Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Pop-ups Running On Pc


  • This topic is locked This topic is locked
10 replies to this topic

#1 jackman2254

jackman2254

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:05:47 PM

Posted 23 December 2006 - 11:58 AM

ran spybot s&d, andHijackThis and am sending my log, I hope. I am pretty much a beginer, please explain so I know exactly what I shoud do. Thank you.Logfile of HijackThis v1.99.1
Scan saved at 11:39:50 AM, on 12/23/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\drivers\KodakCCS.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\WINDOWS\WindowsSecurityUpdate.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spyware Doctor\swdoctor.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\PROGRA~1\Webshots\Webshots.scr
C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\DOCUME~1\user\LOCALS~1\Temp\Temporary Directory 1 for hijackthis.zip\HijackThis.exe
C:\Program Files\Messenger\msmsgs.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://msn.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.webshots.com/homepage.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://msn.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~2\tools\iesdsg.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: CNavExtBho Class - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKLM\..\Run: [Security] C:\WINDOWS\WindowsSecurityUpdate.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: Webshots.lnk = C:\Program Files\Webshots\Launcher.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://msn.com
O14 - IERESET.INF: MS_START_PAGE_URL=http://msn.com
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1163449488843
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

BC AdBot (Login to Remove)

 


m

#2 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:06:47 PM

Posted 23 December 2006 - 12:06 PM

Hello jackman2254 and welcome to the BC HijackThis forum. I want to try a different scanner here.

Download WinPFind3U.exe to your Desktop and double-click on it to extract the files. It will create a folder named WinPFind3u on your desktop.
  • Open the WinPFind3u folder and double-click on WinPFind3U.exe to start the program.
    • In the Files Created Within group click 30 days
    • In the Files Modified Within group select 30 days
    • In the File String Search group select Non-Microsoft
  • Now click the Run Scan button on the toolbar.
  • When the scan is complete Notepad will open with the report file loaded in it.
  • Click the Format menu and make sure that Wordwrap is not checked. If it is then click on it to uncheck it.
Use the Add Reply button and Copy/Paste the information back here. I will review it when it comes in.

Cheers.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image

#3 jackman2254

jackman2254
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:05:47 PM

Posted 23 December 2006 - 01:11 PM

Hello jackman2254 and welcome to the BC HijackThis forum. I want to try a different scanner here.

Download WinPFind3U.exe to your Desktop and double-click on it to extract the files. It will create a folder named WinPFind3u on your desktop.

  • Open the WinPFind3u folder and double-click on WinPFind3U.exe to start the program.
    • In the Files Created Within group click 30 days
    • In the Files Modified Within group select 30 days
    • In the File String Search group select Non-Microsoft
  • Now click the Run Scan button on the toolbar.
  • When the scan is complete Notepad will open with the report file loaded in it.
  • Click the Format menu and make sure that Wordwrap is not checked. If it is then click on it to uncheck it.
Use the Add Reply button and Copy/Paste the information back here. I will review it when it comes in.

Cheers.

OT



#4 jackman2254

jackman2254
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:05:47 PM

Posted 23 December 2006 - 02:08 PM

ccWinPFind3 logfile created on: 12/23/2006 2:07:35 PM
WinPFind3U by OldTimer - Version 1.0.1 Folder = E:\winpfind3u.exe\WinPFind3u\
Microsoft Windows XP Service Pack 2 (Version = 5.1.2600)
Internet Explorer (Version = 7.0.5730.11)


[Processes - Non-Microsoft Only]
aluschedulersvc.exe -> C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe -> Symantec Corporation [Ver = 3.0.0.171 | Size = 100032 bytes | Modified Date = 7/25/2006 6:03:44 PM | Attr = ]
ati2evxx.exe -> C:\WINDOWS\system32\ati2evxx.exe -> ATI Technologies Inc. [Ver = 6.14.10.4129 | Size = 405504 bytes | Modified Date = 2/21/2006 8:39:16 PM | Attr = ]
ati2evxx.exe -> C:\WINDOWS\system32\ati2evxx.exe -> ATI Technologies Inc. [Ver = 6.14.10.4129 | Size = 405504 bytes | Modified Date = 2/21/2006 8:39:16 PM | Attr = ]
ccapp.exe -> C:\Program Files\Common Files\Symantec Shared\CCAPP.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 52840 bytes | Modified Date = 11/21/2006 5:38:28 PM | Attr = ]
ccevtmgr.exe -> C:\Program Files\Common Files\Symantec Shared\CCEVTMGR.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 192104 bytes | Modified Date = 11/21/2006 5:38:32 PM | Attr = ]
ccsetmgr.exe -> C:\Program Files\Common Files\Symantec Shared\CCSETMGR.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 169576 bytes | Modified Date = 11/21/2006 5:38:40 PM | Attr = ]
jusched.exe -> C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe -> Sun Microsystems, Inc. [Ver = 5.0.90.3 | Size = 49263 bytes | Modified Date = 10/12/2006 3:10:54 AM | Attr = ]
kodakccs.exe -> C:\WINDOWS\system32\drivers\KodakCCS.exe -> Eastman Kodak Company [Ver = 1.1.5100.4 | Size = 322104 bytes | Modified Date = 5/24/2004 12:35:52 PM | Attr = ]
navapsvc.exe -> C:\Program Files\Norton AntiVirus\NAVAPSVC.EXE -> Symantec Corporation [Ver = 12.6.0.1 | Size = 139936 bytes | Modified Date = 10/17/2006 1:44:18 PM | Attr = ]
npfmntor.exe -> C:\Program Files\Norton AntiVirus\IWP\NPFMNTOR.EXE -> Symantec Corporation [Ver = 12.6.0.1 | Size = 46752 bytes | Modified Date = 10/17/2006 1:44:40 PM | Attr = ]
nscsrvce.exe -> C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE -> Symantec Corporation [Ver = 2006.1.8.2 | Size = 750720 bytes | Modified Date = 12/15/2006 1:36:28 PM | Attr = ]
qttask.exe -> C:\Program Files\QuickTime\qttask.exe -> Apple Computer, Inc. [Ver = 6.4 | Size = 77824 bytes | Modified Date = 11/14/2006 9:52:08 AM | Attr = ]
sdhelp.exe -> C:\Program Files\Spyware Doctor\sdhelp.exe -> PC Tools Research Pty Ltd [Ver = 3.6.0.2026 | Size = 895088 bytes | Modified Date = 11/2/2006 5:17:14 PM | Attr = ]
sndsrvc.exe -> C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe -> Symantec Corporation [Ver = 6.0.4.402 | Size = 214720 bytes | Modified Date = 8/7/2006 4:03:02 PM | Attr = ]
spbbcsvc.exe -> C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe -> Symantec Corporation [Ver = 2.1.0.4 | Size = 1160848 bytes | Modified Date = 5/11/2006 3:50:20 PM | Attr = ]
swdoctor.exe -> C:\Program Files\Spyware Doctor\swdoctor.exe -> PC Tools Research Pty Ltd [Ver = 4.0.0.2621 | Size = 2115728 bytes | Modified Date = 12/11/2006 3:35:02 PM | Attr = ]
symlcsvc.exe -> C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe -> Symantec Corporation [Ver = 1.9.1.762 | Size = 1119888 bytes | Modified Date = 11/13/2006 5:02:58 PM | Attr = ]
teatimer.exe -> C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe -> Safer Networking Limited [Ver = 1, 4, 0, 2 | Size = 1415824 bytes | Modified Date = 5/31/2005 1:04:00 AM | Attr = ]
webshots.scr -> C:\Program Files\Webshots\Webshots.scr -> Webshots.com [Ver = 2, 5, 1, 7009 | Size = 1650688 bytes | Modified Date = 10/9/2006 12:56:34 PM | Attr = ]
windowssecurityupdate.exe -> C:\WINDOWS\WindowsSecurityUpdate.exe -> [Ver = 1, 0, 0, 1 | Size = 53248 bytes | Modified Date = 12/18/2006 2:03:04 PM | Attr = ]
winpfind3u.exe -> E:\winpfind3u.exe\WinPFind3u\WinPFind3U.exe -> Oldtimer Tools [Ver = 1.0.1.0 | Size = 302592 bytes | Modified Date = 12/21/2006 8:20:08 PM | Attr = ]

[Win32 Services - Non-Microsoft Only]
(Ati HotKey Poller) Ati HotKey Poller [Win32_Own | Auto | Running] -> C:\WINDOWS\system32\ati2evxx.exe -> ATI Technologies Inc. [Ver = 6.14.10.4129 | Size = 405504 bytes | Modified Date = 2/21/2006 8:39:16 PM | Attr = ]
(Automatic LiveUpdate Scheduler) Automatic LiveUpdate Scheduler [Win32_Own | Auto | Running] -> C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe -> Symantec Corporation [Ver = 3.0.0.171 | Size = 100032 bytes | Modified Date = 7/25/2006 6:03:44 PM | Attr = ]
(ccEvtMgr) Symantec Event Manager [Win32_Own | Auto | Running] -> C:\Program Files\Common Files\Symantec Shared\CCEVTMGR.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 192104 bytes | Modified Date = 11/21/2006 5:38:32 PM | Attr = ]
(ccSetMgr) Symantec Settings Manager [Win32_Own | Auto | Running] -> C:\Program Files\Common Files\Symantec Shared\CCSETMGR.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 169576 bytes | Modified Date = 11/21/2006 5:38:40 PM | Attr = ]
(dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> C:\WINDOWS\system32\dmadmin.exe -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 8/4/2004 7:00:00 AM | Attr = ]
(KodakCCS) Kodak Camera Connection Software [Win32_Own | Auto | Running] -> C:\WINDOWS\system32\drivers\KodakCCS.exe -> Eastman Kodak Company [Ver = 1.1.5100.4 | Size = 322104 bytes | Modified Date = 5/24/2004 12:35:52 PM | Attr = ]
(LiveUpdate) LiveUpdate [Win32_Own | On_Demand | Stopped] -> C:\Program Files\Symantec\LiveUpdate\LuComServer_3_0.EXE -> Symantec Corporation [Ver = 3.0.0.171 | Size = 2119360 bytes | Modified Date = 7/25/2006 6:03:44 PM | Attr = ]
(navapsvc) Norton AntiVirus Auto-Protect Service [Win32_Own | Auto | Running] -> C:\Program Files\Norton AntiVirus\NAVAPSVC.EXE -> Symantec Corporation [Ver = 12.6.0.1 | Size = 139936 bytes | Modified Date = 10/17/2006 1:44:18 PM | Attr = ]
(NPFMntor) Norton AntiVirus Firewall Monitor Service [Win32_Own | Auto | Running] -> C:\Program Files\Norton AntiVirus\IWP\NPFMNTOR.EXE -> Symantec Corporation [Ver = 12.6.0.1 | Size = 46752 bytes | Modified Date = 10/17/2006 1:44:40 PM | Attr = ]
(NSCService) Norton Protection Center Service [Win32_Own | On_Demand | Running] -> C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE -> Symantec Corporation [Ver = 2006.1.8.2 | Size = 750720 bytes | Modified Date = 12/15/2006 1:36:28 PM | Attr = ]
(SAVScan) Symantec AVScan [Win32_Own | On_Demand | Stopped] -> C:\Program Files\Norton AntiVirus\SAVScan.exe -> Symantec Corporation [Ver = 9.7.0.10 | Size = 198368 bytes | Modified Date = 8/26/2005 4:22:48 PM | Attr = ]
(SDhelper) PC Tools Spyware Doctor [Win32_Own | Auto | Running] -> C:\Program Files\Spyware Doctor\sdhelp.exe -> PC Tools Research Pty Ltd [Ver = 3.6.0.2026 | Size = 895088 bytes | Modified Date = 11/2/2006 5:17:14 PM | Attr = ]
(SNDSrvc) Symantec Network Drivers Service [Win32_Own | Auto | Running] -> C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe -> Symantec Corporation [Ver = 6.0.4.402 | Size = 214720 bytes | Modified Date = 8/7/2006 4:03:02 PM | Attr = ]
(SPBBCSvc) SPBBCSvc [Win32_Own | Auto | Running] -> C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe -> Symantec Corporation [Ver = 2.1.0.4 | Size = 1160848 bytes | Modified Date = 5/11/2006 3:50:20 PM | Attr = ]
(Symantec Core LC) Symantec Core LC [Win32_Own | Auto | Running] -> C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe -> Symantec Corporation [Ver = 1.9.1.762 | Size = 1119888 bytes | Modified Date = 11/13/2006 5:02:58 PM | Attr = ]

