000,000,344 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\17424164
[2011/05/15 18:49:02 | 000,000,040 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\~17424164
[2011/05/15 18:45:05 | 000,000,819 | -H-- | C] () -- C:\Documents and Settings\Owner\Desktop\Windows XP Recovery.lnk
[2011/04/19 06:43:33 | 000,494,076 | -H-- | C] () -- C:\Documents and Settings\Owner\My Documents\15mrp.pdf
[2011/04/04 23:28:39 | 004,149,312 | -H-- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2011/04/02 12:37:32 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\hpqEmlSz.INI
[2010/12/15 20:30:33 | 000,256,512 | -H-- | C] () -- C:\WINDOWS\PEV.exe
[2010/12/15 20:30:33 | 000,089,088 | -H-- | C] () -- C:\WINDOWS\MBR.exe
[2010/12/15 20:30:32 | 000,098,816 | -H-- | C] () -- C:\WINDOWS\sed.exe
[2010/12/15 20:30:32 | 000,080,412 | -H-- | C] () -- C:\WINDOWS\grep.exe
[2010/12/15 20:30:32 | 000,068,096 | -H-- | C] () -- C:\WINDOWS\zip.exe
[2010/12/09 08:38:52 | 000,000,664 | -H-- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/09/28 22:52:32 | 000,070,556 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2010/01/21 11:21:25 | 000,023,110 | -H-- | C] () -- C:\WINDOWS\hpqins15.dat
[2009/12/03 00:39:57 | 000,077,349 | -H-- | C] () -- C:\WINDOWS\hpqins05.dat
[2009/06/12 21:38:11 | 000,116,840 | -H-- | C] () -- C:\WINDOWS\hpqins00.dat
[2009/05/06 19:05:25 | 000,023,040 | -H-- | C] () -- C:\WINDOWS\System32\irisco32.dll
[2008/12/14 18:12:22 | 000,012,054 | RH-- | C] () -- C:\WINDOWS\hpwscr20.dat
[2008/12/14 18:10:25 | 000,178,692 | -H-- | C] () -- C:\WINDOWS\hpwins20.dat
[2008/12/14 18:10:24 | 000,002,428 | RH-- | C] () -- C:\WINDOWS\hpwmdl20.dat
[2008/12/03 11:48:28 | 000,032,768 | -H-- | C] () -- C:\WINDOWS\delexe.exe
[2008/12/02 17:09:02 | 000,000,659 | -H-- | C] () -- C:\WINDOWS\FMTMSAM.INI
[2008/12/02 17:08:42 | 000,000,187 | -H-- | C] () -- C:\WINDOWS\hpbafd.ini
[2008/12/02 17:08:07 | 000,000,019 | -H-- | C] () -- C:\WINDOWS\hppsi_indexbase.dat
[2008/11/13 04:03:11 | 000,000,118 | -H-- | C] () -- C:\WINDOWS\System32\MRT.INI
[2008/07/29 22:42:01 | 000,006,048 | -H-- | C] () -- C:\WINDOWS\System32\MCC16.dll
[2008/06/07 18:49:09 | 000,010,939 | -H-- | C] () -- C:\WINDOWS\cdplayer.ini
[2008/05/14 15:15:02 | 000,000,068 | -H-- | C] () -- C:\WINDOWS\ccolwiz.ini
[2008/05/01 13:16:36 | 000,002,751 | -H-- | C] () -- C:\WINDOWS\DevMgr.ini
[2008/05/01 13:15:53 | 000,000,020 | -H-- | C] () -- C:\WINDOWS\Hposcv07.INI
[2008/04/25 19:55:17 | 000,343,040 | -H-- | C] () -- C:\WINDOWS\System32\lffpx7.dll
[2008/04/25 19:55:17 | 000,116,736 | -H-- | C] () -- C:\WINDOWS\System32\lfkodak.dll
[2008/04/25 19:55:17 | 000,088,576 | -H-- | C] () -- C:\WINDOWS\System32\LFFPX90N.DLL
[2008/04/25 19:55:16 | 000,906,784 | -H-- | C] () -- C:\WINDOWS\System32\OWL52F.DLL
[2008/04/25 19:55:16 | 000,096,768 | -H-- | C] () -- C:\WINDOWS\System32\PWJPEG32.DLL
[2008/03/31 11:30:51 | 000,000,102 | -H-- | C] () -- C:\WINDOWS\VSWizard.ini
[2008/03/27 16:04:48 | 000,000,165 | -H-- | C] () -- C:\WINDOWS\QUICKEN.INI
[2008/03/27 12:12:15 | 000,033,280 | -H-- | C] () -- C:\Documents and Settings\Owner\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/03/26 16:02:06 | 000,184,320 | -H-- | C] () -- C:\WINDOWS\System32\epsnodlm.dll
[2008/03/26 15:01:19 | 000,000,128 | -H-- | C] () -- C:\Documents and Settings\Owner\Local Settings\Application Data\fusioncache.dat
[2008/03/26 12:49:49 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\epadmin.INI
