Logfile of random's system information tool 1.09 (written by random/random) Run by A93B at 2012-08-28 15:54:17 Microsoft Windows XP Professional Service Pack 3 System drive C: has 2 GB (3%) free of 61 GB Total RAM: 2002 MB (44% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 3:54:26 PM, on 8/28/2012 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\CmgShieldSvc.exe C:\WINDOWS\system32\EMSService.exe c:\Program Files\Microsoft Security Client\MsMpEng.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Common Files\Microsoft Shared\Ink\KeyboardSurrogate.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\agrsmsvc.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Juniper Networks\Common Files\dsNcService.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\inetsrv\inetinfo.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\o2flash.exe C:\Program Files\PC Tools Firewall Plus\FWService.exe C:\WINDOWS\System32\svchost.exe C:\Documents and Settings\All Users\Application Data\Rpcnet\Bin\rpcld.exe C:\WINDOWS\System32\snmp.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\WINDOWS\system32\SearchIndexer.exe C:\WINDOWS\system32\mqsvc.exe C:\WINDOWS\system32\mqtgsvc.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\WINDOWS\SYSTEM32\WISPTIS.EXE C:\WINDOWS\System32\tabbtnu.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Common Files\Microsoft Shared\Ink\TCServer.exe C:\Program Files\Common Files\Microsoft Shared\Ink\TabTip.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\WINDOWS\VM331_STI.EXE C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe C:\Program Files\Fujitsu\SSUtility\FJSSDMN.exe C:\Program Files\Fujitsu\Utils\FjDspMon.exe C:\Program Files\Fujitsu\Utils\fjevents.exe C:\Program Files\Fujitsu\fjdvrupd\fjdvrupd.exe C:\Program Files\Fujitsu\Utils\FjMenu.exe C:\WINDOWS\system32\igfxext.exe C:\Program Files\Fujitsu\Utils\FjLidMon.exe C:\WINDOWS\System32\CMGShieldUI.exe C:\WINDOWS\system32\EmsServiceHelper.exe C:\WINDOWS\system32\igfxsrvc.exe C:\Program Files\HP\HP Software Update\HPWuSchd2.exe C:\Program Files\Citrix\ICA Client\concentr.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe C:\Program Files\Citrix\ICA Client\wfcrun32.exe C:\Program Files\Microsoft Security Client\msseces.exe C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\system32\hkcmd.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\system32\igfxpers.exe C:\Program Files\iTunes\iTunes.exe C:\Program Files\BOINC\boincmgr.exe C:\Program Files\BOINC\boinctray.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe C:\Program Files\Common Files\Apple\Apple Application Support\distnoted.exe C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe C:\Program Files\BOINC\boinc.exe C:\Documents and Settings\All Users\Application Data\BOINC\projects\setiathome.berkeley.edu\setiathome_6.03_windows_intelx86.exe C:\Documents and Settings\All Users\Application Data\BOINC\projects\setiathome.berkeley.edu\setiathome_6.03_windows_intelx86.exe C:\Program Files\Microsoft Office\Office12\WINWORD.EXE C:\WINDOWS\system32\SearchProtocolHost.exe C:\Documents and Settings\A93B\Desktop\RSIT.exe C:\Program Files\trend micro\A93B.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [TabletWizard] C:\WINDOWS\help\SplshWrp.exe O4 - HKLM\..\Run: [TabletTip] "C:\Program Files\Common Files\microsoft shared\ink\tabtip.exe" /resume O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [331BigDog] C:\WINDOWS\VM331_STI.EXE O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [LoadFUJ02E3] C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe O4 - HKLM\..\Run: [FjStrtAp] c:\Program Files\Fujitsu\Utils\FjStrtAp.exe O4 - HKLM\..\Run: [indicatorUtility] C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [sSUtility] C:\Program Files\Fujitsu\SSUtility\FJSSDMN.exe O4 - HKLM\..\Run: [FJUPDNV_Chitose] C:\Program Files\Fujitsu\fjdvrupd\fjdvrupd.exe O4 - HKLM\..\Run: [CmgShieldUI] C:\WINDOWS\System32\CMGShieldUI.exe O4 - HKLM\..\Run: [EmsService] EmsServiceHelper.exe O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [ConnectionCenter] "C:\Program Files\Citrix\ICA Client\concentr.exe" /startup O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey O4 - HKLM\..\Run: [igfxTray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [boincmgr] "C:\Program Files\BOINC\boincmgr.exe" /a /s O4 - HKLM\..\Run: [boinctray] "C:\Program Files\BOINC\boinctray.