Hi Billy,
Ok everything seemed to have worked this time and here are the logs you asked for.
OTMoveIT3
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== SERVICES/DRIVERS ==========
Service FCI stopped successfully.
Service FCI deleted successfully.
Service ICF stopped successfully.
Service ICF deleted successfully.
========== FILES ==========
Unable to delete ADS C:\WINDOWS\system32\svchost.exe:ext.exe .
File/Folder c:\nores.mht not found.
File/Folder C:\WINDOWS\system32\xzxffwzmof.dll not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\*.sxload.net\\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}\\ deleted successfully.
Registry key HKEY_CLASSES_ROOT\CLSID\{7E853D72-626A-48EC-A868-BA8D5E23E045}\\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E54F56DD-104D-5BBB-111D-7912D14EE471}\\ deleted successfully.
Registry key HKEY_CLASSES_ROOT\CLSID\{E54F56DD-104D-5BBB-111D-7912D14EE471}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\priarsz\\ deleted successfully.
========== COMMANDS ==========
OTMoveIt3 by OldTimer - Version 1.0.7.1 log created on 11282008_205415
OTViewIT
OTViewIt logfile created on: 11/28/2008 9:10:42 PM - Run
OTViewIt by OldTimer - Version 1.0.20.0 Folder = C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
255.48 Mb Total Physical Memory | 73.58 Mb Available Physical Memory | 28.80% Memory free
616.91 Mb Paging File | 389.07 Mb Available in Paging File | 63.07% Paging File free
Paging file location(s): c:\pagefile.sys 384 768;
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 18.99 Gb Total Space | 10.74 Gb Free Space | 56.58% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 3.73 Gb Total Space | 3.14 Gb Free Space | 84.26% Space Free | Partition Type: FAT32
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: HOME-R1DHX7MSQF
Current User Name: Courtney
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Whitelist: On
File Age = 30 Days
========== Processes ========== [2008/09/10 13:01:28 | 00,611,664 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
[2008/11/14 17:34:49 | 00,231,704 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgwdsvc.exe
[2008/04/13 19:12:36 | 00,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\snmp.exe
[2008/11/02 22:24:00 | 00,221,184 | ---- | M] (Logitech Inc.) -- C:\WINDOWS\system32\LVCOMSX.EXE
[2005/01/18 20:37:30 | 00,217,088 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech\Video\LogiTray.exe
[2001/09/13 01:09:50 | 01,134,592 | R--- | M] (C-Media Electronic Inc. (www.cmedia.com.tw)) -- C:\WINDOWS\mixer.exe
[2008/06/10 04:27:04 | 00,144,784 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
[2008/11/14 17:34:52 | 00,287,000 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgrsx.exe
[2008/11/14 17:34:51 | 01,234,712 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgtray.exe
[2008/11/14 17:34:51 | 00,875,288 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgemc.exe
[2008/04/13 19:12:41 | 00,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wscntfy.exe
[2008/04/13 19:12:40 | 00,032,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wpabaln.exe
[2008/11/28 06:37:26 | 00,422,400 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\OTViewIt.exe
========== (O23) Win32 Services ========== [2008/09/10 13:01:28 | 00,611,664 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe -- (aawservice [Auto | Running])
[2008/11/14 17:34:51 | 00,875,288 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgemc.exe -- (avg8emc [Auto | Running])
[2008/11/14 17:34:49 | 00,231,704 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgwdsvc.exe -- (avg8wd [Auto | Running])
File not found -- -- (ClipSrv [Disabled | Stopped])
[2008/04/13 19:12:36 | 00,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\snmp.exe -- (SNMP [Auto | Running])
[2008/04/13 19:12:36 | 00,008,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\snmptrap.exe -- (SNMPTRAP [On_Demand | Stopped])
[2008/11/02 22:25:53 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe -- (UMWdf [On_Demand | Stopped])
[2007/01/19 11:54:14 | 00,097,136 | ---- | M] (Microsoft Corporation) -- C:\Program Files\MSN Messenger\usnsvc.exe -- (usnjsvc [On_Demand | Stopped])
========== Driver Services ========== [2004/08/03 21:29:28 | 00,701,440 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag [On_Demand | Running])
[2008/11/14 17:35:19 | 00,097,928 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (AvgLdx86 [System | Running])
[2008/11/14 17:35:16 | 00,026,824 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (AvgMfx86 [System | Running])
[2008/11/14 17:35:29 | 00,076,040 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (AvgTdiX [Auto | Running])
[2001/09/14 22:46:08 | 00,280,657 | R--- | M] (C-Media Inc) -- C:\WINDOWS\system32\drivers\cmaudio.sys -- (cmpci [On_Demand | Stopped])
[2001/08/17 11:12:10 | 00,117,760 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\drivers\e100b325.sys -- (E100B [On_Demand | Stopped])
[2001/08/17 11:19:34 | 00,040,704 | ---- | M] (Creative Technology Ltd.) -- C:\WINDOWS\system32\drivers\es1371mp.sys -- (es1371 [On_Demand | Running])
[2008/09/14 16:10:25 | 00,133,248 | ---- | M] () -- C:\WINDOWS\system32\drivers\ethnsieh.sys -- (ethnsieh [System | Stopped])
[2004/12/16 13:36:30 | 00,042,496 | ---- | M] (VIA Technologies, Inc. ) -- C:\WINDOWS\system32\drivers\fetnd5bv.sys -- (FETND5BV [On_Demand | Running])
[2001/08/17 11:13:08 | 00,027,165 | ---- | M] (VIA Technologies, Inc. ) -- C:\WINDOWS\system32\drivers\fetnd5.sys -- (FETNDIS [On_Demand | Stopped])
[2008/04/13 13:45:29 | 00,010,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum [On_Demand | Running])
[2008/11/27 17:51:54 | 00,085,969 | ---- | M] (GMER) -- C:\WINDOWS\system32\drivers\gmer.sys -- (gmer [System | Running])
[1998/09/25 03:55:24 | 00,052,800 | ---- | M] () -- C:\WINDOWS\system32\drivers\HPFecp13.sys -- (HPFECP13 [Auto | Running])
[2005/01/31 05:12:46 | 00,022,016 | R--- | M] (Logitech Inc.) -- C:\WINDOWS\system32\drivers\LVUSBSta.sys -- (LVUSBSta [On_Demand | Stopped])
[2001/08/17 13:00:04 | 00,002,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401 [On_Demand | Running])
[2008/06/19 17:24:30 | 00,028,544 | ---- | M] (Panda Security, S.L.) -- C:\WINDOWS\system32\drivers\pavboot.sys -- (pavboot [Boot | Running])
[2005/01/31 05:20:03 | 00,211,712 | R--- | M] (Logitech Inc.) -- C:\WINDOWS\system32\drivers\LV561AV.SYS -- (PID_0928 [On_Demand | Stopped])
[2006/02/28 07:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink [On_Demand | Running])
[2008/11/10 00:46:11 | 00,000,000 | ---D | M] -- C:\WINDOWS\System32\Restore -- (restore [On_Demand | Stopped])
[2006/12/14 15:44:06 | 00,085,120 | R--- | M] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp [On_Demand | Stopped])
[2008/04/13 11:39:15 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv [On_Demand | Stopped])
[2001/08/17 07:50:46 | 00,101,760 | ---- | M] (Silicon Integrated Systems Corporation) -- C:\WINDOWS\system32\drivers\sis300ip.sys -- (SiS300i [On_Demand | Stopped])
[2008/04/13 13:36:39 | 00,040,960 | ---- | M] (Silicon Integrated Systems Corporation) -- C:\WINDOWS\system32\drivers\sisagp.sys -- (sisagp [Boot | Running])
[2004/08/03 21:31:36 | 00,032,768 | ---- | M] (SiS Corporation) -- C:\WINDOWS\system32\drivers\sisnic.sys -- (SISNIC [On_Demand | Stopped])
[2007/08/01 22:47:26 | 00,102,664 | ---- | M] (Trend Micro Inc.) -- C:\WINDOWS\system32\drivers\tmcomm.sys -- (tmcomm [Auto | Running])
