OTScanIt logfile created on: 3/30/2008 3:28:12 PM
OTScanIt by OldTimer - Version 1.0.8.0 Folder = C:\Documents and Settings\Owner\Desktop\OTScanIt
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.11)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
510.00 Mb Total Physical Memory | 318.11 Mb Available Physical Memory | 62.37% Memory free
1.22 Gb Paging File | 1.07 Gb Available in Paging File | 87.82% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536;
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 70.97 Gb Total Space | 41.87 Gb Free Space | 58.99% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: DG72F061
Current User Name: Owner
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
[Processes - Non-Microsoft Only]
ccsetmgr.exe -> %CommonProgramFiles%\Symantec Shared\ccSetMgr.exe -> Symantec Corporation [Ver = 2.0.3.512 | Size = 234656 bytes | Modified Date = 11/21/2003 5:04:56 PM | Attr = ]
ccevtmgr.exe -> %CommonProgramFiles%\Symantec Shared\ccEvtMgr.exe -> Symantec Corporation [Ver = 2.0.3.512 | Size = 255136 bytes | Modified Date = 11/21/2003 5:04:56 PM | Attr = ]
mm_tray.exe -> %ProgramFiles%\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe -> Musicmatch, Inc. [Ver = 10.00.4033 | Size = 110592 bytes | Modified Date = 1/19/2006 11:06:18 AM | Attr = ]
acsd.exe -> %CommonProgramFiles%\AOL\ACS\acsd.exe -> America Online, Inc. [Ver = 1,0,25,3 | Size = 1434848 bytes | Modified Date = 4/21/2004 12:16:02 PM | Attr = ]
ccproxy.exe -> %CommonProgramFiles%\Symantec Shared\ccProxy.exe -> Symantec Corporation [Ver = 2.0.3.512 | Size = 218272 bytes | Modified Date = 11/21/2003 5:05:02 PM | Attr = ]
sndsrvc.exe -> %CommonProgramFiles%\Symantec Shared\SNDSrvc.exe -> Symantec Corporation [Ver = 5.2.0.108 | Size = 197896 bytes | Modified Date = 11/21/2003 5:05:04 PM | Attr = ]
wanmpsvc.exe -> %SystemRoot%\wanmpsvc.exe -> America Online, Inc. [Ver = 7, 0, 0, 2 | Size = 65536 bytes | Modified Date = 1/10/2003 6:13:04 PM | Attr = ]
symwsc.exe -> %CommonProgramFiles%\Symantec Shared\Security Center\SymWSC.exe -> Symantec Corporation [Ver = 2005.1.00.111 | Size = 308352 bytes | Modified Date = 8/5/2004 6:23:10 PM | Attr = ]
otscanit.exe -> %UserProfile%\Desktop\OTScanIt\OTScanIt.exe -> OldTimer Tools [Ver = 1.0.8.0 | Size = 370176 bytes | Modified Date = 3/29/2008 5:10:10 PM | Attr = ]
[Win32 Services - Non-Microsoft Only]
(AOL ACS) AOL Connectivity Service [Win32_Own | Auto | Running] -> %CommonProgramFiles%\AOL\ACS\acsd.exe -> America Online, Inc. [Ver = 1,0,25,3 | Size = 1434848 bytes | Modified Date = 4/21/2004 12:16:02 PM | Attr = ]
(ccEvtMgr) Symantec Event Manager [Win32_Own | Auto | Running] -> %CommonProgramFiles%\Symantec Shared\ccEvtMgr.exe -> Symantec Corporation [Ver = 2.0.3.512 | Size = 255136 bytes | Modified Date = 11/21/2003 5:04:56 PM | Attr = ]
(ccProxy) Symantec Network Proxy [Win32_Own | Auto | Running] -> %CommonProgramFiles%\Symantec Shared\ccProxy.exe -> Symantec Corporation [Ver = 2.0.3.512 | Size = 218272 bytes | Modified Date = 11/21/2003 5:05:02 PM | Attr = ]
(ccPwdSvc) Symantec Password Validation [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Symantec Shared\ccPwdSvc.exe -> Symantec Corporation [Ver = 2.0.3.512 | Size = 87200 bytes | Modified Date = 11/21/2003 5:04:56 PM | Attr = ]
(ccSetMgr) Symantec Settings Manager [Win32_Own | Auto | Running] -> %CommonProgramFiles%\Symantec Shared\ccSetMgr.exe -> Symantec Corporation [Ver = 2.0.3.512 | Size = 234656 bytes | Modified Date = 11/21/2003 5:04:56 PM | Attr = ]
(dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> %SystemRoot%\SYSTEM32\DMADMIN.EXE -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 8/4/2004 6:00:00 AM | Attr = ]
(navapsvc) Norton AntiVirus Auto Protect Service [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Norton Internet Security\Norton AntiVirus\navapsvc.exe -> Symantec Corporation [Ver = 10.00.109 | Size = 158376 bytes | Modified Date = 11/21/2003 5:04:42 PM | Attr = ]
(SAVScan) SAVScan [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Norton Internet Security\Norton AntiVirus\SAVScan.exe -> Symantec Corporation [Ver = 9.2.0.79 | Size = 193816 bytes | Modified Date = 11/21/2003 5:04:44 PM | Attr = ]
