here are the requested logs. Before I ran these I used a tutorial I found on another website and I think i might have fixed the problem.
Logfile of random's system information tool 1.07 (written by random/random)
Run by Owner at 2010-05-31 18:58:39
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 2 GB (5%) free of 38 GB
Total RAM: 1534 MB (68% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 6:58:41 PM, on 5/31/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32LEXBCES.EXE
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSsystem32LEXPPS.EXE
C:Program FilesCommon FilesAppleMobile Device SupportAppleMobileDeviceService.exe
C:Program FilesBonjourmDNSResponder.exe
C:Program FilesJavajre6binjqs.exe
C:WINDOWSsystem32nvsvc32.exe
C:Program FilesDell Support Centerbinsprtsvc.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe
C:Program FilesViewpointCommonViewpointService.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSExplorer.EXE
C:Program FilesJavajre6binjusched.exe
C:Program FilesDell Support Centerbinsprtcmd.exe
C:WINDOWSsystem32RUNDLL32.EXE
C:Program FilesMicrosoft OfficeOffice12GrooveMonitor.exe
C:Program FilesiTunesiTunesHelper.exe
C:Program FilesDellSupportDSAgnt.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesKodakKodak EasyShare softwarebinEasyShare.exe
C:Program FilesiPodbiniPodService.exe
C:WINDOWSsystem32wuauclt.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:Documents and SettingsOwnerDesktopRSIT.exe
C:Program FilesTrend MicroHiJackThisOwner.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
http://www.yahoo.com/?fr=fp-yie8R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant =
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Window Title = Windows Internet Explorer provided by Yahoo!
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesAdobeAcrobat 7.0ActiveXAcroIEHelper.dll (file missing)
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:Program FilesRealRealPlayerrpbrowserrecordplugin.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:Program FilesMicrosoftSearch Enhancement PackSearch HelperSEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:Program FilesMicrosoft OfficeOffice12GrooveShellExtensions.dll
O2 - BHO: MSN Toolbar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:Program FilesMSNToolbar3.0.1125.0msneshellx.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:Program FilesJavajre6binjp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:Program FilesJavajre6libdeployjqsiejqs_plugin.dll
O3 - Toolbar: MSN Toolbar - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - C:Program FilesMSNToolbar3.0.1125.0msneshellx.dll
O4 - HKLM..Run: [IgfxTray] C:WINDOWSSystem32igfxtray.exe
O4 - HKLM..Run: [HotKeysCmds] C:WINDOWSSystem32hkcmd.exe
O4 - HKLM..Run: [SunJavaUpdateSched] "C:Program FilesJavajre6binjusched.exe"
O4 - HKLM..Run: [dscactivate] "C:Program FilesDell Support Centergs_agentcustomdsca.exe"
O4 - HKLM..Run: [DellSupportCenter] "C:Program FilesDell Support Centerbinsprtcmd.exe" /P DellSupportCenter
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [nwiz] nwiz.exe /install
O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit
O4 - HKLM..Run: [Microsoft Default Manager] "C:Program FilesMicrosoftSearch Enhancement PackDefault ManagerDefMgr.exe" -resume
O4 - HKLM..Run: [GrooveMonitor] "C:Program FilesMicrosoft OfficeOffice12GrooveMonitor.exe"
O4 - HKLM..Run: [QuickTime Task] "C:Program FilesQuickTimeqttask.exe" -atboottime
O4 - HKLM..Run: [iTunesHelper] "C:Program FilesiTunesiTunesHelper.exe"
O4 - HKCU..Run: [DellSupport] "C:Program FilesDellSupportDSAgnt.exe" /startup
O4 - HKCU..Run: [updateMgr] "C:Program FilesAdobeAcrobat 7.0ReaderAdobeUpdateManager.exe" AcRdB7_1_0 -reboot 1
O4 - HKCU..Run: [EA Core] "C:Program FilesElectronic ArtsEADMCore.exe" -silent
O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe
O4 - HKUSS-1-5-18..RunOnce: [FlashPlayerUpdate] C:WINDOWSsystem32MacromedFlashFlashUtil9e.exe (User 'SYSTEM')
O4 - HKUS.DEFAULT..RunOnce: [FlashPlayerUpdate] C:WINDOWSsystem32MacromedFlashFlashUtil9e.exe (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:Program FilesAdobeAcrobat 7.0Readerreader_sl.exe
O4 - Global Startup: Kodak EasyShare software.lnk = C:Program FilesKodakKodak EasyShare softwarebinEasyShare.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:PROGRA~1MICROS~2Office12ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:PROGRA~1MICROS~2Office12ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MICROS~2Office12REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe
O10 - Unknown file in Winsock LSP: c:windowssystem32nwprovau.dll
O16 - DPF: {001EE746-A1F9-460E-80AD-269E088D6A01} (Infotl Control) -
https://research.flagler.edu:9253/lib/flagl...s/ebraryRdr.cabO16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) -
http://zone.msn.com/binFrameWork/v10/StagingUI.cab40641.cabO16 - DPF: {0713E8D2-850A-101B-AFC0-4210102A8DA7} (Microsoft ProgressBar Control, version 5.0 (SP2)) -
http://download.mcafee.com/molbin/Shared/C...22/ComCtl32.cabO16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) -
http://upload.facebook.com/controls/2008.1...toUploader5.cabO16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) -
http://housecall65.trendmicro.com/housecal...ivex/hcImpl.cabO16 - DPF: {321FB770-1FBE-4BFE-BDC1-6F622D4FA499} -
https://setup.bellsouth.net/wizlet/PWReset/...aller_6-1-2.cabO16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (ZoneBuddy Class) -
http://zone.msn.com/BinFrameWork/v10/ZBuddy.cab32846.cabO16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) -
http://photo2.walgreens.com/WalgreensActivia.cabO16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) -
http://lads.myspace.com/upload/MySpaceUploader1006.cabO16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} -
http://download.mcafee.com/molbin/shared/m...99/mcinsctl.cabO16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) -
http://zone.msn.com/binframework/v10/ZPAChat.cab32846.cabO16 - DPF: {6715D12F-213F-4C6E-ACE1-8A363F550B96} (CPlayFirstDoggieDashControl Object) -
http://aolsvc.aol.com/onlinegames/free-tri...ash.1.0.0.6.cabO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://www.update.microsoft.com/microsoftu...b?1182477918953O16 - DPF: {74EF5274-F439-2168-B543-14745B625C72} (CPlayFirstWeddingDasControl Object) -
http://aolsvc.aol.com/onlinegames/free-tri...eb.1.0.0.11.cabO16 - DPF: {7E980B9B-8AE5-466A-B6D6-DA8CF814E78A} (MJLauncherCtrl Class) -
http://zone.msn.com/bingame/luxr/default/mjolauncher.cabO16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) -
http://upload.facebook.com/controls/2009.0...oUploader55.cabO16 - DPF: {87056D28-9730-4A47-B9F9-7E890B62C58A} (WildfireActiveXHost Class) -
http://aolsvc.aol.com/onlinegames/ghtumblebugs/axhost.cabO16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) -
http://cdn.digitalcity.com/radio/ampx/ampx2.6.1.11_en_dl.cabO16 - DPF: {B516CA4E-A5BA-405C-AFCF-A97F08CC7429} (GoBit Games Player) -
http://aolsvc.aol.com/onlinegames/free-tri...esPlayer_v4.cabO16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) -
http://cdn2.zone.msn.com/binFramework/v10/...ro.cab34246.cabO16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} -
http://download.mcafee.com/molbin/shared/m...,26/mcgdmgr.cabO16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) -
http://aolsvc.aol.com/onlinegames/tryphara...gamesplayer.cabO16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (StadiumProxy Class) -
http://zone.msn.com/binframework/v10/StProxy.cab41227.cabO16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) -
http://fdl.msn.com/zone/datafiles/heartbeat.cabO16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} (ZPA_Backgammon Object) -
http://zone.msn.com/bingame/zpagames/ZPA_B...on.cab40641.cabO18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:Program FilesMicrosoft OfficeOffice12GrooveSystemServices.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:WINDOWSSystem32browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:WINDOWSSystem32browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:Program FilesCommon FilesAppleMobile Device SupportAppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:Program FilesBonjourmDNSResponder.exe
