Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Random Computer Restarts


  • Please log in to reply
29 replies to this topic

#1 ever_looking_up

ever_looking_up

  • Members
  • 47 posts
  • OFFLINE
  •  
  • Local time:11:01 PM

Posted 15 June 2006 - 08:41 AM

I need help. My computer has recently begun to feel the need to restart itself often. im not sure what the problem is. I dont think it is my processor overheating because everytime i check it, its only at about 42 degrees C. If ou could help me, that would sure be swell.




Logfile of HijackThis v1.99.1
Scan saved at 8:36:03 AM, on 6/15/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Common Files\AOL\1150242867\ee\AOLSoftware.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\Program Files\iPod\bin\iPodService.exe
c:\program files\common files\aol\1150242867\ee\aim6.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\David\My Documents\Maintainence stuff\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.xanga.com/private/yourhome.aspx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1150242867\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe" /d locale=en-US ee://aol/imApp
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

BC AdBot (Login to Remove)

 


#2 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 17 June 2006 - 04:43 AM

Hi ever_looking_up and Welcome to the Bleeping Computer!

I cant see anything malicious in your HijackThis log.

Lets do a couple of checks to rule out Malware as the source of the restarts.


Go to the HijackThis folder and right click HijackThis.exe

Select rename and rename it to Look.exe

Double Click Look.exe to launch HijackThis

Do a System Scan and Save a Logfile.

Post those results in the next reply.


Download Dr.Web CureIt to the desktop:
ftp://ftp.drweb.com/pub/drweb/cureit/drweb-cureit.exe
  • Doubleclick the drweb-cureit.exe file and Allow to run the express scan
  • This will scan the files currently running in memory and when something is found, click the yes button when it asks you if you want to cure it. This is only a short scan.
  • Once the short scan has finished, mark the drives that you want to scan.
  • Select all drives. A red dot shows which drives have been chosen.
  • Click the green arrow at the right, and the scan will start.
  • Click 'Yes to all' if it asks if you want to cure/move the file.
  • When the scan has finished, in the menu, click file and choose save report list
  • Save the report to your desktop. The report will be called DrWeb.csv
  • Close Dr.Web Cureit.
Post the fresh HijackThis log and the report from CureIt.

#3 ever_looking_up

ever_looking_up
  • Topic Starter

  • Members
  • 47 posts
  • OFFLINE
  •  

Posted 28 June 2006 - 12:46 AM

alright here ya go

heres the Dr Web Cureit Report

A0020512.exe;C:\Documents and Settings\David\DoctorWeb\Quarantine;Probably BACKDOOR.Trojan;;
inst.exe;C:\Documents and Settings\David\DoctorWeb\Quarantine;Probably BACKDOOR.Trojan;;
A0023916.exe;C:\System Volume Information\_restore{A6D8850D-2AE4-4D26-ADA2-1A44425A97C5}\RP13;Probably BACKDOOR.Trojan;;


Logfile of HijackThis v1.99.1
Scan saved at 12:44:47 AM, on 6/28/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\Program Files\Common Files\AOL\1151164548\ee\AOLSoftware.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CA\eTrust Internet Security Suite\caissdt.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
C:\WINDOWS\system32\svchost.exe
c:\program files\common files\aol\1151164548\ee\aim6.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\David\My Documents\Maintainence stuff\Look.exe.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.xanga.com/private/yourhome.aspx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1151164548\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [CaISSDT] "C:\Program Files\CA\eTrust Internet Security Suite\caissdt.exe"
O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe"
O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe" /d locale=en-US ee://aol/imApp
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O4 - Global Startup: KODAK Software Updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {13EC55CF-D993-475B-9ACA-F4A384957956} (Controller Class) - https://www.windowsonecare.com/install/cli/...nSSWebAgent.CAB
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://scan.safety.live.com/resource/downl...lscbase5059.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1151181842500
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Unknown owner - C:\WINDOWS\system32\drivers\KodakCCS.exe (file missing)
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe

anywho. i really have no idea what to do, and this restarting thing is getting muy muy old. any help you can give me would be super

#4 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 28 June 2006 - 04:02 AM

OK,rename look.exe back to HijackThis.exe

No double extensions please

C:\Documents and Settings\David\My Documents\Maintainence stuff\Look.exe.exe

Just HijackThis.exe please.


Let me see a HijackThis Start Up log.

Open HijackThis and Click the "Open Misc Tools Section" tab.

Select Generate StartUpList log and make sure that both Boxes beside it are checked:

Put a check by:
List all minor sections(Full)
and
List Empty Sections(Complete)

It will produce a NotePad Page,I need you to copy the entire contents of that page to the next reply.

#5 ever_looking_up

ever_looking_up
  • Topic Starter

  • Members
  • 47 posts
  • OFFLINE
  •  
  • Local time:11:01 PM

Posted 28 June 2006 - 08:45 AM

Heres that, plus a fresh HJT log. thanks

StartupList report, 6/28/2006, 8:44:28 AM
StartupList version: 1.52.2
Started from : C:\Documents and Settings\David\My Documents\Maintainence stuff\HijackThis.EXE
Detected: Windows XP SP2 (WinNT 5.01.2600)
Detected: Internet Explorer v6.00 SP2 (6.00.2900.2180)
* Using default options
* Including empty and uninteresting sections
* Showing rarely important sections
==================================================

Running processes:

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\Program Files\Common Files\AOL\1151164548\ee\AOLSoftware.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CA\eTrust Internet Security Suite\caissdt.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe
C:\PROGRA~1\SPAMBL~1\Bin\477~1.0\SBInst.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Documents and Settings\David\My Documents\Maintainence stuff\HijackThis.exe

--------------------------------------------------

Listing of startup folders:

Shell folders Startup:
[C:\Documents and Settings\David\Start Menu\Programs\Startup]
*No files*

Shell folders AltStartup:
*Folder not found*

User shell folders Startup:
*Folder not found*

User shell folders AltStartup:
*Folder not found*

Shell folders Common Startup:
[C:\Documents and Settings\All Users\Start Menu\Programs\Startup]
Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
KODAK Software Updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe

Shell folders Common AltStartup:
*Folder not found*

User shell folders Common Startup:
*Folder not found*

User shell folders Alternate Common Startup:
*Folder not found*

--------------------------------------------------

Checking Windows NT UserInit:

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
UserInit = C:\WINDOWS\system32\userinit.exe,

[HKLM\Software\Microsoft\Windows\CurrentVersion\Winlogon]
*Registry key not found*

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
*Registry value not found*

[HKCU\Software\Microsoft\Windows\CurrentVersion\Winlogon]
*Registry key not found*

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run

iTunesHelper = "C:\Program Files\iTunes\iTunesHelper.exe"
QuickTime Task = "C:\Program Files\QuickTime\qttask.exe" -atboottime

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce

SpamBlockerUtility = cmd /c "rmdir "C:\Program Files\SpamBlockerUtility" /s /q"

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnceEx

(Default) =

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices

*Registry key not found*

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServicesOnce

*Registry key not found*

--------------------------------------------------

Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run

Aim6 = "C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe" /d locale=en-US ee://aol/imApp

--------------------------------------------------

Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce

*Registry key not found*

--------------------------------------------------

Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnceEx

*Registry key not found*

--------------------------------------------------

Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\RunServices

*Registry key not found*

--------------------------------------------------

Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\RunServicesOnce

*Registry key not found*

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Run

*Registry key not found*

--------------------------------------------------

Autorun entries from Registry:
HKCU\Software\Microsoft\Windows NT\CurrentVersion\Run

*Registry key not found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
*No subkeys found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce
*No subkeys found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnceEx
*No subkeys found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices
*Registry key not found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServicesOnce
*Registry key not found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
*No subkeys found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce
*Registry key not found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnceEx
*Registry key not found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKCU\Software\Microsoft\Windows\CurrentVersion\RunServices
*Registry key not found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKCU\Software\Microsoft\Windows\CurrentVersion\RunServicesOnce
*Registry key not found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Run
*Registry key not found*

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKCU\Software\Microsoft\Windows NT\CurrentVersion\Run
*Registry key not found*

--------------------------------------------------

File association entry for .EXE:
HKEY_CLASSES_ROOT\exefile\shell\open\command

(Default) = "%1" %*

--------------------------------------------------

File association entry for .COM:
HKEY_CLASSES_ROOT\comfile\shell\open\command

(Default) = "%1" %*

--------------------------------------------------

File association entry for .BAT:
HKEY_CLASSES_ROOT\batfile\shell\open\command

(Default) = "%1" %*

--------------------------------------------------

File association entry for .PIF:
HKEY_CLASSES_ROOT\piffile\shell\open\command

(Default) = "%1" %*

--------------------------------------------------

File association entry for .SCR:
HKEY_CLASSES_ROOT\scrfile\shell\open\command

(Default) = "%1" /S

--------------------------------------------------

File association entry for .HTA:
HKEY_CLASSES_ROOT\htafile\shell\open\command

(Default) = C:\WINDOWS\system32\mshta.exe "%1" %*

--------------------------------------------------

File association entry for .TXT:
HKEY_CLASSES_ROOT\txtfile\shell\open\command

(Default) = %SystemRoot%\system32\NOTEPAD.EXE %1

--------------------------------------------------

Enumerating Active Setup stub paths:
HKLM\Software\Microsoft\Active Setup\Installed Components
(* = disabled by HKCU twin)

[>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
StubPath = C:\WINDOWS\inf\unregmp2.exe /ShowWMP

[>{26923b43-4d38-484f-9b9e-de460746276c}] *
StubPath = %systemroot%\system32\shmgrate.exe OCInstallUserConfigIE

[>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS] *
StubPath = RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP

[>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}] *
StubPath = %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE

[{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] *
StubPath = %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll

[{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] *
StubPath = "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install

[{44BBA842-CC51-11CF-AAFA-00AA00B6015B}] *
StubPath = rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT

[{4b218e3e-bc98-4770-93d3-2731b9329278}] *
StubPath = %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection MarketplaceLinkInstall 896 %systemroot%\inf\ie.inf

[{5945c046-1e7d-11d1-bc44-00c04fd912be}] *
StubPath = rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser

[{6BF52A52-394A-11d3-B153-00C04F79FAA6}] *
StubPath = rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp10.inf,PerUserStub

[{7790769C-0471-11d2-AF11-00C04FA35D02}] *
StubPath = "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install

[{89820200-ECBD-11cf-8B85-00AA005B4340}] *
StubPath = regsvr32.exe /s /n /i:U shell32.dll

[{89820200-ECBD-11cf-8B85-00AA005B4383}] *
StubPath = %SystemRoot%\system32\ie4uinit.exe

[{89B4C1CD-B018-4511-B0A1-5476DBF70820}] *
StubPath = C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install

--------------------------------------------------

Enumerating ICQ Agent Autostart apps:
HKCU\Software\Mirabilis\ICQ\Agent\Apps

*Registry key not found*

--------------------------------------------------

Load/Run keys from C:\WINDOWS\WIN.INI:

load=*INI section not found*
run=*INI section not found*

Load/Run keys from Registry:

HKLM\..\Windows NT\CurrentVersion\WinLogon: load=*Registry value not found*
HKLM\..\Windows NT\CurrentVersion\WinLogon: run=*Registry value not found*
HKLM\..\Windows\CurrentVersion\WinLogon: load=*Registry key not found*
HKLM\..\Windows\CurrentVersion\WinLogon: run=*Registry key not found*
HKCU\..\Windows NT\CurrentVersion\WinLogon: load=*Registry value not found*
HKCU\..\Windows NT\CurrentVersion\WinLogon: run=*Registry value not found*
HKCU\..\Windows\CurrentVersion\WinLogon: load=*Registry key not found*
HKCU\..\Windows\CurrentVersion\WinLogon: run=*Registry key not found*
HKCU\..\Windows NT\CurrentVersion\Windows: load=
HKCU\..\Windows NT\CurrentVersion\Windows: run=*Registry value not found*
HKLM\..\Windows NT\CurrentVersion\Windows: load=*Registry value not found*
HKLM\..\Windows NT\CurrentVersion\Windows: run=*Registry value not found*
HKLM\..\Windows NT\CurrentVersion\Windows: AppInit_DLLs=

--------------------------------------------------

Shell & screensaver key from C:\WINDOWS\SYSTEM.INI:

Shell=*INI section not found*
SCRNSAVE.EXE=*INI section not found*
drivers=*INI section not found*

Shell & screensaver key from Registry:

Shell=Explorer.exe
SCRNSAVE.EXE=C:\WINDOWS\System32\logon.scr
drivers=*Registry value not found*

Policies Shell key:

HKCU\..\Policies: Shell=*Registry key not found*
HKLM\..\Policies: Shell=*Registry value not found*

--------------------------------------------------

Checking for EXPLORER.EXE instances:

C:\WINDOWS\Explorer.exe: PRESENT!