[2002/03/22 15:12:06 | 00,026,368 | ---- | M] (Linksys) -- C:\WINDOWS\system32\drivers\USB100TX.sys -- (USB100TX [On_Demand | Stopped])
========== (R ) Internet Explorer ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main]
"Default_Page_URL"=http://go.microsoft.com/fwlink/?LinkId=69157
"Default_Search_URL"=http://go.microsoft.com/fwlink/?LinkId=54896
"Default_Secondary_Page_URL"=
"Extensions Off Page"=about:NoAdd-ons
"Local Page"=%SystemRoot%\system32\blank.htm
"Search Page"=http://go.microsoft.com/fwlink/?LinkId=54896
"Security Risk Page"=about:SecurityRisk
"Start Page"=http://go.microsoft.com/fwlink/?LinkId=69157
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search]
"CustomizeSearch"=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
"Default_Search_URL"=http://www.google.com/ie
"SearchAssistant"=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main]
"Local Page"=C:\WINDOWS\system32\blank.htm
"Page_Transitions"=
"Search Page"=http://www.google.com
"SearchMigratedDefaultName"=Google
"SearchMigratedDefaultURL"=http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
"Start Page"=http://www.youtube.com/
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Search]
"SearchAssistant"=http://www.google.com/ie
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURL]
""=http://www.google.com/search?q=%s
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" (HKLM) -- C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = 0
"ProxyOverride" = localhost
[HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00A6FAF6-072E-44cf-8957-5838F569A31D}" (HKLM) -- Reg Error: Key does not exist or could not be opened. File not found
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = 0
[HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00A6FAF6-072E-44cf-8957-5838F569A31D}" (HKLM) -- Reg Error: Key does not exist or could not be opened. File not found
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = 0
[HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main]
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = 0
[HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main]
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = 0
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\SOFTWARE\Microsoft\Internet Explorer\Main]
"Local Page"=C:\WINDOWS\system32\blank.htm
"Page_Transitions"=
"Search Page"=http://www.google.com
"SearchMigratedDefaultName"=Google
"SearchMigratedDefaultURL"=http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
"Start Page"=http://www.youtube.com/
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\SOFTWARE\Microsoft\Internet Explorer\Search]
"SearchAssistant"=http://www.google.com/ie
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\Software\Microsoft\Internet Explorer\SearchURL]
""=http://www.google.com/search?q=%s
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" (HKLM) -- C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = 0
"ProxyOverride" = localhost
========== (O1) Hosts File ========== Hosts file not found
========== (O2) BHO's ========== [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (HKLM) -- C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} (HKLM) -- C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (HKLM) -- C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll (Sun Microsystems, Inc.)
{9030D464-4C02-4ABF-8ECC-5164760863C6} (HKLM) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
{A057A204-BACC-4D26-9990-79A187E2698E} (HKLM) -- C:\Program Files\AVG\AVG8\avgtoolbar.dll (AVG, Technologies CZ, s.r.o )
{AA58ED58-01DD-4d91-8333-CF10577473F7} (HKLM) -- c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (HKLM) -- C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll (Google Inc.)
========== (O3) Toolbars ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" (HKLM) -- c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
"{A057A204-BACC-4D26-9990-79A187E2698E}" (HKLM) -- C:\Program Files\AVG\AVG8\avgtoolbar.dll (AVG, Technologies CZ, s.r.o )
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser]
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" (HKLM) -- c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" (HKLM) -- c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{A057A204-BACC-4D26-9990-79A187E2698E}" (HKLM) -- C:\Program Files\AVG\AVG8\avgtoolbar.dll (AVG, Technologies CZ, s.r.o )
[HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" (HKLM) -- c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
[HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" (HKLM) -- c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser]
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" (HKLM) -- c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" (HKLM) -- c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{A057A204-BACC-4D26-9990-79A187E2698E}" (HKLM) -- C:\Program Files\AVG\AVG8\avgtoolbar.dll (AVG, Technologies CZ, s.r.o )
========== (O4) Run Keys ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe (AVG Technologies CZ, s.r.o.)
"C-Media Mixer"=Mixer.exe /startup (C-Media Electronic Inc. (www.cmedia.com.tw))
"kczrgvgeyxuagqwip"=C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\xzxffwzmof.dll" (Microsoft Corporation)
"LogitechVideoTray"=C:\Program Files\Logitech\Video\LogiTray.exe (Logitech Inc.)
"LVCOMSX"=C:\WINDOWS\System32\LVCOMSX.EXE (Logitech Inc.)
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh)
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" (Sun Microsystems, Inc.)
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LDM"=C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe (Logitech)
"Logitech Desktop Messenger"=C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Courtney\NewVersion\setup-8876480.exe (BackWeb)
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LDM"=C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe (Logitech)
"Logitech Desktop Messenger"=C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Courtney\NewVersion\setup-8876480.exe (BackWeb)
========== (O4) Startup Folders ========== File not found -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech Desktop Messenger Agent.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
========== (O6 & O7) Current Version Policies ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveTypeAutoRun"=145
"NoActiveDesktop"=0
"ClassicShell"=0
"ForceActiveDesktopOn"=0
[HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveTypeAutoRun"=145
[HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveTypeAutoRun"=145
[HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveTypeAutoRun"=145
[HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveTypeAutoRun"=145
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveTypeAutoRun"=145
"NoActiveDesktop"=0
"ClassicShell"=0
"ForceActiveDesktopOn"=0
========== (O8) IE Context Menu Extensions ========== [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\]
&Search: Reg Error: Value does not exist or could not be read. File not found
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\Software\Microsoft\Internet Explorer\MenuExt\]
&Search: Reg Error: Value does not exist or could not be read. File not found
========== (O9) IE Extensions ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501}: Menu: Sun Java Console -- %ProgramFiles%\Java\jre1.6.0_07\bin\npjpi160_07.dll [2008/06/10 04:27:02 | 00,132,496 | ---- | M] (Sun Microsystems, Inc.)