[Registry - Non-Microsoft Only]
< Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
ccApp -> C:\Program Files\Common Files\Symantec Shared\CCAPP.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 52840 bytes | Modified Date = 11/21/2006 5:38:28 PM | Attr = ]
QuickTime Task -> C:\Program Files\QuickTime\qttask.exe -> Apple Computer, Inc. [Ver = 6.4 | Size = 77824 bytes | Modified Date = 11/14/2006 9:52:08 AM | Attr = ]
Security -> C:\WINDOWS\WindowsSecurityUpdate.exe -> [Ver = 1, 0, 0, 1 | Size = 53248 bytes | Modified Date = 12/18/2006 2:03:04 PM | Attr = ]
SunJavaUpdateSched -> C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe -> Sun Microsystems, Inc. [Ver = 5.0.90.3 | Size = 49263 bytes | Modified Date = 10/12/2006 3:10:54 AM | Attr = ]
< RunOnceEx [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx
-> -> File not found
< Run [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
SpybotSD TeaTimer -> C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe -> Safer Networking Limited [Ver = 1, 4, 0, 2 | Size = 1415824 bytes | Modified Date = 5/31/2005 1:04:00 AM | Attr = ]
Spyware Doctor -> C:\Program Files\Spyware Doctor\swdoctor.exe -> PC Tools Research Pty Ltd [Ver = 4.0.0.2621 | Size = 2115728 bytes | Modified Date = 12/11/2006 3:35:02 PM | Attr = ]
< Disabled MSConfig Folder Items[HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\
C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Kodak EasyShare software.lnk -> C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe -> Eastman Kodak Company [Ver = 5, 0, 4, 128 | Size = 757760 bytes | Modified Date = 8/11/2004 2:22:40 AM | Attr = ]
C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Kodak software updater.lnk -> C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe -> [Ver = | Size = 16423 bytes | Modified Date = 2/13/2004 2:12:08 PM | Attr = ]
< Disabled MSConfig Registry Items [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\startupreg\
KernelFaultCheck -> -> File not found
QuickTime Task -> C:\Program Files\QuickTime\qttask.exe -> Apple Computer, Inc. [Ver = 6.4 | Size = 77824 bytes | Modified Date = 11/14/2006 9:52:08 AM | Attr = ]
< SecurityProviders [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders
< Winlogon settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
*VMApplet* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet ->
Control_RunDLL -> -> File not found
< Winlogon settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
< Winlogon\Notify settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\
< Policy Settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{BDEADF00-C265-11D0-BCED-00A0C90AB50F} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} -> 1073741857 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{0DF44EAA-FF21-4412-828E-260A8728E7F1} -> 32 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\dontdisplaylastusername -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticecaption -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticetext -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\shutdownwithoutlogon -> 1 ->
< Policy Settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 145 ->
< Desktop Components > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\
0 -> [Key] ->
0 -> FriendlyName = My Current Home Page ->
0 -> Source = About:Home ->
0 -> SubscribedURL = About:Home ->
< HOSTS File > -> C:\WINDOWS\System32\drivers\etc\Hosts
< Internet Explorer Settings > ->
HKLM: Default_Page_URL -> http://msn.com ->
HKLM: Main\\Default_Search_URL -> http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch ->
HKLM: Local Page -> C:\WINDOWS\System32\blank.htm ->
HKLM: Search Bar -> http://home.microsoft.com/search/search.asp ->
HKLM: Search Page -> http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch ->
HKLM: Start Page -> http://go.microsoft.com/fwlink/?LinkId=69157 ->
HKLM: CustomizeSearch -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm ->
HKLM: SearchAssistant -> http://www.google.com/ie ->
HKCU: Default_Page_URL -> http://msn.com ->
HKCU: Default_Search_URL -> http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch ->
HKCU: Local Page -> C:\WINDOWS\System32\blank.htm ->
HKCU: Search Bar -> http://www.google.com/ie ->
HKCU: Search Page -> http://www.google.com ->
HKCU: Start Page -> http://www.webshots.com/homepage.html ->
HKCU: URLSearchHooks\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM] -> Reg Data - Key not found [Yahoo! Toolbar] -> File not found
HKCU: ProxyEnable -> 0 ->
< Trusted Sites > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
msn.com [ - ] -> ->
< BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
{53707962-6F74-2D53-2644-206D7942484F} [HKLM] -> C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [Reg Data - Value does not exist] -> Safer Networking Limited [Ver = 1, 4, 0, 0 | Size = 853672 bytes | Modified Date = 5/31/2005 1:04:00 AM | Attr = ]
{5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} [HKLM] -> C:\Program Files\Spyware Doctor\tools\iesdsg.dll [PCTools Site Guard] -> PC Tools [Ver = 3.6.0.2071 | Size = 825528 bytes | Modified Date = 8/1/2006 3:27:06 PM | Attr = ]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKLM] -> C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll [SSVHelper Class] -> Sun Microsystems, Inc. [Ver = 5.0.90.3 | Size = 434279 bytes | Modified Date = 10/12/2006 3:25:44 AM | Attr = ]
{A8F38D8D-E480-4D52-B7A2-731BB6995FDD} [HKLM] -> C:\Program Files\Norton AntiVirus\NAVSHEXT.DLL [CNavExtBho Class] -> Symantec Corporation [Ver = 12.6.0.1 | Size = 140960 bytes | Modified Date = 10/17/2006 1:44:30 PM | Attr = ]
{B56A7D7D-6927-48C8-A975-17DF180C71AC} [HKLM] -> C:\Program Files\Spyware Doctor\tools\iesdpb.dll [PCTools Browser Monitor] -> PC Tools [Ver = 3.6.0.2283 | Size = 850104 bytes | Modified Date = 8/1/2006 3:23:12 PM | Attr = ]
< Internet Explorer ToolBars [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar
{C4069E3A-68F1-403E-B40E-20066696354B} [HKLM] -> C:\Program Files\Norton AntiVirus\NAVSHEXT.DLL [Norton AntiVirus] -> Symantec Corporation [Ver = 12.6.0.1 | Size = 140960 bytes | Modified Date = 10/17/2006 1:44:30 PM | Attr = ]
< Internet Explorer ToolBars [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\
WebBrowser\\{C4069E3A-68F1-403E-B40E-20066696354B} [HKLM] -> C:\Program Files\Norton AntiVirus\NAVSHEXT.DLL [Norton AntiVirus] -> Symantec Corporation [Ver = 12.6.0.1 | Size = 140960 bytes | Modified Date = 10/17/2006 1:44:30 PM | Attr = ]
WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM] -> Reg Data - Key not found [Yahoo! Toolbar] -> File not found
< Internet Explorer CmdMapping [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping
{FB5F1910-F110-11d2-BB9E-00C04F795683} -> 8192 - Windows Messenger ->
NextId -> 8193 ->
< Internet Explorer Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKLM] -> C:\Program Files\Java\jre1.5.0_09\bin\npjpi150_09.dll [MenuText: Sun Java Console] ->
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKCU] -> C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll [MenuText: Sun Java Console] -> Sun Microsystems, Inc. [Ver = 5.0.90.3 | Size = 434279 bytes | Modified Date = 10/12/2006 3:25:44 AM | Attr = ]
{2D663D1A-8670-49D9-A1A5-4C56B4E14E84} -> Reg Data - Value does not exist [ButtonText: Spyware Doctor] -> File not found
{e2e2dd38-d088-4134-82b7-f2ba38496583} [HKLM] -> Reg Data - Key not found [MenuText: @xpsp3res.dll,-20001] ->
< Approved Shell Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
{00E7B358-F65B-4dcf-83DF-CD026B94BFD4} [HKLM] -> Reg Data - Key not found [Autoplay for SlideShow] -> File not found
{0DF44EAA-FF21-4412-828E-260A8728E7F1} [HKLM] -> Reg Data - Key not found [Taskbar and Start Menu] -> File not found
{42071714-76d4-11d1-8b24-00a0c9068ff3} [HKLM] -> deskpan.dll [Display Panning CPL Extension] -> File not found
{764BF0E1-F219-11ce-972D-00AA00A14F56} [HKLM] -> Reg Data - Key not found [Shell extensions for file compression] -> File not found
{7A9D77BD-5403-11d2-8785-2E0420524153} [HKLM] -> Reg Data - Key not found [User Accounts] -> File not found
{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} [HKLM] -> Reg Data - Key not found [Encryption Context Menu] -> File not found
{88895560-9AA2-1069-930E-00AA0030EBC8} [HKLM] -> C:\WINDOWS\system32\hticons.dll [HyperTerminal Icon Ext] -> Hilgraeve, Inc. [Ver = 5.1.2600.0 | Size = 44544 bytes | Modified Date = 8/4/2004 7:00:00 AM | Attr = ]
{acb4a560-3606-11d3-aef4-00104bd0f92d} [HKLM] -> C:\Program Files\Common Files\Kodak\ifscore\KodakShX.dll [KodakShellExtension] -> Eastman Kodak Company [Ver = 2.0.2300.2 | Size = 381019 bytes | Modified Date = 5/20/2004 9:20:16 AM | Attr = ]
{F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} [HKLM] -> Reg Data - Key not found [Shell Extensions for RealOne Player] -> File not found
< ContextMenuHandlers - * [HKLM] > -> HKEY_LOCAL_MACHINE\Software\Classes\*\shellex\ContextMenuHandlers\
{FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} [HKLM] -> C:\Program Files\Norton AntiVirus\NAVSHEXT.DLL [Symantec.Norton.Antivirus.IEContextMenu] -> Symantec Corporation [Ver = 12.6.0.1 | Size = 140960 bytes | Modified Date = 10/17/2006 1:44:30 PM | Attr = ]
< ContextMenuHandlers - Folder [HKLM] > -> HKEY_LOCAL_MACHINE\Software\Classes\Folder\shellex\ContextMenuHandlers\
{FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} [HKLM] -> C:\Program Files\Norton AntiVirus\NAVSHEXT.DLL [Symantec.Norton.Antivirus.IEContextMenu] -> Symantec Corporation [Ver = 12.6.0.1 | Size = 140960 bytes | Modified Date = 10/17/2006 1:44:30 PM | Attr = ]
< DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\
{93B9847D-3B8D-4641-BEC2-AAD1F8BEAC64} -> (NETGEAR FA330 Fast Ethernet Adapter) ->
< Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\
ipp -> Reg Data - Key not found -> File not found
msdaipp -> Reg Data - Key not found -> File not found


< End of report >

#5 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:06:47 PM

Posted 23 December 2006 - 02:25 PM

Hi jackman2254.

Start WinPFind3U. Copy/Paste the information in the quotebox below into the pane where it says "Paste fix here" and then click the Run Fix button.

[Processes - Non-Microsoft Only]
YN -> teatimer.exe -> C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
YY -> windowssecurityupdate.exe -> C:\WINDOWS\WindowsSecurityUpdate.exe
[Registry - Non-Microsoft Only]
< Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
YY -> Security -> C:\WINDOWS\WindowsSecurityUpdate.exe
< RunOnceEx [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx
YN -> ->


The fix should only take a very short time.

Now run a new scan. It looks like the file scans were not selected the last time so make sure that the following options are selected:
  • In the Files Created Within group click 30 days
  • In the Files Modified Within group select 30 days
  • In the File String Search group select Non-Microsoft
[*]Now click the Run Scan button on the toolbar.

Post the following back here:
  • a new WinPFind3U report
  • the latest .log file from the WinPFind3u folder (it will have a name in the format mmddyyyy_hhmmss.log)
I will review the information when it comes back in.

