Deckard's System Scanner v20070905.67
Run by Kristjan on 2007-09-11 20:38:23
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Successfully created a Deckard's System Scanner Restore Point.
-- Last 3 Restore Point(s) --
3: 2007-09-11 17:38:37 UTC - RP3 - Deckard's System Scanner Restore Point
2: 2007-09-11 15:23:25 UTC - RP2 - Made by Registry Mechanic
1: 2007-09-11 15:23:11 UTC - RP1 - System Checkpoint
Backed up registry hives.
Performed disk cleanup.
-- HijackThis (run as Kristjan.exe) --------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:40:36, on 11.09.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Comodo\Firewall\cmdagent.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\UPHClean\uphclean.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\WINDOWS\system32\taskswitch.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\Comodo\Firewall\CPF.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Vista Start Menu\VistaStartMenu.exe
C:\DOCUME~1\Kristjan\LOCALS~1\Temp\RtkBtMnt.EXE
C:\Program Files\EPoX\Hid2Hci Tray\HciTray.exe
C:\Program Files\Launchy\Launchy.exe
C:\Program Files\Orbitdownloader\orbitdm.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\Kristjan\Desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Kristjan.exe
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll
O2 - BHO: (no name) - {02DCA195-602B-4B1F-83FF-381B7E804BDB} - C:\WINDOWS\system32\HDBHO.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb106\Dealio.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {840105D1-D1F1-4337-AFAF-10F23178AB31} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb106\Dealio.dll
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [CoolSwitch] C:\WINDOWS\system32\taskswitch.exe
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [au] C:\Program Files\Dealio\DealioAU.exe
O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\Comodo\Firewall\CPF.exe" /background
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [AudioDrvEmulator] "C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe" -1 AudioDrvEmulator "C:\Program Files\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll"
O4 - HKLM\..\Run: [NuonSoft ShellEnhancer StartupHelper] C:\Program Files\NuonSoft\ShellEnhancer\StartupHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [VistaStartMenu] "C:\Program Files\Vista Start Menu\VistaStartMenu.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Hid2Hci Tray.lnk = C:\Program Files\EPoX\Hid2Hci Tray\HciTray.exe
O4 - Global Startup: Launchy.lnk = C:\Program Files\Launchy\Launchy.exe
O4 - Global Startup: Orbit.lnk = C:\Program Files\Orbitdownloader\orbitdm.exe
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Program Files\Dealio\kb106\res\DealioSearch.html
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: (no name) - AutorunsDisabled - (no file)
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb106\Dealio.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{15886EA9-9955-49E6-828D-F0A086BF2E3C}: NameServer = 194.204.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{5354C3FB-41FC-4E6F-8465-96857D8D7A95}: NameServer = 193.40.56.245,194.204.0.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{15886EA9-9955-49E6-828D-F0A086BF2E3C}: NameServer = 194.204.0.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{15886EA9-9955-49E6-828D-F0A086BF2E3C}: NameServer = 194.204.0.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{15886EA9-9955-49E6-828D-F0A086BF2E3C}: NameServer = 194.204.0.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Notebook Manager Service (anbmService) - Unknown owner - C:\Acer\eManager\anbmServ.exe (file missing)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Bonjour Service - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Comodo Application Agent (CmdAgent) - COMODO - C:\Program Files\Comodo\Firewall\cmdagent.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service:


iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\hpzipm12.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
--
End of file - 9462 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R0 BTHidMgr (Bluetooth HID Manager Service) - c:\windows\system32\drivers\bthidmgr.sys <Not Verified; IVT Corporation; BlueSoleil©>
R1 SCDEmu - c:\windows\system32\drivers\scdemu.sys <Not Verified; PowerISO Computing, Inc.; scdemu>
R2 AegisP (AEGIS Protocol (IEEE 802.1x) v3.4.7.0) - c:\windows\system32\drivers\aegisp.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 3.4.7.0>
R2 CDRPDACC (Quinnware CDDA Driver (by InfinaDyne)) - c:\program files\quintessential media player\cdrpdacc.sys <Not Verified; Arrowkey; CD Device Access>
R3 BlueletAudio (Bluetooth Audio Service) - c:\windows\system32\drivers\blueletaudio.sys <Not Verified; IVT Corporation; Windows ® 2000 DDK driver>
R3 BlueletSCOAudio (Bluetooth SCO Audio Service) - c:\windows\system32\drivers\blueletscoaudio.sys <Not Verified; IVT Corporation; Windows ® 2000 DDK driver>