[2008/03/26 10:26:00 | 000,000,035 | -H-- | C] () -- C:\WINDOWS\A5W.INI
[2008/03/25 19:06:06 | 000,000,116 | -H-- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008/03/24 22:18:55 | 000,000,376 | -H-- | C] () -- C:\WINDOWS\ODBC.INI
[2008/03/24 18:45:45 | 000,323,640 | RH-- | C] () -- C:\WINDOWS\System32\ctdlang.dat
[2008/03/24 18:45:45 | 000,313,207 | RH-- | C] () -- C:\WINDOWS\System32\ctstatic.dat
[2008/03/24 18:45:45 | 000,053,932 | RH-- | C] () -- C:\WINDOWS\System32\ctdaught.dat
[2008/03/24 18:45:45 | 000,044,567 | RH-- | C] () -- C:\WINDOWS\System32\ctdnlstr.dat
[2008/03/24 18:31:30 | 000,003,072 | -H-- | C] () -- C:\WINDOWS\CTXFIRES.DLL
[2008/03/24 18:25:35 | 000,049,152 | RH-- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2008/03/24 18:14:22 | 000,011,127 | -H-- | C] () -- C:\WINDOWS\Ascd_log.ini
[2008/03/24 18:13:14 | 000,005,810 | RH-- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2008/03/24 18:13:12 | 000,010,802 | -H-- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2008/03/24 18:12:58 | 000,010,288 | -H-- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2008/03/24 18:07:07 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2008/03/24 18:01:23 | 000,021,640 | -H-- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2008/03/24 17:59:09 | 000,001,158 | -H-- | C] () -- C:\WINDOWS\mozver.dat
[2008/03/24 17:55:57 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\nsreg.dat
[2008/03/24 12:57:10 | 000,004,161 | -H-- | C] () -- C:\WINDOWS\ODBCINST.INI
[2008/03/24 12:55:47 | 000,309,992 | -H-- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2007/12/05 02:41:00 | 001,703,936 | -H-- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2007/12/05 02:41:00 | 001,626,112 | -H-- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2007/12/05 02:41:00 | 001,474,560 | -H-- | C] () -- C:\WINDOWS\System32\nview.dll
[2007/12/05 02:41:00 | 001,339,392 | -H-- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2007/12/05 02:41:00 | 001,019,904 | -H-- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2007/12/05 02:41:00 | 000,466,944 | -H-- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2007/12/05 02:41:00 | 000,442,368 | -H-- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2007/12/05 02:41:00 | 000,425,984 | -H-- | C] () -- C:\WINDOWS\System32\keystone.exe
[2007/12/05 02:41:00 | 000,286,720 | -H-- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2006/12/12 12:12:00 | 000,006,656 | -H-- | C] () -- C:\WINDOWS\System32\NmCoInst.dll
[2006/08/16 23:59:15 | 000,087,403 | -H-- | C] () -- C:\WINDOWS\System32\instwdm.ini
[2006/08/16 23:59:14 | 000,000,054 | -H-- | C] () -- C:\WINDOWS\System32\ctzapxx.ini
[2006/08/16 23:33:53 | 000,037,888 | -H-- | C] () -- C:\WINDOWS\System32\CTBURST.DLL
[2006/08/16 23:32:07 | 000,034,304 | -H-- | C] () -- C:\WINDOWS\PSCONV.EXE
[2006/08/16 23:14:32 | 000,033,792 | -H-- | C] () -- C:\WINDOWS\System32\REGPLIB.EXE
[2006/08/16 23:14:06 | 000,140,643 | -H-- | C] () -- C:\WINDOWS\System32\CTBAS2W.DAT
[2006/08/16 23:11:52 | 000,264,526 | -H-- | C] () -- C:\WINDOWS\System32\CTSBAS2W.DAT
[2006/08/16 23:11:38 | 000,231,281 | -H-- | C] () -- C:\WINDOWS\System32\CTSBASW.DAT
[2006/08/16 23:11:38 | 000,113,221 | -H-- | C] () -- C:\WINDOWS\System32\CTBASICW.DAT
[2006/08/16 23:11:07 | 000,004,096 | -H-- | C] () -- C:\WINDOWS\System32\ENLOCSTR.EXE
[2006/08/03 14:48:26 | 000,098,304 | -H-- | C] () -- C:\WINDOWS\System32\InstallPrinter6.dll