O23 - Service: iPod Service - Apple Inc. - C:Program FilesiPodbiniPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:Program FilesJavajre6binjqs.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:WINDOWSsystem32LEXBCES.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:WINDOWSsystem32nvsvc32.exe
O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:Program FilesDell Support Centerbinsprtsvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:Program FilesViewpointCommonViewpointService.exe
--
End of file - 11807 bytes
======Scheduled tasks folder======
C:WINDOWStasksAd-Aware Update (Weekly).job
C:WINDOWStasksAppleSoftwareUpdate.job
======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:Program FilesAdobeAcrobat 7.0ActiveXAcroIEHelper.dll []
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:Program FilesRealRealPlayerrpbrowserrecordplugin.dll [2008-07-30 308856]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:Program FilesMicrosoftSearch Enhancement PackSearch HelperSEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:Program FilesMicrosoft OfficeOffice12GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
MSN Toolbar Helper - C:Program FilesMSNToolbar3.0.1125.0msneshellx.dll [2009-02-09 82768]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java Plug-In 2 SSV Helper - C:Program FilesJavajre6binjp2ssv.dll [2009-09-27 41760]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:Program FilesJavajre6libdeployjqsiejqs_plugin.dll [2009-09-27 73728]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - MSN Toolbar - C:Program FilesMSNToolbar3.0.1125.0msneshellx.dll [2009-02-09 82768]
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
"IgfxTray"=C:WINDOWSSystem32igfxtray.exe [2005-10-19 155648]
"HotKeysCmds"=C:WINDOWSSystem32hkcmd.exe [2005-10-19 126976]
"SunJavaUpdateSched"=C:Program FilesJavajre6binjusched.exe [2009-09-27 149280]
"dscactivate"=C:Program FilesDell Support Centergs_agentcustomdsca.exe [2007-11-15 16384]
"DellSupportCenter"=C:Program FilesDell Support Centerbinsprtcmd.exe [2009-05-21 206064]
"NvCplDaemon"=C:WINDOWSsystem32NvCpl.dll [2008-05-03 13529088]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:WINDOWSsystem32NvMcTray.dll [2008-05-03 86016]
"Microsoft Default Manager"=C:Program FilesMicrosoftSearch Enhancement PackDefault ManagerDefMgr.exe [2009-02-03 233304]
"GrooveMonitor"=C:Program FilesMicrosoft OfficeOffice12GrooveMonitor.exe [2008-10-25 31072]
"QuickTime Task"=C:Program FilesQuickTimeqttask.exe [2010-03-17 421888]
"iTunesHelper"=C:Program FilesiTunesiTunesHelper.exe [2010-03-26 142120]
[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
"DellSupport"=C:Program FilesDellSupportDSAgnt.exe [2007-03-15 460784]
"updateMgr"=C:Program FilesAdobeAcrobat 7.0ReaderAdobeUpdateManager.exe [2006-03-30 313472]
"EA Core"=C:Program FilesElectronic ArtsEADMCore.exe -silent []
"ctfmon.exe"=C:WINDOWSsystem32ctfmon.exe [2008-04-13 15360]
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregctugafnc]
C:Documents and SettingsOwnerLocal SettingsApplication Datawdrvkgiphjvdvvgxtssd.exe []
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregDellSupportCenter]
C:Program FilesDell Support Centerbinsprtcmd.exe [2009-05-21 206064]
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregGrooveMonitor]
C:Program FilesMicrosoft OfficeOffice12GrooveMonitor.exe [2008-10-25 31072]
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregiTunesHelper]
C:Program FilesiTunesiTunesHelper.exe [2010-03-26 142120]
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregNeroFilterCheck]
C:WINDOWSsystem32NeroCheck.exe [2001-07-09 155648]
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregpp]
C:windowspp06.exe []
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregPromoReg]
C:WINDOWSTemp_ex-08.exe []
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregQuickTime Task]
C:Program FilesQuickTimeqttask.exe [2010-03-17 421888]
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregsysfbtray]
c:windowsfreddy40.exe []
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregsysldtray]
C:windowsld03.exe []
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregTkBellExe]
C:Program FilesCommon FilesRealUpdate_OBrealsched.exe [2008-07-30 185896]
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregUniversal Installer]
C:Program FilesComcastUIUniversal Installeruinstaller.exe /fromrun /starthidden []
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregWalgreens PhotoShow Media Manager]
C:PROGRA~1WALGRE~1WALGRE~1dataXtrasmssysmgr.exe []
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderC:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
C:PROGRA~1AdobeACROBA~1.0ReaderREADER~1.EXE [2008-04-23 29696]
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderC:^Documents and Settings^All Users^Start Menu^Programs^Startup^Kodak EasyShare software.lnk]
C:PROGRA~1KodakKODAKE~1binEASYSH~1.EXE [2008-05-10 282624]
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigservices]
"ose"=3
"Net Agent"=2
"IDriverT"=3
"DSBrokerService"=3
"bgsvcgen"=2
"McciCMService"=2
"SeaPort"=2
C:Documents and SettingsAll UsersStart MenuProgramsStartup
Adobe Reader Speed Launch.lnk - C:Program FilesAdobeAcrobat 7.0Readerreader_sl.exe
Kodak EasyShare software.lnk - C:Program FilesKodakKodak EasyShare softwarebinEasyShare.exe
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyAtiExtEvent]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyigfxcui]
C:WINDOWSsystem32igfxsrvc.dll [2005-10-19 348160]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyWgaLogon]
C:WINDOWSsystem32WgaLogon.dll [2007-03-15 236928]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:WINDOWSsystem32WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:Program FilesMicrosoft OfficeOffice12GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalklmdb.sys]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkklmdb.sys]
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
"%windir%system32sessmgr.exe"="%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:Program FilesAresAres.exe"="C:Program FilesAresAres.exe:*:Enabled:Ares"
"C:WINDOWSsystem32LEXPPS.EXE"="C:WINDOWSsystem32LEXPPS.EXE:*:Enabled:LEXPPS.EXE"
"%windir%Network Diagnosticxpnetdiag.exe"="%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:Program FilesKodakKodak EasyShare softwarebinEasyShare.exe"="C:Program FilesKodakKodak EasyShare softwarebinEasyShare.exe:*:Enabled:EasyShare"
"C:Program FilesCommon FilesAOLLoaderaolload.exe"="C:Program FilesCommon FilesAOLLoaderaolload.exe:*:Enabled:AOL Loader"
"C:Program FilesAIM7aim.exe"="C:Program FilesAIM7aim.exe:*:Enabled:AIM"
"C:Program FilesBonjourmDNSResponder.exe"="C:Program FilesBonjourmDNSResponder.exe:*:Enabled:Bonjour Service"
"C:Program FilesiTunesiTunes.exe"="C:Program FilesiTunesiTunes.exe:*:Enabled:iTunes"
[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
"%windir%system32sessmgr.exe"="%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%Network Diagnosticxpnetdiag.exe"="%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-05-31 18:58:39 ----D---- C:rsit
2010-05-31 14:16:58 ----A---- C:TDSSKiller.2.3.2.0_31.05.2010_14.16.58_log.txt
2010-05-29 11:40:23 ----SHD---- C:Config.Msi
2010-05-29 10:51:29 ----D---- C:Documents and SettingsOwnerApplication DataYahoo!
2010-05-29 10:48:48 ----HDC---- C:WINDOWSie8
2010-05-29 10:40:49 ----D---- C:Program FilesMalwarebytes' Anti-Malware
2010-05-28 14:27:28 ----D---- C:Program FilesSpybot - Search & Destroy
2010-05-28 14:27:28 ----D---- C:Documents and SettingsAll UsersApplication DataSpybot - Search & Destroy
2010-05-28 13:39:55 ----D---- C:Program FilesTrend Micro
2010-05-26 03:00:24 ----HDC---- C:WINDOWS$NtUninstallKB981793$
2010-05-12 11:51:28 ----HDC---- C:WINDOWS$NtUninstallKB978542$
======List of files/folders modified in the last 1 months======
2010-05-31 18:58:39 ----D---- C:WINDOWSPrefetch
2010-05-31 18:07:29 ----D---- C:WINDOWSsystem32CatRoot2
2010-05-31 14:20:35 ----D---- C:WINDOWStemp
2010-05-31 14:20:29 ----D---- C:WINDOWS
2010-05-31 14:19:35 ----A---- C:WINDOWSsystem32PARTIZAN.TXT
2010-05-31 14:19:20 ----D---- C:WINDOWSsystem32drivers
2010-05-31 14:18:31 ----A---- C:WINDOWSSchedLgU.Txt
2010-05-31 14:14:27 ----D---- C:WINDOWSsystem32
2010-05-29 23:13:09 ----D---- C:Program FilesYahoo!