R3 BTHidEnum (Bluetooth HID Enumerator) - c:\windows\system32\drivers\vbtenum.sys
R3 Pcouffin (VSO Software pcouffin) - c:\windows\system32\drivers\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine>
R3 VComm (Virtual Serial port driver) - c:\windows\system32\drivers\vcomm.sys <Not Verified; IVT Corporation; BlueSoleil>
R3 VcommMgr (Bluetooth VComm Manager Service) - c:\windows\system32\drivers\vcommmgr.sys <Not Verified; IVT Corporation; BlueSoleil>
R3 VHidMinidrv (Bluetooth HID Device Service) - c:\windows\system32\drivers\vhidmini.sys <Not Verified; IVT Corporation; IVT BlueSoleil>
S3 actser - c:\windows\system32\drivers\actser.sys <Not Verified; Siemens AG; Actser Filter Driver>
S3 AdWatchDrv (AW Realtime Driver) - c:\windows\system32\drivers\awrtpd.sys (file missing)
S3 AgereSoftModem (Agere Systems Soft Modem) - c:\windows\system32\drivers\agrsm.sys (file missing)
S3 AR5416 (Linksys Wireless-N Notebook Adapter WPC300N Service) - c:\windows\system32\drivers\ar5416.sys <Not Verified; Atheros Communications, Inc.; Atheros AR5008 Wireless Network Adapter>
S3 BT (Bluetooth PAN Network Adapter) - c:\windows\system32\drivers\btnetdrv.sys <Not Verified; IVT Corporation; BlueSoleil>
S3 Btcsrusb (Bluetooth USB For Bluetooth Service) - c:\windows\system32\drivers\btcusb.sys <Not Verified; IVT Corporation; Bluetooth USB Device Driver>
S3 BTNetFilter (Bluetooth Network Filter) - c:\windows\system32\drivers\btnetfilter.sys
S3 ctac32k (Creative AC3 Software Decoder) - c:\windows\system32\drivers\ctac32k.sys (file missing)
S3 ctaud2k (Creative Audio Driver (WDM)) - c:\windows\system32\drivers\ctaud2k.sys (file missing)
S3 ctmmfilt (Audio Filter Driver) - c:\windows\system32\drivers\ctmmfilt.sys (file missing)
S3 ctprxy2k (Creative Proxy Driver) - c:\windows\system32\drivers\ctprxy2k.sys (file missing)
S3 emupia (E-mu Plug-in Architecture Driver) - c:\windows\system32\drivers\emupia2k.sys (file missing)
S3 FreshIO - c:\program files\freshdevices\freshdiagnose\freshio.sys
S3 GEARAspiWDM - c:\windows\system32\drivers\gearaspiwdm.sys (file missing)
S3 ha10kx2k (Creative Hardware Abstract Layer Driver) - c:\windows\system32\drivers\ha10kx2k.sys (file missing)
S3 hap16v2k (Creative P16V HAL Driver) - c:\windows\system32\drivers\hap16v2k.sys (file missing)
S3 hap17v2k (Creative P17V HAL Driver) - c:\windows\system32\drivers\hap17v2k.sys (file missing)
S3 NSNDIS5 (NSNDIS5 NDIS Protocol Driver) - c:\windows\system32\nsndis5.sys <Not Verified; Printing Communications Assoc., Inc. (PCAUSA); NetStumbler>
S3 Pcatip - c:\windows\system32\drivers\pcatip.sys (file missing)
S3 USBSNXSTOR (Mass Storage driver ) - c:\windows\system32\drivers\usbsnx2k.sys (file missing)
S4 InCDFs (InCD File System) - c:\windows\system32\drivers\incdfs.sys (file missing)
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
R2 BlueSoleil Hid Service - c:\program files\ivt corporation\bluesoleil\btntservice.exe
R2 Bonjour Service - "c:\program files\bonjour\mdnsresponder.exe" <Not Verified; Apple Computer, Inc.; Bonjour>
R2 UPHClean (User Profile Hive Cleanup) - c:\program files\uphclean\uphclean.exe <Not Verified; Microsoft Corporation; User Profile Hive Cleanup Service>
S2 anbmService (Notebook Manager Service) - c:\acer\emanager\anbmserv.exe (file missing)
-- Device Manager: Disabled ----------------------------------------------------
Class GUID:
Description: PCI Modem
Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_00831025&REV_A0\3&267A616A&0&16
Manufacturer:
Name: PCI Modem
PNP Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_00831025&REV_A0\3&267A616A&0&16
Service:
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: Bluetooth PAN Network Adapter
Device ID: ROOT\NET000
Manufacturer: IVT Corporation
Name: Bluetooth PAN Network Adapter
PNP Device ID: ROOT\NET000
Service: BT
-- Scheduled Tasks -------------------------------------------------------------
2007-09-08 20:05:01 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
-- Files created between 2007-08-11 and 2007-09-11 -----------------------------
2007-09-11 18:20:05 0 d-------- C:\Documents and Settings\All Users\Application Data\TEMP
2007-09-10 22:33:56 0 d-------- C:\Program Files\Trend Micro
2007-09-10 22:17:51 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Lavasoft
2007-09-10 22:15:40 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Participatory Culture Foundation
2007-09-10 20:56:18 0 d-------- C:\Documents and Settings\Kristjan\.SunDownloadManager
2007-09-10 20:54:56 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Sun
2007-09-10 19:56:22 0 d-------- C:\Documents and Settings\All Users\Application Data\PC Drivers Headquarters
2007-09-10 19:53:50 0 d-------- C:\Program Files\PC Drivers HeadQuarters
2007-09-08 08:18:07 0 d-------- C:\Program Files\DriverScan
2007-09-08 08:17:43 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Configuration