(SBService) ScriptBlocking Service [Win32_Own | Auto | Stopped] -> %CommonProgramFiles%\Symantec Shared\Script Blocking\SBServ.exe -> Symantec Corporation [Ver = 1, 1, 1, 131 | Size = 66784 bytes | Modified Date = 6/24/2003 7:23:10 PM | Attr = ]
(SNDSrvc) Symantec Network Drivers Service [Win32_Own | Auto | Running] -> %CommonProgramFiles%\Symantec Shared\SNDSrvc.exe -> Symantec Corporation [Ver = 5.2.0.108 | Size = 197896 bytes | Modified Date = 11/21/2003 5:05:04 PM | Attr = ]
(SymWSC) SymWMI Service [Win32_Own | Auto | Running] -> %CommonProgramFiles%\Symantec Shared\Security Center\SymWSC.exe -> Symantec Corporation [Ver = 2005.1.00.111 | Size = 308352 bytes | Modified Date = 8/5/2004 6:23:10 PM | Attr = ]
(WANMiniportService) WAN Miniport (ATW) Service [Win32_Own | Auto | Running] -> %SystemRoot%\wanmpsvc.exe -> America Online, Inc. [Ver = 7, 0, 0, 2 | Size = 65536 bytes | Modified Date = 1/10/2003 6:13:04 PM | Attr = ]
[Registry - Non-Microsoft Only]
< Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
MMTray -> %ProgramFiles%\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe -> Musicmatch, Inc. [Ver = 10.00.4033 | Size = 110592 bytes | Modified Date = 1/19/2006 11:06:18 AM | Attr = ]
< Run [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
ALUAlert -> %ProgramFiles%\Symantec\LiveUpdate\ALUNOTIFY.EXE -> Symantec Corporation [Ver = 1.90.15.0 | Size = 54472 bytes | Modified Date = 8/13/2003 7:38:48 PM | Attr = ]
MySpaceIM -> %ProgramFiles%\MySpace\IM\MySpaceIM.exe -> [Ver = 1.0.716.0 | Size = 5562368 bytes | Modified Date = 8/13/2007 7:04:18 PM | Attr = ]
Symantec NetDriver Warning -> %ProgramFiles%\SymNetDrv\SNDWarn.exe -> Symantec Corporation [Ver = 5, 4, 3, 11 | Size = 218232 bytes | Modified Date = 10/29/2004 9:52:14 AM | Attr = ]
< Run [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
ALUAlert -> %ProgramFiles%\Symantec\LiveUpdate\ALUNOTIFY.EXE -> Symantec Corporation [Ver = 1.90.15.0 | Size = 54472 bytes | Modified Date = 8/13/2003 7:38:48 PM | Attr = ]
MySpaceIM -> %ProgramFiles%\MySpace\IM\MySpaceIM.exe -> [Ver = 1.0.716.0 | Size = 5562368 bytes | Modified Date = 8/13/2007 7:04:18 PM | Attr = ]
Symantec NetDriver Warning -> %ProgramFiles%\SymNetDrv\SNDWarn.exe -> Symantec Corporation [Ver = 5, 4, 3, 11 | Size = 218232 bytes | Modified Date = 10/29/2004 9:52:14 AM | Attr = ]
< Administrator.DG72F061 Startup Folder > -> C:\Documents and Settings\Administrator.DG72F061\Start Menu\Programs\Startup ->
< Administrator.DG72F061.000 Startup Folder > -> C:\Documents and Settings\Administrator.DG72F061.000\Start Menu\Programs\Startup ->
< Administrator.DG72F061.001 Startup Folder > -> C:\Documents and Settings\Administrator.DG72F061.001\Start Menu\Programs\Startup ->
< All Users Startup Folder > -> C:\Documents and Settings\All Users\Start Menu\Programs\Startup ->
< Chris Startup Folder > -> C:\Documents and Settings\Chris\Start Menu\Programs\Startup ->
< Crystal Startup Folder > -> C:\Documents and Settings\Crystal\Start Menu\Programs\Startup ->
< Default User Startup Folder > -> C:\Documents and Settings\Default User\Start Menu\Programs\Startup ->
< Owner Startup Folder > -> C:\Documents and Settings\Owner\Start Menu\Programs\Startup ->
< SecurityProviders [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders ->
< Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon settings [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon settings [HKEY_USERS\.DEFAULT] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon settings [HKEY_USERS\S-1-5-18] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon settings [HKEY_USERS\S-1-5-19] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon settings [HKEY_USERS\S-1-5-20] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon settings [HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003] > -> HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon\Notify settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ ->