[2006/02/28 08:00:00 | 013,107,200 | -H-- | C] () -- C:\WINDOWS\System32\oembios.bin
[2006/02/28 08:00:00 | 000,673,088 | -H-- | C] () -- C:\WINDOWS\System32\mlang.dat
[2006/02/28 08:00:00 | 000,441,682 | -H-- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2006/02/28 08:00:00 | 000,272,128 | -H-- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2006/02/28 08:00:00 | 000,218,003 | -H-- | C] () -- C:\WINDOWS\System32\dssec.dat
[2006/02/28 08:00:00 | 000,071,492 | -H-- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2006/02/28 08:00:00 | 000,046,258 | -H-- | C] () -- C:\WINDOWS\System32\mib.bin
[2006/02/28 08:00:00 | 000,028,626 | -H-- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2006/02/28 08:00:00 | 000,004,569 | -H-- | C] () -- C:\WINDOWS\System32\secupd.dat
[2006/02/28 08:00:00 | 000,004,461 | -H-- | C] () -- C:\WINDOWS\System32\oembios.dat
[2006/02/28 08:00:00 | 000,001,804 | -H-- | C] () -- C:\WINDOWS\System32\dcache.bin
[2006/02/28 08:00:00 | 000,000,741 | -H-- | C] () -- C:\WINDOWS\System32\noise.dat
[2005/11/02 10:54:48 | 002,945,024 | RH-- | C] () -- C:\WINDOWS\System32\BGP851c.dll
[2005/07/26 17:13:12 | 000,000,214 | -H-- | C] () -- C:\WINDOWS\System32\KILL.INI
[2005/06/07 09:10:50 | 000,070,656 | -H-- | C] () -- C:\WINDOWS\System32\CTMMACTL.DLL
[2002/11/20 18:51:34 | 000,159,744 | -H-- | C] () -- C:\WINDOWS\System32\win2000.dll
[2000/05/07 01:30:44 | 000,184,320 | -H-- | C] () -- C:\WINDOWS\System32\NmUninst.exe
========== Custom Scans ========== < %APPDATA%\Microsoft\*.* >[2009/04/25 12:21:54 | 000,001,754 | -H-- | M] () -- C:\Documents and Settings\Owner\Application Data\Microsoft\LastFlashConfig.WFC
< %systemroot%\system32\config\systemprofile\*.dat /x >[2008/03/24 18:05:02 | 000,163,884 | -H-- | M] () -- C:\WINDOWS\system32\config\systemprofile\avg7inst.log
< %USERPROFILE%\Desktop\*.exe >[2008/10/24 18:34:31 | 041,427,024 | -H-- | M] (Hewlett-Packard Company ) -- C:\Documents and Settings\Owner\Desktop\A140609_ENU_XP.exe
[2009/08/20 13:09:04 | 024,791,728 | -H-- | M] () -- C:\Documents and Settings\Owner\Desktop\ATT_SST_Installer_UVerse.exe
[2009/08/11 13:19:50 | 008,050,536 | -H-- | M] (Mozilla) -- C:\Documents and Settings\Owner\Desktop\Firefox Setup 3.5.2.exe
[2009/09/15 12:02:42 | 001,925,024 | -H-- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\Owner\Desktop\install_flash_player.exe
[2008/12/03 16:51:24 | 001,877,269 | -H-- | M] () -- C:\Documents and Settings\Owner\Desktop\lj564en.exe
[2009/04/01 11:07:51 | 000,359,656 | -H-- | M] (Microsoft Corporation) -- C:\Documents and Settings\Owner\Desktop\msicuu2.exe
[2009/01/21 14:23:32 | 006,990,944 | -H-- | M] (Macrovision Corporation) -- C:\Documents and Settings\Owner\Desktop\PayPal Plug-In.exe
[2010/01/02 14:17:56 | 016,409,960 | -H-- | M] (Safer Networking Limited ) -- C:\Documents and Settings\Owner\Desktop\spybotsd162.exe
[2010/12/16 20:29:03 | 001,344,600 | -H-- | M] (Kaspersky Lab ZAO) -- C:\Documents and Settings\Owner\Desktop\tdsskiller.exe
[2009/05/14 23:41:52 | 000,274,224 | -H-- | M] (BitTorrent, Inc.) -- C:\Documents and Settings\Owner\Desktop\utorrent.exe
< %PROGRAMFILES%\Common Files\*.* > < %systemroot%\winn32\*.* > < %USERPROFILE%\My Documents\*.exe >[2008/03/24 18:00:35 | 045,942,912 | -H-- | M] (NVIDIA Corporation ) -- C:\Documents and Settings\Owner\My Documents\169.21_forceware_winxp_32bit_english_whql.exe
[2009/01/12 18:10:29 | 007,518,240 | -H-- | M] (Mozilla) -- C:\Documents and Settings\Owner\My Documents\Firefox Setup 3.0.5.exe