2010-05-29 23:12:48 ----HDC---- C:WINDOWS$NtUninstallKB917734_WMP10$
2010-05-29 22:21:25 ----D---- C:Documents and SettingsAll UsersApplication DataYahoo!
2010-05-29 12:24:12 ----HD---- C:WINDOWSinf
2010-05-29 11:40:30 ----SHD---- C:WINDOWSInstaller
2010-05-29 11:40:27 ----D---- C:Program Files
2010-05-29 11:40:09 ----D---- C:Documents and SettingsAll UsersApplication DataLavasoft
2010-05-29 11:40:07 ----DC---- C:WINDOWSsystem32DRVSTORE
2010-05-29 11:40:00 ----D---- C:WINDOWSSxsCaPendDel
2010-05-29 11:32:40 ----SD---- C:WINDOWSTasks
2010-05-29 10:56:21 ----D---- C:WINDOWSsystem32en-US
2010-05-29 10:56:20 ----RSHDC---- C:WINDOWSsystem32dllcache
2010-05-29 10:56:20 ----D---- C:WINDOWSMedia
2010-05-29 10:56:20 ----D---- C:WINDOWSHelp
2010-05-29 10:56:20 ----D---- C:Program FilesInternet Explorer
2010-05-28 14:29:49 ----D---- C:WINDOWSWinSxS
2010-05-28 14:15:22 ----D---- C:WINDOWSnetwork diagnostic
2010-05-28 12:27:59 ----ASH---- C:boot.ini
2010-05-28 12:27:59 ----A---- C:WINDOWSwin.ini
2010-05-28 12:27:59 ----A---- C:WINDOWSsystem.ini
2010-05-28 11:55:52 ----HDC---- C:WINDOWS$NtUninstallKB929123$
2010-05-26 19:42:11 ----D---- C:Program FilesElectronic Arts
2010-05-26 19:42:11 ----D---- C:Documents and SettingsAll UsersApplication DataElectronic Arts
2010-05-26 19:41:19 ----D---- C:Program FilesCoupons
2010-05-26 03:00:30 ----A---- C:WINDOWSimsins.BAK
2010-05-12 11:52:22 ----D---- C:Documents and SettingsAll UsersApplication DataMicrosoft Help
2010-05-12 11:51:30 ----D---- C:Program FilesOutlook Express
2010-05-12 03:11:43 ----HD---- C:WINDOWS$hf_mig$
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 cdrbsdrv;cdrbsdrv; C:WINDOWSsystem32driverscdrbsdrv.sys [2005-05-11 32256]
R1 eeCtrl;Symantec Eraser Control driver; ??C:Program FilesCommon FilesSymantec SharedEENGINEeeCtrl.sys []
R1 intelppm;Intel Processor Driver; C:WINDOWSSystem32DRIVERSintelppm.sys [2008-04-13 36352]
R1 kbdhid;Keyboard HID Driver; C:WINDOWSsystem32DRIVERSkbdhid.sys [2008-04-13 14592]
R1 OMCI;OMCI; C:WINDOWSSYSTEM32DRIVERSOMCI.SYS [2001-08-22 13632]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:WINDOWSSystem32driversws2ifsl.sys [2003-07-16 12032]
R2 dsunidrv;DellSupport UniDriver; C:WINDOWSSystem32DRIVERSdsunidrv.sys [2007-02-25 5376]
R2 symlcbrd;symlcbrd; ??C:WINDOWSSystem32driverssymlcbrd.sys []
R3 aeaudio;aeaudio; C:WINDOWSsystem32driversaeaudio.sys [2002-04-01 4816]
R3 DSproct;DSproct; ??C:Program FilesDellSupportGTActiontriggersDSproct.sys []
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:WINDOWSSYSTEM32DRIVERSGEARAspiWDM.sys [2009-05-18 26600]
R3 HidUsb;Microsoft HID Class Driver; C:WINDOWSsystem32DRIVERShidusb.sys [2008-04-13 10368]
R3 IntelC51;IntelC51; C:WINDOWSSystem32DRIVERSIntelC51.sys [2003-11-20 1232741]
R3 IntelC52;IntelC52; C:WINDOWSSystem32DRIVERSIntelC52.sys [2003-11-20 646825]
R3 IntelC53;IntelC53; C:WINDOWSSystem32DRIVERSIntelC53.sys [2003-11-20 59717]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:WINDOWSsystem32driversMODEMCSA.sys [2001-08-17 16128]
R3 mohfilt;mohfilt; C:WINDOWSSystem32DRIVERSmohfilt.sys [2003-11-20 37048]
R3 mouhid;Mouse HID Driver; C:WINDOWSSystem32DRIVERSmouhid.sys [2001-08-17 12160]
R3 nv;nv; C:WINDOWSsystem32DRIVERSnv4_mini.sys [2008-05-03 6554496]
R3 RT2500;Linksys Wireless-G PCI Adapter Driver; C:WINDOWSSystem32DRIVERSRT2500.sys [2005-10-20 243328]
R3 smwdm;smwdm; C:WINDOWSsystem32driverssmwdm.sys [2003-11-18 591808]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:WINDOWSSystem32DRIVERSusbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:WINDOWSSystem32DRIVERSusbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 Enabled Hub; C:WINDOWSSystem32DRIVERSusbhub.sys [2008-04-13 59520]
R3 usbprint;Microsoft USB PRINTER Class; C:WINDOWSSystem32DRIVERSusbprint.sys [2008-04-13 25856]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:WINDOWSSystem32DRIVERSusbuhci.sys [2008-04-13 20608]
S3 bcm4sbxp;Broadcom 440x 10/100 Integrated Controller XP Driver; C:WINDOWSSystem32DRIVERSbcm4sbxp.sys [2003-06-30 43136]
S3 bvrp_pci;bvrp_pci; ??C:WINDOWSSystem32driversbvrp_pci.sys []
S3 fwtiakog;fwtiakog; ??C:DOCUME~1OwnerLOCALS~1Tempfwtiakog.sys []
S3 ialm;ialm; C:WINDOWSSystem32DRIVERSialmnt5.sys [2005-10-19 807998]
S3 MREMP50;MREMP50 NDIS Protocol Driver; ??C:PROGRA~1COMMON~1MotiveMREMP50.SYS []
S3 MRESP50;MRESP50 NDIS Protocol Driver; ??C:PROGRA~1COMMON~1MotiveMRESP50.SYS []
S3 Partizan;Partizan; C:WINDOWSsystem32driversPartizan.sys [2008-08-26 30946]
S3 PCTINDIS5;PCTINDIS5 NDIS Protocol Driver; ??C:WINDOWSsystem32PCTINDIS5.SYS []
S3 USBAAPL;Apple Mobile USB Driver; C:WINDOWSSystem32Driversusbaapl.sys [2009-10-16 41472]
S3 usbscan;USB Scanner Driver; C:WINDOWSsystem32DRIVERSusbscan.sys [2008-04-13 15104]
S3 USBSTOR;USB Mass Storage Driver; C:WINDOWSSystem32DRIVERSUSBSTOR.SYS [2008-04-13 26368]
S3 WpdUsb;WpdUsb; C:WINDOWSSystem32Driverswpdusb.sys [2006-10-18 38528]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:WINDOWSsystem32DRIVERSWudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:WINDOWSsystem32DRIVERSwudfrd.sys [2006-09-28 82944]
S3 ZD1211BU(ZyDAS);ZyDAS ZD1211B IEEE 802.11 b+g Wireless LAN Driver (USB)(ZyDAS); C:WINDOWSsystem32DRIVERSzd1211Bu.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:Program FilesCommon FilesAppleMobile Device SupportAppleMobileDeviceService.exe [2010-03-19 144672]
R2 Bonjour Service;Bonjour Service; C:Program FilesBonjourmDNSResponder.exe [2010-02-12 345376]
R2 JavaQuickStarterService;Java Quick Starter; C:Program FilesJavajre6binjqs.exe [2009-09-27 153376]
R2 LexBceS;LexBce Server; C:WINDOWSsystem32LEXBCES.EXE [2004-03-04 311296]
R2 NVSvc;NVIDIA Display Driver Service; C:WINDOWSsystem32nvsvc32.exe [2008-05-03 159812]
R2 sprtsvc_dellsupportcenter;SupportSoft Sprocket Service (dellsupportcenter); C:Program FilesDell Support Centerbinsprtsvc.exe [2008-08-13 201968]
R2 Symantec Core LC;Symantec Core LC; C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe [2007-06-21 1174664]
R2 Viewpoint Manager Service;Viewpoint Manager Service; C:Program FilesViewpointCommonViewpointService.exe [2007-01-04 24652]
R3 iPod Service;iPod Service; C:Program FilesiPodbiniPodService.exe [2010-03-26 545576]
S3 aspnet_state;ASP.NET State Service; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:WINDOWSMicrosoft.NETFrameworkv3.0WPFPresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication Foundationinfocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:Program FilesMicrosoft OfficeOffice12GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:Program FilesCommon FilesMicrosoft SharedOFFICE12ODSERV.EXE [2008-11-04 441712]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:Program FilesWindows Media PlayerWMPNetwk.exe [2006-10-18 913408]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:WINDOWSsystem32svchost.exe [2008-04-13 14336]