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [EasyLinkAdvisor] "C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe" /startup O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://us.fujitsu.com/computers O16 - DPF: {1C11B948-582A-433F-A98D-A8C4D5CC64F2} (20-20 3D Viewer) - https://lowes.2020.net/planner/Core/Player/2020PlayerAX_Win32.cab O16 - DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} (Bitdefender QuickScan Control) - http://quickscan.bitdefender.com/qsax/qsax.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1345551028786 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1345551009208 O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} (JuniperSetupClientControl Class) - https://juniper.net/dana-cached/sc/JuniperSetupClient.cab O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: CMGShield - Credant Technologies, Inc. - C:\WINDOWS\system32\CmgShieldSvc.exe O23 - Service: Juniper Network Connect Service (dsNcService) - Juniper Networks - C:\Program Files\Juniper Networks\Common Files\dsNcService.exe O23 - Service: EMS - CREDANT Technologies, Inc. - C:\WINDOWS\system32\EMSService.exe O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: O2Flash Memory Service (O2Flash) - O2Micro International - C:\WINDOWS\system32\o2flash.exe O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - Unknown owner - C:\Program Files\PC Tools Firewall Plus\FWService.exe O23 - Service: Remote Procedure Call (RPC) LD (rpcld) - Unknown owner - C:\Documents and Settings\All Users\Application Data\Rpcnet\Bin\rpcld.exe (file missing) -- End of file - 13809 bytes ======Scheduled tasks folder====== C:\WINDOWS\tasks\Adobe Flash Player Updater.job C:\WINDOWS\tasks\AppleSoftwareUpdate.job C:\WINDOWS\tasks\FreeFileViewerUpdateChecker.job C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job C:\WINDOWS\tasks\Microsoft Antimalware Scheduled Scan.job =========Mozilla firefox========= ProfilePath - C:\Documents and Settings\A93B\Application Data\Mozilla\Firefox\Profiles\pv8enezb.default prefs.js - "browser.startup.homepage" - "www.google.com" prefs.js - "keyword.URL" - "http://dts.search-results.com/sr?src=ffb&appid=20&systemid=2&sr=0&q=" "{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ "smartwebprinting@hp.com"=C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 11.3.300.271 Plugin "Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_271.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer] "Description"=Adobe Shockwave Player "Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=] "Description"=iTunes Detector Plug-in "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0] "Description"= "Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin] "Description"=Google Earth in your browser "Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.6.2] "Description"=Java™ Deployment Toolkit "Path"=C:\WINDOWS\system32\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.6.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5] "Description"=Windows Presentation Foundation plug-in for Mozilla browsers "Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll C:\Program Files\Mozilla Firefox\extensions\ {972ce4c6-7e08-4474-a285-3208198ce6fd} C:\Program Files\Mozilla Firefox\components\ binary.manifest browsercomps.dll IICAClient.xpt nsILegitCheckPlugin.xpt nsIQTScriptablePlugin.xpt C:\Program Files\Mozilla Firefox\plugins\ CCMSDK.dll cgpcfg.dll CgpCore.dll confmgr.dll ctxlogging.dll ctxmui.dll ICAClObj.class icafile.dll icalogon.dll npicaN.dll npLegitCheckPlugin.dll nppdf32.dll npqtplugin.dll npqtplugin2.dll npqtplugin3.dll npqtplugin4.dll npqtplugin5.dll npqtplugin6.dll npqtplugin7.dll QuickTimePlugin.class sslsdk_b.dll TcpPServ.dll C:\Program Files\Mozilla Firefox\searchplugins\ amazondotcom.xml bing.xml eBay.xml google.xml Search_Results.xml twitter.xml wikipedia.xml yahoo.xml C:\Documents and Settings\A93B\Application Data\Mozilla\Firefox\Profiles\pv8enezb.default\extensions\ 2020Player_WEB@2020Technologies.com C:\Documents and Settings\A93B\Application Data\Mozilla\Firefox\Profiles\pv8enezb.default\searchplugins\ Search_Results.xml ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-08-28 449512] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-08-28 157672] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "TabletWizard"=C:\WINDOWS\help\SplshWrp.exe [2008-04-14 16384] "TabletTip"=C:\Program Files\Common Files\microsoft shared\ink\tabtip.exe [2008-04-14 271872] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-04-10 