{85d1f590-48f4-11d9-9669-0800200c9a66}: Menu: Uninstall BitDefender Online Scanner v8 -- %SystemRoot%\bdoscandel.exe [2008/01/09 15:01:48 | 00,053,248 | ---- | M] ()
{e2e2dd38-d088-4134-82b7-f2ba38496583}: Menu: @xpsp3res.dll,-20001 -- %SystemRoot%\network diagnostic\xpnetdiag.exe [2008/04/13 13:53:32 | 00,558,080 | ---- | M] (Microsoft Corporation)
{FB5F1910-F110-11d2-BB9E-00C04F795683}: Button: Messenger -- %ProgramFiles%\Messenger\msmsgs.exe [2008/04/13 19:12:28 | 01,695,232 | ---- | M] (Microsoft Corporation)
{FB5F1910-F110-11d2-BB9E-00C04F795683}: Menu: Windows Messenger -- %ProgramFiles%\Messenger\msmsgs.exe [2008/04/13 19:12:28 | 01,695,232 | ---- | M] (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\]
CmdMapping\\{FB5F1910-F110-11d2-BB9E-00C04F795683} [HKLM] -> %ProgramFiles%\Messenger\msmsgs.exe [Messenger] -> [2008/04/13 19:12:28 | 01,695,232 | ---- | M] (Microsoft Corporation)
[HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Extensions\]
CmdMapping\\{FB5F1910-F110-11d2-BB9E-00C04F795683} [HKLM] -> %ProgramFiles%\Messenger\msmsgs.exe [Messenger] -> [2008/04/13 19:12:28 | 01,695,232 | ---- | M] (Microsoft Corporation)
[HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Extensions\]
CmdMapping\\{FB5F1910-F110-11d2-BB9E-00C04F795683} [HKLM] -> %ProgramFiles%\Messenger\msmsgs.exe [Messenger] -> [2008/04/13 19:12:28 | 01,695,232 | ---- | M] (Microsoft Corporation)
[HKEY_USERS\S-1-5-21-839522115-436374069-1343024091-1004\SOFTWARE\Microsoft\Internet Explorer\Extensions\]
CmdMapping\\{FB5F1910-F110-11d2-BB9E-00C04F795683} [HKLM] -> %ProgramFiles%\Messenger\msmsgs.exe [Messenger] -> [2008/04/13 19:12:28 | 01,695,232 | ---- | M] (Microsoft Corporation)
========== (O12) Internet Explorer Plugins ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\]
PluginsPage: "" =
http://activex.microsoft.com/controls/find...=%s&mime=%sPluginsPageFriendlyName: "" = Microsoft ActiveX Gallery
========== (O13) Default Prefixes ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix]
""=http://
========== (O15) Trusted Sites ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\]
sxload.net: * in Trusted sites
1 domain(s) and sub-domain(s) not assigned to a zone.
========== (O16) DPF ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\]
{0CCA191D-13A6-4E29-B746-314DEE697D83}:
http://upload.facebook.com/controls/Facebo...toUploader5.cab -- Facebook Photo Uploader 5
{166B1BCA-3F9C-11CF-8075-444553540000}:
http://download.macromedia.com/pub/shockwa...director/sw.cab -- Shockwave ActiveX Control
{17DF9D0D-036E-424B-98D7-A41E4CE783EF}: ms-its:mhtml:file://c:\\nores.mht!
http://adxcnet.net/code/chm/xpre.chm::/xpreload.ocx -- Reg Error: Key does not exist or could not be opened.
{2250C29C-C5E9-4F55-BE4E-01E45A40FCF1}:
http://musicmix.messenger.msn.com/Medialogic.CAB -- CMediaMix Object
{2D8ED06D-3C30-438B-96AE-4D110FDC1FB8}:
http://www.pandasecurity.com/activescan/cabs/as2stubie.cab -- ActiveScan 2.0 Installer Class
{33564D57-0000-0010-8000-00AA00389B71}:
http://download.microsoft.com/download/F/6...922/wmv9VCM.CAB -- Reg Error: Key does not exist or could not be opened.
{4F1E5B1A-2A80-42CA-8532-2D05CB959537}:
http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab -- MSN Photo Upload Tool
{5D6F45B3-9043-443D-A792-115447494D24}:
http://messenger.zone.msn.com/EN-US/a-UNO1/GAME_UNO1.cab -- UnoCtrl Class
{5D86DDB5-BDF9-441B-9E9E-D4730F4EE499}:
http://download.bitdefender.com/resources/scan8/oscan8.cab -- BDSCANONLINE Control
{8AD9C840-044E-11D1-B3E9-00805F499D93}:
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab -- Java Plug-in 1.6.0_07
{8E0D4DE5-3180-4024-A327-4DFAD1796A8D}:
http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab -- MessengerStatsClient Class
{B38870E4-7ECB-40DA-8C6A-595F0A5519FF}:
http://messenger.msn.com/download/MsnMesse...pDownloader.cab -- MsnMessengerSetupDownloadControl Class
{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}:
http://java.sun.com/update/1.5.0/jinstall-...indows-i586.cab -- Reg Error: Key does not exist or could not be opened.
{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}:
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab -- Java Plug-in 1.6.0_04
{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab -- Java Plug-in 1.6.0_07
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}:
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab -- Java Plug-in 1.6.0_07
{D27CDB6E-AE6D-11CF-96B8-444553540000}:
http://download.macromedia.com/pub/shockwa...ash/swflash.cab -- Shockwave Flash Object
Microsoft XML Parser for Java: file://C:\WINDOWS\Java\classes\xmldso.cab -- Reg Error: Key does not exist or could not be opened.