2007-09-08 01:52:38 110592 --a------ C:\WINDOWS\system32\ccrpbds6.dll <Not Verified; Common Controls Replacement Project (CCRP); CCRPBrowseDlgSvr6.BrowseDialog>
2007-09-08 01:47:21 0 d-------- C:\Program Files\uTorrent
2007-09-08 01:47:20 0 d-------- C:\Documents and Settings\Kristjan\Application Data\uTorrent
2007-09-08 01:32:28 0 d-------- C:\Program Files\DriverGuide Toolkit
2007-09-08 01:31:02 0 d-------- C:\Documents and Settings\Kristjan\Application Data\BitTorrent
2007-09-07 23:41:10 0 d-------- C:\Program Files\Realtek AC97
2007-09-07 23:29:17 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Apple Computer
2007-09-07 23:25:30 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Inkscape
2007-09-06 22:03:39 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Wireshark
2007-09-06 22:00:56 0 d-------- C:\Documents and Settings\Kristjan\Application Data\MusicIP
2007-09-06 22:00:38 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Winamp
2007-09-06 21:49:45 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Macromedia
2007-09-06 21:47:15 0 d-------- C:\Documents and Settings\Kristjan\Contacts
2007-09-06 20:13:58 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Skype
2007-09-06 20:08:49 0 d--hs---- C:\Documents and Settings\Kristjan\Recent
2007-09-06 19:56:34 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Thunderbird
2007-09-06 19:56:34 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Mozilla
2007-09-06 19:54:32 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Vista Start Menu
2007-09-06 19:40:49 0 d-------- C:\Documents and Settings\Kristjan\Application Data\PC Suite
2007-09-06 19:33:34 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Notepad++
2007-09-06 19:14:10 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Adobe
2007-09-06 19:13:43 0 d-------- C:\Downloads
2007-09-06 19:13:38 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Orbit
2007-09-06 19:13:34 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Launchy
2007-09-06 19:13:27 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Teleca
2007-09-06 19:13:21 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Comodo
2007-09-06 19:13:18 0 d-------- C:\Documents and Settings\Kristjan\Application Data\AVG7
2007-09-06 19:11:17 0 d-------- C:\Documents and Settings\Kristjan\Application Data\Identities
2007-09-06 19:10:04 0 d---s---- C:\Documents and Settings\Kristjan\My Documents
2007-09-06 19:10:04 0 d--h----- C:\Documents and Settings\Kristjan\Local Settings
2007-09-06 19:10:04 0 d---s---- C:\Documents and Settings\Kristjan\Favorites
2007-09-06 19:10:04 0 d-------- C:\Documents and Settings\Kristjan\Desktop
2007-09-06 19:10:04 0 d---s---- C:\Documents and Settings\Kristjan\Cookies
2007-09-06 19:10:04 0 dr-h----- C:\Documents and Settings\Kristjan\Application Data
2007-09-06 19:10:03 0 d--h----- C:\Documents and Settings\Kristjan\Templates
2007-09-06 19:10:03 0 dr------- C:\Documents and Settings\Kristjan\Start Menu
2007-09-06 19:10:03 0 dr-h----- C:\Documents and Settings\Kristjan\SendTo
2007-09-06 19:10:03 0 d--h----- C:\Documents and Settings\Kristjan\PrintHood
2007-09-06 19:10:03 0 d--h----- C:\Documents and Settings\Kristjan\NetHood
2007-09-06 19:10:01 1572864 --ah----- C:\Documents and Settings\Kristjan\NTUSER.DAT
2007-08-25 01:08:26 217088 --a------ C:\WINDOWS\system32\yv12vfw.dll <Not Verified;
www.helixcommunity.org; Helix YV12 YUV Codec>
2007-08-25 01:08:26 39936 --a------ C:\WINDOWS\system32\huffyuv.dll <Not Verified; Disappearing Inc.; Huffyuv>
2007-08-25 01:08:25 564224 --a------ C:\WINDOWS\system32\x264vfw.dll
2007-08-25 01:08:25 630784 --a------ C:\WINDOWS\system32\vp7vfw.dll <Not Verified; On2.com; On2_VP70>
2007-08-25 01:08:25 438272 --a------ C:\WINDOWS\system32\vp6vfw.dll <Not Verified; On2.com; On2_VP6>
2007-08-25 01:08:25 217088 --a------ C:\WINDOWS\system32\i420vfw.dll <Not Verified;
www.helixcommunity.org; Helix I420 YUV Codec>
2007-08-25 01:08:24 282624 --a------ C:\WINDOWS\system32\xvidvfw.dll
2007-08-25 01:08:24 1559040 --a------ C:\WINDOWS\system32\xvidcore.dll
2007-08-25 01:08:23 3596288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2007-08-25 01:08:23 73728 --a------ C:\WINDOWS\system32\dpl100.dll <Not Verified; DivX, Inc.; DivX, Inc. dpl100>
2007-08-25 01:08:22 740442 --a------ C:\WINDOWS\system32\divx.dll <Not Verified; DivX, Inc.; DivX®>
2007-08-25 01:08:21 7680 --a------ C:\WINDOWS\system32\ff_vfw.dll
2007-08-25 01:08:14 0 d-------- C:\Documents and Settings\All Users\Application Data\Real
2007-08-23 17:07:39 0 d-------- C:\Program Files\Password Safe
2007-08-23 16:32:20 212992 --a------ C:\WINDOWS\ALCHUNIN.EXE
2007-08-23 16:32:17 36864 --a------ C:\WINDOWS\Pagan Daybook 3.scr
2007-08-11 23:15:15 0 d-------- C:\Program Files\iPod
2007-08-11 23:14:05 0 d-------- C:\Program Files\iTunes
2007-08-11 23:09:02 0 d-------- C:\Program Files\Common Files\Apple
2007-08-11 23:04:25 0 d-------- C:\Program Files\QuickTime