1040384] "331BigDog"=C:\WINDOWS\VM331_STI.EXE [2008-05-28 200704] "RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-04-10 16861184] "SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-07-21 86016] "AlcWzrd"=C:\WINDOWS\ALCWZRD.EXE [2006-05-04 2808832] "LoadFUJ02E3"=C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [2008-01-31 88616] "FjStrtAp"=c:\Program Files\Fujitsu\Utils\FjStrtAp.exe [2008-05-06 20480] "IndicatorUtility"=C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe [2006-07-12 90112] "RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2005-01-12 32768] "SSUtility"=C:\Program Files\Fujitsu\SSUtility\FJSSDMN.exe [2007-12-28 233472] "FJUPDNV_Chitose"=C:\Program Files\Fujitsu\fjdvrupd\fjdvrupd.exe [2006-07-21 303104] "CmgShieldUI"=C:\WINDOWS\System32\CMGShieldUI.exe [2008-04-29 210224] "EmsService"=C:\WINDOWS\system32\EmsServiceHelper.exe [2008-04-29 492848] "AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2011-10-06 59240] "HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2011-05-10 49208] "APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2012-05-30 59280] "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27 919008] "ConnectionCenter"=C:\Program Files\Citrix\ICA Client\concentr.exe [2011-04-25 305088] "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2012-04-18 421888] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2012-06-07 421776] "MsmqIntCert"=regsvr32 /s mqrt.dll [] "00PCTFW"=C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe [2011-04-07 2672600] "MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2012-03-26 931200] "IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2012-02-23 129536] "HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2012-02-23 164352] "Persistence"=C:\WINDOWS\system32\igfxpers.exe [2012-02-23 140800] "boincmgr"=C:\Program Files\BOINC\boincmgr.exe [2012-05-15 3663024] "boinctray"=C:\Program Files\BOINC\boinctray.exe [2012-05-15 70832] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "EasyLinkAdvisor"=C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe [2007-03-15 454784] "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360] ""= [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WSPPurge] C:\Program Files\Aflac\Common\WSPPurge.exe [2007-12-26 20480] C:\Documents and Settings\All Users\Start Menu\Programs\Startup HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\WINDOWS\system32\igfxdev.dll [2012-02-23 214528] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\loginkey] C:\Program Files\Common Files\Microsoft Shared\Ink\loginkey.dll [2008-04-14 47104] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\NavLogon] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\TabBtnWL] C:\WINDOWS\system32\TabBtnWL.dll [2002-08-29 11776] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tpgwlnotify] C:\WINDOWS\system32\tpgwlnot.dll [2008-04-14 32256] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CMGShield] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=323 "NoDriveAutoRun"=67108863 "NoDrives"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"=1 "NoDriveAutoRun"=67108863 "NoDriveTypeAutoRun"=323 "NoDrives"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe" "C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe" "C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe"="C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe" "C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe" "C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe" "C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe" "C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe" "C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe" "C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe:*:Enabled:hpofxs08.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqfxt08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqfxt08.exe:*:Enabled:hpqfxt08.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe:*:Enabled:hpqgpc01.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe:*:Enabled:hpqusgm.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe:*:Enabled:hpqusgh.exe" "C:\Program Files\HP\HP Software Update\hpwucli.exe"="C:\Program Files\HP\HP Software Update\hpwucli.exe:*:Enabled:hpwucli.exe" "C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe"="C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe:*:Enabled:smartwebprintexe.exe" "C:\Program Files\BearShare Applications\BearShare\BearShare.exe"="C:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare" "C:\WINDOWS\system32\mqsvc.exe"="C:\WINDOWS\system32\mqsvc.exe:*:Enabled:Message Queuing" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "midimapper"=midimap.