S4 DSBrokerService;DSBrokerService; C:Program FilesDellSupportbrkrsvc.exe [2007-03-07 76848]
S4 IDriverT;InstallDriver Table Manager; C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe [2005-04-04 69632]
S4 McciCMService;McciCMService; C:Program FilesCommon FilesMotiveMcciCMService.exe [2008-02-21 303104]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication FoundationSMSvcHost.exe [2008-07-29 132096]
S4 ose;Office Source Engine; C:Program FilesCommon FilesMicrosoft SharedSource EngineOSE.EXE [2006-10-26 145184]
S4 SeaPort;SeaPort; C:Program FilesMicrosoftSearch Enhancement PackSeaPortSeaPort.exe [2009-05-19 240512]
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.06 2010-05-31 18:58:42
======Uninstall list======
-->C:Program FilesCommon FilesRealUpdate_OBr1puninst.exe RealNetworks|RealPlayer|6.0
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:WINDOWSINFPCHealth.inf
Adobe Flash Player 10 ActiveX-->C:WINDOWSsystem32MacromedFlashuninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:WINDOWSsystem32MacromedFlashuninstall_plugin.exe
Adobe Reader 7.0.5 Language Support-->MsiExec.exe /I{AC76BA86-7AD7-5464-3428-7050000000A7}
Adobe Reader 7.1.0-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A71000000002}
Adobe Shockwave Player 11.5-->"C:WINDOWSsystem32AdobeShockwave 11uninstaller.exe"
AIM 7-->C:Program FilesAIM7uninst.exe
AOL Uninstaller (Choose which Products to Remove)-->C:Program FilesCommon FilesAOLuninstaller.exe
Apple Application Support-->MsiExec.exe /I{553255F3-78FD-40F1-A6F8-6882140265FE}
Apple Mobile Device Support-->MsiExec.exe /I{B5C3B892-0849-476C-9F46-B12F84819D57}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Ares 2.1.1-->"C:Program FilesAresuninstall.exe"
Bonjour-->MsiExec.exe /X{76BC2442-0002-47FA-9617-43BAD82BEF4C}
Broadcom 440x 10/100 Integrated Controller-->C:PROGRA~1COMMON~1INSTAL~1Driver7INTEL3~1IDriver.exe /M{52504CE6-E909-4113-B232-4AFEC6543A61} /l1033
Broadcom Driver Installer-->C:PROGRA~1COMMON~1INSTAL~1Driver7INTEL3~1IDriver.exe /M{BE6890C7-31EF-478C-812E-1E2899ABFCA9} /l1033
CCScore-->MsiExec.exe /I{B4B44FE7-41FF-4DAD-8C0A-E406DDA72992}
Dell Photo Printer 720-->C:WINDOWSSystem32spooldriversw32x863DLBCUN5C.EXE -dDell Photo Printer 720
Dell ResourceCD-->RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1ctor.dll,LaunchSetup "C:Program FilesInstallShield Installation Information{D78653C3-A8FF-415F-92E6-D774E634FF2D}setup.exe"
Dell Support Center (Support Software)-->MsiExec.exe /X{E3BFEE55-39E2-4BE0-B966-89FE583822C1}
DellSupport-->MsiExec.exe /X{7EFA5E6F-74F7-4AFB-8AEA-AA790BD3A76D}
Download Updater (AOL LLC)-->C:Program FilesCommon FilesSoftware Update Utilityuninstall.exe
ESSBrwr-->MsiExec.exe /I{643EAE81-920C-4931-9F0B-4B343B225CA6}
ESSCDBK-->MsiExec.exe /I{AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD}
ESScore-->MsiExec.exe /I{42938595-0D83-404D-9F73-F8177FDD531A}
ESSgui-->MsiExec.exe /I{91517631-A9F3-4B7C-B482-43E0068FD55A}
ESSini-->MsiExec.exe /I{8E92D746-CD9F-4B90-9668-42B74C14F765}
ESSPCD-->MsiExec.exe /I{14D4ED84-6A9A-45A0-96F6-1753768C3CB5}
ESSPDock-->MsiExec.exe /I{FCDB1C92-03C6-4C76-8625-371224256091}
ESSSONIC-->MsiExec.exe /I{073F22CE-9A5B-4A40-A604-C7270AC6BF34}
ESSTOOLS-->MsiExec.exe /I{8A502E38-29C9-49FA-BCFA-D727CA062589}
essvatgt-->MsiExec.exe /I{2D03B6F8-DF36-4980-B7B6-5B93D5BA3A8F}
HiJackThis-->MsiExec.exe /X{45A66726-69BC-466B-A7A4-12FCBA4883D7}
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:WINDOWSsystem32msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:WINDOWSsystem32msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Internet Explorer 7 (KB947864)-->"C:WINDOWSie7updatesKB947864-IE7spuninstspuninst.exe"
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:WINDOWS$NtUninstallKB929399$spuninstspuninst.exe"
Hotfix for Windows Media Player 11 (KB939683)-->"C:WINDOWS$NtUninstallKB939683$spuninstspuninst.exe"
Hotfix for Windows XP (KB952287)-->"C:WINDOWS$NtUninstallKB952287$spuninstspuninst.exe"
Hotfix for Windows XP (KB961118)-->"C:WINDOWS$NtUninstallKB961118$spuninstspuninst.exe"
Hotfix for Windows XP (KB970653-v3)-->"C:WINDOWS$NtUninstallKB970653-v3$spuninstspuninst.exe"
Hotfix for Windows XP (KB976098-v2)-->"C:WINDOWS$NtUninstallKB976098-v2$spuninstspuninst.exe"
Hotfix for Windows XP (KB979306)-->"C:WINDOWS$NtUninstallKB979306$spuninstspuninst.exe"
Hotfix for Windows XP (KB981793)-->"C:WINDOWS$NtUninstallKB981793$spuninstspuninst.exe"
InstallMgr-->MsiExec.exe /I{98177940-C048-4831-A279-F3888B1E2C7F}
Intel® 537EP V9x DF PCI Modem-->rundll32 IntelCci.dll,iSMUninstallation "Intel® 537EP V9x DF PCI Modem"
Intel® Extreme Graphics Driver-->RUNDLL32.EXE C:WINDOWSSystem32ialmrem.dll,UninstallW2KIGfx PCIVEN_8086&DEV_2562
iPhone Configuration Utility-->MsiExec.exe /I{FA54AFB1-5745-4389-B8C1-9F7509672ED1}
iPod for Windows 2005-03-23-->C:Program FilesCommon FilesInstallShieldDriver8Intel 32IDriver.exe /M{44A537A5-859C-43A6-8285-C0668142A090} /l1033
iPod for Windows 2005-09-23-->C:Program FilesCommon FilesInstallShieldDriver8Intel 32IDriver.exe /M{D4936AAF-FFD0-44A1-A7EA-A2DB41CEB5BC} /l1033
IrfanView (remove only)-->C:Program FilesIrfanViewiv_uninstall.exe
iTunes-->MsiExec.exe /I{996A2FAA-7514-4628-9D12-A8FC34A0016E}
J2SE Runtime Environment 5.0 Update 5-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150050}
Jasc Paint Shop Photo Album-->MsiExec.exe /I{CC000127-5E5D-4A1C-90CB-EEAAAC1E3AC0}
Java 6 Update 16-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216016FF}
Java 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
Java 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Java SE Runtime Environment 6 Update 1-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010}
kgcbase-->MsiExec.exe /I{F22C222C-3CE2-4A4B-A83F-AF4681371ABE}
Kodak EasyShare software-->C:Documents and SettingsAll UsersApplication DataKodakEasyShareSetup$SETUP_1e0002_9ee7d42Setup.exe /APR-REMOVE
Malwarebytes' Anti-Malware-->"C:Program FilesMalwarebytes' Anti-Malwareunins000.exe"
Microsoft .NET Framework 1.1 Security Update (KB953297)-->"C:WINDOWSMicrosoft.NETFrameworkv1.1.4322Updateshotfix.exe" "C:WINDOWSMicrosoft.NETFrameworkv1.1.4322UpdatesM953297M953297Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:WINDOWSMicrosoft.NETFrameworkv3.5Microsoft .NET Framework 3.5 SP1setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:WINDOWS$NtUninstallMSCompPackV1$spuninstspuninst.exe"
Microsoft Default Manager-->MsiExec.exe /I{B7148D71-0A8F-4501-96B4-4E1CC67F874E}
Microsoft Internationalized Domain Names Mitigation APIs-->"C:WINDOWS$NtServicePackUninstallIDNMitigationAPIs$spuninstspuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:WINDOWS$NtServicePackUninstallNLSDownlevelMapping$spuninstspuninst.exe"