========== (O17) DNS Name Servers ========== {4639C70C-9E72-4DE0-8C16-E24D946668EF} (Servers: | Description: )
{57AE0352-ABB0-44F2-A11F-96F7E626A32F} (Servers: | Description: Linksys EtherFast 10/100 USB Network Adapter)
{661A8C46-FF4C-4707-8818-A0AF5C19087B} (Servers: | Description: )
{822FBDC7-7DAC-42F7-9848-36BC88322784} (Servers: | Description: )
{98601E2C-FC52-46E0-B15A-C436757949DB} (Servers: | Description: )
{BC745B31-78CF-4EAA-BDC8-6D47502C9061} (Servers: | Description: )
{FFF6D396-57ED-415A-BB63-5947D6230162} (Servers: | Description: VIA Rhine II Fast Ethernet Adapter)
========== (O20) AppInit_DLLs ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_Dlls"=avgrsstx.dll
>[2008/11/14 17:35:30 | 00,010,520 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\system32\avgrsstx.dll
========== Shell Execute Hooks ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEA4DE5E-37ED-4A91-A883-6D8953A84614}" (HKLM) -- Reg Error: Key does not exist or could not be opened. File not found
========== LSA *Authentication Packages* ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"Authentication Packages"=msv1_0,C:\WINDOWS\System32\qoMggfcc,
>File not found --
========== Safeboot Options ========== "AlternateShell"=cmd.exe
========== CDRom AutoRun Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom]
"AutoRun" = 1
========== Autorun Files on Drives ========== AUTOEXEC.BAT []
[2006/03/25 22:48:23 | 00,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT -- [ NTFS ]
autoruns.chm [ITSF | ]
[2008/11/10 22:27:36 | 00,048,986 | ---- | M] () -- C:\autoruns.chm -- [ NTFS ]
autoruns.exe [MZ | ]
[2008/11/10 22:27:36 | 00,644,976 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\autoruns.exe -- [ NTFS ]
autorunsc.exe [MZ | ]
[2008/11/10 22:27:36 | 00,538,480 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\autorunsc.exe -- [ NTFS ]
========== Files/Folders - Created Within 30 Days ========== [3 C:\WINDOWS\System32\*.tmp files]
[14 C:\WINDOWS\*.tmp files]
[2008/11/28 21:10:00 | 00,422,400 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\OTViewIt.exe
[2008/11/28 20:54:15 | 00,000,000 | ---D | C] -- C:\_OTMoveIt
[2008/11/28 20:52:35 | 00,349,696 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\OTMoveIt3.exe
[2008/11/27 17:51:56 | 00,000,345 | ---- | C] () -- C:\WINDOWS\gmer.ini
[2008/11/27 17:51:54 | 00,884,736 | ---- | C] () -- C:\WINDOWS\gmer.dll
[2008/11/27 17:51:54 | 00,085,969 | ---- | C] (GMER) -- C:\WINDOWS\System32\drivers\gmer.sys
[2008/11/27 17:51:54 | 00,000,080 | ---- | C] () -- C:\WINDOWS\gmer_uninstall.cmd
[2008/11/27 17:51:53 | 00,811,008 | ---- | C] () -- C:\WINDOWS\gmer.exe
[2008/11/27 17:51:13 | 00,000,000 | ---D | C] -- C:\gmer
[2008/11/27 17:48:58 | 00,356,792 | ---- | C] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\dds.scr
[2008/11/27 17:43:02 | 00,747,873 | ---- | C] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\gmer.zip
[2008/11/19 00:49:55 | 00,001,734 | ---- | C] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\HijackThis.lnk
[2008/11/19 00:49:51 | 00,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2008/11/18 20:18:42 | 00,812,344 | ---- | C] (Trend Micro Inc.) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\HJTInstall.exe
[2008/11/18 20:10:21 | 26,796,4416 | -HS- | C] () -- C:\hiberfil.sys
[2008/11/18 16:49:27 | 00,000,000 | ---D | C] -- C:\WINDOWS\BDOSCAN8
[2008/11/18 15:48:08 | 00,102,664 | ---- | C] (Trend Micro Inc.) -- C:\WINDOWS\System32\drivers\tmcomm.sys
[2008/11/18 13:51:51 | 00,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2008/11/18 12:20:11 | 00,028,544 | ---- | C] (Panda Security, S.L.) -- C:\WINDOWS\System32\drivers\pavboot.sys
[2008/11/14 18:57:54 | 00,000,000 | -H-D | C] -- C:\$AVG8.VAULT$
[2008/11/14 17:35:31 | 00,001,507 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\AVG Free 8.0.lnk
[2008/11/14 17:35:30 | 00,010,520 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\avgrsstx.dll
[2008/11/14 17:35:29 | 00,076,040 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgtdix.sys
[2008/11/14 17:35:19 | 00,097,928 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgldx86.sys
[2008/11/14 17:35:16 | 00,026,824 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgmfx86.sys
[2008/11/14 17:35:08 | 27,321,964 | ---- | C] () -- C:\WINDOWS\System32\drivers\Avg\incavi.avm
[2008/11/14 17:35:08 | 06,061,540 | ---- | C] () -- C:\WINDOWS\System32\drivers\Avg\avi7.avg
[2008/11/14 17:35:08 | 00,211,986 | ---- | C] () -- C:\WINDOWS\System32\drivers\Avg\miniavi.avg
[2008/11/14 17:35:08 | 00,106,501 | ---- | C] () -- C:\WINDOWS\System32\drivers\Avg\microavi.avg
[2008/11/14 17:35:08 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\Avg
[2008/11/14 17:35:07 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Application Data\AVGTOOLBAR
[2008/11/14 17:34:49 | 00,000,000 | ---D | C] -- C:\Program Files\AVG
[2008/11/14 17:34:49 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\avg8
[2008/11/14 06:41:22 | 00,455,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mrxsmb.sys
[2008/11/14 06:40:00 | 01,106,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml3.dll
[2008/11/13 20:48:39 | 00,000,793 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Ad-Watch.lnk
[2008/11/13 20:48:39 | 00,000,793 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Ad-Aware.lnk
[2008/11/13 20:48:31 | 00,000,000 | ---D | C] -- C:\Program Files\Lavasoft
[2008/11/13 20:48:29 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Lavasoft
[2008/11/13 20:47:41 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2008/11/13 06:51:37 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\Bleeping Computer 11-12-08
[2008/11/13 06:51:17 | 00,000,017 | ---- | C] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\stinger.opt
[2008/11/12 22:44:08 | 02,482,695 | ---- | C] (McAfee Inc.) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\stinger.exe
[2008/11/10 22:26:54 | 00,575,466 | ---- | C] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\Autoruns.zip
[2008/11/10 03:06:57 | 00,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2008/11/10 00:49:47 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\scripting
[2008/11/10 00:49:45 | 00,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2008/11/10 00:49:43 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\en
[2008/11/10 00:46:17 | 00,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2008/11/10 00:37:30 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2008/11/10 00:37:24 | 00,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2008/11/10 00:15:22 | 00,000,851 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Get OpenOffice.org.lnk
[2008/11/10 00:15:21 | 00,000,000 | ---D | C] -- C:\Program Files\Sun
[2008/11/09 23:47:43 | 00,000,000 | ---D | C] -- C:\WINDOWS\ie7updates
[2008/11/09 23:47:13 | 00,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2008/11/09 23:47:12 | 00,459,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2008/11/09 23:47:11 | 00,267,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2008/11/09 23:47:11 | 00,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieudinit.exe
[2008/11/09 23:47:10 | 06,066,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
[2008/11/09 23:47:10 | 02,455,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieapfltr.dat
[2008/11/09 23:47:10 | 00,991,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll.mui
[2008/11/09 23:47:10 | 00,383,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieapfltr.dll
[2008/11/09 23:47:09 | 00,063,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icardie.dll
[2008/11/09 23:46:08 | 00,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2008/11/09 23:46:06 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US
[2008/11/09 23:44:05 | 00,000,000 | -H-D | C] -- C:\WINDOWS\ie7
[2008/11/09 23:43:32 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
[2008/11/09 23:43:09 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
[2008/11/09 23:42:24 | 00,121,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xmllite.dll
[2008/11/09 23:39:16 | 00,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2008/11/09 23:38:58 | 00,001,393 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2008/11/09 23:21:38 | 00,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2008/11/09 21:52:09 | 00,000,000 | ---D | C] -- C:\VundoFix Backups
[2008/11/09 21:44:50 | 00,000,533 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2008/11/09 21:42:20 | 17,318,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MRT.exe
[2008/11/09 21:13:36 | 00,049,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clspack.exe
[2008/11/09 21:02:28 | 00,001,997 | ---- | C] () -- C:\WINDOWS\search.yahoo.com-error.html
[2008/11/09 21:02:27 | 00,006,182 | ---- | C] () -- C:\WINDOWS\live.com-error.html
[2008/11/09 21:02:26 | 00,016,451 | ---- | C] () -- C:\WINDOWS\gmail.com-error.html
[2008/11/09 21:02:25 | 00,005,596 | ---- | C] () -- C:\WINDOWS\aol.com-error.html
[2008/11/09 20:56:49 | 50,689,960 | ---- | C] (AVG Technologies) -- C:\avg_free_stf_en_8_173a1373.exe
[2008/11/09 17:36:22 | 00,000,000 | ---D | C] -- C:\Program Files\Panda Security