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.trspch"=tssoft32.acm "vidc.cvid"=iccvid.dll "VIDC.I420"=msh263.drv "vidc.iv31"=ir32_32.dll "vidc.iv32"=ir32_32.dll "vidc.iv41"=ir41_32.ax "VIDC.IYUV"=iyuv_32.dll "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVU9"=tsbyuv.dll "VIDC.YVYU"=msyuv.dll "wavemapper"=msacm32.drv "MSVideo8"=VfWWDM32.dll "msacm.msg723"=msg723.acm "vidc.M263"=msh263.drv "vidc.M261"=msh261.drv "msacm.msaudio1"=msaud32.acm "msacm.sl_anet"=sl_anet.acm "msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax "vidc.iv50"=ir50_32.dll "msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv ======List of files/folders created in the last 1 month====== 2012-08-28 15:54:18 ----D---- C:\Program Files\trend micro 2012-08-28 15:54:17 ----D---- C:\rsit 2012-08-28 14:18:36 ----D---- C:\Program Files\Common Files\Java 2012-08-28 14:18:31 ----A---- C:\WINDOWS\system32\javaws.exe 2012-08-28 14:18:24 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll 2012-08-28 14:18:24 ----A---- C:\WINDOWS\system32\javaw.exe 2012-08-28 14:18:24 ----A---- C:\WINDOWS\system32\java.exe 2012-08-21 17:40:20 ----D---- C:\Documents and Settings\A93B\Application Data\QuickScan 2012-08-21 12:00:41 ----D---- C:\Program Files\ERUNT 2012-08-21 10:54:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135$ 2012-08-21 10:51:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2731847$ 2012-08-21 10:51:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219$ 2012-08-21 10:50:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$ 2012-08-21 10:46:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$ 2012-08-21 10:46:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$ 2012-08-21 10:44:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$ 2012-08-21 10:44:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$ 2012-08-21 10:38:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2707511$ 2012-08-21 10:37:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2718704$ 2012-08-21 09:46:23 ----D---- C:\WINDOWS\system32\windowspowershell 2012-08-21 09:46:19 ----HDC---- C:\WINDOWS\$NtUninstallKB926139-v2$ 2012-08-21 09:46:12 ----D---- C:\ce13e9c11a4c40dd02fff26e488226 2012-08-21 09:23:30 ----D---- C:\65567c9e3f3bf903b69b81fab48a 2012-08-21 08:46:54 ----D---- C:\c6b9be09872981f47029ac577fa957 2012-08-21 08:37:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2656378$ 2012-08-21 08:32:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$ 2012-08-21 08:32:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$ 2012-08-21 08:29:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$ 2012-08-21 08:28:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2695962$ 2012-08-21 08:28:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2604042$ 2012-08-21 08:27:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2660649$ 2012-08-21 08:27:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2653956$ 2012-08-21 08:26:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$ 2012-08-21 08:25:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$ 2012-08-21 08:25:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$ 2012-08-21 08:25:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$ 2012-08-21 08:25:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$ 2012-08-21 08:25:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$ 2012-08-21 08:24:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2633952$ 2012-08-21 08:22:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$ 2012-08-21 08:22:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$ 2012-08-21 08:21:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$ 2012-08-21 08:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$ 2012-08-21 08:21:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2124261$ 2012-08-21 08:21:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2290570$ 2012-08-21 08:21:31 ----HDC---- C:\WINDOWS\$NtUninstallKB970483$ 2012-08-21 08:21:25 ----A---- C:\WINDOWS\imsins.BAK 2012-08-21 08:21:18 ----HDC---- C:\WINDOWS\$NtUninstallKB953155$ 2012-08-15 07:53:43 ----A---- C:\WINDOWS\system32\igfxtray.exe 2012-08-15 07:53:42 ----A---- C:\WINDOWS\system32\gfxSrvc.dll 