< %APPDATA%\Microsoft\*.* >
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %USERPROFILE%\Desktop\*.exe >
[2011/10/19 13:31:19 | 003,110,400 | ---- | M] () -- C:\Documents and Settings\Jeremy C\Desktop\20A1H.LL0D.stock.exe
[2011/12/23 07:44:11 | 001,917,952 | ---- | M] (AVAST Software) -- C:\Documents and Settings\Jeremy C\Desktop\aswMBR.exe
[2011/09/19 09:36:22 | 000,738,080 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\Documents and Settings\Jeremy C\Desktop\autoruns.exe
[2010/05/21 23:39:00 | 000,653,312 | ---- | M] () -- C:\Documents and Settings\Jeremy C\Desktop\DocXV.exe
[2011/12/20 19:52:25 | 015,292,704 | ---- | M] (Mozilla) -- C:\Documents and Settings\Jeremy C\Desktop\Firefox Setup 9.0.exe
[2011/05/04 05:16:15 | 000,132,597 | ---- | M] () -- C:\Documents and Settings\Jeremy C\Desktop\Flash_Disinfector.exe
[2011/12/21 07:03:29 | 000,509,440 | ---- | M] (iS3, Inc.) -- C:\Documents and Settings\Jeremy C\Desktop\STOPzilla_Setup.exe
[2010/11/05 19:02:17 | 000,652,794 | ---- | M] (Xvid team ) -- C:\Documents and Settings\Jeremy C\Desktop\XviD-1.2.2-07062009.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\winn32\*.* >
< %USERPROFILE%\My Documents\*.exe >
< %USERPROFILE%\*.exe >
[2011/12/19 19:00:03 | 000,060,304 | ---- | M] () -- C:\Documents and Settings\Jeremy C\g2mdlhlpx.exe
< %PROGRAMFILES%\Mozilla Firefox\*.exe >
[2011/12/16 23:51:35 | 000,125,912 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\crashreporter.exe
[2011/12/16 23:51:35 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
[2011/12/16 23:51:35 | 000,016,856 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\plugin-container.exe
[2011/12/16 23:51:35 | 000,269,272 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\updater.exe
< %ProgramFiles%\TinyProxy. >
< %systemroot%\system32\*.* /lockedfiles >
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.* /lockedfiles >
< %PROGRAMFILES%\*. >
[2007/02/03 13:44:01 | 000,000,000 | ---D | M] -- C:\Program Files\360Share Pro
[2008/02/16 09:57:11 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe
[2007/02/01 12:19:24 | 000,000,000 | ---D | M] -- C:\Program Files\Ahead
[2007/03/07 08:32:39 | 000,000,000 | ---D | M] -- C:\Program Files\Allume Systems
[2010/01/10 22:35:39 | 000,000,000 | ---D | M] -- C:\Program Files\Alwil Software
[2011/10/04 18:13:49 | 000,000,000 | ---D | M] -- C:\Program Files\Apple Software Update
[2007/12/30 18:42:51 | 000,000,000 | ---D | M] -- C:\Program Files\ArcSoft
[2010/11/14 07:01:21 | 000,000,000 | ---D | M] -- C:\Program Files\Attainment
[2009/02/25 23:21:33 | 000,000,000 | ---D | M] -- C:\Program Files\Audacity 1.3 Beta (Unicode)
[2008/02/10 10:44:42 | 000,000,000 | ---D | M] -- C:\Program Files\AutoCAD 2008
[2008/02/10 10:13:16 | 000,000,000 | ---D | M] -- C:\Program Files\Autodesk
[2008/02/15 12:46:56 | 000,000,000 | ---D | M] -- C:\Program Files\AutoDWG
[2011/03/30 19:27:46 | 000,000,000 | ---D | M] -- C:\Program Files\AVG
[2011/04/11 15:51:15 | 000,000,000 | ---D | M] -- C:\Program Files\Avira
[2011/04/28 06:39:04 | 000,000,000 | ---D | M] -- C:\Program Files\Azureus
[2008/01/22 21:37:24 | 000,000,000 | ---D | M] -- C:\Program Files\BitTorrent
[2011/10/04 15:14:53 | 000,000,000 | ---D | M] -- C:\Program Files\Bonjour
[2009/01/03 13:07:55 | 000,000,000 | ---D | M] -- C:\Program Files\Boulder Remake 2.1