Also let me know of any problems you encountered performing the steps above or any continuing problems you are still having with the computer.

Cheers.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image

#6 jackman2254

jackman2254
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:05:47 PM

Posted 23 December 2006 - 04:30 PM

Old Timer, It wont let me send you the log, says it is too large a file

#7 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:06:47 PM

Posted 23 December 2006 - 05:03 PM

Hi jackman2254. Break it into 2 posts then.

Cheers.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image

#8 jackman2254

jackman2254
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:05:47 PM

Posted 23 December 2006 - 08:37 PM

WinPFind3 logfile created on: 12/23/2006 3:42:27 PM
WinPFind3U by OldTimer - Version 1.0.1 Folder = E:\winpfind3u.exe\WinPFind3u\
Microsoft Windows XP Service Pack 2 (Version = 5.1.2600)
Internet Explorer (Version = 7.0.5730.11)


[Processes - Non-Microsoft Only]
aluschedulersvc.exe -> C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe -> Symantec Corporation [Ver = 3.0.0.171 | Size = 100032 bytes | Modified Date = 7/25/2006 6:03:44 PM | Attr = ]
ati2evxx.exe -> C:\WINDOWS\system32\ati2evxx.exe -> ATI Technologies Inc. [Ver = 6.14.10.4129 | Size = 405504 bytes | Modified Date = 2/21/2006 8:39:16 PM | Attr = ]
ati2evxx.exe -> C:\WINDOWS\system32\ati2evxx.exe -> ATI Technologies Inc. [Ver = 6.14.10.4129 | Size = 405504 bytes | Modified Date = 2/21/2006 8:39:16 PM | Attr = ]
ccapp.exe -> C:\Program Files\Common Files\Symantec Shared\CCAPP.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 52840 bytes | Modified Date = 11/21/2006 5:38:28 PM | Attr = ]
ccevtmgr.exe -> C:\Program Files\Common Files\Symantec Shared\CCEVTMGR.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 192104 bytes | Modified Date = 11/21/2006 5:38:32 PM | Attr = ]
ccsetmgr.exe -> C:\Program Files\Common Files\Symantec Shared\CCSETMGR.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 169576 bytes | Modified Date = 11/21/2006 5:38:40 PM | Attr = ]
jusched.exe -> C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe -> Sun Microsystems, Inc. [Ver = 5.0.90.3 | Size = 49263 bytes | Modified Date = 10/12/2006 3:10:54 AM | Attr = ]
kodakccs.exe -> C:\WINDOWS\system32\drivers\KodakCCS.exe -> Eastman Kodak Company [Ver = 1.1.5100.4 | Size = 322104 bytes | Modified Date = 5/24/2004 12:35:52 PM | Attr = ]
navapsvc.exe -> C:\Program Files\Norton AntiVirus\NAVAPSVC.EXE -> Symantec Corporation [Ver = 12.6.0.1 | Size = 139936 bytes | Modified Date = 10/17/2006 1:44:18 PM | Attr = ]
npfmntor.exe -> C:\Program Files\Norton AntiVirus\IWP\NPFMNTOR.EXE -> Symantec Corporation [Ver = 12.6.0.1 | Size = 46752 bytes | Modified Date = 10/17/2006 1:44:40 PM | Attr = ]
nscsrvce.exe -> C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE -> Symantec Corporation [Ver = 2006.1.8.2 | Size = 750720 bytes | Modified Date = 12/15/2006 1:36:28 PM | Attr = ]
qttask.exe -> C:\Program Files\QuickTime\qttask.exe -> Apple Computer, Inc. [Ver = 6.4 | Size = 77824 bytes | Modified Date = 11/14/2006 9:52:08 AM | Attr = ]
sdhelp.exe -> C:\Program Files\Spyware Doctor\sdhelp.exe -> PC Tools Research Pty Ltd [Ver = 3.6.0.2026 | Size = 895088 bytes | Modified Date = 11/2/2006 5:17:14 PM | Attr = ]
sndsrvc.exe -> C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe -> Symantec Corporation [Ver = 6.0.4.402 | Size = 214720 bytes | Modified Date = 8/7/2006 4:03:02 PM | Attr = ]
spbbcsvc.exe -> C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe -> Symantec Corporation [Ver = 2.1.0.4 | Size = 1160848 bytes | Modified Date = 5/11/2006 3:50:20 PM | Attr = ]
swdoctor.exe -> C:\Program Files\Spyware Doctor\swdoctor.exe -> PC Tools Research Pty Ltd [Ver = 4.0.0.2621 | Size = 2115728 bytes | Modified Date = 12/11/2006 3:35:02 PM | Attr = ]
symlcsvc.exe -> C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe -> Symantec Corporation [Ver = 1.9.1.762 | Size = 1119888 bytes | Modified Date = 11/13/2006 5:02:58 PM | Attr = ]
teatimer.exe -> C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe -> Safer Networking Limited [Ver = 1, 4, 0, 2 | Size = 1415824 bytes | Modified Date = 5/31/2005 1:04:00 AM | Attr = ]
webshots.scr -> C:\Program Files\Webshots\Webshots.scr -> Webshots.com [Ver = 2, 5, 1, 7009 | Size = 1650688 bytes | Modified Date = 10/9/2006 12:56:34 PM | Attr = ]
winpfind3u.exe -> E:\winpfind3u.exe\WinPFind3u\WinPFind3U.exe -> Oldtimer Tools [Ver = 1.0.1.0 | Size = 302592 bytes | Modified Date = 12/21/2006 8:20:08 PM | Attr = ]

[Win32 Services - Non-Microsoft Only]
(Ati HotKey Poller) Ati HotKey Poller [Win32_Own | Auto | Running] -> C:\WINDOWS\system32\ati2evxx.exe -> ATI Technologies Inc. [Ver = 6.14.10.4129 | Size = 405504 bytes | Modified Date = 2/21/2006 8:39:16 PM | Attr = ]
(Automatic LiveUpdate Scheduler) Automatic LiveUpdate Scheduler [Win32_Own | Auto | Running] -> C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe -> Symantec Corporation [Ver = 3.0.0.171 | Size = 100032 bytes | Modified Date = 7/25/2006 6:03:44 PM | Attr = ]
(ccEvtMgr) Symantec Event Manager [Win32_Own | Auto | Running] -> C:\Program Files\Common Files\Symantec Shared\CCEVTMGR.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 192104 bytes | Modified Date = 11/21/2006 5:38:32 PM | Attr = ]
(ccSetMgr) Symantec Settings Manager [Win32_Own | Auto | Running] -> C:\Program Files\Common Files\Symantec Shared\CCSETMGR.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 169576 bytes | Modified Date = 11/21/2006 5:38:40 PM | Attr = ]
(dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> C:\WINDOWS\system32\dmadmin.exe -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 8/4/2004 7:00:00 AM | Attr = ]
(KodakCCS) Kodak Camera Connection Software [Win32_Own | Auto | Running] -> C:\WINDOWS\system32\drivers\KodakCCS.exe -> Eastman Kodak Company [Ver = 1.1.5100.4 | Size = 322104 bytes | Modified Date = 5/24/2004 12:35:52 PM | Attr = ]
(LiveUpdate) LiveUpdate [Win32_Own | On_Demand | Stopped] -> C:\Program Files\Symantec\LiveUpdate\LuComServer_3_0.EXE -> Symantec Corporation [Ver = 3.0.0.171 | Size = 2119360 bytes | Modified Date = 7/25/2006 6:03:44 PM | Attr = ]
(navapsvc) Norton AntiVirus Auto-Protect Service [Win32_Own | Auto | Running] -> C:\Program Files\Norton AntiVirus\NAVAPSVC.EXE -> Symantec Corporation [Ver = 12.6.0.1 | Size = 139936 bytes | Modified Date = 10/17/2006 1:44:18 PM | Attr = ]
(NPFMntor) Norton AntiVirus Firewall Monitor Service [Win32_Own | Auto | Running] -> C:\Program Files\Norton AntiVirus\IWP\NPFMNTOR.EXE -> Symantec Corporation [Ver = 12.6.0.1 | Size = 46752 bytes | Modified Date = 10/17/2006 1:44:40 PM | Attr = ]
(NSCService) Norton Protection Center Service [Win32_Own | On_Demand | Running] -> C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE -> Symantec Corporation [Ver = 2006.1.8.2 | Size = 750720 bytes | Modified Date = 12/15/2006 1:36:28 PM | Attr = ]
(SAVScan) Symantec AVScan [Win32_Own | On_Demand | Stopped] -> C:\Program Files\Norton AntiVirus\SAVScan.exe -> Symantec Corporation [Ver = 9.7.0.10 | Size = 198368 bytes | Modified Date = 8/26/2005 4:22:48 PM | Attr = ]
(SDhelper) PC Tools Spyware Doctor [Win32_Own | Auto | Running] -> C:\Program Files\Spyware Doctor\sdhelp.exe -> PC Tools Research Pty Ltd [Ver = 3.6.0.2026 | Size = 895088 bytes | Modified Date = 11/2/2006 5:17:14 PM | Attr = ]
(SNDSrvc) Symantec Network Drivers Service [Win32_Own | Auto | Running] -> C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe -> Symantec Corporation [Ver = 6.0.4.402 | Size = 214720 bytes | Modified Date = 8/7/2006 4:03:02 PM | Attr = ]
(SPBBCSvc) SPBBCSvc [Win32_Own | Auto | Running] -> C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe -> Symantec Corporation [Ver = 2.1.0.4 | Size = 1160848 bytes | Modified Date = 5/11/2006 3:50:20 PM | Attr = ]
(Symantec Core LC) Symantec Core LC [Win32_Own | Auto | Running] -> C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe -> Symantec Corporation [Ver = 1.9.1.762 | Size = 1119888 bytes | Modified Date = 11/13/2006 5:02:58 PM | Attr = ]