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00BA-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00BA-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0114-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0114-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:Program FilesCommon FilesMicrosoft SharedOFFICE12Office Setup Controllersetup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->"C:Program FilesCommon FilesMicrosoft SharedOFFICE12Office Setup Controllersetup.exe" /uninstall ENTERPRISER /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->MsiExec.exe /X{91120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Groove MUI (English) 2007-->MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
Microsoft Office Groove Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007-->MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office OneNote MUI (English) 2007-->MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:WINDOWS$NtUninstallWudf01000$spuninstspuninst.exe"
Microsoft VC9 runtime libraries-->MsiExec.exe /I{C4124E95-5061-4776-8D5D-E3D931C778E1}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft WSE 3.0 Runtime-->MsiExec.exe /X{E3E71D07-CD27-46CB-8448-16D4FB29AA13}
MSN Music Assistant-->rundll32 advpack.dll,LaunchINFSection C:WINDOWSINFmsninst.inf,Uninstall
MSN Toolbar-->"C:Program FilesMicrosoftSearch Enhancement PackInstallMgrInstallMgr.exe"
MSN Toolbar-->MsiExec.exe /X{B6EF6DCE-078E-4952-A7FA-352A9C349EB0}
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Nero 6 Enterprise Edition-->C:Program FilesAheadnerouninstallUNNERO.exe /UNINSTALL
netbrdg-->MsiExec.exe /I{4537EA4B-F603-4181-89FB-2953FC695AB1}
NVIDIA Drivers-->C:WINDOWSsystem32nvuninst.exe UninstallGUI
OfotoXMI-->MsiExec.exe /I{B162D0A6-9A1D-4B7C-91A5-88FB48113C45}
PCDADDIN-->MsiExec.exe /I{65D85050-5610-4A91-A3B1-D5C744291AD4}
PCDHELP-->MsiExec.exe /I{C99DCDA4-7407-4F72-A77E-C81C551D0C4E}
QuickTime-->MsiExec.exe /I{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}
RealPlayer-->C:Program FilesCommon FilesRealUpdate_OBr1puninst.exe RealNetworks|RealPlayer|6.0
Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB976321)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7F207DCA-3399-40CB-A968-6E5991B1421A}
Security Update for 2007 Microsoft Office System (KB976321)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {7F207DCA-3399-40CB-A968-6E5991B1421A}
Security Update for 2007 Microsoft Office System (KB978380)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {667A88D1-0369-4070-A62A-70672D68A9BF}
Security Update for 2007 Microsoft Office System (KB978380)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {667A88D1-0369-4070-A62A-70672D68A9BF}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft Office Excel 2007 (KB978382)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {6DE3DABF-0203-426B-B330-7287D1003E86}
Security Update for Microsoft Office Excel 2007 (KB978382)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {6DE3DABF-0203-426B-B330-7287D1003E86}
Security Update for Microsoft Office Outlook 2007 (KB972363)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0}
Security Update for Microsoft Office Outlook 2007 (KB972363)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0}
Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
Security Update for Microsoft Office Publisher 2007 (KB980470)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {34573F17-DADE-4D0D-835F-A54A1DE8AC1F}
Security Update for Microsoft Office Publisher 2007 (KB980470)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {34573F17-DADE-4D0D-835F-A54A1DE8AC1F}
Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
Security Update for Microsoft Office Word 2007 (KB969604)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {CF3D6499-709C-43D0-8908-BC5652656050}
Security Update for Microsoft Office Word 2007 (KB969604)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {CF3D6499-709C-43D0-8908-BC5652656050}
Security Update for Windows Internet Explorer 7 (KB938127)-->"C:WINDOWSie7updatesKB938127-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB942615)-->"C:WINDOWSie7updatesKB942615-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB944533)-->"C:WINDOWSie7updatesKB944533-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB950759)-->"C:WINDOWSie7updatesKB950759-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB953838)-->"C:WINDOWSie7updatesKB953838-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB956390)-->"C:WINDOWSie7updatesKB956390-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB958215)-->"C:WINDOWSie7updatesKB958215-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB960714)-->"C:WINDOWSie7updatesKB960714-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB961260)-->"C:WINDOWSie7updatesKB961260-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB963027)-->"C:WINDOWSie7updatesKB963027-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB969897)-->"C:WINDOWSie7updatesKB969897-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB972260)-->"C:WINDOWSie7updatesKB972260-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB974455)-->"C:WINDOWSie7updatesKB974455-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB976325)-->"C:WINDOWSie7updatesKB976325-IE7spuninstspuninst.exe"
Security Update for Windows Internet Explorer 7 (KB978207)-->"C:WINDOWSie7updatesKB978207-IE7spuninstspuninst.exe"
Security Update for Windows Media Player (KB952069)-->"C:WINDOWS$NtUninstallKB952069_WM9$spuninstspuninst.exe"
Security Update for Windows Media Player (KB954155)-->"C:WINDOWS$NtUninstallKB954155_WM9$spuninstspuninst.exe"
Security Update for Windows Media Player (KB968816)-->"C:WINDOWS$NtUninstallKB968816_WM9$spuninstspuninst.exe"
Security Update for Windows Media Player (KB973540)-->"C:WINDOWS$NtUninstallKB973540_WM9$spuninstspuninst.exe"
Security Update for Windows Media Player 10 (KB911565)-->"C:WINDOWS$NtUninstallKB911565$spuninstspuninst.exe"
Security Update for Windows Media Player 10 (KB917734)-->"C:WINDOWS$NtUninstallKB917734_WMP10$spuninstspuninst.exe"
Security Update for Windows Media Player 10 (KB936782)-->"C:WINDOWS$NtUninstallKB936782_WMP10$spuninstspuninst.exe"
Security Update for Windows Media Player 11 (KB954154)-->"C:WINDOWS$NtUninstallKB954154_WM11$spuninstspuninst.exe"
Security Update for Windows XP (KB923561)-->"C:WINDOWS$NtUninstallKB923561$spuninstspuninst.exe"
Security Update for Windows XP (KB938464)-->"C:WINDOWS$NtUninstallKB938464$spuninstspuninst.exe"
Security Update for Windows XP (KB938464-v2)-->"C:WINDOWS$NtUninstallKB938464-v2$spuninstspuninst.exe"
Security Update for Windows XP (KB941569)-->"C:WINDOWS$NtUninstallKB941569$spuninstspuninst.exe"
Security Update for Windows XP (KB946648)-->"C:WINDOWS$NtUninstallKB946648$spuninstspuninst.exe"
Security Update for Windows XP (KB950760)-->"C:WINDOWS$NtUninstallKB950760$spuninstspuninst.exe"
