Thanks Yourhighness,
here are the log:
OTViewIt logfile created on: 2008-09-02 17:24:57 - Run 2
OTViewIt by OldTimer - Version 1.0.1.7 Folder = C:\Users\saleiz\Desktop
Windows Vista Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: | Country: | Language: | Date Format: yyyy-MM-dd
2.00 Gb Total Physical Memory | 1.41 Gb Available Physical Memory | 70.49% Memory free
4.00 Gb Paging File | 3.46 Gb Available in Paging File | 86.46% Paging File free
Paging file location(s): ?:\pagefile.sys
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 70.07 Gb Total Space | 10.85 Gb Free Space | 15.48% Space Free | Partition Type: NTFS
Drive D: | 31.72 Gb Total Space | 6.34 Gb Free Space | 19.98% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
Drive F: | 10.00 Gb Total Space | 5.79 Gb Free Space | 57.93% Space Free | Partition Type: NTFS
Drive G: | 983.70 Mb Total Space | 37.44 Mb Free Space | 3.81% Space Free | Partition Type: FAT
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: SLUMBERMANN
Current User Name: saleiz
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Whitelist: On
===== Processes - Non-Microsoft Only =====
[01-05-2007 09:31 PM | 00,049,152 | ---- | M] (Samsung Electronics Co., Ltd.) - C:\Programme\Samsung\Samsung Magic Doctor\MagicDoctorKbdHk.exe
[02-28-2006 12:42 PM | 00,229,376 | ---- | M] (Apple Computer, Inc.) - C:\Programme\Bonjour\mDNSResponder.exe
[06-10-2008 06:53 PM | 00,468,224 | ---- | M] (ESET) - C:\Programme\ESET\ESET Smart Security\ekrn.exe
[02-15-2008 02:17 PM | 00,832,760 | ---- | M] (BinarySense, Inc.) - C:\Programme\Common Files\BinarySense\hldasvc.exe
[02-15-2008 02:17 PM | 00,832,760 | ---- | M] (BinarySense, Inc.) - C:\Programme\Common Files\BinarySense\hldasvc.exe
[04-21-2006 11:34 AM | 00,565,248 | ---- | M] (Ipswitch, Inc. 10 Maguire Road - Suite 220 Lexington MA.) - C:\iFtpSvc\iFtpSvc.exe
[04-25-2007 02:18 PM | 00,537,520 | ---- | M] ( ) - C:\Windows\System32\lxbvcoms.exe
[01-31-2007 08:29 PM | 01,135,616 | ---- | M] () - C:\Folding\smpd.exe
[12-09-2006 02:21 AM | 00,815,104 | ---- | M] (Synaptics, Inc.) - C:\Programme\Synaptics\SynTP\SynTPEnh.exe
[06-10-2008 06:52 PM | 01,447,168 | ---- | M] (ESET) - C:\Programme\ESET\ESET Smart Security\egui.exe
[06-18-2008 02:01 PM | 00,141,848 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxtray.exe
[06-18-2008 02:01 PM | 00,166,424 | ---- | M] (Intel Corporation) - C:\Windows\System32\hkcmd.exe
[06-18-2008 02:01 PM | 00,256,536 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxsrvc.exe
[06-18-2008 02:01 PM | 00,133,656 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxpers.exe
[02-09-2008 12:04 AM | 02,562,560 | ---- | M] (Tonec Inc.) - C:\Programme\Internet Download Manager\IDMan.exe
[01-25-2008 07:51 PM | 08,897,848 | ---- | M] (LowRateVoip) - C:\Programme\LowRateVoip\LowRateVoip.exe
[06-25-2008 05:01 PM | 08,929,056 | ---- | M] (Nonoh) - C:\Programme\Nonoh.net\Nonoh\nonoh.exe
[11-08-2005 10:02 PM | 00,038,912 | ---- | M] (Felix 'SniperBeamer' Geyer) - C:\Programme\Thunderbird-Tray\TBTray.exe
[02-15-2008 02:16 PM | 02,278,648 | ---- | M] (BinarySense, Inc.) - C:\Programme\BinarySense\HDDlife 3\HDDlifePro.exe
[04-24-2007 07:19 PM | 03,581,680 | ---- | M] (Stardock) - C:\Programme\Stardock\ObjectDock\ObjectDock.exe
[01-13-2007 06:29 AM | 00,495,616 | ---- | M] (SAMSUNG Electronics) - C:\Programme\Samsung\Easy Display Manager\DisplayManager.exe
[02-15-2008 02:16 PM | 02,278,648 | ---- | M] (BinarySense, Inc.) - C:\Programme\BinarySense\HDDlife 3\HDDlifePro.exe
[07-24-2008 06:46 AM | 08,496,752 | ---- | M] (Mozilla Corporation) - C:\Programme\Mozilla Thunderbird\thunderbird.exe
[06-18-2008 02:01 PM | 00,170,520 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxext.exe
[02-19-2007 04:53 PM | 00,251,576 | ---- | M] (Tonec Inc.) - C:\Programme\Internet Download Manager\IEMonitor.exe
[10-13-2007 03:12 PM | 02,380,800 | ---- | M] (mIRC Co. Ltd.) - D:\e-Document\MiRC\mIRC 6.3 + keygen\mIRC - English.exe
[12-17-2007 01:03 PM | 02,315,560 | ---- | M] (TeamViewer GmbH) - C:\Programme\TeamViewer3\TeamViewer.exe
[08-18-2008 03:02 AM | 01,089,536 | ---- | M] (www.IslamicFinder.org) - C:\Programme\Athan\Athan.exe
[08-04-2008 01:04 AM | 01,345,376 | ---- | M] (Nullsoft) - C:\Programme\Winamp\winamp.exe
===== Win32 Services - Non-Microsoft Only =====
(Adobe LM Service) Adobe LM Service [On_Demand | Stopped]
[05-17-2007 04:41 PM | 00,072,704 | ---- | M] (Adobe Systems) - C:\Programme\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
(AgereModemAudio) Agere Modem Call Progress Audio [On_Demand | Stopped]
[10-05-2006 10:10 PM | 00,009,216 | ---- | M] (Agere Systems) - C:\Windows\System32\agrsmsvc.exe
(Apache2.2) Apache2.2 [On_Demand | Stopped]
[09-05-2007 09:59 AM | 00,024,635 | ---- | M] (Apache Software Foundation) - D:\Apache\bin\httpd.exe
(Apple Mobile Device) Apple Mobile Device [On_Demand | Stopped]
[09-06-2007 01:28 PM | 00,110,592 | ---- | M] (Apple, Inc.) - C:\Programme\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
(Bonjour Service) ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## [Auto | Running]
[02-28-2006 12:42 PM | 00,229,376 | ---- | M] (Apple Computer, Inc.) - C:\Programme\Bonjour\mDNSResponder.exe
(CertPropSvc) Zertifikatverteilung [Unknown | Stopped]
File not found - %SystemRoot%\system32\svchost.exe
(CVPND) Cisco Systems, Inc. VPN Service [On_Demand | Stopped]
[04-17-2008 09:08 AM | 01,528,608 | ---- | M] (Cisco Systems, Inc.) - C:\Programme\Cisco Systems\VPN Client\cvpnd.exe
(DcomLaunch) DCOM-Server-Prozessstart [Unknown | Running]
File not found - %SystemRoot%\system32\svchost.exe
(EhttpSrv) Eset HTTP Server [On_Demand | Stopped]
[06-10-2008 06:59 PM | 00,019,200 | ---- | M] (ESET) - C:\Programme\ESET\ESET Smart Security\EHttpSrv.exe
(ekrn) Eset Service [Auto | Running]
[06-10-2008 06:53 PM | 00,468,224 | ---- | M] (ESET) - C:\Programme\ESET\ESET Smart Security\ekrn.exe
(FLEXnet Licensing Service) FLEXnet Licensing Service [On_Demand | Stopped]
[06-25-2008 11:07 PM | 00,647,680 | ---- | M] (Macrovision Europe Ltd.) - C:\Programme\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
(HDDlife HDD Access service) HDDlife HDD Access service [Auto | Running]
[02-15-2008 02:17 PM | 00,832,760 | ---- | M] (BinarySense, Inc.) - C:\Programme\Common Files\BinarySense\hldasvc.exe
(idsvc) Windows CardSpace [Unknown | Stopped]
File not found - %systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
(iFtpSvc) Ipswitch WS_FTP Service [Auto | Running]
[04-21-2006 11:34 AM | 00,565,248 | ---- | M] (Ipswitch, Inc. 10 Maguire Road - Suite 220 Lexington MA.) - C:\iFtpSvc\iFtpSvc.exe
(lxbv_device) lxbv_device [Auto | Running]
[04-25-2007 02:18 PM | 00,537,520 | ---- | M] ( ) - C:\Windows\System32\lxbvcoms.exe
(Macromedia Licensing Service) Macromedia Licensing Service [On_Demand | Stopped]
[05-17-2007 04:51 PM | 00,068,096 | ---- | M] () - C:\Programme\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
(matlabserver) MATLAB Server [On_Demand | Stopped]
[07-27-2005 02:53 PM | 00,536,576 | ---- | M] () - C:\Programme\MATLAB71\webserver\bin\win32\matlabserver.exe
(mpich2_smpd) MPICH2 Process Manager, Argonne National Lab [Auto | Running]
[01-31-2007 08:29 PM | 01,135,616 | ---- | M] () - C:\Folding\smpd.exe
(MSDTC) Distributed Transaction Coordinator [Unknown | Stopped]
[08-17-2008 12:15 PM | ---D | M] - C:\Windows\System32\Msdtc
(MySQL) MySQL [On_Demand | Stopped]
[07-06-2007 02:14 PM | 05,730,304 | ---- | M] () - D:\Apache\MySQL\bin\mysqld-nt.exe
(RichVideo) Cyberlink RichVideo Service(CRVS) [On_Demand | Stopped]
[05-14-2007 11:54 AM | 00,272,024 | ---- | M] () - C:\Programme\CyberLink\Shared Files\RichVideo.exe
(rpcapd) Remote Packet Capture Protocol v.0 (experimental) [On_Demand | Stopped]
[11-06-2007 10:22 PM | 00,092,792 | ---- | M] (CACE Technologies) - C:\Programme\WinPcap\rpcapd.exe
(Samsung Update Plus) Samsung Update Plus [Auto | Stopped]
[06-28-2007 06:54 PM | 00,073,728 | ---- | M] () - C:\Programme\Samsung\Samsung Update Plus\SLUBackgroundService.exe
(SbPF.Launcher) SbPF.Launcher [Disabled | Stopped]
[07-30-2008 10:36 AM | 00,095,528 | ---- | M] (Sunbelt Software, Inc.) - C:\Programme\Sunbelt Software\Personal Firewall\SbPFLnch.exe
(Schedule) Aufgabenplanung [Unknown | Running]
File not found - %SystemRoot%\System32\svchost.exe
(SCPolicySvc) Richtlinie zum Entfernen der Scmartcard [Unknown | Stopped]
File not found - %SystemRoot%\system32\svchost.exe
(SolidWorks Licensing Service) SolidWorks Licensing Service [On_Demand | Stopped]
[05-09-2008 04:33 PM | 00,079,360 | ---- | M] (SolidWorks) - C:\Programme\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
(SPF4) Sunbelt Personal Firewall 4 [Disabled | Stopped]
[07-30-2008 10:36 AM | 01,361,192 | ---- | M] (Sunbelt Software, Inc.) - C:\Programme\Sunbelt Software\Personal Firewall\SbPFSvc.exe
(TeamViewer) TeamViewer 3 [On_Demand | Stopped]
[12-17-2007 12:53 PM | 00,090,112 | ---- | M] () - C:\Programme\TeamViewer3\TeamViewer_Host.exe
(TrustedInstaller) Windows Modules Installer [Unknown | Stopped]
File not found - %SystemRoot%\servicing\TrustedInstaller.exe
(Viewpoint Service) Viewpoint Service [Disabled | Stopped]
File not found -
(WdiServiceHost) Diagnosediensthost [Unknown | Stopped]
File not found - %SystemRoot%\System32\svchost.exe
(WdiSystemHost) Diagnosesystemhost [Unknown | Running]
File not found - %SystemRoot%\System32\svchost.exe
===== Driver Services - Non-Microsoft Only =====
(adp94xx) adp94xx [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,422,968 | ---- | M] (Adaptec, Inc.) - C:\Windows\System32\drivers\adp94xx.sys
(adpahci) adpahci [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,300,600 | ---- | M] (Adaptec, Inc.) - C:\Windows\System32\drivers\adpahci.sys
(adpu160m) adpu160m [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,101,432 | ---- | M] (Adaptec, Inc.) - C:\Windows\System32\drivers\adpu160m.sys
(adpu320) adpu320 [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,149,560 | ---- | M] (Adaptec, Inc.) - C:\Windows\System32\drivers\adpu320.sys
(AgereSoftModem) Agere Systems Soft Modem [On_Demand | Running]
[11-09-2006 02:29 AM | 01,161,888 | ---- | M] (Agere Systems) - C:\Windows\System32\drivers\AGRSM.sys
(aic78xx) aic78xx [Disabled | Stopped]
[11-02-2006 11:50 AM | 00,071,272 | ---- | M] (Adaptec, Inc.) - C:\Windows\System32\drivers\djsvs.sys
(arc) arc [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,079,416 | ---- | M] (Adaptec, Inc.) - C:\Windows\System32\drivers\arc.sys
(arcsas) arcsas [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,079,928 | ---- | M] (Adaptec, Inc.) - C:\Windows\System32\drivers\arcsas.sys
(BrFiltLo) Brother USB Mass-Storage Lower Filter Driver [On_Demand | Stopped]
[11-02-2006 10:24 AM | 00,013,568 | ---- | M] (Brother Industries, Ltd.) - C:\Windows\System32\drivers\BrFiltLo.sys
(BrFiltUp) Brother USB Mass-Storage Upper Filter Driver [On_Demand | Stopped]
[11-02-2006 10:24 AM | 00,005,248 | ---- | M] (Brother Industries, Ltd.) - C:\Windows\System32\drivers\BrFiltUp.sys
(Brserid) Brother MFC Serial Port Interface Driver (WDM) [Disabled | Stopped]
[11-02-2006 10:25 AM | 00,071,808 | ---- | M] (Brother Industries Ltd.) - C:\Windows\System32\drivers\BrSerId.sys
(BrSerWdm) Brother WDM Serial driver [Disabled | Stopped]
[11-02-2006 10:24 AM | 00,062,336 | ---- | M] (Brother Industries Ltd.) - C:\Windows\System32\drivers\BrSerWdm.sys
(BrUsbMdm) Brother MFC USB Fax Only Modem [Disabled | Stopped]
[11-02-2006 10:24 AM | 00,012,160 | ---- | M] (Brother Industries Ltd.) - C:\Windows\System32\drivers\BrUsbMdm.sys
(BrUsbSer) Brother MFC USB Serial WDM Driver [On_Demand | Stopped]
[11-02-2006 10:24 AM | 00,011,904 | ---- | M] (Brother Industries Ltd.) - C:\Windows\System32\drivers\BrUsbSer.sys
(CLFS) Common Log (CLFS) [Unknown | Running]