C:\Explorer.exe: not present
C:\WINDOWS\Explorer\Explorer.exe: not present
C:\WINDOWS\System\Explorer.exe: not present
C:\WINDOWS\System32\Explorer.exe: not present
C:\WINDOWS\Command\Explorer.exe: not present
C:\WINDOWS\Fonts\Explorer.exe: not present

--------------------------------------------------

Checking for superhidden extensions:

.lnk: HIDDEN! (arrow overlay: yes)
.pif: HIDDEN! (arrow overlay: yes)
.exe: not hidden
.com: not hidden
.bat: not hidden
.hta: not hidden
.scr: not hidden
.shs: HIDDEN!
.shb: HIDDEN!
.vbs: not hidden
.vbe: not hidden
.wsh: not hidden
.scf: HIDDEN! (arrow overlay: NO!)
.url: HIDDEN! (arrow overlay: yes)
.js: not hidden
.jse: not hidden

--------------------------------------------------

Verifying REGEDIT.EXE integrity:

- Regedit.exe found in C:\WINDOWS
- .reg open command is normal (regedit.exe %1)
- Company name OK: 'Microsoft Corporation'
- Original filename OK: 'REGEDIT.EXE'
- File description: 'Registry Editor'

Registry check passed

--------------------------------------------------

Enumerating Browser Helper Objects:

(no name) - C:\PROGRA~1\SPYBOT~1\SDHelper.dll - {53707962-6F74-2D53-2644-206D7942484F}

--------------------------------------------------

Enumerating Task Scheduler jobs:

*No jobs found*

--------------------------------------------------

Enumerating Download Program Files:

[Controller Class]
InProcServer32 = C:\WINDOWS\system32\WINSSWEBAGENT.DLL
CODEBASE = https://www.windowsonecare.com/install/cli/...nSSWebAgent.CAB

[Windows Live Safety Center Base Module]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\wlscBase.dll
CODEBASE = http://scan.safety.live.com/resource/downl...lscbase5059.cab

[MUWebControl Class]
InProcServer32 = C:\WINDOWS\system32\muweb.dll
CODEBASE = http://update.microsoft.com/microsoftupdat...b?1151181842500

[Shockwave Flash Object]
InProcServer32 = C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx
CODEBASE = http://fpdownload.macromedia.com/pub/shock...ash/swflash.cab

--------------------------------------------------

Enumerating Winsock LSP files:

NameSpace #1: C:\WINDOWS\System32\mswsock.dll
NameSpace #2: C:\WINDOWS\System32\winrnr.dll
NameSpace #3: C:\WINDOWS\System32\mswsock.dll
Protocol #1: C:\WINDOWS\system32\VetRedir.dll
Protocol #2: C:\WINDOWS\system32\VetRedir.dll
Protocol #3: C:\WINDOWS\system32\VetRedir.dll
Protocol #4: C:\WINDOWS\system32\mswsock.dll
Protocol #5: C:\WINDOWS\system32\mswsock.dll
Protocol #6: C:\WINDOWS\system32\mswsock.dll
Protocol #7: C:\WINDOWS\system32\rsvpsp.dll
Protocol #8: C:\WINDOWS\system32\rsvpsp.dll
Protocol #9: C:\WINDOWS\system32\mswsock.dll
Protocol #10: C:\WINDOWS\system32\mswsock.dll
Protocol #11: C:\WINDOWS\system32\mswsock.dll
Protocol #12: C:\WINDOWS\system32\mswsock.dll
Protocol #13: C:\WINDOWS\system32\mswsock.dll
Protocol #14: C:\WINDOWS\system32\mswsock.dll
Protocol #15: C:\WINDOWS\system32\VetRedir.dll