[Registry - Non-Microsoft Only]
< Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
ccApp -> C:\Program Files\Common Files\Symantec Shared\CCAPP.EXE -> Symantec Corporation [Ver = 104.0.13.2 | Size = 52840 bytes | Modified Date = 11/21/2006 5:38:28 PM | Attr = ]
QuickTime Task -> C:\Program Files\QuickTime\qttask.exe -> Apple Computer, Inc. [Ver = 6.4 | Size = 77824 bytes | Modified Date = 11/14/2006 9:52:08 AM | Attr = ]
Security -> C:\WINDOWS\WindowsSecurityUpdate.exe -> [Ver = 1, 0, 0, 1 | Size = 53248 bytes | Modified Date = 12/18/2006 2:03:04 PM | Attr = ]
SunJavaUpdateSched -> C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe -> Sun Microsystems, Inc. [Ver = 5.0.90.3 | Size = 49263 bytes | Modified Date = 10/12/2006 3:10:54 AM | Attr = ]
< RunOnceEx [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx
-> -> File not found
< Run [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
SpybotSD TeaTimer -> C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe -> Safer Networking Limited [Ver = 1, 4, 0, 2 | Size = 1415824 bytes | Modified Date = 5/31/2005 1:04:00 AM | Attr = ]
Spyware Doctor -> C:\Program Files\Spyware Doctor\swdoctor.exe -> PC Tools Research Pty Ltd [Ver = 4.0.0.2621 | Size = 2115728 bytes | Modified Date = 12/11/2006 3:35:02 PM | Attr = ]
< Disabled MSConfig Folder Items[HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\
C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Kodak EasyShare software.lnk -> C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe -> Eastman Kodak Company [Ver = 5, 0, 4, 128 | Size = 757760 bytes | Modified Date = 8/11/2004 2:22:40 AM | Attr = ]
C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Kodak software updater.lnk -> C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe -> [Ver = | Size = 16423 bytes | Modified Date = 2/13/2004 2:12:08 PM | Attr = ]
< Disabled MSConfig Registry Items [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\startupreg\
KernelFaultCheck -> -> File not found
QuickTime Task -> C:\Program Files\QuickTime\qttask.exe -> Apple Computer, Inc. [Ver = 6.4 | Size = 77824 bytes | Modified Date = 11/14/2006 9:52:08 AM | Attr = ]
< SecurityProviders [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders
< Winlogon settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
*VMApplet* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet ->
Control_RunDLL -> -> File not found
< Winlogon settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
< Winlogon\Notify settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\
< Policy Settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{BDEADF00-C265-11D0-BCED-00A0C90AB50F} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} -> 1073741857 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{0DF44EAA-FF21-4412-828E-260A8728E7F1} -> 32 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\dontdisplaylastusername -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticecaption -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticetext -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\shutdownwithoutlogon -> 1 ->
< Policy Settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 145 ->
< Desktop Components > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\
0 -> [Key] ->
0 -> FriendlyName = My Current Home Page ->
0 -> Source = About:Home ->
0 -> SubscribedURL = About:Home ->
< HOSTS File > -> C:\WINDOWS\System32\drivers\etc\Hosts
< Internet Explorer Settings > ->
HKLM: Default_Page_URL -> http://msn.com ->
HKLM: Main\\Default_Search_URL -> http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch ->
HKLM: Local Page -> C:\WINDOWS\System32\blank.htm ->
HKLM: Search Bar -> http://home.microsoft.com/search/search.asp ->
HKLM: Search Page -> http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch ->
HKLM: Start Page -> http://go.microsoft.com/fwlink/?LinkId=69157 ->
HKLM: CustomizeSearch -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm ->
HKLM: SearchAssistant -> http://www.google.com/ie ->
HKCU: Default_Page_URL -> http://msn.com ->
HKCU: Default_Search_URL -> http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch ->
HKCU: Local Page -> C:\WINDOWS\System32\blank.htm ->
HKCU: Search Bar -> http://www.google.com/ie ->
HKCU: Search Page -> http://www.google.com ->
HKCU: Start Page -> http://www.webshots.com/homepage.html ->
HKCU: URLSearchHooks\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM] -> Reg Data - Key not found [Yahoo! Toolbar] -> File not found
HKCU: ProxyEnable -> 0 ->
< Trusted Sites > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
msn.com [ - ] -> ->
< BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
{53707962-6F74-2D53-2644-206D7942484F} [HKLM] -> C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [Reg Data - Value does not exist] -> Safer Networking Limited [Ver = 1, 4, 0, 0 | Size = 853672 bytes | Modified Date = 5/31/2005 1:04:00 AM | Attr = ]
{5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} [HKLM] -> C:\Program Files\Spyware Doctor\tools\iesdsg.dll [PCTools Site Guard] -> PC Tools [Ver = 3.6.0.2071 | Size = 825528 bytes | Modified Date = 8/1/2006 3:27:06 PM | Attr = ]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKLM] -> C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll [SSVHelper Class] -> Sun Microsystems, Inc. [Ver = 5.0.90.3 | Size = 434279 bytes | Modified Date = 10/12/2006 3:25:44 AM | Attr = ]
{A8F38D8D-E480-4D52-B7A2-731BB6995FDD} [HKLM] -> C:\Program Files\Norton AntiVirus\NAVSHEXT.DLL [CNavExtBho Class] -> Symantec Corporation [Ver = 12.6.0.1 | Size = 140960 bytes | Modified Date = 10/17/2006 1:44:30 PM | Attr = ]
{B56A7D7D-6927-48C8-A975-17DF180C71AC} [HKLM] -> C:\Program Files\Spyware Doctor\tools\iesdpb.dll [PCTools Browser Monitor] -> PC Tools [Ver = 3.6.0.2283 | Size = 850104 bytes | Modified Date = 8/1/2006 3:23:12 PM | Attr = ]
< Internet Explorer ToolBars [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar
{C4069E3A-68F1-403E-B40E-20066696354B} [HKLM] -> C:\Program Files\Norton AntiVirus\NAVSHEXT.DLL [Norton AntiVirus] -> Symantec Corporation [Ver = 12.6.0.1 | Size = 140960 bytes | Modified Date = 10/17/2006 1:44:30 PM | Attr = ]
< Internet Explorer ToolBars [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\
WebBrowser\\{C4069E3A-68F1-403E-B40E-20066696354B} [HKLM] -> C:\Program Files\Norton AntiVirus\NAVSHEXT.DLL [Norton AntiVirus] -> Symantec Corporation [Ver = 12.6.0.1 | Size = 140960 bytes | Modified Date = 10/17/2006 1:44:30 PM | Attr = ]
WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM] -> Reg Data - Key not found [Yahoo! Toolbar] -> File not found
< Internet Explorer CmdMapping [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping
{FB5F1910-F110-11d2-BB9E-00C04F795683} -> 8192 - Windows Messenger ->
NextId -> 8193 ->
< Internet Explorer Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKLM] -> C:\Program Files\Java\jre1.5.0_09\bin\npjpi150_09.dll [MenuText: Sun Java Console] ->
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKCU] -> C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll [MenuText: Sun Java Console] -> Sun Microsystems, Inc. [Ver = 5.0.90.3 | Size = 434279 bytes | Modified Date = 10/12/2006 3:25:44 AM | Attr = ]
{2D663D1A-8670-49D9-A1A5-4C56B4E14E84} -> Reg Data - Value does not exist [ButtonText: Spyware Doctor] -> File not found
{e2e2dd38-d088-4134-82b7-f2ba38496583} [HKLM] -> Reg Data - Key not found [MenuText: @xpsp3res.dll,-20001] ->
< Approved Shell Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
{00E7B358-F65B-4dcf-83DF-CD026B94BFD4} [HKLM] -> Reg Data - Key not found [Autoplay for SlideShow] -> File not found
{0DF44EAA-FF21-4412-828E-260A8728E7F1} [HKLM] -> Reg Data - Key not found [Taskbar and Start Menu] -> File not found
{42071714-76d4-11d1-8b24-00a0c9068ff3} [HKLM] -> deskpan.dll [Display Panning CPL Extension] -> File not found
{764BF0E1-F219-11ce-972D-00AA00A14F56} [HKLM] -> Reg Data - Key not found [Shell extensions for file compression] -> File not found
{7A9D77BD-5403-11d2-8785-2E0420524153} [HKLM] -> Reg Data - Key not found [User Accounts] -> File not found
{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} [HKLM] -> Reg Data - Key not found [Encryption Context Menu] -> File not found
{88895560-9AA2-1069-930E-00AA0030EBC8} [HKLM] -> C:\WINDOWS\system32\hticons.dll [HyperTerminal Icon Ext] -> Hilgraeve, Inc. [Ver = 5.1.2600.0 | Size = 44544 bytes | Modified Date = 8/4/2004 7:00:00 AM | Attr = ]
{acb4a560-3606-11d3-aef4-00104bd0f92d} [HKLM] -> C:\Program Files\Common Files\Kodak\ifscore\KodakShX.dll [KodakShellExtension] -> Eastman Kodak Company [Ver = 2.0.2300.2 | Size = 381019 bytes | Modified Date = 5/20/2004 9:20:16 AM | Attr = ]
{F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} [HKLM] -> Reg Data - Key not found [Shell Extensions for RealOne Player] -> File not found
< ContextMenuHandlers - * [HKLM] > -> HKEY_LOCAL_MACHINE\Software\Classes\*\shellex\ContextMenuHandlers\
{FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} [HKLM] -> C:\Program Files\Norton AntiVirus\NAVSHEXT.DLL [Symantec.Norton.Antivirus.IEContextMenu] -> Symantec Corporation [Ver = 12.6.0.1 | Size = 140960 bytes | Modified Date = 10/17/2006 1:44:30 PM | Attr = ]
< ContextMenuHandlers - Folder [HKLM] > -> HKEY_LOCAL_MACHINE\Software\Classes\Folder\shellex\ContextMenuHandlers\
{FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} [HKLM] -> C:\Program Files\Norton AntiVirus\NAVSHEXT.DLL [Symantec.Norton.Antivirus.IEContextMenu] -> Symantec Corporation [Ver = 12.6.0.1 | Size = 140960 bytes | Modified Date = 10/17/2006 1:44:30 PM | Attr = ]
< DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\
{93B9847D-3B8D-4641-BEC2-AAD1F8BEAC64} -> (NETGEAR FA330 Fast Ethernet Adapter) ->
< Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\
ipp -> Reg Data - Key not found -> File not found
msdaipp -> Reg Data - Key not found -> File not found