File not found -
(CVirtA) Cisco Systems VPN Adapter [On_Demand | Stopped]
[01-18-2007 02:28 PM | 00,005,275 | ---- | M] (Cisco Systems, Inc.) - C:\Windows\System32\drivers\CVirtA.sys
(CVPNDRVA) Cisco Systems Inc. IPSec Driver [Auto | Running]
[04-17-2008 09:07 AM | 00,306,299 | ---- | M] (Cisco Systems, Inc.) - C:\Windows\System32\drivers\CVPNDRVA.sys
(DNE) Deterministic Network Enhancer Miniport [On_Demand | Running]
[03-29-2008 05:36 PM | 00,125,328 | ---- | M] (Deterministic Networks, Inc.) - C:\Windows\System32\drivers\dne2000.sys
(E1G60) Intel® PRO/1000 NDIS 6 Adapter Driver [On_Demand | Stopped]
[01-21-2008 04:21 AM | 00,118,784 | ---- | M] (Intel Corporation) - C:\Windows\System32\drivers\E1G60I32.sys
(eamon) eamon [Auto | Running]
[06-10-2008 06:47 PM | 00,039,944 | ---- | M] (ESET) - C:\Windows\System32\drivers\eamon.sys
(easdrv) easdrv [System | Running]
[06-10-2008 06:48 PM | 00,053,256 | ---- | M] (ESET) - C:\Windows\System32\drivers\easdrv.sys
(elxstor) elxstor [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,342,584 | ---- | M] (Emulex) - C:\Windows\System32\drivers\elxstor.sys
(epfw) epfw [Auto | Running]
[06-10-2008 06:56 PM | 00,071,688 | ---- | M] (ESET) - C:\Windows\System32\drivers\epfw.sys
(Epfwndis) Eset Personal Firewall [On_Demand | Running]
[06-10-2008 06:56 PM | 00,030,728 | ---- | M] (ESET) - C:\Windows\System32\drivers\epfwndis.sys
(epfwtdi) epfwtdi [System | Running]
[06-10-2008 06:56 PM | 00,054,280 | ---- | M] (ESET) - C:\Windows\System32\drivers\epfwtdi.sys
(Hardlock) Hardlock [Auto | Running]
[11-05-2004 12:08 PM | 00,670,208 | ---- | M] (Aladdin Knowledge Systems Ltd.) - C:\Windows\System32\drivers\hardlock.sys
(hotcore3) hotcore3 [Boot | Running]
[03-07-2007 01:16 PM | 00,038,448 | ---- | M] (Paragon Software Group) - C:\Windows\System32\drivers\hotcore3.sys
(iaStorV) Intel RAID Controller Vista [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,235,064 | ---- | M] (Intel Corporation) - C:\Windows\System32\drivers\iaStorV.sys
(igfx) igfx [On_Demand | Running]
[06-18-2008 01:38 PM | 02,307,584 | ---- | M] (Intel Corporation) - C:\Windows\System32\drivers\igdkmd32.sys
(iirsp) iirsp [Disabled | Stopped]
[11-02-2006 11:50 AM | 00,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) - C:\Windows\System32\drivers\iirsp.sys
(IpInIp) IP in IP Tunnel Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\ipinip.sys
(iteatapi) ITEATAPI_Service_Install [Disabled | Stopped]
[11-02-2006 11:50 AM | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.) - C:\Windows\System32\drivers\iteatapi.sys
(iteraid) ITERAID_Service_Install [Disabled | Stopped]
[11-02-2006 11:50 AM | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.) - C:\Windows\System32\drivers\iteraid.sys
(mcdbus) Driver for MagicISO SCSI Host Controller [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\mcdbus.sys
(mchInjDrv) madCodeHook DLL injection driver [System | Running]
[08-17-2008 03:55 PM | 00,002,560 | ---- | M] () - C:\Windows\System32\drivers\mchInjDrv.sys
(megasas) megasas [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,031,288 | ---- | M] (LSI Corporation) - C:\Windows\System32\drivers\megasas.sys
(MegaSR) MegaSR [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,386,616 | ---- | M] (LSI Corporation, Inc.) - C:\Windows\System32\drivers\MegaSR.sys
(NETw4v32) Intel® Wireless WiFi Link Adaptertreiber für Windows Vista 32 Bit [On_Demand | Running]
[10-31-2007 07:36 PM | 02,252,800 | ---- | M] (Intel Corporation) - C:\Windows\System32\drivers\NETw4v32.sys
(nfrd960) nfrd960 [Disabled | Stopped]
[11-02-2006 11:50 AM | 00,045,160 | ---- | M] (IBM Corporation) - C:\Windows\System32\drivers\nfrd960.sys
(nhcDriverDevice) Notebook Hardware Control Driver [On_Demand | Stopped]
[08-22-2008 02:37 PM | 00,022,528 | ---- | M] (pBUS-167 Software -
http://www.pbus-167.com) - C:\Windows\System32\drivers\nhcDriver.sys
(NPF) NetGroup Packet Filter Driver [Auto | Running]
[11-06-2007 10:22 PM | 00,034,064 | ---- | M] (CACE Technologies) - C:\Windows\System32\drivers\npf.sys
(ntrigdigi) N-trig HID Tablet Driver [Disabled | Stopped]
[11-02-2006 09:36 AM | 00,020,608 | ---- | M] (N-trig Innovative Technologies) - C:\Windows\System32\drivers\ntrigdigi.sys
(NwlnkFlt) IPX Traffic Filter Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\nwlnkflt.sys
(NwlnkFwd) IPX Traffic Forwarder Driver [On_Demand | Stopped]
File not found - C:\Windows\System32\DRIVERS\nwlnkfwd.sys
(P1110VID) Creative WebCam NX [On_Demand | Stopped]
[04-06-2006 06:33 PM | 00,068,608 | ---- | M] (Creative Technology Ltd.) - C:\Windows\System32\drivers\P1110Vid.sys
(PCANDIS4) PCANDIS4 Protocol Driver [On_Demand | Stopped]
File not found - C:\Program Files\Ugutil\program\PCANDIS4.SYS
(rimmptsk) rimmptsk [Auto | Running]
[01-23-2007 07:18 PM | 00,039,936 | ---- | M] (REDC) - C:\Windows\System32\drivers\rimmptsk.sys
(rimsptsk) rimsptsk [Auto | Running]
[01-23-2007 04:40 PM | 00,042,496 | ---- | M] (REDC) - C:\Windows\System32\drivers\rimsptsk.sys
(rismxdp) Ricoh xD-Picture Card Driver [Auto | Running]
[01-23-2007 05:03 PM | 00,037,376 | ---- | M] (REDC) - C:\Windows\System32\drivers\rixdptsk.sys
(RTCore32) RTCore32 [On_Demand | Stopped]
[05-25-2005 10:39 AM | 00,004,608 | ---- | M] () - C:\Programme\RMClock\RTCore32.sys
(sbhips) Sunbelt HIPS Driver [System | Running]
[06-21-2008 04:54 AM | 00,066,600 | R--- | M] (Sunbelt Software, Inc.) - C:\Windows\System32\drivers\sbhips.sys
(SCDEmu) SCDEmu [System | Running]
[03-18-2006 04:24 AM | 00,026,844 | ---- | M] (PowerISO Computing, Inc.) - C:\Windows\System32\drivers\scdemu.sys
(SiSRaid4) SiSRaid4 [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,074,808 | ---- | M] (Silicon Integrated Systems) - C:\Windows\System32\drivers\sisraid4.sys
(sptd) sptd [Boot | Stopped]
[11-29-2007 03:57 PM | 00,685,816 | ---- | M] (Duplex Secure Ltd.) - C:\Windows\System32\drivers\sptd.sys
(SynTP) Synaptics TouchPad Driver [On_Demand | Running]
[12-09-2006 02:44 AM | 00,181,304 | ---- | M] (Synaptics, Inc.) - C:\Windows\System32\drivers\SynTP.sys
(tap0801) TAP-Win32 Adapter V8 [On_Demand | Stopped]
[10-01-2006 02:37 PM | 00,026,624 | ---- | M] (The OpenVPN Project) - C:\Windows\System32\drivers\tap0801.sys
(uliahci) uliahci [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,238,648 | ---- | M] (ULi Electronics Inc.) - C:\Windows\System32\drivers\uliahci.sys
(viaide) viaide [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,020,024 | ---- | M] (VIA Technologies, Inc.) - C:\Windows\System32\drivers\viaide.sys
(vsmraid) vsmraid [Disabled | Stopped]
[01-21-2008 04:21 AM | 00,130,616 | ---- | M] (VIA Technologies Inc.,Ltd) - C:\Windows\System32\drivers\vsmraid.sys
({FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}) {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054} [Auto | Running]
[02-01-2008 05:24 PM | 00,041,456 | ---- | M] (Cyberlink Corp.) - C:\Programme\CyberLink\PowerDVD8\000.fcl
========== Run Keys ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Athan" = C:\Program Files\Athan\Athan.exe [08-18-2008 03:02 AM | 01,089,536 | ---- | M] (www.IslamicFinder.org)
"DMHotKey" = C:\Program Files\Samsung\Easy Display Manager\DMLoader.exe [12-28-2006 01:45 AM | 00,466,944 | ---- | M] (SAMSUNG Electronics)
"egui" = "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice [06-10-2008 06:52 PM | 01,447,168 | ---- | M] (ESET)
"HotKeysCmds" = C:\Windows\system32\hkcmd.exe [06-18-2008 02:01 PM | 00,166,424 | ---- | M] (Intel Corporation)
"IgfxTray" = C:\Windows\system32\igfxtray.exe [06-18-2008 02:01 PM | 00,141,848 | ---- | M] (Intel Corporation)
"NotebookHardwareControl" = "C:\Program Files\Notebook Hardware Control\nhc.exe" -quiet [05-04-2007 02:33 AM | 02,629,632 | ---- | M] (
http://www.pbus-167.com)
"Persistence" = C:\Windows\system32\igfxpers.exe [06-18-2008 02:01 PM | 00,133,656 | ---- | M] (Intel Corporation)
"SoundMAXPnP" = C:\Program Files\Analog Devices\Core\smax4pnp.exe [01-29-2007 08:40 AM | 01,167,360 | ---- | M] (Analog Devices, Inc.)
"SynTPEnh" = C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [12-09-2006 02:21 AM | 00,815,104 | ---- | M] (Synaptics, Inc.)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Key does not exist or could not be opened.
"run" = Reg Error: Key does not exist or could not be opened.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IDMan" = C:\Program Files\Internet Download Manager\IDMan.exe /onboot [02-09-2008 12:04 AM | 02,562,560 | ---- | M] (Tonec Inc.)
"LowRateVoip" = "C:\Program Files\LowRateVoip\LowRateVoip.exe" -nosplash -minimized [01-25-2008 07:51 PM | 08,897,848 | ---- | M] (LowRateVoip)
"Nonoh" = "C:\Program Files\Nonoh.net\Nonoh\nonoh.exe" -nosplash -minimized [06-25-2008 05:01 PM | 08,929,056 | ---- | M] (Nonoh)
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Value load does not exist or could not be read.
"run" = Reg Error: Value run does not exist or could not be read.
[HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Value load does not exist or could not be read.
"run" = Reg Error: Value run does not exist or could not be read.
[HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Value load does not exist or could not be read.
"run" = Reg Error: Value run does not exist or could not be read.
[HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Key does not exist or could not be opened.
"run" = Reg Error: Key does not exist or could not be opened.
[HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" =
"run" = Reg Error: Value run does not exist or could not be read.
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IDMan" = C:\Program Files\Internet Download Manager\IDMan.exe /onboot [02-09-2008 12:04 AM | 02,562,560 | ---- | M] (Tonec Inc.)
"LowRateVoip" = "C:\Program Files\LowRateVoip\LowRateVoip.exe" -nosplash -minimized [01-25-2008 07:51 PM | 08,897,848 | ---- | M] (LowRateVoip)
"Nonoh" = "C:\Program Files\Nonoh.net\Nonoh\nonoh.exe" -nosplash -minimized [06-25-2008 05:01 PM | 08,929,056 | ---- | M] (Nonoh)
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-1003\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" = Reg Error: Value load does not exist or could not be read.
"run" = Reg Error: Value run does not exist or could not be read.
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-501\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IDMan" = C:\Program Files\Internet Download Manager\IDMan.exe /onboot [02-09-2008 12:04 AM | 02,562,560 | ---- | M] (Tonec Inc.)
"LowRateVoip" = "C:\Program Files\LowRateVoip\LowRateVoip.exe" -nosplash -minimized [01-25-2008 07:51 PM | 08,897,848 | ---- | M] (LowRateVoip)
"Messenger (Yahoo!)" = "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet [05-27-2008 09:58 PM | 04,269,296 | ---- | M] (Yahoo! Inc.)
"Nonoh" = "C:\Program Files\Nonoh.net\Nonoh\nonoh.exe" -nosplash -minimized [06-25-2008 05:01 PM | 08,929,056 | ---- | M] (Nonoh)
"QuickTime Task" = "C:\Program Files\QuickTime\QTTask.exe" -atboottime [06-29-2007 06:24 AM | 00,286,720 | ---- | M] (Apple Inc.)
"Yahoo! Pager" = "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet [05-27-2008 09:58 PM | 04,269,296 | ---- | M] (Yahoo! Inc.)
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-501\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"load" =
"run" = Reg Error: Value run does not exist or could not be read.
========== Startup Folders ==========
========== BHO's ==========
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
HKLM CLSID: (IDMIEHlprObj Class) - [09-28-2007 05:14 PM | 00,095,664 | ---- | M] (Tonec Inc.) C:\Programme\Internet Download Manager\IDMIECC.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
HKLM CLSID: (Reg Error: Key does not exist or could not be opened.) - File not found Reg Error: Key does not exist or could not be opened.