[2007/02/01 23:21:51 | 000,000,000 | ---D | M] -- C:\Program Files\Brother
[2010/09/24 19:21:28 | 000,000,000 | ---D | M] -- C:\Program Files\Canon
[2010/07/07 15:29:31 | 000,000,000 | -H-D | M] -- C:\Program Files\CanonBJ
[2011/12/19 19:00:16 | 000,000,000 | ---D | M] -- C:\Program Files\Citrix
[2011/12/21 07:06:55 | 000,000,000 | ---D | M] -- C:\Program Files\Common Files
[2006/09/25 00:07:07 | 000,000,000 | ---D | M] -- C:\Program Files\ComPlus Applications
[2010/07/29 17:40:58 | 000,000,000 | ---D | M] -- C:\Program Files\Cucusoft
[2007/02/01 13:04:09 | 000,000,000 | ---D | M] -- C:\Program Files\CyberLink
[2007/12/10 20:58:39 | 000,000,000 | ---D | M] -- C:\Program Files\directx
[2010/01/16 22:31:54 | 000,000,000 | ---D | M] -- C:\Program Files\DivX
[2008/01/13 19:47:34 | 000,000,000 | ---D | M] -- C:\Program Files\DzSoft
[2011/02/23 16:02:53 | 000,000,000 | ---D | M] -- C:\Program Files\EASEUS
[2007/02/05 11:02:29 | 000,000,000 | ---D | M] -- C:\Program Files\eMusic Download Manager
[2007/12/30 18:43:26 | 000,000,000 | ---D | M] -- C:\Program Files\EPSON
[2011/04/15 06:36:13 | 000,000,000 | ---D | M] -- C:\Program Files\ESET
[2008/01/05 13:28:29 | 000,000,000 | ---D | M] -- C:\Program Files\Exact Audio Copy
[2011/01/11 08:38:36 | 000,000,000 | ---D | M] -- C:\Program Files\ffdshow
[2008/12/24 08:56:20 | 000,000,000 | ---D | M] -- C:\Program Files\Fisher-Price
[2009/03/05 13:52:23 | 000,000,000 | ---D | M] -- C:\Program Files\foobar2000
[2009/02/26 13:31:48 | 000,000,000 | ---D | M] -- C:\Program Files\Free Offers from Freeze.com
[2007/02/28 12:26:31 | 000,000,000 | ---D | M] -- C:\Program Files\GameTap
[2009/07/03 00:15:56 | 000,000,000 | ---D | M] -- C:\Program Files\Google
[2010/06/05 07:05:18 | 000,000,000 | ---D | M] -- C:\Program Files\Graboid
[2007/02/01 21:28:41 | 000,000,000 | ---D | M] -- C:\Program Files\Grisoft
[2009/05/16 15:42:38 | 000,000,000 | ---D | M] -- C:\Program Files\HERACTSTG
[2007/02/05 09:34:06 | 000,000,000 | ---D | M] -- C:\Program Files\Hewlett-Packard
[2009/04/10 12:50:01 | 000,000,000 | ---D | M] -- C:\Program Files\HOTLLAMA Media
[2007/12/10 21:26:41 | 000,000,000 | ---D | M] -- C:\Program Files\Infogrames
[2011/01/11 08:41:55 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information
[2006/09/25 15:06:18 | 000,000,000 | ---D | M] -- C:\Program Files\Intel
[2010/02/25 12:27:11 | 000,000,000 | ---D | M] -- C:\Program Files\InterActual
[2011/12/14 16:02:43 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Explorer
[2011/10/04 15:22:55 | 000,000,000 | ---D | M] -- C:\Program Files\iPod
[2010/01/20 09:18:52 | 000,000,000 | ---D | M] -- C:\Program Files\IrfanView
[2011/10/04 15:24:31 | 000,000,000 | ---D | M] -- C:\Program Files\iTunes
[2010/12/02 17:35:39 | 000,000,000 | ---D | M] -- C:\Program Files\Java
[2011/03/04 10:03:34 | 000,000,000 | ---D | M] -- C:\Program Files\Lame For Audacity
[2010/01/22 21:49:31 | 000,000,000 | ---D | M] -- C:\Program Files\Lavasoft
[2008/02/05 22:42:31 | 000,000,000 | ---D | M] -- C:\Program Files\MagicDisc
[2008/02/05 21:35:26 | 000,000,000 | ---D | M] -- C:\Program Files\MagicISO
[2011/12/05 23:07:28 | 000,000,000 | ---D | M] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/10/18 16:08:25 | 000,000,000 | ---D | M] -- C:\Program Files\Mattel Interactive
[2011/05/02 14:53:45 | 000,000,000 | ---D | M] -- C:\Program Files\Messenger
