Deckard's System Scanner v20071014.68
Run by Viki on 2008-06-29 11:15:35
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Failed to create restore point; disk is full.
Backed up registry hives.
Performed disk cleanup.
Total Physical Memory: 128 MiB (512 MiB recommended).
System Drive C: has 0.16 GiB (less than 15%) free.
-- HijackThis Clone ------------------------------------------------------------
Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-06-29 11:18:39
Platform: Windows XP Szervizcsomag 2 (5.01.2600)
MSIE: Internet Explorer (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\ESET\nod32kui.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpWareSE4.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\ESET\nod32krn.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Documents and Settings\Viki\Local Settings\Temporary Internet Files\Content.IE5\B0Z9Z45G\dss[1].exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.startlap.hu/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://home.microsoft.com/access/autosearch.asp?p=%s
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hivatkozások
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: Windows Live bejelentkezési segítség - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportálás Microsoft Excel formátumba -
res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint – Gyors nyomtatás -
res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint – Hozzáadás a nyomtatási listához -
res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint – Nyomtatás -
res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint – Nyomtatási kép -
res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O9 - Extra button: Kutatás - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://www.update.microsoft.com/windows ... 3819476089
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL
O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL
O18 - Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\ESET\nod32krn.exe
--
End of file - 5078 bytes
-- File Associations -----------------------------------------------------------
.cpl - cplfile - shell\cplopen\command - rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.cpl - cplfile - shell\runas\command - rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%*
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
S3 catchme - c:\combofix\catchme.sys (file missing)
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
All services whitelisted.
-- Device Manager: Disabled ----------------------------------------------------
No disabled devices found.
-- Scheduled Tasks -------------------------------------------------------------
2008-06-18 20:29:06 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
-- Files created between 2008-05-29 and 2008-06-29 -----------------------------
2008-06-28 15:20:27 68096 --a------ C:\WINDOWS\zip.exe
2008-06-28 15:20:27 49152 --a------ C:\WINDOWS\VFind.exe
2008-06-28 15:20:27 212480 --a------ C:\WINDOWS\swxcacls.exe <Not Verified; SteelWerX; SteelWerX Extended Configurator ACLists>
2008-06-28 15:20:27 136704 --a------ C:\WINDOWS\swsc.exe <Not Verified; SteelWerX; SteelWerX Service Controller>
2008-06-28 15:20:27 161792 --a------ C:\WINDOWS\swreg.exe <Not Verified; SteelWerX; SteelWerX Registry Editor>
2008-06-28 15:20:27 98816 --a------ C:\WINDOWS\sed.exe
2008-06-28 15:20:27 80412 --a------ C:\WINDOWS\grep.exe
2008-06-28 15:20:27 89504 --a------ C:\WINDOWS\fdsv.exe <Not Verified; Smallfrogs Studio; >
2008-06-25 16:24:23 359808 --a------ C:\WINDOWS\system32\drivers\tcpip.sys <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>
2008-06-25 16:24:05 202240 --a------ C:\WINDOWS\system32\drivers\RMCast.sys <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>
2008-06-25 14:32:36 1585152 --a------ C:\Documents and Settings\Viki\ntuser.dat
2008-06-24 11:47:20 0 d-------- C:\Documents and Settings\Viki\Application Data\Real
2008-06-20 12:57:02 0 d-------- C:\Program Files\MSXML 4.0