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
HKLM CLSID: (Adobe PDF Reader Link Helper) - [10-22-2006 11:08 PM | 00,062,080 | ---- | M] (Adobe Systems Incorporated) C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
HKLM CLSID: (Skype add-on (mastermind)) - [12-07-2007 04:08 PM | 01,377,576 | ---- | M] (Skype Technologies S.A.) C:\Programme\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{384de036-63c8-4f7a-bea4-2a3d957925d5}]
HKLM CLSID: (acoostic Toolbar) - [11-08-2007 01:11 PM | 01,502,232 | ---- | M] (Conduit Ltd.) C:\Programme\acoostic\tbacoo.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5A263CF7-56A6-4D68-A8CF-345BE45BC911}]
HKLM CLSID: (Yahoo! IE Suggest) - [02-24-2007 01:04 AM | 00,140,840 | ---- | M] (Yahoo! Inc.) C:\Programme\Yahoo!\Search\YSearchSuggest.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897}]
HKLM CLSID: (Yahoo! IE Services Button) - [12-13-2007 12:09 AM | 00,222,448 | ---- | M] (Yahoo! Inc.) C:\Programme\Yahoo!\Common\yiesrvc.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
HKLM CLSID: (SSVHelper Class) - [06-10-2008 04:27 AM | 00,509,328 | ---- | M] (Sun Microsystems, Inc.) C:\Programme\Java\jre1.6.0_07\bin\ssv.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{77D7E795-33C5-4323-974D-A2A49AB75517}]
HKLM CLSID: (Google Update Helper) - [08-30-2008 02:11 AM | 00,133,616 | ---- | M] (Google Inc.) C:\Programme\Google\Update\1.2.131.11\GoopdateBho.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
HKLM CLSID: (Google Toolbar Helper) - [10-09-2007 06:00 AM | 02,427,968 | R--- | M] (Google Germany GmbH) c:\Programme\Google\GoogleToolbar2.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
HKLM CLSID: (Adobe PDF Conversion Toolbar Helper) - [05-10-2007 10:47 PM | 00,321,120 | ---- | M] (Adobe Systems Incorporated) C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53}]
HKLM CLSID: (Google Gears Helper) - [08-14-2008 07:40 AM | 01,556,480 | ---- | M] (Google Inc.) C:\Programme\Google\Google Gears\Internet Explorer\0.4.15.0\gears.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E5A1691B-D188-4419-AD02-90002030B8EE}]
HKLM CLSID: (FlashFXP Helper for Internet Explorer) - [05-16-2007 04:48 PM | 00,191,096 | ---- | M] (IniCom Networks, Inc.) C:\Programme\FlashFXP\IEFlash.dll
========== Toolbars ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}"
HKLM CLSID: (&Google) - [10-09-2007 06:00 AM | 02,427,968 | R--- | M] (Google Germany GmbH) c:\Programme\Google\GoogleToolbar2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
"{384de036-63c8-4f7a-bea4-2a3d957925d5}"
HKLM CLSID: (acoostic Toolbar) - [11-08-2007 01:11 PM | 01,502,232 | ---- | M] (Conduit Ltd.) C:\Programme\acoostic\tbacoo.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
"{47833539-D0C5-4125-9FA8-0819E2EAAC93}"
HKLM CLSID: (Adobe PDF) - [05-10-2007 10:47 PM | 00,321,120 | ---- | M] (Adobe Systems Incorporated) C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}"
HKLM CLSID: (&Google) - [10-09-2007 06:00 AM | 02,427,968 | R--- | M] (Google Germany GmbH) c:\Programme\Google\GoogleToolbar2.dll
"{384DE036-63C8-4F7A-BEA4-2A3D957925D5}"
HKLM CLSID: (acoostic Toolbar) - [11-08-2007 01:11 PM | 01,502,232 | ---- | M] (Conduit Ltd.) C:\Programme\acoostic\tbacoo.dll
"{47833539-D0C5-4125-9FA8-0819E2EAAC93}"
HKLM CLSID: (Adobe PDF) - [05-10-2007 10:47 PM | 00,321,120 | ---- | M] (Adobe Systems Incorporated) C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}"
HKLM CLSID: (&Google) - [10-09-2007 06:00 AM | 02,427,968 | R--- | M] (Google Germany GmbH) c:\Programme\Google\GoogleToolbar2.dll
"{384DE036-63C8-4F7A-BEA4-2A3D957925D5}"
HKLM CLSID: (acoostic Toolbar) - [11-08-2007 01:11 PM | 01,502,232 | ---- | M] (Conduit Ltd.) C:\Programme\acoostic\tbacoo.dll
"{47833539-D0C5-4125-9FA8-0819E2EAAC93}"
HKLM CLSID: (Adobe PDF) - [05-10-2007 10:47 PM | 00,321,120 | ---- | M] (Adobe Systems Incorporated) C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-501\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}"
HKLM CLSID: (&Google) - [10-09-2007 06:00 AM | 02,427,968 | R--- | M] (Google Germany GmbH) c:\Programme\Google\GoogleToolbar2.dll
"{384DE036-63C8-4F7A-BEA4-2A3D957925D5}"
HKLM CLSID: (acoostic Toolbar) - [11-08-2007 01:11 PM | 01,502,232 | ---- | M] (Conduit Ltd.) C:\Programme\acoostic\tbacoo.dll
"{47833539-D0C5-4125-9FA8-0819E2EAAC93}"
HKLM CLSID: (Adobe PDF) - [05-10-2007 10:47 PM | 00,321,120 | ---- | M] (Adobe Systems Incorporated) C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
========== AppInit_Dlls ==========
========== Shared Task Scheduler ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{EC654325-1273-C2A9-2B7C-45D29BCE68FB}" = Deskscapes
HKLM CLSID: (Deskscapes Class) - [09-05-2007 01:30 PM | 00,103,848 | ---- | M] (Stardock Corporation) C:\Programme\Stardock\Object Desktop\DeskScapes\deskscapes.dll
"{EC654325-1273-C2A9-2B7C-45D29BCE68FD}" = Stardock Vista ControlPanel Extension
HKLM CLSID: (Stardock Vista ControlPanel Extension) - [08-21-2007 05:30 PM | 00,087,488 | ---- | M] (Stardock) C:\Programme\Stardock\Object Desktop\DeskScapes\DesktopControlPanel.dll
"{EC654325-1273-C2A9-2B7C-45D29BCE68FF}" = StardockDreamController
HKLM CLSID: (StardockDreamController) - [08-21-2007 06:13 PM | 00,492,992 | ---- | M] (Stardock) C:\Programme\Stardock\Object Desktop\DeskScapes\DreamControl.dll
========== HKLM Security Providers ==========
========== HKLM Winlogon Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell]
"Explorer.exe" - [01-21-2008 04:22 AM | 02,927,104 | ---- | M] (Microsoft Corporation) C:\Windows\explorer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit]
"C:\Windows\system32\userinit.exe" - [01-21-2008 04:22 AM | 00,025,088 | ---- | M] (Microsoft Corporation) C:\Windows\System32\userinit.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet]
"rundll32 shell32" - [04-24-2008 06:58 AM | 11,580,416 | ---- | M] (Microsoft Corporation) C:\Windows\System32\shell32.dll
"Control_RunDLL "sysdm.cpl"" - [01-21-2008 04:22 AM | 00,242,688 | ---- | M] (Microsoft Corporation) C:\Windows\System32\sysdm.cpl
========== User's Winlogon Settings ==========
========== Winlogon Notify Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
"DllName" = C:\Windows\System32\igfxdev.dll [06-18-2008 01:18 PM | 00,204,800 | ---- | M] (Intel Corporation)
========== Policies ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveAutoRun" = 67108863
"NoDriveTypeAutoRun" = 255
"NoDrives" = 0
"NoFolderOptions" = 0
"NoSimpleStartMenu" = 0
"NoCDBurning" = 0
"NoComputersNearMe" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run]
"NoActiveDesktopChanges" = [binary data]
"NoActiveDesktop" = 0
"NoSaveSettings" = 0
"ClassicShell" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
"ConsentPromptBehaviorAdmin" = 2
"ConsentPromptBehaviorUser" = 1
"EnableInstallerDetection" = 1
"EnableSecureUIAPaths" = 1
"EnableVirtualization" = 1
"PromptOnSecureDesktop" = 1
"ValidateAdminCodeSignatures" = 0
"dontdisplaylastusername" = 0
"legalnoticecaption" =
"legalnoticetext" =
"scforceoption" = 0
"shutdownwithoutlogon" = 1
"undockwithoutlogon" = 1
"FilterAdministratorToken" = 0
"EnableUIADesktopToggle" = 0
"NoHotStart" = 0
"DisableRegistryTools" = 0
"HideLegacyLogonScripts" = 0
"HideLogoffScripts" = 0
"RunLogonScriptSync" = 1
"RunStartupScriptSync" = 0
"HideStartupScripts" = 0
"EnableLUA" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats]
"CF_TEXT" = 1
"CF_BITMAP" = 2
"CF_OEMTEXT" = 7
"CF_DIB" = 8
"CF_PALETTE" = 9
"CF_UNICODETEXT" = 13
"CF_DIBV5" = 17
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveTypeAutoRun" = 145
"NoDrives" = 0
"NoActiveDesktopChanges" = [binary data]
"NoActiveDesktop" = 0
"NoSaveSettings" = 0
"ClassicShell" = 0
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
"HideLegacyLogonScripts" = 0
"HideLogoffScripts" = 0
"RunLogonScriptSync" = 1
"RunStartupScriptSync" = 0
"HideStartupScripts" = 0
"disableregistrytools" = 0
"NoDispBackgroundPage" = 0
"NoDispScrSavPage" = 0
"NoDispCPL" = 0
[HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
Unable to open key or key not present!
[HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
Unable to open key or key not present!
[HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
Unable to open key or key not present!
[HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
Unable to open key or key not present!
[HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
Unable to open key or key not present!
[HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
Unable to open key or key not present!
[HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
Unable to open key or key not present!
[HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
Unable to open key or key not present!
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveTypeAutoRun" = 145
"NoDrives" = 0
"NoActiveDesktopChanges" = [binary data]
"NoActiveDesktop" = 0
"NoSaveSettings" = 0
"ClassicShell" = 0
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
"HideLegacyLogonScripts" = 0
"HideLogoffScripts" = 0
"RunLogonScriptSync" = 1
"RunStartupScriptSync" = 0
"HideStartupScripts" = 0
"disableregistrytools" = 0
"NoDispBackgroundPage" = 0
"NoDispScrSavPage" = 0
"NoDispCPL" = 0
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-501\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveTypeAutoRun" = 145
"NoDrives" = 0
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-501\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\run]
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-501\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
"HideLegacyLogonScripts" = 0
"HideLogoffScripts" = 0
"RunLogonScriptSync" = 1
"RunStartupScriptSync" = 0
"HideStartupScripts" = 0
"disableregistrytools" = 0
========== Lsa Authentication Packages ==========
========== Lsa Security Packages ==========
========== Desktop Components ==========
========== Safeboot Options ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot]
"AlternateShell" = cmd.exe
========== Disabled MsConfig Items ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\state]
"startup" = 2
========== CDRom AutoRun Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom]
"AutoRun" = 1
========== Autorun Files on Drives ==========
autoexec.bat [REM Dummy file for NTVDM | ]
[09-18-2006 11:43 PM | 00,000,024 | ---- | M] () C:\autoexec.bat [ NTFS ]
========== MountPoints2 ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0808496a-7c12-11dc-b9f1-001377480aaf}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0808499e-7c12-11dc-b9f1-001377480aaf}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1a2d63aa-5962-11dd-8b25-0002787436b3}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1a2d63b3-5962-11dd-8b25-0002787436b3}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1a2d63bd-5962-11dd-8b25-0002787436b3}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1a2d63c6-5962-11dd-8b25-0002787436b3}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2bdb4090-479f-11dd-aa5c-0002787436b3}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2bdb4093-479f-11dd-aa5c-0002787436b3}\Shell]
"" = AutoRun
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{39a6ed04-5b21-11dd-ba5e-0002787436b3}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4f1f9482-5330-11dd-af1b-0002787436b3}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5a374493-3dcd-11dd-beb1-00059a3c7800}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7cbee6e0-9455-11dc-9c60-00059a3c7800}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ad96d620-5ff0-11dd-83a8-0002787436b3}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ad96d623-5ff0-11dd-83a8-0002787436b3}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ad96d626-5ff0-11dd-83a8-0002787436b3}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b3063805-0646-11dd-9cad-0002787436b3}\Shell]
"" = None
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e2377ded-66d7-11dd-9199-0002787436b3}\Shell]
"" = None
========== DNS Name Servers ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{4DA1D329-BCE5-4935-816A-F7DE1078E9BF}]
Servers: | Description: Intel® PRO/Wireless 3945ABG Network Connection
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{A0A4A959-D146-4007-BA69-DAD6C34BF070}]
Servers: | Description: Broadcom 440x 10/100 Integrated Controller
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{A499D37A-14F9-432B-A052-6089364B58C8}]
Servers: | Description:
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{B246301B-3896-4870-A87F-A8873EA897B8}]
Servers: | Description:
========== Hosts File ==========
HOSTS File = (27 bytes) - C:\Windows\System32\drivers\etc\Hosts
First 25 entries...
127.0.0.1 localhost
========== Files/Folders - Created Within 90 days ==========
[06-08-2008 01:56 PM | 00,000,232 | -H-- | C] () - C:\sqmdata00.sqm
[06-08-2008 01:56 PM | 00,000,244 | -H-- | C] () - C:\sqmnoopt00.sqm
[06-09-2008 06:03 PM | ---D | C] - C:\RIDE
[06-13-2008 10:22 PM | ---D | C] - C:\Internet
[07-09-2008 02:18 AM | -H-D | C] - C:\$INPLACE.~TR
[07-09-2008 02:36 AM | -H-D | C] - C:\$WINDOWS.~Q
[07-09-2008 08:09 AM | 00,171,136 | RHS- | C] () - C:\grldr
[07-11-2008 01:42 PM | -H-D | C] - C:\pg_drivers
[08-16-2008 01:28 PM | ---D | C] - C:\eDrawings
[08-18-2008 11:58 PM | ---D | C] - C:\ComboFix
[08-18-2008 12:05 AM | ---D | C] - C:\$WINDOWS.~BT
[08-20-2008 12:15 AM | 26,740,57216 | -HS- | C] () - C:\hiberfil.sys
[08-21-2008 12:26 AM | ---D | C] - C:\Solidworks Data
[06-10-2008 06:47 PM | 00,039,944 | ---- | C] (ESET) - C:\Windows\System32\drivers\eamon.sys
[06-10-2008 06:48 PM | 00,053,256 | ---- | C] (ESET) - C:\Windows\System32\drivers\easdrv.sys
[06-10-2008 06:56 PM | 00,030,728 | ---- | C] (ESET) - C:\Windows\System32\drivers\epfwndis.sys