[Files - Created Wihin 30 days]
hiberfil.sys -> C:\hiberfil.sys -> [Ver = | Size = 670617600 bytes | Created Date = 1/1/1601 5:00:00 AM | Attr = HS]
trdr3260.dll -> C:\Program Files\Common Files\Real\Common\trdr3260.dll -> RealNetworks, Inc. [Ver = 6.0.8.1258 | Size = 24576 bytes | Created Date = 11/30/2006 8:29:40 PM | Attr = ]
basi3260.dll -> C:\Program Files\Common Files\Real\Plugins\basi3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.184 | Size = 2428928 bytes | Created Date = 11/30/2006 8:30:07 PM | Attr = ]
EraserUtilRebootDrv.sys -> C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -> Symantec Corporation [Ver = 106.3.3.2 | Size = 102712 bytes | Created Date = 12/3/2006 7:47:00 PM | Attr = ]
GUZ_004.chw -> C:\Program Files\Common Files\Symantec Shared\Help\GUZ_004.chw -> [Ver = | Size = 81715 bytes | Created Date = 12/22/2006 4:17:12 PM | Attr = ]
IWP_FWcs.chw -> C:\Program Files\Common Files\Symantec Shared\Help\IWP_FWcs.chw -> [Ver = | Size = 81723 bytes | Created Date = 12/22/2006 4:23:21 PM | Attr = ]
2006-12-03-6427.kc -> C:\Program Files\Common Files\Symantec Shared\SPBBC\2006-12-03-6427.kc -> [Ver = | Size = 160600 bytes | Created Date = 12/3/2006 9:54:33 AM | Attr = ]
2006-12-03-7b27.kc -> C:\Program Files\Common Files\Symantec Shared\SPBBC\2006-12-03-7b27.kc -> [Ver = | Size = 160600 bytes | Created Date = 12/3/2006 2:02:53 AM | Attr = ]
2006-12-04-2134.kc -> C:\Program Files\Common Files\Symantec Shared\SPBBC\2006-12-04-2134.kc -> [Ver = | Size = 160688 bytes | Created Date = 12/4/2006 12:19:28 PM | Attr = ]
2006-12-23-3ef4.kc -> C:\Program Files\Common Files\Symantec Shared\SPBBC\2006-12-23-3ef4.kc -> [Ver = | Size = 160688 bytes | Created Date = 12/23/2006 11:18:21 AM | Attr = ]
iKernel.rgs -> C:\Program Files\Common Files\InstallShield\Professional\RunTime\iKernel.rgs -> [Ver = | Size = 39634 bytes | Created Date = 12/19/2006 8:54:24 AM | Attr = ]
IsProBE.tlb -> C:\Program Files\Common Files\InstallShield\Professional\RunTime\IsProBE.tlb -> [Ver = | Size = 121032 bytes | Created Date = 12/19/2006 8:54:24 AM | Attr = ]
Objectps.dll -> C:\Program Files\Common Files\InstallShield\Professional\RunTime\Objectps.dll -> Macrovision Corporation [Ver = 11.50.42618 | Size = 32768 bytes | Created Date = 12/19/2006 8:54:24 AM | Attr = ]
CATALOG.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\CATALOG.DAT -> [Ver = | Size = 3406 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
CCERASER.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\CCERASER.DLL -> Symantec Corporation [Ver = 106.3.3.2 | Size = 2406200 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
ECBOOTIL.VXD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\ECBOOTIL.VXD -> [Ver = | Size = 6899 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
ECMSVR32.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\ECMSVR32.DLL -> Symantec Corporation [Ver = 61.3.0.18 | Size = 272040 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
eeCtrl.sys -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\eeCtrl.sys -> Symantec Corporation [Ver = 106.3.3.2 | Size = 387384 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
ERASER.grd -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\ERASER.grd -> [Ver = | Size = 232 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
ERASER.sig -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\ERASER.sig -> [Ver = | Size = 2261 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
ERASER.spm -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\ERASER.spm -> [Ver = | Size = 2320 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
eraser.sys -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\eraser.sys -> Symantec Corporation [Ver = 106.3.3.2 | Size = 102712 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
ESRDEF.BIN -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\ESRDEF.BIN -> [Ver = | Size = 3133041 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
NAVENG.EXP -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\NAVENG.EXP -> [Ver = | Size = 13040 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
NAVENG.SYS -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\NAVENG.SYS -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 80408 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
NAVENG.VXD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\NAVENG.VXD -> [Ver = | Size = 89674 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
NAVENG32.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\NAVENG32.DLL -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 124584 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
NAVEX15.EXP -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\NAVEX15.EXP -> [Ver = | Size = 13232 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
NAVEX15.SYS -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\NAVEX15.SYS -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 833048 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
NAVEX15.VXD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\NAVEX15.VXD -> [Ver = | Size = 994379 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
NAVEX32A.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\NAVEX32A.DLL -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 882344 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
NCSACERT.TXT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\NCSACERT.TXT -> [Ver = | Size = 6536 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
SCRAUTH.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\SCRAUTH.DAT -> [Ver = | Size = 97696 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
SYMAVENG.CAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\SYMAVENG.CAT -> [Ver = | Size = 9237 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
SYMAVENG.INF -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\SYMAVENG.INF -> [Ver = | Size = 1061 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
SymErase.cat -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\SymErase.cat -> [Ver = | Size = 8399 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
SymErase.inf -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\SymErase.inf -> [Ver = | Size = 580 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
TCDEFS.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\TCDEFS.DAT -> [Ver = | Size = 187432 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
TCSCAN7.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\TCSCAN7.DAT -> [Ver = | Size = 1171328 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
TCSCAN8.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\TCSCAN8.DAT -> [Ver = | Size = 322530 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
TCSCAN9.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\TCSCAN9.DAT -> [Ver = | Size = 727291 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
TECHNOTE.TXT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\TECHNOTE.TXT -> [Ver = | Size = 875 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
TINF.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\TINF.DAT -> [Ver = | Size = 453 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
TINFIDX.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\TINFIDX.DAT -> [Ver = | Size = 148 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
TINFL.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\TINFL.DAT -> [Ver = | Size = 1957 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
TSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\TSCAN1.DAT -> [Ver = | Size = 64301 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
TSCAN1HD.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\TSCAN1HD.DAT -> [Ver = | Size = 3027 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
V.GRD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\V.GRD -> [Ver = | Size = 5053 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
V.SIG -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\V.SIG -> [Ver = | Size = 2269 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
VIRSCAN.INF -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN.INF -> [Ver = | Size = 106244 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
VIRSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN1.DAT -> [Ver = | Size = 973868 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
VIRSCAN2.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN2.DAT -> [Ver = | Size = 569910 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
VIRSCAN3.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN3.DAT -> [Ver = | Size = 147260 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
VIRSCAN4.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN4.DAT -> [Ver = | Size = 320186 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
VIRSCAN5.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN5.DAT -> [Ver = | Size = 3074591 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
VIRSCAN6.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN6.DAT -> [Ver = | Size = 390030 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
VIRSCAN7.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN7.DAT -> [Ver = | Size = 5375898 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
VIRSCAN8.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN8.DAT -> [Ver = | Size = 1649409 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
VIRSCAN9.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN9.DAT -> [Ver = | Size = 3924483 bytes | Created Date = 12/15/2006 2:47:40 PM | Attr = ]
VIRSCANT.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCANT.DAT -> [Ver = | Size = 32 bytes | Created Date = 12/15/2006 2:47:41 PM | Attr = ]
WHATSNEW.TXT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\WHATSNEW.TXT -> [Ver = | Size = 28320 bytes | Created Date = 12/15/2006 2:47:41 PM | Attr = ]
ZDONE.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\ZDONE.DAT -> [Ver = | Size = 224 bytes | Created Date = 12/15/2006 2:47:41 PM | Attr = ]
CATALOG.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\CATALOG.DAT -> [Ver = | Size = 3406 bytes | Created Date = 12/22/2006 12:57:11 PM | Attr = ]
CCERASER.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\CCERASER.DLL -> Symantec Corporation [Ver = 106.3.3.2 | Size = 2406200 bytes | Created Date = 12/22/2006 12:57:12 PM | Attr = ]
ECBOOTIL.VXD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\ECBOOTIL.VXD -> [Ver = | Size = 6899 bytes | Created Date = 12/22/2006 12:57:12 PM | Attr = ]
ECMSVR32.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\ECMSVR32.DLL -> Symantec Corporation [Ver = 61.3.0.18 | Size = 272040 bytes | Created Date = 12/22/2006 12:57:12 PM | Attr = ]
eeCtrl.sys -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\eeCtrl.sys -> Symantec Corporation [Ver = 106.3.3.2 | Size = 387384 bytes | Created Date = 12/22/2006 12:57:13 PM | Attr = ]
ERASER.grd -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\ERASER.grd -> [Ver = | Size = 232 bytes | Created Date = 12/22/2006 12:57:13 PM | Attr = ]
ERASER.sig -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\ERASER.sig -> [Ver = | Size = 2261 bytes | Created Date = 12/22/2006 12:57:13 PM | Attr = ]
ERASER.spm -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\ERASER.spm -> [Ver = | Size = 2320 bytes | Created Date = 12/22/2006 12:57:13 PM | Attr = ]
eraser.sys -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\eraser.sys -> Symantec Corporation [Ver = 106.3.3.2 | Size = 102712 bytes | Created Date = 12/22/2006 12:57:13 PM | Attr = ]
ESRDEF.BIN -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\ESRDEF.BIN -> [Ver = | Size = 3134700 bytes | Created Date = 12/22/2006 12:57:13 PM | Attr = ]
NAVENG.EXP -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\NAVENG.EXP -> [Ver = | Size = 13040 bytes | Created Date = 12/22/2006 12:57:15 PM | Attr = ]
NAVENG.SYS -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\NAVENG.SYS -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 80408 bytes | Created Date = 12/22/2006 12:57:15 PM | Attr = ]
NAVENG.VXD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\NAVENG.VXD -> [Ver = | Size = 89674 bytes | Created Date = 12/22/2006 12:57:16 PM | Attr = ]
NAVENG32.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\NAVENG32.DLL -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 124584 bytes | Created Date = 12/22/2006 12:57:16 PM | Attr = ]
NAVEX15.EXP -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\NAVEX15.EXP -> [Ver = | Size = 13232 bytes | Created Date = 12/22/2006 12:57:17 PM | Attr = ]
NAVEX15.SYS -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\NAVEX15.SYS -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 833048 bytes | Created Date = 12/22/2006 12:57:17 PM | Attr = ]
NAVEX15.VXD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\NAVEX15.VXD -> [Ver = | Size = 994379 bytes | Created Date = 12/22/2006 12:57:18 PM | Attr = ]
NAVEX32A.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\NAVEX32A.DLL -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 882344 bytes | Created Date = 12/22/2006 12:57:19 PM | Attr = ]
NCSACERT.TXT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\NCSACERT.TXT -> [Ver = | Size = 6536 bytes | Created Date = 12/22/2006 12:57:19 PM | Attr = ]
SCRAUTH.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\SCRAUTH.DAT -> [Ver = | Size = 97712 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
SYMAVENG.CAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\SYMAVENG.CAT -> [Ver = | Size = 9237 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
SYMAVENG.INF -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\SYMAVENG.INF -> [Ver = | Size = 1061 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
SymErase.cat -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\SymErase.cat -> [Ver = | Size = 8399 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
SymErase.inf -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\SymErase.inf -> [Ver = | Size = 580 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
TCDEFS.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TCDEFS.DAT -> [Ver = | Size = 187555 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
TCSCAN7.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TCSCAN7.DAT -> [Ver = | Size = 1175640 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
TCSCAN8.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TCSCAN8.DAT -> [Ver = | Size = 323349 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