2008-06-20 10:01:59 0 d-------- C:\WINDOWS\system32\PreInstall
2008-06-19 09:05:04 0 d--h----- C:\WINDOWS\$hf_mig$
2008-06-18 22:24:22 0 d--hs---- C:\Program Files\Common Files\WindowsLiveInstaller
2008-06-18 22:23:49 0 d-------- C:\Program Files\Windows Live
2008-06-18 22:23:12 0 d-------- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-06-18 22:05:45 0 d-------- C:\WINDOWS\system32\SoftwareDistribution
2008-06-18 22:03:55 0 d---s---- C:\Documents and Settings\Viki\UserData
2008-06-18 22:01:46 0 d-------- C:\Documents and Settings\Viki\Contacts
2008-06-18 21:45:05 0 d-------- C:\WinRAR
2008-06-18 21:41:22 0 d-------- C:\Documents and Settings\Viki\Application Data\Macromedia
2008-06-18 21:40:44 0 d-------- C:\WINDOWS\Profiles
2008-06-18 21:40:35 0 d-------- C:\Program Files\Common Files\Adobe
2008-06-18 21:40:29 306688 --a------ C:\WINDOWS\IsUninst.exe <Not Verified; InstallShield Software Corporation; InstallShield® unInstaller>
2008-06-18 21:40:25 0 d-------- C:\Documents and Settings\Viki\WINDOWS
2008-06-18 21:38:26 0 d--hs---- C:\Recycled
2008-06-18 21:30:32 24990 --a------ C:\WINDOWS\system32\VFP6RUN.EXE <Not Verified; Microsoft Corporation; Microsoft® Visual FoxPro®>
2008-06-18 21:30:32 876032 --a------ C:\WINDOWS\system32\VFP6RENU.DLL <Not Verified; Microsoft Corporation; Microsoft® Visual FoxPro®>
2008-06-18 21:30:31 3373328 --a------ C:\WINDOWS\system32\VFP6R.DLL <Not Verified; Microsoft Corporation; Microsoft® Visual FoxPro®>
2008-06-18 21:30:18 0 d-------- C:\WINKONYV
2008-06-18 20:50:45 0 d-------- C:\Documents and Settings\All Users\Application Data\InstallShield
2008-06-18 20:50:33 0 d-------- C:\Documents and Settings\Viki\Application Data\ScanSoft
2008-06-18 20:49:45 0 d-------- C:\Program Files\Common Files\ScanSoft Shared
2008-06-18 20:49:45 0 d-------- C:\Documents and Settings\All Users\Application Data\ScanSoft
2008-06-18 20:48:19 0 d-------- C:\Program Files\ScanSoft
2008-06-18 20:46:32 212480 --a------ C:\WINDOWS\PCDLIB32.DLL <Not Verified; Eastman Kodak; Kodak Photo CD Access Developer Toolkit>
2008-06-18 20:46:32 0 d-------- C:\Program Files\ArcSoft
2008-06-18 20:46:30 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-06-18 20:45:55 0 d-------- C:\Program Files\Common Files\InstallShield
2008-06-18 20:44:36 307712 --a------ C:\WINDOWS\IsUn040e.exe <Not Verified; InstallShield Software Corporation; InstallShield® unInstaller>
2008-06-18 20:43:30 0 d--h----- C:\Documents and Settings\All Users\Application Data\CanonBJ
2008-06-18 20:42:49 0 d--h----- C:\WINDOWS\system32\CanonIJ Uninstaller Information
2008-06-18 20:42:28 0 d--h----- C:\Program Files\CanonBJ
2008-06-18 20:41:48 0 d-------- C:\Program Files\Canon
2008-06-18 20:35:48 298104 --a------ C:\WINDOWS\system32\imon.dll <Not Verified; Eset; NOD32 Antivirus System>
2008-06-18 20:33:10 1755 --a------ C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
2008-06-18 20:32:48 2176 --a------ C:\WINDOWS\system32\d3d9caps.dat
2008-06-18 20:30:21 0 d-------- C:\Program Files\QuickTime
2008-06-18 20:28:51 0 d-------- C:\Program Files\Apple Software Update
2008-06-18 20:28:34 0 d-------- C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-06-18 20:25:57 0 d-------- C:\Documents and Settings\Viki\Application Data\Adobe
2008-06-18 20:10:27 98304 --a------ C:\WINDOWS\system32\qttask.exe <Not Verified; Apple Computer, Inc.; QuickTime>
2008-06-18 20:07:09 0 d-------- C:\WINDOWS\system32\QuickTime
2008-06-18 20:06:49 1122304 --a------ C:\WINDOWS\system32\mplvpx.dll <Not Verified; Ligos Corporation; MPL Video Library>
2008-06-18 20:06:48 1552384 --a------ C:\WINDOWS\system32\mplvm6.dll <Not Verified; Ligos Corporation; MPL Video Library>
2008-06-18 20:06:48 1650688 --a------ C:\WINDOWS\system32\mplva6.dll <Not Verified; Ligos Corporation; MPL Video Library>
2008-06-18 20:06:47 1581056 --a------ C:\WINDOWS\system32\mplvw7.dll <Not Verified; Ligos Corporation; MPL Video Library>
