There was no active anti-virus on it at that time and the user was unable to access the User Access icon in the Control Panel.
AVG 8.x was installed and removed all of the virii that it could find; Spybot S&D found and removed several spy/malware packages as well.
Malwarebytes is finding some further infections however the PC is now displaying a BSOD with the notorious IRQ_not_Less_or_equal message. Also on boot, after loading the user preferances, desktop, etc., it displays the "Windows has recovers from a serious condition" and wants to send the report to MS.
Any and all help would be greatly appreciated.
DDS (Ver_09-06-26.01) - NTFSx86
Run by Jolynn at 9:47:37.40 on Mon 07/20/2009
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_02
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.503.159 [GMT -7:00]
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated)
{17DDD097-36FF-435F-9E1B-52D74245D6BF}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\System32\HPZipm12.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\MICROS~2\rapimgr.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Jolynn\Desktop\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.myspace.com/
uDefault_Search_URL = hxxp://search.msn.com
BHO: {02478D38-C3F9-4EFB-9B51-7695ECA05670} - No File
BHO: {141ffbbc-4aea-4ba5-8d26-668b4b33ae52} - No File
BHO: {3251A4BC-14E5-43FA-96DE-DE3749C9E643} - No File
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program
files\avg\avg8\avgssie.dll
BHO: {5293ed22-dd3c-4edc-a82f-5d9926ee9c8a} - No File
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} -
c:\progra~1\spybot~1\SDHelper.dll
BHO: {5FAB2024-3793-4C62-8E4A-BB270F9AD35A} - No File
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program
files\java\jre1.6.0_02\bin\ssv.dll
BHO: {787e4828-8dbe-45f6-8c87-8dbd7ebb7c4e} - No File
BHO: {8DA5457F-A8AA-4CCF-A842-70E6FD274094} - No File
TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
TB: Search Enhancer Toolbar: {bfb5f154-9212-46f3-b547-ac6106030a54} - c:\program files\search
enhancer toolbar\enhancer.dll
EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
EB: {32683183-48A0-441B-A342-7C2A440A9478} - No File
uRun: [MoneyAgent] "c:\program files\microsoft money\system\mnyexpr.exe"
uRun: [msnmsgr] "c:\program files\msn messenger\msnmsgr.exe" /background
uRun: [RealPlayer] "c:\program files\real\realplayer\realplay.exe" /RunUPGToolCommandReBoot
uRun: [Aim6] "c:\program files\aim6\aim6.exe" /d locale=en-US ee://aol/imApp
uRun: [H/PC Connection Agent] "c:\program files\microsoft activesync\wcescomm.exe"
uRun: [ViewSonic Explorer V5.3] c:\windows\msdtcsw32.exe
uRun: [Legacy VGA Drivers V1.0] c:\windows\certproc32.exe
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
IE: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBC} -
c:\program files\java\jre1.6.0_02\bin\ssv.dll
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} -
c:\progra~1\spybot~1\SDHelper.dll
Trusted Zone: microsoft.com\*.update
Trusted Zone: microsoft.com\*.windowsupdate
Trusted Zone: microsoft.com\update
Trusted Zone: windowsupdate.com
Trusted Zone: windowsupdate.com\download
DPF: DirectAnimation Java Classes - file://c:\windows\java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
DPF: Yahoo! Canasta - hxxp://download.games.yahoo.com/games/clients/y/yt1_x.cab
DPF: Yahoo! Chat - hxxp://us.chat1.yimg.com/us.yimg.com/i/chat/applet/c381/chat.cab
DPF: Yahoo! Dots - hxxp://download.games.yahoo.com/games/clients/y/dtt1_x.cab
DPF: Yahoo! Pool 2 - hxxp://download2.games.yahoo.com/games/clients/y/poti_x.cab
DPF: Yahoo! Towers 2.0 - hxxp://download.games.yahoo.com/games/clients/y/ywt0_x.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} -
hxxp://active.macromedia.com/director/cabs/sw.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} -
hxxp://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE}
DPF: {3334504D-9980-0010-8000-00AA00389B71} -
hxxp://download.microsoft.com/download/0/C/8/0C8EDFAB-30BC-4792-898E-2DABE27B2C4D/mp4
3dmo.CAB
DPF: {48DD0448-9209-4F81-9F6D-D83562940134} -