2012-08-15 07:53:41 ----A---- C:\WINDOWS\system32\IGFXDEVLib.dll 2012-08-15 07:53:41 ----A---- C:\WINDOWS\system32\GfxUI.exe 2012-08-15 07:53:40 ----A---- C:\WINDOWS\system32\igfxCoIn_v5402.dll 2012-08-15 07:52:47 ----D---- C:\Intel 2012-08-15 07:48:25 ----D---- C:\Program Files\SystemRequirementsLab 2012-08-15 07:47:33 ----D---- C:\Documents and Settings\A93B\Application Data\SystemRequirementsLab 2012-08-14 17:33:16 ----D---- C:\Program Files\Common Files\Blizzard Entertainment 2012-08-14 17:33:16 ----D---- C:\Documents and Settings\All Users\Application Data\Blizzard Entertainment 2012-08-14 17:11:10 ----D---- C:\Documents and Settings\All Users\Application Data\Battle.net 2012-08-08 13:35:09 ----SHD---- C:\RECYCLER 2012-08-08 13:33:20 ----D---- C:\Program Files\CCleaner 2012-08-08 13:29:42 ----N---- C:\WINDOWS\system32\MpSigStub.exe 2012-08-08 13:26:48 ----D---- C:\Program Files\Microsoft Security Client 2012-08-08 13:17:43 ----D---- C:\Documents and Settings\A93B\Application Data\PCToolsFirewallPlus 2012-08-08 13:17:29 ----A---- C:\WINDOWS\system32\drivers\PCTCore.sys 2012-08-08 13:17:29 ----A---- C:\WINDOWS\system32\drivers\PCTAppEvent.sys 2012-08-08 13:17:27 ----A---- C:\WINDOWS\system32\drivers\pctgntdi.sys 2012-08-08 13:16:48 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP 2012-08-08 13:16:44 ----D---- C:\Program Files\Common Files\PC Tools 2012-08-08 13:16:44 ----A---- C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys 2012-08-08 13:16:44 ----A---- C:\WINDOWS\system32\drivers\pctNdis-DNS.sys 2012-08-08 13:16:44 ----A---- C:\WINDOWS\system32\drivers\pctNdis.sys 2012-08-08 13:16:38 ----A---- C:\WINDOWS\system32\drivers\pctplfw.sys 2012-08-08 13:16:35 ----D---- C:\Program Files\PC Tools Firewall Plus 2012-08-08 11:07:26 ----D---- C:\WINDOWS\Minidump 2012-08-08 10:58:07 ----A---- C:\Boot.bak 2012-08-08 10:58:00 ----RASHD---- C:\cmdcons 2012-08-08 10:55:11 ----D---- C:\WINDOWS\erdnt 2012-08-08 08:42:34 ----D---- C:\WINDOWS\Performance 2012-08-08 08:38:53 ----D---- C:\Program Files\Microsoft Windows 7 Upgrade Advisor 2012-08-08 08:06:18 ----D---- C:\WINDOWS\IIS Temporary Compressed Files 2012-08-08 08:04:53 ----A---- C:\WINDOWS\system32\snprfdll.dll 2012-08-08 08:04:53 ----A---- C:\WINDOWS\system32\smtpctrs.ini 2012-08-08 08:04:53 ----A---- C:\WINDOWS\system32\smtpctrs.dll 2012-08-08 08:04:52 ----A---- C:\WINDOWS\system32\regtrace.exe 2012-08-08 08:04:52 ----A---- C:\WINDOWS\system32\ntfsdrct.ini 2012-08-08 08:04:52 ----A---- C:\WINDOWS\system32\fcachdll.dll 2012-08-08 08:04:52 ----A---- C:\WINDOWS\system32\adsiisex.dll 2012-08-08 08:02:27 ----A---- C:\WINDOWS\system32\w3svapi.dll 2012-08-08 08:02:27 ----A---- C:\WINDOWS\system32\w3ctrs.ini 2012-08-08 08:02:27 ----A---- C:\WINDOWS\system32\w3ctrs.dll 2012-08-08 08:02:27 ----A---- C:\WINDOWS\system32\axperf.ini 2012-08-08 08:02:26 ----A---- C:\WINDOWS\system32\aspperf.dll 2012-08-08 08:02:25 ----A---- C:\WINDOWS\system32\iisrstap.dll 2012-08-08 08:02:24 ----A---- C:\WINDOWS\system32\iisreset.exe 2012-08-08 08:02:22 ----A---- C:\WINDOWS\system32\wamregps.dll 2012-08-08 08:02:22 ----A---- C:\WINDOWS\system32\ftpsapi2.dll 2012-08-08 08:02:21 ----A---- C:\WINDOWS\system32\infoctrs.ini 2012-08-08 08:02:21 ----A---- C:\WINDOWS\system32\inetsloc.dll 2012-08-08 08:02:21 ----A---- C:\WINDOWS\system32\iismui.dll 2012-08-08 08:02:20 ----A---- C:\WINDOWS\system32\infoctrs.dll 2012-08-08 08:02:20 ----A---- C:\WINDOWS\system32\convlog.exe 2012-08-08 08:02:20 ----A---- C:\WINDOWS\system32\admxprox.dll 2012-08-08 08:01:25 ----D---- C:\WINDOWS\system32\msmq 2012-08-08 08:01:24 ----D---- C:\Inetpub 2012-08-08 07:42:08 ----D---- C:\Program Files\Spybot - Search & Destroy 2012-08-08 07:42:08 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy 2012-08-08 07:38:53 ----D---- C:\Program Files\SUPERAntiSpyware 2012-08-03 07:40:25 ----A---- C:\WINDOWS\system32\npdeployJava1.dll 2012-07-30 20:52:46 ----D---- C:\Program Files\AVAST Software 2012-07-30 20:52:46 ----D---- C:\Documents and Settings\All Users\Application Data\AVAST Software ======List of files/folders modified in the last 1 month====== 2012-08-28 15:54:28 ----D---- C:\WINDOWS\Temp 2012-08-28 15:54:18 ----D---- C:\Program Files 2012-08-28 15:53:45 ----D---- C:\WINDOWS\system32\drivers 2012-08-28 15:51:26 ----D---- C:\WINDOWS\Prefetch 2012-08-28 15:14:24 ----D---- C:\Documents and Settings\All Users\Application Data\BOINC 2012-08-28 15:11:06 ----SD---- C:\WINDOWS\Tasks 