[2007/02/02 16:32:16 | 000,000,000 | ---D | M] -- C:\Program Files\microsoft frontpage
[2008/01/07 20:38:03 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft IntelliPoint
[2009/01/03 09:25:23 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft LifeCam
[2008/02/10 10:12:13 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Office
[2011/10/13 09:41:09 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Silverlight
[2011/05/02 16:35:26 | 000,000,000 | ---D | M] -- C:\Program Files\Movie Maker
[2010/06/05 07:05:15 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla ActiveX Control v1.7.12
[2011/12/21 06:16:40 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox
[2011/12/22 10:58:10 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox 4.0 Beta 12
[2011/12/22 15:13:55 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Thunderbird
[2007/12/30 21:44:36 | 000,000,000 | ---D | M] -- C:\Program Files\MP4Converter
[2007/02/01 12:53:34 | 000,000,000 | ---D | M] -- C:\Program Files\MSBuild
[2006/09/25 00:05:47 | 000,000,000 | ---D | M] -- C:\Program Files\MSN
[2006/09/25 00:06:20 | 000,000,000 | ---D | M] -- C:\Program Files\MSN Gaming Zone
[2008/02/25 03:02:31 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 4.0
[2007/08/15 02:03:19 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 6.0
[2007/02/06 09:21:41 | 000,000,000 | ---D | M] -- C:\Program Files\MTV Networks
[2011/05/02 14:42:26 | 000,000,000 | ---D | M] -- C:\Program Files\NetMeeting
[2009/03/02 16:34:12 | 000,000,000 | ---D | M] -- C:\Program Files\NetObjects
[2006/09/25 00:08:43 | 000,000,000 | ---D | M] -- C:\Program Files\Online Services
[2011/02/24 10:37:41 | 000,000,000 | ---D | M] -- C:\Program Files\Opera
[2011/05/02 16:43:23 | 000,000,000 | ---D | M] -- C:\Program Files\Outlook Express
[2007/12/03 05:34:24 | 000,000,000 | ---D | M] -- C:\Program Files\PCI Screen Saver
[2009/02/16 22:06:45 | 000,000,000 | ---D | M] -- C:\Program Files\PDF Editor 2
[2009/12/20 12:14:48 | 000,000,000 | ---D | M] -- C:\Program Files\Quicken
[2011/10/04 15:06:27 | 000,000,000 | ---D | M] -- C:\Program Files\QuickTime
[2006/09/25 15:13:06 | 000,000,000 | ---D | M] -- C:\Program Files\Realtek AC97
[2007/02/01 12:46:24 | 000,000,000 | ---D | M] -- C:\Program Files\Reference Assemblies
[2007/12/10 22:25:10 | 000,000,000 | ---D | M] -- C:\Program Files\RLC
[2010/10/21 19:21:57 | 000,000,000 | ---D | M] -- C:\Program Files\Sarm Software
[2007/02/01 23:02:23 | 000,000,000 | ---D | M] -- C:\Program Files\Scansoft
[2009/01/07 19:00:17 | 000,000,000 | ---D | M] -- C:\Program Files\Seagate
[2010/01/22 21:23:23 | 000,000,000 | ---D | M] -- C:\Program Files\Shared
[2008/01/03 08:18:09 | 000,000,000 | ---D | M] -- C:\Program Files\Shutterfly
[2011/02/22 15:28:01 | 000,000,000 | R--D | M] -- C:\Program Files\Skype
[2008/02/12 22:07:25 | 000,000,000 | ---D | M] -- C:\Program Files\SmartDraw 2007
[2008/04/13 19:52:09 | 000,000,000 | ---D | M] -- C:\Program Files\SmartDraw 2008
[2008/02/03 08:31:43 | 000,000,000 | ---D | M] -- C:\Program Files\SmartDVDCreator
[2011/11/30 17:31:21 | 000,000,000 | ---D | M] -- C:\Program Files\Spotify
[2011/01/11 08:44:32 | 000,000,000 | ---D | M] -- C:\Program Files\Spybot - Search & Destroy
[2007/02/27 14:39:31 | 000,000,000 | ---D | M] -- C:\Program Files\Stamps.com Internet Postage
[2011/12/21 07:06:58 | 000,000,000 | ---D | M] -- C:\Program Files\STOPzilla!