TCSCAN9.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TCSCAN9.DAT -> [Ver = | Size = 728888 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
TECHNOTE.TXT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TECHNOTE.TXT -> [Ver = | Size = 875 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
TINF.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TINF.DAT -> [Ver = | Size = 453 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
TINFIDX.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TINFIDX.DAT -> [Ver = | Size = 148 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
TINFL.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TINFL.DAT -> [Ver = | Size = 1957 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
TSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TSCAN1.DAT -> [Ver = | Size = 64232 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
TSCAN1HD.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TSCAN1HD.DAT -> [Ver = | Size = 3072 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
V.GRD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\V.GRD -> [Ver = | Size = 5053 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
V.SIG -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\V.SIG -> [Ver = | Size = 2261 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
VIRSCAN.INF -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN.INF -> [Ver = | Size = 106244 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
VIRSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN1.DAT -> [Ver = | Size = 974300 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
VIRSCAN2.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN2.DAT -> [Ver = | Size = 569976 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
VIRSCAN3.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN3.DAT -> [Ver = | Size = 147296 bytes | Created Date = 12/22/2006 12:57:20 PM | Attr = ]
VIRSCAN4.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN4.DAT -> [Ver = | Size = 320186 bytes | Created Date = 12/22/2006 12:57:21 PM | Attr = ]
VIRSCAN5.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN5.DAT -> [Ver = | Size = 3096308 bytes | Created Date = 12/22/2006 12:57:21 PM | Attr = ]
VIRSCAN6.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN6.DAT -> [Ver = | Size = 390030 bytes | Created Date = 12/22/2006 12:57:22 PM | Attr = ]
VIRSCAN7.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN7.DAT -> [Ver = | Size = 5446398 bytes | Created Date = 12/22/2006 12:57:22 PM | Attr = ]
VIRSCAN8.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN8.DAT -> [Ver = | Size = 1651768 bytes | Created Date = 12/22/2006 12:57:22 PM | Attr = ]
VIRSCAN9.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN9.DAT -> [Ver = | Size = 3947098 bytes | Created Date = 12/22/2006 12:57:22 PM | Attr = ]
VIRSCANT.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCANT.DAT -> [Ver = | Size = 32 bytes | Created Date = 12/22/2006 12:57:22 PM | Attr = ]
WHATSNEW.TXT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\WHATSNEW.TXT -> [Ver = | Size = 28436 bytes | Created Date = 12/22/2006 12:57:22 PM | Attr = ]
ZDONE.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\ZDONE.DAT -> [Ver = | Size = 224 bytes | Created Date = 12/22/2006 12:57:22 PM | Attr = ]
CATALOG.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\CATALOG.DAT -> [Ver = | Size = 3406 bytes | Created Date = 12/23/2006 2:52:19 PM | Attr = ]
CCERASER.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\CCERASER.DLL -> Symantec Corporation [Ver = 106.3.3.2 | Size = 2406200 bytes | Created Date = 12/23/2006 2:52:19 PM | Attr = ]
ECBOOTIL.VXD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\ECBOOTIL.VXD -> [Ver = | Size = 6899 bytes | Created Date = 12/23/2006 2:52:20 PM | Attr = ]
ECMSVR32.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\ECMSVR32.DLL -> Symantec Corporation [Ver = 61.3.0.18 | Size = 272040 bytes | Created Date = 12/23/2006 2:52:20 PM | Attr = ]
eeCtrl.sys -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\eeCtrl.sys -> Symantec Corporation [Ver = 106.3.3.2 | Size = 387384 bytes | Created Date = 12/23/2006 2:52:20 PM | Attr = ]
ERASER.grd -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\ERASER.grd -> [Ver = | Size = 232 bytes | Created Date = 12/23/2006 2:52:21 PM | Attr = ]
ERASER.sig -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\ERASER.sig -> [Ver = | Size = 2261 bytes | Created Date = 12/23/2006 2:52:21 PM | Attr = ]
ERASER.spm -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\ERASER.spm -> [Ver = | Size = 2320 bytes | Created Date = 12/23/2006 2:52:21 PM | Attr = ]
eraser.sys -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\eraser.sys -> Symantec Corporation [Ver = 106.3.3.2 | Size = 102712 bytes | Created Date = 12/23/2006 2:52:21 PM | Attr = ]
ESRDEF.BIN -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\ESRDEF.BIN -> [Ver = | Size = 3137912 bytes | Created Date = 12/23/2006 2:52:22 PM | Attr = ]
NAVENG.EXP -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\NAVENG.EXP -> [Ver = | Size = 13040 bytes | Created Date = 12/23/2006 2:52:22 PM | Attr = ]
NAVENG.SYS -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\NAVENG.SYS -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 80408 bytes | Created Date = 12/23/2006 2:52:22 PM | Attr = ]
NAVENG.VXD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\NAVENG.VXD -> [Ver = | Size = 89674 bytes | Created Date = 12/23/2006 2:52:22 PM | Attr = ]
NAVENG32.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\NAVENG32.DLL -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 124584 bytes | Created Date = 12/23/2006 2:52:22 PM | Attr = ]
NAVEX15.EXP -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\NAVEX15.EXP -> [Ver = | Size = 13232 bytes | Created Date = 12/23/2006 2:52:23 PM | Attr = ]
NAVEX15.SYS -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\NAVEX15.SYS -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 833048 bytes | Created Date = 12/23/2006 2:52:23 PM | Attr = ]
NAVEX15.VXD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\NAVEX15.VXD -> [Ver = | Size = 994379 bytes | Created Date = 12/23/2006 2:52:24 PM | Attr = ]
NAVEX32A.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\NAVEX32A.DLL -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 882344 bytes | Created Date = 12/23/2006 2:52:24 PM | Attr = ]
NCSACERT.TXT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\NCSACERT.TXT -> [Ver = | Size = 6536 bytes | Created Date = 12/23/2006 2:52:24 PM | Attr = ]
SCRAUTH.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\SCRAUTH.DAT -> [Ver = | Size = 97712 bytes | Created Date = 12/23/2006 2:52:24 PM | Attr = ]
SYMAVENG.CAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\SYMAVENG.CAT -> [Ver = | Size = 9237 bytes | Created Date = 12/23/2006 2:52:24 PM | Attr = ]
SYMAVENG.INF -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\SYMAVENG.INF -> [Ver = | Size = 1061 bytes | Created Date = 12/23/2006 2:52:24 PM | Attr = ]
SymErase.cat -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\SymErase.cat -> [Ver = | Size = 8399 bytes | Created Date = 12/23/2006 2:52:24 PM | Attr = ]
SymErase.inf -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\SymErase.inf -> [Ver = | Size = 580 bytes | Created Date = 12/23/2006 2:52:24 PM | Attr = ]
TCDEFS.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TCDEFS.DAT -> [Ver = | Size = 187573 bytes | Created Date = 12/23/2006 2:52:24 PM | Attr = ]
TCSCAN7.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TCSCAN7.DAT -> [Ver = | Size = 1177795 bytes | Created Date = 12/23/2006 2:52:24 PM | Attr = ]
TCSCAN8.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TCSCAN8.DAT -> [Ver = | Size = 323689 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
TCSCAN9.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TCSCAN9.DAT -> [Ver = | Size = 729084 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
TECHNOTE.TXT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TECHNOTE.TXT -> [Ver = | Size = 875 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
TINF.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TINF.DAT -> [Ver = | Size = 453 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
TINFIDX.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TINFIDX.DAT -> [Ver = | Size = 148 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
TINFL.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TINFL.DAT -> [Ver = | Size = 1957 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
TSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TSCAN1.DAT -> [Ver = | Size = 64232 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
TSCAN1HD.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TSCAN1HD.DAT -> [Ver = | Size = 3072 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
V.GRD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\V.GRD -> [Ver = | Size = 5053 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
V.SIG -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\V.SIG -> [Ver = | Size = 2261 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
VIRSCAN.INF -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN.INF -> [Ver = | Size = 106244 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
VIRSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN1.DAT -> [Ver = | Size = 974385 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
VIRSCAN2.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN2.DAT -> [Ver = | Size = 569976 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
VIRSCAN3.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN3.DAT -> [Ver = | Size = 147296 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
VIRSCAN4.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN4.DAT -> [Ver = | Size = 320186 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
VIRSCAN5.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN5.DAT -> [Ver = | Size = 3112503 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
VIRSCAN6.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN6.DAT -> [Ver = | Size = 390030 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
VIRSCAN7.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN7.DAT -> [Ver = | Size = 5486058 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
VIRSCAN8.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN8.DAT -> [Ver = | Size = 1652449 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
VIRSCAN9.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN9.DAT -> [Ver = | Size = 3952047 bytes | Created Date = 12/23/2006 2:52:25 PM | Attr = ]
VIRSCANT.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCANT.DAT -> [Ver = | Size = 32 bytes | Created Date = 12/23/2006 2:52:26 PM | Attr = ]
WHATSNEW.TXT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\WHATSNEW.TXT -> [Ver = | Size = 28436 bytes | Created Date = 12/23/2006 2:52:26 PM | Attr = ]
ZDONE.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\ZDONE.DAT -> [Ver = | Size = 224 bytes | Created Date = 12/23/2006 2:52:26 PM | Attr = ]
Adobe Help Center.lnk -> C:\Program Files\Common Files\Adobe\Launch\helpcenter\1.0\Adobe Help Center.lnk -> [Ver = | Size = 1722 bytes | Created Date = 12/1/2006 8:53:28 AM | Attr = ]
CATALOG.DAT -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\CATALOG.DAT -> [Ver = | Size = 728 bytes | Created Date = 12/13/2006 3:14:15 AM | Attr = ]
IDS9xx86.dll -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\IDS9xx86.dll -> Symantec Corporation [Ver = 6.3.0.3 | Size = 157432 bytes | Created Date = 12/13/2006 3:14:15 AM | Attr = ]
IDSVia64.cat -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\IDSVia64.cat -> [Ver = | Size = 8016 bytes | Created Date = 12/13/2006 3:14:15 AM | Attr = ]
IDSVia64.INF -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\IDSVia64.INF -> [Ver = | Size = 1043 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
IDSviA64.sys -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\IDSviA64.sys -> Symantec Corporation [Ver = 7.1.0.28 | Size = 266088 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
IDSVix86.cat -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\IDSVix86.cat -> [Ver = | Size = 7958 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
IDSVix86.INF -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\IDSVix86.INF -> [Ver = | Size = 839 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
IDSvix86.sys -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\IDSvix86.sys -> Symantec Corporation [Ver = 7.1.0.28 | Size = 202872 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
IDSxpx86.dll -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\IDSxpx86.dll -> Symantec Corporation [Ver = 7.1.0.28 | Size = 509560 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
Metadata.dat -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\Metadata.dat -> [Ver = | Size = 80432 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
sigs.dat -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\sigs.dat -> [Ver = | Size = 1941920 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
SymIDSCo.sys -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\SymIDSCo.sys -> Symantec Corporation [Ver = 7.1.0.28 | Size = 176760 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
SymIDSCo.vxd -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\SymIDSCo.vxd -> [Ver = | Size = 216777 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
SymIDSI.dll -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\SymIDSI.dll -> Symantec Corporation [Ver = 7.1.0.28 | Size = 104056 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
v.grd -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\v.grd -> [Ver = | Size = 1245 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
v.sig -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\v.sig -> [Ver = | Size = 2261 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
VIRSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\VIRSCAN1.DAT -> [Ver = | Size = 32 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
zdone.dat -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\zdone.dat -> [Ver = | Size = 224 bytes | Created Date = 12/13/2006 3:14:16 AM | Attr = ]
CATALOG.DAT -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061216.001\CATALOG.DAT -> [Ver = | Size = 728 bytes | Created Date = 12/18/2006 2:21:52 PM | Attr = ]
IDS9xx86.dll -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\2006121

