Hi
Please see the below logs
DSS
Main.txt
Deckard's System Scanner v20071014.68
Run by Barry on 2008-06-02 16:40:35
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Successfully created a Deckard's System Scanner Restore Point.
-- Last 5 Restore Point(s) --
7: 2008-06-02 15:41:28 UTC - RP7 - Deckard's System Scanner Restore Point
6: 2008-06-02 14:21:08 UTC - RP6 - System Checkpoint
5: 2008-05-29 20:27:39 UTC - RP5 - System Checkpoint
4: 2008-05-28 18:26:22 UTC - RP4 - Software Distribution Service 3.0
3: 2008-05-27 21:01:51 UTC - RP3 - System Checkpoint
-- First Restore Point --
1: 2008-05-24 15:02:37 UTC - RP1 - System Checkpoint
Backed up registry hives.
Performed disk cleanup.
-- HijackThis (run as Barry.exe) -----------------------------------------------
Unable to find log (file not found); running clone.
-- HijackThis Clone ------------------------------------------------------------
Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-06-02 16:44:42
Platform: Windows XP Service Pack 2 (5.01.2600)
MSIE: Internet Explorer (7.00.6000.16640)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKEEPER.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ehome\ehrecvr.exe
C:\WINDOWS\ehome\ehSched.exe
C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
C:\Program Files\McAfee\MSC\mcmscsvc.exe
C:\Program Files\Common Files\McAfee\MNA\McNASvc.exe
C:\Program Files\McAfee\VirusScan\mcods.exe
C:\Program Files\McAfee\MSC\mcpromgr.exe
C:\Program Files\Common Files\McAfee\McProxy\McProxy.exe
C:\Program Files\Common Files\McAfee\RedirSvc\RedirSvc.exe
C:\Program Files\McAfee\VirusScan\Mcshield.exe
C:\Program Files\McAfee\VirusScan\mcsysmon.exe
C:\Program Files\McAfee\MPF\MpfSrv.exe
C:\Program Files\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\msksrver.exe
C:\Program Files\Dell\NicConfigSvc\NicConfigSvc.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Program Files\SiteAdvisor\6261\SAService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ehome\mcrdsvc.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\ati2evxx.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\WINDOWS\explorer.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\WINDOWS\ehome\ehmsas.exe
C:\WINDOWS\system32\alg.exe
C:\Program Files\Common Files\AOL\1146747005\ee\aolsoftware.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Intel\Wireless\Bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\iFrmewrk.exe
C:\Program Files\McAfee\MSK\mskagent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\SiteAdvisor\6261\SiteAdv.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\NetWaiting\netwaiting.exe
C:\Program Files\Kontiki\KHost.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Common Files\AOL\1146747005\ee\services\antiSpywareApp\ver2_0_12\AOLSP Scheduler.exe
C:\Program Files\Microsoft ActiveSync\rapimgr.exe
C:\Program Files\Common Files\AOL\1146747005\ee\AOLDesktop.exe
C:\Program Files\Common Files\AOL\1146747005\ee\aolsoftware.exe
C:\Program Files\Common Files\AOL\1146747005\ee\aolsoftware.exe
C:\Documents and Settings\Barry\Desktop\dss.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\McAfee\MPF\MC\MpfAlert.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.google.com/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://search.aol.co...t=true&query=%s
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page =
http://go.microsoft....k/?LinkId=54843
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: AOL Toolbar BHO - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptcl.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1146747005\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [SiteAdvisor] "C:\Program Files\SiteAdvisor\6261\SiteAdv.exe"
O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\Quickset.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\Wcescomm.exe"
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: AOL Desktop.lnk = C:\Program Files\Common Files\AOL\Launch\aollaunch.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O9 - Extra button: (no name) - CmdMapping - (file missing)
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (file missing)
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) -
http://download.mcaf...01/mcinsctl.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://download.macr...ash/swflash.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL
O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
O18 - Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - (no file)
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\ati2evxx.exe
O23 - Service: dlcf_device - Unknown owner - C:\WINDOWS\system32\dlcfcoms.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\EmProxy\emproxy.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\Program Files\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\MNA\McNASvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\Program Files\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McProxy\McProxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\RedirSvc\RedirSvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\Mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MpfSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\Program Files\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\msksrver.exe