-- Find3M Report ---------------------------------------------------------------
2007-09-10 22:17:20 0 d-------- C:\Program Files\JkDefragGUI
2007-09-08 10:09:06 0 d-------- C:\Program Files\FreshDevices
2007-09-08 08:56:57 0 d-------- C:\Program Files\Dealio
2007-09-08 08:39:45 0 d--h----- C:\Program Files\InstallShield Installation Information
2007-09-06 22:07:29 0 d-------- C:\Program Files\Paint.NET
2007-09-06 22:01:04 0 d-------- C:\Program Files\EvilLyrics
2007-09-06 21:46:04 0 d-------- C:\Program Files\MSN Messenger
2007-09-06 19:57:18 0 d-------- C:\Program Files\realtech VR
2007-09-06 19:55:41 0 d-------- C:\Program Files\VSO
2007-09-06 19:53:49 0 d-------- C:\Program Files\Shareaza
2007-09-06 19:53:34 0 d-------- C:\Program Files\Creative
2007-09-06 19:51:16 0 d-------- C:\Program Files\Soulseek-Test
2007-09-06 19:47:02 0 d-------- C:\Program Files\Common Files\Teleca Shared
2007-09-06 19:40:04 0 d-------- C:\Program Files\Mozilla Thunderbird Beta 2
2007-09-06 19:39:37 0 d-------- C:\Program Files\Offline Explorer Enterprise
2007-09-06 19:39:05 0 d-------- C:\Program Files\FreeMind
2007-09-06 17:14:10 0 d-------- C:\Program Files\Opera
2007-09-06 17:03:59 0 d-------- C:\Program Files\X-NetStat Professional
2007-08-28 13:50:41 0 d-------- C:\Program Files\Orbitdownloader
2007-08-25 01:08:24 0 d-------- C:\Program Files\K-Lite Codec Pack
2007-08-23 16:58:25 0 d-------- C:\Program Files\ESTsoft
2007-08-23 05:06:55 0 d-------- C:\Program Files\Java
2007-08-12 03:51:04 0 d-------- C:\Program Files\MediaMonkey
2007-08-11 23:18:23 0 d-------- C:\Program Files\Safari
2007-08-11 23:09:02 0 d-------- C:\Program Files\Common Files
2007-08-11 23:02:11 0 d-------- C:\Program Files\CubicExplorer
2007-08-11 04:01:49 0 d-------- C:\Program Files\FreeRIP3
2007-08-10 20:55:38 0 d-------- C:\Program Files\Common Files\Skype
2007-08-02 02:41:26 0 d-------- C:\Program Files\Bon Echo
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{840105D1-D1F1-4337-AFAF-10F23178AB31}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SiSPower"="SiSPower.dll" [25.02.2005 14:35 C:\WINDOWS\system32\SiSPower.dll]
"SynTPLpr"="C:\Program Files\Synaptics\SynTP\SynTPLpr.exe" [08.10.2004 09:44]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [08.10.2004 09:43]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe" [17.08.2007 10:01]
"CoolSwitch"="C:\WINDOWS\system32\taskswitch.exe" [19.03.2002 18:30]
"Acrobat Assistant 7.0"="C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" [12.01.2006 21:52]
"au"="C:\Program Files\Dealio\DealioAU.exe" [27.06.2007 12:46]
"COMODO Firewall Pro"="C:\Program Files\Comodo\Firewall\CPF.exe" [07.02.2007 03:29]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" [12.07.2007 04:00]
"AudioDrvEmulator"="C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe" []
"NuonSoft ShellEnhancer StartupHelper"="C:\Program Files\NuonSoft\ShellEnhancer\StartupHelper.exe" [16.12.2006 11:46]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [29.06.2007 06:24]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [31.07.2007 18:44]
"SoundMan"="SOUNDMAN.EXE" [16.04.2007 15:28 C:\WINDOWS\soundman.exe]
"RegistryMechanic"="" []
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [04.08.2004 01:56]
"VistaStartMenu"="C:\Program Files\Vista Start Menu\VistaStartMenu.exe" [07.06.2007 13:09]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [06.06.2006 12:38]
"BitTorrent"="C:\Program Files\BitTorrent\bittorrent.exe" [30.11.2006 06:50]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Hid2Hci Tray.lnk - C:\Program Files\EPoX\Hid2Hci Tray\HciTray.exe [30.07.2006 18:20:39]
Launchy.lnk - C:\Program Files\Launchy\Launchy.exe [29.04.2007 22:01:17]
Orbit.lnk - C:\Program Files\Orbitdownloader\orbitdm.exe [14.03.2007 20:41:28]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoRemoteRecursiveEvents"=1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\taskmgr.exe]
Debugger="C:\SYSINTERNALS\PROCEXPLORER\PROCEXP.EXE"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^PowerMenu.lnk]
backup=C:\WINDOWS\pss\PowerMenu.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
"C:\Program Files\Messenger\Msmsgs.exe" /background
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
Usnsvc usnsvc
-- End of Deckard's System Scanner: finished at 2007-09-11 20:41:16 ------------
Deckard's System Scanner v20070905.67
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------
-- System Information ----------------------------------------------------------
Microsoft Windows XP Professional (build 2600) SP 2.0
Architecture: X86; Language: English
CPU 0: Mobile AMD Sempron(tm) Processor 3000+
Percentage of Memory in Use: 45%
Physical Memory (total/avail): 702.48 MiB / 380.11 MiB
Pagefile Memory (total/avail): 951.51 MiB / 640.34 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1966.97 MiB
C: is Fixed (NTFS) - 37.25 GiB total, 19.27 GiB free.