2012-08-28 15:05:23 ----D---- C:\WINDOWS\system32\inetsrv 2012-08-28 15:02:02 ----D---- C:\WINDOWS 2012-08-28 15:01:58 ----D---- C:\WINDOWS\system32\CatRoot2 2012-08-28 15:01:40 ----A---- C:\WINDOWS\ModemLog_Agere Systems HDA Modem.txt 2012-08-28 15:00:34 ----D---- C:\Program Files\Mozilla Maintenance Service 2012-08-28 14:59:28 ----A---- C:\WINDOWS\SchedLgU.Txt 2012-08-28 14:58:12 ----D---- C:\WINDOWS\SxsCaPendDel 2012-08-28 14:34:45 ----D---- C:\Program Files\Mozilla Firefox 2012-08-28 14:29:28 ----HDC---- C:\WINDOWS\ie8 2012-08-28 14:18:37 ----SHD---- C:\WINDOWS\Installer 2012-08-28 14:18:36 ----D---- C:\Program Files\Common Files 2012-08-28 14:18:36 ----D---- C:\Config.Msi 2012-08-28 14:18:31 ----D---- C:\WINDOWS\system32 2012-08-28 14:18:03 ----A---- C:\WINDOWS\system32\deployJava1.dll 2012-08-28 14:17:53 ----D---- C:\Program Files\Java 2012-08-27 22:22:59 ----D---- C:\Documents and Settings\A93B\Application Data\HPAppData 2012-08-26 12:37:30 ----SHD---- C:\WINDOWS\CSC 2012-08-24 18:03:57 ----HD---- C:\WINDOWS\inf 2012-08-24 16:42:39 ----D---- C:\WINDOWS\SoftwareDistribution 2012-08-24 16:42:35 ----D---- C:\WINDOWS\system32\CatRoot 2012-08-24 16:37:46 ----D---- C:\Documents and Settings\All Users\Application Data\Credant 2012-08-21 17:40:19 ----SD---- C:\WINDOWS\Downloaded Program Files 2012-08-21 11:01:15 ----D---- C:\Program Files\Internet Explorer 2012-08-21 10:54:18 ----RSHD---- C:\WINDOWS\system32\dllcache 2012-08-21 10:54:13 ----HD---- C:\WINDOWS\$hf_mig$ 2012-08-21 10:51:30 ----D---- C:\WINDOWS\Debug 2012-08-21 10:50:16 ----D---- C:\WINDOWS\ie8updates 2012-08-21 10:50:00 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help 2012-08-21 10:48:39 ----D---- C:\WINDOWS\Microsoft.Net 2012-08-21 10:48:20 ----RSD---- C:\WINDOWS\assembly 2012-08-21 10:43:07 ----A---- C:\WINDOWS\win.ini 2012-08-21 10:41:37 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2012-08-21 10:41:07 ----D---- C:\WINDOWS\WinSxS 2012-08-21 10:26:47 ----D---- C:\Documents and Settings\A93B\Application Data\uTorrent 2012-08-21 09:46:30 ----D---- C:\WINDOWS\system32\config 2012-08-21 08:42:42 ----D---- C:\WINDOWS\system32\XPSViewer 2012-08-21 08:27:28 ----D---- C:\Program Files\Windows Journal 2012-08-21 08:10:58 ----D---- C:\WINDOWS\Help 2012-08-20 07:35:04 ----D---- C:\Program Files\Google 2012-08-19 13:14:20 ----D---- C:\WINDOWS\system32\LogFiles 2012-08-15 08:11:48 ----D---- C:\Program Files\BOINC 2012-08-15 08:10:11 ----D---- C:\WINDOWS\Downloaded Installations 2012-08-15 08:07:55 ----D---- C:\Program Files\WorksitePro 2012-08-15 08:02:45 ----D---- C:\Program Files\Common Files\Adobe 2012-08-15 07:55:06 ----D---- C:\Program Files\Intel 2012-08-15 07:54:51 ----D---- C:\WINDOWS\system32\ReinstallBackups 2012-08-15 07:54:49 ----DC---- C:\WINDOWS\system32\DRVSTORE 2012-08-14 21:50:21 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe 2012-08-08 13:27:02 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft 2012-08-08 13:18:29 ----D---- C:\Documents and Settings\All Users\Application Data\Symantec 2012-08-08 13:18:00 ----D---- C:\Program Files\Common Files\Symantec Shared 2012-08-08 13:17:41 ----D---- C:\Program Files\Symantec 2012-08-08 12:51:49 ----RASH---- C:\boot.ini 2012-08-08 12:30:19 ----D---- C:\WINDOWS\system32\Restore 2012-08-08 12:30:17 ----SHD---- C:\System Volume Information 2012-08-08 11:53:40 ----A---- C:\WINDOWS\system.ini 2012-08-08 11:53:31 ----D---- C:\WINDOWS\system32\drivers\etc 2012-08-08 11:49:52 ----D---- C:\WINDOWS\AppPatch 2012-08-08 08:13:54 ----D---- C:\WINDOWS\security 2012-08-08 08:06:08 ----D---- C:\WINDOWS\Registration 2012-08-08 08:02:19 ----D---- C:\WINDOWS\system32\wbem 2012-08-08 08:01:45 ----D---- C:\WINDOWS\Cursors 2012-08-08 08:01:40 ----D---- C:\Program Files\Windows NT 2012-08-03 07:29:28 ----D---- C:\Program Files\The Learning Company 2012-08-03 07:17:34 ----D---- C:\Program Files\HP 2012-08-03 04:46:56 ----A---- C:\WINDOWS\system32\MRT.exe ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 CmgShieldCEF;CmgShieldCEF; C:\WINDOWS\system32\DRIVERS\CMGShCEF.sys [2008-04-29 195128] R0 CMGShieldReg;CMGShieldReg; C:\WINDOWS\system32\DRIVERS\CmgShREG.sys [2008-04-29 89656] R0 FBIOSDRV;FBIOSDRV; C:\WINDOWS\system32\drivers\FBIOSDRV.SYS [2006-08-28 8960] R0 FJGSDisk;G-Sensor Application Filter Driver; C:\WINDOWS\system32\DRIVERS\FJGSDisk.sys [2008-07-24 7168] R0 iaStor;Intel AHCI Controller; C:\WINDOWS\system32\drivers\iaStor.sys [2008-05-24 317976] R0 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2012-03-20 171064] R0 O2MDRDR;O2MDRDR; C:\WINDOWS\system32\DRIVERS\o2media.sys [2006-10-03 36640] R0 O2SDRDR;O2SDRDR; C:\WINDOWS\system32\DRIVERS\o2sd.sys [2007-05-11 35456] R0 ohci1394;OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696] R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2008-04-08 44944] R1 ctxusbm;Citrix USB Monitor Driver; C:\WINDOWS\system32\DRIVERS\ctxusbm.sys [2011-04-25 65584] R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352] R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592] R1 pctgntdi;pctgntdi; \??