O23 - Service: NBService - Unknown owner - C:\Program Files\Nero\Nero 7\Nero
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NicConfigSvc\NicConfigSvc.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: SiteAdvisor Service - Unknown owner - C:\Program Files\SiteAdvisor\6261\SAService.exe
O23 - Service: Intel® PROSet/Wireless SSO Service (WLANKEEPER) - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKEEPER.exe
--
End of file - 15130 bytes
-- File Associations -----------------------------------------------------------
.reg - regfile - shell\open\command - regedit.exe "%1" %*
.scr - scrfile - shell\open\command - "%1" %*
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R1 APPDRV - c:\windows\system32\drivers\appdrv.sys <Not Verified; Dell Inc; Application Driver>
R1 omci (OMCI WDM Device Driver) - c:\windows\system32\drivers\omci.sys <Not Verified; Dell Inc; OMCI Driver>
R1 SASDIFSV - c:\program files\superantispyware\sasdifsv.sys
R1 SASKUTIL - c:\program files\superantispyware\saskutil.sys
R2 AegisP (AEGIS Protocol (IEEE 802.1x) v3.4.10.0) - c:\windows\system32\drivers\aegisp.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 3.4.10.0>
R2 ASCTRM - c:\windows\system32\drivers\asctrm.sys <Not Verified; Windows ® 2000 DDK provider; Windows ® 2000 DDK driver>
R2 s24trans (WLAN Transport) - c:\windows\system32\drivers\s24trans.sys <Not Verified; Intel Corporation; Intel Wireless LAN Packet Driver>
R3 SASENUM - c:\program files\superantispyware\sasenum.sys <Not Verified; SuperAdBlocker, Inc.; SuperAntiSpyware>
S3 Lvckap (Logitech Kernel Audio Processing Filter Driver) - c:\windows\system32\drivers\lvckap.sys (file missing)
S3 pcouffin (VSO Software pcouffin) - c:\windows\system32\drivers\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine>
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 NICCONFIGSVC - c:\program files\dell\nicconfigsvc\nicconfigsvc.exe <Not Verified; Dell Inc.; NicConfigSvc>
R2 RegSrvc (Intel® PROSet/Wireless Registry Service) - c:\program files\intel\wireless\bin\regsrvc.exe <Not Verified; Intel Corporation; Intel® PROSet/Wireless Registry Service>
R2 WLANKEEPER (Intel® PROSet/Wireless SSO Service) - c:\program files\intel\wireless\bin\wlkeeper.exe <Not Verified; Intel® Corporation; SSO Service>
S3 NBService - c:\program files\nero\nero 7\nero backitup\nbservice.exe
-- Device Manager: Disabled ----------------------------------------------------
No disabled devices found.
-- Scheduled Tasks -------------------------------------------------------------
2008-06-02 15:53:02 254 --a------ C:\WINDOWS\Tasks\Check Updates for Windows Live Toolbar.job
2008-05-23 17:15:01 390 --a------ C:\WINDOWS\Tasks\1-Click Maintenance.job
2008-04-10 18:39:05 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2007-11-15 02:00:01 350 --a------ C:\WINDOWS\Tasks\McDefragTask.job
2007-10-01 01:00:04 352 --a------ C:\WINDOWS\Tasks\McQcTask.job
-- Files created between 2008-05-02 and 2008-06-02 -----------------------------
2008-05-24 02:07:17 0 dr-h----- C:\Documents and Settings\Barry\Recent
2008-05-23 15:03:14 0 d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-05-23 15:03:08 0 d-------- C:\Program Files\SUPERAntiSpyware
2008-05-23 15:03:08 0 d-------- C:\Documents and Settings\Barry\Application Data\SUPERAntiSpyware.com
2008-05-23 15:02:42 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-05-23 15:00:26 0 d-------- C:\Documents and Settings\Barry\Application Data\Malwarebytes
2008-05-23 15:00:21 0 d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-05-23 15:00:19 0 d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-05-23 15:00:03 0 d-------- C:\Program Files\Common Files\Download Manager
2008-05-20 22:09:07 0 d-------- C:\Documents and Settings\All Users\Application Data\Disk Cleaner
2008-05-20 22:08:07 0 d-------- C:\Program Files\Disk Cleaner
2008-05-20 21:43:48 0 d-------- C:\Documents and Settings\All Users\Application Data\Registry Helper
2008-05-20 21:41:56 0 d-------- C:\Program Files\Registry Helper
2008-05-20 18:29:21 0 d-------- C:\Program Files\Spyware Doctor
2008-05-20 18:29:21 0 d-------- C:\Documents and Settings\Barry\Application Data\PC Tools
2008-05-20 13:03:11 0 d-------- C:\Documents and Settings\Meggan\Application Data\Spyware Terminator
2008-05-20 13:01:41 0 d-------- C:\Documents and Settings\Meggan\Application Data\TmpRecentIcons
2008-05-20 11:52:49 0 d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2008-05-20 11:13:00 0 d-------- C:\Documents and Settings\Barry\Application Data\TmpRecentIcons
2008-05-20 10:07:05 0 d-------- C:\Program Files\Enigma Software Group
2008-05-20 09:27:51 0 d--h----- C:\WINDOWS\system32\GroupPolicy
2008-05-19 20:55:44 0 d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft
-- Find3M Report ---------------------------------------------------------------
2008-06-02 16:36:54 0 d-------- C:\Program Files\McAfee
2008-05-24 16:27:42 0 d-------- C:\Program Files\SiteAdvisor
2008-05-23 15:02:42 0 d-------- C:\Program Files\Common Files
2008-05-23 14:16:39 0 d-------- C:\Program Files\Azureus
2008-05-21 17:37:10 0 d-------- C:\Program Files\Lavasoft
2008-05-21 17:37:10 0 d-------- C:\Program Files\Lavasoft(2)
2008-05-21 17:37:10 0 d-------- C:\Documents and Settings\Barry\Application Data\Lavasoft