hxxp://lads.myspace.com/upload/MySpaceUploader1005.cab
DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} -
hxxp://groups.msn.com/controls/PhotoUC/MsnPUpld.cab
DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5}
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} -
hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?112
8284449625
DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} -
hxxp://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.c
ab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} -
hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
DPF: {9BFC2253-B9D9-477E-9488-CA450232620D}
DPF: {AE1C01E3-0283-11D3-9B3F-00C04F8EF466} -
hxxp://fdl.msn.com/zone/datafiles/heartbeat.cab
DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} -
hxxp://cdn2.zone.msn.com/binFramework/v10/ZIntro.cab34246.cab
DPF: {CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} -
hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {E473A65C-8087-49A3-AFFD-C5BC4A10669B}
DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} -
hxxp://cdn.digitalcity.com/_media/dalaillama/ampx.cab
DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} -
hxxp://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program
files\avg\avg8\avgpp.dll
Notify: avgrsstarter - avgrsstx.dll
Notify: igfxcui - igfxsrvc.dll
AppInit_DLLs: axfiye.dll c:\windows\system32\soyabodu.dll
SecurityProviders: msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, zwebauth.dll
LSA: Authentication Packages = msv1_0 c:\windows\system32\khfCrSmM
LSA: Notification Packages = scecli c:\windows\system32\soyabodu.dll
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\jolynn\applic~1\mozilla\firefox\profiles\tgxeb9gi.default\
FF - prefs.js: browser.search.defaulturl -
hxxp://search.yahoo.com/search?ei=UTF-8&fr=ytff-msgr&p=
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com/
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=UTF-8&fr=ytff-msgr&p=
FF - component: c:\program files\avg\avg8\firefox\components\avgssff.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant:
{20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows
presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla
firefox\extensions\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
============= SERVICES / DRIVERS ===============
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-7-9
335752]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver
x86;c:\windows\system32\drivers\avgmfx86.sys [2009-6-1 27784]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-7-9
108552]
R2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\avg\avg8\avgemc.exe [2009-7-9 907032]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-7-9 298776]
R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program
files\viewpoint\common\ViewpointService.exe [2008-6-15 24652]
S2 EFXFVYMI;EFXFVYMI;\??\c:\windows\system32\efxfvymi.gnf -->
c:\windows\system32\efxfvymi.gnf [?]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys
[2009-7-19 38160]
S4 Boonty Games;Boonty Games;c:\program files\common files\boonty shared\service\Boonty.exe
[2006-3-16 69120]
============== File Associations ===============
txtfile=%windir%\NOTEPAD.EXE %1
=============== Created Last 30 ================
2009-07-19 16:25 <DIR> --d----- c:\docume~1\jolynn\applic~1\Malwarebytes
2009-07-19 16:25 38,160 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-07-19 16:25 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes
2009-07-19 16:25 19,096 a------- c:\windows\system32\drivers\mbam.sys
2009-07-19 16:25 <DIR> --d----- c:\program files\Malwarebytes' Anti-Malware
2009-07-19 10:36 <DIR> --d----- c:\documents and settings\jolynn\.housecall6.6
2009-07-18 15:45 552 a------- c:\windows\system32\d3d8caps.dat
2009-07-15 14:26 <DIR> --dsh--- c:\documents and settings\jolynn\IECompatCache
2009-07-15 09:08 <DIR> --d----- c:\program files\Trend Micro
2009-07-10 14:53 <DIR> --dsh--- c:\documents and settings\jolynn\PrivacIE
2009-07-10 11:04 <DIR> --d----- c:\windows\system32\appmgmt