[2011/03/26 13:39:11 | 000,000,000 | ---D | M] -- C:\Program Files\SUPERAntiSpyware
[2007/02/01 19:09:44 | 000,000,000 | ---D | M] -- C:\Program Files\Thomson
[2011/03/04 08:22:07 | 000,000,000 | ---D | M] -- C:\Program Files\Trend Micro
[2009/02/23 22:41:10 | 000,000,000 | ---D | M] -- C:\Program Files\TurboTax
[2009/05/16 16:03:37 | 000,000,000 | ---D | M] -- C:\Program Files\twc
[2008/02/10 10:16:45 | 000,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information
[2009/02/15 18:57:25 | 000,000,000 | ---D | M] -- C:\Program Files\VideoLAN
[2007/03/07 08:05:16 | 000,000,000 | ---D | M] -- C:\Program Files\VideoProfessor
[2008/02/24 20:00:50 | 000,000,000 | ---D | M] -- C:\Program Files\Virtual Earth 3D
[2011/03/31 05:15:48 | 000,000,000 | ---D | M] -- C:\Program Files\VS Revo Group
[2011/01/11 08:37:49 | 000,000,000 | ---D | M] -- C:\Program Files\VSO
[2009/03/15 13:33:54 | 000,000,000 | ---D | M] -- C:\Program Files\VTech
[2007/12/29 13:38:39 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live
[2007/02/01 12:43:56 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Connect 2
[2011/05/02 14:42:21 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Player
[2011/05/02 14:42:21 | 000,000,000 | ---D | M] -- C:\Program Files\Windows NT
[2006/09/25 00:08:46 | 000,000,000 | -H-D | M] -- C:\Program Files\WindowsUpdate
[2008/01/20 22:49:43 | 000,000,000 | ---D | M] -- C:\Program Files\WinRAR
[2009/06/06 07:09:04 | 000,000,000 | ---D | M] -- C:\Program Files\XemiComputers
[2006/09/25 00:10:42 | 000,000,000 | ---D | M] -- C:\Program Files\xerox
[2008/03/09 06:37:14 | 000,000,000 | ---D | M] -- C:\Program Files\Xilisoft
[2010/11/05 19:02:55 | 000,000,000 | ---D | M] -- C:\Program Files\Xvid
[2009/01/15 16:02:07 | 000,000,000 | ---D | M] -- C:\Program Files\Yahoo!
< MD5 for: AGP440.SYS >
[2004/08/04 07:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2011/05/02 14:34:21 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2011/05/02 14:34:21 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/13 13:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/13 13:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
< MD5 for: ATAPI.SYS >
[2004/08/04 07:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2011/05/02 14:34:21 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2011/05/02 14:34:21 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/13 13:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/13 13:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004/08/03 21:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2004/08/04 07:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\i386\atapi.sys
[2004/08/03 21:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\i386\atapi.sys
< MD5 for: DISK.SYS >
[2004/08/04 07:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:disk.sys
[2011/05/02 14:34:21 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:disk.sys
[2011/05/02 14:34:21 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:disk.sys
[2004/08/04 07:00:00 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:\WINDOWS\$NtServicePackUninstall$\disk.sys
[2008/04/13 13:40:47 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\ServicePackFiles\i386\disk.sys
[2008/04/13 13:40:47 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\system32\drivers\disk.sys
< MD5 for: NETLOGON.DLL >
[2008/04/13 19:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/13 19:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
[2009/02/06 13:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\netlogon.dll
[2009/02/06 13:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:\WINDOWS\$hf_mig$\KB975467\SP2QFE\netlogon.dll
[2004/08/04 07:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2011-12-14 21:03:23
< hklm\software\clients\startmenuinternet|command /rs >
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\chrome.exe\shell\open\command\\: "C:\Program Files\Google\Chrome\Application\chrome.exe" [2011/12/07 06:16:29 | 001,047,096 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox 4.0 Beta 12\uninstall\helper.exe" /HideShortcuts [2011/12/20 16:18:37 | 000,715,176 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox 4.0 Beta 12\uninstall\helper.exe" /ShowShortcuts [2011/12/20 16:18:37 | 000,715,176 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox 4.0 Beta 12\uninstall\helper.exe" /SetAsDefaultAppGlobal [2011/12/20 16:18:37 | 000,715,176 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: firefox.exe
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox 4.0 Beta 12\firefox.exe" -preferences [2011/12/20 16:18:52 | 000,924,632 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: firefox.exe -safe-mode