2008-05-20 22:25:02 0 d-------- C:\Documents and Settings\Barry\Application Data\Azureus
2008-05-20 21:54:00 0 d-------- C:\Documents and Settings\Barry\Application Data\SiteAdvisor
2008-05-20 21:09:22 0 d-------- C:\Program Files\Kontiki
2008-05-20 21:09:04 0 d-------- C:\Program Files\Google
2008-05-19 20:28:09 0 d-------- C:\Program Files\Common Files\AOL
2008-05-13 16:32:24 0 d-------- C:\Program Files\Dl_cats
2008-04-27 12:26:35 0 d-------- C:\Program Files\CeRegEditor
2008-04-27 00:37:27 0 d-------- C:\Program Files\PHM
2008-04-15 18:05:43 0 d-------- C:\Program Files\RGB
2008-04-11 18:41:25 0 d-------- C:\Program Files\KService
2008-04-10 20:05:29 0 d-------- C:\Program Files\DivX
2008-04-06 06:14:43 0 d-------- C:\Program Files\iTunes
2008-04-06 06:14:27 0 d-------- C:\Program Files\iPod
2008-04-06 06:12:09 0 d-------- C:\Program Files\QuickTime
2008-04-05 00:46:13 0 d-------- C:\Program Files\Microsoft ActiveSync
2008-03-31 22:25:48 823296 --a------ C:\WINDOWS\system32\divx_xx0c.dll <Not Verified; DivX, Inc.; DivX®>
2008-03-31 22:25:48 823296 --a------ C:\WINDOWS\system32\divx_xx07.dll <Not Verified; DivX, Inc.; DivX®>
2008-03-31 22:25:46 802816 --a------ C:\WINDOWS\system32\divx_xx11.dll <Not Verified; DivX, Inc.; DivX?>
2008-03-31 22:25:46 831488 --a------ C:\WINDOWS\system32\divx_xx0a.dll
2008-03-31 22:25:46 682496 --a------ C:\WINDOWS\system32\DivX.dll <Not Verified; DivX, Inc.; DivX®>
2008-03-21 21:30:08 3596288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2008-03-21 21:28:54 196608 --a------ C:\WINDOWS\system32\dtu100.dll <Not Verified; DivX, Inc.; DivX, Inc. dtu100>
2008-03-21 21:28:54 81920 --a------ C:\WINDOWS\system32\dpl100.dll <Not Verified; DivX, Inc.; DivX, Inc. dpl100>
2008-03-21 21:28:20 12288 --a------ C:\WINDOWS\system32\DivXWMPExtType.dll
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray"="C:\WINDOWS\ehome\ehtray.exe" [29/09/2005 14:01]
"SigmatelSysTrayApp"="stsystra.exe" [16/11/2005 21:35 C:\WINDOWS\stsystra.exe]
"ATICCC"="C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" [12/08/2005 14:43]
"ISUSPM Startup"="C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" [10/06/2005 10:44]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [10/06/2005 10:44]
"AOLDialer"="C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" [23/10/2006 13:50]
"HostManager"="C:\Program Files\Common Files\AOL\1146747005\ee\AOLSoftware.exe" [08/10/2007 22:50]
"LVCOMSX"="C:\WINDOWS\system32\LVCOMSX.EXE" [19/07/2005 17:32]
"BluetoothAuthenticationAgent"="bthprops.cpl" [10/08/2004 05:00 C:\WINDOWS\system32\bthprops.cpl]
"IntelZeroConfig"="C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe" [01/05/2006 09:28]
"IntelWireless"="C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" [01/05/2006 09:28]
"MskAgentexe"="C:\Program Files\McAfee\MSK\MskAgent.exe" [17/01/2007 18:30]
"SiteAdvisor"="C:\Program Files\SiteAdvisor\6261\SiteAdv.exe" [09/02/2007 05:37]
"ISTray"="C:\Program Files\Spyware Doctor\pctsTray.exe" [10/04/2008 15:14]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [29/11/2005 18:56]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe" [09/11/2006 16:07]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [28/03/2008 23:37]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [09/03/2007 19:53]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [30/03/2008 10:36]
"DVDLauncher"="C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" [09/12/2005 20:29]
"Dell QuickSet"="C:\Program Files\Dell\QuickSet\Quickset.exe" [06/12/2005 10:45]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [10/08/2004 05:00]
"H/PC Connection Agent"="C:\Program Files\Microsoft ActiveSync\Wcescomm.exe" [13/11/2006 13:39]
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [27/02/2007 11:39]
"ModemOnHold"="C:\Program Files\NetWaiting\netWaiting.exe" [10/09/2003 02:24]
"kdx"="C:\Program Files\Kontiki\KHost.exe" [23/04/2007 11:23]
"DellSupport"="C:\Program Files\Dell Support\DSAgnt.exe" [19/07/2004 07:51]
C:\Documents and Settings\Barry\Start Menu\Programs\Startup\
AOL Desktop.lnk - C:\Program Files\Common Files\AOL\Launch\aollaunch.exe [08/10/2007 22:50:57]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe [27/04/2006 07:56:16]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"InstallVisualStyle"=C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"=C:\WINDOWS\Resources\Themes\Royale.theme
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"=0 (0x0)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [20/12/2006 12:55 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 27/02/2007 11:39 282624 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
SecurityProviders msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll,
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Suite]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SweetIM]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"KService"=2 (0x2)
"iPod Service"=3 (0x3)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs BthServ
-- Hosts -----------------------------------------------------------------------
127.0.0.1 007guard.com
127.0.0.1 www.007guard.com
127.0.0.1 008i.com
127.0.0.1 008k.com
127.0.0.1 www.008k.com
127.0.0.1 00hq.com
127.0.0.1 www.00hq.com
127.0.0.1 010402.com
127.0.0.1 032439.com
127.0.0.1 www.032439.com
7517 more entries in hosts file.