igfxcui -> %SystemRoot%\SYSTEM32\igfxsrvc.dll -> Intel Corporation [Ver = 3.0.0.2285 | Size = 319488 bytes | Modified Date = 10/2/2003 2:18:52 PM | Attr = ]
< CurrentVersion Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{BDEADF00-C265-11D0-BCED-00A0C90AB50F} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} -> 1073741857 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{0DF44EAA-FF21-4412-828E-260A8728E7F1} -> 32 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\dontdisplaylastusername -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticecaption -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticetext -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\shutdownwithoutlogon -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\undockwithoutlogon -> 1 ->
< CurrentVersion Policy Settings [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 145 ->
< CurrentVersion Policy Settings [HKEY_USERS\.DEFAULT] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 145 ->
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-18] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 145 ->
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-19] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 145 ->
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-20] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 145 ->
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003] > -> HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 145 ->
< HOSTS File > (734 bytes) -> C:\WINDOWS\System32\drivers\etc\Hosts ->
< Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
HKEY_LOCAL_MACHINE\: Main\\Default_Page_URL ->
http://go.microsoft.com/fwlink/?LinkId=69157 ->
HKEY_LOCAL_MACHINE\: Main\\Default_Search_URL ->
http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\Search Page ->
http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\Start Page ->
http://go.microsoft.com/fwlink/?LinkId=69157 ->
HKEY_LOCAL_MACHINE\: Search\\CustomizeSearch ->
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm ->
HKEY_LOCAL_MACHINE\: Search\\SearchAssistant ->
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm ->
< Internet Explorer Settings [HKEY_CURRENT_USER\] > -> ->
HKEY_CURRENT_USER\: Main\\Search Bar ->
http://home.microsoft.com/search/lobby/search.asp ->
HKEY_CURRENT_USER\: Main\\Search Page ->
http://home.microsoft.com/access/allinone.asp ->
HKEY_CURRENT_USER\: Main\\Start Page ->
http://home.peoplepc.com/websearch ->
HKEY_CURRENT_USER\: SearchURL\\ ->
http://home.microsoft.com/access/autosearch.asp?p=%s[Reg Error: Value provider does not exist or could not be read.] ->
HKEY_CURRENT_USER\: ProxyEnable -> 0 ->
< Internet Explorer Settings [HKEY_USERS\.DEFAULT\] > -> ->
HKEY_USERS\.DEFAULT\: Main\\Default_Page_URL ->
http://www.dell4me.com/mywaybiz ->
HKEY_USERS\.DEFAULT\: Main\\Start Page ->
http://www.dell4me.com/mywaybiz ->
HKEY_USERS\.DEFAULT\: ProxyEnable -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-18\] > -> ->
HKEY_USERS\S-1-5-18\: Main\\Default_Page_URL ->
http://www.dell4me.com/mywaybiz ->
HKEY_USERS\S-1-5-18\: Main\\Start Page ->
http://www.dell4me.com/mywaybiz ->
HKEY_USERS\S-1-5-18\: ProxyEnable -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-19\] > -> ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-20\] > -> ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\] > -> ->
HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\: Main\\Search Bar ->
http://home.microsoft.com/search/lobby/search.asp ->
HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\: Main\\Search Page ->
http://home.microsoft.com/access/allinone.asp ->
HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\: Main\\Start Page ->
http://home.peoplepc.com/websearch ->
HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\: SearchURL\\ ->
http://home.microsoft.com/access/autosearch.asp?p=%s[Reg Error: Value provider does not exist or could not be read.] ->
HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\: ProxyEnable -> 0 ->
< Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 2 domain(s) found. ->
online_musicmatch.com [https] -> Trusted sites ->
2 domain(s) and sub-domain(s) not assigned to a zone.
< Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. ->
objects_Email Removed
- -> Out of zone range - ( 5 ) ->
1 domain(s) and sub-domain(s) not assigned to a zone.
< Trusted Sites Ranges [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\] > -> HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. ->
objects_Email Removed
- -> Out of zone range - ( 5 ) ->
1 domain(s) and sub-domain(s) not assigned to a zone.
< Trusted Sites Ranges [HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\] > -> HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKEY_LOCAL_MACHINE] -> %CommonProgramFiles%\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [Adobe PDF Reader Link Helper] -> Adobe Systems Incorporated [Ver = 8.0.0.2006102200 | Size = 62080 bytes | Modified Date = 10/22/2006 11:08:42 PM | Attr = ]
{4B5F2E08-6F39-479a-B547-B2026E4C7EDF} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\EarthLink TotalAccess\PnEL.dll [PnIEBrowserHelperObj Class] -> EarthLink, Inc. [Ver = 2003.3.4.0 | Size = 372736 bytes | Modified Date = 6/4/2003 1:52:06 PM | Attr = ]
{5CA3D70E-1895-11CF-8E15-001234567890} [HKEY_LOCAL_MACHINE] -> %SystemRoot%\SYSTEM32\dla\tfswshx.dll [DriveLetterAccess] -> Sonic Solutions [Ver = 1.04.08a | Size = 118842 bytes | Modified Date = 8/13/2004 2:05:00 AM | Attr = ]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Java\jre1.6.0_02\bin\ssv.dll [SSVHelper Class] -> Sun Microsystems, Inc. [Ver = 6.0.20.6 | Size = 501136 bytes | Modified Date = 7/12/2007 4:00:35 AM | Attr = ]
{7E3659A6-4BC5-4d93-B3FD-8B5ACC2FEDED} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\PeoplePC\Toolbar\ScamGrd.dll [PPCScamBHO Class] -> EarthLink, Inc. [Ver = 3.0.3.0 | Size = 176128 bytes | Modified Date = 1/19/2006 6:43:11 PM | Attr = ]
{9ECB9560-04F9-4bbc-943D-298DDF1699E1} [HKEY_LOCAL_MACHINE] -> %CommonProgramFiles%\Symantec Shared\AdBlocking\NISShExt.dll [CNisExtBho Class] -> Symantec Corporation [Ver = 7.0.1.11 | Size = 126976 bytes | Modified Date = 11/21/2003 5:04:52 PM | Attr = ]
{A8FB8EB3-183B-4598-924D-86F0E5E37085} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\PeoplePC\Toolbar\PPCToolbar.dll [PeoplePal Toolbar] -> PeoplePC [Ver = 6, 3, 0, 15 | Size = 220672 bytes | Modified Date = 1/24/2006 6:07:41 PM | Attr = ]
{BDF3E430-B101-42AD-A544-FADC6B084872} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Norton Internet Security\Norton AntiVirus\NAVShExt.dll [CNavExtBho Class] -> Symantec Corporation [Ver = 10.00.109 | Size = 103592 bytes | Modified Date = 11/21/2003 5:04:42 PM | Attr = ]
< Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
{0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} [HKEY_LOCAL_MACHINE] -> %CommonProgramFiles%\Symantec Shared\AdBlocking\NISShExt.dll [Web assistant] -> Symantec Corporation [Ver = 7.0.1.11 | Size = 126976 bytes | Modified Date = 11/21/2003 5:04:52 PM | Attr = ]
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Norton Internet Security\Norton AntiVirus\NAVShExt.dll [Norton AntiVirus] -> Symantec Corporation [Ver = 10.00.109 | Size = 103592 bytes | Modified Date = 11/21/2003 5:04:42 PM | Attr = ]
{A8FB8EB3-183B-4598-924D-86F0E5E37085} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\PeoplePC\Toolbar\PPCToolbar.dll [PeoplePal Toolbar] -> PeoplePC [Ver = 6, 3, 0, 15 | Size = 220672 bytes | Modified Date = 1/24/2006 6:07:41 PM | Attr = ]
{D7F30B62-8269-41AF-9539-B2697FA7D77E} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\EarthLink TotalAccess\PnEL.dll [Pop-Up Blocker] -> EarthLink, Inc. [Ver = 2003.3.4.0 | Size = 372736 bytes | Modified Date = 6/4/2003 1:52:06 PM | Attr = ]
< Internet Explorer ToolBars [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ ->
WebBrowser\\{0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} [HKEY_LOCAL_MACHINE] -> %CommonProgramFiles%\Symantec Shared\AdBlocking\NISShExt.dll [Web assistant] -> Symantec Corporation [Ver = 7.0.1.11 | Size = 126976 bytes | Modified Date = 11/21/2003 5:04:52 PM | Attr = ]
WebBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Norton Internet Security\Norton AntiVirus\NAVShExt.dll [Norton AntiVirus] -> Symantec Corporation [Ver = 10.00.109 | Size = 103592 bytes | Modified Date = 11/21/2003 5:04:42 PM | Attr = ]
WebBrowser\\{A8FB8EB3-183B-4598-924D-86F0E5E37085} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\PeoplePC\Toolbar\PPCToolbar.dll [PeoplePal Toolbar] -> PeoplePC [Ver = 6, 3, 0, 15 | Size = 220672 bytes | Modified Date = 1/24/2006 6:07:41 PM | Attr = ]
WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKEY_LOCAL_MACHINE] -> Reg Error: Key does not exist or could not be opened. [Yahoo! Toolbar] -> File not found
< Internet Explorer ToolBars [HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\] > -> HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\Software\Microsoft\Internet Explorer\Toolbar\ ->
WebBrowser\\{0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} [HKEY_LOCAL_MACHINE] -> %CommonProgramFiles%\Symantec Shared\AdBlocking\NISShExt.dll [Web assistant] -> Symantec Corporation [Ver = 7.0.1.11 | Size = 126976 bytes | Modified Date = 11/21/2003 5:04:52 PM | Attr = ]
WebBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Norton Internet Security\Norton AntiVirus\NAVShExt.dll [Norton AntiVirus] -> Symantec Corporation [Ver = 10.00.109 | Size = 103592 bytes | Modified Date = 11/21/2003 5:04:42 PM | Attr = ]
WebBrowser\\{A8FB8EB3-183B-4598-924D-86F0E5E37085} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\PeoplePC\Toolbar\PPCToolbar.dll [PeoplePal Toolbar] -> PeoplePC [Ver = 6, 3, 0, 15 | Size = 220672 bytes | Modified Date = 1/24/2006 6:07:41 PM | Attr = ]
WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKEY_LOCAL_MACHINE] -> Reg Error: Key does not exist or could not be opened. [Yahoo! Toolbar] -> File not found
< Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{08B0E5C0-4FCB-11CF-AAA5-00401C608501}:{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBC} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Java\jre1.6.0_02\bin\npjpi160_02.dll [Sun Java Console] -> Sun Microsystems, Inc. [Ver = 6.0.20.6 | Size = 132496 bytes | Modified Date = 7/12/2007 4:00:35 AM | Attr = ]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501}:{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBC} [HKEY_CURRENT_USER] -> %ProgramFiles%\Java\jre1.6.0_02\bin\ssv.dll [Sun Java Console] -> Sun Microsystems, Inc. [Ver = 6.0.20.6 | Size = 501136 bytes | Modified Date = 7/12/2007 4:00:35 AM | Attr = ]
< Internet Explorer Extensions [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\ ->
CmdMapping\\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Java\jre1.6.0_02\bin\npjpi160_02.dll [Sun Java Console] -> Sun Microsystems, Inc. [Ver = 6.0.20.6 | Size = 132496 bytes | Modified Date = 7/12/2007 4:00:35 AM | Attr = ]
< Internet Explorer Menu Extensions [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ ->
&Search -> -> File not found
Add to AMV Converter... -> %ProgramFiles%\MP3 Player Utilities 4.10\AMVConverter\grab.htm -> File not found
Add to Media Manager... -> %ProgramFiles%\MP3 Player Utilities 4.10\MediaManager\grab.htm -> File not found
< Internet Explorer Extensions [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Extensions\ ->
CmdMapping\\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Java\jre1.6.0_02\bin\npjpi160_02.dll [Sun Java Console] -> Sun Microsystems, Inc. [Ver = 6.0.20.6 | Size = 132496 bytes | Modified Date = 7/12/2007 4:00:35 AM | Attr = ]
< Internet Explorer Extensions [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Extensions\ ->
CmdMapping\\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Java\jre1.6.0_02\bin\npjpi160_02.dll [Sun Java Console] -> Sun Microsystems, Inc. [Ver = 6.0.20.6 | Size = 132496 bytes | Modified Date = 7/12/2007 4:00:35 AM | Attr = ]