[2008/11/09 17:28:02 | 00,613,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2008/11/09 17:28:02 | 00,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2008/11/09 17:28:02 | 00,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2008/11/09 17:28:02 | 00,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2008/11/09 17:28:02 | 00,000,855 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2008/11/09 17:28:02 | 00,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2008/11/09 17:28:01 | 00,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2008/11/09 17:28:01 | 00,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2008/11/09 17:28:01 | 00,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2008/11/09 17:28:01 | 00,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2008/11/09 17:28:01 | 00,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2008/11/09 17:28:01 | 00,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2008/11/09 17:28:01 | 00,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2008/11/09 17:28:00 | 00,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2008/11/09 17:28:00 | 00,017,272 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2008/11/09 17:28:00 | 00,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2008/11/09 17:28:00 | 00,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2008/11/09 17:28:00 | 00,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2008/11/09 17:28:00 | 00,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2008/11/09 17:28:00 | 00,006,769 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2008/11/09 17:28:00 | 00,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2008/11/09 17:28:00 | 00,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2008/11/09 17:28:00 | 00,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2008/11/09 17:28:00 | 00,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2008/11/09 17:28:00 | 00,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2008/11/09 17:27:58 | 00,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2008/11/09 17:27:58 | 00,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2008/11/09 17:27:58 | 00,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2008/11/09 17:27:57 | 00,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2008/11/09 17:27:57 | 00,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2008/11/09 17:27:57 | 00,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2008/11/09 17:27:56 | 00,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2008/11/09 17:27:56 | 00,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2008/11/09 17:27:56 | 00,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2008/11/09 17:27:54 | 00,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2008/11/09 17:27:54 | 00,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2008/11/09 17:27:54 | 00,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2008/11/09 17:27:54 | 00,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2008/11/09 17:27:53 | 00,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2008/11/09 17:27:52 | 00,000,908 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2008/11/09 17:27:51 | 00,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2008/11/09 17:27:50 | 00,077,307 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2008/11/09 17:27:50 | 00,001,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2008/11/09 17:27:50 | 00,001,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2008/11/09 17:27:50 | 00,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2008/11/09 17:27:50 | 00,001,451 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2008/11/09 17:27:50 | 00,001,448 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2008/11/09 17:27:50 | 00,001,250 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2008/11/09 17:27:50 | 00,001,049 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2008/11/09 17:27:50 | 00,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2008/11/09 17:27:50 | 00,001,036 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2008/11/09 17:27:50 | 00,000,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2008/11/09 17:27:50 | 00,000,787 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2008/11/09 17:27:50 | 00,000,784 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2008/11/09 17:27:50 | 00,000,783 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2008/11/09 17:27:50 | 00,000,775 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2008/11/09 17:27:50 | 00,000,733 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2008/11/09 17:27:49 | 00,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2008/11/09 17:27:49 | 00,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2008/11/09 17:27:49 | 00,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2008/11/09 17:27:49 | 00,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2008/11/09 17:27:44 | 00,018,286 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2008/11/09 17:27:44 | 00,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2008/11/09 17:27:44 | 00,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2008/11/09 17:27:41 | 00,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2008/11/09 17:27:33 | 00,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2008/11/09 17:27:24 | 00,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2008/11/09 17:27:24 | 00,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2008/11/09 17:27:24 | 00,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2008/11/09 17:27:24 | 00,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2008/11/09 17:27:24 | 00,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2008/11/09 17:27:23 | 00,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2008/11/09 17:27:23 | 00,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2008/11/09 17:27:23 | 00,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2008/11/09 17:27:23 | 00,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2008/11/09 17:27:23 | 00,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2008/11/09 17:27:23 | 00,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2008/11/09 17:25:04 | 00,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2008/11/09 16:19:31 | 00,038,496 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2008/11/03 22:02:18 | 00,000,696 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2008/11/03 22:02:17 | 00,015,504 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2008/11/03 22:02:14 | 00,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2008/11/03 21:57:10 | 00,138,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\afd.sys
[2008/11/03 21:57:08 | 00,333,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srv.sys
[2008/11/03 21:56:46 | 01,846,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\win32k.sys
[2008/11/03 21:56:43 | 02,145,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlmp.exe
[2008/11/03 21:56:42 | 02,189,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntoskrnl.exe
[2008/11/03 21:56:40 | 02,023,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrpamp.exe
[2008/11/03 21:56:39 | 02,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlpa.exe
[2008/11/03 21:56:35 | 00,203,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rmcast.sys
[2008/11/03 21:56:18 | 00,691,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcomm.dll
[2008/11/03 21:55:20 | 00,337,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\netapi32.dll
[2008/11/03 21:41:44 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Application Data\Malwarebytes
[2008/11/03 21:41:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2008/11/03 21:41:04 | 00,096,978 | ---- | C] (Business Information Solutions) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\VirtumundoBeGone.exe
[2008/11/03 21:40:37 | 01,773,856 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\mbam-setup.exe
[2008/11/03 21:40:31 | 02,733,520 | ---- | C] (Piriform Ltd) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\ccsetup205.exe
[2008/11/03 20:46:27 | 00,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\userinit.exe
========== Files - Modified Within 30 Days ========== [3 C:\WINDOWS\System32\*.tmp files]
[14 C:\WINDOWS\*.tmp files]
[2008/11/28 20:56:24 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2008/11/28 20:55:35 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2008/11/28 20:55:30 | 26,796,4416 | -HS- | M] () -- C:\hiberfil.sys
[2008/11/28 20:45:31 | 00,001,452 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2008/11/28 06:37:26 | 00,422,400 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\OTViewIt.exe
[2008/11/28 06:36:38 | 00,349,696 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\OTMoveIt3.exe
[2008/11/27 22:49:16 | 04,824,466 | -H-- | M] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Local Settings\Application Data\IconCache.db
[2008/11/27 20:30:47 | 00,000,345 | ---- | M] () -- C:\WINDOWS\gmer.ini
[2008/11/27 17:51:54 | 00,884,736 | ---- | M] () -- C:\WINDOWS\gmer.dll
[2008/11/27 17:51:54 | 00,085,969 | ---- | M] (GMER) -- C:\WINDOWS\System32\drivers\gmer.sys