2009-07-09 12:21 1,089,593 -c------ c:\windows\system32\dllcache\ntprint.cat
2009-07-09 11:53 <DIR> --dsh--- c:\documents and settings\jolynn\IETldCache
2009-07-09 09:07 <DIR> --d----- c:\windows\system32\XPSViewer
2009-07-09 09:06 89,088 -c------ c:\windows\system32\dllcache\filterpipelineprintproc.dll
2009-07-09 09:06 117,760 -------- c:\windows\system32\prntvpt.dll
2009-07-09 09:05 597,504 -c------ c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2009-07-09 09:05 575,488 -c------ c:\windows\system32\dllcache\xpsshhdr.dll
2009-07-09 09:05 575,488 -------- c:\windows\system32\xpsshhdr.dll
2009-07-09 09:05 1,676,288 -c------ c:\windows\system32\dllcache\xpssvcs.dll
2009-07-09 09:05 1,676,288 -------- c:\windows\system32\xpssvcs.dll
2009-07-09 09:05 <DIR> --d----- C:\e5501bbc2d597e645df055b958b6
2009-07-09 08:51 102,912 -c------ c:\windows\system32\dllcache\iecompat.dll
2009-07-09 08:51 <DIR> --d----- c:\windows\ie8updates
2009-07-09 08:50 12,800 -c------ c:\windows\system32\dllcache\xpshims.dll
2009-07-09 08:50 11,064,832 -c------ c:\windows\system32\dllcache\ieframe.dll
2009-07-09 08:50 1,985,024 -c------ c:\windows\system32\dllcache\iertutil.dll
2009-07-09 08:50 246,272 -c------ c:\windows\system32\dllcache\ieproxy.dll
2009-07-09 08:48 <DIR> -cd-h--- c:\windows\ie8
2009-07-09 08:40 <DIR> --d----- c:\program files\MSXML 4.0
2009-07-09 08:27 714,752 -c------ c:\windows\system32\dllcache\ntdll.dll
2009-07-09 08:27 2,145,280 -c------ c:\windows\system32\dllcache\ntkrnlmp.exe
2009-07-09 08:27 2,189,056 -c------ c:\windows\system32\dllcache\ntoskrnl.exe
2009-07-09 08:27 2,023,936 -c------ c:\windows\system32\dllcache\ntkrpamp.exe
2009-07-09 08:27 1,203,922 -c------ c:\windows\system32\dllcache\sysmain.sdb
2009-07-09 08:27 2,560 -------- c:\windows\system32\xpsp4res.dll
2009-07-09 08:27 215,552 -c------ c:\windows\system32\dllcache\wordpad.exe
2009-07-09 08:26 333,952 -c------ c:\windows\system32\dllcache\srv.sys
2009-07-09 08:25 247,326 -c------ c:\windows\system32\dllcache\strmdll.dll
2009-07-09 08:24 455,296 -c------ c:\windows\system32\dllcache\mrxsmb.sys
2009-07-09 08:24 1,106,944 a------- c:\windows\system32\SETCF.tmp
2009-07-09 08:24 1,106,944 -c------ c:\windows\system32\dllcache\msxml3.dll
2009-07-09 08:24 337,408 a------- c:\windows\system32\SETCB.tmp
2009-07-09 08:24 337,408 -c------ c:\windows\system32\dllcache\netapi32.dll
2009-07-09 08:24 331,776 -c------ c:\windows\system32\dllcache\msadce.dll
2009-07-09 08:23 691,712 -c------ c:\windows\system32\dllcache\inetcomm.dll
2009-07-09 08:22 272,128 -c------ c:\windows\system32\dllcache\bthport.sys
2009-07-09 08:22 203,136 -c------ c:\windows\system32\dllcache\rmcast.sys
2009-07-09 01:14 <DIR> --d-h--- C:\$AVG8.VAULT$
2009-07-09 00:52 108,552 a------- c:\windows\system32\drivers\avgtdix.sys
2009-07-09 00:52 11,952 a------- c:\windows\system32\avgrsstx.dll
2009-07-09 00:52 335,752 a------- c:\windows\system32\drivers\avgldx86.sys
2009-07-09 00:52 <DIR> --d----- c:\windows\system32\drivers\Avg
2009-07-09 00:52 <DIR> --d----- c:\program files\AVG
2009-07-09 00:52 <DIR> --d----- c:\docume~1\alluse~1\applic~1\avg8
2009-07-08 23:34 <DIR> --d----- c:\windows\system32\scripting
2009-07-08 23:34 <DIR> --d----- c:\windows\l2schemas
2009-07-08 23:34 <DIR> --d----- c:\windows\system32\en
2009-07-08 23:26 <DIR> --d----- c:\windows\network diagnostic
2009-07-08 22:42 412,160 -------- c:\windows\system32\photometadatahandler.dll
2009-07-08 22:41 37,376 -------- c:\windows\system32\l2gpstore.dll
2009-07-08 22:40 136,192 -------- c:\windows\system32\aaclient.dll
2009-07-08 21:07 <DIR> --d----- c:\windows\system32\wbem\AutoRecover
2009-07-08 20:40 221,184 a------- c:\windows\system32\wmpns.dll
2009-07-08 20:38 <DIR> --d----- c:\windows\peernet
2009-07-08 20:38 <DIR> --d----- c:\windows\provisioning
2009-07-08 20:34 <DIR> --d----- c:\windows\ServicePackFiles
2009-07-08 20:23 <DIR> --d----- c:\windows\EHome
2009-07-08 17:03 <DIR> --d----- c:\program files\Microsoft CAPICOM 2.1.0.2
2009-07-08 16:52 100,352 a------- c:\windows\system32\SETD8.tmp
2009-07-08 16:52 100,352 -------- c:\windows\system32\SET7C.tmp