-- End of Deckard's System Scanner: finished at 2008-06-02 16:45:29 ------------
DSS Extra.txt
Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------
-- System Information ----------------------------------------------------------
Microsoft Windows XP Professional (build 2600) SP 2.0
Architecture: X86; Language: English
CPU 0: Genuine Intel® CPU T2400 @ 1.83GHz
CPU 1: Genuine Intel® CPU T2400 @ 1.83GHz
Percentage of Memory in Use: 40%
Physical Memory (total/avail): 2046.37 MiB / 1226.93 MiB
Pagefile Memory (total/avail): 3939.21 MiB / 2846.4 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1922.5 MiB
C: is Fixed (NTFS) - 87.01 GiB total, 12.74 GiB free.
D: is CDROM (No Media)
\\.\PHYSICALDRIVE0 - ST9100824AS - 91.76 GiB - 3 partitions
\PARTITION0 - Unknown - 86.26 MiB
\PARTITION1 (bootable) - Installable File System - 87.01 GiB - C:
\PARTITION2 - Unknown - 4.64 GiB
-- Security Center -------------------------------------------------------------
AUOptions is scheduled to auto-install.
Windows Internal Firewall is disabled.
FirstRunDisabled is set.
FW: McAfee Personal Firewall v (McAfee)
AV: McAfee VirusScan v (McAfee)
[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\AOL 9.0\\waol.exe"="C:\\Program Files\\AOL 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0a\\waol.exe"="C:\\Program Files\\AOL 9.0a\\waol.exe:*:Enabled:AOL 9.0a"
"C:\\Program Files\\AOL 9.0b\\waol.exe"="C:\\Program Files\\AOL 9.0b\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0c\\waol.exe"="C:\\Program Files\\AOL 9.0c\\waol.exe:*:Enabled:AOL"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\AOL 9.0\\waol.exe"="C:\\Program Files\\AOL 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0a\\waol.exe"="C:\\Program Files\\AOL 9.0a\\waol.exe:*:Enabled:AOL 9.0a"
"C:\\Program Files\\AOL 9.0b\\waol.exe"="C:\\Program Files\\AOL 9.0b\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe:*:Enabled:AOL"
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0c\\waol.exe"="C:\\Program Files\\AOL 9.0c\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\Yahoo!\\Messenger\\ypager.exe"="C:\\Program Files\\Yahoo!\\Messenger\\ypager.exe:*:Enabled:Yahoo! Messenger"
"C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe:*:Enabled:Yahoo! FT Server"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\WINDOWS\\kdx\\KHost.exe"="C:\\WINDOWS\\kdx\\KHost.exe:*:Enabled:Delivery Manager"
"C:\\Program Files\\KService\\KService.exe"="C:\\Program Files\\KService\\KService.exe:*:Enabled:Delivery Manager Service"
"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\uTorrent\\utorrent.exe"="C:\\Program Files\\uTorrent\\utorrent.exe:*:Enabled:µTorrent"
"C:\\Program Files\\ABC\\abc.exe"="C:\\Program Files\\ABC\\abc.exe:*:Enabled:abc"
"C:\\Program Files\\Common Files\\McAfee\\MNA\\McNASvc.exe"="C:\\Program Files\\Common Files\\McAfee\\MNA\\McNASvc.exe:*:Enabled:McAfee Network Agent"
"C:\\Program Files\\Common Files\\AOL\\TopSpeed\\3.0\\aoltpsd3.exe"="C:\\Program Files\\Common Files\\AOL\\TopSpeed\\3.0\\aoltpsd3.exe:*:Enabled:AOL TopSpeed"
"C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"="C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe:*:Enabled:AOL Loader"
"C:\\Program Files\\Common Files\\AOL\\1146747005\\ee\\aolsoftware.exe"="C:\\Program Files\\Common Files\\AOL\\1146747005\\ee\\aolsoftware.exe:*:Enabled:AOL Services"
"C:\\Program Files\\Common Files\\AOL\\1146747005\\ee\\AOLOpenRide.exe"="C:\\Program Files\\Common Files\\AOL\\1146747005\\ee\\AOLOpenRide.exe:*:Enabled:AOL OpenRide"
"C:\\Program Files\\Common Files\\AOL\\1146747005\\ee\\AOLDesktop.exe"="C:\\Program Files\\Common Files\\AOL\\1146747005\\ee\\AOLDesktop.exe:*:Enabled:AOL Desktop"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Program Files\\Kontiki\\KService.exe"="C:\\Program Files\\Kontiki\\KService.exe:*:Enabled:Delivery Manager Service"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
-- Environment Variables -------------------------------------------------------
ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Barry\Application Data