< Internet Explorer Extensions [HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\] > -> HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\Software\Microsoft\Internet Explorer\Extensions\ ->
CmdMapping\\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Java\jre1.6.0_02\bin\npjpi160_02.dll [Sun Java Console] -> Sun Microsystems, Inc. [Ver = 6.0.20.6 | Size = 132496 bytes | Modified Date = 7/12/2007 4:00:35 AM | Attr = ]
< Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\] > -> HKEY_USERS\S-1-5-21-581438453-3531947903-4118515476-1003\Software\Microsoft\Internet Explorer\MenuExt\ ->
&Search -> -> File not found
Add to AMV Converter... -> %ProgramFiles%\MP3 Player Utilities 4.10\AMVConverter\grab.htm -> File not found
Add to Media Manager... -> %ProgramFiles%\MP3 Player Utilities 4.10\MediaManager\grab.htm -> File not found
< Internet Explorer Plugins [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\ ->
PluginsPageFriendlyName -> Microsoft ActiveX Gallery ->
PluginsPage ->
http://activex.microsoft.com/controls/find...=%s&mime=%s ->
< User Agent Post Platform [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform ->
FunWebProducts -> ->
< DNS Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{34092526-07CE-4E19-9BCE-7192C475E392} -> (Realtek RTL8139 Family PCI Fast Ethernet NIC) ->
{43C944B7-CB8F-4FF8-A1C7-6621E93CECAB} -> (Broadcom 440x 10/100 Integrated Controller) ->
< Protocol Handlers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
ipp: [HKEY_LOCAL_MACHINE] -> No CLSID value
msdaipp: [HKEY_LOCAL_MACHINE] -> No CLSID value
< Protocol Filters [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\ ->
text/html:{2AB289AE-4B90-4281-B2AE-1F4BB034B647}[HKEY_LOCAL_MACHINE] -> Reg Error: Value does not exist or could not be read.[RXResultFilter Class] -> File not found
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{5F8469B4-B055-49DD-83F7-62B522420ECC}[HKEY_LOCAL_MACHINE] ->
http://upload.facebook.com/controls/Facebo...otoUploader.cab[Facebook Photo Uploader Control] ->
{8AD9C840-044E-11D1-B3E9-00805F499D93}[HKEY_LOCAL_MACHINE] ->
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab[Java Plug-in 1.6.0_02] ->
{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}[HKEY_LOCAL_MACHINE] ->
http://java.sun.com/products/plugin/autodl...indows-i586.cab[Java Plug-in 1.4.2_03] ->
{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}[HKEY_LOCAL_MACHINE] ->
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab[Java Plug-in 1.6.0_01] ->
{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}[HKEY_LOCAL_MACHINE] ->
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab[Java Plug-in 1.6.0_02] ->
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}[HKEY_LOCAL_MACHINE] ->
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab[Java Plug-in 1.6.0_02] ->
{D27CDB6E-AE6D-11CF-96B8-444553540000}[HKEY_LOCAL_MACHINE] ->
http://fpdownload.macromedia.com/get/flash...ent/swflash.cab[Shockwave Flash Object] ->
< Module Usage Keys [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/FacebookPhotoUploader.ocx\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/FacebookPhotoUploader.ocx\\.Owner -> {5F8469B4-B055-49DD-83F7-62B522420ECC} ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/FacebookPhotoUploader.ocx\\{5F8469B4-B055-49DD-83F7-62B522420ECC} -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/system32/unicows.dll\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/system32/unicows.dll\\.Owner -> {5F8469B4-B055-49DD-83F7-62B522420ECC} ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/system32/unicows.dll\\{5F8469B4-B055-49DD-83F7-62B522420ECC} -> ->
[Files/Folders - Created Within 30 days]