\C:\WINDOWS\system32\drivers\pctgntdi.sys [] R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-04 12032] R2 elagopro;GoProto Protocol Driver for LELA; C:\WINDOWS\system32\DRIVERS\elagopro.sys [2007-03-22 28672] R2 elaunidr;UniDriver for LELA; C:\WINDOWS\system32\DRIVERS\elaunidr.sys [2007-03-22 5376] R2 PCTAppEvent;PCTAppEvent Driver; \??\C:\WINDOWS\system32\drivers\PCTAppEvent.sys [] R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2008-03-21 1203776] R3 AR5416;Atheros AR5008 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athw.sys [2008-04-08 1309504] R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800] R3 ATSwpWDF;AuthenTec TruePrint USB WDF Driver; C:\WINDOWS\System32\Drivers\ATSwpWDF.sys [2008-05-02 475136] R3 DNE;Deterministic Network Enhancer Miniport; C:\WINDOWS\system32\DRIVERS\dne2000.sys [2008-11-16 131984] R3 dsNcAdpt;Juniper Network Connect Adapter; C:\WINDOWS\system32\DRIVERS\dsNcAdpt.sys [2010-09-30 26624] R3 e1yexpress;Intel® Gigabit Network Connections Driver; C:\WINDOWS\system32\DRIVERS\e1y5132.sys [2008-03-27 244368] R3 Fjbtndrv;Fujitsu Button Driver; C:\WINDOWS\system32\DRIVERS\FjBtnDrv.sys [2008-03-02 18944] R3 FUJ02B1;Fujitsu FUJ02B1 Device Driver; C:\WINDOWS\system32\DRIVERS\FUJ02B1.sys [2001-08-01 5248] R3 FUJ02E3;Fujitsu FUJ02E3 Device Driver; C:\WINDOWS\system32\DRIVERS\FUJ02E3.sys [2004-01-17 4864] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600] R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384] R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2012-02-23 2019232] R3 IFXTPM;IFXTPM; C:\WINDOWS\system32\DRIVERS\IFXTPM.SYS [2007-07-24 41216] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-04-17 4707328] R3 IntcHdmiAddService;Intel® High Definition Audio HDMI Service; C:\WINDOWS\system32\drivers\IntcHdmi.sys [2009-04-08 116224] R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160] R3 MQAC;Message Queuing access control; \??\C:\WINDOWS\system32\drivers\mqac.sys [] R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824] R3 O2SCBUS;O2Micro SmartCardBus Reader; C:\WINDOWS\system32\DRIVERS\ozscr.sys [2008-02-14 101464] R3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver; \??\C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys [] R3 pctNdisMP;PC Tools Driver; C:\WINDOWS\system32\DRIVERS\pctNdis.sys [2010-07-08 57536] R3 pctplfw;pctplfw; \??\C:\WINDOWS\system32\drivers\pctplfw.sys [] R3 RMCAST;Reliable Multicast Protocol driver; \??\C:\WINDOWS\system32\drivers\RMCast.sys [] R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2008-04-10 224992] R3 tosrfbd;Bluetooth RFBUS; C:\WINDOWS\system32\DRIVERS\tosrfbd.sys [2008-04-23 131712] R3 Tosrfhid;Bluetooth RFHID; C:\WINDOWS\system32\DRIVERS\Tosrfhid.sys [2008-03-19 74112] R3 tosrfusb;Bluetooth USB Controller; C:\WINDOWS\system32\DRIVERS\tosrfusb.sys [2008-05-23 41856] R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128] R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608] R3 WacomPen;Wacom Serial Pen HID Driver; C:\WINDOWS\system32\DRIVERS\wacompen.sys [2008-04-14 14208] R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000] S1 MpKsl88463b45;MpKsl88463b45; \??\c:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{FC64FDEB-F9F7-4F0B-99E8-4A4C5B9A4671}\MpKsl88463b45.sys [] S3 ADVNTDRV;ADVNTDRV; C:\WINDOWS\System32\drivers\ADVNTDRV.SYS [1999-11-18 3872] S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024] S3 CmgShieldNP;CmgShieldNP; C:\WINDOWS\system32\CmgShieldNP.dll [2008-04-29 156976] S3 cpudrv;cpudrv; \??