--------------------------------------------------

Enumerating Windows NT/2000/XP services

Microsoft ACPI Driver: system32\DRIVERS\ACPI.sys (system)
Microsoft Kernel Acoustic Echo Canceller: system32\drivers\aec.sys (manual start)
AFD: \SystemRoot\System32\drivers\afd.sys (system)
Alerter: %SystemRoot%\system32\svchost.exe -k LocalService (autostart)
Application Layer Gateway Service: %SystemRoot%\System32\alg.exe (manual start)
AMD K7 Processor Driver: system32\DRIVERS\amdk7.sys (system)
Application Management: %SystemRoot%\system32\svchost.exe -k netsvcs (manual start)
ASP.NET State Service: %SystemRoot%\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (manual start)
RAS Asynchronous Media Driver: system32\DRIVERS\asyncmac.sys (manual start)
Standard IDE/ESDI Hard Disk Controller: system32\DRIVERS\atapi.sys (system)
Ati HotKey Poller: %SystemRoot%\system32\Ati2evxx.exe (autostart)
ATI Smart: C:\WINDOWS\system32\ati2sgag.exe (autostart)
ati2mtag: system32\DRIVERS\ati2mtag.sys (manual start)
ATM ARP Client Protocol: system32\DRIVERS\atmarpc.sys (manual start)
Windows Audio: %SystemRoot%\System32\svchost.exe -k netsvcs (autostart)
Audio Stub Driver: system32\DRIVERS\audstub.sys (manual start)
Background Intelligent Transfer Service: %SystemRoot%\system32\svchost.exe -k netsvcs (autostart)
Computer Browser: %SystemRoot%\system32\svchost.exe -k netsvcs (autostart)
CAISafe: C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe (autostart)
CD-ROM Driver: system32\DRIVERS\cdrom.sys (system)
Indexing Service: %SystemRoot%\system32\cisvc.exe (manual start)
ClipBook: %SystemRoot%\system32\clipsrv.exe (disabled)
.NET Runtime Optimization Service v2.0.50727_X86: C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (manual start)
COM+ System Application: C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235} (manual start)
Cryptographic Services: %SystemRoot%\system32\svchost.exe -k netsvcs (autostart)
DCOM Server Process Launcher: %SystemRoot%\system32\svchost -k DcomLaunch (autostart)
DHCP Client: %SystemRoot%\system32\svchost.exe -k netsvcs (autostart)
Disk Driver: system32\DRIVERS\disk.sys (system)
dlcc_device: C:\WINDOWS\system32\dlcccoms.exe -service (manual start)
Logical Disk Manager Administrative Service: %SystemRoot%\System32\dmadmin.exe /com (manual start)
dmboot: System32\drivers\dmboot.sys (disabled)
dmio: System32\drivers\dmio.sys (disabled)
dmload: System32\drivers\dmload.sys (disabled)
Logical Disk Manager: %SystemRoot%\System32\svchost.exe -k netsvcs (manual start)
Microsoft Kernel DLS Syntheiszer: system32\drivers\DMusic.sys (manual start)
DNS Client: %SystemRoot%\system32\svchost.exe -k NetworkService (autostart)
Microsoft Kernel DRM Audio Descrambler: system32\drivers\drmkaud.sys (manual start)
Error Reporting Service: %SystemRoot%\System32\svchost.exe -k netsvcs (autostart)
Creative AudioPCI (ES1371,ES1373) (WDM): system32\drivers\es1371mp.sys (manual start)
Event Log: %SystemRoot%\system32\services.exe (autostart)
COM+ Event System: C:\WINDOWS\system32\svchost.exe -k netsvcs (manual start)
Fast User Switching Compatibility: %SystemRoot%\System32\svchost.exe -k netsvcs (manual start)
Floppy Disk Controller Driver: system32\DRIVERS\fdc.sys (manual start)
VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver: system32\DRIVERS\fetnd5.sys (manual start)
Floppy Disk Driver: system32\DRIVERS\flpydisk.sys (manual start)
FltMgr: system32\DRIVERS\fltMgr.sys (system)
Volume Manager Driver: system32\DRIVERS\ftdisk.sys (system)
Game Port Enumerator: system32\DRIVERS\gameenum.sys (manual start)
GEARAspiWDM: System32\Drivers\GEARAspiWDM.sys (manual start)
giveio: system32\giveio.sys (system)
Generic Packet Classifier: system32\DRIVERS\msgpc.sys (manual start)
Help and Support: %SystemRoot%\System32\svchost.exe -k netsvcs (autostart)
Human Interface Device Access: %SystemRoot%\System32\svchost.exe -k netsvcs (disabled)
Microsoft HID Class Driver: system32\DRIVERS\hidusb.sys (manual start)
HTTP: System32\Drivers\HTTP.sys (manual start)
HTTP SSL: %SystemRoot%\System32\svchost.exe -k HTTPFilter (manual start)
i8042 Keyboard and PS/2 Mouse Port Driver: system32\DRIVERS\i8042prt.sys (system)
InstallDriver Table Manager: "C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe" (manual start)
CD-Burning Filter Driver: system32\DRIVERS\imapi.sys (system)
IMAPI CD-Burning COM Service: C:\WINDOWS\system32\imapi.exe (manual start)
IPv6 Windows Firewall Driver: system32\DRIVERS\Ip6Fw.sys (manual start)
IP Traffic Filter Driver: system32\DRIVERS\ipfltdrv.sys (manual start)
IP in IP Tunnel Driver: system32\DRIVERS\ipinip.sys (manual start)
IP Network Address Translator: system32\DRIVERS\ipnat.sys (manual start)
iPodService: C:\Program Files\iPod\bin\iPodService.exe (manual start)
IPSEC driver: system32\DRIVERS\ipsec.sys (system)
IR Enumerator Service: system32\DRIVERS\irenum.sys (manual start)
PnP ISA/EISA Bus Driver: system32\DRIVERS\isapnp.sys (system)
Keyboard Class Driver: system32\DRIVERS\kbdclass.sys (system)
Microsoft Kernel Wave Audio Mixer: system32\drivers\kmixer.sys (manual start)
Kodak Camera Connection Software: %SystemRoot%\system32\drivers\KodakCCS.exe (manual start)
Server: %SystemRoot%\system32\svchost.exe -k netsvcs (autostart)
Workstation: %SystemRoot%\system32\svchost.exe -k netsvcs (autostart)
TCP/IP NetBIOS Helper: %SystemRoot%\system32\svchost.exe -k LocalService (autostart)
Messenger: %SystemRoot%\system32\svchost.exe -k netsvcs (disabled)
NetMeeting Remote Desktop Sharing: C:\WINDOWS\system32\mnmsrvc.exe (manual start)
Mouse Class Driver: system32\DRIVERS\mouclass.sys (system)
Mouse HID Driver: system32\DRIVERS\mouhid.sys (manual start)
WebDav Client Redirector: system32\DRIVERS\mrxdav.sys (manual start)
MRXSMB: system32\DRIVERS\mrxsmb.sys (system)
Distributed Transaction Coordinator: C:\WINDOWS\system32\msdtc.exe (manual start)
Windows Installer: C:\WINDOWS\system32\msiexec.exe /V (manual start)
Microsoft Streaming Service Proxy: system32\drivers\MSKSSRV.sys (manual start)
Microsoft Streaming Clock Proxy: system32\drivers\MSPCLOCK.sys (manual start)
Microsoft Streaming Quality Manager Proxy: system32\drivers\MSPQM.sys (manual start)
Microsoft System Management BIOS Driver: system32\DRIVERS\mssmbios.sys (manual start)
Remote Access NDIS TAPI Driver: system32\DRIVERS\ndistapi.sys (manual start)
NDIS Usermode I/O Protocol: system32\DRIVERS\ndisuio.sys (manual start)
Remote Access NDIS WAN Driver: system32\DRIVERS\ndiswan.sys (manual start)
NetBIOS Interface: system32\DRIVERS\netbios.sys (system)
NetBios over Tcpip: system32\DRIVERS\netbt.sys (system)
Network DDE: %SystemRoot%\system32\netdde.exe (disabled)
Network DDE DSDM: %SystemRoot%\system32\netdde.exe (disabled)
Net Logon: %SystemRoot%\system32\lsass.exe (manual start)
Network Connections: %SystemRoot%\System32\svchost.exe -k netsvcs (manual start)
Network Location Awareness (NLA): %SystemRoot%\system32\svchost.exe -k netsvcs (manual start)
NT LM Security Support Provider: %SystemRoot%\system32\lsass.exe (manual start)
Removable Storage: %SystemRoot%\system32\svchost.exe -k netsvcs (manual start)
IPX Traffic Filter Driver: system32\DRIVERS\nwlnkflt.sys (manual start)
IPX Traffic Forwarder Driver: system32\DRIVERS\nwlnkfwd.sys (manual start)
Parallel port driver: system32\DRIVERS\parport.sys (manual start)
PCI Bus Driver: system32\DRIVERS\pci.sys (system)
Plug and Play: %SystemRoot%\system32\services.exe (autostart)
IPSEC Services: %SystemRoot%\system32\lsass.exe (autostart)
WAN Miniport (PPTP): system32\DRIVERS\raspptp.sys (manual start)
Protected Storage: %SystemRoot%\system32\lsass.exe (autostart)
QoS Packet Scheduler: system32\DRIVERS\psched.sys (manual start)
Direct Parallel Link Driver: system32\DRIVERS\ptilink.sys (manual start)
PxHelp20: System32\Drivers\PxHelp20.sys (system)
Remote Access Auto Connection Driver: system32\DRIVERS\rasacd.sys (system)
Remote Access Auto Connection Manager: %SystemRoot%\system32\svchost.exe -k netsvcs (manual start)
WAN Miniport (L2TP): system32\DRIVERS\rasl2tp.sys (manual start)
Remote Access Connection Manager: %SystemRoot%\system32\svchost.exe -k netsvcs (manual start)
Remote Access PPPOE Driver: system32\DRIVERS\raspppoe.sys (manual start)
Direct Parallel: system32\DRIVERS\raspti.sys (manual start)
Rdbss: system32\DRIVERS\rdbss.sys (system)
RDPCDD: System32\DRIVERS\RDPCDD.sys (system)
Remote Desktop Help Session Manager: C:\WINDOWS\system32\sessmgr.exe (manual start)
Digital CD Audio Playback Filter Driver: system32\DRIVERS\redbook.sys (system)
Routing and Remote Access: %SystemRoot%\system32\svchost.exe -k netsvcs (disabled)
Remote Procedure Call (RPC) Locator: %SystemRoot%\system32\locator.exe (manual start)
Remote Procedure Call (RPC): %SystemRoot%\system32\svchost -k rpcss (autostart)
QoS RSVP: %SystemRoot%\system32\rsvp.exe (manual start)
Security Accounts Manager: %SystemRoot%\system32\lsass.exe (autostart)
Smart Card: %SystemRoot%\System32\SCardSvr.exe (manual start)
Task Scheduler: %SystemRoot%\System32\svchost.exe -k netsvcs (autostart)
Secdrv: system32\DRIVERS\secdrv.sys (manual start)
Secondary Logon: %SystemRoot%\System32\svchost.exe -k netsvcs (autostart)
System Event Notification: %SystemRoot%\system32\svchost.exe -k netsvcs (autostart)
Serenum Filter Driver: system32\DRIVERS\serenum.sys (manual start)
Serial port driver: system32\DRIVERS\serial.sys (system)
Windows Firewall/Internet Connection Sharing (ICS): %SystemRoot%\system32\svchost.exe -k netsvcs (autostart)
Shell Hardware Detection: %SystemRoot%\System32\svchost.exe -k netsvcs (autostart)
speedfan: system32\speedfan.sys (system)
Microsoft Kernel Audio Splitter: system32\drivers\splitter.sys (manual start)
Print Spooler: %SystemRoot%\system32\spoolsv.exe (autostart)
System Restore Filter Driver: system32\DRIVERS\sr.sys (system)
System Restore Service: %SystemRoot%\system32\svchost.exe -k netsvcs (autostart)
Srv: system32\DRIVERS\srv.sys (manual start)
SSDP Discovery Service: %SystemRoot%\system32\svchost.exe -k LocalService (manual start)
Windows Image Acquisition (WIA): %SystemRoot%\system32\svchost.exe -k imgsvc (autostart)
Software Bus Driver: system32\DRIVERS\swenum.sys (manual start)
Microsoft Kernel GS Wavetable Synthesizer: system32\drivers\swmidi.sys (manual start)
MS Software Shadow Copy Provider: C:\WINDOWS\system32\dllhost.exe /Processid:{45D032F2-CA3E-4FE1-B76F-3724D9646579} (manual start)
Microsoft Kernel System Audio Device: system32\drivers\sysaudio.sys (manual start)
Performance Logs and Alerts: %SystemRoot%\system32\smlogsvc.exe (manual start)
Telephony: %SystemRoot%\System32\svchost.exe -k netsvcs (manual start)
TCP/IP Protocol Driver: system32\DRIVERS\tcpip.sys (system)
Terminal Device Driver: system32\DRIVERS\termdd.sys (system)
Terminal Services: %SystemRoot%\System32\svchost -k DComLaunch (manual start)
Themes: %SystemRoot%\System32\svchost.exe -k netsvcs (autostart)
Distributed Link Tracking Client: %SystemRoot%\system32\svchost.exe -k netsvcs (autostart)
Microsoft AGPv3.5 Filter: system32\DRIVERS\uagp35.sys (system)
Windows User Mode Driver Framework: C:\WINDOWS\system32\wdfmgr.exe (autostart)
Microcode Update Driver: system32\DRIVERS\update.sys (manual start)
Universal Plug and Play Device Host: %SystemRoot%\system32\svchost.exe -k LocalService (manual start)
Uninterruptible Power Supply: %SystemRoot%\System32\ups.exe (manual start)
Microsoft USB Generic Parent Driver: system32\DRIVERS\usbccgp.sys (manual start)
Microsoft USB 2.0 Enhanced Host Controller Miniport Driver: system32\DRIVERS\usbehci.sys (manual start)
USB2 Enabled Hub: system32\DRIVERS\usbhub.sys (manual start)
Microsoft USB Open Host Controller Miniport Driver: system32\DRIVERS\usbohci.sys (manual start)
Microsoft USB PRINTER Class: system32\DRIVERS\usbprint.sys (manual start)
USB Scanner Driver: system32\DRIVERS\usbscan.sys (manual start)
Microsoft USB Universal Host Controller Miniport Driver: system32\DRIVERS\usbuhci.sys (manual start)
VET Message Service: C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe (autostart)
VgaSave: \SystemRoot\System32\drivers\vga.sys (system)
ViaIde: system32\DRIVERS\viaide.sys (system)
Volume Shadow Copy: %SystemRoot%\System32\vssvc.exe (manual start)
Windows Time: %SystemRoot%\System32\svchost.exe -k netsvcs (autostart)
Remote Access IP ARP Driver: system32\DRIVERS\wanarp.sys (manual start)
Microsoft WINMM WDM Audio Compatibility Driver: system32\drivers\wdmaud.sys (manual start)
WebClient: %SystemRoot%\system32\svchost.exe -k LocalService (autostart)
Windows Management Instrumentation: %systemroot%\system32\svchost.exe -k netsvcs (autostart)
Portable Media Serial Number Service: %SystemRoot%\System32\svchost.exe -k netsvcs (manual start)
WMI Performance Adapter: C:\WINDOWS\system32\wbem\wmiapsrv.exe (manual start)
Security Center: %SystemRoot%\System32\svchost.exe -k netsvcs (autostart)
Automatic Updates: %systemroot%\system32\svchost.exe -k netsvcs (autostart)
Wireless Zero Configuration: %SystemRoot%\System32\svchost.exe -k netsvcs (autostart)
Network Provisioning Service: %SystemRoot%\System32\svchost.exe -k netsvcs (manual start)


--------------------------------------------------

Enumerating Windows NT logon/logoff scripts:
*No scripts set to run*

Windows NT checkdisk command:
BootExecute = autocheck autochk *

Windows NT 'Wininit.ini':
PendingFileRenameOperations: *Registry value not found*

--------------------------------------------------

Enumerating ShellServiceObjectDelayLoad items:

PostBootReminder: C:\WINDOWS\system32\SHELL32.dll
CDBurn: C:\WINDOWS\system32\SHELL32.dll
WebCheck: C:\WINDOWS\system32\webcheck.dll
SysTray: C:\WINDOWS\system32\stobject.dll

--------------------------------------------------
Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\policies\Explorer\Run

*Registry key not found*

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\policies\Explorer\Run

*Registry key not found*

--------------------------------------------------

End of report, 31,314 bytes
Report generated in 0.078 seconds

Command line options:
/verbose - to add additional info on each section
/complete - to include empty sections and unsuspicious data
/full - to include several rarely-important sections
/force9x - to include Win9x-only startups even if running on WinNT
/forcent - to include WinNT-only startups even if running on Win9x
/forceall - to include all Win9x and WinNT startups, regardless of platform
/history - to list version history only




Logfile of HijackThis v1.99.1
Scan saved at 8:44:06 AM, on 6/28/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\Program Files\Common Files\AOL\1151164548\ee\AOLSoftware.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CA\eTrust Internet Security Suite\caissdt.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe
C:\PROGRA~1\SPAMBL~1\Bin\477~1.0\SBInst.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Documents and Settings\David\My Documents\Maintainence stuff\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.xanga.com/private/yourhome.aspx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1151164548\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [CaISSDT] "C:\Program Files\CA\eTrust Internet Security Suite\caissdt.exe"
O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe"
O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe"
O4 - HKLM\..\Run: [BearShare] "C:\Program Files\BearShare\BearShare.exe" /pause
O4 - HKLM\..\RunOnce: [SpamBlockerUtility] cmd /c "rmdir "C:\Program Files\SpamBlockerUtility" /s /q"
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe" /d locale=en-US ee://aol/imApp
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O4 - Global Startup: KODAK Software Updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {13EC55CF-D993-475B-9ACA-F4A384957956} (Controller Class) - https://www.windowsonecare.com/install/cli/...nSSWebAgent.CAB
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://scan.safety.live.com/resource/downl...lscbase5059.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1151181842500
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Unknown owner - C:\WINDOWS\system32\drivers\KodakCCS.exe (file missing)
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe

#6 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 28 June 2006 - 04:21 PM

Nothing alarming there.


Please run the F-Secure Online Scanner

Note: This Scanner is for Internet Explorer Only!
  • Follow the Instruction on the F-Secure page for proper installation.
  • Accept the License Agreement.
  • Once the ActiveX installs,Click Full System Scan
  • Once the download completes,the scan will begin automatically.
  • The scan will take some time to finish,so please be patient.
  • When the scan completes, click the Automatic cleaning (recommended) button.
  • Click the Show Report button and Copy&Paste the entire report in your next reply.