[06-10-2008 06:56 PM | 00,054,280 | ---- | C] (ESET) - C:\Windows\System32\drivers\epfwtdi.sys
[06-10-2008 06:56 PM | 00,071,688 | ---- | C] (ESET) - C:\Windows\System32\drivers\epfw.sys
[06-18-2008 01:38 PM | 02,307,584 | ---- | C] (Intel Corporation) - C:\Windows\System32\drivers\igdkmd32.sys
[06-21-2008 04:54 AM | 00,066,600 | R--- | C] (Sunbelt Software, Inc.) - C:\Windows\System32\drivers\sbhips.sys
[07-05-2008 08:47 PM | 00,002,560 | ---- | C] () - C:\Windows\System32\drivers\mchInjDrv.sys
[07-09-2008 02:09 AM | 00,000,000 | -H-- | C] () - C:\Windows\System32\drivers\Msft_Kernel_SynTP_01000.Wdf
[07-09-2008 02:52 AM | 00,005,275 | ---- | C] (Cisco Systems, Inc.) - C:\Windows\System32\drivers\CVirtA.sys
[07-09-2008 02:52 AM | 00,037,376 | ---- | C] (REDC) - C:\Windows\System32\drivers\rixdptsk.sys
[07-09-2008 02:52 AM | 00,039,936 | ---- | C] (REDC) - C:\Windows\System32\drivers\rimmptsk.sys
[07-09-2008 02:52 AM | 00,042,496 | ---- | C] (REDC) - C:\Windows\System32\drivers\rimsptsk.sys
[07-09-2008 02:52 AM | 00,181,304 | ---- | C] (Synaptics, Inc.) - C:\Windows\System32\drivers\SynTP.sys
[07-09-2008 02:52 AM | 01,161,888 | ---- | C] (Agere Systems) - C:\Windows\System32\drivers\AGRSM.sys
[07-09-2008 02:53 AM | 00,004,216 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\drivers\P1110Stb.sys
[07-09-2008 02:53 AM | 00,068,608 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\drivers\P1110Vid.sys
[07-09-2008 02:53 AM | 02,252,800 | ---- | C] (Intel Corporation) - C:\Windows\System32\drivers\NETw4v32.sys
[07-14-2008 02:02 PM | 00,125,328 | ---- | C] (Deterministic Networks, Inc.) - C:\Windows\System32\drivers\dne2000.sys
[06-11-2008 09:18 PM | 00,036,352 | ---- | C] () - C:\Windows\System32\SX32W.DLL
[06-11-2008 09:18 PM | 00,135,680 | ---- | C] (Sampson Multimedia ®) - C:\Windows\System32\crypto32.dll
[06-15-2008 08:57 PM | 00,001,678 | ---- | C] () - C:\Windows\System32\Ahmbed.gz
[06-18-2008 01:18 PM | 00,135,168 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxdo.dll
[06-18-2008 01:18 PM | 00,172,032 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrenu.lrc
[06-18-2008 01:19 PM | 00,069,632 | ---- | C] (Intel Corporation) - C:\Windows\System32\oemdspif.dll
[06-18-2008 01:19 PM | 00,122,880 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxcpl.cpl
[06-18-2008 01:22 PM | 00,110,592 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrcht.lrc
[06-18-2008 01:22 PM | 00,114,688 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrchs.lrc
[06-18-2008 01:22 PM | 00,126,976 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrkor.lrc
[06-18-2008 01:22 PM | 00,131,072 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrjpn.lrc
[06-18-2008 01:22 PM | 00,155,648 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrheb.lrc
[06-18-2008 01:22 PM | 00,159,744 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrara.lrc
[06-18-2008 01:22 PM | 00,163,840 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrtha.lrc
[06-18-2008 01:22 PM | 00,172,032 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrslv.lrc
[06-18-2008 01:22 PM | 00,172,032 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrtrk.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrcsy.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrdan.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrfin.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrnor.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrsky.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrsve.lrc
[06-18-2008 01:22 PM | 00,180,224 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrplk.lrc
[06-18-2008 01:22 PM | 00,180,224 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrptb.lrc
[06-18-2008 01:22 PM | 00,180,224 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrptg.lrc
[06-18-2008 01:22 PM | 00,180,224 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrrus.lrc
[06-18-2008 01:22 PM | 00,184,320 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrfra.lrc
[06-18-2008 01:22 PM | 00,184,320 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrhun.lrc
[06-18-2008 01:22 PM | 00,188,416 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxresp.lrc
[06-18-2008 01:22 PM | 00,188,416 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrita.lrc
[06-18-2008 01:22 PM | 00,188,416 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrnld.lrc
[06-18-2008 01:22 PM | 00,192,512 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxrell.lrc
[06-18-2008 01:51 PM | 00,147,456 | ---- | C] () - C:\Windows\System32\igfxCoIn_v1504.dll
[06-18-2008 02:01 PM | 00,170,520 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxzoom.exe
[06-18-2008 02:01 PM | 00,539,160 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxcfg.exe
[06-18-2008 02:56 PM | 00,032,912 | ---- | C] () - C:\Windows\System32\iglhxs32.vp
[06-21-2008 02:06 PM | ---D | C] - C:\Windows\System32\Adobe
[07-04-2008 02:31 AM | ---D | C] - C:\Windows\System32\conlib
[07-09-2008 02:13 AM | ---D | C] - C:\Windows\System32\URTTEMP
[07-09-2008 02:52 AM | 00,009,216 | ---- | C] (Agere Systems) - C:\Windows\System32\agrsmsvc.exe
[07-09-2008 02:52 AM | 00,013,312 | ---- | C] (Agere Systems) - C:\Windows\System32\agrscoin.dll
[07-09-2008 02:52 AM | 00,016,480 | ---- | C] () - C:\Windows\System32\rixdicon.dll
[07-09-2008 02:52 AM | 00,024,576 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxexps.dll
[07-09-2008 02:52 AM | 00,048,640 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxsrvc.dll
[07-09-2008 02:52 AM | 00,055,296 | ---- | C] (SRS Labs, Inc.) - C:\Windows\System32\srs_apo_suite.dll
[07-09-2008 02:52 AM | 00,067,072 | ---- | C] (SRS Labs, Inc.) - C:\Windows\System32\SRS_APO_Prop_Page.dll
[07-09-2008 02:52 AM | 00,106,496 | ---- | C] (Intel Corporation) - C:\Windows\System32\hccutils.dll
[07-09-2008 02:52 AM | 00,110,592 | ---- | C] (Synaptics, Inc.) - C:\Windows\System32\SynTPCo4.dll
[07-09-2008 02:52 AM | 00,133,656 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxpers.exe
[07-09-2008 02:52 AM | 00,135,168 | ---- | C] (SRS Labs, Inc.) - C:\Windows\System32\Com_SRS_WOWHD.dll
[07-09-2008 02:52 AM | 00,141,848 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxtray.exe
[07-09-2008 02:52 AM | 00,143,360 | ---- | C] (Synaptics, Inc.) - C:\Windows\System32\SynTPAPI.dll
[07-09-2008 02:52 AM | 00,163,840 | ---- | C] (Synaptics, Inc.) - C:\Windows\System32\SynCOM.dll
[07-09-2008 02:52 AM | 00,166,424 | ---- | C] (Intel Corporation) - C:\Windows\System32\hkcmd.exe
[07-09-2008 02:52 AM | 00,170,520 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxext.exe
[07-09-2008 02:52 AM | 00,196,608 | ---- | C] (Synaptics, Inc.) - C:\Windows\System32\SynCtrl.dll
[07-09-2008 02:52 AM | 00,204,800 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxdev.dll
[07-09-2008 02:52 AM | 00,204,800 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxpph.dll
[07-09-2008 02:52 AM | 00,241,664 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxTMM.dll
[07-09-2008 02:52 AM | 00,256,536 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxsrvc.exe
[07-09-2008 02:52 AM | 00,339,968 | ---- | C] (SRS Labs, Inc.) - C:\Windows\System32\Com_SRS_TruSurroundXT.dll
[07-09-2008 02:52 AM | 01,060,424 | ---- | C] () - C:\Windows\System32\WdfCoInstaller01000.dll
[07-09-2008 02:52 AM | 03,293,184 | ---- | C] (Intel Corporation) - C:\Windows\System32\igfxress.dll
[07-09-2008 02:52 AM | 03,305,472 | ---- | C] (Intel Corporation) - C:\Windows\System32\igdumd32.dll
[07-09-2008 02:53 AM | 00,002,096 | ---- | C] () - C:\Windows\System32\iglhxc32.vp
[07-09-2008 02:53 AM | 00,020,480 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\P1110Ext.crl
[07-09-2008 02:53 AM | 00,020,480 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\P1110Srv.exe
[07-09-2008 02:53 AM | 00,024,576 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\CtCamPin.crl
[07-09-2008 02:53 AM | 00,032,768 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\P1110Hwx.dll
[07-09-2008 02:53 AM | 00,032,768 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\P1110Sti.dll
[07-09-2008 02:53 AM | 00,036,864 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\CtCamMgr.dll
[07-09-2008 02:53 AM | 00,036,864 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\CtRegApp.dll
[07-09-2008 02:53 AM | 00,036,864 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\P1110Pin.dll
[07-09-2008 02:53 AM | 00,098,304 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\P1110Ext.ax
[07-09-2008 02:53 AM | 00,104,636 | ---- | C] () - C:\Windows\System32\igmedcompkrn.dll
[07-09-2008 02:53 AM | 00,126,976 | ---- | C] (Creative Technology Ltd.) - C:\Windows\System32\P1110Vfw.dll
[07-09-2008 02:53 AM | 00,147,456 | ---- | C] () - C:\Windows\System32\igfxCoIn_v1437.dll
[07-09-2008 02:53 AM | 00,745,472 | ---- | C] (Intel Corporation) - C:\Windows\System32\NETw4c32.dll
[07-09-2008 02:53 AM | 01,399,880 | ---- | C] () - C:\Windows\System32\igklg450.dll
[07-09-2008 02:53 AM | 01,838,408 | ---- | C] () - C:\Windows\System32\igklg400.dll
[07-09-2008 02:53 AM | 02,777,088 | ---- | C] (Intel Corporation) - C:\Windows\System32\NETw4r32.dll
[07-09-2008 03:51 AM | 00,022,140 | ---- | C] () - C:\Windows\System32\emptyregdb.dat
[07-09-2008 08:15 AM | 00,130,432 | ---- | C] () - C:\Windows\System32\GDIPFONTCACHEV1.DAT
[07-09-2008 12:04 PM | 00,000,711 | ---- | C] () - C:\Windows\System32\CPSOKBTasks.xml
[07-11-2008 02:27 AM | 00,026,292 | ---- | C] () - C:\Windows\System32\SQLServerManager10.msc
[07-11-2008 05:32 PM | 00,645,120 | ---- | C] () - C:\Windows\System32\config.gms
[08-04-2008 12:33 PM | ---D | C] - C:\Windows\System32\Lang
[08-07-2008 09:47 PM | 00,018,904 | ---- | C] () - C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[08-07-2008 09:47 PM | 00,106,605 | ---- | C] () - C:\Windows\System32\StructuredQuerySchema.bin
[08-07-2008 09:47 PM | 11,967,524 | ---- | C] () - C:\Windows\System32\korwbrkr.lex
[08-17-2008 11:04 PM | 00,025,600 | ---- | C] () - C:\Windows\System32\WS2Fix.exe
[08-17-2008 11:04 PM | 00,051,200 | ---- | C] () - C:\Windows\System32\dumphive.exe
[08-17-2008 11:04 PM | 00,053,248 | ---- | C] (
http://www.beyondlogic.org) - C:\Windows\System32\Process.exe
[08-17-2008 11:04 PM | 00,082,432 | ---- | C] (S!Ri.URZ) - C:\Windows\System32\404Fix.exe
[08-17-2008 11:04 PM | 00,082,432 | ---- | C] (S!Ri.URZ) - C:\Windows\System32\IEDFix.C.exe
[08-17-2008 11:04 PM | 00,086,528 | ---- | C] (S!Ri.URZ) - C:\Windows\System32\VACFix.exe
[08-17-2008 11:04 PM | 00,288,417 | ---- | C] (S!Ri) - C:\Windows\System32\SrchSTS.exe
[08-17-2008 11:04 PM | 00,289,144 | ---- | C] (S!Ri) - C:\Windows\System32\VCCLSID.exe
[08-17-2008 11:05 PM | 00,002,078 | ---- | C] () - C:\Windows\System32\tmp.reg
[08-18-2008 11:16 AM | ---D | C] - C:\Windows\System32\x64
[08-21-2008 04:02 AM | ---D | C] - C:\Windows\System32\1031
[08-21-2008 04:02 AM | ---D | C] - C:\Windows\System32\1033
[08-21-2008 04:05 AM | ---D | C] - C:\Windows\System32\RsFx
[08-27-2008 05:09 PM | 00,065,536 | ---- | C] () - C:\Windows\System32\Ikeext.etl
[3 C:\Windows\*.tmp files]
[06-11-2008 09:18 PM | 00,006,874 | ---- | C] () - C:\Windows\RIDE.ini
[06-11-2008 09:22 PM | 00,000,000 | -H-- | C] () - C:\Windows\msds.dat
[06-16-2008 10:45 AM | 00,001,409 | ---- | C] () - C:\Windows\QTFont.for
[06-16-2008 10:45 AM | 00,054,156 | -H-- | C] () - C:\Windows\QTFont.qfn
[06-16-2008 11:07 AM | ---D | C] - C:\Windows\BDOSCAN8
[06-23-2008 11:39 PM | 00,000,277 | ---- | C] () - C:\Windows\maketorrent.ini
[06-23-2008 12:29 AM | 03,943,614 | ---- | C] () - C:\Windows\YMP.CAB
[07-08-2008 05:25 PM | 00,001,887 | ---- | C] () - C:\Windows\diagerr.xml
[07-08-2008 05:25 PM | 00,001,887 | ---- | C] () - C:\Windows\diagwrn.xml
[07-09-2008 02:06 AM | ---D | C] - C:\Windows\CSC
[07-09-2008 02:10 AM | 00,000,012 | ---- | C] () - C:\Windows\bthservsdp.dat
[07-09-2008 02:13 AM | -HSD | C] - C:\Windows\Installer
[07-09-2008 02:52 AM | 00,050,752 | ---- | C] (Agere Systems) - C:\Windows\agrsmdel.exe
[07-09-2008 02:53 AM | 00,004,579 | ---- | C] () - C:\Windows\PD1110.uns
[07-09-2008 02:53 AM | 00,020,480 | ---- | C] (Creative Technology Ltd.) - C:\Windows\P1110Cfg.exe
[07-09-2008 02:53 AM | 00,086,016 | ---- | C] (Creative Technology Ltd.) - C:\Windows\CtDrvIns.exe
[07-09-2008 02:53 AM | ---D | C] - C:\Windows\Panther
[07-09-2008 08:03 AM | ---D | C] - C:\Windows\Debug
[07-09-2008 12:00 PM | ---D | C] - C:\Windows\SQL9_KB948109_ENU
[07-19-2008 06:41 PM | 00,299,008 | ---- | C] (InstallShield Corporation, Inc.) - C:\Windows\unin0407.exe
[08-11-2008 12:38 AM | ---D | C] - C:\Windows\PCHEALTH
[08-17-2008 10:40 PM | ---D | C] - C:\Windows\Minidump
[08-18-2008 03:56 AM | 00,212,480 | ---- | C] (SteelWerX) - C:\Windows\swxcacls.exe
[08-18-2008 04:03 AM | 00,028,672 | ---- | C] (NirSoft) - C:\Windows\Nircmd.exe
[08-18-2008 04:03 AM | 00,049,152 | ---- | C] () - C:\Windows\VFind.exe
[08-18-2008 04:03 AM | 00,068,096 | ---- | C] () - C:\Windows\zip.exe
[08-18-2008 04:03 AM | 00,080,412 | ---- | C] () - C:\Windows\grep.exe
[08-18-2008 04:03 AM | 00,089,504 | ---- | C] (Smallfrogs Studio) - C:\Windows\fdsv.exe
[08-18-2008 04:03 AM | 00,098,816 | ---- | C] () - C:\Windows\sed.exe
[08-18-2008 04:03 AM | 00,136,704 | ---- | C] (SteelWerX) - C:\Windows\swsc.exe
[08-18-2008 04:03 AM | 00,161,792 | ---- | C] (SteelWerX) - C:\Windows\swreg.exe
[08-18-2008 04:04 AM | ---D | C] - C:\Windows\erdnt
[08-21-2008 11:21 AM | 00,008,653 | ---- | C] () - C:\Windows\mozver.dat
[08-21-2008 11:21 AM | 00,118,784 | ---- | C] () - C:\Windows\GREUninstall.exe
[08-21-2008 11:21 AM | 00,118,784 | ---- | C] () - C:\Windows\SeaMonkeyUninstall.exe
[07-11-2008 02:34 PM | 00,000,582 | ---- | C] () - C:\Windows\tasks\Upload Weeds.job
[08-17-2008 04:19 PM | 00,000,374 | ---- | C] () - C:\Windows\tasks\RegCure.job