2008-06-18 20:06:47 77824 --a------ C:\WINDOWS\system32\mplaw7.dll <Not Verified; Ligos Corporation; MPL Audio Library>
2008-06-18 20:06:47 65536 --a------ C:\WINDOWS\system32\mplapx.dll <Not Verified; Ligos Corporation; MPL Audio Library>
2008-06-18 20:06:47 65536 --a------ C:\WINDOWS\system32\mplam6.dll <Not Verified; Ligos Corporation; MPL Audio Library>
2008-06-18 20:06:47 77824 --a------ C:\WINDOWS\system32\mplaa6.dll <Not Verified; Ligos Corporation; MPL Audio Library>
2008-06-18 20:06:47 19968 --a------ C:\WINDOWS\system32\cpuinf32.dll
2008-06-18 20:06:43 152064 --a------ C:\WINDOWS\system32\unrar.dll
2008-06-18 20:06:36 761856 --a------ C:\WINDOWS\system32\xvidcore.dll
2008-06-18 20:06:21 0 d-------- C:\Program Files\ACE Mega CoDecS Pack
2008-06-18 19:58:18 0 d-------- C:\Program Files\Microsoft.NET
2008-06-18 19:55:49 0 d-------- C:\WINDOWS\SHELLNEW
2008-06-18 19:51:17 0 dr-h----- C:\MSOCache
2008-06-18 19:47:57 96256 --a------ C:\WINDOWS\system32\drivers\sptddrv1.sys
2008-06-18 19:47:57 611064 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2008-06-18 19:46:43 0 d-------- C:\WINDOWS\system32\DRVSTORE
2008-06-18 19:39:52 0 d-------- C:\Documents and Settings\Viki\Application Data\Identities
2008-06-18 19:39:27 0 dr------- C:\Documents and Settings\Viki\Start Menu
2008-06-18 19:39:27 0 dr-h----- C:\Documents and Settings\Viki\SendTo
2008-06-18 19:39:27 0 d--h----- C:\Documents and Settings\Viki\Sablonok
2008-06-18 19:39:27 0 dr-h----- C:\Documents and Settings\Viki\Recent
2008-06-18 19:39:27 0 d--h----- C:\Documents and Settings\Viki\PrintHood
2008-06-18 19:39:27 0 d--h----- C:\Documents and Settings\Viki\NetHood
2008-06-18 19:39:27 0 d--h----- C:\Documents and Settings\Viki\Local Settings
2008-06-18 19:39:27 0 dr------- C:\Documents and Settings\Viki\Favorites
2008-06-18 19:39:27 0 dr------- C:\Documents and Settings\Viki\Dokumentumok
2008-06-18 19:39:27 0 d---s---- C:\Documents and Settings\Viki\Cookies
2008-06-18 19:39:27 0 d-------- C:\Documents and Settings\Viki\Asztal
2008-06-18 19:39:27 0 dr-h----- C:\Documents and Settings\Viki\Application Data
2008-06-18 19:37:18 0 d-------- C:\WINDOWS\SoftwareDistribution
2008-06-18 19:37:18 0 d--hs---- C:\System Volume Information
2008-06-18 19:37:07 0 d-------- C:\WINDOWS\Prefetch
2008-06-18 19:37:06 0 d---s---- C:\WINDOWS\system32\Microsoft
2008-06-18 19:37:03 0 d---s---- C:\Documents and Settings\LocalService\Cookies
2008-06-18 19:37:03 0 d-------- C:\Documents and Settings\LocalService\Application Data
2008-06-18 19:37:03 0 d---s---- C:\Documents and Settings\LocalService\Application Data\Microsoft
2008-06-18 19:37:02 229376 --a------ C:\Documents and Settings\LocalService\NTUSER.DAT
2008-06-18 19:37:02 0 d--h----- C:\Documents and Settings\LocalService\Local Settings
2008-06-18 19:36:31 229376 --a------ C:\Documents and Settings\NetworkService\NTUSER.DAT
2008-06-18 19:36:31 0 d--h----- C:\Documents and Settings\NetworkService\Local Settings
2008-06-18 19:36:31 0 d---s---- C:\Documents and Settings\NetworkService\Cookies
2008-06-18 19:36:31 0 d-------- C:\Documents and Settings\NetworkService\Application Data
2008-06-18 19:36:31 0 d---s---- C:\Documents and Settings\NetworkService\Application Data\Microsoft
2008-06-18 19:08:16 0 d-------- C:\WINDOWS\system32\xircom
2008-06-18 19:08:16 0 d-------- C:\Program Files\microsoft frontpage
2008-06-18 19:06:21 229376 ---h----- C:\Documents and Settings\Default User\NTUSER.DAT
2008-06-18 19:06:00 0 -rahs---- C:\MSDOS.SYS
2008-06-18 19:06:00 0 -rahs---- C:\IO.SYS
2008-06-18 19:06:00 0 --a------ C:\CONFIG.SYS
2008-06-18 19:06:00 0 --a------ C:\AUTOEXEC.BAT
2008-06-18 19:01:33 0 d--hs---- C:\Documents and Settings\All Users\DRM
2008-06-18 19:00:39 0 dr------- C:\WINDOWS\Offline Web Pages
2008-06-18 19:00:38 0 d---s---- C:\WINDOWS\Downloaded Program Files
2008-06-18 18:59:44 0 d--h----- C:\Program Files\WindowsUpdate
2008-06-18 18:59:31 0 d-------- C:\Program Files\Online Services
2008-06-18 18:58:31 0 d-------- C:\WINDOWS\system32\DirectX