#7 ever_looking_up

ever_looking_up
  • Topic Starter

  • Members
  • 47 posts
  • OFFLINE
  •  

Posted 02 July 2006 - 03:27 PM

Heres that report. i had to run the scanner twice because my coputer froze in the middle oftrying to cure the stuff the first time, then there wasnt anything the second. im not sure what that means but...



Scanning Report
Sunday, July 02, 2006 15:00:00 - 15:22:02
Computer name: DUMB
Scanning type: Scan system for viruses, rootkits, spyware
Target: C:\


--------------------------------------------------------------------------------

Result: 0 malware found

--------------------------------------------------------------------------------

Statistics
Scanned:
Files: 14298
System: 3748
Not scanned: 70
Actions:
Disinfected: 0
Renamed: 0
Deleted: 0
None: 0
Submitted: 0
Files not scanned:
! Cookie

--------------------------------------------------------------------------------

Options
Scanning engines:
F-Secure AVP: 6.0.171, 2006-07-01
F-Secure Libra: 2.4.1, 2006-06-30
F-Secure Orion: 1.2.37, 2006-06-30
F-Secure Blacklight: 1.0.31, 0000-00-00
F-Secure Pegasus: 1.19.0, 2006-05-13
F-Secure Draco: 1.0.35, 2006-06-29
Scanning options:
Scan defined files: COM EXE SYS OV? BIN SCR DLL SHS HTM HTML HTT VBS JS INF VXD DO? XL? RTF CPL WIZ HTA PP? PWZ P?T MSO PIF . ACM ASP AX CNV CSC DRV INI MDB MPD MPP MPT OBD OBT OCX PCI TLB TSP WBK WBT WPC WSH VWP WML BOO HLP TD0 TT6 MSG ASD JSE VBE WSC CHM EML PRC SHB LNK WSF {* PDF ZL? XML ZIP XXX
Use Advanced heuristics

--------------------------------------------------------------------------------

Copyright 1998-2006 Product support |Send virus sample to F-Secure
F-Secure assumes no responsibility for material created or published by third parties that F-Secure World Wide Web pages have a link to. Unless you have clearly stated otherwise, by submitting material to any of our servers, for example by E-mail or via our F-Secure's CGI E-mail, you agree that the material you make available may be published in the F-Secure World Wide Pages or hard-copy publications. You will reach F-Secure public web site by clicking on underlined links. While doing this, your access will be logged to our private access statistics with your domain name.This information will not be given to any third party. You agree not to take action against us in relation to material that you submit. Unless you have clearly stated otherwise, by submitting material you warrant that F-Secure may incorporate any concepts described in it in the F-Secure products/publications without liability.





anyway. sometimes, after it restarts, i send the error report to micrsoft and the send me to this website:

http://oca.microsoft.com/en/response.aspx?...0cd4&SID=11



if that helps you any. thanks for all your help.

#8 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 02 July 2006 - 05:46 PM

Have you ever used a program called Image Surfer?



Download GMER from Here

Right Click the Zip and Select "Extract All"

Double Click gmer.exe to launch the program.

Click on the Rootkit Tab and then click Scan.

It takes a while to run,once complete,copy the results to notepad and save them somewhere safe.

Post those results in the next reply.

#9 ever_looking_up

ever_looking_up
  • Topic Starter

  • Members
  • 47 posts
  • OFFLINE
  •  
  • Local time:11:01 PM

Posted 07 July 2006 - 03:15 PM

im gonna have to cut the gmer list into 3 part because alltogether it exceeds the maximum character limit



GMER 1.0.10.10122 - http://www.gmer.net
Rootkit 2006-07-07 15:04:30
Windows 5.1.2600 Service Pack 2


---- Devices - GMER 1.0.10 ----

Device \FileSystem\Fastfat \Fat IRP_MJ_CREATE A7AFFC8A

---- Registry - GMER 1.0.10 ----

Reg \Registry\USER\S-1-5-21-515967899-73586283-682003330-1004\Control Panel\Appearance\New Schemes\Current Settings SaveNoVisualStyle\Sizes\0@Col?vk??

---- Files - GMER 1.0.10 ----

File C:\Documents and Settings\Gary\Application Data
File C:\Documents and Settings\Gary\Application Data\acccore
File C:\Documents and Settings\Gary\Application Data\acccore\caches
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\0
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\0\0201D20472
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\0\2B00000AEA
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\0\2B00001930
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\0201D246DA
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\0201D2487F
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\0201E08D4D
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\0201E08FD8
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\0202564111
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\0CE1C67997FB92BFBC630553A083BAE1
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\2B00000A95
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\2B00001FB4
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\2B0000207E
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\2B0000290C
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\2FB1E96007AE313A3EEBD1EAC773E8F8
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\319F9B134D499C75DCE9E3720E8FACDC
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\3A584E9AC62A5EBE8C4DF4A09DE05D2C
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\569601FD5D62ECD4D32CCDEF4929BFE5
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\5FE6640DF0DF1B0DC6E31D2E96393535
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\A2C0C81D633F774F00B538BC9B509698
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\A354A7D82A1D1A66DAD959E54964C66C
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1\CD2F3662757765E8D9F352253E2124B6
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1024
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1024\0201E05FD0
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\1024\2B000001E4
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\129
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\129\0201D215F1
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\129\0201D2F178
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\129\2B00001444
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\129\2B0000144F
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\131
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\131\0201D21A12
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\131\2B000009C6
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\131\2B00000A20
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\3
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\3\0201D20D85
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\3\0201D21A12
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\3\0201E07226
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\3\05696D73656E64
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\3\2B000009C6
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\3\2B00000A20
File C:\Documents and Settings\Gary\Application Data\acccore\caches\bart\3\2B0000180B
File C:\Documents and Settings\Gary\Application Data\acccore\caches\users
File C:\Documents and Settings\Gary\Application Data\acccore\caches\users\ihavemoney2190
File C:\Documents and Settings\Gary\Application Data\acccore\caches\users\ihavemoney2190\buddyicon
File C:\Documents and Settings\Gary\Application Data\acccore\caches\users\ihavemoney2190\feedbag
File C:\Documents and Settings\Gary\Application Data\acccore\caches\users\willyfufu2
File C:\Documents and Settings\Gary\Application Data\acccore\caches\users\willyfufu2\buddyicon
File C:\Documents and Settings\Gary\Application Data\acccore\caches\users\willyfufu2\feedbag
File C:\Documents and Settings\Gary\Application Data\acccore\nss
File C:\Documents and Settings\Gary\Application Data\Apple Computer
File C:\Documents and Settings\Gary\Application Data\Apple Computer\iTunes
File C:\Documents and Settings\Gary\Application Data\Apple Computer\iTunes\CD Info.cidb
File C:\Documents and Settings\Gary\Application Data\Apple Computer\iTunes\iTunes Plug-ins
File C:\Documents and Settings\Gary\Application Data\Apple Computer\iTunes\iTunes.pref
File C:\Documents and Settings\Gary\Application Data\Apple Computer\QuickTime
File C:\Documents and Settings\Gary\Application Data\Apple Computer\QuickTime\QTPlayerSession.xml
File C:\Documents and Settings\Gary\Application Data\desktop.ini
File C:\Documents and Settings\Gary\Application Data\Identities
File C:\Documents and Settings\Gary\Application Data\Identities\{A6806008-AC5E-4B1B-A394-21AE6A19BA4C}
File C:\Documents and Settings\Gary\Application Data\Macromedia
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\aolcdn.com
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\aolcdn.com\_media
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\aolcdn.com\_media\aolvideo30
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\aolcdn.com\_media\aolvideo30\rootmovie351.swf
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\aolcdn.com\_media\aolvideo30\rootmovie351.swf\videoSO.sol
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\static.userplane.com
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\static.userplane.com\presence
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\static.userplane.com\presence\m
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\static.userplane.com\presence\m\presence.swf
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\static.userplane.com\presence\m\presence.swf\presence.sol
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\video.google.com
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\video.google.com\googleplayer.swf
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\video.google.com\googleplayer.swf\mediaPlayerUserSettings.sol
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\www.youtube.com
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\www.youtube.com\soundData.sol
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\yourspace.50webs.org
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\#SharedObjects\39HHXGRZ\yourspace.50webs.org\myspace.sol
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aolcdn.com
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aolcdn.com\settings.sol
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.userplane.com
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.userplane.com\settings.sol
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.google.com
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.google.com\settings.sol
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.youtube.com
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.youtube.com\settings.sol
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#yourspace.50webs.org
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#yourspace.50webs.org\settings.sol
File C:\Documents and Settings\Gary\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol
File C:\Documents and Settings\Gary\Application Data\Microsoft
File C:\Documents and Settings\Gary\Application Data\Microsoft\Address Book
File C:\Documents and Settings\Gary\Application Data\Microsoft\Address Book\Gary.wab
File C:\Documents and Settings\Gary\Application Data\Microsoft\Address Book\Gary.wab~
File C:\Documents and Settings\Gary\Application Data\Microsoft\Credentials
File C:\Documents and Settings\Gary\Application Data\Microsoft\Credentials\S-1-5-21-515967899-73586283-682003330-1005
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\Content
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\Content\486CC6AFD08942336C61FCD401C4A1D1
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\Content\60E31627FDA0A46932B0E5948949F2A5
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\Content\74BFD122C0875EC75DBE5C6DB4C59019
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\Content\A8FABA189DB7D25FBA7CAC806625FD30
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\Content\E6024EAC88E6B6165D49FE3C95ADD735
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\Content\EE7DFEE2CA8CFB0F905ED5FA70B3CD71
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\MetaData
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\MetaData\486CC6AFD08942336C61FCD401C4A1D1
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\MetaData\60E31627FDA0A46932B0E5948949F2A5
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\MetaData\74BFD122C0875EC75DBE5C6DB4C59019
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\MetaData\A8FABA189DB7D25FBA7CAC806625FD30
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\MetaData\E6024EAC88E6B6165D49FE3C95ADD735
File C:\Documents and Settings\Gary\Application Data\Microsoft\CryptnetUrlCache\MetaData\EE7DFEE2CA8CFB0F905ED5FA70B3CD71
File C:\Documents and Settings\Gary\Application Data\Microsoft\Crypto
File C:\Documents and Settings\Gary\Application Data\Microsoft\Crypto\RSA
File C:\Documents and Settings\Gary\Application Data\Microsoft\Crypto\RSA\S-1-5-21-515967899-73586283-682003330-1005
File C:\Documents and Settings\Gary\Application Data\Microsoft\Crypto\RSA\S-1-5-21-515967899-73586283-682003330-1005\0f54f3851c0b5f61c65690a575a6cebb_13bb9587-6749-4c66-b568-2948f2f8b08a
File C:\Documents and Settings\Gary\Application Data\Microsoft\Crypto\RSA\S-1-5-21-515967899-73586283-682003330-1005\360e9316558dc5fc61c74119e7e1abb7_13bb9587-6749-4c66-b568-2948f2f8b08a
File C:\Documents and Settings\Gary\Application Data\Microsoft\Crypto\RSA\S-1-5-21-515967899-73586283-682003330-1005\83aa4cc77f591dfc2374580bbd95f6ba_13bb9587-6749-4c66-b568-2948f2f8b08a
File C:\Documents and Settings\Gary\Application Data\Microsoft\HTML Help
File C:\Documents and Settings\Gary\Application Data\Microsoft\HTML Help\hh.dat
File C:\Documents and Settings\Gary\Application Data\Microsoft\Internet Explorer
File C:\Documents and Settings\Gary\Application Data\Microsoft\Internet Explorer\brndlog.bak
File C:\Documents and Settings\Gary\Application Data\Microsoft\Internet Explorer\brndlog.txt
File C:\Documents and Settings\Gary\Application Data\Microsoft\Internet Explorer\Desktop.htt
File C:\Documents and Settings\Gary\Application Data\Microsoft\Internet Explorer\Quick Launch
File C:\Documents and Settings\Gary\Application Data\Microsoft\Internet Explorer\Quick Launch\desktop.ini
File C:\Documents and Settings\Gary\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
File C:\Documents and Settings\Gary\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
File C:\Documents and Settings\Gary\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
File C:\Documents and Settings\Gary\Application Data\Microsoft\Media Player
File C:\Documents and Settings\Gary\Application Data\Microsoft\Media Player\0022D06A.wpl
File C:\Documents and Settings\Gary\Application Data\Microsoft\Protect
File C:\Documents and Settings\Gary\Application Data\Microsoft\Protect\CREDHIST
File C:\Documents and Settings\Gary\Application Data\Microsoft\Protect\S-1-5-21-515967899-73586283-682003330-1005
File C:\Documents and Settings\Gary\Application Data\Microsoft\Protect\S-1-5-21-515967899-73586283-682003330-1005\34bd2fd9-553d-4d28-949b-fd885c0dc632
File C:\Documents and Settings\Gary\Application Data\Microsoft\Protect\S-1-5-21-515967899-73586283-682003330-1005\Preferred
File C:\Documents and Settings\Gary\Application Data\Microsoft\SystemCertificates
File C:\Documents and Settings\Gary\Application Data\Microsoft\SystemCertificates\My
File C:\Documents and Settings\Gary\Application Data\Microsoft\SystemCertificates\My\Certificates
File C:\Documents and Settings\Gary\Application Data\Microsoft\SystemCertificates\My\CRLs
File C:\Documents and Settings\Gary\Application Data\Microsoft\SystemCertificates\My\CTLs
File C:\Documents and Settings\Gary\Application Data\Microsoft\Windows
File C:\Documents and Settings\Gary\Application Data\Microsoft\Windows\Themes
File C:\Documents and Settings\Gary\Application Data\Microsoft\Windows\Themes\Custom.theme
File C:\Documents and Settings\Gary\Application Data\SpamBlocker
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\IESkins
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\HostOI
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\HostOI\dynamic
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\HostOL
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\HostOL\dynamic
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1056318.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1056760.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1066422.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\122092.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\221540.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\2398764.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\2883915.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\2896152.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\342101.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3467152.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3732112.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\625696.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\694907.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\737654.sdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\ASPL1.dat
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\domains.txt
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\hstat
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\hstat\340f.dat
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\10582
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\10807
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1424
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1458
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\16087
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\16204
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\16210
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\16211
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\17136
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\18721
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\19650
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\20570
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\20613
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\23066
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\23607
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\243256
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\26664
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\27503
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\28207
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\28437
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\290893
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\29115
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\297534
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\30036
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\32137
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\33697
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\34118
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\34156
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\34237
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\34374
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\35000
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\350397
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\35047
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\35644
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\361427
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\37602
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\38733
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\38742
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\44228
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\44306
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\44878
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\4546
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\45833
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\49609
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\516057
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\51824
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\52253
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\52335
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\528235
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\5508
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\567746
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\569524
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\56962
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\59234
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\59283
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\59844
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\59923
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\608765
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\61212
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\61779
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\6304
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\63172
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\64402
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\64429
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\64517
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\65933
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\66836
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\66855
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\67226
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\673444
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\68016
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\73670
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\742099
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\74398
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\74576
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\76113
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\79132
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\79805
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\79977
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\80670
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\82011
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\82287
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\82292
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\82511
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\84876
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\85062
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\86379
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\86416
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\86423
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBl

#10 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 07 July 2006 - 06:46 PM

Do you have the entire log copied on a notepad page?


I want you to run this little utility to see if there are any unwanted intruders.
http://www.greatis.com/unhackme/download.htm

Right Click the zip folder and select Extract All.

Install and launch the program.

Click Check Me Now.

Remove anything it finds and if possible,save a log of all activities.


Post back and let me know what it finds.

#11 ever_looking_up

ever_looking_up
  • Topic Starter

  • Members
  • 47 posts
  • OFFLINE
  •  

Posted 09 July 2006 - 01:10 PM

File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\88858
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\89075
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\90358
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\90711
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\93568
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\93899
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\93921
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95363
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95610
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95645
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95716
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\96638
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\9672
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\97134
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\9770
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\97734
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\99008
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\9935
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\ustat
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\ustat\340f.dat
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\ads.cdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\btntrans.idx
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\btntrans1.dat
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\business_promo.htm
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\buttondir.txt
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\components.cdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\default.cdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz1.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz10.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz11.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz12.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz13.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz14.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz15.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz16.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz17.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz18.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz19.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz2.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz20.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz3.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz4.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz5.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz6.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz7.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz8.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz9.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_categorize.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_comparison.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_em_PROFL_CA_flow_b_IEB.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_explorer-Mails.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_explorer-people.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_fastutilities.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_favorites.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_Games.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_Hide.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_hotbarcom.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_Hotmail.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_hsskin.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_jemster.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_jemsterie.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_jemsteruk.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_jobsearch.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_Mails.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_new.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_premium.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_reun.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_ringtones.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_SearchBoxTrapper.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_searchfor.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_searchgo.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_weather.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_yellowpages.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_1000.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_2000.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_3000.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_bar.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_bbar1.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_logos.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_other.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_weather.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\email-def-511724-9595.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\email-t1-bg.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\hotbar-premium-hotbar-premium.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\hotbar-premium.cdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\hotbar_promo.htm
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\icons2.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\keywords.idx
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\keywords1.dat
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\layout.cdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\linkpathlegal.txt
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\progress.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\sales_buttons.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\s_icons_buttons.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\t2_bg.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\theweb.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\top7.cdf
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Top7_theweb.mnu
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\tsd_bg.res
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\ads.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\BtnTrans.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\BtnTrans1.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\business_promo.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\buttondir.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\default.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_1000.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_2000.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_3000.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_bar.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_bbar1.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_logos.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_other.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_weather.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\email-t1-bg.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\hotbar-premium.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\hotbar_promo.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\icons2.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\keywords.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\keywords1.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\layout.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\linkpathlegal.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\progress.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\sales_buttons.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\s_icons_buttons.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\t2_bg.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\top7.xip
File C:\Documents and Settings\Gary\Application Data\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\tsd_bg.xip
File C:\Documents and Settings\Gary\Cookies
File C:\Documents and Settings\Gary\Cookies\gary@01.presence.userplane[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@02.presence.userplane[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@2o7[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@99[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@ad.yieldmanager[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@adrevolver[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@adrevolver[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@ads.beamfile[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@advertising[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@ad[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@atdmt[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@atwola[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@azjmp[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@bearshare[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@bravenet[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@casalemedia[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@classmates[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@content.licenseacquisition[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@counter3.sextracker[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@data4.perf.overture[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@dehp.myspace[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@delb.myspace[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@demr.myspace[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@desk.myspace[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@doubleclick[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@edge.ru4[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@fastclick[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@google.bearshare[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@google[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@img.wmp10.elsitiodc[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@live365[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@media.fastclick[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@media.licenseacquisition[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@mediaplex[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@my.screenname.aol[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@myspace[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@naughtybank[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@network.realmedia[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@perf.overture[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@piczo[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@questionmarket[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@realmedia[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@serviceswitching[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@serving-sys[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@sextracker[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@statcounter[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@st[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@st[3].txt
File C:\Documents and Settings\Gary\Cookies\gary@st[4].txt
File C:\Documents and Settings\Gary\Cookies\gary@st[5].txt
File C:\Documents and Settings\Gary\Cookies\gary@st[6].txt
File C:\Documents and Settings\Gary\Cookies\gary@st[7].txt
File C:\Documents and Settings\Gary\Cookies\gary@tradedoubler[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@trafficmp[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@trakzor[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@tribalfusion[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@www.bearshare[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@www.camelclips[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@www.dreammovies[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@www.gonzo-movies[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@www.juggworld[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@www.magicmovies[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@www.otbm[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@www.yahoo[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@yahoo[2].txt
File C:\Documents and Settings\Gary\Cookies\gary@z1.adserver[1].txt
File C:\Documents and Settings\Gary\Cookies\gary@zedo[1].txt
File C:\Documents and Settings\Gary\Cookies\index.dat