D: is CDROM (No Media)
\\.\PHYSICALDRIVE0 - ST9402113A - 37.26 GiB - 1 partition
\PARTITION0 (bootable) - Installable File System - 37.25 GiB - C:
-- Security Center -------------------------------------------------------------
AUOptions is set to notify before install.
Windows Internal Firewall is enabled.
FirewallDisableNotify is set.
FW: COMODO Firewall Pro v2.3.035 (COMODO)
AV: AVG 7.5.485 v7.5.485 (GRISOFT)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.0"
"C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Grisoft\\AVG Free\\avginet.exe"="C:\\Program Files\\Grisoft\\AVG Free\\avginet.exe:*:Enabled:avginet.exe"
"C:\\Program Files\\Grisoft\\AVG Free\\avgemc.exe"="C:\\Program Files\\Grisoft\\AVG Free\\avgemc.exe:*:Enabled:avgemc.exe"
"C:\\Program Files\\BitTorrent\\bittorrent.exe"="C:\\Program Files\\BitTorrent\\bittorrent.exe:*:Enabled:BitTorrent"
"C:\\Program Files\\BitSpirit\\BitSpirit.exe"="C:\\Program Files\\BitSpirit\\BitSpirit.exe:*:Enabled:The powerful and easy-to-use BitTorrent Client"
"C:\\Program Files\\DC++\\DCPlusPlus.exe"="C:\\Program Files\\DC++\\DCPlusPlus.exe:*:Enabled:DC++"
"C:\\Program Files\\Java\\jre1.5.0_05\\bin\\javaw.exe"="C:\\Program Files\\Java\\jre1.5.0_05\\bin\\javaw.exe:*:Enabled:Java(tm) 2 Platform Standard Edition binary"
"C:\\Program Files\\Messenger\\Msmsgs.exe"="C:\\Program Files\\Messenger\\Msmsgs.exe:*:Disabled:Windows Messenger"
"C:\\Program Files\\Nero\\Nero 7\\Nero Home\\NeroHome.exe"="C:\\Program Files\\Nero\\Nero 7\\Nero Home\\NeroHome.exe:*:Disabled:Nero Home"
"C:\\Program Files\\Soulseek-Test\\slsk.exe"="C:\\Program Files\\Soulseek-Test\\slsk.exe:*:Enabled:SoulSeek"
"C:\\Program Files\\LeechFTP\\Leechftp.exe"="C:\\Program Files\\LeechFTP\\Leechftp.exe:*:Enabled:LeechFTP"
"C:\\Soft\\p2p\\utorrent-1.5.1-beta-build-464.exe"="C:\\Soft\\p2p\\utorrent-1.5.1-beta-build-464.exe:*:Enabled:µTorrent"
"C:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"="C:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\\Documents and Settings\\Tarmo\\Local Settings\\Temp\\Rar$EX01.250\\utorrent-1.6.1-beta-build-481.exe"="C:\\Documents and Settings\\Tarmo\\Local Settings\\Temp\\Rar$EX01.250\\utorrent-1.6.1-beta-build-481.exe:*:Enabled:µTorrent"
"C:\\Soft\\p2p\\utorrent-1.6.1-beta-build-481.exe"="C:\\Soft\\p2p\\utorrent-1.6.1-beta-build-481.exe:*:Enabled:µTorrent"
"C:\\Program Files\\Grisoft\\AVG Free\\avgcc.exe"="C:\\Program Files\\Grisoft\\AVG Free\\avgcc.exe:*:Enabled:avgcc.exe"
"C:\\Program Files\\Grisoft\\AVG Free\\avgamsvr.exe"="C:\\Program Files\\Grisoft\\AVG Free\\avgamsvr.exe:*:Enabled:avgamsvr.exe"
"C:\\Program Files\\Orbitdownloader\\orbitdm.exe"="C:\\Program Files\\Orbitdownloader\\orbitdm.exe:*:Enabled:Orbit"
"C:\\Program Files\\Orbitdownloader\\orbitnet.exe"="C:\\Program Files\\Orbitdownloader\\orbitnet.exe:*:Enabled:Orbit"
"C:\\Program Files\\Joost\\xulrunner\\tvprunner.exe"="C:\\Program Files\\Joost\\xulrunner\\tvprunner.exe:*:Enabled:tvprunner"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"="C:\\Program Files\\Bonjour\\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.0"
"C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
"C:\\Program Files\\uTorrent\\uTorrent.exe"="C:\\Program Files\\uTorrent\\uTorrent.exe:*:Enabled:µTorrent"
-- Environment Variables -------------------------------------------------------
ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Kristjan\Application Data
CLASSPATH=.;C:\Program Files\Java\jre1.6.0\lib\ext\QTJava.zip
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=KRISTJAN
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Kristjan
LOGONSERVER=\\KRISTJAN
NUMBER_OF_PROCESSORS=1
OS=Windows_NT
Path=C:\Program Files\Bon Echo;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\Program Files\Common Files\Teleca Shared;C:\Program Files\QuickTime\QTSystem\