Deckard -> %SystemDrive%\Deckard -> [Folder | Created Date = 3/30/2008 1:08:00 PM | Attr = ]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 534843392 bytes | Created Date = 3/30/2008 3:24:33 PM | Attr = HS]
Hijack This -> %SystemDrive%\Hijack This -> [Folder | Created Date = 3/28/2008 7:15:16 PM | Attr = ]
ERDNT -> %SystemRoot%\ERDNT -> [Folder | Created Date = 3/30/2008 1:10:38 PM | Attr = ]
pss -> %SystemRoot%\pss -> [Folder | Created Date = 3/21/2008 8:17:42 PM | Attr = ]
QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Created Date = 3/20/2008 7:05:18 PM | Attr = ]
QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Created Date = 3/20/2008 7:05:18 PM | Attr = H ]
[Files/Folders - Modified Within 30 days]
Deckard -> %SystemDrive%\Deckard -> [Folder | Modified Date = 3/30/2008 1:08:00 PM | Attr = ]
Documents and Settings -> %SystemDrive%\Documents and Settings -> [Folder | Modified Date = 3/28/2008 7:18:19 PM | Attr = ]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 534843392 bytes | Modified Date = 3/30/2008 3:24:33 PM | Attr = HS]
Hijack This -> %SystemDrive%\Hijack This -> [Folder | Modified Date = 3/30/2008 3:23:15 PM | Attr = ]
Program Files -> %ProgramFiles% -> [Folder | Modified Date = 3/28/2008 7:52:27 PM | Attr = R ]
RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Modified Date = 3/24/2008 8:52:11 PM | Attr = HS]
WINDOWS -> %SystemRoot% -> [Folder | Modified Date = 3/30/2008 1:10:38 PM | Attr = ]
fidbox.dat -> %SystemRoot%\System32\drivers\fidbox.dat -> [Ver = | Size = 1082400 bytes | Modified Date = 3/30/2008 3:25:55 PM | Attr = HS]
fidbox.idx -> %SystemRoot%\System32\drivers\fidbox.idx -> [Ver = | Size = 15524 bytes | Modified Date = 3/30/2008 2:00:18 PM | Attr = HS]
CatRoot2 -> %SystemRoot%\System32\CatRoot2 -> [Folder | Modified Date = 3/30/2008 1:20:41 PM | Attr = ]
3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp ->
CONFIG -> %SystemRoot%\System32\CONFIG -> [Folder | Modified Date = 3/28/2008 7:13:12 PM | Attr = ]
CONFIG.NT -> %SystemRoot%\System32\CONFIG.NT -> [Ver = | Size = 2626 bytes | Modified Date = 3/20/2008 2:17:16 AM | Attr = ]
DLLCACHE -> %SystemRoot%\System32\DLLCACHE -> [Folder | Modified Date = 3/28/2008 7:12:11 PM | Attr = RHS]
DRIVERS -> %SystemRoot%\System32\DRIVERS -> [Folder | Modified Date = 3/28/2008 7:12:31 PM | Attr = ]
PERFC009.DAT -> %SystemRoot%\System32\PERFC009.DAT -> [Ver = | Size = 53668 bytes | Modified Date = 3/28/2008 7:24:47 PM | Attr = ]
PERFH009.DAT -> %SystemRoot%\System32\PERFH009.DAT -> [Ver = | Size = 382308 bytes | Modified Date = 3/28/2008 7:24:47 PM | Attr = ]
WBEM -> %SystemRoot%\System32\WBEM -> [Folder | Modified Date = 3/28/2008 7:12:54 PM | Attr = ]
WPA.DBL -> %SystemRoot%\System32\WPA.DBL -> [Ver = | Size = 2206 bytes | Modified Date = 3/30/2008 3:25:15 PM | Attr = ]
BOOTSTAT.DAT -> %SystemRoot%\BOOTSTAT.DAT -> [Ver = | Size = 2048 bytes | Modified Date = 3/30/2008 3:24:35 PM | Attr = S]
ERDNT -> %SystemRoot%\ERDNT -> [Folder | Modified Date = 3/30/2008 1:10:38 PM | Attr = ]
imsins.BAK -> %SystemRoot%\imsins.BAK -> [Ver = | Size = 1917 bytes | Modified Date = 3/22/2008 10:44:38 PM | Attr = ]
INF -> %SystemRoot%\INF -> [Folder | Modified Date = 3/28/2008 7:11:44 PM | Attr = H ]
Installer -> %SystemRoot%\Installer -> [Folder | Modified Date = 3/21/2008 8:40:51 PM | Attr = HS]
Prefetch -> %SystemRoot%\Prefetch -> [Folder | Modified Date = 3/30/2008 3:26:45 PM | Attr = ]
pss -> %SystemRoot%\pss -> [Folder | Modified Date = 3/21/2008 8:17:42 PM | Attr = ]
QTFont.for -> %SystemRoot%\QTFont.for -> [Ver = | Size = 1409 bytes | Modified Date = 3/20/2008 7:05:18 PM | Attr = ]
QTFont.qfn -> %SystemRoot%\QTFont.qfn -> [Ver = | Size = 54156 bytes | Modified Date = 3/25/2008 10:50:06 PM | Attr = H ]
Registration -> %SystemRoot%\Registration -> [Folder | Modified Date = 3/28/2008 7:12:53 PM | Attr = ]
SYSTEM32 -> %SystemRoot%\SYSTEM32 -> [Folder | Modified Date = 3/30/2008 12:58:58 PM | Attr = ]