[08-17-2008 04:19 PM | 00,000,440 | ---- | C] () - C:\Windows\tasks\RegCure Program Check.job
[06-08-2008 12:38 PM | ---D | C] - C:\ProgramData\RFA_Backups
[06-09-2008 01:05 AM | ---D | C] - C:\ProgramData\ZDF
[06-18-2008 09:23 PM | ---D | C] - C:\ProgramData\WebEx
[06-26-2008 08:13 AM | ---D | C] - C:\ProgramData\Spybot - Search & Destroy
[07-05-2008 08:55 PM | ---D | C] - C:\ProgramData\Malwarebytes
[07-05-2008 12:42 AM | ---D | C] - C:\ProgramData\McAfee
[07-09-2008 08:03 AM | -HSD | C] - C:\ProgramData\Anwendungsdaten
[07-09-2008 08:03 AM | -HSD | C] - C:\ProgramData\Dokumente
[07-09-2008 08:03 AM | -HSD | C] - C:\ProgramData\Favoriten
[07-09-2008 08:03 AM | -HSD | C] - C:\ProgramData\Startmenü
[07-09-2008 08:03 AM | -HSD | C] - C:\ProgramData\Vorlagen
[07-09-2008 08:18 AM | 00,000,466 | RHS- | C] () - C:\ProgramData\ntuser.pol
[07-10-2008 01:01 AM | ---D | C] - C:\ProgramData\Stardock
[07-14-2008 06:25 PM | ---D | C] - C:\ProgramData\FlashFXP
[07-17-2008 04:01 PM | 00,000,032 | ---- | C] () - C:\ProgramData\ezsid.dat
[08-16-2008 01:40 PM | ---D | C] - C:\ProgramData\Viewpoint
[08-16-2008 03:41 PM | 00,111,577 | ---- | C] () - C:\ProgramData\BM7149696b.xml
[08-17-2008 03:08 PM | 00,000,022 | ---- | C] () - C:\ProgramData\pskt.ini
[08-20-2008 02:02 AM | ---D | C] - C:\ProgramData\ESET
[06-09-2008 05:40 PM | ---D | C] - C:\Users\saleiz\AppData\Roaming\Ride7
[06-16-2008 09:31 PM | ---D | C] - C:\Users\saleiz\AppData\Roaming\WinRAR
[07-02-2008 11:21 AM | ---D | C] - C:\Users\saleiz\AppData\Roaming\U3
[07-04-2008 01:00 AM | ---D | C] - C:\Users\saleiz\AppData\Roaming\Eltima Software
[07-05-2008 08:55 PM | ---D | C] - C:\Users\saleiz\AppData\Roaming\Malwarebytes
[07-09-2008 02:15 AM | ---D | C] - C:\Users\saleiz\AppData\Roaming\Media Center Programs
[07-09-2008 02:15 AM | --SD | C] - C:\Users\saleiz\AppData\Roaming\Microsoft
[07-15-2008 12:36 AM | ---D | C] - C:\Users\saleiz\AppData\Roaming\FTPRush
[08-21-2008 02:31 PM | ---D | C] - C:\Users\saleiz\AppData\Roaming\ESET
[08-23-2008 02:16 PM | ---D | C] - C:\Users\saleiz\AppData\Roaming\BinarySense
[08-25-2008 03:49 AM | ---D | C] - C:\Users\saleiz\AppData\Roaming\EDrawings
[09-02-2008 09:12 AM | ---D | C] - C:\Users\saleiz\AppData\Roaming\Download Manager
[06-15-2008 10:40 PM | ---D | C] - C:\Users\saleiz\AppData\Local\IsolatedStorage
[06-15-2008 10:42 PM | ---D | C] - C:\Users\saleiz\AppData\Local\Yahoo!_Inc
[07-09-2008 02:15 AM | ---D | C] - C:\Users\saleiz\AppData\Local\Microsoft
[07-09-2008 02:15 AM | ---D | C] - C:\Users\saleiz\AppData\Local\Temp
[07-09-2008 02:15 AM | -HSD | C] - C:\Users\saleiz\AppData\Local\Anwendungsdaten
[07-09-2008 02:15 AM | -HSD | C] - C:\Users\saleiz\AppData\Local\Temporary Internet Files
[07-09-2008 02:15 AM | -HSD | C] - C:\Users\saleiz\AppData\Local\Verlauf
[07-09-2008 08:13 AM | 00,107,792 | ---- | C] () - C:\Users\saleiz\AppData\Local\GDIPFONTCACHEV1.DAT
[07-09-2008 08:21 AM | 00,134,656 | ---- | C] () - C:\Users\saleiz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[07-09-2008 08:28 AM | ---D | C] - C:\Users\saleiz\AppData\Local\Microsoft Games
[07-10-2008 10:31 AM | 00,000,600 | ---- | C] () - C:\Users\saleiz\AppData\Local\PUTTY.RND
[08-08-2008 01:53 PM | ---D | C] - C:\Users\saleiz\AppData\Local\Stardock
[08-18-2008 03:06 AM | 00,001,356 | ---- | C] () - C:\Users\saleiz\AppData\Local\d3d9caps.dat
[08-20-2008 01:42 AM | 04,112,119 | -H-- | C] () - C:\Users\saleiz\AppData\Local\IconCache.db
[08-20-2008 02:27 AM | ---D | C] - C:\Users\saleiz\AppData\Local\ESET
[08-21-2008 02:56 AM | ---D | C] - C:\Users\saleiz\AppData\Local\Opera
[07-09-2008 08:03 AM | -HSD | C] - C:\Users\Public\Documents\Eigene Bilder
[07-09-2008 08:03 AM | -HSD | C] - C:\Users\Public\Documents\Eigene Musik
[07-09-2008 08:03 AM | -HSD | C] - C:\Users\Public\Documents\Eigene Videos
[06-13-2008 10:22 PM | ---D | C] - C:\Users\saleiz\Documents\Visual Studio 2008
[07-09-2008 02:15 AM | -HSD | C] - C:\Users\saleiz\Documents\Eigene Bilder
[07-09-2008 02:15 AM | -HSD | C] - C:\Users\saleiz\Documents\Eigene Musik
[07-09-2008 02:15 AM | -HSD | C] - C:\Users\saleiz\Documents\Eigene Videos
[07-10-2008 01:01 AM | ---D | C] - C:\Users\saleiz\Documents\Stardock
[07-15-2008 12:36 AM | ---D | C] - C:\Users\saleiz\Documents\My FTPRush Downloads
[08-16-2008 01:48 PM | R--D | C] - C:\Users\saleiz\Desktop\Konstruktion EWG
[08-26-2008 09:37 PM | R--D | C] - C:\Users\saleiz\Desktop\NPG
[08-27-2008 07:50 AM | 00,409,600 | -HS- | C] () - C:\Users\saleiz\Desktop\ehthumbs_vista.db
@Alternate Data Stream - 0 bytes -> %UserProfile%\Desktop\ehthumbs_vista.db:encryptable
[09-01-2008 07:19 PM | ---D | C] - C:\Users\saleiz\Desktop\The.Last.Days.Of.World.War.II.Part1.2004.DVDRip.XviD-EPiSODE
[09-01-2008 07:19 PM | ---D | C] - C:\Users\saleiz\Desktop\The.Last.Days.Of.World.War.II.Part2.2004.DVDRip.XviD-EPiSODE
[09-02-2008 03:13 PM | 00,115,712 | ---- | C] () - C:\Users\saleiz\Desktop\Permohonan Perlanjutan Mohd Hadihaizil Din.doc
[09-02-2008 06:13 AM | ---D | C] - C:\Users\saleiz\Desktop\Windows Gadget
[08-08-2008 01:53 PM | 00,001,849 | ---- | C] () - C:\Users\saleiz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk
[08-23-2008 02:16 PM | 00,001,009 | ---- | C] () - C:\Users\saleiz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HDDlife.lnk
[06-13-2008 10:15 PM | ---D | C] - C:\Program Files\Common Files\Merge Modules
[06-16-2008 09:31 PM | ---D | C] - C:\Program Files\Common Files\SourceTec
[07-14-2008 02:00 PM | ---D | C] - C:\Program Files\Common Files\Deterministic Networks
[08-09-2008 12:48 AM | ---D | C] - C:\Program Files\Common Files\Stardock
[08-21-2008 12:26 AM | ---D | C] - C:\Program Files\Common Files\eDrawings2008
[08-23-2008 02:16 PM | ---D | C] - C:\Program Files\Common Files\BinarySense
[06-04-2008 09:32 PM | ---D | C] - C:\Program Files\cFosSpeed
[06-08-2008 12:38 PM | ---D | C] - C:\Program Files\RFA
[06-09-2008 01:04 AM | ---D | C] - C:\Program Files\ZDF
[06-09-2008 05:40 PM | ---D | C] - C:\Program Files\Raisonance
[06-10-2008 09:56 PM | ---D | C] - C:\Program Files\NX Client for Windows
[06-13-2008 10:13 PM | ---D | C] - C:\Program Files\Microsoft SDKs
[06-13-2008 10:15 PM | ---D | C] - C:\Program Files\Microsoft Visual Studio 9.0
[06-15-2008 02:02 PM | ---D | C] - C:\Program Files\Sun(9)
[06-15-2008 11:13 PM | ---D | C] - C:\Program Files\Panda Security
[06-16-2008 09:31 PM | ---D | C] - C:\Program Files\SourceTec
[06-23-2008 11:38 PM | ---D | C] - C:\Program Files\Maketorrent 2
[06-26-2008 08:13 AM | ---D | C] - C:\Program Files\Spybot - Search & Destroy
[06-26-2008 08:20 AM | ---D | C] - C:\Program Files\HijackThis
[06-27-2008 11:58 AM | ---D | C] - C:\Program Files\FreeMind
[07-04-2008 02:18 AM | ---D | C] - C:\Program Files\SWF-AVI-GIF Converter
[07-05-2008 08:55 PM | ---D | C] - C:\Program Files\Malwarebytes' Anti-Malware
[07-05-2008 11:36 AM | ---D | C] - C:\Program Files\Enigma Software Group
[07-09-2008 02:09 AM | ---D | C] - C:\Program Files\Analog Devices
[07-09-2008 02:09 AM | ---D | C] - C:\Program Files\Synaptics
[07-09-2008 08:03 AM | -HSD | C] - C:\Program Files\Gemeinsame Dateien
[07-09-2008 12:12 PM | ---D | C] - C:\Program Files\BitLocker
[07-10-2008 01:01 AM | ---D | C] - C:\Program Files\Stardock
[07-20-2008 04:29 AM | ---D | C] - C:\Program Files\FlashFXP
[07-22-2008 02:15 AM | ---D | C] - C:\Program Files\Cool Beans NFO Creator
[08-06-2008 11:02 PM | ---D | C] - C:\Program Files\MSECACHE
[08-06-2008 11:03 PM | ---D | C] - C:\Program Files\Windows Installer Clean Up
[08-08-2008 09:38 AM | ---D | C] - C:\Program Files\FontFrenzy
[08-17-2008 04:18 PM | ---D | C] - C:\Program Files\RegCure
[08-18-2008 01:07 AM | ---D | C] - C:\Program Files\Trend Micro
[08-18-2008 05:04 AM | ---D | C] - C:\Program Files\Sunbelt Software
[08-19-2008 10:26 AM | ---D | C] - C:\Program Files\IObit
[08-21-2008 02:26 PM | ---D | C] - C:\Program Files\ESET
[08-21-2008 03:25 AM | ---D | C] - C:\Program Files\Microsoft Web Designer Tools
[08-21-2008 03:44 PM | ---D | C] - C:\Program Files\SolidWorks (2)
[08-21-2008 10:48 AM | ---D | C] - C:\Program Files\Safari
[08-21-2008 11:21 AM | ---D | C] - C:\Program Files\mozilla.org
[08-21-2008 12:26 AM | ---D | C] - C:\Program Files\AGEIA Technologies
[08-22-2008 11:07 PM | ---D | C] - C:\Program Files\FinitySoft BMI Calculator
[08-23-2008 02:16 PM | ---D | C] - C:\Program Files\BinarySense
[08-25-2008 05:09 PM | ---D | C] - C:\Program Files\CS BMR Calculator
[09-02-2008 09:13 AM | ---D | C] - C:\Program Files\HooTech
========== Files - Modified Within 90 days ==========
[06-08-2008 01:56 PM | 00,000,232 | -H-- | M] () - C:\sqmdata00.sqm
[06-08-2008 01:56 PM | 00,000,244 | -H-- | M] () - C:\sqmnoopt00.sqm
[07-09-2008 02:53 AM | 00,008,192 | R-S- | M] () - C:\BOOTSECT.BAK
[07-09-2008 08:08 AM | 00,171,136 | RHS- | M] () - C:\grldr
[08-31-2008 01:18 AM | 26,740,57216 | -HS- | M] () - C:\hiberfil.sys
[08-18-2008 04:18 AM | 00,000,027 | ---- | M] () - C:\Windows\System32\drivers\etc\hosts
[06-10-2008 06:47 PM | 00,039,944 | ---- | M] (ESET) - C:\Windows\System32\drivers\eamon.sys
[06-10-2008 06:48 PM | 00,053,256 | ---- | M] (ESET) - C:\Windows\System32\drivers\easdrv.sys
[06-10-2008 06:56 PM | 00,030,728 | ---- | M] (ESET) - C:\Windows\System32\drivers\epfwndis.sys
[06-10-2008 06:56 PM | 00,054,280 | ---- | M] (ESET) - C:\Windows\System32\drivers\epfwtdi.sys
[06-10-2008 06:56 PM | 00,071,688 | ---- | M] (ESET) - C:\Windows\System32\drivers\epfw.sys
[06-18-2008 01:38 PM | 02,307,584 | ---- | M] (Intel Corporation) - C:\Windows\System32\drivers\igdkmd32.sys
[06-21-2008 04:54 AM | 00,066,600 | R--- | M] (Sunbelt Software, Inc.) - C:\Windows\System32\drivers\sbhips.sys
[07-09-2008 02:09 AM | 00,000,000 | -H-- | M] () - C:\Windows\System32\drivers\Msft_Kernel_SynTP_01000.Wdf
[08-17-2008 03:55 PM | 00,002,560 | ---- | M] () - C:\Windows\System32\drivers\mchInjDrv.sys
[08-22-2008 02:37 PM | 00,022,528 | ---- | M] (pBUS-167 Software -
http://www.pbus-167.com) - C:\Windows\System32\drivers\nhcDriver.sys
[06-11-2008 09:18 PM | 00,036,352 | ---- | M] () - C:\Windows\System32\SX32W.DLL
[06-11-2008 09:18 PM | 00,135,680 | ---- | M] (Sampson Multimedia ®) - C:\Windows\System32\crypto32.dll
[06-18-2008 01:18 PM | 00,048,640 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxsrvc.dll
[06-18-2008 01:18 PM | 00,106,496 | ---- | M] (Intel Corporation) - C:\Windows\System32\hccutils.dll
[06-18-2008 01:18 PM | 00,135,168 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxdo.dll
[06-18-2008 01:18 PM | 00,172,032 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrenu.lrc
[06-18-2008 01:18 PM | 00,204,800 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxdev.dll
[06-18-2008 01:18 PM | 03,293,184 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxress.dll
[06-18-2008 01:19 PM | 00,024,576 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxexps.dll
[06-18-2008 01:19 PM | 00,069,632 | ---- | M] (Intel Corporation) - C:\Windows\System32\oemdspif.dll
[06-18-2008 01:19 PM | 00,122,880 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxcpl.cpl
[06-18-2008 01:19 PM | 00,204,800 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxpph.dll
[06-18-2008 01:19 PM | 00,241,664 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxTMM.dll
[06-18-2008 01:22 PM | 00,110,592 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrcht.lrc
[06-18-2008 01:22 PM | 00,114,688 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrchs.lrc
[06-18-2008 01:22 PM | 00,126,976 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrkor.lrc
[06-18-2008 01:22 PM | 00,131,072 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrjpn.lrc
[06-18-2008 01:22 PM | 00,155,648 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrheb.lrc
[06-18-2008 01:22 PM | 00,159,744 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrara.lrc
[06-18-2008 01:22 PM | 00,163,840 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrtha.lrc
[06-18-2008 01:22 PM | 00,172,032 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrslv.lrc
[06-18-2008 01:22 PM | 00,172,032 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrtrk.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrcsy.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrdan.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrfin.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrnor.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrsky.lrc
[06-18-2008 01:22 PM | 00,176,128 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrsve.lrc
[06-18-2008 01:22 PM | 00,180,224 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrplk.lrc
[06-18-2008 01:22 PM | 00,180,224 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrptb.lrc
[06-18-2008 01:22 PM | 00,180,224 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrptg.lrc
[06-18-2008 01:22 PM | 00,180,224 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrrus.lrc
[06-18-2008 01:22 PM | 00,184,320 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrfra.lrc
[06-18-2008 01:22 PM | 00,184,320 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrhun.lrc
[06-18-2008 01:22 PM | 00,188,416 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxresp.lrc
[06-18-2008 01:22 PM | 00,188,416 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrita.lrc
[06-18-2008 01:22 PM | 00,188,416 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrnld.lrc
[06-18-2008 01:22 PM | 00,192,512 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrdeu.lrc
[06-18-2008 01:22 PM | 00,192,512 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxrell.lrc
[06-18-2008 01:26 PM | 02,420,736 | ---- | M] (Intel Corporation) - C:\Windows\System32\ig4icd32.dll
[06-18-2008 01:27 PM | 02,174,976 | ---- | M] (Intel Corporation) - C:\Windows\System32\ig4dev32.dll
[06-18-2008 01:38 PM | 03,305,472 | ---- | M] (Intel Corporation) - C:\Windows\System32\igdumd32.dll