[2008/11/27 17:51:54 | 00,000,080 | ---- | M] () -- C:\WINDOWS\gmer_uninstall.cmd
[2008/11/27 17:48:08 | 00,356,792 | ---- | M] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\dds.scr
[2008/11/27 17:32:16 | 00,747,873 | ---- | M] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\gmer.zip
[2008/11/19 00:49:55 | 00,001,734 | ---- | M] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\HijackThis.lnk
[2008/11/18 20:20:07 | 00,000,533 | ---- | M] () -- C:\WINDOWS\System32\MRT.INI
[2008/11/18 20:15:33 | 00,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2008/11/18 16:44:35 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\svchost.exe
[2008/11/17 22:54:53 | 00,000,146 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\pfdnnt.act
[2008/11/17 19:08:27 | 26,799,3088 | ---- | M] () -- C:\WINDOWS\MEMORY.DMP
[2008/11/14 17:35:31 | 00,001,507 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AVG Free 8.0.lnk
[2008/11/14 17:35:30 | 00,010,520 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\avgrsstx.dll
[2008/11/14 17:35:29 | 00,076,040 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgtdix.sys
[2008/11/14 17:35:19 | 00,097,928 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgldx86.sys
[2008/11/14 17:35:16 | 27,321,964 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\incavi.avm
[2008/11/14 17:35:16 | 00,026,824 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgmfx86.sys
[2008/11/14 17:35:08 | 06,061,540 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\avi7.avg
[2008/11/14 17:35:08 | 00,211,986 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\miniavi.avg
[2008/11/14 17:35:08 | 00,106,501 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\microavi.avg
[2008/11/14 06:39:39 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\svchost.exe
[2008/11/13 20:48:39 | 00,000,793 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Ad-Watch.lnk
[2008/11/13 20:48:39 | 00,000,793 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Ad-Aware.lnk
[2008/11/13 06:51:17 | 00,000,017 | ---- | M] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\stinger.opt
[2008/11/12 22:29:32 | 00,812,344 | ---- | M] (Trend Micro Inc.) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\HJTInstall.exe
[2008/11/12 22:27:20 | 02,482,695 | ---- | M] (McAfee Inc.) -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\stinger.exe
[2008/11/10 22:27:36 | 00,644,976 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\autoruns.exe
[2008/11/10 22:27:36 | 00,538,480 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\autorunsc.exe
[2008/11/10 22:27:36 | 00,048,986 | ---- | M] () -- C:\autoruns.chm
[2008/11/10 22:26:56 | 00,575,466 | ---- | M] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop\Autoruns.zip
[2008/11/10 06:33:22 | 00,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2008/11/10 03:08:58 | 00,357,106 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2008/11/10 03:08:58 | 00,312,572 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2008/11/10 03:08:58 | 00,040,516 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2008/11/10 03:06:29 | 00,096,664 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2008/11/10 00:43:26 | 00,250,048 | RHS- | M] () -- C:\ntldr
[2008/11/10 00:15:22 | 00,000,851 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Get OpenOffice.org.lnk
[2008/11/09 23:55:26 | 00,000,079 | -HS- | M] () -- C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\My Documents\desktop.ini
[2008/11/09 21:02:28 | 00,001,997 | ---- | M] () -- C:\WINDOWS\search.yahoo.com-error.html
[2008/11/09 21:02:27 | 00,006,182 | ---- | M] () -- C:\WINDOWS\live.com-error.html
[2008/11/09 21:02:26 | 00,016,451 | ---- | M] () -- C:\WINDOWS\gmail.com-error.html
[2008/11/09 21:02:25 | 00,005,596 | ---- | M] () -- C:\WINDOWS\aol.com-error.html
[2008/11/09 20:56:57 | 50,689,960 | ---- | M] (AVG Technologies) -- C:\avg_free_stf_en_8_173a1373.exe
[2008/11/03 22:02:18 | 00,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2008/11/03 21:51:19 | 00,077,906 | ---- | M] () -- C:\WINDOWS\System32\ypdaoloivptcbsucm.exe
[2008/11/03 19:10:25 | 17,318,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MRT.exe
[2008/11/02 22:26:40 | 00,086,016 | ---- | M] (MindVision) -- C:\WINDOWS\unvise32qt.exe
[2008/11/02 22:26:11 | 00,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\xpsp1hfm.exe
[2008/11/02 22:25:53 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfmgr.exe
[2008/11/02 22:25:25 | 00,217,088 | ---- | M] (Small Rockets) -- C:\WINDOWS\System32\srkey.exe
[2008/11/02 22:25:09 | 00,374,784 | ---- | M] () -- C:\WINDOWS\System32\RunAP.exe
[2008/11/02 22:25:05 | 00,382,464 | ---- | M] () -- C:\WINDOWS\System32\Restart.exe
[2008/11/02 22:24:33 | 00,155,648 | ---- | M] (Ahead Software Gmbh) -- C:\WINDOWS\System32\NeroCheck.exe
[2008/11/02 22:23:56 | 00,387,584 | ---- | M] () -- C:\WINDOWS\System32\LostRun.exe
[2008/11/02 22:23:38 | 00,057,710 | R--- | M] () -- C:\WINDOWS\System32\InstMed.exe
[2008/11/02 22:11:34 | 00,046,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\setdebug.exe
[2008/11/02 22:08:20 | 00,135,168 | R--- | M] () -- C:\WINDOWS\cmuninst.exe
[2008/11/02 22:08:19 | 00,118,784 | ---- | M] () -- C:\WINDOWS\bwUnin-7.2.0.157-8876480SL.exe
[2008/11/02 22:08:18 | 00,086,876 | R--- | M] () -- C:\WINDOWS\bwUnin-6.1.4.68-8876480L.exe
< End of report >
Extra
OTViewIt Extras logfile created on: 11/28/2008 9:10:42 PM - Run
OTViewIt by OldTimer - Version 1.0.20.0 Folder = C:\Documents and Settings\Courtney.HOME-R1DHX7MSQF\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
255.48 Mb Total Physical Memory | 73.58 Mb Available Physical Memory | 28.80% Memory free
616.91 Mb Paging File | 389.07 Mb Available in Paging File | 63.07% Paging File free
Paging file location(s): c:\pagefile.sys 384 768;
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 18.99 Gb Total Space | 10.74 Gb Free Space | 56.58% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 3.73 Gb Total Space | 3.14 Gb Free Space | 84.26% Space Free | Partition Type: FAT32
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: HOME-R1DHX7MSQF
Current User Name: Courtney
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Whitelist: On
File Age = 30 Days
========== File Associations ==========[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
========== Security Center Settings ==========[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled"=1
"AntiVirusDisableNotify"=0
"FirewallDisableNotify"=0
"UpdatesDisableNotify"=0
"AntiVirusOverride"=0
"FirewallOverride"=0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications]
========== Authorized Applications List ==========[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[2008/04/13 19:12:34 | 00,141,312 | ---- | M] (Microsoft Corporation) -- %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019
[2008/04/13 13:53:32 | 00,558,080 | ---- | M] (Microsoft Corporation) -- %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
File not found -- C:\Program Files\sys-addon\uninstall.exe:*:Enabled:BHO
[2008/04/13 19:12:39 | 00,507,904 | ---- | M] (Microsoft Corporation) -- \??\C:\WINDOWS\system32\winlogon.exe:*:enabled:@shell32.dll,-1
[2008/04/13 19:12:34 | 00,141,312 | ---- | M] (Microsoft Corporation) -- %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019
[2008/04/13 13:53:32 | 00,558,080 | ---- | M] (Microsoft Corporation) -- %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000
[2008/11/14 17:34:51 | 00,875,288 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe
[2008/11/14 17:34:51 | 00,641,304 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe
[2008/08/23 00:56:15 | 00,635,848 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer
========== HKEY_USERS Protocol Defaults ==========[HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults] - Default Protocols
shell -- shell protocol not assigned
========== HKEY_USERS Protocol Defaults ==========[HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults] - Default Protocols
shell -- shell protocol not assigned
========== HKEY_USERS Protocol Defaults ==========[HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults] - Default Protocols
shell -- shell protocol not assigned
========== HKEY_USERS Protocol Defaults ==========[HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults] - Default Protocols
shell -- shell protocol not assigned