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 44 Stepping 2, AuthenticAMD
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=2c02
ProgramFiles=C:\Program Files
PROMPT=$P$G
QTJAVA=C:\Program Files\Java\jre1.6.0\lib\ext\QTJava.zip
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\Kristjan\LOCALS~1\Temp
TMP=C:\DOCUME~1\Kristjan\LOCALS~1\Temp
USERDOMAIN=KRISTJAN
USERNAME=Kristjan
USERPROFILE=C:\Documents and Settings\Kristjan
windir=C:\WINDOWS
-- User Profiles ---------------------------------------------------------------
Kristjan
(admin)Administrator
(new local, admin)-- Add/Remove Programs ---------------------------------------------------------
--> C:\Program Files\DivX\ConverterUninstall.exe /CONVERTER
--> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
ACA Audio Recorder 3.00 --> "C:\Program Files\ACASystems\ACAAudioRecorder\unins000.exe"
Ad-Aware SE Personal --> C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG
Adobe Acrobat 7.0.8 Professional --> msiexec /I {AC76BA86-1033-0000-7760-000000000002}
Adobe Download Manager 2.0 (Remove Only) --> "C:\Program Files\Common Files\Adobe\ESD\uninst.exe"
Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin --> C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Alt-Tab Task Switcher Powertoy for Windows XP --> MsiExec.exe /I{A7050037-F0EA-4BAB-BCD5-FC05507D6147}
Apple Mobile Device Support --> MsiExec.exe /I{967D588C-9B96-40C9-A222-DCD6922563CA}
Apple Software Update --> MsiExec.exe /I{74EC78BC-B379-4E29-9006-8F161DCAABA6}
µTorrent --> "C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
AudioShell 1.3.5 --> "C:\Program Files\AudioShell\unins000.exe"
AVG Anti-Rootkit Beta --> C:\Program Files\GRISOFT\AVG Anti-Rootkit Beta\Uninstall.exe
AVG Anti-Spyware 7.5 --> C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe
AVG Free Edition --> C:\Program Files\Grisoft\AVG Free\setup.exe /UNINSTALL
BitTorrent 5.0.2 --> "C:\Program Files\BitTorrent\uninstall.exe"
BlueSoleil --> MsiExec.exe /X{63D1A44F-E1FD-4460-BE0A-8745012F67EF}
Bluetooth Network Scanner --> MsiExec.exe /I{4A6B6801-02E4-4E34-9703-7EA75929F361}
Calculator Powertoy for Windows XP --> MsiExec.exe /I{B37C842A-B624-46B8-A727-654E72F1C91A}
Catalencoder --> C:\Program Files\Catalencoder\uninst.exe
CCleaner (remove only) --> "C:\Program Files\CCleaner\uninst.exe"
ClearType Tuning Control Panel Applet --> MsiExec.exe /I{C9E4932C-8417-4E4C-A0E3-EE534810AB4D}
CmdHere Powertoy For Windows XP --> MsiExec.exe /I{6855CCDD-BDF9-48E4-B80A-80DFB96FE36C}
CoffeeCup Google SiteMapper --> C:\PROGRA~1\COFFEE~1\COFFEE~1\UNWISE.EXE C:\PROGRA~1\COFFEE~1\COFFEE~1\sitemapper.log
COMODO Firewall Pro --> C:\Program Files\Comodo\Firewall\fwconfig.exe -uninstalln
CopyProfile --> MsiExec.exe /I{9A9ED54A-0FAB-4D34-A3B9-F6C659E1F898}
CubicExplorer 0.77a --> "C:\Program Files\CubicExplorer\unins000.exe"
Dealio Toolbar --> MsiExec.exe /X{A1ECCE64-98DB-4F40-95BB-1BD8F1C939B2}
DeepBurner v1.8.0.224 --> "C:\Program Files\Astonsoft\DeepBurner\Uninstall.exe" "C:\Program Files\Astonsoft\DeepBurner\install.log"
DivX Content Uploader --> C:\Program Files\DivX\DivXContentUploaderUninstall.exe /CUPLOADER
DivX Converter --> C:\Program Files\DivX\ConverterUninstall.exe /CONVERTER
DivX Player --> C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Web Player --> C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
Driver Detective --> C:\Program Files\InstallShield Installation Information\{621C02EA-AAFF-4026-A903-165D59529A16}\setup.exe -runfromtemp -l0x0409
DriverGuide Toolkit --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D13D318A-43CB-4D0C-9EF6-E1B01FF25279}\setup.exe"
DriverScan --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E6E88DF4-E0F1-4AA7-912D-74223AA6B70F}\setup.exe"
Eesti keele moodulid OpenOffice.org-ile --> "C:\WINDOWS\IPUI_OO2ET.exe" /U /D