[2004/06/07 09:09:24 | 002,348,528 | -H-- | M] (Indigo Rose Corporation
http://www.indigorose.com) -- C:\Documents and Settings\Owner\My Documents\HistoryKill2003.exe
[2009/07/20 13:40:15 | 006,535,960 | -H-- | M] (Macrovision Corporation) -- C:\Documents and Settings\Owner\My Documents\PayPal Plug-In.exe
[2008/04/23 19:06:19 | 001,375,232 | -H-- | M] () -- C:\Documents and Settings\Owner\My Documents\pl532en.exe
[2010/06/23 16:50:05 | 003,545,360 | -H-- | M] () -- C:\Documents and Settings\Owner\My Documents\R98291.EXE
[2008/03/30 00:19:35 | 000,382,352 | -H-- | M] (Sun Microsystems, Inc.) -- C:\Documents and Settings\Owner\My Documents\xpiinstall.exe
[1 C:\Documents and Settings\Owner\My Documents\*.tmp files -> C:\Documents and Settings\Owner\My Documents\*.tmp -> ]
< %USERPROFILE%\*.exe > < %PROGRAMFILES%\Mozilla Firefox\*.exe >[2011/03/31 13:41:13 | 000,107,480 | -H-- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\crashreporter.exe
[2011/03/31 13:41:14 | 000,912,344 | -H-- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
[2011/03/31 13:41:19 | 000,016,856 | -H-- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\plugin-container.exe
[2011/03/31 13:41:23 | 000,245,208 | -H-- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\updater.exe
< %ProgramFiles%\TinyProxy. > < %systemroot%\system32\*.* /lockedfiles >[2009/03/08 05:31:44 | 000,348,160 | -H-- | M] (Microsoft Corporation)
Unable to obtain MD5 -- C:\WINDOWS\system32\dxtmsft.dll
[2009/03/08 05:31:38 | 000,216,064 | -H-- | M] (Microsoft Corporation)
Unable to obtain MD5 -- C:\WINDOWS\system32\dxtrans.dll
[2008/04/13 11:42:06 | 000,016,896 | -H-- | M] (Microsoft Corporation)
Unable to obtain MD5 -- C:\WINDOWS\system32\stdole2.tlb
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job /lockedfiles > < %systemroot%\system32\drivers\*.* /lockedfiles > < %PROGRAMFILES%\*. >[2010/07/12 16:08:23 | 000,000,000 | -H-D | M] -- C:\Program Files\Adobe
[2008/04/15 09:52:59 | 000,000,000 | -H-D | M] -- C:\Program Files\Adobe Media Player
[2010/04/08 13:31:31 | 000,000,000 | -H-D | M] -- C:\Program Files\Adobe Photoshop.com Uploader
[2008/03/24 18:25:19 | 000,000,000 | -H-D | M] -- C:\Program Files\Ahead
[2011/02/18 18:26:56 | 000,000,000 | -H-D | M] -- C:\Program Files\AIM
[2009/03/04 12:21:44 | 000,000,000 | -H-D | M] -- C:\Program Files\Alwil Software
[2009/02/19 15:03:38 | 000,000,000 | -H-D | M] -- C:\Program Files\Amazon
[2008/03/25 17:24:35 | 000,000,000 | -H-D | M] -- C:\Program Files\AnswerWorks 4.0
[2008/08/09 18:56:56 | 000,000,000 | -H-D | M] -- C:\Program Files\Apple Software Update
[2009/04/25 11:50:22 | 000,000,000 | -H-D | M] -- C:\Program Files\ATT-HSI
[2010/07/05 20:10:30 | 000,000,000 | -H-D | M] -- C:\Program Files\ATT-SST
[2008/03/24 18:27:14 | 000,000,000 | -H-D | M] -- C:\Program Files\Attansic
[2009/04/25 12:12:19 | 000,000,000 | -H-D | M] -- C:\Program Files\ATTToolbar
[2011/02/23 17:44:56 | 000,000,000 | -H-D | M] -- C:\Program Files\Audacity
[2008/04/12 13:37:40 | 000,000,000 | -H-D | M] -- C:\Program Files\Audit Support Center
[2008/03/25 17:24:55 | 000,000,000 | -H-D | M] -- C:\Program Files\AutoCAD 2006
[2008/11/04 12:29:08 | 000,000,000 | -H-D | M] -- C:\Program Files\AutoCAD Civil 3D 2008
[2008/05/02 09:11:21 | 000,000,000 | -H-D | M] -- C:\Program Files\Autodesk
[2009/04/25 12:34:57 | 000,000,000 | -H-D | M] -- C:\Program Files\BellSouthWCC