2009-07-08 16:52 280,064 -------- c:\windows\system32\SETB6.tmp
2009-07-08 16:52 280,064 -------- c:\windows\system32\SET70.tmp
2009-07-08 16:52 181,248 a------- c:\windows\system32\SETB1.tmp
2009-07-08 16:52 181,248 -------- c:\windows\system32\SET6C.tmp
2009-07-08 16:50 129,024 -------- c:\windows\system32\xmlprov.dll
2009-07-08 16:50 50,176 -------- c:\windows\system32\xmlprovi.dll
2009-07-08 16:50 80,896 a------- c:\windows\system32\wscsvc.dll
2009-07-08 16:50 148,480 -------- c:\windows\system32\wscui.cpl
2009-07-08 16:50 108,032 -------- c:\windows\system32\wshbth.dll
2009-07-08 16:50 13,824 -------- c:\windows\system32\wscntfy.exe
2009-07-08 16:50 1,229 -------- c:\windows\system32\wbem\wscenter.mof
2009-07-08 16:48 452,736 -------- c:\windows\system32\drivers\mtxparhm.sys
2009-07-08 16:47 19,528 a------- c:\windows\002527_.tmp
2009-07-08 16:45 94,720 a------- c:\windows\system32\SET8B.tmp
2009-07-08 16:45 148,480 -------- c:\windows\system32\SET8C.tmp
2009-07-08 16:45 148,480 -------- c:\windows\system32\SET50.tmp
2009-07-08 16:45 94,720 -------- c:\windows\system32\SET4D.tmp
2009-07-08 16:05 280,064 a------- c:\windows\system32\SET66.tmp
2009-07-08 16:05 280,064 -------- c:\windows\system32\SET3B.tmp
2009-07-08 15:35 354,304 a------- c:\windows\system32\winhttp.dll
2009-07-08 15:35 331,776 a------- c:\windows\system32\SET43.tmp
2009-07-08 15:35 18,944 a------- c:\windows\system32\qmgrprxy.dll
2009-07-08 15:33 213,528 a------- c:\windows\system32\wuaucpl.cpl
2009-07-08 15:20 12,620 a------- c:\windows\system32\wpa.bak
2009-07-08 11:24 155,648 a------- c:\windows\system32\igfxres.dll
2009-07-08 10:22 131,584 ac------ c:\windows\system32\dllcache\pmxviceo.dll
2009-07-08 10:21 471,102 ac------ c:\windows\system32\dllcache\imskdic.dll
2009-07-08 10:20 54,528 ac------ c:\windows\system32\dllcache\cap7146.sys
2009-07-08 10:13 <DIR> --d-h--- c:\program files\WindowsUpdate
2009-07-08 10:13 <DIR> --d----- c:\program files\Online Services
2009-07-08 10:10 13,608 a----r-- c:\windows\SET77.tmp
2009-07-08 10:10 1,086,182 a----r-- c:\windows\SET62.tmp
2009-06-30 13:46 129,536 a------- c:\windows\system32\ksproxy.ax
2009-06-30 13:46 4,096 a------- c:\windows\system32\ksuser.dll
2009-06-30 12:37 13,608 a----r-- c:\windows\SETA8.tmp
2009-06-30 12:37 1,086,182 a----r-- c:\windows\SET93.tmp
==================== Find3M ====================
2009-07-08 23:39 86,665 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2009-07-08 10:17 2,678 a------- c:\windows\java\packages\data\T3DND77V.DAT
2009-07-08 10:17 2,678 a------- c:\windows\java\packages\data\XFVJNXJ9.DAT
2009-07-08 10:17 2,678 a------- c:\windows\java\packages\data\P3JRB5ZX.DAT
2009-07-08 10:17 2,678 a------- c:\windows\java\packages\data\VLZVJ9JX.DAT
2009-07-08 10:17 2,678 a------- c:\windows\java\packages\data\B9BFNFHR.DAT
2009-07-08 10:14 23,348 a------- c:\windows\system32\emptyregdb.dat
2009-06-16 07:36 119,808 a------- c:\windows\system32\t2embed.dll
2009-06-16 07:36 81,920 a------- c:\windows\system32\fontsub.dll
2009-06-03 12:09 1,291,264 a------- c:\windows\system32\quartz.dll
2009-05-12 22:15 915,456 a------- c:\windows\system32\wininet.dll
2009-05-07 08:32 345,600 a------- c:\windows\system32\localspl.dll
2009-04-28 21:46 81,920 -------- c:\windows\system32\ieencode.dll
2008-05-02 09:00 62,910 a------- c:\program files\Uninstall.exe
2008-05-02 09:00 0 a------- c:\program files\uninstall.dat
2008-04-19 03:02 374 a------- c:\docume~1\jolynn\applic~1\internaldb6334.dat
2008-04-19 02:57 18,432 a------- c:\docume~1\jolynn\applic~1\internaldb41.dat
2008-04-19 02:38 555 a------- c:\docume~1\jolynn\applic~1\internaldb8467.dat
2007-01-25 21:32 1,443,213 a------- c:\docume~1\jolynn\applic~1\Install.dat
2005-03-16 23:24 3,895,808 a------- c:\program files\sspsetup1_1788740160.exe
2005-02-01 04:33 10,810,909 a------- c:\program files\avg70free_300a419.exe
2004-04-29 15:01 784 a------- c:\docume~1\jolynn\applic~1\mpauth.dat
2004-01-21 11:07 2,899,708 a--sh--- c:\windows\system32\atadniw.dat
============= FINISH: 9:48:55.32 ===============