CLASSPATH=.;C:\Program Files\Java\jre1.5.0_10\lib\ext\QTJava.zip
CLIENTNAME=Console
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=D6DWN72J
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Barry
LOGONSERVER=\\D6DWN72J
NUMBER_OF_PROCESSORS=2
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\Program Files\ATI Technologies\ATI.ACE\;C:\Program Files\Samsung\Samsung PC Studio 3\;C:\Program Files\Common Files\Teleca Shared;C:\Program Files\QuickTime\QTSystem\
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 6 Model 14 Stepping 8, GenuineIntel
PROCESSOR_LEVEL=6
PROCESSOR_REVISION=0e08
ProgramFiles=C:\Program Files
PROMPT=$P$G
QTJAVA=C:\Program Files\Java\jre1.5.0_10\lib\ext\QTJava.zip
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\Barry\LOCALS~1\Temp
TMP=C:\DOCUME~1\Barry\LOCALS~1\Temp
USERDOMAIN=D6DWN72J
USERNAME=Barry
USERPROFILE=C:\Documents and Settings\Barry
windir=C:\WINDOWS
-- User Profiles ---------------------------------------------------------------
Barry
(admin)
Meggan
(admin)
Administrator
(admin)
-- Add/Remove Programs ---------------------------------------------------------
--> C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
--> C:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
--> C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
--> C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
--> C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
--> C:\WINDOWS\UNNeroVision.exe /UNINSTALL
--> C:\WINDOWS\UNRecode.exe /UNINSTALL
Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin --> C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
AOL Registration --> "C:\Program Files\AOL\RC\uninstall.exe"
AOL Toolbar 5.0 --> "C:\Program Files\AOL\AOL Toolbar 5.0\uninstall.exe"
AOL Uninstaller (Choose which Products to Remove) --> C:\Program Files\Common Files\AOL\uninstaller.exe
Apple Software Update --> MsiExec.exe /I{B74F042E-E1B9-4A5B-8D46-387BB172F0A4}
Application Suite --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{18FBD4C3-7C12-452E-A113-2BA313F355BC}\Setup.exe" -l0x9
Application Suite --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2CCD7150-86A4-4BDC-8C81-2B987C93B8FD}\Setup.exe" -l0x9
BPP i-Pass CIMA Paper C5 --> C:\PROGRA~1\i-assess\..\BPPI-P~1\CIMAC5\UNWISE.EXE C:\PROGRA~1\i-assess\..\BPPI-P~1\CIMAC5\INSTALL.LOG
CCleaner (remove only) --> "C:\Program Files\CCleaner\uninst.exe"
CoPilot - Pocket PC 6 --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{11FF1640-0A92-4EBC-8BE7-71031FF46BF8} /l2057
Disk Cleaner --> C:\Program Files\Disk Cleaner\uninst.exe
DivX Codec --> C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Converter --> C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
DivX Player --> C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Web Player --> C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
Highlight Viewer (Windows Live Toolbar) --> MsiExec.exe /X{A5C4AD72-25FE-4899-B6DF-6D8DF63C93CF}
Hijackthis 1.99.1 --> "C:\Program Files\Hijackthis\unins000.exe"
HijackThis 1.99.1 --> C:\Program Files\Hijackthis\HijackThis.exe /uninstall
i-assess runtime utilities Version 3 --> C:\PROGRA~1\i-assess\UNWISE.EXE C:\PROGRA~1\i-assess\INSTALL.LOG
iAutoArtwork --> MsiExec.exe /I{8BD40E70-D459-4F38-A0C3-21E6A35049B7}
iTunes --> MsiExec.exe /I{585776BC-4BD6-4BD2-A19A-1D6CB44A403B}
Malwarebytes' Anti-Malware --> "C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Map Button (Windows Live Toolbar) --> MsiExec.exe /X{7745B7A9-F323-4BB9-9811-01BF57A028DA}
McAfee SecurityCenter --> C:\Program Files\McAfee\MSC\mcuninst.exe
Microsoft ActiveSync --> MsiExec.exe /I{99052DB7-9592-4522-A558-5417BBAD48EE}
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 --> "C:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe"
Microsoft Office Standard Edition 2003 --> MsiExec.exe /I{91120409-6000-11D3-8CFE-0150048383C9}
Mozilla Firefox (2.0.0.14) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe
Nero 7 Premium --> MsiExec.exe /I{43FFE159-3199-4188-A1CD-629166AD1033}