[2008/03/31 13:33:15 | 000,000,000 | -H-D | M] -- C:\Program Files\Bluebeam Software
[2011/04/29 12:22:05 | 000,000,000 | -H-D | M] -- C:\Program Files\Bonjour
[2008/04/12 13:46:08 | 000,000,000 | -H-D | M] -- C:\Program Files\Canon
[2010/12/12 13:16:27 | 000,000,000 | -H-D | M] -- C:\Program Files\Carbonite
[2011/02/18 18:26:36 | 000,000,000 | -H-D | M] -- C:\Program Files\Common Files
[2008/03/24 18:01:17 | 000,000,000 | -H-D | M] -- C:\Program Files\ComPlus Applications
[2008/05/08 19:19:11 | 000,000,000 | -H-D | M] -- C:\Program Files\Creative
[2008/03/24 18:38:43 | 000,000,000 | -H-D | M] -- C:\Program Files\Creative Installation Information
[2008/03/24 18:26:36 | 000,000,000 | -H-D | M] -- C:\Program Files\CyberLink
[2009/10/02 18:46:11 | 000,000,000 | -H-D | M] -- C:\Program Files\DIFX
[2008/04/03 15:47:35 | 000,000,000 | -H-D | M] -- C:\Program Files\DWG TrueView 2007
[2008/03/26 16:00:43 | 000,000,000 | -H-D | M] -- C:\Program Files\Eagle Point Software
[2010/01/06 10:35:01 | 000,000,000 | -H-D | M] -- C:\Program Files\eMusic Download Manager
[2009/10/02 18:46:10 | 000,000,000 | -H-D | M] -- C:\Program Files\Garmin
[2009/10/02 18:46:13 | 000,000,000 | -H-D | M] -- C:\Program Files\Garmin GPS Plugin
[2010/09/24 13:51:12 | 000,000,000 | -H-D | M] -- C:\Program Files\Google
[2008/03/24 18:04:54 | 000,000,000 | -H-D | M] -- C:\Program Files\Grisoft
[2008/12/02 17:05:51 | 000,000,000 | -H-D | M] -- C:\Program Files\Hewlett-Packard
[2010/05/01 17:38:21 | 000,000,000 | -H-D | M] -- C:\Program Files\HP
[2008/05/02 12:02:56 | 000,000,000 | -H-D | M] -- C:\Program Files\Hydraflow
[2009/01/20 14:50:18 | 000,000,000 | -H-D | M] -- C:\Program Files\iLinc
[2008/05/08 21:37:37 | 000,000,000 | -H-D | M] -- C:\Program Files\illiminable
[2010/02/19 16:45:23 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information
[2008/03/24 18:21:38 | 000,000,000 | -H-D | M] -- C:\Program Files\Intel
[2011/04/13 03:22:41 | 000,000,000 | -H-D | M] -- C:\Program Files\Internet Explorer
[2008/03/27 15:45:01 | 000,000,000 | -H-D | M] -- C:\Program Files\Intuit
[2011/04/29 12:28:00 | 000,000,000 | -H-D | M] -- C:\Program Files\iPod
[2011/04/29 12:29:02 | 000,000,000 | -H-D | M] -- C:\Program Files\iTunes
[2010/12/10 16:07:35 | 000,000,000 | -H-D | M] -- C:\Program Files\Java
[2008/04/25 19:55:16 | 000,000,000 | -H-D | M] -- C:\Program Files\Kodak
[2008/07/22 17:47:13 | 000,000,000 | -H-D | M] -- C:\Program Files\LizardTech
[2010/01/02 17:15:52 | 000,000,000 | -H-D | M] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011/02/24 11:41:27 | 000,000,000 | -H-D | M] -- C:\Program Files\McAfee
[2011/04/03 22:49:23 | 000,000,000 | -H-D | M] -- C:\Program Files\McAfee Security Scan
[2011/02/24 17:51:51 | 000,000,000 | -H-D | M] -- C:\Program Files\McAfee.com
[2008/08/18 12:22:10 | 000,000,000 | -H-D | M] -- C:\Program Files\Messenger
[2008/03/24 22:18:36 | 000,000,000 | -H-D | M] -- C:\Program Files\Microsoft ActiveSync
[2008/03/24 18:05:11 | 000,000,000 | -H-D | M] -- C:\Program Files\microsoft frontpage
[2009/04/16 11:51:39 | 000,000,000 | -H-D | M] -- C:\Program Files\Microsoft Office
[2011/04/27 21:31:03 | 000,000,000 | -H-D | M] -- C:\Program Files\Microsoft Silverlight
[2008/04/03 15:46:40 | 000,000,000 | -H-D | M] -- C:\Program Files\Microsoft WSE
[2010/08/12 03:01:03 | 000,000,000 | -H-D | M] -- C:\Program Files\Movie Maker
[2011/05/15 17:16:54 | 000,000,000 | -H-D | M] -- C:\Program Files\Mozilla Firefox
[2009/08/07 03:03:41 | 000,000,000 | -H-D | M] -- C:\Program Files\MSBuild