#12 ever_looking_up

ever_looking_up
  • Topic Starter

  • Members
  • 47 posts
  • OFFLINE
  •  
  • Local time:11:01 PM

Posted 09 July 2006 - 01:12 PM

File C:\Documents and Settings\Gary\Desktop
File C:\Documents and Settings\Gary\Desktop\AIM Triton.lnk
File C:\Documents and Settings\Gary\Desktop\BearShare Downloads.lnk
File C:\Documents and Settings\Gary\Desktop\BearShare.lnk
File C:\Documents and Settings\Gary\Desktop\Internet.lnk
File C:\Documents and Settings\Gary\Desktop\iTunes.lnk
File C:\Documents and Settings\Gary\Favorites
File C:\Documents and Settings\Gary\Favorites\Desktop.ini
File C:\Documents and Settings\Gary\Favorites\Links
File C:\Documents and Settings\Gary\Favorites\Links\Customize Links.url
File C:\Documents and Settings\Gary\Favorites\Links\Free Hotmail.url
File C:\Documents and Settings\Gary\Favorites\Links\Windows Marketplace.url
File C:\Documents and Settings\Gary\Favorites\Links\Windows Media.url
File C:\Documents and Settings\Gary\Favorites\Links\Windows.url
File C:\Documents and Settings\Gary\Favorites\MSN.com.url
File C:\Documents and Settings\Gary\Favorites\Radio Station Guide.url
File C:\Documents and Settings\Gary\Incomplete
File C:\Documents and Settings\Gary\Incomplete\downloads.bak
File C:\Documents and Settings\Gary\Incomplete\downloads.dat
File C:\Documents and Settings\Gary\Incomplete\T-103044572-Bookworm bleepes - Cytherea - 7 squirting orgasms!.mpeg
File C:\Documents and Settings\Gary\Incomplete\T-105163600-Girls Gone Wild - College Girls Exposed.mpg
File C:\Documents and Settings\Gary\Incomplete\T-109079599-BangBros - Up very cute blond High School Girl's very short loose blue mini Skirt white thong panties nice ass.mpg
File C:\Documents and Settings\Gary\Incomplete\T-17000627-Naughty America - Teenager in the wood young teen sex bleep blowjob anal ass sodomy pussy adult porn cock suck gag.mpg
File C:\Documents and Settings\Gary\Incomplete\T-18821120-Bang bus - Kimberly - Bangbus Naughty College School Girls.mpeg
File C:\Documents and Settings\Gary\Incomplete\T-223563932-Mikes Apartment - Melanie.mpeg
File C:\Documents and Settings\Gary\Incomplete\T-26537988-Masturbation - (Grade B--) homemade - young woman on a bed squirts over a towel - she seems to be enjoying herself.mpg
File C:\Documents and Settings\Gary\Incomplete\T-279142404-Naughty America - Naughty Office - Tory Lane.mpeg
File C:\Documents and Settings\Gary\Incomplete\T-55584816-Ideepthroat - Heather Brooke - Teaching Schoolgirl Lisa How To Deepthroat Assbleep.mpg
File C:\Documents and Settings\Gary\Incomplete\T-57444352-Jenna Jameson - Sex In Public Places.mpg
File C:\Documents and Settings\Gary\Incomplete\T-59752452-Nikki Nova - Blonde - orgy screw.mpg
File C:\Documents and Settings\Gary\Incomplete\T-622097616-ggw girls gone wild - girl power 2004.mpg
File C:\Documents and Settings\Gary\Incomplete\T-7024940-Inside The VIP - Hidden bar bathroom camera - Guy bleeps Stripper in Backroom VIP Party.mpeg
File C:\Documents and Settings\Gary\Incomplete\T-70586841-Girls Gone Wild - Lesbian House Party.mpg
File C:\Documents and Settings\Gary\Incomplete\T-731052032-Girls.Gone.Wild.Dormroom.Fantasies.2006.avi
File C:\Documents and Settings\Gary\Incomplete\T-735614976-Girls Gone Wild Ultimate Rush www.tha-industry.net.avi
File C:\Documents and Settings\Gary\Incomplete\T-85903838-BookWorm bleepes - Patricia Petite.mpg
File C:\Documents and Settings\Gary\Incomplete\T-8916252-Straylight Run - 04 - Hands In The Sky (Big Shot).mp3
File C:\Documents and Settings\Gary\Incomplete\T-98085176-Naughty Office - Eva Angelina.mpg
File C:\Documents and Settings\Gary\Local Settings
File C:\Documents and Settings\Gary\Local Settings\Application Data
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\gary
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\gary\metrics
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\gary\metrics\cmls_cs.tlv
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\gary\metrics\cmls_ms.tlv
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\gary\metrics\data
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\gary\metrics\held
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\gary\metrics\rawdata
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\gary\metrics\rawheld
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\gary\metrics\rawsent
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\gary\metrics\sent
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\gary\profile.dat
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\ihavemoney2190
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\ihavemoney2190\cls
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\ihavemoney2190\cls\common.cls
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\ihavemoney2190\profile.dat
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\willyfufu2
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\willyfufu2\cls
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\willyfufu2\cls\common.cls
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\1150242867\willyfufu2\profile.dat
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00001
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00002
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00003
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00004
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00005
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00006
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00007
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00008
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00009
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00010
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00011
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00012
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00013
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00014
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00015
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00016
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00017
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00018
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00019
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00020
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00021
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00022
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00023
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00024
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00025
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00026
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00027
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00028
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00029
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00030
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00031
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00032
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00033
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00034
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00035
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00036
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00037
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00038
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00039
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00040
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00041
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00042
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00043
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00044
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00045
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00046
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00047
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00048
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00049
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00050
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00051
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00052
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00053
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00054
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00055
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00056
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00057
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00058
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00059
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00060
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00061
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00062
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00063
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00064
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00065
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00066
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00067
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00068
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00069
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00070
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00071
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00072
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00073
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00074
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00075
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00076
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00077
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00078
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00079
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00080
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00081
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00082
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00083
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00084
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00085
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00086
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00087
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00088
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00089
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00090
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00091
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00092
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00093
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00094
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00095
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00096
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00097
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00098
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00099
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00100
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00101
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00102
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00103
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00104
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00105
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00106
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00107
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00108
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00109
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00110
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00111
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00112
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00113
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00114
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00115
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00116
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00117
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00118
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00119
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00120
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00121
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00122
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00123
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00124
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00125
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00126
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00127
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00128
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00129
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00130
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00131
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\clsFolder.000\cls00132
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\common.cls
File C:\Documents and Settings\Gary\Local Settings\Application Data\AOL\UserProfiles\All Users\profile.dat
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\iTunes
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\iTunes\iTunes.pref
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\iTunes\thumbnails
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\00
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\02
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\04
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\06
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\07
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\08
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\09
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\10
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\12
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\13
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\14
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\14\0e91fbc5-11cbe457-e8414b2c-738fd8f6.qtch
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\15
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\00
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\01
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\04
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\06
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\07
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\08
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\10
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\11
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\12
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\13
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\14
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\15
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\00
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\02
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\03
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\04
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\05
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\06
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\06\26366ffe-63bedcb1-c14ed2e5-fbb5674e.qtch
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\07
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\09
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\10
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\14
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\02\15
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\03
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\03\00
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\03\02
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\03\03
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\03\05
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\03\06
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\03\07
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\03\08
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\03\12
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\03\13
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\03\15
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\04
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\04\02
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\04\03
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\04\04
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\04\11
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\04\12
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\04\14
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\05
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\05\02
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\05\04
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\05\05
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\05\06
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\05\10
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\05\14
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\06
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\06\00
File C:\Documents and Settings\Gary\Local Settings\Application Data\Apple Computer\QuickTime\downloads\06\02