========== (O18) Protocol Handlers ==========[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw+0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw+0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw-0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw00:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw00s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw-0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw10:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw10s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw20:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw20s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw30:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw30s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw40:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw40s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw50:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw50s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw60:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw60s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw70:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw70s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw80:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw80s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw90:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bw90s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwa0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwa0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwb0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwb0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwc0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwc0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwd0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwd0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwe0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwe0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwf0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwf0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll (bwfile-8876480:{9462A756-7B47-47BC-8C80-C34B9B80B32B} (HKLM) [BackWeb GA Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwg0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwg0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwh0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwh0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwi0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwi0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwj0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwj0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwk0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwk0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwl0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwl0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwm0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwm0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwn0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwn0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwo0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwo0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwp0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwp0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwq0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwq0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwr0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwr0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bws0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bws0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwt0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwt0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwu0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwu0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwv0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwv0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bww0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bww0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwx0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwx0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwy0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwy0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwz0:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (bwz0s:{4e510a45-31aa-45cc-9944-0c9407b7c05a} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
ipp: [HKLM - No CLSID value]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\] - Protocol Handlers
[2008/04/13 19:11:58 | 00,532,480 | ---- | M] (Microsoft Corporation) C:\Program Files\Common Files\System\Ole DB\msdaipp.dll ipp\0x00000001:{E1D2BF42-A96B-11d1-9C6B-0000F875AC61} (HKLM) [HKLM - Microsoft OLE DB Moniker Binder for Internet Publishing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2008/11/14 17:35:06 | 00,079,128 | ---- | M] (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG8\avgpp.dll (linkscanner:{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} (HKLM) [XPLPPFilter Class])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2007/01/19 11:53:24 | 00,063,344 | ---- | M] (Microsoft Corporation) C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (livecall:{828030A1-22C1-4009-854F-8E305202313F} (HKLM) [Reg Error: Value does not exist or could not be read.])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
msdaipp: [HKLM - No CLSID value]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\] - Protocol Handlers
[2008/04/13 19:11:58 | 00,532,480 | ---- | M] (Microsoft Corporation) C:\Program Files\Common Files\System\Ole DB\msdaipp.dll msdaipp\0x00000001:{E1D2BF42-A96B-11d1-9C6B-0000F875AC61} (HKLM) [HKLM - Microsoft OLE DB Moniker Binder for Internet Publishing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\] - Protocol Handlers
[2008/04/13 19:11:58 | 00,532,480 | ---- | M] (Microsoft Corporation) C:\Program Files\Common Files\System\Ole DB\msdaipp.dll msdaipp\oledb:{E1D2BF40-A96B-11d1-9C6B-0000F875AC61} (HKLM) [HKLM - MSDAIPP.BINDER]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2007/01/19 11:53:24 | 00,063,344 | ---- | M] (Microsoft Corporation) C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (msnim:{828030A1-22C1-4009-854F-8E305202313F} (HKLM) [Reg Error: Value does not exist or could not be read.])
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
[2006/07/11 19:15:22 | 00,040,999 | ---- | M] (Logitech) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (offline-8876480:{4E510A45-31AA-45CC-9944-0C9407B7C05A} (HKLM) [BackWeb Proactive Portal Pluggable Protocol])
========== HKEY_LOCAL_MACHINE Uninstall List ==========[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}"=OpenOffice.org Installer 1.0
"{1D14373E-7970-4F2F-A467-ACA4F0EA21E3}"=Google Earth
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}"=Google Toolbar for Internet Explorer
"{3248F0A8-6813-11D6-A77B-00B0D0160040}"=Java 6 Update 4
"{3248F0A8-6813-11D6-A77B-00B0D0160070}"=Java 6 Update 7
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}"=WebFldrs XP
"{49672EC2-171B-47B4-8CE7-50D7806360D7}"=Windows Live Sign-in Assistant
"{571700F0-DB9D-4B3A-B03D-35A14BB5939F}"=Windows Live Messenger
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}"=PowerDVD
"{6900E3D5-7695-463E-98D7-2C940ED8214F}"=Sinbad - Legend Of The Seven Seas
"{7299052b-02a4-4627-81f2-1818da5d550d}"=Microsoft Visual C++ 2005 Redistributable
"{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}"=Logitech Desktop Messenger
"{AC76BA86-7AD7-1033-7B44-A70700000002}"=Adobe Reader 7.0.7
"{ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}"=REALTEK GbE & FE Ethernet PCI NIC Driver
"{C43048A9-742C-4DAD-90D2-E3B53C9DB825}"=Logitech QuickCam Software
"{DBEA1034-5882-4A88-8033-81C4EF0CFA29}"=Google Toolbar for Internet Explorer
"{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}"=Ad-Aware
"ActiveScan 2.0"=Panda ActiveScan 2.0
"Adobe Flash Player ActiveX"=Adobe Flash Player 10 ActiveX
"Adobe Shockwave Player"=Adobe Shockwave Player
"AVG8Uninstall"=AVG Free 8.0
"CCleaner"=CCleaner (remove only)
"EfntSSDSL"=Efficient Networks SpeedStream DSL
"Freddi Fish's One-Stop Fun Shop"=Freddi Fish's One-Stop Fun Shop
"Google Updater"=Google Updater
"HijackThis"=HijackThis 2.0.2
"HP DeskJet 710C Series"=HP DeskJet 710C Series (Remove only)
"IDNMitigationAPIs"=Microsoft Internationalized Domain Names Mitigation APIs
"ie7"=Windows Internet Explorer 7
"Leap Ahead Math Ages 6-9"=Leap Ahead Math Ages 6-9
"LimeWire"=LimeWire 4.16.6
"Logitech Print Service"=Logitech Print Service
"Malwarebytes' Anti-Malware_is1"=Malwarebytes' Anti-Malware
"NASCAR Racing 1999 Edition"=NASCAR Racing 1999 Edition
"Nero - Burning Rom!UninstallKey"=Nero OEM
"NeroVision!UninstallKey"=NeroVision Express 2
"NLSDownlevelMapping"=Microsoft National Language Support Downlevel APIs
"NMPUninstallKey"=Nero Media Player
"PCI Audio Driver"=PCI Audio Driver
"QcDrv"=Logitech® Camera Driver
"QuickTime"=QuickTime
"Scooby-Doo, Jinx At The Sphinx"=Scooby-Doo, Jinx At The Sphinx
"Scooby-Doo, Showdown in Ghost Town"=Scooby-Doo, Showdown in Ghost Town
"ShockwaveFlash"=Adobe Flash Player 9 ActiveX
"Sierra Utilities"=Sierra Utilities
"Startup"=BHO
"TarzanPS"=Disney's Print Studio Tarzan
"VN_VUIns_Rhine_VIA"=VIA Rhine-Family Fast Ethernet Adapter
"Weather Disaster"=Operation Weather Disaster
"Windows Media Format Runtime"=Windows Media Format Runtime
"Windows XP Service Pack"=Windows XP Service Pack 3
"ypdaoloivptcbsucm"=RON Tool Targetedbanner
========== Last 10 Event Log Errors ==========[ Application Events ]
Error - 11/3/2008 9:50:52 PM | Computer Name = HOME-R1DHX7MSQF | Source = LoadPerf | ID = 3011
Description = Unloading the performance counter strings for service WmiApRpl (WmiApRpl)
failed. The Error code is the first DWORD in Data section.