[2009/04/16 11:51:29 | 000,000,000 | -H-D | M] -- C:\Program Files\MSECache
[2008/03/24 18:00:11 | 000,000,000 | -H-D | M] -- C:\Program Files\MSN
[2008/03/24 18:00:50 | 000,000,000 | -H-D | M] -- C:\Program Files\MSN Gaming Zone
[2008/11/13 04:00:50 | 000,000,000 | -H-D | M] -- C:\Program Files\MSXML 4.0
[2009/05/01 11:20:39 | 000,000,000 | -H-D | M] -- C:\Program Files\MyPublisher
[2008/08/18 12:14:18 | 000,000,000 | -H-D | M] -- C:\Program Files\NetMeeting
[2008/03/24 18:01:08 | 000,000,000 | -H-D | M] -- C:\Program Files\Online Services
[2010/12/17 04:00:46 | 000,000,000 | -H-D | M] -- C:\Program Files\Outlook Express
[2008/06/18 15:01:12 | 000,000,000 | -H-D | M] -- C:\Program Files\PayPal
[2011/01/14 18:25:10 | 000,000,000 | -H-D | M] -- C:\Program Files\Quicken
[2010/12/18 08:24:24 | 000,000,000 | -H-D | M] -- C:\Program Files\QuickTime
[2008/03/27 19:24:35 | 000,000,000 | -H-D | M] -- C:\Program Files\Real
[2008/03/24 18:24:49 | 000,000,000 | -H-D | M] -- C:\Program Files\Realtek
[2009/08/07 03:03:33 | 000,000,000 | -H-D | M] -- C:\Program Files\Reference Assemblies
[2010/07/28 14:11:13 | 000,000,000 | -H-D | M] -- C:\Program Files\Rhapsody
[2008/07/12 17:46:42 | 000,000,000 | -H-D | M] -- C:\Program Files\Safari
[2008/03/28 11:57:45 | 000,000,000 | -H-D | M] -- C:\Program Files\Siber Systems
[2010/01/02 15:58:23 | 000,000,000 | -H-D | M] -- C:\Program Files\TrendMicro
[2011/04/13 13:41:43 | 000,000,000 | -H-D | M] -- C:\Program Files\TurboTax
[2008/03/24 18:08:37 | 000,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information
[2008/03/31 11:33:14 | 000,000,000 | -H-D | M] -- C:\Program Files\viewsonic
[2008/03/24 18:08:33 | 000,000,000 | -H-D | M] -- C:\Program Files\Windows Defender
[2008/03/24 18:00:57 | 000,000,000 | -H-D | M] -- C:\Program Files\Windows Media Connect 2
[2008/08/18 12:14:15 | 000,000,000 | -H-D | M] -- C:\Program Files\Windows Media Player
[2008/08/18 12:14:15 | 000,000,000 | -H-D | M] -- C:\Program Files\Windows NT
[2008/03/24 18:03:19 | 000,000,000 | -H-D | M] -- C:\Program Files\WindowsUpdate
[2008/03/24 18:05:11 | 000,000,000 | -H-D | M] -- C:\Program Files\xerox
[2009/12/06 18:16:38 | 000,000,000 | -H-D | M] -- C:\Program Files\Yahoo!
< MD5 for: AGP440.SYS >[2007/09/11 16:20:13 | 016,774,755 | -H-- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2008/08/18 12:07:34 | 023,852,652 | -H-- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2008/08/18 12:07:34 | 023,852,652 | -H-- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/13 14:36:38 | 000,042,368 | -H-- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ERDNT\cache\agp440.sys
[2008/04/13 14:36:38 | 000,042,368 | -H-- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/13 14:36:38 | 000,042,368 | -H-- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
< MD5 for: ATAPI.SYS >[2007/09/11 16:20:13 | 016,774,755 | -H-- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008/08/18 12:07:34 | 023,852,652 | -H-- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008/08/18 12:07:34 | 023,852,652 | -H-- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/13 14:40:30 | 000,096,512 | -H-- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
[2008/04/13 14:40:30 | 000,096,512 | -H-- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/13 14:40:30 | 000,096,512 | -H-- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004/08/03 23:59:44 | 000,095,360 | -H-- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\Documents and Settings\Owner\My Documents\My Drivers Back Up\Primary IDE Channel#1\atapi.sys