EvilLyrics --> "C:\Program Files\EvilLyrics\uninst.exe"
FastStone Image Viewer 3.3 Beta 2 --> C:\Program Files\FastStone Image Viewer\uninst.exe
FastStone MaxView 1.7 --> C:\Program Files\FastStone MaxView\uninst.exe
FastStone Photo Resizer 2.4 --> C:\Program Files\FastStone Photo Resizer\uninst.exe
FileMenu Tools --> "C:\Program Files\LopeSoft\FileMenu Tools\unins000.exe"
FileZilla (remove only) --> "C:\Program Files\FileZilla\uninstall.exe"
Free Spider --> C:\PROGRA~1\FREESP~1\UNWISE.EXE C:\PROGRA~1\FREESP~1\INSTALL.LOG
FreeRIP v3.00 --> "C:\Program Files\FreeRIP3\unins000.exe"
FreshDiagnose --> "C:\Program Files\FreshDevices\FreshDiagnose\unins000.exe"
FreshUI --> "C:\Program Files\FreshDevices\FreshUI\unins000.exe"
GOM Player --> "C:\Program Files\GRETECH\GomPlayer\Uninstall.exe"
GOM Player Beta --> "C:\Program Files\GRETECH\GomPlayer\Uninstall.exe"
Google Earth --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3DE5E7D4-7B88-403C-A3FD-2017A8240C5B}\setup.exe" -l0x9 -removeonly
Google Video Player --> "C:\Program Files\Google\Google Video Player\Uninstall.exe"
Group Shot --> MsiExec.exe /I{895F4870-FDD0-4725-9DE2-5D35CFD1F89F}
GX::Transcoder.net --> "C:\Program Files\GXTranscoder.net\unins000.exe"
Hid2Hci Tray --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\EPoX\Hid2Hci Tray\Uninst.isu"
HighMAT Extension to Microsoft Windows XP CD Writing Wizard --> MsiExec.exe /X{FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F}
HijackThis 2.0.2 --> "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows Media Format SDK (KB902344) --> "C:\WINDOWS\$NtUninstallKB902344$\spuninst\spuninst.exe"
HTML Slideshow Powertoy for Windows XP --> MsiExec.exe /I{4E475FD4-4513-4B1D-8DDA-43912B068C99}
Image Resizer Powertoy for Windows XP --> MsiExec.exe /I{1CB92574-96F2-467B-B793-5CEB35C40C29}
Inkscape 0.45pre1 --> "C:\Program Files\Inkscape\uninst.exe"
iTunes --> MsiExec.exe /I{E0219810-16E4-437D-9165-93D7B22524F9}
Java(tm) 6 Update 2 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020}
Java(tm) SE Runtime Environment 6 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000}
JkDefragGUI 0.7 --> C:\Program Files\JkDefragGUI\Uninstall.exe
Joost (tm) 0.10.2 --> C:\Program Files\Joost\uninst.exe
K-Lite Mega Codec Pack 3.3.8 *BETA* --> "C:\Program Files\K-Lite Codec Pack\unins000.exe"
KC Softwares VideoInspector --> "C:\Program Files\KC Softwares\VideoInspector\unins000.exe"
Launchy 1.25 --> "C:\Program Files\Launchy\unins000.exe"
Macromedia Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
Magnifier Powertoy for Windows XP --> MsiExec.exe /I{2FBF04DC-404C-4FA4-BA28-99903080D2B9}
MediaInfo 0.7.3.0 --> C:\Program Files\MediaInfo\uninst.exe
MediaMonkey 3.0 --> "C:\Program Files\MediaMonkey\unins000.exe"
Microsoft Bootvis --> MsiExec.exe /I{0F9196C6-58B4-445B-B56E-B1200FECC151}
Microsoft Color Control Panel Applet for Windows XP --> MsiExec.exe /X{CE378F36-E404-4244-A33F-F50A2A6D31BD}
Microsoft Windows Journal Viewer --> MsiExec.exe /X{43DCF766-6838-4F9A-8C91-D92DA586DFA8}
Month Limit 1.11 --> "C:\Program Files\Month Limit\unins000.exe"
Mozilla Firefox (2.0.0.6) --> C:\Program Files\Bon Echo\uninstall\helper.exe
MP3 Player Utilities 4.00 --> MsiExec.exe /I{7784A172-61F1-445E-8368-601607E0DD22}
Network Stumbler 0.4.0 (remove only) --> "C:\Program Files\Network Stumbler\uninst.exe"
Notepad++ --> C:\Program Files\Notepad++\uninstall.exe
NuonSoft ShellEnhancer 3.0 --> "C:\Program Files\NuonSoft\ShellEnhancer\unins000.exe"
Office Animation Runtime --> MsiExec.exe /X{AEEB3643-71DE-414d-9E3F-1159177FE211}
OpenOffice.org 2.2 --> MsiExec.exe /I{65A27B19-3398-4B23-837C-7A9EA6A39F03}
Opera 9.0 --> MsiExec.exe /X{AEAA6873-3170-412E-B340-D952EA5A9127}
Opera 9.23 --> MsiExec.exe /X{1D6EABF3-0F71-431F-B3B7-468773C41340}