#13 ever_looking_up

ever_looking_up
  • Topic Starter

  • Members
  • 47 posts
  • OFFLINE
  •  

Posted 09 July 2006 - 01:15 PM

File C:\Documents and Settings\Gary\Local Settings\Temp\AxMetaStream_0302021C.dll
File C:\Documents and Settings\Gary\Local Settings\Temp\c46a_appcompat.txt
File C:\Documents and Settings\Gary\Local Settings\Temp\cd2F.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\cd2F.tmp.exe
File C:\Documents and Settings\Gary\Local Settings\Temp\control.xml
File C:\Documents and Settings\Gary\Local Settings\Temp\e946_appcompat.txt
File C:\Documents and Settings\Gary\Local Settings\Temp\fla13.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\fla7.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\fla8.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\fla9.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\flaA.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\flaB.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\flaC.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\flaD.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\flaE.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\flaF.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\hsperfdata_Gary
File C:\Documents and Settings\Gary\Local Settings\Temp\IadHide5.dll
File C:\Documents and Settings\Gary\Local Settings\Temp\java_install.log
File C:\Documents and Settings\Gary\Local Settings\Temp\java_install_reg.log
File C:\Documents and Settings\Gary\Local Settings\Temp\jrelog.txt
File C:\Documents and Settings\Gary\Local Settings\Temp\jusched.log
File C:\Documents and Settings\Gary\Local Settings\Temp\kyf75.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\kyfAF.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\mer76.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\merB0.tmp
File C:\Documents and Settings\Gary\Local Settings\Temp\me_02Ge6LeJJJGuOuT
File C:\Documents and Settings\Gary\Local Settings\Temp\me_0DqPy1hNmklAFa1
File C:\Documents and Settings\Gary\Local Settings\Temp\me_0EMNcyY1oW2g1NQ
File C:\Documents and Settings\Gary\Local Settings\Temp\me_0H92RdBOe3jVCcI
File C:\Documents and Settings\Gary\Local Settings\Temp\me_0LFvy9E9Lc30Fma
File C:\Documents and Settings\Gary\Local Settings\Temp\me_0QX5nDdMYSCw81t
File C:\Documents and Settings\Gary\Local Settings\Temp\me_0zQBRc7Y89AD8vr
File C:\Documents and Settings\Gary\Local Settings\Temp\me_13sbmQ7x6CE2Wg9
File C:\Documents and Settings\Gary\Local Settings\Temp\me_1BhXxitwG0Ztfj2
File C:\Documents and Settings\Gary\Local Settings\Temp\me_1h2x8hkaAvMQJrD
File C:\Documents and Settings\Gary\Local Settings\Temp\me_1lc44tIOoNtCuuU
File C:\Documents and Settings\Gary\Local Settings\Temp\me_1ud4W06Uq5SahUS
File C:\Documents and Settings\Gary\Local Settings\Temp\me_23s401RtkhwVm9W
File C:\Documents and Settings\Gary\Local Settings\Temp\me_2kSnd4qUGTDR5fW
File C:\Documents and Settings\Gary\Local Settings\Temp\me_2mgOXnK6TzQmnDe
File C:\Documents and Settings\Gary\Local Settings\Temp\me_2T68f3SF8smjr0B
File C:\Documents and Settings\Gary\Local Settings\Temp\me_2TQ8fqqRzyh7i0J
File C:\Documents and Settings\Gary\Local Settings\Temp\me_2vyykI3vAPfLN21
File C:\Documents and Settings\Gary\Local Settings\Temp\me_2WKQ36r6IqWcbYE
File C:\Documents and Settings\Gary\Local Settings\Temp\me_3pL6EQCSmcN40H5
File C:\Documents and Settings\Gary\Local Settings\Temp\me_4Cqkvlk8bib83pd
File C:\Documents and Settings\Gary\Local Settings\Temp\me_4MdcQkJSaBmCWEL
File C:\Documents and Settings\Gary\Local Settings\Temp\me_4oKNa49fnmiIk2K
File C:\Documents and Settings\Gary\Local Settings\Temp\me_51Y2DElvwHbKtm1
File C:\Documents and Settings\Gary\Local Settings\Temp\me_59exiSLOOHlHuhJ
File C:\Documents and Settings\Gary\Local Settings\Temp\me_5fUHfjJlLdb6AzT
File C:\Documents and Settings\Gary\Local Settings\Temp\me_5hczlGUY7F17IJF
File C:\Documents and Settings\Gary\Local Settings\Temp\me_5x5FGSnlIZtg2JS
File C:\Documents and Settings\Gary\Local Settings\Temp\me_6b4pAzPgw2as6Wj
File C:\Documents and Settings\Gary\Local Settings\Temp\me_6dTyCjjMWpQ8AxO
File C:\Documents and Settings\Gary\Local Settings\Temp\me_6hxUblCdaT4KFe1
File C:\Documents and Settings\Gary\Local Settings\Temp\me_6vWWf8oEYmYZFM3
File C:\Documents and Settings\Gary\Local Settings\Temp\me_6Yceug2kkYZIfSV
File C:\Documents and Settings\Gary\Local Settings\Temp\me_7eEKUCeVan7ZDHp
File C:\Documents and Settings\Gary\Local Settings\Temp\me_7gZIT3id6wjY7xf
File C:\Documents and Settings\Gary\Local Settings\Temp\me_7mZRVWFVQDl1cD1
File C:\Documents and Settings\Gary\Local Settings\Temp\me_7uYERHHz7YvTImI
File C:\Documents and Settings\Gary\Local Settings\Temp\me_7XztOXho8VptYdU
File C:\Documents and Settings\Gary\Local Settings\Temp\me_81yAcL00JKgrExZ
File C:\Documents and Settings\Gary\Local Settings\Temp\me_86umENEOe7hp8S8
File C:\Documents and Settings\Gary\Local Settings\Temp\me_8g1uGMlCJZrhJN1
File C:\Documents and Settings\Gary\Local Settings\Temp\me_8mA8tH8JHLWC86k
File C:\Documents and Settings\Gary\Local Settings\Temp\me_8mOkMCwp9XnO1zL
File C:\Documents and Settings\Gary\Local Settings\Temp\me_8QIPaMi6vqhpIMv
File C:\Documents and Settings\Gary\Local Settings\Temp\me_8RCg0m1NYh7V8q9
File C:\Documents and Settings\Gary\Local Settings\Temp\me_8SXYlv6tuFGf89F
File C:\Documents and Settings\Gary\Local Settings\Temp\me_8XsB7UwiasNMO7I
File C:\Documents and Settings\Gary\Local Settings\Temp\me_9dEK4Wfqe2hMc05
File C:\Documents and Settings\Gary\Local Settings\Temp\me_9H9eeQRyzrPi1Uy
File C:\Documents and Settings\Gary\Local Settings\Temp\me_9IWoENHOpF7Cg39
File C:\Documents and Settings\Gary\Local Settings\Temp\me_9O3uYxP5NQKjOnx
File C:\Documents and Settings\Gary\Local Settings\Temp\me_9sP15EMrWLWTJuz
File C:\Documents and Settings\Gary\Local Settings\Temp\me_aBpCEanFagKZyEi
File C:\Documents and Settings\Gary\Local Settings\Temp\me_AbVNW5QZqIvrOxU
File C:\Documents and Settings\Gary\Local Settings\Temp\me_adVgHOhWUS5sP22
File C:\Documents and Settings\Gary\Local Settings\Temp\me_akYN0Yz86ZEUgWT
File C:\Documents and Settings\Gary\Local Settings\Temp\me_alNWnZBaDpkKCYi
File C:\Documents and Settings\Gary\Local Settings\Temp\me_aNCVARAtO6kTbA8
File C:\Documents and Settings\Gary\Local Settings\Temp\me_AnyvvnmLyxg11fb
File C:\Documents and Settings\Gary\Local Settings\Temp\me_APf6TlEhFHZuFJM
File C:\Documents and Settings\Gary\Local Settings\Temp\me_Arz3gsysFfAb9Zo
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ASxKUcJjwe5ozIh
File C:\Documents and Settings\Gary\Local Settings\Temp\me_AtBTZU5dnyYQXD5
File C:\Documents and Settings\Gary\Local Settings\Temp\me_aTocxFMrbgjToib
File C:\Documents and Settings\Gary\Local Settings\Temp\me_AXOgOowz5FBcG2x
File C:\Documents and Settings\Gary\Local Settings\Temp\me_aZKqWHCxkweWKKc
File C:\Documents and Settings\Gary\Local Settings\Temp\me_B8jw8IlzTm71xoS
File C:\Documents and Settings\Gary\Local Settings\Temp\me_Bf059GxZ737l7jw
File C:\Documents and Settings\Gary\Local Settings\Temp\me_bFVBi3HIJevSO7f
File C:\Documents and Settings\Gary\Local Settings\Temp\me_bic0CM3FhieKAq9
File C:\Documents and Settings\Gary\Local Settings\Temp\me_bOHsprEWyK2F7si
File C:\Documents and Settings\Gary\Local Settings\Temp\me_bRMnmtAUnC7iHYA
File C:\Documents and Settings\Gary\Local Settings\Temp\me_brv43MmOmifmOy9
File C:\Documents and Settings\Gary\Local Settings\Temp\me_bV9oHklEQ3p6AP1
File C:\Documents and Settings\Gary\Local Settings\Temp\me_BvYu4967gZMZYxn
File C:\Documents and Settings\Gary\Local Settings\Temp\me_bwTBf4NeZxNw6Ae
File C:\Documents and Settings\Gary\Local Settings\Temp\me_BXDspE52WLyaTHy
File C:\Documents and Settings\Gary\Local Settings\Temp\me_BxgbxA1xAWogpKc
File C:\Documents and Settings\Gary\Local Settings\Temp\me_bYYG5Pg58PUAvus
File C:\Documents and Settings\Gary\Local Settings\Temp\me_bZf06wWGVsjQY0E
File C:\Documents and Settings\Gary\Local Settings\Temp\me_cccJZWhqXQRIe0d
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ccwDlTO9jWZs14D
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ce2yB5nhyP94Kk1
File C:\Documents and Settings\Gary\Local Settings\Temp\me_CEckFqmTRdDarF7
File C:\Documents and Settings\Gary\Local Settings\Temp\me_CHVTTna93gp5epC
File C:\Documents and Settings\Gary\Local Settings\Temp\me_cm5ksaCwRuuIeZR
File C:\Documents and Settings\Gary\Local Settings\Temp\me_COHkZeXdHXLzpEs
File C:\Documents and Settings\Gary\Local Settings\Temp\me_CRFsU4sqUX3CMnH
File C:\Documents and Settings\Gary\Local Settings\Temp\me_cRtp2MCsF6kmWN2
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ctSR111qkc6Yrn7
File C:\Documents and Settings\Gary\Local Settings\Temp\me_cvOeJrymz8w3Qck
File C:\Documents and Settings\Gary\Local Settings\Temp\me_cvq5njhFWm5yJpi
File C:\Documents and Settings\Gary\Local Settings\Temp\me_cXR5eoiHBkJVUgz
File C:\Documents and Settings\Gary\Local Settings\Temp\me_CZYjjngUr0JHqnd
File C:\Documents and Settings\Gary\Local Settings\Temp\me_D0d3OLSUfvbR5ra
File C:\Documents and Settings\Gary\Local Settings\Temp\me_d7qde2mvhfQ4Gjp
File C:\Documents and Settings\Gary\Local Settings\Temp\me_DbzW5BptfNgxEhy
File C:\Documents and Settings\Gary\Local Settings\Temp\me_dcGTrlblOtUS9qC
File C:\Documents and Settings\Gary\Local Settings\Temp\me_dEuDFZW5XB4lKLb
File C:\Documents and Settings\Gary\Local Settings\Temp\me_DeXRNWHi95WTZEs
File C:\Documents and Settings\Gary\Local Settings\Temp\me_dG6QT9DTxaiUsZh
File C:\Documents and Settings\Gary\Local Settings\Temp\me_DgGQmTQWf7FTaUU
File C:\Documents and Settings\Gary\Local Settings\Temp\me_DGWEaekBYVN4Wcc
File C:\Documents and Settings\Gary\Local Settings\Temp\me_DH5CYRjrMkmoyos
File C:\Documents and Settings\Gary\Local Settings\Temp\me_DJehiJ4jefBJofS
File C:\Documents and Settings\Gary\Local Settings\Temp\me_dNJZKpuOBapYsOi
File C:\Documents and Settings\Gary\Local Settings\Temp\me_dSo4AAUceseIRdV
File C:\Documents and Settings\Gary\Local Settings\Temp\me_E0bCgOqTmUueCye
File C:\Documents and Settings\Gary\Local Settings\Temp\me_E1KkxzpaGIFdW1z
File C:\Documents and Settings\Gary\Local Settings\Temp\me_E2xsQu8UECu2gaZ
File C:\Documents and Settings\Gary\Local Settings\Temp\me_E3DIrzkrYTaSKB3
File C:\Documents and Settings\Gary\Local Settings\Temp\me_E3ED31GDQew04O8
File C:\Documents and Settings\Gary\Local Settings\Temp\me_e4dFM8CXVgohKQa
File C:\Documents and Settings\Gary\Local Settings\Temp\me_EaMgirQltMKHF0E
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ejtpLE6fADHq242
File C:\Documents and Settings\Gary\Local Settings\Temp\me_EQXkNnjpzCjitIx
File C:\Documents and Settings\Gary\Local Settings\Temp\me_EsB5YCYhfgTADYY
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ESUX9itehKvLDft
File C:\Documents and Settings\Gary\Local Settings\Temp\me_eT8XCR0FGvbi7Di
File C:\Documents and Settings\Gary\Local Settings\Temp\me_eVALWguGhgFEFtk
File C:\Documents and Settings\Gary\Local Settings\Temp\me_eVJZLdhudn6Zuyg
File C:\Documents and Settings\Gary\Local Settings\Temp\me_EvNhgKRoDBSy1uG
File C:\Documents and Settings\Gary\Local Settings\Temp\me_eXoWhlmPuwH1cUc
File C:\Documents and Settings\Gary\Local Settings\Temp\me_FCAzghGXHLHSZ8O
File C:\Documents and Settings\Gary\Local Settings\Temp\me_fDHSSU0HiPJPytW
File C:\Documents and Settings\Gary\Local Settings\Temp\me_FDShGtAXdXuoHXZ
File C:\Documents and Settings\Gary\Local Settings\Temp\me_fGFvdpvQpkPK4uL
File C:\Documents and Settings\Gary\Local Settings\Temp\me_fjh7GwuI8nAp9hf
File C:\Documents and Settings\Gary\Local Settings\Temp\me_fkelFIce85F6scJ
File C:\Documents and Settings\Gary\Local Settings\Temp\me_flIBD18ClpzRN5p
File C:\Documents and Settings\Gary\Local Settings\Temp\me_FonJrGRM7SEIrke
File C:\Documents and Settings\Gary\Local Settings\Temp\me_fpJrtt6OgJ12itq
File C:\Documents and Settings\Gary\Local Settings\Temp\me_FQQ8zYs3ZdPGqY2
File C:\Documents and Settings\Gary\Local Settings\Temp\me_FRXXx5uoYkScZlZ
File C:\Documents and Settings\Gary\Local Settings\Temp\me_Fv2uIo7z6kEI227
File C:\Documents and Settings\Gary\Local Settings\Temp\me_FvtPPB4fe5jZD2F
File C:\Documents and Settings\Gary\Local Settings\Temp\me_FW7LOQgWeKKEfqX
File C:\Documents and Settings\Gary\Local Settings\Temp\me_fwKuhh27ZOpTTTZ
File C:\Documents and Settings\Gary\Local Settings\Temp\me_G8LdcrYajMymSTV
File C:\Documents and Settings\Gary\Local Settings\Temp\me_GDvFWP0FfKzeTpU
File C:\Documents and Settings\Gary\Local Settings\Temp\me_gdyNgfPDbGVZ5zt
File C:\Documents and Settings\Gary\Local Settings\Temp\me_GFkdyczw93htSuo
File C:\Documents and Settings\Gary\Local Settings\Temp\me_gmYcYdchskvhkA0
File C:\Documents and Settings\Gary\Local Settings\Temp\me_gozhC53m8TxPpTJ
File C:\Documents and Settings\Gary\Local Settings\Temp\me_gSygW64evevVThh
File C:\Documents and Settings\Gary\Local Settings\Temp\me_gw2hMhUn0p5YoDz
File C:\Documents and Settings\Gary\Local Settings\Temp\me_H1nri1SkeFkLciv
File C:\Documents and Settings\Gary\Local Settings\Temp\me_h6pGaFUh5abWCmd
File C:\Documents and Settings\Gary\Local Settings\Temp\me_H747ieVIIci4imt
File C:\Documents and Settings\Gary\Local Settings\Temp\me_HayYetQ1NQ3M3OH
File C:\Documents and Settings\Gary\Local Settings\Temp\me_HbnlJnwWhRtyBZc
File C:\Documents and Settings\Gary\Local Settings\Temp\me_Hci1Vjfj2D8ahL1
File C:\Documents and Settings\Gary\Local Settings\Temp\me_hDsizW9a63fEujn
File C:\Documents and Settings\Gary\Local Settings\Temp\me_HkMC8xoQ5JdzAGU
File C:\Documents and Settings\Gary\Local Settings\Temp\me_hojLCA68M2VjGyN
File C:\Documents and Settings\Gary\Local Settings\Temp\me_hPEzrPxjbvEUM8F
File C:\Documents and Settings\Gary\Local Settings\Temp\me_hTWHLJLrHC9Zlgf
File C:\Documents and Settings\Gary\Local Settings\Temp\me_huFeUKNRPh4SuAF
File C:\Documents and Settings\Gary\Local Settings\Temp\me_IA9iKPFrIeJyyaC
File C:\Documents and Settings\Gary\Local Settings\Temp\me_IBK9QITXYCUPBOP
File C:\Documents and Settings\Gary\Local Settings\Temp\me_IcdfVQqXkRELUC0
File C:\Documents and Settings\Gary\Local Settings\Temp\me_IeYRfXUzUSkCaF3
File C:\Documents and Settings\Gary\Local Settings\Temp\me_IfrC30VN00VBEnG
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ih7756G42oFJHf3
File C:\Documents and Settings\Gary\Local Settings\Temp\me_iKBwfl86QiIPoeM
File C:\Documents and Settings\Gary\Local Settings\Temp\me_iLtv3SJkZV9vUnX
File C:\Documents and Settings\Gary\Local Settings\Temp\me_iPOaZjlUjMjaS1T
File C:\Documents and Settings\Gary\Local Settings\Temp\me_irBx5BjHgbYuuRd
File C:\Documents and Settings\Gary\Local Settings\Temp\me_iToyHiyI8ZUjnRL
File C:\Documents and Settings\Gary\Local Settings\Temp\me_j5Q3skTkGcm2HSd
File C:\Documents and Settings\Gary\Local Settings\Temp\me_j90T6Htmce6vaIk
File C:\Documents and Settings\Gary\Local Settings\Temp\me_jC1aKY8eH0cmBAn
File C:\Documents and Settings\Gary\Local Settings\Temp\me_jqVcZZ8erXRqa4Z
File C:\Documents and Settings\Gary\Local Settings\Temp\me_jyYl3YbD5wShoha
File C:\Documents and Settings\Gary\Local Settings\Temp\me_Jzw19kRe5qNuHue
File C:\Documents and Settings\Gary\Local Settings\Temp\me_K2c3JkgzLnHamJG