Security Update for Windows XP (KB950762)-->"C:WINDOWS$NtUninstallKB950762$spuninstspuninst.exe"
Security Update for Windows XP (KB950974)-->"C:WINDOWS$NtUninstallKB950974$spuninstspuninst.exe"
Security Update for Windows XP (KB951066)-->"C:WINDOWS$NtUninstallKB951066$spuninstspuninst.exe"
Security Update for Windows XP (KB951376)-->"C:WINDOWS$NtUninstallKB951376$spuninstspuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"C:WINDOWS$NtUninstallKB951376-v2$spuninstspuninst.exe"
Security Update for Windows XP (KB951698)-->"C:WINDOWS$NtUninstallKB951698$spuninstspuninst.exe"
Security Update for Windows XP (KB951748)-->"C:WINDOWS$NtUninstallKB951748$spuninstspuninst.exe"
Security Update for Windows XP (KB952004)-->"C:WINDOWS$NtUninstallKB952004$spuninstspuninst.exe"
Security Update for Windows XP (KB952954)-->"C:WINDOWS$NtUninstallKB952954$spuninstspuninst.exe"
Security Update for Windows XP (KB953839)-->"C:WINDOWS$NtUninstallKB953839$spuninstspuninst.exe"
Security Update for Windows XP (KB954211)-->"C:WINDOWS$NtUninstallKB954211$spuninstspuninst.exe"
Security Update for Windows XP (KB954459)-->"C:WINDOWS$NtUninstallKB954459$spuninstspuninst.exe"
Security Update for Windows XP (KB954600)-->"C:WINDOWS$NtUninstallKB954600$spuninstspuninst.exe"
Security Update for Windows XP (KB955069)-->"C:WINDOWS$NtUninstallKB955069$spuninstspuninst.exe"
Security Update for Windows XP (KB956391)-->"C:WINDOWS$NtUninstallKB956391$spuninstspuninst.exe"
Security Update for Windows XP (KB956572)-->"C:WINDOWS$NtUninstallKB956572$spuninstspuninst.exe"
Security Update for Windows XP (KB956744)-->"C:WINDOWS$NtUninstallKB956744$spuninstspuninst.exe"
Security Update for Windows XP (KB956802)-->"C:WINDOWS$NtUninstallKB956802$spuninstspuninst.exe"
Security Update for Windows XP (KB956803)-->"C:WINDOWS$NtUninstallKB956803$spuninstspuninst.exe"
Security Update for Windows XP (KB956841)-->"C:WINDOWS$NtUninstallKB956841$spuninstspuninst.exe"
Security Update for Windows XP (KB956844)-->"C:WINDOWS$NtUninstallKB956844$spuninstspuninst.exe"
Security Update for Windows XP (KB957095)-->"C:WINDOWS$NtUninstallKB957095$spuninstspuninst.exe"
Security Update for Windows XP (KB957097)-->"C:WINDOWS$NtUninstallKB957097$spuninstspuninst.exe"
Security Update for Windows XP (KB958644)-->"C:WINDOWS$NtUninstallKB958644$spuninstspuninst.exe"
Security Update for Windows XP (KB958687)-->"C:WINDOWS$NtUninstallKB958687$spuninstspuninst.exe"
Security Update for Windows XP (KB958690)-->"C:WINDOWS$NtUninstallKB958690$spuninstspuninst.exe"
Security Update for Windows XP (KB958869)-->"C:WINDOWS$NtUninstallKB958869$spuninstspuninst.exe"
Security Update for Windows XP (KB959426)-->"C:WINDOWS$NtUninstallKB959426$spuninstspuninst.exe"
Security Update for Windows XP (KB960225)-->"C:WINDOWS$NtUninstallKB960225$spuninstspuninst.exe"
Security Update for Windows XP (KB960715)-->"C:WINDOWS$NtUninstallKB960715$spuninstspuninst.exe"
Security Update for Windows XP (KB960803)-->"C:WINDOWS$NtUninstallKB960803$spuninstspuninst.exe"
Security Update for Windows XP (KB960859)-->"C:WINDOWS$NtUninstallKB960859$spuninstspuninst.exe"
Security Update for Windows XP (KB961371)-->"C:WINDOWS$NtUninstallKB961371$spuninstspuninst.exe"
Security Update for Windows XP (KB961373)-->"C:WINDOWS$NtUninstallKB961373$spuninstspuninst.exe"
Security Update for Windows XP (KB961501)-->"C:WINDOWS$NtUninstallKB961501$spuninstspuninst.exe"
Security Update for Windows XP (KB968537)-->"C:WINDOWS$NtUninstallKB968537$spuninstspuninst.exe"
Security Update for Windows XP (KB969059)-->"C:WINDOWS$NtUninstallKB969059$spuninstspuninst.exe"
Security Update for Windows XP (KB969898)-->"C:WINDOWS$NtUninstallKB969898$spuninstspuninst.exe"
Security Update for Windows XP (KB969947)-->"C:WINDOWS$NtUninstallKB969947$spuninstspuninst.exe"
Security Update for Windows XP (KB970238)-->"C:WINDOWS$NtUninstallKB970238$spuninstspuninst.exe"
Security Update for Windows XP (KB970430)-->"C:WINDOWS$NtUninstallKB970430$spuninstspuninst.exe"
Security Update for Windows XP (KB971468)-->"C:WINDOWS$NtUninstallKB971468$spuninstspuninst.exe"
Security Update for Windows XP (KB971486)-->"C:WINDOWS$NtUninstallKB971486$spuninstspuninst.exe"
Security Update for Windows XP (KB971557)-->"C:WINDOWS$NtUninstallKB971557$spuninstspuninst.exe"
Security Update for Windows XP (KB971633)-->"C:WINDOWS$NtUninstallKB971633$spuninstspuninst.exe"
Security Update for Windows XP (KB971657)-->"C:WINDOWS$NtUninstallKB971657$spuninstspuninst.exe"
Security Update for Windows XP (KB971961)-->"C:WINDOWS$NtUninstallKB971961$spuninstspuninst.exe"
Security Update for Windows XP (KB972270)-->"C:WINDOWS$NtUninstallKB972270$spuninstspuninst.exe"
Security Update for Windows XP (KB973346)-->"C:WINDOWS$NtUninstallKB973346$spuninstspuninst.exe"
Security Update for Windows XP (KB973354)-->"C:WINDOWS$NtUninstallKB973354$spuninstspuninst.exe"
Security Update for Windows XP (KB973507)-->"C:WINDOWS$NtUninstallKB973507$spuninstspuninst.exe"
Security Update for Windows XP (KB973525)-->"C:WINDOWS$NtUninstallKB973525$spuninstspuninst.exe"
Security Update for Windows XP (KB973869)-->"C:WINDOWS$NtUninstallKB973869$spuninstspuninst.exe"
Security Update for Windows XP (KB973904)-->"C:WINDOWS$NtUninstallKB973904$spuninstspuninst.exe"
Security Update for Windows XP (KB974112)-->"C:WINDOWS$NtUninstallKB974112$spuninstspuninst.exe"
Security Update for Windows XP (KB974318)-->"C:WINDOWS$NtUninstallKB974318$spuninstspuninst.exe"
Security Update for Windows XP (KB974392)-->"C:WINDOWS$NtUninstallKB974392$spuninstspuninst.exe"
Security Update for Windows XP (KB974571)-->"C:WINDOWS$NtUninstallKB974571$spuninstspuninst.exe"
Security Update for Windows XP (KB975025)-->"C:WINDOWS$NtUninstallKB975025$spuninstspuninst.exe"
Security Update for Windows XP (KB975467)-->"C:WINDOWS$NtUninstallKB975467$spuninstspuninst.exe"
Security Update for Windows XP (KB975560)-->"C:WINDOWS$NtUninstallKB975560$spuninstspuninst.exe"
Security Update for Windows XP (KB975561)-->"C:WINDOWS$NtUninstallKB975561$spuninstspuninst.exe"
Security Update for Windows XP (KB975713)-->"C:WINDOWS$NtUninstallKB975713$spuninstspuninst.exe"
Security Update for Windows XP (KB977165)-->"C:WINDOWS$NtUninstallKB977165$spuninstspuninst.exe"
Security Update for Windows XP (KB977816)-->"C:WINDOWS$NtUninstallKB977816$spuninstspuninst.exe"
Security Update for Windows XP (KB977914)-->"C:WINDOWS$NtUninstallKB977914$spuninstspuninst.exe"
Security Update for Windows XP (KB978037)-->"C:WINDOWS$NtUninstallKB978037$spuninstspuninst.exe"
Security Update for Windows XP (KB978251)-->"C:WINDOWS$NtUninstallKB978251$spuninstspuninst.exe"
Security Update for Windows XP (KB978262)-->"C:WINDOWS$NtUninstallKB978262$spuninstspuninst.exe"
Security Update for Windows XP (KB978338)-->"C:WINDOWS$NtUninstallKB978338$spuninstspuninst.exe"
Security Update for Windows XP (KB978542)-->"C:WINDOWS$NtUninstallKB978542$spuninstspuninst.exe"