neroxml --> MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
PHM Registry Editor --> MsiExec.exe /I{DE4A7830-7480-425C-8330-699C30FD8C66}
QuickTime --> MsiExec.exe /I{1838C5A2-AB32-4145-85C1-BB9B8DFA24CD}
RealPlayer Basic --> C:\Program Files\Common Files\Real\Update\\rnuninst.exe RealNetworks|RealPlayer|6.0
Registry Helper --> C:\Program Files\Registry Helper\uninst.exe
Smart Menus (Windows Live Toolbar) --> MsiExec.exe /X{F084395C-40FB-4DB3-981C-B51E74E1E83D}
Spyware Doctor 5.5 --> C:\Program Files\Spyware Doctor\unins000.exe /LOG
SUPERAntiSpyware Free Edition --> MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
Windows Live Favorites for Windows Live Toolbar --> MsiExec.exe /X{786C4AD1-DCBA-49A6-B0EF-B317A344BD66}
Windows Live installer --> MsiExec.exe /X{A7E4ECCA-4A8E-4258-8EC8-2DCCF5B11320}
Windows Live Messenger --> MsiExec.exe /X{508CE775-4BA4-4748-82DF-FE28DA9F03B0}
Windows Live Sign-in Assistant --> MsiExec.exe /I{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}
Windows Live Toolbar --> "C:\Program Files\Windows Live Toolbar\UnInstall.exe" {D5A145FC-D00C-4F1A-9119-EB4D9D659750}
Windows Live Toolbar --> MsiExec.exe /X{D5A145FC-D00C-4F1A-9119-EB4D9D659750}
Windows Live Toolbar Extension (Windows Live Toolbar) --> MsiExec.exe /X{341201D4-4F61-4ADB-987E-9CCE4D83A58D}
WinZip 11.1 --> MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240B5}
-- Application Event Log -------------------------------------------------------
Event Record #/Type16744 / Error
Event Submitted/Written: 06/02/2008 04:43:49 PM
Event ID/Source: 8 / crypt32
Event Description:
Failed auto update retrieval of third-party root list sequence number from: <
http://www.download....uthrootseq.txt> with error: This operation returned because the timeout period expired.
Event Record #/Type16743 / Error
Event Submitted/Written: 06/02/2008 04:43:34 PM
Event ID/Source: 11 / crypt32
Event Description:
Failed extract of third-party root list from auto update cab at: <
http://www.download....uthrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
Event Record #/Type16742 / Error
Event Submitted/Written: 06/02/2008 04:43:34 PM
Event ID/Source: 11 / crypt32
Event Description:
Failed extract of third-party root list from auto update cab at: <
http://www.download....uthrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
Event Record #/Type16730 / Success
Event Submitted/Written: 06/02/2008 02:51:50 PM
Event ID/Source: 12001 / usnjsvc
Event Description:
The Messenger Sharing USN Journal Reader service started successfully.
Event Record #/Type16704 / Error
Event Submitted/Written: 05/31/2008 08:14:40 PM
Event ID/Source: 11706 / MsiInstaller
Event Description:
Product: Microsoft ActiveSync -- Error.No valid source could be found for product Microsoft ActiveSync. The Windows Installer cannot continue.
-- Security Event Log ----------------------------------------------------------
No Errors/Warnings found.
-- System Event Log ------------------------------------------------------------
Event Record #/Type88739 / Error
Event Submitted/Written: 06/02/2008 04:39:35 PM
Event ID/Source: 10005 / DCOM
Event Description:
DCOM got error "%%1058" attempting to start the service iPod Service with arguments ""
in order to run the server:
{063D34A4-BF84-4B8D-B699-E8CA06504DDE}
Event Record #/Type88711 / Error
Event Submitted/Written: 06/02/2008 04:35:36 PM
Event ID/Source: 10005 / DCOM
Event Description:
DCOM got error "%%1053" attempting to start the service dlcf_device with arguments ""
in order to run the server:
{323CE21C-A448-40AA-BA74-7FCF1E441060}
Event Record #/Type88709 / Error
Event Submitted/Written: 06/02/2008 04:35:06 PM
Event ID/Source: 7000 / Service Control Manager
Event Description:
The dlcf_device service failed to start due to the following error:
%%1053
Event Record #/Type88708 / Error
Event Submitted/Written: 06/02/2008 04:35:06 PM
Event ID/Source: 7009 / Service Control Manager
Event Description:
Timeout (30000 milliseconds) waiting for the dlcf_device service to connect.