[06-18-2008 01:51 PM | 00,147,456 | ---- | M] () - C:\Windows\System32\igfxCoIn_v1504.dll
[06-18-2008 02:01 PM | 00,133,656 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxpers.exe
[06-18-2008 02:01 PM | 00,141,848 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxtray.exe
[06-18-2008 02:01 PM | 00,166,424 | ---- | M] (Intel Corporation) - C:\Windows\System32\hkcmd.exe
[06-18-2008 02:01 PM | 00,170,520 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxext.exe
[06-18-2008 02:01 PM | 00,170,520 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxzoom.exe
[06-18-2008 02:01 PM | 00,256,536 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxsrvc.exe
[06-18-2008 02:01 PM | 00,539,160 | ---- | M] (Intel Corporation) - C:\Windows\System32\igfxcfg.exe
[06-18-2008 02:56 PM | 00,032,912 | ---- | M] () - C:\Windows\System32\iglhxs32.vp
[06-22-2008 11:39 AM | 00,001,678 | ---- | M] () - C:\Windows\System32\Ahmbed.gz
[06-25-2008 10:51 PM | 00,996,352 | ---- | M] (The OpenSSL Project,
http://www.openssl.org/) - C:\Windows\System32\libeay32.dll
[06-25-2008 10:52 PM | 00,188,928 | ---- | M] (The OpenSSL Project,
http://www.openssl.org/) - C:\Windows\System32\libssl32.dll
[06-25-2008 10:52 PM | 00,188,928 | ---- | M] (The OpenSSL Project,
http://www.openssl.org/) - C:\Windows\System32\ssleay32.dll
[07-09-2008 03:51 AM | 00,022,140 | ---- | M] () - C:\Windows\System32\emptyregdb.dat
[07-09-2008 04:07 AM | 00,075,016 | ---- | M] () - C:\Windows\System32\license.rtf
[07-09-2008 08:15 AM | 00,130,432 | ---- | M] () - C:\Windows\System32\GDIPFONTCACHEV1.DAT
[07-11-2008 02:27 AM | 00,026,292 | ---- | M] () - C:\Windows\System32\SQLServerManager10.msc
[08-08-2008 12:17 AM | 00,158,748 | -H-- | M] () - C:\Windows\System32\mlfcache.dat
[08-09-2008 03:37 PM | 00,082,432 | ---- | M] (S!Ri.URZ) - C:\Windows\System32\404Fix.exe
[08-14-2008 09:52 PM | 00,082,432 | ---- | M] (S!Ri.URZ) - C:\Windows\System32\IEDFix.C.exe
[08-17-2008 04:35 PM | 00,034,308 | ---- | M] () - C:\Windows\System32\BASSMOD.dll
[08-17-2008 11:16 PM | 00,002,078 | ---- | M] () - C:\Windows\System32\tmp.reg
[08-17-2008 11:34 PM | 00,036,864 | ---- | M] () - C:\Windows\System32\umstartup.etl
[08-21-2008 01:12 AM | 00,378,600 | ---- | M] () - C:\Windows\System32\FNTCACHE.DAT
[08-31-2008 01:19 AM | 00,065,536 | ---- | M] () - C:\Windows\System32\Ikeext.etl
[08-31-2008 01:20 AM | 00,016,050 | ---- | M] () - C:\Windows\System32\results.xml
[09-02-2008 02:43 PM | 00,161,176 | ---- | M] () - C:\Windows\System32\perfc009.dat
[09-02-2008 02:43 PM | 00,192,658 | ---- | M] () - C:\Windows\System32\perfc007.dat
[09-02-2008 02:43 PM | 00,739,710 | ---- | M] () - C:\Windows\System32\perfh009.dat
[09-02-2008 02:43 PM | 00,788,672 | ---- | M] () - C:\Windows\System32\perfh007.dat
[09-02-2008 02:43 PM | 01,880,494 | ---- | M] () - C:\Windows\System32\PerfStringBackup.INI
[09-02-2008 05:20 PM | 00,006,032 | -H-- | M] () - C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[09-02-2008 05:20 PM | 00,006,032 | -H-- | M] () - C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[3 C:\Windows\*.tmp files]
[06-11-2008 09:21 PM | 00,006,874 | ---- | M] () - C:\Windows\RIDE.ini
[06-11-2008 09:22 PM | 00,000,000 | -H-- | M] () - C:\Windows\msds.dat
[06-13-2008 09:40 PM | 00,000,158 | ---- | M] () - C:\Windows\matlab.ini
[06-16-2008 10:45 AM | 00,001,409 | ---- | M] () - C:\Windows\QTFont.for
[06-21-2008 05:36 PM | 00,327,680 | ---- | M] () - C:\Windows\SPInstall.etl
[06-23-2008 11:41 PM | 00,000,277 | ---- | M] () - C:\Windows\maketorrent.ini
[07-14-2008 01:55 PM | 00,001,594 | ---- | M] () - C:\Windows\VPNUnInstall.MIF
[07-14-2008 02:05 PM | 00,001,594 | ---- | M] () - C:\Windows\VPNInstall.MIF
[07-14-2008 08:31 AM | 00,000,100 | ---- | M] () - C:\Windows\lexstat.ini
[08-17-2008 09:57 PM | 00,054,156 | -H-- | M] () - C:\Windows\QTFont.qfn
[08-18-2008 04:19 AM | 00,000,215 | ---- | M] () - C:\Windows\system.ini
[08-18-2008 12:05 AM | 00,001,887 | ---- | M] () - C:\Windows\diagerr.xml
[08-18-2008 12:05 AM | 00,001,887 | ---- | M] () - C:\Windows\diagwrn.xml
[08-21-2008 11:21 AM | 00,000,301 | ---- | M] () - C:\Windows\win.ini
[08-21-2008 11:21 AM | 00,008,653 | ---- | M] () - C:\Windows\mozver.dat
[08-21-2008 11:21 AM | 00,118,784 | ---- | M] () - C:\Windows\GREUninstall.exe
[08-21-2008 11:21 AM | 00,118,784 | ---- | M] () - C:\Windows\SeaMonkeyUninstall.exe
[08-21-2008 11:22 AM | 00,000,335 | ---- | M] () - C:\Windows\nsreg.dat
[08-22-2008 01:38 PM | 00,000,012 | ---- | M] () - C:\Windows\bthservsdp.dat
[08-31-2008 01:18 AM | 00,067,584 | --S- | M] () - C:\Windows\bootstat.dat
[08-31-2008 10:51 PM | 00,737,280 | ---- | M] (Indigo Rose Corporation) - C:\Windows\iun6002.exe
[07-11-2008 10:00 PM | 00,000,582 | ---- | M] () - C:\Windows\tasks\Upload Weeds.job
[08-28-2008 03:55 AM | 00,000,374 | ---- | M] () - C:\Windows\tasks\RegCure.job
[08-31-2008 01:19 AM | 00,000,006 | -H-- | M] () - C:\Windows\tasks\SA.DAT
[09-02-2008 05:00 PM | 00,000,440 | ---- | M] () - C:\Windows\tasks\RegCure Program Check.job
[07-17-2008 04:01 PM | 00,000,032 | ---- | M] () - C:\ProgramData\ezsid.dat
[08-17-2008 03:08 PM | 00,111,577 | ---- | M] () - C:\ProgramData\BM7149696b.xml
[08-17-2008 03:49 PM | 00,000,022 | ---- | M] () - C:\ProgramData\pskt.ini
[08-21-2008 01:40 PM | 00,000,466 | RHS- | M] () - C:\ProgramData\ntuser.pol
[08-19-2008 01:00 PM | 00,001,356 | ---- | M] () - C:\Users\saleiz\AppData\Local\d3d9caps.dat
[08-21-2008 01:14 AM | 00,107,792 | ---- | M] () - C:\Users\saleiz\AppData\Local\GDIPFONTCACHEV1.DAT
[08-31-2008 01:17 AM | 04,112,119 | -H-- | M] () - C:\Users\saleiz\AppData\Local\IconCache.db
[09-01-2008 02:50 AM | 00,000,600 | ---- | M] () - C:\Users\saleiz\AppData\Local\PUTTY.RND
[09-02-2008 04:58 PM | 00,134,656 | ---- | M] () - C:\Users\saleiz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[07-09-2008 08:09 AM | 00,000,402 | -HS- | M] () - C:\Users\saleiz\Documents\desktop.ini
[08-31-2008 10:23 PM | 00,000,486 | ---- | M] () - C:\Users\saleiz\Documents\Meine freigegebenen Ordner.lnk
[08-08-2008 06:36 PM | 00,001,098 | -HS- | M] () - C:\Users\saleiz\Desktop\desktop.ini
[08-27-2008 03:06 PM | 00,409,600 | -HS- | M] () - C:\Users\saleiz\Desktop\ehthumbs_vista.db
@Alternate Data Stream - 0 bytes -> %UserProfile%\Desktop\ehthumbs_vista.db:encryptable
[09-02-2008 03:38 PM | 00,115,712 | ---- | M] () - C:\Users\saleiz\Desktop\Permohonan Perlanjutan Mohd Hadihaizil Din.doc
[07-09-2008 08:09 AM | 00,000,174 | -HS- | M] () - C:\Users\saleiz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
[08-08-2008 01:53 PM | 00,001,849 | ---- | M] () - C:\Users\saleiz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk
[08-31-2008 01:21 AM | 00,001,009 | ---- | M] () - C:\Users\saleiz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HDDlife.lnk
< End of report >
OTViewIt Extras logfile created on: 2008-09-02 17:24:57 - Run 2
OTViewIt by OldTimer - Version 1.0.1.7 Folder = C:\Users\saleiz\Desktop
Windows Vista Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: | Country: | Language: | Date Format: yyyy-MM-dd
2.00 Gb Total Physical Memory | 1.41 Gb Available Physical Memory | 70.49% Memory free
4.00 Gb Paging File | 3.46 Gb Available in Paging File | 86.46% Paging File free
Paging file location(s): ?:\pagefile.sys
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 70.07 Gb Total Space | 10.85 Gb Free Space | 15.48% Space Free | Partition Type: NTFS
Drive D: | 31.72 Gb Total Space | 6.34 Gb Free Space | 19.98% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
Drive F: | 10.00 Gb Total Space | 5.79 Gb Free Space | 57.93% Space Free | Partition Type: NTFS
Drive G: | 983.70 Mb Total Space | 37.44 Mb Free Space | 3.81% Space Free | Partition Type: FAT
H: Drive not present or media not loaded
I: Drive not present or media not loaded
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" =
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-1953668439-2755691025-100689525-1003]
"EnableNotifications" = 1
"EnableNotificationsRef" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\FlashFXP\FlashFXP.exe" = C:\Program Files\FlashFXP\FlashFXP.exe:*:Enabled:FlashFXP v3
[07-14-2008 01:34 PM | 03,904,184 | ---- | M] (IniCom Networks, Inc.)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\FlashFXP\FlashFXP.exe" = C:\Program Files\FlashFXP\FlashFXP.exe:*:Enabled:FlashFXP v3
[07-14-2008 01:34 PM | 03,904,184 | ---- | M] (IniCom Networks, Inc.)
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.bat [@ = batfile] - "%1" %*
.cmd [@ = cmdfile] - "%1" %*
.com [@ = ComFile] - "%1" %*
.exe [@ = exefile] - "%1" %*
.js [@ = Reg Error: Value does not exist or could not be read.] - File not found - Reg Error: Key does not exist or could not be opened.
.pif [@ = piffile] - "%1" %*
.scr [@ = scrfile] - "%1" /s
.txt [@ = Reg Error: Value does not exist or could not be read.] - File not found - Reg Error: Key does not exist or could not be opened.
========== Winsock2 Catalogs ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\]
NameSpace_Catalog5\Catalog_Entries\000000000008 [mdnsNSP] - [02-28-2006 12:42 PM | 00,094,208 | ---- | M] (Apple Computer, Inc.) C:\Programme\Bonjour\mdnsNSP.dll
Protocol_Catalog9\Catalog_Entries\000000000001 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000002 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000003 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000004 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000005 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000006 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000007 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000008 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000009 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000010 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000011 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000012 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000013 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000014 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000015 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000016 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000017 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000018 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000019 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000020 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000021 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000022 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000023 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000024 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000025 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000026 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000027 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000028 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000029 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000030 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000031 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000032 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000033 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000034 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000035 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000036 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000037 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000038 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000039 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000040 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000041 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000042 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000043 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
Protocol_Catalog9\Catalog_Entries\000000000044 - [07-23-2007 10:39 AM | 00,202,160 | ---- | M] (Tonec Inc.) C:\Windows\System32\idmmbc.dll
========== HKEY_LOCAL_MACHINE Protocol Defaults ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults - Default Protocols
ldap - 4 = Restricted sites (Not a Default Protocol)
news - 4 = Restricted sites (Not a Default Protocol)
nntp - 4 = Restricted sites (Not a Default Protocol)
oecmd - 4 = Restricted sites (Not a Default Protocol)
snews - 4 = Restricted sites (Not a Default Protocol)
========== HKEY_CURRENT_USER Protocol Defaults ==========
========== HKEY_USERS Protocol Defaults ==========
========== HKEY_USERS Protocol Defaults ==========
========== HKEY_USERS Protocol Defaults ==========
[HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults] - Default Protocols
@ivt - @ivt protocol not assigned
file - file protocol not assigned
ftp - ftp protocol not assigned
http - http protocol not assigned
https - https protocol not assigned
shell - shell protocol not assigned
========== HKEY_USERS Protocol Defaults ==========
[HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults] - Default Protocols
@ivt - @ivt protocol not assigned
file - file protocol not assigned
ftp - ftp protocol not assigned
http - http protocol not assigned
https - https protocol not assigned
shell - shell protocol not assigned
========== HKEY_USERS Protocol Defaults ==========
========== HKEY_USERS Protocol Defaults ==========
========== Protocol Handlers ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
hddlife:{BD758015-47D9-477A-8873-4B688A2BC0E2} [HKLM - hlRegister Class]
[02-15-2008 02:17 PM | 00,091,384 | ---- | M] (BinarySense, Inc.) C:\Programme\Common Files\BinarySense\hlAPP.dll
linkscanner:{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} [HKLM - Reg Error: Key does not exist or could not be opened.]
File not found Reg Error: Key does not exist or could not be opened.