Error - 11/3/2008 9:50:56 PM | Computer Name = HOME-R1DHX7MSQF | Source = LoadPerf | ID = 3001
Description = The performance counter name string value in the registry is incorrectly
formatted.
The bogus string is 3014, the bogus index value is the first DWORD in Data section
while the last valid index values are the second and third DWORD in Data section.
Error - 11/3/2008 9:55:10 PM | Computer Name = HOME-R1DHX7MSQF | Source = AVG7 | ID = 100
Description =
Error - 11/3/2008 9:55:10 PM | Computer Name = HOME-R1DHX7MSQF | Source = AVG7 | ID = 100
Description =
Error - 11/9/2008 2:18:15 PM | Computer Name = HOME-R1DHX7MSQF | Source = AVG7 | ID = 100
Description =
Error - 11/9/2008 2:18:15 PM | Computer Name = HOME-R1DHX7MSQF | Source = AVG7 | ID = 100
Description =
Error - 11/9/2008 2:30:49 PM | Computer Name = HOME-R1DHX7MSQF | Source = AVG7 | ID = 100
Description =
Error - 11/9/2008 3:30:49 PM | Computer Name = HOME-R1DHX7MSQF | Source = AVG7 | ID = 100
Description =
Error - 11/9/2008 4:30:49 PM | Computer Name = HOME-R1DHX7MSQF | Source = AVG7 | ID = 100
Description =
Error - 11/10/2008 11:33:59 PM | Computer Name = HOME-R1DHX7MSQF | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: The server name or address could not be resolved
[ System Events ]
Error - 11/27/2008 6:48:35 PM | Computer Name = HOME-R1DHX7MSQF | Source = DCOM | ID = 10000
Description = Unable to start a DCOM Server: {4F9B9553-DCE9-4899-BB45-4D62B0CDF2E3}.
The
error: "%2" Happened while starting this command: "C:\Program Files\Logitech\Video\AlbumDB2.exe"
-Embedding
Error - 11/27/2008 9:28:32 PM | Computer Name = HOME-R1DHX7MSQF | Source = DCOM | ID = 10000
Description = Unable to start a DCOM Server: {0B365333-F00A-4598-924E-04C5AD497AD7}.
The
error: "%2" Happened while starting this command: "C:\Program Files\Logitech\Video\FxSvr2.exe"
-Embedding
Error - 11/27/2008 9:30:35 PM | Computer Name = HOME-R1DHX7MSQF | Source = DCOM | ID = 10000
Description = Unable to start a DCOM Server: {4F9B9553-DCE9-4899-BB45-4D62B0CDF2E3}.
The
error: "%2" Happened while starting this command: "C:\Program Files\Logitech\Video\AlbumDB2.exe"
-Embedding
Error - 11/27/2008 9:51:26 PM | Computer Name = HOME-R1DHX7MSQF | Source = DCOM | ID = 10000
Description = Unable to start a DCOM Server: {4F9B9553-DCE9-4899-BB45-4D62B0CDF2E3}.
The
error: "%2" Happened while starting this command: "C:\Program Files\Logitech\Video\AlbumDB2.exe"
-Embedding
Error - 11/27/2008 9:51:40 PM | Computer Name = HOME-R1DHX7MSQF | Source = DCOM | ID = 10000
Description = Unable to start a DCOM Server: {4F9B9553-DCE9-4899-BB45-4D62B0CDF2E3}.
The
error: "%2" Happened while starting this command: "C:\Program Files\Logitech\Video\AlbumDB2.exe"
-Embedding
Error - 11/28/2008 9:47:48 PM | Computer Name = HOME-R1DHX7MSQF | Source = DCOM | ID = 10000
Description = Unable to start a DCOM Server: {0B365333-F00A-4598-924E-04C5AD497AD7}.
The
error: "%2" Happened while starting this command: "C:\Program Files\Logitech\Video\FxSvr2.exe"
-Embedding
Error - 11/28/2008 9:52:23 PM | Computer Name = HOME-R1DHX7MSQF | Source = DCOM | ID = 10000
Description = Unable to start a DCOM Server: {4F9B9553-DCE9-4899-BB45-4D62B0CDF2E3}.
The
error: "%2" Happened while starting this command: "C:\Program Files\Logitech\Video\AlbumDB2.exe"
-Embedding
Error - 11/28/2008 9:57:53 PM | Computer Name = HOME-R1DHX7MSQF | Source = DCOM | ID = 10000
Description = Unable to start a DCOM Server: {0B365333-F00A-4598-924E-04C5AD497AD7}.
The
error: "%2" Happened while starting this command: "C:\Program Files\Logitech\Video\FxSvr2.exe"
-Embedding
Error - 11/28/2008 10:09:16 PM | Computer Name = HOME-R1DHX7MSQF | Source = DCOM | ID = 10000
Description = Unable to start a DCOM Server: {4F9B9553-DCE9-4899-BB45-4D62B0CDF2E3}.
The
error: "%2" Happened while starting this command: "C:\Program Files\Logitech\Video\AlbumDB2.exe"
-Embedding
Error - 11/28/2008 10:09:42 PM | Computer Name = HOME-R1DHX7MSQF | Source = DCOM | ID = 10000
Description = Unable to start a DCOM Server: {4F9B9553-DCE9-4899-BB45-4D62B0CDF2E3}.
The
error: "%2" Happened while starting this command: "C:\Program Files\Logitech\Video\AlbumDB2.exe"
-Embedding
< End of report >