Orbit --> "C:\Program Files\Orbitdownloader\unins000.exe"
Pack Vista Inspirat 1.1 --> C:\WINDOWS\BricoPacks\Vista Inspirat\Remove.exe
Pagan Daybook 3 --> C:\WINDOWS\ALCHUNIN.EXE C:\Program Files\Alchemy Mindworks\Pagan Daybook 3\INSTALLD.TXT
Paint.NET v3.10 --> MsiExec.exe /X{5E749AEB-5A19-43BA-BB20-3CBB37539FE4}
PhotoFiltre --> "C:\Program Files\PhotoFiltre\Uninst.exe"
Picasa 2 --> "C:\Program Files\Picasa2\Uninstall.exe"
Polyglot 3000 (Version 2.4) --> "C:\Program Files\Polyglot 3000\unins000.exe"
PowerISO --> "C:\Program Files\PowerISO\uninstall.exe"
QuickTime --> MsiExec.exe /I{95A890AA-B3B1-44B6-9C18-A8F7AB3EE7FC}
Quintessential Media Player --> "C:\Program Files\Quintessential Media Player\uninst.exe"
Realtek AC'97 Audio --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" -l0x19 -removeonly
Registry Mechanic 6.0 --> "C:\Program Files\Registry Mechanic\unins000.exe"
Safari --> MsiExec.exe /I{3E719879-9914-4C56-843E-96D0C3FCC3FB}
Security Update for Step By Step Interactive Training (KB898458) --> "C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe"
SimpleDivX --> "C:\Program Files\SimpleDivX\unins000.exe"
SiS M760GX --> Rundll32 SiSInst.dll,Uninstall VGA,R,oem2.inf
Skype Toolbar for Microsoft Office --> "C:\Program Files\Skype\toolbars\Skype for Microsoft Office\unins000.exe"
Skypeâ„¢ 3.5 --> MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
Slideshow Generator Powertoy for Windows XP --> MsiExec.exe /I{C39DE425-6CCF-4B12-A101-3CB5CF3AF3AD}
Streamripper Plugin 1.62-beta-2 (Remove only) --> C:\Program Files\Winamp\streamripper_uninstall.exe
Subtitle Workshop 2.51 --> "C:\Program Files\URUSoft\Subtitle Workshop\uninstall.exe"
Synaptics Pointing Device Driver --> rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
SyncToy --> MsiExec.exe /I{15047293-954F-45B2-8A7B-D7226D2B6931}
ZSoft Uninstaller 2.4 --> C:\Program Files\ZSoft\Uninstaller\uninst.exe
TagScanner 5.0 build 512 beta --> "C:\Program Files\TagScanner\unins000.exe"
Timershot Powertoy for Windows XP --> MsiExec.exe /I{A743BBCC-3438-4BB3-8397-6C9D9AC125A6}
TreeSize Free V1.78 --> "C:\Program Files\JAM Software\TreeSize\unins000.exe"
Tweak UI --> "C:\WINDOWS\system32\mshta.exe" "res://C:\WINDOWS\system32\TweakUI.exe/uninstall.hta"
URUSoft ViPlay3 --> "C:\Program Files\URUSoft\ViPlay3\uninstall.exe"
User Profile Hive Cleanup Service --> MsiExec.exe /I{BF755CD9-E185-498A-AAFB-E9F8470AB1CC}
VideoLAN VLC media player 0.8.6b-test1 --> C:\Program Files\VideoLAN\VLC\uninstall.exe
Winamp (remove only) --> "C:\Program Files\Winamp\UninstWA.exe"
Windows Live Messenger --> MsiExec.exe /I{7A837109-E671-470D-B489-F1EBE471D220}
Windows Live Sign-in Assistant --> MsiExec.exe /I{F652D238-5F29-42D5-BAF3-0115EF977EC2}
Windows Media Connect --> "C:\WINDOWS\$NtUninstallWMCSetup$\spuninst\spuninst.exe"
Windows Media Hotfix - KB895181 --> "C:\WINDOWS\$NtUninstallKB895181$\spuninst\spuninst.exe"
Windows Messenger 5.1 --> MsiExec.exe /I{9D1C26BD-E792-4159-9D16-07EA222D8EF0}
WinPcap 4.0 --> C:\Program Files\WinPcap\uninstall.exe
WinRAR archiver --> C:\Program Files\WinRAR\uninstall.exe
Wireshark 0.99.5 --> "C:\Program Files\Wireshark\uninstall.exe"
Virtual Desktop Manager Powertoy for Windows XP --> MsiExec.exe /I{F251B999-08A9-4704-999C-9962F0DFD88E}
Vista Start Menu --> C:\Program Files\Vista Start Menu\uninstall.exe
XML Notepad 2007 --> MsiExec.exe /I{259B9457-855A-4FA1-8AFE-3613ADF11973}
-- Application Event Log -------------------------------------------------------
No Errors/Warnings found.
-- Security Event Log ----------------------------------------------------------
No Errors/Warnings found.
-- System Event Log ------------------------------------------------------------
No Errors/Warnings found.
-- End of Deckard's System Scanner: finished at 2007-09-11 20:41:16 ------------