2008-06-18 18:57:30 0 d---s---- C:\WINDOWS\Tasks
2008-06-18 18:57:29 0 d-------- C:\Program Files\Common Files\MSSoap
2008-06-18 18:57:23 0 d-------- C:\WINDOWS\srchasst
2008-06-18 18:57:22 0 d-------- C:\WINDOWS\system32\Macromed
2008-06-18 18:57:06 0 d-------- C:\Program Files\Movie Maker
2008-06-18 18:56:52 0 d-------- C:\WINDOWS\system32\Restore
2008-06-18 18:53:14 21948 --a------ C:\WINDOWS\system32\emptyregdb.dat
2008-06-18 18:52:32 0 d-------- C:\WINDOWS\Registration
2008-06-18 18:51:44 0 d-------- C:\Program Files\Messenger
2008-06-18 18:51:38 0 d-------- C:\Program Files\MSN Gaming Zone
2008-06-18 18:50:41 0 d-------- C:\Program Files\Windows NT
2008-06-18 18:50:35 0 d-------- C:\WINDOWS\system32\MsDtc
2008-06-18 18:50:33 0 d-------- C:\WINDOWS\system32\Com
2008-06-18 18:35:15 0 d--hs---- C:\WINDOWS\Installer
2008-06-18 18:35:13 0 d-------- C:\Program Files\Common Files\ODBC
2008-06-18 18:35:06 0 d-------- C:\Program Files\Common Files\SpeechEngines
2008-06-18 18:35:04 0 dr------- C:\Program Files
2008-06-18 18:35:04 0 d-------- C:\Program Files\Common Files
2008-06-18 18:33:55 0 dr------- C:\Documents and Settings\Default User\Start Menu
2008-06-18 18:33:55 0 dr-h----- C:\Documents and Settings\Default User\SendTo
2008-06-18 18:33:55 0 d--h----- C:\Documents and Settings\Default User\Sablonok
2008-06-18 18:33:55 0 d--h----- C:\Documents and Settings\Default User\Recent
2008-06-18 18:33:55 0 d--h----- C:\Documents and Settings\Default User\PrintHood
2008-06-18 18:33:55 0 d--h----- C:\Documents and Settings\Default User\NetHood
2008-06-18 18:33:55 0 dr-h----- C:\Documents and Settings\Default User\Local Settings
2008-06-18 18:33:55 0 d-------- C:\Documents and Settings\Default User\Favorites
2008-06-18 18:33:55 0 d-------- C:\Documents and Settings\Default User\Dokumentumok
2008-06-18 18:33:55 0 d---s---- C:\Documents and Settings\Default User\Cookies
2008-06-18 18:33:55 0 d-------- C:\Documents and Settings\Default User\Asztal
2008-06-18 18:33:55 0 dr------- C:\Documents and Settings\All Users\Start Menu
2008-06-18 18:33:55 0 d--h----- C:\Documents and Settings\All Users\Sablonok
2008-06-18 18:33:55 0 d-------- C:\Documents and Settings\All Users\Favorites
2008-06-18 18:33:55 0 dr------- C:\Documents and Settings\All Users\Dokumentumok
2008-06-18 18:33:55 0 d-------- C:\Documents and Settings\All Users\Asztal
2008-06-18 18:33:16 0 d-------- C:\WINDOWS\system32\CatRoot2
2008-06-18 18:33:16 0 d-------- C:\WINDOWS\system32\CatRoot
2008-06-18 18:33:10 0 dr-h----- C:\Documents and Settings\Default User\Application Data
2008-06-18 18:33:10 0 d---s---- C:\Documents and Settings\Default User\Application Data\Microsoft
2008-06-18 18:33:09 0 dr-h----- C:\Documents and Settings\All Users\Application Data
2008-06-18 18:33:09 0 d---s---- C:\Documents and Settings\All Users\Application Data\Microsoft
2008-06-18 18:32:39 0 d-------- C:\Documents and Settings
2008-06-18 18:25:03 0 d-------- C:\WINDOWS
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\WinSxS
2008-06-18 18:25:03 0 dr------- C:\WINDOWS\Web
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\twain_32
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\wins
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\wbem
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\usmt
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\spool
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\ShellExt
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\Setup
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\ras
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\oobe
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\npp
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\mui
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\inetsrv
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\IME
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\icsxml
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\ias