[2004/08/03 23:59:44 | 000,095,360 | -H-- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\Documents and Settings\Owner\My Documents\My Drivers Back Up\Primary IDE Channel\atapi.sys
[2004/08/03 23:59:44 | 000,095,360 | -H-- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\Documents and Settings\Owner\My Documents\My Drivers Back Up\Secondary IDE Channel#1\atapi.sys
[2004/08/03 23:59:44 | 000,095,360 | -H-- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\Documents and Settings\Owner\My Documents\My Drivers Back Up\Secondary IDE Channel\atapi.sys
[2004/08/03 23:59:44 | 000,095,360 | -H-- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2006/02/28 08:00:00 | 000,095,360 | -H-- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys
[2004/08/03 23:59:44 | 000,095,360 | -H-- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\atapi.sys
< MD5 for: DISK.SYS >[2007/09/11 16:20:13 | 016,774,755 | -H-- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:disk.sys
[2008/08/18 12:07:34 | 023,852,652 | -H-- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:disk.sys
[2008/08/18 12:07:34 | 023,852,652 | -H-- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:disk.sys
[2006/02/28 08:00:00 | 000,036,352 | -H-- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:\Documents and Settings\Owner\My Documents\My Drivers Back Up\Disk drive#1\disk.sys
[2006/02/28 08:00:00 | 000,036,352 | -H-- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:\Documents and Settings\Owner\My Documents\My Drivers Back Up\Disk drive#2\disk.sys
[2006/02/28 08:00:00 | 000,036,352 | -H-- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:\Documents and Settings\Owner\My Documents\My Drivers Back Up\Disk drive#3\disk.sys
[2006/02/28 08:00:00 | 000,036,352 | -H-- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:\Documents and Settings\Owner\My Documents\My Drivers Back Up\Disk drive#4\disk.sys
[2006/02/28 08:00:00 | 000,036,352 | -H-- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:\Documents and Settings\Owner\My Documents\My Drivers Back Up\Disk drive\disk.sys
[2006/02/28 08:00:00 | 000,036,352 | -H-- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:\WINDOWS\$NtServicePackUninstall$\disk.sys
[2008/04/13 14:40:47 | 000,036,352 | -H-- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\ServicePackFiles\i386\disk.sys
[2008/04/13 14:40:47 | 000,036,352 | -H-- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\system32\drivers\disk.sys
< MD5 for: NETLOGON.DLL >[2008/04/13 20:12:01 | 000,407,040 | -H-- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ERDNT\cache\netlogon.dll
[2008/04/13 20:12:01 | 000,407,040 | -H-- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/13 20:12:01 | 000,407,040 | -H-- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
[2007/09/11 16:11:35 | 000,407,040 | -H-- | M] (Microsoft Corporation) MD5=5FD8684F1C5DD26509383F6CCDAEE3A3 -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2011-05-13 14:55:05