\C:\Program Files\SystemRequirementsLab\cpudrv.sys [] S3 CVirtA;Cisco Systems VPN Adapter; C:\WINDOWS\system32\DRIVERS\CVirtA.sys [2007-01-18 5275] S3 HECI;Intel® Management Engine Interface; C:\WINDOWS\system32\DRIVERS\HECI.sys [2008-03-26 40832] S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368] S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2010-02-01 49920] S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2010-02-01 16496] S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2010-02-01 21568] S3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\WINDOWS\system32\DRIVERS\mcdbus.sys [] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504] S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248] S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880] S3 NETw5x32;Intel® Wireless WiFi Link Adapter Driver for Windows XP 32 Bit ; C:\WINDOWS\system32\DRIVERS\NETw5x32.sys [2008-05-01 3627776] S3 pctNdis;PC Tools Firewall Intermediate Filter Service; C:\WINDOWS\system32\DRIVERS\pctNdis.sys [2010-07-08 57536] S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-14 79232] S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136] S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552] S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232] S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2012-02-15 43520] S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856] S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104] S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368] S3 usbvideo;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984] S3 vm331avs;VC0331 USB2.0 Digital Camera; C:\WINDOWS\System32\Drivers\vm331avs.sys [2008-05-28 972544] S3 vsdatant;vsdatant; \??\C:\WINDOWS\system32\vsdatant.sys [] S3 vvftav323;vvftav323; C:\WINDOWS\system32\drivers\vvftav323.sys [2007-03-19 475136] S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200] S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568] S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\WINDOWS\system32\agrsmsvc.exe [2008-03-18 13312] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-05-24 55184] R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504] R2 CMGShield;CMGShield; C:\WINDOWS\system32\CmgShieldSvc.exe [2008-04-29 1103152] R2 dsNcService;Juniper Network Connect Service; C:\Program Files\Juniper Networks\Common Files\dsNcService.exe [2010-09-30 628080] R2 EMS;EMS; C:\WINDOWS\system32\EMSService.exe [2008-04-29 644400] R2 hpqddsvc;HP CUE DeviceDiscovery Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 HPSLPSVC;HP Network Devices Support; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 IISADMIN;IIS Admin; C:\WINDOWS\system32\inetsrv\inetinfo.exe [2008-04-14 15360] R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2012-03-26 11552] R2 MSMQ;Message Queuing; C:\WINDOWS\system32\mqsvc.exe [2008-04-14 4608] R2 MSMQTriggers;Message Queuing Triggers; C:\WINDOWS\system32\mqtgsvc.exe [2008-04-14 117248] R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336] R2 O2Flash;O2Flash Memory Service; C:\WINDOWS\system32\o2flash.exe [2005-09-13 57344] R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [2011-01-24 286000] R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336] R2 rpcld;Remote Procedure Call (RPC) LD; C:\Documents and Settings\All Users\Application Data\Rpcnet\Bin\rpcld.exe [] R2 SMTPSVC;Simple Mail Transfer Protocol (SMTP); C:\WINDOWS\system32\inetsrv\inetinfo.exe [2008-04-14 15360] R2 SNMP;SNMP Service; C:\WINDOWS\System32\snmp.exe [2008-04-14 33280] R2 W3SVC;World Wide Web Publishing; C:\WINDOWS\system32\inetsrv\inetinfo.exe [2008-04-14 15360] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728] R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808] R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2012-06-07 821648] S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 267776] S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-08-20 116648] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-14 250056] S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104] S3 gupdatem;Google Update Service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-08-20 116648] S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2010-02-17 3093880] S3 LPDSVC;TCP/IP Print Server; C:\WINDOWS\system32\tcpsvcs.exe [2004-08-04 19456] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-08-24 114144] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 SNMPTRAP;SNMP Trap Service; C:\WINDOWS\System32\snmptrap.exe [2008-04-14 8704] S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408] S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] S4 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120] -----------------EOF-----------------