File C:\Documents and Settings\Gary\Local Settings\Temp\me_kA2NUMkB6Tc1LBV
File C:\Documents and Settings\Gary\Local Settings\Temp\me_KDDwYzUKG1x2NPE
File C:\Documents and Settings\Gary\Local Settings\Temp\me_KJ3veIcSRvhlYCa
File C:\Documents and Settings\Gary\Local Settings\Temp\me_kPXaqeEkv7vDmrz
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ktk4q1vy9bEcgeB
File C:\Documents and Settings\Gary\Local Settings\Temp\me_kTzyFnqz0iRDAct
File C:\Documents and Settings\Gary\Local Settings\Temp\me_kveVhs1J4iqFf9e
File C:\Documents and Settings\Gary\Local Settings\Temp\me_kX3qGkKzBbyAV6Z
File C:\Documents and Settings\Gary\Local Settings\Temp\me_KXZSSOgDNxYeiis
File C:\Documents and Settings\Gary\Local Settings\Temp\me_L0a6OiAoyaMxjrp
File C:\Documents and Settings\Gary\Local Settings\Temp\me_l1RPMz3Ks6wL2QG
File C:\Documents and Settings\Gary\Local Settings\Temp\me_L2PTMGN5B2AoaUI
File C:\Documents and Settings\Gary\Local Settings\Temp\me_latPoQpWB3h6g71
File C:\Documents and Settings\Gary\Local Settings\Temp\me_Lc0V9d9kG1SzmmM
File C:\Documents and Settings\Gary\Local Settings\Temp\me_leRBhR69dDO40dP
File C:\Documents and Settings\Gary\Local Settings\Temp\me_LHyvd0QfRr9ekac
File C:\Documents and Settings\Gary\Local Settings\Temp\me_LHzfDnJa0bZDmN6
File C:\Documents and Settings\Gary\Local Settings\Temp\me_LI3gGVAXStTiwWw
File C:\Documents and Settings\Gary\Local Settings\Temp\me_LIOiAiiXJtJ9Fe5
File C:\Documents and Settings\Gary\Local Settings\Temp\me_LM0d8PfydVSh0DL
File C:\Documents and Settings\Gary\Local Settings\Temp\me_lONSH3snJn19obq
File C:\Documents and Settings\Gary\Local Settings\Temp\me_LtKeGOoqGq048pq
File C:\Documents and Settings\Gary\Local Settings\Temp\me_LvR31MXhyrnTXzc
File C:\Documents and Settings\Gary\Local Settings\Temp\me_LzWwLPOwqBljrKR
File C:\Documents and Settings\Gary\Local Settings\Temp\me_M0gO7rvXxUUsp14
File C:\Documents and Settings\Gary\Local Settings\Temp\me_M2ltEvMf3ReXsms
File C:\Documents and Settings\Gary\Local Settings\Temp\me_M4zhUbVCnZhOFvL
File C:\Documents and Settings\Gary\Local Settings\Temp\me_m5O5jrM1jkPEYMp
File C:\Documents and Settings\Gary\Local Settings\Temp\me_mdHyesLAOv4mxra
File C:\Documents and Settings\Gary\Local Settings\Temp\me_MnGzLQv4hYnIxX7
File C:\Documents and Settings\Gary\Local Settings\Temp\me_mUOn4Zyvf12jx3e
File C:\Documents and Settings\Gary\Local Settings\Temp\me_myh9VRWpm8pIQaP
File C:\Documents and Settings\Gary\Local Settings\Temp\me_N0ziywmDThmHDDT
File C:\Documents and Settings\Gary\Local Settings\Temp\me_NeLDO13JsdGkgN9
File C:\Documents and Settings\Gary\Local Settings\Temp\me_NGyeRVmxA6MpAFJ
File C:\Documents and Settings\Gary\Local Settings\Temp\me_nNMH00NNOeMyj0K
File C:\Documents and Settings\Gary\Local Settings\Temp\me_NqhipH7F9G8eWS6
File C:\Documents and Settings\Gary\Local Settings\Temp\me_nrwKEmhp3TXDgYu
File C:\Documents and Settings\Gary\Local Settings\Temp\me_NrxVZJcrnq14mcY
File C:\Documents and Settings\Gary\Local Settings\Temp\me_nVOaJJ9NZwiXl8E
File C:\Documents and Settings\Gary\Local Settings\Temp\me_o0uw27aZUFehHPZ
File C:\Documents and Settings\Gary\Local Settings\Temp\me_O4R8L1uevBaXifb
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ohRlE9jSY6ZJ3ix
File C:\Documents and Settings\Gary\Local Settings\Temp\me_OKY3tv66QsmTUoH
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ON9f2oh9jBVobCW
File C:\Documents and Settings\Gary\Local Settings\Temp\me_oqf8CvTWMdSp8Qb
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ORODXABFxf7hAFm
File C:\Documents and Settings\Gary\Local Settings\Temp\me_oVgQC3erMQbtgJR
File C:\Documents and Settings\Gary\Local Settings\Temp\me_oW7xGGnNtMEXBpc
File C:\Documents and Settings\Gary\Local Settings\Temp\me_OZrtGh8NVcx9vuS
File C:\Documents and Settings\Gary\Local Settings\Temp\me_p7WiDi3D4zUkQdt
File C:\Documents and Settings\Gary\Local Settings\Temp\me_p8jRcefHJyeYii6
File C:\Documents and Settings\Gary\Local Settings\Temp\me_PadZFT3IIObDbQB
File C:\Documents and Settings\Gary\Local Settings\Temp\me_pB1Gqkl9OLdxgrD
File C:\Documents and Settings\Gary\Local Settings\Temp\me_PDAYyeklBh4DO7Z
File C:\Documents and Settings\Gary\Local Settings\Temp\me_pebjOAwkshX0H4G
File C:\Documents and Settings\Gary\Local Settings\Temp\me_pgJda9dHWDt3OX2
File C:\Documents and Settings\Gary\Local Settings\Temp\me_PIClHDdnWD3ptab
File C:\Documents and Settings\Gary\Local Settings\Temp\me_Pis1yzyXa01qrOG
File C:\Documents and Settings\Gary\Local Settings\Temp\me_PMEI9ZzHnBaJx9B
File C:\Documents and Settings\Gary\Local Settings\Temp\me_pRBrWe1YYaKtrIR
File C:\Documents and Settings\Gary\Local Settings\Temp\me_PRgjrg6m4otu3r1
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ptxso3CD5lM0eck
File C:\Documents and Settings\Gary\Local Settings\Temp\me_pX7bzgQpFJQIKZ6
File C:\Documents and Settings\Gary\Local Settings\Temp\me_q0INVrCQ9THperK
File C:\Documents and Settings\Gary\Local Settings\Temp\me_q4ABi9jfbhjk0Os
File C:\Documents and Settings\Gary\Local Settings\Temp\me_Q5qK0FcggzrtbLy
File C:\Documents and Settings\Gary\Local Settings\Temp\me_q6d4GdaqHcnaOmv
File C:\Documents and Settings\Gary\Local Settings\Temp\me_q6zsT1U1PAFr6jU
File C:\Documents and Settings\Gary\Local Settings\Temp\me_qaFpJLBv5FeYhiG
File C:\Documents and Settings\Gary\Local Settings\Temp\me_qbv27AsalxfBPfL
File C:\Documents and Settings\Gary\Local Settings\Temp\me_QgzPhXE4ctMcp8z
File C:\Documents and Settings\Gary\Local Settings\Temp\me_qnC1OWGlmGTqCst
File C:\Documents and Settings\Gary\Local Settings\Temp\me_QThgcgRiCGwRkSe
File C:\Documents and Settings\Gary\Local Settings\Temp\me_qxsshMew0vbsXAP
File C:\Documents and Settings\Gary\Local Settings\Temp\me_qYISzZiZVGlWIpI
File C:\Documents and Settings\Gary\Local Settings\Temp\me_QyJFSrpBZzySJ2c
File C:\Documents and Settings\Gary\Local Settings\Temp\me_r5t7obFabcvLVmG
File C:\Documents and Settings\Gary\Local Settings\Temp\me_RbImxI1ZQYe36Xp
File C:\Documents and Settings\Gary\Local Settings\Temp\me_rfMkjPYTYlgCxUb
File C:\Documents and Settings\Gary\Local Settings\Temp\me_rJIZDqz7jNED8ir
File C:\Documents and Settings\Gary\Local Settings\Temp\me_Rlk4qWmtpqhdRgC
File C:\Documents and Settings\Gary\Local Settings\Temp\me_rnsNc78AkMvRx3L
File C:\Documents and Settings\Gary\Local Settings\Temp\me_S1jcxZhSAPLbMiV
File C:\Documents and Settings\Gary\Local Settings\Temp\me_s3lowYvGIYs1Rko
File C:\Documents and Settings\Gary\Local Settings\Temp\me_sBrOcMJ2gx1u7u0
File C:\Documents and Settings\Gary\Local Settings\Temp\me_Sc17AfrPHglqCYv
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ScBKfJrRcU6ua4i
File C:\Documents and Settings\Gary\Local Settings\Temp\me_SCFWVNZmOIliVJ7
File C:\Documents and Settings\Gary\Local Settings\Temp\me_SdPUAWmaBn8gh1f
File C:\Documents and Settings\Gary\Local Settings\Temp\me_ShlaEgQuW4lgsvF
File C:\Documents and Settings\Gary\Local Settings\Temp\me_sjAlBvGTf7db28S
File C:\Documents and Settings\Gary\Local Settings\Temp\me_SkQasb6mGq2z59e
File C:\Documents and Settings\Gary\Local Settings\Temp\me_Ss4zYXIHS3zU0KP

#14 ever_looking_up

ever_looking_up
  • Topic Starter

  • Members
  • 47 posts
  • OFFLINE
  •  
  • Local time:11:01 PM

Posted 09 July 2006 - 01:25 PM

alright. sorry about the break between posts. i ran that utility and it found nothing. um, heres a fresh hjt log:




Logfile of HijackThis v1.99.1
Scan saved at 1:23:41 PM, on 7/9/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\Program Files\Common Files\AOL\1151164548\ee\AOLSoftware.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CA\eTrust Internet Security Suite\caissdt.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\program files\zango\zango.exe
C:\Program Files\UnHackMe\hackmon.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\David\My Documents\Maintainence stuff\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.xanga.com/private/yourhome.aspx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Zango Search Assistant Helper /fleok=1D8A83A5C5E315789FA575760EA83FA5EF80752B94E3D77E5B7846283CC2 - {56F1D444-11BF-4879-A12B-79CF0177F038} - c:\program files\zango\zangohook.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1151164548\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [CaISSDT] "C:\Program Files\CA\eTrust Internet Security Suite\caissdt.exe"
O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe"
O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe"
O4 - HKLM\..\Run: [BearShare] "C:\Program Files\BearShare\BearShare.exe" /pause
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [zango] "c:\program files\zango\zango.exe"
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [UnHackMe Monitor] C:\Program Files\UnHackMe\hackmon.exe
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O4 - Global Startup: KODAK Software Updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {13EC55CF-D993-475B-9ACA-F4A384957956} (Controller Class) - https://www.windowsonecare.com/install/cli/...nSSWebAgent.CAB
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://scan.safety.live.com/resource/downl...lscbase5059.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1151181842500
O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Unknown owner - C:\WINDOWS\system32\drivers\KodakCCS.exe (file missing)
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe

#15 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 09 July 2006 - 02:04 PM

Quick Question,when you made the log for gmer,did you have the Show All box checked?




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users