Security Update for Windows XP (KB978601)-->"C:WINDOWS$NtUninstallKB978601$spuninstspuninst.exe"
Security Update for Windows XP (KB978706)-->"C:WINDOWS$NtUninstallKB978706$spuninstspuninst.exe"
Security Update for Windows XP (KB979309)-->"C:WINDOWS$NtUninstallKB979309$spuninstspuninst.exe"
Security Update for Windows XP (KB979683)-->"C:WINDOWS$NtUninstallKB979683$spuninstspuninst.exe"
Security Update for Windows XP (KB980232)-->"C:WINDOWS$NtUninstallKB980232$spuninstspuninst.exe"
Security Update for Windows XP (KB981349)-->"C:WINDOWS$NtUninstallKB981349$spuninstspuninst.exe"
SFR-->MsiExec.exe /I{DB02F716-6275-42E9-B8D2-83BA2BF5100B}
SHASTA-->MsiExec.exe /I{605A4E39-613C-4A12-B56F-DEFBE6757237}
skin0001-->MsiExec.exe /I{5316DFC9-CE99-4458-9AB3-E8726EDE0210}
SKINXSDK-->MsiExec.exe /I{F4A2E7CC-60CA-4AFA-B67F-AD5E58173C3F}
SoundMAX-->RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup "C:Program FilesInstallShield Installation Information{F0A37341-D692-11D4-A984-009027EC0A9C}Setup.exe"
Spybot - Search & Destroy-->"C:Program FilesSpybot - Search & Destroyunins000.exe"
staticcr-->MsiExec.exe /I{8943CE61-53BD-475E-90E1-A580869E98A2}
Superman Returns Screen Saver-->C:WINDOWSSystem32Superman Returns.scr /u
Symantec KB-DocID:2003093015493306-->MsiExec.exe /I{08C5815C-2C6E-44f8-8748-0E61BC9AFB68}
The Sims⢠3 World Adventures-->"C:Program FilesInstallShield Installation Information{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}setup.exe" -runfromtemp -l0x0009 -removeonly
The Sims⢠3-->"C:Program FilesInstallShield Installation Information{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}setup.exe" -runfromtemp -l0x0009 -removeonly
tooltips-->MsiExec.exe /I{E79987F0-0E34-42CC-B8FF-6C860AEEB26A}
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for 2007 Microsoft Office System (KB981715)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {661B3F32-FFE4-4606-AE3A-DFA11DCC0D79}
Update for 2007 Microsoft Office System (KB981715)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {661B3F32-FFE4-4606-AE3A-DFA11DCC0D79}
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:WINDOWSsystem32msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Update for Microsoft Office InfoPath 2007 (KB976416)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {432C5EE4-8096-4FF1-95E1-65219365DFF7}
Update for Microsoft Office InfoPath 2007 (KB976416)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {432C5EE4-8096-4FF1-95E1-65219365DFF7}
Update for Microsoft Office OneNote 2007 (KB980729)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {329050A9-EF80-40F9-B633-74508F54C1FF}
Update for Microsoft Office OneNote 2007 (KB980729)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {329050A9-EF80-40F9-B633-74508F54C1FF}
Update for Outlook 2007 Junk Email Filter (kb981726)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {2C69BACE-1151-41C0-8C8D-F6026D510BD4}
Update for Outlook 2007 Junk Email Filter (kb981726)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {2C69BACE-1151-41C0-8C8D-F6026D510BD4}
Update for Windows Internet Explorer 7 (KB976749)-->"C:WINDOWSie7updatesKB976749-IE7spuninstspuninst.exe"
Update for Windows Internet Explorer 7 (KB980182)-->"C:WINDOWSie7updatesKB980182-IE7spuninstspuninst.exe"
Update for Windows XP (KB951072-v2)-->"C:WINDOWS$NtUninstallKB951072-v2$spuninstspuninst.exe"
Update for Windows XP (KB951978)-->"C:WINDOWS$NtUninstallKB951978$spuninstspuninst.exe"
Update for Windows XP (KB955759)-->"C:WINDOWS$NtUninstallKB955759$spuninstspuninst.exe"
Update for Windows XP (KB955839)-->"C:WINDOWS$NtUninstallKB955839$spuninstspuninst.exe"
Update for Windows XP (KB967715)-->"C:WINDOWS$NtUninstallKB967715$spuninstspuninst.exe"
Update for Windows XP (KB968389)-->"C:WINDOWS$NtUninstallKB968389$spuninstspuninst.exe"
Update for Windows XP (KB971737)-->"C:WINDOWS$NtUninstallKB971737$spuninstspuninst.exe"
Update for Windows XP (KB973687)-->"C:WINDOWS$NtUninstallKB973687$spuninstspuninst.exe"
Update for Windows XP (KB973815)-->"C:WINDOWS$NtUninstallKB973815$spuninstspuninst.exe"
Viewpoint Media Player-->C:Program FilesViewpointViewpoint Media PlayermtsAxInstaller.exe /u
Visual C++ 2008 x86 Runtime - (v9.0.30729)-->MsiExec.exe /X{F333A33D-125C-32A2-8DCE-5C5D14231E27}
Visual C++ 2008 x86 Runtime - v9.0.30729.01-->C:WINDOWSsystem32msiexec.exe /x {F333A33D-125C-32A2-8DCE-5C5D14231E27} /qb+ REBOOTPROMPT=""
VPRINTOL-->MsiExec.exe /I{999D43F4-9709-4887-9B1A-83EBB15A8370}
Windows Imaging Component-->"C:WINDOWS$NtUninstallWIC$spuninstspuninst.exe"
Windows Internet Explorer 8-->"C:WINDOWSie8spuninstspuninst.exe"
Windows Media Format 11 runtime-->"C:Program FilesWindows Media Playerwmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:WINDOWS$NtUninstallWMFDist11$spuninstspuninst.exe"
Windows Media Player 11-->"C:Program FilesWindows Media PlayerSetup_wm.exe" /Uninstall
Windows Media Player 11-->"C:WINDOWS$NtUninstallwmp11$spuninstspuninst.exe"
Windows XP Service Pack 3-->"C:WINDOWS$NtServicePackUninstall$spuninstspuninst.exe"
WIRELESS-->MsiExec.exe /I{F9593CFB-D836-49BC-BFF1-0E669A411D9F}
=====HijackThis Backups=====
O4 - HKUSS-1-5-18..Run: [userinit] C:WINDOWSsystem32sdra64.exe (User 'SYSTEM') [2010-05-28]
O4 - Global Startup: moffice.lnk = C:WINDOWSsystemsgcxcxxaspf080816.exe [2010-05-29]
R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyServer = http=127.0.0.1:5555 [2010-05-30]
======Hosts File======
127.0.0.1 localhost
======System event log======
Computer Name: PERSONAL-PUAFAP
Event Code: 4226
Message: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
Record Number: 113425
Source Name: Tcpip
Time Written: 20100513134700.000000-240
Event Type: warning
User:
Computer Name: PERSONAL-PUAFAP
Event Code: 4226
Message: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
Record Number: 113424
Source Name: Tcpip
Time Written: 20100513061152.000000-240
Event Type: warning
User:
Computer Name: PERSONAL-PUAFAP
Event Code: 4226
Message: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
Record Number: 113423
Source Name: Tcpip
Time Written: 20100513022850.000000-240
Event Type: warning
User:
Computer Name: PERSONAL-PUAFAP
Event Code: 4226
Message: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
Record Number: 113422
Source Name: Tcpip
Time Written: 20100513003624.000000-240
Event Type: warning
User:
Computer Name: PERSONAL-PUAFAP
Event Code: 4226
Message: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
Record Number: 113421
Source Name: Tcpip
Time Written: 20100512232910.000000-240
Event Type: warning
User:
=====Application event log=====
Computer Name: PERSONAL-PUAFAP
Event Code: 5000
Message: EventType offdiag12, P1 a1d01cbc-a934-4622-b8d0-c00f58a503ee07e42f5c-6bf4-4b73-8ae4-93f9ff036280, P2 NIL, P3 NIL, P4 NIL, P5 NIL, P6 NIL, P7 NIL, P8 NIL, P9 NIL, P10 NIL.