skype4com:{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} [HKLM - IEProtocolHandler Class]
[12-07-2007 04:08 PM | 01,934,672 | R--- | M] (Skype Technologies) C:\Programme\Common Files\Skype\Skype4COM.dll
========== Protocol Filters ==========
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00FA2C30-C2BB-45A2-B0C3-769541E8F6A2}" = PHP 5.2.5
"{028ED9C4-25EE-4DEE-9CF4-91034BC89B18}" = Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)
"{02DFF6B1-1654-411C-8D7B-FD6052EF016F}" = Apple Software Update
"{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3
"{052FDD78-A6EA-3187-8386-C82F4CA3A929}" = Microsoft .NET Framework 3.5 Language Pack SP1 - deu
"{07629207-FAA0-4F1A-8092-BF5085BE511F}" = Unterstützungsdateien für das Microsoft SQL Server-Setup (Englisch)
"{0780F87D-7444-4629-AE5F-40A0FE0A8EEB}" = Adobe WinSoft Linguistics Plugin
"{0837A661-FEC3-48B3-876C-91E7D32048A9}" = Macromedia Dreamweaver 8
"{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
"{0F99EAFA-4054-4ABC-A3D3-D2299210572F}" = Adobe Bridge CS4
"{121634B0-2F4B-11D3-ADA3-00C04F52DD52}" = Windows Installer Clean Up
"{13800ED7-C5CA-35FB-A612-2296DEF19BB0}" = Microsoft Visual Web Developer 2008 Express Edition with SP1 - DEU
"{13800ED7-C5CA-35FB-A612-2296DEF19BB0}.KB945282" = Hotfix für Microsoft Visual Web Developer 2008 Express Edition mit SP1 - DEU (KB945282)
"{13800ED7-C5CA-35FB-A612-2296DEF19BB0}.KB946040" = Hotfix für Microsoft Visual Web Developer 2008 Express Edition mit SP1 - DEU (KB946040)
"{13800ED7-C5CA-35FB-A612-2296DEF19BB0}.KB946308" = Hotfix für Microsoft Visual Web Developer 2008 Express Edition mit SP1 - DEU (KB946308)
"{13800ED7-C5CA-35FB-A612-2296DEF19BB0}.KB946344" = Hotfix für Microsoft Visual Web Developer 2008 Express Edition mit SP1 - DEU (KB946344)
"{13800ED7-C5CA-35FB-A612-2296DEF19BB0}.KB946581" = Hotfix für Microsoft Visual Web Developer 2008 Express Edition mit SP1 - DEU (KB946581)
"{13800ED7-C5CA-35FB-A612-2296DEF19BB0}.KB947540" = Hotfix für Microsoft Visual Web Developer 2008 Express Edition mit SP1 - DEU (KB947540)
"{13800ED7-C5CA-35FB-A612-2296DEF19BB0}.KB947789" = Hotfix für Microsoft Visual Web Developer 2008 Express Edition mit SP1 - DEU (KB947789)
"{13800ED7-C5CA-35FB-A612-2296DEF19BB0}.KB951708" = Hotfix für Microsoft Visual Web Developer 2008 Express Edition mit SP1 - DEU (KB951708)
"{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}" = Samsung Recovery Solution II
"{17283B95-21A8-4996-97DA-547A48DB266F}" = Easy Display Manager
"{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}" = Adobe WinSoft Linguistics Plugin
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{1D14373E-7970-4F2F-A467-ACA4F0EA21E3}" = Google Earth
"{1D1D8ADC-BF08-4E61-9393-5FA305B16864}" = Microsoft SQL Server Native Client
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = DVD Suite
"{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only)
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{235BBFC6-D863-4066-A01A-3BD504C31031}" = Nero 7 Ultra Edition
"{293D5729-7C01-4FA4-A4DE-BB6A1587BBB9}" = PDF Settings
"{29E5EA97-5F74-4A57-B8B2-D4F169117183}" = Adobe Stock Photos CS3
"{2B091530-69AA-442E-AB09-39ED06B58220}" = Windows Live Messenger
"{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}" = CyberLink PowerDVD 8
"{2EA870FA-585F-4187-903D-CB9FFD21E2E0}" = DHTML Editing Component
"{2FEB25F8-C3CB-49A2-AE79-DE17FFAFB5D9}" = MySQL Server 5.0
"{30355ED7-DE49-4C8D-BE23-2161D36E8A9A}" = Microsoft SQL Server 2008 Setup Support Files (English)
"{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java 6 Update 7
"{32D6A58F-9659-446C-BBFC-E6F2B41F24DC}" = Samsung Magic Doctor
"{342D4AD7-EC4C-4EC8-AEA6-E70F5905A490}" = SQL Server System CLR Types
"{36BEAD11-8577-49AD-9250-E06A50AE87B0}" = Microsoft SOAP Toolkit 2.0 SP2
"{37477865-A3F1-4772-AD43-AAFC6BCFF99F}" = MSXML 4.0 SP2 (KB927978)
"{38C7CB9E-1451-38D5-BB97-B7FC59E1A8B8}" = Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for Web - deu
"{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{3D7E3EC9-46CF-4359-9289-39CE01DFB82F}" = Adobe Photoshop CS3
"{3D959F7A-7417-45FF-8CC4-2092874CC73A}" = Adobe PDF Library Files CS4
"{3E2C691B-B7E6-4053-B5C3-94B8BC407E7A}" = Adobe Premiere Elements 4.0
"{3F464442-A51F-414B-ACA4-78BCF276B346}" = Ipswitch WS_FTP Server
"{44734179-8A79-4DEE-BB08-73037F065543}" = Apple Mobile Device Support
"{452FD5A6-95EE-45F0-A699-1D7CDAD03090}" = SolidWorks 2008 SP0
"{46087FCF-980F-49B2-B2D9-A1AFDB8B4447}" = TI-Reader Converter
"{477415F5-93DA-46AA-85C5-640047825995}" = Microsoft SQL Server 2008 Database Engine Shared
"{49CC1A6A-3A1A-4EE7-913F-8106B51B59D1}" = Paragon Partition Manager 8.5 Enterprise Server Edition
"{4A6F34E2-09E5-4616-B227-4A26A488A6F9}" = Microsoft SQL Server 2008 Common Files
"{4AF2248C-B3DF-46FB-9596-87F5DB193689}" = Microsoft SQL Server 2008-Browser
"{4C24C6EB-FF40-4855-9C1D-42F8AFC75112}" = Zend Optimizer
"{4C271126-C295-4828-A901-5910AE0C258B}" = Cisco Systems VPN Client 5.0.03.0530
"{4cb9f93c-9edc-4be9-ae61-af128ddbecfa}" = Business Contact Manager für Outlook 2007 SP1
"{4EA8EA5D-8E46-4698-9BF7-2F2AD8E1C185}" = Easy Network Manager 3.0
"{50120000-1105-0000-0000-0000000FF1CE}" = Microsoft Office 2007 Primary Interop Assemblies
"{51846830-E7B2-4218-8968-B77F0FF475B8}" = Adobe Color EU Extra Settings
"{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
"{5546CDB5-2CE2-498B-B059-5B3BF81FC41F}" = Macromedia Extension Manager
"{585776BC-4BD6-4BD2-A19A-1D6CB44A403B}" = iTunes
"{58E05C78-4785-443D-8A1B-CBFF49C2A84E}" = ESET Smart Security
"{5BAB6B11-928A-4BF4-84D9-00975C27EC9A}" = Adobe Fonts All
"{5C104E56-A441-429D-A609-D8A46EB92EA1}" = PCMark05
"{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}" = Skype™ 3.6
"{612B9183-67A9-4B44-9877-2F059E35B86A}" = Broadcom 440x 10/100 Integrated Controller
"{62631D34-D839-3214-92A2-D2F13C235694}" = Google Gears
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{6846389C-BAC0-4374-808E-B120F86AF5D7}" = Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)
"{685707A4-911C-468D-BFC4-64A50E5E3A0C}" = Samsung Update Plus
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6ABE0BEE-D572-4FE8-B434-9E72A289431B}" = Adobe Fonts All
"{6DC64DED-659D-4C3F-8F65-3BE3CBF57FB4}" = COSMOSMotion 2007 SP0
"{6E9CFEF5-0245-411F-8587-CF83DF9D4B05}" = Microsoft SQL Server 2008 Database Engine Services
"{6F23C1A3-9F62-470C-BD12-B83F04E67865}" = SmartFTP Client
"{6F730513-8688-4C3C-90A3-6B9792CE2EF3}" = Easy Battery Manager
"{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{767572FD-4D01-4FA3-B0A6-4B09FB2CFC37}" = Sony Sound Forge 8.0
"{786C5747-1033-0000-B58E-000000000001}" = Adobe Stock Photos 1.0
"{7A7B0BF3-2F00-4F03-8A9B-6ABCC07B90C6}" = Windows Live installer
"{7B63B2922B174135AFC0E1377DD81EC2}" = DivX
"{802771A9-A856-4A41-ACF7-1450E523C923}" = Adobe XMP Panels CS3
"{842FAF7C-50EF-4463-9B8F-6222E1384D7D}" = Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries
"{85262A06-2D8C-4BC1-B6ED-5A705D09CFFC}" = Apache HTTP Server 2.2.6
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
"{8C5FAD77-F678-4758-A296-C12F08D179E0}" = Microsoft IntelliPoint 6.2
"{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
"{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}" = Adobe Type Support
"{8EDBA74D-0686-4C99-BFDD-F894678E5102}" = Adobe Common File Installer
"{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007
"{90120000-0015-0407-0000-0000000FF1CE}_ENTERPRISE_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0015-0407-0000-0000000FF1CE}_PROHYBRIDR_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
"{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0016-0407-0000-0000000FF1CE}_PROHYBRIDR_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
"{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0018-0407-0000-0000000FF1CE}_PROHYBRIDR_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007
"{90120000-0019-0407-0000-0000000FF1CE}_ENTERPRISE_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0019-0407-0000-0000000FF1CE}_PROHYBRIDR_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007
"{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001A-0407-0000-0000000FF1CE}_PROHYBRIDR_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
"{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001B-0407-0000-0000000FF1CE}_PROHYBRIDR_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0407-0000-0000000FF1CE}_PROHYBRIDR_{2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{3EC77D26-799B-4CD8-914F-C1565E796173}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0409-0000-0000000FF1CE}_PROHYBRIDR_{3EC77D26-799B-4CD8-914F-C1565E796173}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{430971B1-C31E-45DA-81E0-72C095BAB72C}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-040C-0000-0000000FF1CE}_PROHYBRIDR_{430971B1-C31E-45DA-81E0-72C095BAB72C}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
"{90120000-001F-0410-0000-0000000FF1CE}_ENTERPRISE_{58FC5E37-DD28-4D4A-A549-125744C6763C}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0410-0000-0000000FF1CE}_PROHYBRIDR_{58FC5E37-DD28-4D4A-A549-125744C6763C}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0021-0000-0000-0000000FF1CE}" = Microsoft Office Visual Web Developer 2007
"{90120000-0021-0000-0000-0000000FF1CE}_VisualWebDeveloper_{A420F522-7395-4872-9882-C591B4B92278}" = Update for Office 2007 (KB946691)
"{90120000-0021-0000-0000-0000000FF1CE}_VisualWebDeveloper_{F9DE79A2-9049-4589-9787-815147371581}" = Update for Microsoft Visual Studio Web Authoring Component (KB945140)
"{90120000-0021-0000-0000-0000000FF1CE}_VisualWebDeveloper_{FED55BA1-5A70-44B4-8EB1-E72274AED780}" = Hotfix for Office (KB950278)
"{90120000-0021-0407-0000-0000000FF1CE}" = Microsoft Office Visual Web Developer MUI (German) 2007
"{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1AFF2298-CC00-4A3B-866A-C62B8373794E}" = Security Update for 2007 Microsoft Office System (KB951596)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{4AD3A076-427C-491F-A5B7-7D1DE788A756}" = Update for Microsoft Office Outlook 2007 (KB952142)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{558B709B-821B-4FC5-90FC-9A8890641E77}" = Security Update for Microsoft Office PowerPoint 2007 (KB951338)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6BAD036C-261F-4BEF-96CF-C20678D07A41}" = Security Update for Visio 2007 (KB947590)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{7399DD71-8E24-4E60-B6A8-6CED89C0AC26}" = Security Update for Microsoft Office Excel 2007 (KB951546)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{8F375E11-4FD6-4B89-9E2B-A76D48B51E00}" = Security Update for Microsoft Office system 2007 (KB951808)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A420F522-7395-4872-9882-C591B4B92278}" = Update for Office 2007 (KB946691)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{AD72BABE-C733-4FCF-9674-4314466191B9}" = Security Update for Microsoft Office Word 2007 (KB950113)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BEE75E01-DD3F-4D5F-B96C-609E6538D419}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{D9806966-6AA1-4B55-9528-6748E37CEE86}" = Update for Outlook 2007 Junk Email Filter (kb955433)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}" = Security Update for Microsoft Office Publisher 2007 (KB950114)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{FED55BA1-5A70-44B4-8EB1-E72274AED780}" = Hotfix for Office (KB950278)
"{90120000-0044-0407-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (German) 2007
"{90120000-0044-0407-0000-0000000FF1CE}_ENTERPRISE_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
"{90120000-006E-0407-0000-0000000FF1CE}_ENTERPRISE_{888B9AC7-8F5C-456B-A27A-157A6C310E52}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-006E-0407-0000-0000000FF1CE}_PROHYBRIDR_{888B9AC7-8F5C-456B-A27A-157A6C310E52}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007
"{90120000-00A1-0407-0000-0000000FF1CE}_ENTERPRISE_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-00A4-0409-0000-0000000FF1CE}" = Microsoft Office 2003 Web Components
"{90120000-00BA-0407-0000-0000000FF1CE}" = Microsoft Office Groove MUI (German) 2007
"{90120000-00BA-0407-0000-0000000FF1CE}_ENTERPRISE_{DCBECE36-8F23-4B33-925E-A1C6183C0DBD}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
"{91120000-0031-0000-0000-0000000FF1CE}" = Microsoft Office Professional Hybrid 2007
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{1AFF2298-CC00-4A3B-866A-C62B8373794E}" = Security Update for 2007 Microsoft Office System (KB951596)
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{4AD3A076-427C-491F-A5B7-7D1DE788A756}" = Update for Microsoft Office Outlook 2007 (KB952142)
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{558B709B-821B-4FC5-90FC-9A8890641E77}" = Security Update for Microsoft Office PowerPoint 2007 (KB951338)
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6BAD036C-261F-4BEF-96CF-C20678D07A41}" = Security Update for Visio 2007 (KB947590)
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{7399DD71-8E24-4E60-B6A8-6CED89C0AC26}" = Security Update for Microsoft Office Excel 2007 (KB951546)
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{8F375E11-4FD6-4B89-9E2B-A76D48B51E00}" = Security Update for Microsoft Office system 2007 (KB951808)
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{A420F522-7395-4872-9882-C591B4B92278}" = Update for Office 2007 (KB946691)
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{AD72BABE-C733-4FCF-9674-4314466191B9}" = Security Update for Microsoft Office Word 2007 (KB950113)
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{BEE75E01-DD3F-4D5F-B96C-609E6538D419}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{D9806966-6AA1-4B55-9528-6748E37CEE86}" = Update for Outlook 2007 Junk Email Filter (kb955433)
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}" = Security Update for Microsoft Office Publisher 2007 (KB950114)
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{FED55BA1-5A70-44B4-8EB1-E72274AED780}" = Hotfix for Office (KB950278)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{955597D8-E5E1-474D-B647-60AC44566D24}" = Play AVStation
"{95655ED4-7CA5-46DF-907F-7144877A32E5}" = Adobe Color NA Recommended Settings
"{95A890AA-B3B1-44B6-9C18-A8F7AB3EE7FC}" = QuickTime
"{96E3AED5-3D0B-4BB0-84C2-1EDADB204487}" = FlashFXP v3
"{9A33B83D-FFC4-44CF-BEEF-632DECEF2FCD}" = Microsoft SQL Server Database Publishing Wizard 1.3
"{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
"{9EE4F37D-4D8E-4C64-BDE7-7AF4E6B073B5}" = Adobe Type Support CS4
"{A13E07E1-A423-44FB-9DEE-B24C75C1BAF2}" = WIDCOMM Bluetooth Software 6.0.1.3400
"{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}" = Adobe CMaps
"{A2D81E70-2A98-4A08-A628-94388B063C5E}" = Adobe Color - Photoshop Specific
"{A52ACD6B-238E-44C8-90B5-C57BA8926C57}" = FontFrenzy
"{A8B94669-8654-4126-BD28-D0D2412CDED6}" = TI Connect 1.6
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update
"{A939D341-5A04-4E0A-BB55-3E65B386432D}" = Microsoft Office Small Business Connectivity Components
"{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}" = PDF Settings
"{AC76BA86-1033-F400-7760-000000000003}" = Adobe Acrobat 8 Professional - English, Français, Deutsch
"{AC76BA86-1033-F400-7760-000000000003}_Adobe Acrobat 8 Professional - English, Français, Deutsch" = Adobe Acrobat 8.1.2 Security Update 1 (KB403742)
"{AC76BA86-7AD7-1031-7B44-A70800000002}" = Adobe Reader 7.0.8 - Deutsch
"{AD88355B-A4E0-4DA1-BAC3-EA4FEA930691}" = Ipswitch WS_FTP Professional 2007
"{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}" = Windows Live Anmelde-Assistent
"{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
"{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
"{B4C0A315-07FB-39F9-85CD-8CE20C019350}" = Microsoft Windows SDK for Visual Studio 2008 Express Tools for .NET Framework