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\export
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\drivers
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\drivers\etc
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\drivers\disdn
2008-06-18 18:25:03 0 dr-hs---- C:\WINDOWS\system32\dllcache
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\dhcp
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\config
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\3com_dmi
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\3076
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\2052
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\1054
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\1042
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\1041
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\1038
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\1037
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\1033
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\1031
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\1028
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system32\1025
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\system
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\security
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\Resources
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\repair
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\Provisioning
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\PeerNet
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\pchealth
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\mui
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\msapps
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\msagent
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\Media
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\java
2008-06-18 18:25:03 0 d--h----- C:\WINDOWS\inf
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\ime
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\Help
2008-06-18 18:25:03 0 dr--s---- C:\WINDOWS\Fonts
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\ehome
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\Driver Cache
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\Debug
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\Cursors
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\Connection Wizard
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\Config
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\AppPatch
2008-06-18 18:25:03 0 d-------- C:\WINDOWS\addins
-- Find3M Report ---------------------------------------------------------------
2008-06-27 18:13:32 303696 --a------ C:\WINDOWS\system32\perfh00E.dat
2008-06-27 18:13:32 57936 --a------ C:\WINDOWS\system32\perfc00E.dat
2008-06-18 20:46:34 0 d-------- C:\Program Files\ArcSoft
2008-06-18 20:06:22 0 d-------- C:\Program Files\ACE Mega CoDecS Pack
2008-06-18 18:33:56 62 --ahs---- C:\Documents and Settings\Viki\Application Data\desktop.ini
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007.02.16. 10:54]
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [2008.06.18. 20:35]
"SSBkgdUpdate"="C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003.09.30. 00:14]
"OpwareSE4"="C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006.03.21. 13:19]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004.08.17. 14:47]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007.10.18. 11:34]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=0 (0x0)
"HideLegacyLogonScripts"=0 (0x0)
"HideLogoffScripts"=0 (0x0)
"RunLogonScriptSync"=1 (0x1)
"RunStartupScriptSync"=0 (0x0)
"HideStartupScripts"=0 (0x0)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"HideLegacyLogonScripts"=0 (0x0)
"HideLogoffScripts"=0 (0x0)
"RunLogonScriptSync"=1 (0x1)
"RunStartupScriptSync"=0 (0x0)
"HideStartupScripts"=0 (0x0)
-- End of Deckard's System Scanner: finished at 2008-06-29 11:23:22 ------------