#9 jackman2254

jackman2254
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:05:47 PM

Posted 23 December 2006 - 08:38 PM

SymErase.inf -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\SymErase.inf -> [Ver = | Size = 580 bytes | Modified Date = 12/3/2006 4:00:00 AM | Attr = ]
TCDEFS.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TCDEFS.DAT -> [Ver = | Size = 187555 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
TCSCAN7.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TCSCAN7.DAT -> [Ver = | Size = 1175640 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
TCSCAN8.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TCSCAN8.DAT -> [Ver = | Size = 323349 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
TCSCAN9.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TCSCAN9.DAT -> [Ver = | Size = 728888 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
TINF.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TINF.DAT -> [Ver = | Size = 453 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
TINFL.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TINFL.DAT -> [Ver = | Size = 1957 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
TSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TSCAN1.DAT -> [Ver = | Size = 64232 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
TSCAN1HD.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TSCAN1HD.DAT -> [Ver = | Size = 3072 bytes | Modified Date = 12/18/2006 4:00:00 AM | Attr = ]
V.GRD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\V.GRD -> [Ver = | Size = 5053 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
V.SIG -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\V.SIG -> [Ver = | Size = 2261 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
VIRSCAN.INF -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN.INF -> [Ver = | Size = 106244 bytes | Modified Date = 12/12/2006 4:00:00 AM | Attr = ]
VIRSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN1.DAT -> [Ver = | Size = 974300 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
VIRSCAN2.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN2.DAT -> [Ver = | Size = 569976 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
VIRSCAN3.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN3.DAT -> [Ver = | Size = 147296 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
VIRSCAN4.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN4.DAT -> [Ver = | Size = 320186 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
VIRSCAN5.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN5.DAT -> [Ver = | Size = 3096308 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
VIRSCAN6.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN6.DAT -> [Ver = | Size = 390030 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
VIRSCAN7.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN7.DAT -> [Ver = | Size = 5446398 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
VIRSCAN8.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN8.DAT -> [Ver = | Size = 1651768 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
VIRSCAN9.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN9.DAT -> [Ver = | Size = 3947098 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
VIRSCANT.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCANT.DAT -> [Ver = | Size = 32 bytes | Modified Date = 12/22/2006 5:33:36 AM | Attr = ]
WHATSNEW.TXT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\WHATSNEW.TXT -> [Ver = | Size = 28436 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
CCERASER.DLL -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\CCERASER.DLL -> Symantec Corporation [Ver = 106.3.3.2 | Size = 2406200 bytes | Modified Date = 12/3/2006 4:00:00 AM | Attr = ]
eeCtrl.sys -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\eeCtrl.sys -> Symantec Corporation [Ver = 106.3.3.2 | Size = 387384 bytes | Modified Date = 12/3/2006 4:00:00 AM | Attr = ]
ERASER.grd -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\ERASER.grd -> [Ver = | Size = 232 bytes | Modified Date = 12/3/2006 4:00:00 AM | Attr = ]
ERASER.sig -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\ERASER.sig -> [Ver = | Size = 2261 bytes | Modified Date = 12/3/2006 4:00:00 AM | Attr = ]
ERASER.spm -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\ERASER.spm -> [Ver = | Size = 2320 bytes | Modified Date = 12/3/2006 4:00:00 AM | Attr = ]
eraser.sys -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\eraser.sys -> Symantec Corporation [Ver = 106.3.3.2 | Size = 102712 bytes | Modified Date = 12/3/2006 4:00:00 AM | Attr = ]
ESRDEF.BIN -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\ESRDEF.BIN -> [Ver = | Size = 3137912 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
NAVENG.SYS -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\NAVENG.SYS -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 80408 bytes | Modified Date = 12/15/2006 4:00:00 AM | Attr = ]
NAVEX15.SYS -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\NAVEX15.SYS -> Symantec Corporation [Ver = 20061.3.0.12 | Size = 833048 bytes | Modified Date = 12/15/2006 4:00:00 AM | Attr = ]
SCRAUTH.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\SCRAUTH.DAT -> [Ver = | Size = 97712 bytes | Modified Date = 12/21/2006 4:00:00 AM | Attr = ]
SymErase.cat -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\SymErase.cat -> [Ver = | Size = 8399 bytes | Modified Date = 12/3/2006 4:00:00 AM | Attr = ]
SymErase.inf -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\SymErase.inf -> [Ver = | Size = 580 bytes | Modified Date = 12/3/2006 4:00:00 AM | Attr = ]
TCDEFS.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TCDEFS.DAT -> [Ver = | Size = 187573 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
TCSCAN7.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TCSCAN7.DAT -> [Ver = | Size = 1177795 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
TCSCAN8.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TCSCAN8.DAT -> [Ver = | Size = 323689 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
TCSCAN9.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TCSCAN9.DAT -> [Ver = | Size = 729084 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
TINF.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TINF.DAT -> [Ver = | Size = 453 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
TINFL.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TINFL.DAT -> [Ver = | Size = 1957 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
TSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TSCAN1.DAT -> [Ver = | Size = 64232 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
TSCAN1HD.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TSCAN1HD.DAT -> [Ver = | Size = 3072 bytes | Modified Date = 12/18/2006 4:00:00 AM | Attr = ]
V.GRD -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\V.GRD -> [Ver = | Size = 5053 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
V.SIG -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\V.SIG -> [Ver = | Size = 2261 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
VIRSCAN.INF -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN.INF -> [Ver = | Size = 106244 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
VIRSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN1.DAT -> [Ver = | Size = 974385 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
VIRSCAN2.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN2.DAT -> [Ver = | Size = 569976 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
VIRSCAN3.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN3.DAT -> [Ver = | Size = 147296 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
VIRSCAN4.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN4.DAT -> [Ver = | Size = 320186 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
VIRSCAN5.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN5.DAT -> [Ver = | Size = 3112503 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
VIRSCAN6.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN6.DAT -> [Ver = | Size = 390030 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
VIRSCAN7.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN7.DAT -> [Ver = | Size = 5486058 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
VIRSCAN8.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN8.DAT -> [Ver = | Size = 1652449 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
VIRSCAN9.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN9.DAT -> [Ver = | Size = 3952047 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
VIRSCANT.DAT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCANT.DAT -> [Ver = | Size = 32 bytes | Modified Date = 12/23/2006 8:41:28 AM | Attr = ]
WHATSNEW.TXT -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\WHATSNEW.TXT -> [Ver = | Size = 28436 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
Adobe Help Center.lnk -> C:\Program Files\Common Files\Adobe\Launch\helpcenter\1.0\Adobe Help Center.lnk -> [Ver = | Size = 1722 bytes | Modified Date = 12/1/2006 8:53:30 AM | Attr = ]
Metadata.dat -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\Metadata.dat -> [Ver = | Size = 80432 bytes | Modified Date = 12/10/2006 8:04:54 PM | Attr = ]
sigs.dat -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\sigs.dat -> [Ver = | Size = 1941920 bytes | Modified Date = 12/10/2006 8:04:54 PM | Attr = ]
v.grd -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\v.grd -> [Ver = | Size = 1245 bytes | Modified Date = 12/10/2006 8:04:56 PM | Attr = ]
v.sig -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\v.sig -> [Ver = | Size = 2261 bytes | Modified Date = 12/10/2006 8:05:02 PM | Attr = ]
VIRSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\VIRSCAN1.DAT -> [Ver = | Size = 32 bytes | Modified Date = 12/10/2006 8:04:56 PM | Attr = ]
Metadata.dat -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061216.001\Metadata.dat -> [Ver = | Size = 80528 bytes | Modified Date = 12/16/2006 3:27:54 AM | Attr = ]
sigs.dat -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061216.001\sigs.dat -> [Ver = | Size = 2021620 bytes | Modified Date = 12/16/2006 3:27:54 AM | Attr = ]
v.grd -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061216.001\v.grd -> [Ver = | Size = 1245 bytes | Modified Date = 12/16/2006 3:27:56 AM | Attr = ]
v.sig -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061216.001\v.sig -> [Ver = | Size = 2261 bytes | Modified Date = 12/16/2006 3:28:04 AM | Attr = ]
VIRSCAN1.DAT -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061216.001\VIRSCAN1.DAT -> [Ver = | Size = 32 bytes | Modified Date = 12/16/2006 3:27:56 AM | Attr = ]
iGdi.dll -> C:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iGdi.dll -> Macrovision Corporation [Ver = 11.50.42618 | Size = 200836 bytes | Modified Date = 12/19/2006 8:54:22 AM | Attr = ]
setup.dll -> C:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\setup.dll -> Macrovision Corporation [Ver = 11.50.42618 | Size = 331908 bytes | Modified Date = 12/19/2006 8:54:22 AM | Attr = ]
0.log -> C:\WINDOWS\0.log -> [Ver = | Size = 0 bytes | Modified Date = 12/23/2006 11:15:52 AM | Attr = ]
bootstat.dat -> C:\WINDOWS\bootstat.dat -> [Ver = | Size = 2048 bytes | Modified Date = 12/23/2006 11:14:52 AM | Attr = S]
cdplayer.ini -> C:\WINDOWS\cdplayer.ini -> [Ver = | Size = 929 bytes | Modified Date = 12/3/2006 10:55:16 PM | Attr = ]
Coffee Bean.bmp -> C:\WINDOWS\Coffee Bean.bmp -> [Ver = | Size = 17632 bytes | Modified Date = 12/18/2006 11:38:00 AM | Attr = ]
comsetup.log -> C:\WINDOWS\comsetup.log -> [Ver = | Size = 198182 bytes | Modified Date = 12/19/2006 2:01:12 PM | Attr = ]
DirectX.log -> C:\WINDOWS\DirectX.log -> [Ver = | Size = 94287 bytes | Modified Date = 12/8/2006 6:42:20 AM | Attr = ]
FaxSetup.log -> C:\WINDOWS\FaxSetup.log -> [Ver = | Size = 565623 bytes | Modified Date = 12/19/2006 2:01:12 PM | Attr = ]
iis6.log -> C:\WINDOWS\iis6.log -> [Ver = | Size = 90087 bytes | Modified Date = 12/19/2006 2:01:12 PM | Attr = ]
imsins.BAK -> C:\WINDOWS\imsins.BAK -> [Ver = | Size = 1393 bytes | Modified Date = 12/13/2006 3:01:56 AM | Attr = ]
imsins.log -> C:\WINDOWS\imsins.log -> [Ver = | Size = 1943 bytes | Modified Date = 12/19/2006 2:01:12 PM | Attr = ]
KB923694.log -> C:\WINDOWS\KB923694.log -> [Ver = | Size = 11106 bytes | Modified Date = 12/13/2006 3:01:20 AM | Attr = ]
KB925398.log -> C:\WINDOWS\KB925398.log -> [Ver = | Size = 5758 bytes | Modified Date = 12/13/2006 3:01:56 AM | Attr = ]
KB926239.log -> C:\WINDOWS\KB926239.log -> [Ver = | Size = 14300 bytes | Modified Date = 12/3/2006 3:51:48 PM | Attr = ]
KB926255.log -> C:\WINDOWS\KB926255.log -> [Ver = | Size = 11319 bytes | Modified Date = 12/13/2006 3:01:28 AM | Attr = ]
LiveBilliards.INI -> C:\WINDOWS\LiveBilliards.INI -> [Ver = | Size = 0 bytes | Modified Date = 12/10/2006 10:16:08 PM | Attr = ]
minigolf-uninst.exe -> C:\WINDOWS\minigolf-uninst.exe -> [Ver = | Size = 86016 bytes | Modified Date = 12/10/2006 6:52:14 PM | Attr = ]
mozver.dat -> C:\WINDOWS\mozver.dat -> [Ver = | Size = 2397 bytes | Modified Date = 12/3/2006 10:58:40 AM | Attr = ]
MSCompPackV1.log -> C:\WINDOWS\MSCompPackV1.log -> [Ver = | Size = 9502 bytes | Modified Date = 12/3/2006 3:51:16 PM | Attr = ]
msgsocm.log -> C:\WINDOWS\msgsocm.log -> [Ver = | Size = 28542 bytes | Modified Date = 12/19/2006 2:01:12 PM | Attr = ]
nsreg.dat -> C:\WINDOWS\nsreg.dat -> [Ver = | Size = 0 bytes | Modified Date = 12/2/2006 2:31:26 PM | Attr = ]
ntbtlog.txt -> C:\WINDOWS\ntbtlog.txt -> [Ver = | Size = 740126 bytes | Modified Date = 12/4/2006 12:27:06 PM | Attr = ]
ntdtcsetup.log -> C:\WINDOWS\ntdtcsetup.log -> [Ver = | Size = 118762 bytes | Modified Date = 12/19/2006 2:01:12 PM | Attr = ]
ocgen.log -> C:\WINDOWS\ocgen.log -> [Ver = | Size = 277022 bytes | Modified Date = 12/19/2006 2:01:12 PM | Attr = ]
ocmsn.log -> C:\WINDOWS\ocmsn.log -> [Ver = | Size = 31450 bytes | Modified Date = 12/19/2006 2:01:12 PM | Attr = ]
popcinfo.dat -> C:\WINDOWS\popcinfo.dat -> [Ver = | Size = 19 bytes | Modified Date = 12/3/2006 3:06:26 PM | Attr = ]
QTFont.for -> C:\WINDOWS\QTFont.for -> [Ver = | Size = 1409 bytes | Modified Date = 12/22/2006 12:59:42 PM | Attr = ]
QTFont.qfn -> C:\WINDOWS\QTFont.qfn -> [Ver = | Size = 54156 bytes | Modified Date = 12/23/2006 11:17:20 AM | Attr = H ]
SchedLgU.Txt -> C:\WINDOWS\SchedLgU.Txt -> [Ver = | Size = 28652 bytes | Modified Date = 12/23/2006 11:13:38 AM | Attr = ]
setupact.log -> C:\WINDOWS\setupact.log -> [Ver = | Size = 164483 bytes | Modified Date = 12/23/2006 10:41:38 AM | Attr = ]
setupapi.log -> C:\WINDOWS\setupapi.log -> [Ver = | Size = 419186 bytes | Modified Date = 12/19/2006 2:00:56 PM | Attr = ]
Soap Bubbles.bmp -> C:\WINDOWS\Soap Bubbles.bmp -> [Ver = | Size = 66548 bytes | Modified Date = 12/18/2006 11:38:00 AM | Attr = ]
spupdsvc.log -> C:\WINDOWS\spupdsvc.log -> [Ver = | Size = 7642 bytes | Modified Date = 12/3/2006 3:56:44 PM | Attr = ]
tsoc.log -> C:\WINDOWS\tsoc.log -> [Ver = | Size = 219842 bytes | Modified Date = 12/19/2006 2:01:12 PM | Attr = ]
updspapi.log -> C:\WINDOWS\updspapi.log -> [Ver = | Size = 63591 bytes | Modified Date = 12/13/2006 3:01:26 AM | Attr = ]
wiadebug.log -> C:\WINDOWS\wiadebug.log -> [Ver = | Size = 216 bytes | Modified Date = 12/22/2006 2:30:56 PM | Attr = ]
wiaservc.log -> C:\WINDOWS\wiaservc.log -> [Ver = | Size = 50 bytes | Modified Date = 12/22/2006 2:30:58 PM | Attr = ]
win.ini -> C:\WINDOWS\win.ini -> [Ver = | Size = 507 bytes | Modified Date = 12/3/2006 3:50:44 PM | Attr = ]
win.tmp -> C:\WINDOWS\win.tmp -> [Ver = | Size = 507 bytes | Modified Date = 12/3/2006 3:50:44 PM | Attr = ]
WindowsSecurityUpdate.exe -> C:\WINDOWS\WindowsSecurityUpdate.exe -> [Ver = 1, 0, 0, 1 | Size = 53248 bytes | Modified Date = 12/18/2006 2:03:04 PM | Attr = ]
WindowsUpdate.log -> C:\WINDOWS\WindowsUpdate.log -> [Ver = | Size = 1412887 bytes | Modified Date = 12/23/2006 11:15:16 AM | Attr = ]
WMFDist11.log -> C:\WINDOWS\WMFDist11.log -> [Ver = | Size = 54303 bytes | Modified Date = 12/3/2006 3:49:50 PM | Attr = ]
wmp11.log -> C:\WINDOWS\wmp11.log -> [Ver = | Size = 27913 bytes | Modified Date = 12/3/2006 3:50:58 PM | Attr = ]
wmsetup.log -> C:\WINDOWS\wmsetup.log -> [Ver = | Size = 94428 bytes | Modified Date = 12/21/2006 2:33:34 PM | Attr = ]
wmsetup10.log -> C:\WINDOWS\wmsetup10.log -> [Ver = | Size = 5856 bytes | Modified Date = 12/3/2006 3:52:04 PM | Attr = ]
Wudf01000Inst.log -> C:\WINDOWS\Wudf01000Inst.log -> [Ver = | Size = 16664 bytes | Modified Date = 12/3/2006 3:48:54 PM | Attr = ]
amcompat.tlb -> C:\WINDOWS\System32\amcompat.tlb -> [Ver = | Size = 16832 bytes | Modified Date = 12/3/2006 3:50:54 PM | Attr = ]
FNTCACHE.DAT -> C:\WINDOWS\System32\FNTCACHE.DAT -> [Ver = | Size = 90296 bytes | Modified Date = 12/18/2006 4:22:44 PM | Attr = ]
ikhcore.log -> C:\WINDOWS\System32\ikhcore.log -> [Ver = | Size = 63724 bytes | Modified Date = 12/23/2006 11:14:44 AM | Attr = ]
jupdate-1.5.0_08-b03.log -> C:\WINDOWS\System32\jupdate-1.5.0_08-b03.log -> [Ver = | Size = 8428 bytes | Modified Date = 12/1/2006 9:35:56 AM | Attr = ]
jupdate-1.5.0_09-b03.log -> C:\WINDOWS\System32\jupdate-1.5.0_09-b03.log -> [Ver = | Size = 8428 bytes | Modified Date = 12/3/2006 1:02:12 PM | Attr = ]
mcs.rma -> C:\WINDOWS\System32\mcs.rma -> [Ver = | Size = 870128 bytes | Modified Date = 12/3/2006 10:46:46 AM | Attr = ]
nscompat.tlb -> C:\WINDOWS\System32\nscompat.tlb -> [Ver = | Size = 23392 bytes | Modified Date = 12/3/2006 3:50:54 PM | Attr = ]
pncrt.dll -> C:\WINDOWS\System32\pncrt.dll -> Real Networks, Inc [Ver = 6.0.0.0 | Size = 278528 bytes | Modified Date = 11/30/2006 7:37:20 PM | Attr = ]
rmoc3260.dll -> C:\WINDOWS\System32\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2568 | Size = 185952 bytes | Modified Date = 11/30/2006 7:37:40 PM | Attr = ]
S32EVNT1.DLL -> C:\WINDOWS\System32\S32EVNT1.DLL -> Symantec Corporation [Ver = 12.3.0.15 | Size = 48776 bytes | Modified Date = 12/22/2006 2:27:10 PM | Attr = ]
wpa.dbl -> C:\WINDOWS\System32\wpa.dbl -> [Ver = | Size = 13646 bytes | Modified Date = 12/22/2006 2:32:18 PM | Attr = ]
mcstrm.sys -> C:\WINDOWS\System32\drivers\mcstrm.sys -> RealNetworks, Inc. [Ver = 5.0.2195.8 | Size = 8413 bytes | Modified Date = 11/30/2006 8:29:42 PM | Attr = ]
pfc.sys -> C:\WINDOWS\System32\drivers\pfc.sys -> Padus, Inc. [Ver = 2, 5, 0, 205 | Size = 10368 bytes | Modified Date = 12/7/2006 7:33:08 PM | Attr = ]
SYMEVENT.CAT -> C:\WINDOWS\System32\drivers\SYMEVENT.CAT -> [Ver = | Size = 8014 bytes | Modified Date = 12/22/2006 2:27:10 PM | Attr = ]
SYMEVENT.INF -> C:\WINDOWS\System32\drivers\SYMEVENT.INF -> [Ver = | Size = 806 bytes | Modified Date = 12/22/2006 2:27:10 PM | Attr = ]
SYMEVENT.SYS -> C:\WINDOWS\System32\drivers\SYMEVENT.SYS -> Symantec Corporation [Ver = 12.3.0.14 | Size = 115000 bytes | Modified Date = 12/22/2006 2:27:10 PM | Attr = ]