< hklm\software\clients\startmenuinternet|command /rs >HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts [2011/03/31 13:41:23 | 000,552,376 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts [2011/03/31 13:41:23 | 000,552,376 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [2011/03/31 13:41:23 | 000,552,376 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files\Mozilla Firefox\firefox.exe [2011/03/31 13:41:14 | 000,912,344 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -preferences [2011/03/31 13:41:14 | 000,912,344 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode [2011/03/31 13:41:14 | 000,912,344 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\WINDOWS\system32\ie4uinit.exe" -reinstall [2011/02/18 07:49:53 | 000,173,568 | -H-- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -hide [2011/02/18 07:49:53 | 000,173,568 | -H-- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -show [2011/02/18 07:49:53 | 000,173,568 | -H-- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff [2009/03/08 15:09:26 | 000,638,816 | -H-- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" [2009/03/08 15:09:26 | 000,638,816 | -H-- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ReinstallCommand: "C:\Program Files\Safari\Safari.exe" /reinstall [2008/06/17 16:16:14 | 003,463,976 | -H-- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\HideIconsCommand: "C:\Program Files\Safari\Safari.exe" /hideicons [2008/06/17 16:16:14 | 003,463,976 | -H-- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ShowIconsCommand: "C:\Program Files\Safari\Safari.exe" /showicons [2008/06/17 16:16:14 | 003,463,976 | -H-- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\shell\open\command\\: "C:\Program Files\Safari\Safari.exe" [2008/06/17 16:16:14 | 003,463,976 | -H-- | M] (Apple Inc.)
< hklm\software\clients\startmenuinternet|command /64 /rs >HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts [2011/03/31 13:41:23 | 000,552,376 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts [2011/03/31 13:41:23 | 000,552,376 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [2011/03/31 13:41:23 | 000,552,376 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files\Mozilla Firefox\firefox.exe [2011/03/31 13:41:14 | 000,912,344 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -preferences [2011/03/31 13:41:14 | 000,912,344 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode [2011/03/31 13:41:14 | 000,912,344 | -H-- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\WINDOWS\system32\ie4uinit.exe" -reinstall [2011/02/18 07:49:53 | 000,173,568 | -H-- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -hide [2011/02/18 07:49:53 | 000,173,568 | -H-- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -show [2011/02/18 07:49:53 | 000,173,568 | -H-- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff [2009/03/08 15:09:26 | 000,638,816 | -H-- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" [2009/03/08 15:09:26 | 000,638,816 | -H-- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ReinstallCommand: "C:\Program Files\Safari\Safari.exe" /reinstall [2008/06/17 16:16:14 | 003,463,976 | -H-- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\HideIconsCommand: "C:\Program Files\Safari\Safari.exe" /hideicons [2008/06/17 16:16:14 | 003,463,976 | -H-- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ShowIconsCommand: "C:\Program Files\Safari\Safari.exe" /showicons [2008/06/17 16:16:14 | 003,463,976 | -H-- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\shell\open\command\\: "C:\Program Files\Safari\Safari.exe" [2008/06/17 16:16:14 | 003,463,976 | -H-- | M] (Apple Inc.)
========== Alternate Data Streams ========== @Alternate Data Stream - 103 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
< End of report >