Event Record #/Type88707 / Error
Event Submitted/Written: 06/02/2008 04:35:06 PM
Event ID/Source: 10005 / DCOM
Event Description:
DCOM got error "%%1053" attempting to start the service dlcf_device with arguments ""
in order to run the server:
{323CE21C-A448-40AA-BA74-7FCF1E441060}
-- End of Deckard's System Scanner: finished at 2008-06-02 16:45:29 ------------
Kaspersky Online report.
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Tuesday, June 03, 2008 7:14:30 AM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 2/06/2008
Kaspersky Anti-Virus database records: 824085
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
Scan Statistics:
Total number of scanned objects: 102521
Number of viruses found: 1
Number of infected objects: 6
Number of suspicious objects: 0
Duration of the scan process: 02:03:24
Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\AOL\ACS\1.0\ph Object is locked skipped
C:\Documents and Settings\All Users\Application Data\AOL\ACS\1.0\variable Object is locked skipped
C:\Documents and Settings\All Users\Application Data\AOL\AOLDiag\AOL\HelixUSBETA\Win32\2.7.7.1\0003280b.prm Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MNA\NAData Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MPF\data\log.edb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MPF\data\logout.edb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSC\Logs\Events.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSC\Logs\{1E1F154A-B474-407B-A77E-9ED4BE0F7B34}.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSC\McUsers.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSK\MSKWMDB.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSK\RBLDB.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSK\settingsdb.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\VirusScan\Data\TFR2.tmp Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\VirusScan\Logs\OAS.Log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3ad391678a806ec4d691e83aaa393b6f_24adf822-76f7-4481-b30b-ff1b40f8687f Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\eHome\logs\ehRecvr.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\QSLLPSVCShare Object is locked skipped
C:\Documents and Settings\Barry\Application Data\$_hpcst$.hpc Object is locked skipped
C:\Documents and Settings\Barry\Application Data\Gtek\GTUpdate\AUpdate\DellSupport\DSAgnt.log Object is locked skipped
C:\Documents and Settings\Barry\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SUPERANTISPYWARE.LOG Object is locked skipped
C:\Documents and Settings\Barry\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Barry\Desktop\Folders\Sys Tools\Install Files\Disk Cleaner\DiskCleanerSetupSS.exe/data0015 Infected: not-a-virus:AdWare.Win32.BetterInternet.hu skipped
C:\Documents and Settings\Barry\Desktop\Folders\Sys Tools\Install Files\Disk Cleaner\DiskCleanerSetupSS.exe NSIS: infected - 1 skipped
C:\Documents and Settings\Barry\Desktop\Folders\Sys Tools\Install Files\Registry Helper\RegistryHelperSetup2.exe/data0014 Infected: not-a-virus:AdWare.Win32.BetterInternet.hu skipped
C:\Documents and Settings\Barry\Desktop\Folders\Sys Tools\Install Files\Registry Helper\RegistryHelperSetup2.exe NSIS: infected - 1 skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\AOL\DTS\Index\MainChunk\Documents.dfd Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\AOL\DTS\Index\MainChunk\Documents.did Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\AOL\DTS\Index\MainChunk\Documents.dsd Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\AOL\DTS\Index\MainChunk\Keywords.kdb Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\AOL\DTS\Index\MainChunk\Keywords.kdl Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\AOL\DTS\Index\MainChunk\Keywords.kib Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\AOL\DTS\Index\MainChunk\Keywords.kpf Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\AOL\DTS\Index\MainChunk\Keywords.ksb Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\AOL\UserProfiles\1146747005\barrystarck1\cls\common.cls Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\AOL\UserProfiles\All Users\cls\common.cls Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\ApplicationHistory\cli.exe.c88dbd71.ini.inuse Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\BVRP Software\NetWaiting\MoHlog.txt Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Temp\34.tmp Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Temp\CMLS--2008-06-02--16-39-47.log Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Temp\Perflib_Perfdata_918.dat Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Temp\Perflib_Perfdata_974.dat Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Temp\WCESLog.log Object is locked skipped
C:\Documents and Settings\Barry\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Barry\ntuser.dat Object is locked skipped
C:\Documents and Settings\Barry\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\junkconf\001167264000.mf Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\junkconf\001173312000.mf Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\local\Deleted Emails Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\local\Drafts Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\local\granny's ireland Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\local\Outbox Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\local\Sent Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\offline\aol\meggtoby\_I_N_B_O_X Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\offline\aol\meggtoby\_O_U_T_B_O_X Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\offline\aol\meggtoby\_Saved Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\offline\aol\meggtoby\_Spam Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\offline\validity\C%3A%5CDocuments and Settings%5CMeggan%5CApplication Data%5CAOL Communicator%5Coffline%5Caol%5Cmeggtoby%5C_I_N_B_O_X Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\offline\validity\C%3A%5CDocuments and Settings%5CMeggan%5CApplication Data%5CAOL Communicator%5Coffline%5Caol%5Cmeggtoby%5C_O_U_T_B_O_X Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\offline\validity\C%3A%5CDocuments and Settings%5CMeggan%5CApplication Data%5CAOL Communicator%5Coffline%5Caol%5Cmeggtoby%5C_Saved Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\offline\validity\C%3A%5CDocuments and Settings%5CMeggan%5CApplication Data%5CAOL Communicator%5Coffline%5Caol%5Cmeggtoby%5C_Spam Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\1011202500929a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\1031202500930a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\1051202500930a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\1071202500930a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\1091202500930a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\111202635363a00696 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\111202763717a07912 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\111202854144a02384 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\11202502150a02324 