[File String Scan - Non-Microsoft Only]
Thawte Consulting , -> C:\Program Files\Common Files\ACD Systems\EN\ipwssl5.dll -> /n software inc. - www.nsoftware.com [Ver = 5.0.0.852 | Size = 321672 bytes | Modified Date = 8/26/2002 2:05:42 PM | Attr = ]
Thawte Consulting , -> C:\Program Files\Common Files\Java\Update\Base Images\jre1.5.0.b64\core3.zip -> [Ver = | Size = 3290841 bytes | Modified Date = 7/26/2006 3:34:02 AM | Attr = ]
USERTRUST , -> C:\Program Files\Common Files\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_08.b03\patchjre.exe -> Sun Microsystems, Inc. [Ver = 1, 0, 0, 1 | Size = 4482680 bytes | Modified Date = 7/26/2006 3:34:04 AM | Attr = ]
USERTRUST , -> C:\Program Files\Common Files\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_09.b03\patchjre.exe -> Sun Microsystems, Inc. [Ver = 1, 0, 0, 1 | Size = 4490872 bytes | Modified Date = 10/12/2006 3:41:58 AM | Attr = ]
UPX0 , -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061211.001\sigs.dat -> [Ver = | Size = 1941920 bytes | Modified Date = 12/10/2006 8:04:54 PM | Attr = ]
UPX0 , -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20061216.001\sigs.dat -> [Ver = | Size = 2021620 bytes | Modified Date = 12/16/2006 3:27:54 AM | Attr = ]
UPX0 , -> C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\BinHub\sigs.dat -> [Ver = | Size = 1935444 bytes | Modified Date = 11/13/2006 11:24:50 AM | Attr = ]
aspack , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20050912.024\NAVEX15.SYS -> Symantec Corporation [Ver = 20051.2.0.18 | Size = 665816 bytes | Modified Date = 9/12/2005 3:00:00 AM | Attr = ]
aspack , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20050912.024\NAVEX15.VXD -> [Ver = | Size = 963069 bytes | Modified Date = 9/12/2005 3:00:00 AM | Attr = ]
aspack , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20050912.024\NAVEX32A.DLL -> Symantec Corporation [Ver = 20051.2.0.18 | Size = 706168 bytes | Modified Date = 9/12/2005 3:00:00 AM | Attr = ]
SAHAgent , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20050912.024\VIRSCAN1.DAT -> [Ver = | Size = 960521 bytes | Modified Date = 9/12/2005 3:00:00 AM | Attr = ]
FSG! , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20050912.024\VIRSCAN8.DAT -> [Ver = | Size = 1402652 bytes | Modified Date = 9/12/2005 3:00:00 AM | Attr = ]
UPX! , FSG! , WSUD , UPX0 , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20050912.024\VIRSCAN9.DAT -> [Ver = | Size = 2661441 bytes | Modified Date = 9/12/2005 3:00:00 AM | Attr = ]
SAHAgent , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061114.034\TCDEFS.DAT -> [Ver = | Size = 186772 bytes | Modified Date = 11/14/2006 4:00:00 AM | Attr = ]
FSG! , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061114.034\VIRSCAN8.DAT -> [Ver = | Size = 1631328 bytes | Modified Date = 11/14/2006 4:00:00 AM | Attr = ]
FSG! , WSUD , UPX0 , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061114.034\VIRSCAN9.DAT -> [Ver = | Size = 3844893 bytes | Modified Date = 11/14/2006 4:00:00 AM | Attr = ]
SAHAgent , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\TCDEFS.DAT -> [Ver = | Size = 187432 bytes | Modified Date = 12/15/2006 4:00:00 AM | Attr = ]
FSG! , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN8.DAT -> [Ver = | Size = 1649409 bytes | Modified Date = 12/15/2006 4:00:00 AM | Attr = ]
FSG! , WSUD , UPX0 , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061215.018\VIRSCAN9.DAT -> [Ver = | Size = 3924483 bytes | Modified Date = 12/15/2006 4:00:00 AM | Attr = ]
SAHAgent , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\TCDEFS.DAT -> [Ver = | Size = 187555 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
FSG! , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN8.DAT -> [Ver = | Size = 1651768 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
FSG! , WSUD , UPX0 , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061222.009\VIRSCAN9.DAT -> [Ver = | Size = 3947098 bytes | Modified Date = 12/22/2006 4:00:00 AM | Attr = ]
SAHAgent , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\TCDEFS.DAT -> [Ver = | Size = 187573 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
FSG! , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN8.DAT -> [Ver = | Size = 1652449 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
FSG! , WSUD , UPX0 , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\20061223.008\VIRSCAN9.DAT -> [Ver = | Size = 3952047 bytes | Modified Date = 12/23/2006 4:00:00 AM | Attr = ]
SAHAgent , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\BinHub\tcdefs.dat -> [Ver = | Size = 186629 bytes | Modified Date = 11/6/2006 5:21:16 PM | Attr = ]
FSG! , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\BinHub\virscan8.dat -> [Ver = | Size = 1626254 bytes | Modified Date = 11/6/2006 5:21:16 PM | Attr = ]
FSG! , WSUD , UPX0 , -> C:\Program Files\Common Files\Symantec Shared\VirusDefs\BinHub\virscan9.dat -> [Ver = | Size = 3825246 bytes | Modified Date = 11/6/2006 5:21:16 PM | Attr = ]
PEC2 , -> C:\WINDOWS\System32\dfrg.msc -> [Ver = | Size = 41397 bytes | Modified Date = 8/4/2004 7:00:00 AM | Attr = ]
Thawte Consulting , -> C:\WINDOWS\System32\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.2568 | Size = 185952 bytes | Modified Date = 11/30/2006 7:37:40 PM | Attr = ]
winsync , -> C:\WINDOWS\System32\wbdbase.deu -> [Ver = | Size = 1309184 bytes | Modified Date = 8/4/2004 7:00:00 AM | Attr = ]
WSUD , UPX0 , -> C:\WINDOWS\System32\dllcache\hwxjpn.dll -> [Ver = | Size = 13463552 bytes | Modified Date = 8/4/2004 7:00:00 AM | Attr = ]

< End of report >

#10 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:06:47 PM

Posted 24 December 2006 - 08:18 AM

Hi jackman2254. Let's try this again. Please follow the steps below in order.

Step #1

We need to disable TeaTimer so it soes not interfere with the changes we are going to make.
  • Start Spybot-S&D.
  • Go to the Mode menu, and make sure Advanced Mode is selected.
  • On the left hand side, choose Tools and then click on Resident.
  • Uncheck Resident TeaTimer and choose OK for any further prompts.
  • Restart your computer.
Step #2

Start WinPFind3U. Copy/Paste the information in the quotebox below into the pane where it says "Paste fix here" and then click the Run Fix button.

[Registry - Non-Microsoft Only]
< Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
YY -> Security -> C:\WINDOWS\WindowsSecurityUpdate.exe
< RunOnceEx [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx
YN -> ->


The fix should only take a very short time.

Step #3

Post the following back here:
  • a new WinPFind3U report (just use the standard settings. I do not need the file scans).
  • the latest .log file from the WinPFind3u folder (it will have a name in the format mmddyyyy_hhmmss.log)
I will review the information when it comes back in.

Also let me know of any problems you encountered performing the steps above or any continuing problems you are still having with the computer.

Cheers.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image

#11 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:06:47 PM

Posted 24 December 2006 - 01:55 PM

This issue is now resolved and the topic is now closed.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users