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ShowIconsCommand: "C:\Program Files\Google\Chrome\Application\chrome.exe" --show-icons [2011/12/07 06:16:29 | 001,047,096 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\HideIconsCommand: "C:\Program Files\Google\Chrome\Application\chrome.exe" --hide-icons [2011/12/07 06:16:29 | 001,047,096 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ReinstallCommand: "C:\Program Files\Google\Chrome\Application\chrome.exe" --make-default-browser [2011/12/07 06:16:29 | 001,047,096 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\shell\open\command\\: "C:\Program Files\Google\Chrome\Application\chrome.exe" [2011/12/07 06:16:29 | 001,047,096 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\WINDOWS\system32\ie4uinit.exe" -reinstall [2011/11/04 06:24:17 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -hide [2011/11/04 06:24:17 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -show [2011/11/04 06:24:17 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff [2009/03/08 13:09:26 | 000,638,816 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: iexplore.exe
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera.exe\InstallInfo\\ShowIconsCommand: "C:\Program Files\Opera\Opera.exe" /ShowIconsCommand [2011/02/11 00:12:50 | 000,943,472 | ---- | M] (Opera Software)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera.exe\InstallInfo\\HideIconsCommand: "C:\Program Files\Opera\Opera.exe" /HideIconsCommand [2011/02/11 00:12:50 | 000,943,472 | ---- | M] (Opera Software)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera.exe\InstallInfo\\ReinstallCommand: "C:\Program Files\Opera\Opera.exe" /ReInstallBrowser [2011/02/11 00:12:50 | 000,943,472 | ---- | M] (Opera Software)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera.exe\shell\open\command\\: "C:\Program Files\Opera\Opera.exe" [2011/02/11 00:12:50 | 000,943,472 | ---- | M] (Opera Software)
< hklm\software\clients\startmenuinternet|command /64 /rs >
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\chrome.exe\shell\open\command\\: "C:\Program Files\Google\Chrome\Application\chrome.exe" [2011/12/07 06:16:29 | 001,047,096 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox 4.0 Beta 12\uninstall\helper.exe" /HideShortcuts [2011/12/20 16:18:37 | 000,715,176 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox 4.0 Beta 12\uninstall\helper.exe" /ShowShortcuts [2011/12/20 16:18:37 | 000,715,176 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox 4.0 Beta 12\uninstall\helper.exe" /SetAsDefaultAppGlobal [2011/12/20 16:18:37 | 000,715,176 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: firefox.exe
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox 4.0 Beta 12\firefox.exe" -preferences [2011/12/20 16:18:52 | 000,924,632 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: firefox.exe -safe-mode
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ShowIconsCommand: "C:\Program Files\Google\Chrome\Application\chrome.exe" --show-icons [2011/12/07 06:16:29 | 001,047,096 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\HideIconsCommand: "C:\Program Files\Google\Chrome\Application\chrome.exe" --hide-icons [2011/12/07 06:16:29 | 001,047,096 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ReinstallCommand: "C:\Program Files\Google\Chrome\Application\chrome.exe" --make-default-browser [2011/12/07 06:16:29 | 001,047,096 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\shell\open\command\\: "C:\Program Files\Google\Chrome\Application\chrome.exe" [2011/12/07 06:16:29 | 001,047,096 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\WINDOWS\system32\ie4uinit.exe" -reinstall [2011/11/04 06:24:17 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -hide [2011/11/04 06:24:17 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -show [2011/11/04 06:24:17 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff [2009/03/08 13:09:26 | 000,638,816 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: iexplore.exe
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera.exe\InstallInfo\\ShowIconsCommand: "C:\Program Files\Opera\Opera.exe" /ShowIconsCommand [2011/02/11 00:12:50 | 000,943,472 | ---- | M] (Opera Software)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera.exe\InstallInfo\\HideIconsCommand: "C:\Program Files\Opera\Opera.exe" /HideIconsCommand [2011/02/11 00:12:50 | 000,943,472 | ---- | M] (Opera Software)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera.exe\InstallInfo\\ReinstallCommand: "C:\Program Files\Opera\Opera.exe" /ReInstallBrowser [2011/02/11 00:12:50 | 000,943,472 | ---- | M] (Opera Software)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera.exe\shell\open\command\\: "C:\Program Files\Opera\Opera.exe" [2011/02/11 00:12:50 | 000,943,472 | ---- | M] (Opera Software)
< End of report >