"{B510A987-487E-4C66-9F4F-D386AC275715}" = TextPad 4.7
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player
"{B74D4E10-1033-0000-0000-000000000001}" = Adobe Bridge 1.0
"{B8E9F8A1-9F4D-43D5-ABD6-1DF067FAA469}" = Microsoft SQL Server 2008 Database Engine Services
"{B9803C44-643C-4971-AF4B-3A3699CD15DA}" = Adobe Anchor Service CS4
"{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}" = Adobe Default Language CS3
"{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}" = User Guide
"{BCDB856C-D247-4DEE-9132-89C02F4D6B8C}_is1" = Sothink SWF Decompiler
"{C04E32E0-0416-434D-AFB9-6969D703A9EF}" = MSXML 4.0 SP2 (KB936181)
"{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
"{C4418DF9-5B57-4C5D-ACC2-D6B1338CCE09}" = Photoshop Camera Raw
"{C523D256-313D-4866-B36A-F3DE528246EF}" = MSXML 4.0 SP2 (KB941833)
"{C8C8387B-A98B-44E8-807A-1A9B7F51FFDA}" = Blaze Media Pro
"{C91C4EF4-63E1-41EE-AE6A-5152628FDC21}" = Microsoft SQL Server 2008 Native Client
"{C965F01C-76EA-4BD7-973E-46236AE312D7}" = Sql Server Customer Experience Improvement Program
"{C9D96682-5A4D-45FA-BA3E-DDCB2B0CB868}" = Safari
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CBC96EEE-470E-458E-A005-488BEC1CED42}" = eDrawings 2008
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595" = Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
"{D050D7362D214723AD585B541FFB6C11}" = DivX Content Uploader
"{D074DC76-F6C9-440E-A1D0-1DE958417FDB}" = Microsoft SQL Server VSS Writer
"{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
"{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}" = Adobe PDF Library Files
"{D36DD326-7280-11D8-97C8-000129760CBE}" = PhotoNow! 1.0
"{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}" = Adobe Color Common Settings
"{DBEA1034-5882-4A88-8033-81C4EF0CFA29}" = Google Toolbar for Internet Explorer
"{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}" = Adobe Color JA Extra Settings
"{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware
"{E583ED6F-BD99-4066-A420-C815BF692B69}" = Macromedia Fireworks MX 2004
"{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
"{E81D9FF6-B45F-4DD4-9673-86B08AF6F705}" = HDDlife Pro 3.1
"{E8641B55-68D5-4FF9-978C-A6D686F8EAA0}" = Adobe CMaps CS4
"{E9787678-1033-0000-8E67-000000000001}" = Adobe Help Center 1.0
"{EC561602-C0B9-4FAA-A175-1B3273639AC3}" = MySQL Tools for 5.0
"{EDA2E9CA-8B7E-4BC0-9B0F-34B299555BF3}" = Retail Virtual EVE
"{F07AE5AB-516C-4CEB-A0AA-AD083B9182C6}" = TI NoteFolio Creator
"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
"{F1DC7648-8623-442F-92B7-E118DF61872E}" = Microsoft SQL Server 2008 RsFx Driver
"{F3494AB6-6900-41C6-AF57-823626827ED8}" = Microsoft SQL Server 2008 Database Engine Shared
"{F5E87B12-3C27-452F-8E78-21D42164FD83}" = Microsoft SQL Server 2008 Management Objects
"{F85C7118-F3DC-4ED9-AB27-3E7931EA3D88}" = Adobe Premiere Elements 4.0 Templates
"{FD53302C-8E7B-4730-8AD8-86A889BDBFAB}" = AVStation Now
"{FF11004C-F42A-4A31-9BCF-7F5C8FDBE53C}" = Adobe Setup
"{FF6F95A4-E59B-45C8-BEA8-0BDC8D9CAB51}" = Microsoft SQL Server 2008 Common Files
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"ActiveScan 2.0" = Panda ActiveScan 2.0
"Ad-Aware SE Professional" = Ad-Aware SE Professional
"Adobe Acrobat 8 Professional - English, Français, Deutsch" = Adobe Acrobat 8.1.2 Professional
"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player Plugin
"Adobe_719d6f144d0c086a0dfa7ff76bb9ac1" = Adobe Photoshop CS3
"Aptana Studio" = Aptana Studio
"Athan" = Athan Basic 3.4
"AVGantiRootkit" = AVG Anti-Rootkit Free
"B991B020-2968-11D8-AF23-444553540000_is1" = FreeMind
"Blaze Media Pro" = Blaze Media Pro
"BlogDesk_is1" = BlogDesk 2.8
"BSPlayerp" = BS.Player PRO
"Business Contact Manager" = Business Contact Manager für Outlook 2007 SP1
"CamStudio" = CamStudio
"CCleaner" = CCleaner (remove only)
"CDCheck" = CDCheck
"Citavi" = Citavi 2.4
"Cool Beans NFO Creator_is1" = Cool Beans NFO Creator 2.0.1.3
"CoreAVC Professional Edition" = CoreAVC Professional Edition (remove only)
"Creative PD1110" = Creative WebCam NX Driver (2.00.04.0000)
"CS BMR Calculator_is1" = CS BMR Calculator 1.0
"DeskScapes" = DeskScapes
"e_is1" = e - v1.0.10
"ENTERPRISE" = Microsoft Office Enterprise 2007
"FastStone Capture" = FastStone Capture 5.3
"ffdshow_is1" = ffdshow [rev 1723] [2007-12-24]
"FinitySoft BMI Calculator" = FinitySoft BMI Calculator 1.0
"Focus Magic_is1" = Focus Magic 3.02
"Folding@Home Windows SMP Client" = Folding@Home Windows SMP Client
"Free FLV Converter_is1" = Free FLV Converter V 1.0
"Free WMA to MP3 Converter_is1" = Free WMA to MP3 Converter 1.16
"Free YouTube to Mp3 Converter_is1" = Free YouTube to Mp3 Converter version 2.4
"Frets on Fire" = Frets On Fire
"HaaliMkx" = Haali Media Splitter
"HDMI" = Intel® Graphics Media Accelerator Driver
"HijackThis" = HijackThis 2.0.2
"IIM5_is1" = iMacros V6.11
"InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}" = CyberLink PowerDVD 8
"InstallShield_{4EA8EA5D-8E46-4698-9BF7-2F2AD8E1C185}" = Easy Network Manager 3.0
"InstallShield_{685707A4-911C-468D-BFC4-64A50E5E3A0C}" = Samsung Update Plus
"InstallShield_{955597D8-E5E1-474D-B647-60AC44566D24}" = Play AVStation
"InstallShield_{FD53302C-8E7B-4730-8AD8-86A889BDBFAB}" = AVStation Now
"Internet Download Manager" = Internet Download Manager
"KB948109_SQL9" = GDR 3068 for SQL Server Database Services 2005 ENU (KB948109)
"KLiteCodecPack_is1" = K-Lite Codec Pack 3.2.0 Standard
"Lexmark 2200 Series" = Lexmark 2200 Series
"LowRateVoip_is1" = LowRateVoip
"M929729" = Microsoft .NET Framework 1.1 Hotfix (KB929729)
"MagicISO & MagicDisc_is1" = MagicISO 5.4.0.239 & MagicDisc 2.5.50.0
"MakeTorrent 2" = MakeTorrent v2.1
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MatlabR14SP3" = MATLAB 7.1
"Maxthon" = Maxthon Browser (remove only)
"Media Pirate - the video downloader" = Media Pirate - the video downloader 1.0.3
"Messenger Plus! Live" = Messenger Plus! Live
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 Language Pack SP1 - deu" = Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft SQL Server 10" = Microsoft SQL Server 2008
"Microsoft SQL Server 10 Release" = Microsoft SQL Server 2008
"Microsoft SQL Server 2005" = Microsoft SQL Server 2005
"Microsoft Visual C++ 2008 Express Edition - ENU" = Microsoft Visual C++ 2008 Express Edition - ENU
"Microsoft Visual Web Developer 2008 Express Edition with SP1 - DEU" = Microsoft Visual Web Developer 2008 Express Edition mit SP1 - DEU
"mIRC" = mIRC
"Mozilla Firefox (3.0.1)" = Mozilla Firefox (3.0.1)
"Mozilla Thunderbird (2.0.0.16)" = Mozilla Thunderbird (2.0.0.16)
"Nonoh_is1" = Nonoh
"Notebook Hardware Control" = Notebook Hardware Control 2.0 Pre-Release-06
"nxclient_is1" = NX Client for Windows 3.2.0-10
"ObjectDock Plus" = ObjectDock Plus
"OpenSSL Light_is1" = OpenSSL 0.9.8h Light
"Pacific Poker" = Pacific Poker
"Power Data Recovery_is1" = Power Data Recovery 4.1.2
"PowerISO" = PowerISO
"PremElem40" = Adobe Premiere Elements 4.0
"PremElem40Templates" = Adobe Premiere Elements 4.0 Templates
"PROHYBRIDR" = 2007 Microsoft Office system
"RealPlayer 6.0" = RealPlayer
"Refresher" = Refresher
"RegCure" = RegCure 1.5.0.0
"Registry First Aid_is1" = Registry First Aid
"Ride" = RKit 6.1
"Ruby-186-26" = Ruby-186-26
"SamsungPlayer_is1" = Samsung Player Version 2.00.7
"SC Video Converter_is1" = SC Video Converter 4.3.0.0
"SeaMonkey (1.1.11)" = SeaMonkey (1.1.11)
"SetFileDate_is1" = SetFileDate 2.0
"Soldier of Fortune II - Double Helix MP TEST" = Soldier of Fortune II - Double Helix MP TEST
"SparVoip_is1" = SparVoip
"Subversion_is1" = Subversion 1.4.5-r25188
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"TeamViewer 3" = TeamViewer 3
"Thunderbird-Tray" = Thunderbird-Tray
"Total Video Converter 3.10_is1" = Total Video Converter 3.10
"UltraStar" = UltraStar 0.6.0
"UltSounds" = Windows-Soundschemas
"UnixUtils for Yahoo! Widgets" = Unix Utilities for Yahoo! Widgets
"VisualWebDeveloper" = Microsoft Visual Studio Web Authoring Component
"VLC media player" = VideoLAN VLC media player 0.8.6c
"VoipBuster_is1" = VoipBuster
"VSO Image Resizer_is1" = VSO Image Resizer 1.3.4
"WIDI Audio To MIDI VST 1.10" = WIDI Audio To MIDI VST 1.10 (remove only)
"Winamp" = Winamp
"WinAVI Video Converter_is1" = WinAVI Video Converter
"WinPcapInst" = WinPcap 4.0.2
"WinRAR archiver" = WinRAR archiver
"Wireshark" = Wireshark 0.99.7
"Yahoo! Extras" = Yahoo! Browser Services
"Yahoo! IE Suggest" = Yahoo! IE Search Suggest
"Yahoo! Mail" = Yahoo! Internet Mail
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Widget Engine" = Yahoo! Widgets
"YASA Video Converter v3.4 (build 0065)" = YASA Video Converter v3.4 (build 0065)
"YInstHelper" = Yahoo! Install Manager
"ZDFmediathek_is1" = ZDFmediathek Version 1.4.0
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only)
"Dr. DivX 2.0 OSS" = Dr. DivX 2.0 OSS
"uTorrent" = µTorrent
========== HKEY_USERS Uninstall List ==========
========== HKEY_USERS Uninstall List ==========
========== HKEY_USERS Uninstall List ==========
========== HKEY_USERS Uninstall List ==========
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only)
"Dr. DivX 2.0 OSS" = Dr. DivX 2.0 OSS
"uTorrent" = µTorrent
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1953668439-2755691025-100689525-501\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only)
"Dr. DivX 2.0 OSS" = Dr. DivX 2.0 OSS
"intelliScore Polyphonic WAV to MIDI Converter Demo" = intelliScore Polyphonic WAV to MIDI Converter Demo
"uTorrent" = µTorrent
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 2008-08-20 23:23:03 - Computer Name = slumbermann - User Name = User SID not found - Source = SideBySide
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files\SolidWorks\SLDWORKS.exe".
Die
abhängige Assemblierung "Microsoft.VC80.OpenMP,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762""
konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm
"sxstrace.exe".
Error - 2008-08-20 23:48:13 - Computer Name = slumbermann - User Name = User SID not found - Source = WinMgmt
Description =
Error - 2008-08-21 01:24:36 - Computer Name = slumbermann - User Name = User SID not found - Source = VSS
Description =
Error - 2008-08-21 01:48:05 - Computer Name = slumbermann - User Name = User SID not found - Source = SideBySide
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Windows\assembly\GAC_32\Microsoft.SqlServer.BatchParser\10.0.0.0__89845dcd8080cc91\Microsoft.SqlServer.BatchParser.dll".
Die
abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.1833""
konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm
"sxstrace.exe".
Error - 2008-08-21 01:48:26 - Computer Name = slumbermann - User Name = User SID not found - Source = SideBySide
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Windows\assembly\GAC_32\Microsoft.SqlServer.BatchParser\10.0.0.0__89845dcd8080cc91\Microsoft.SqlServer.BatchParser.dll".
Die
abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.1833""
konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm
"sxstrace.exe".
Error - 2008-08-21 01:48:46 - Computer Name = slumbermann - User Name = User SID not found - Source = .NET Runtime Optimization Service
Description =
Error - 2008-08-21 01:48:56 - Computer Name = slumbermann - User Name = User SID not found - Source = .NET Runtime Optimization Service
Description =
Error - 2008-08-21 01:52:33 - Computer Name = slumbermann - User Name = User SID not found - Source = WinMgmt
Description =
Error - 2008-08-21 02:07:36 - Computer Name = slumbermann - User Name = User SID not found - Source = SQLBrowser
Description = Der Port des SQLBrowser-Diensts kann nicht überwacht werden oder ist
ungültig.
Error - 2008-08-21 02:07:36 - Computer Name = slumbermann - User Name = User SID not found - Source = SQLBrowser
Description = Der SQLBrowser-Dienst konnte die SQL-Instanz und die Konnektivitätsermittlung
nicht einrichten.
[ DFS Replication Events ]
[ HardwareEvents Events ]
[ Internet Explorer Events ]
[ Key Management Service Events ]
[ Media Center Events ]
Error - 2008-05-21 13:16:13 - Computer Name = slumbermann - User Name = User SID not found - Source = Media Center Guide
Description = Ereignisinformationen: ERROR: SqmApiWrapper.TimerAccumulate failed;
Win32 GetLastError returned 10000105 Prozess: DefaultDomain Objektname: Media Center
Guide
Error - 2008-06-06 08:09:23 - Computer Name = slumbermann - User Name = User SID not found - Source = Media Center Guide
Description = Ereignisinformationen: ERROR: SqmApiWrapper.TimerAccumulate failed;
Win32 GetLastError returned 10000105 Prozess: DefaultDomain Objektname: Media Center
Guide
Error - 2008-06-08 23:33:05 - Computer Name = slumbermann - User Name = User SID not found - Source = Media Center Guide
Description = Ereignisinformationen: ERROR: SqmApiWrapper.TimerRecord failed; Win32
GetLastError returned 10000105 Prozess: DefaultDomain Objektname: Media Center Guide
Error - 2008-07-02 12:20:11 - Computer Name = slumbermann - User Name = User SID not found - Source = Media Center Guide
Description = Ereignisinformationen: ERROR: SqmApiWrapper.TimerAccumulate failed;
Win32 GetLastError returned 10000105 Prozess: DefaultDomain Objektname: Media Center
Guide
[ ODiag Events ]
Error - 2007-11-22 20:50:02 - Computer Name = slumbermann - User Name = User SID not found - Source = Microsoft Office 12 Diagnostics
Description = An unexpected error occurred. Tag: 2kcz. Error code: N/A
[ OSession Events ]
Error - 2007-11-22 20:50:00 - Computer Name = slumbermann - User Name = User SID not found - Source = Microsoft Office 12 Sessions
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6023.5000, Microsoft Office Version: 12.0.4518.1014. This session lasted 1
seconds with 0 seconds of active time. This session ended with a crash.
Error - 2007-12-07 08:40:24 - Computer Name = slumbermann - User Name = User SID not found - Source = Microsoft Office 12 Sessions
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 538
seconds with 240 seconds of active time. This session ended with a crash.
Error - 2008-06-27 17:18:17 - Computer Name = slumbermann - User Name = User SID not found - Source = Microsoft Office 12 Sessions
Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
Version: 12.0.6211.1000, Microsoft Office Version: 12.0.6215.1000. This session
lasted 4286 seconds with 2580 seconds of active time. This session ended with a
crash.
[ Security Events ]
[ System Events ]
Error - 2008-08-30 21:16:11 - Computer Name = slumbermann - User Name = User SID not found - Source = Service Control Manager
Description =
Error - 2008-08-30 21:16:11 - Computer Name = slumbermann - User Name = User SID not found - Source = Service Control Manager
Description =
Error - 2008-08-30 21:16:11 - Computer Name = slumbermann - User Name = User SID not found - Source = Service Control Manager
Description =
Error - 2008-08-30 23:18:17 - Computer Name = slumbermann - User Name = User SID not found - Source = sptd
Description = Der Treiber hat einen internen Fehler in seinen Datenstrukturen für
festgestellt.
Error - 2008-08-30 23:18:22 - Computer Name = slumbermann - User Name = User SID not found - Source = volmgr
Description = Die Initialisierung des Speicherabbildes ist fehlgeschlagen.
Error - 2008-08-30 23:18:44 - Computer Name = slumbermann - User Name = User SID not found - Source = volmgr
Description = Die Initialisierung des Speicherabbildes ist fehlgeschlagen.
Error - 2008-08-30 23:19:03 - Computer Name = slumbermann - User Name = User SID not found - Source = HTTP
Description =
Error - 2008-08-30 23:20:18 - Computer Name = slumbermann - User Name = User SID not found - Source = Service Control Manager
Description =
Error - 2008-08-30 23:20:18 - Computer Name = slumbermann - User Name = User SID not found - Source = Service Control Manager
Description =
Error - 2008-08-30 23:20:18 - Computer Name = slumbermann - User Name = User SID not found - Source = Service Control Manager
Description =
< End of report >