Record Number: 20576
Source Name: Microsoft Office 12
Time Written: 20090609181037.000000-240
Event Type: error
User:
Computer Name: PERSONAL-PUAFAP
Event Code: 1002
Message: Hanging application iexplore.exe, version 7.0.6000.16827, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
Record Number: 20568
Source Name: Application Hang
Time Written: 20090601155444.000000-240
Event Type: error
User:
Computer Name: PERSONAL-PUAFAP
Event Code: 101
Message:
Record Number: 20559
Source Name: Automatic LiveUpdate Scheduler
Time Written: 20090529183707.000000-240
Event Type: error
User: PERSONAL-PUAFAPOwner
Computer Name: PERSONAL-PUAFAP
Event Code: 1002
Message: Hanging application iexplore.exe, version 7.0.6000.16827, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
Record Number: 20519
Source Name: Application Hang
Time Written: 20090528232107.000000-240
Event Type: error
User:
Computer Name: PERSONAL-PUAFAP
Event Code: 1517
Message: Windows saved user PERSONAL-PUAFAPOwner registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use.
This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account.
Record Number: 20450
Source Name: Userenv
Time Written: 20090527155831.000000-240
Event Type: warning
User: NT AUTHORITYSYSTEM
======Environment variables======
"ComSpec"=%SystemRoot%system32cmd.exe
"Path"=%systemroot%system32;%systemroot%;%systemroot%system32wbem;C:Program FilesATI TechnologiesATI.ACE;C:Program FilesQuickTimeQTSystem;C:Program FilesQuickTimeQTSystem
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 2 Stepping 9, GenuineIntel
"PROCESSOR_REVISION"=0209
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%TEMP
"TMP"=%SystemRoot%TEMP
"FP_NO_HOST_CHECK"=NO
"asl.log"=Destination=file;OnFirstLog=command,environment
"CLASSPATH"=.;C:Program FilesJavajre6libextQTJava.zip
"QTJAVA"=C:Program FilesJavajre6libextQTJava.zip
-----------------EOF-----------------
GMER 1.0.15.15281 -
http://www.gmer.netRootkit scan 2010-05-31 18:03:15
Windows 5.1.2600 Service Pack 3
Running: gmer.exe; Driver: C:DOCUME~1OwnerLOCALS~1Tempfwtiakog.sys
---- System - GMER 1.0.15 ----
SSDT spyk.sys ZwCreateKey [0xF743A0E0]
SSDT spyk.sys ZwEnumerateKey [0xF7457CA2]
SSDT spyk.sys ZwEnumerateValueKey [0xF7458030]
SSDT spyk.sys ZwOpenKey [0xF743A0C0]
SSDT spyk.sys ZwQueryKey [0xF7458108]
SSDT spyk.sys ZwQueryValueKey [0xF7457F88]
SSDT spyk.sys ZwSetValueKey [0xF745819A]
INT 0x62 ? 898A8BF8
INT 0x63 ? 8973EBF8
INT 0x73 ? 8973EBF8
INT 0x82 ? 898A8BF8
INT 0xA4 ? 8973EBF8
INT 0xB4 ? 8973EBF8
---- Devices - GMER 1.0.15 ----
Device FileSystemNtfs Ntfs 898A71F8
Device DriverNetBT DeviceNetBT_Tcpip_{4D24F5AA-E77D-4F40-81B9-23CEDAD2C3BC} 891411F8
Device Driverusbuhci DeviceUSBPDO-0 8973D1F8
Device Driverusbuhci DeviceUSBPDO-1 8973D1F8
Device Driverusbuhci DeviceUSBPDO-2 8973D1F8
Device Driverusbehci DeviceUSBPDO-3 8971A1F8
Device DriverFtdisk DeviceHarddiskVolume1 899171F8
Device DriverFtdisk DeviceHarddiskVolume2 899171F8
Device DriverCdrom DeviceCdRom0 896001F8
Device DriverCdrom DeviceCdRom1 896001F8
Device Driveratapi DeviceIdeIdePort0 [F783BB40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device Driveratapi DeviceIdeIdeDeviceP0T0L0-4 [F783BB40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device Driveratapi DeviceIdeIdePort1 [F783BB40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device Driveratapi DeviceIdeIdeDeviceP0T1L0-c [F783BB40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device Driveratapi DeviceIdeIdeDeviceP1T0L0-18 [F783BB40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device Driveratapi DeviceIdeIdeDeviceP1T1L0-20 [F783BB40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device DriverNetBT DeviceNetBt_Wins_Export 891411F8
Device DriverNetBT DeviceNetbiosSmb 891411F8
Device Driverusbuhci DeviceUSBFDO-0 8973D1F8
Device Driverusbuhci DeviceUSBFDO-1 8973D1F8
Device FileSystemMRxSmb DeviceLanmanDatagramReceiver 8911F1F8
Device Driverusbuhci DeviceUSBFDO-2 8973D1F8
Device FileSystemMRxSmb DeviceLanmanRedirector 8911F1F8
Device Driverusbehci DeviceUSBFDO-3 8971A1F8
Device DriverFtdisk DeviceFtControl 899171F8
Device FileSystemCdfs Cdfs 895E1500
---- Registry - GMER 1.0.15 ----
Reg HKLMSYSTEMCurrentControlSetServicessptdCfg@s1 771343423
Reg HKLMSYSTEMCurrentControlSetServicessptdCfg@s2 285507792
Reg HKLMSYSTEMCurrentControlSetServicessptdCfg@h0 1
Reg HKLMSYSTEMCurrentControlSetServicessptdCfg19659239224E364682FA4BAF72C53EA4
Reg HKLMSYSTEMCurrentControlSetServicessptdCfg19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLMSYSTEMCurrentControlSetServicessptdCfg19659239224E364682FA4BAF72C53EA4@khjeh 0x0A 0x1A 0x8B 0x0A ...
Reg HKLMSYSTEMControlSet002ServicessptdCfg19659239224E364682FA4BAF72C53EA4 (not active ControlSet)
Reg HKLMSYSTEMControlSet002ServicessptdCfg19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLMSYSTEMControlSet002ServicessptdCfg19659239224E364682FA4BAF72C53EA4@khjeh 0x0A 0x1A 0x8B 0x0A ...
Reg HKLMSYSTEMControlSet003ServicessptdCfg19659239224E364682FA4BAF72C53EA4 (not active ControlSet)
Reg HKLMSYSTEMControlSet003ServicessptdCfg19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLMSYSTEMControlSet003ServicessptdCfg19659239224E364682FA4BAF72C53EA4@khjeh 0x0A 0x1A 0x8B 0x0A ...
---- EOF - GMER 1.0.15 ----