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\11202509600a05208 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\11202635360a00696 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\11202763714a07912 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\11202854137a02384 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\11202857124a04104 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\11202858556a03568 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\11202861579a05832 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\11202916417a01860 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\131202635363a00696 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\131202763717a07912 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\151202635373a00696 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\151202763719a07912 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\171202763719a07912 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\191202763723a07912 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\211202763723a07912 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\31202502151a02324 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\31202635362a00696 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\31202763714a07912 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\31202854137a02384 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\31202857124a04104 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\31202861579a05832 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\31202916418a01860 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\371202500904a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\391202500904a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\411202500904a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\431202500904a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\451202500905a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\471202500905a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\491202500906a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\511202500906a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\51202635362a00696 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\51202763714a07912 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\51202854137a02384 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\51202861580a05832 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\51202916425a01860 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\531202500906a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\551202500907a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\571202500907a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\591202500908a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\611202500908a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\631202500908a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\651202500909a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\671202500909a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\691202500909a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\711202500909a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\71202635362a00696 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\71202763716a07912 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\71202854138a02384 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\71202861587a05832 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\731202500910a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\751202500910a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\771202500910a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\791202500910a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\811202500910a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\831202500912a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\851202500912a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\871202500912a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\891202500912a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\911202500912a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\91202635362a00696 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\91202763716a07912 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\91202854144a02384 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\931202500913a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\951202500914a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\971202500923a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\AOL Communicator\pcache\991202500928a04824 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\NSS PKI Store\AOL\certS.db Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\NSS PKI Store\AOL\keyS.db Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\NSS PKI Store\AOL\log.0000000001 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\NSS PKI Store\AOL\secmodS.db Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\NSS PKI Store\AOL\__db.001 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\NSS PKI Store\AOL\__db.002 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\NSS PKI Store\AOL\__db.003 Object is locked skipped
C:\Documents and Settings\Meggan\Application Data\NSS PKI Store\AOL\__db.004 Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Disk Cleaner\Disk Cleaner Screen Saver Setup.exe Infected: not-a-virus:AdWare.Win32.BetterInternet.hu skipped
C:\Program Files\Registry Helper\Registry Helper Screen Saver Setup.exe Infected: not-a-virus:AdWare.Win32.BetterInternet.hu skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP7\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\ModemLog_Conexant HDA D110 MDC V.92 Modem.txt Object is locked skipped
C:\WINDOWS\Registration\{02D4B3F1-FD88-11D1-960D-00805FC79235}.{0CDE57FF-6962-4599-B959-41B67D987CCB}.crmlog Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\EventCache\{5F395F82-C1CC-42FD-A2E1-071FA3B9E6FA}.bin Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\ACEEvent.evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\Media Ce.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\mcafee_0oPNvNOf77zZMbx Object is locked skipped
C:\WINDOWS\Temp\mcafee_fZrKGzkClUraniO Object is locked skipped
C:\WINDOWS\Temp\mcafee_UaHVZAg0kBvbKJ5 Object is locked skipped
C:\WINDOWS\Temp\mcmsc_2JQVfcbN53OpmZd Object is locked skipped
C:\WINDOWS\Temp\mcmsc_JTy5hoUQkTtbVPq Object is locked skipped
C:\WINDOWS\Temp\mcmsc_LKslbw8XsHUZXwa Object is locked skipped
C:\WINDOWS\Temp\mcmsc_nhsNjABCIEKQHSY Object is locked skipped
C:\WINDOWS\Temp\sqlite_0dSLEEOkMqdJoUJ Object is locked skipped
C:\WINDOWS\Temp\sqlite_0IbqikcZJmC2lkG Object is locked skipped
C:\WINDOWS\Temp\sqlite_4LpABZxaCfVDfh0 Object is locked skipped
C:\WINDOWS\Temp\sqlite_99TMTpo5HMQ16up Object is locked skipped
C:\WINDOWS\Temp\sqlite_abeHqOwpz0Sdeyp Object is locked skipped
C:\WINDOWS\Temp\sqlite_BkCEvKHr1ab9adf Object is locked skipped
C:\WINDOWS\Temp\sqlite_hePAxiiJxceZcbh Object is locked skipped
C:\WINDOWS\Temp\sqlite_P96umaguFT6WfhP Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.
Hope this helps.