Temp -> %SystemRoot%\Temp -> [Folder | Modified Date = 3/30/2008 3:25:17 PM | Attr = ]
WIN.INI -> %SystemRoot%\WIN.INI -> [Ver = | Size = 598 bytes | Modified Date = 3/25/2008 10:51:02 PM | Attr = ]
RegSweep Scheduled Scan.job -> %SystemRoot%\tasks\RegSweep Scheduled Scan.job -> [Ver = | Size = 386 bytes | Modified Date = 3/28/2008 3:30:00 AM | Attr = ]
SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Modified Date = 3/30/2008 3:24:46 PM | Attr = H ]
Symantec NetDetect.job -> %SystemRoot%\tasks\Symantec NetDetect.job -> [Ver = | Size = 412 bytes | Modified Date = 3/30/2008 3:25:37 PM | Attr = ]
qmgr0.dat -> C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat -> [Ver = | Size = 4617 bytes | Modified Date = 11/16/2007 7:35:33 PM | Attr = ]
qmgr1.dat -> C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat -> [Ver = | Size = 4232 bytes | Modified Date = 11/16/2007 7:35:33 PM | Attr = ]
getseal[1].com&size=S&use_flash=YES&use_transparent=YES&lang=en -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Internet Files\Content.IE5\LKC21VXM\getseal[1].com -> [Ver = | Size = 3573 bytes | Modified Date = 9/26/2006 3:43:41 PM | Attr = ]
DELL_Drv.EXE -> C:\Documents and Settings\Owner\Local Settings\Temp\DELL_Drv.EXE -> [Ver = | Size = 930277 bytes | Modified Date = 10/14/2004 11:16:26 PM | Attr = ]
extracted_s_fileB1.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\extracted_s_fileB1.exe -> [Ver = | Size = 6274214 bytes | Modified Date = 8/4/2007 5:52:08 PM | Attr = ]
extracted_s_fileB2.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\extracted_s_fileB2.exe -> [Ver = | Size = 6274214 bytes | Modified Date = 8/4/2007 6:53:17 PM | Attr = ]
extracted_s_fileB3.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\extracted_s_fileB3.exe -> [Ver = | Size = 6274214 bytes | Modified Date = 8/4/2007 10:28:24 PM | Attr = ]
extracted_s_fileB4.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\extracted_s_fileB4.exe -> [Ver = | Size = 6274214 bytes | Modified Date = 8/4/2007 10:28:47 PM | Attr = ]
extracted_s_fileB5.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\extracted_s_fileB5.exe -> [Ver = | Size = 6274214 bytes | Modified Date = 8/4/2007 10:33:28 PM | Attr = ]
extracted_s_fileB6.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\extracted_s_fileB6.exe -> [Ver = | Size = 6274214 bytes | Modified Date = 12/22/2007 7:26:55 PM | Attr = ]
FFPage.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\FFPage.exe -> [Ver = | Size = 24576 bytes | Modified Date = 11/12/2006 11:39:14 AM | Attr = ]
pacman.EXE -> C:\Documents and Settings\Owner\Local Settings\Temp\pacman.EXE -> Microsoft Corporation [Ver = 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) | Size = 3158016 bytes | Modified Date = 8/5/2007 10:47:50 PM | Attr = ]
ppaluninst.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\ppaluninst.exe -> PeoplePC, Inc. [Ver = 6.3.0.17 | Size = 36583 bytes | Modified Date = 1/16/2007 7:11:29 PM | Attr = ]
setup.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\setup.exe -> [Ver = | Size = 36864 bytes | Modified Date = 9/25/2003 5:55:46 PM | Attr = ]
stsetup.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\stsetup.exe -> [Ver = | Size = 234920 bytes | Modified Date = 7/22/2007 9:24:24 PM | Attr = ]
switchsetup.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\switchsetup.exe -> [Ver = | Size = 445088 bytes | Modified Date = 7/22/2007 9:24:20 PM | Attr = ]
tpw5k009.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\tpw5k009.exe -> [Ver = | Size = 591398 bytes | Modified Date = 8/6/2007 12:43:00 AM | Attr = ]
uninst.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\uninst.exe -> [Ver = | Size = 335876 bytes | Modified Date = 7/22/2007 9:24:29 PM | Attr = ]
vmpremov.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\vmpremov.exe -> Viewpoint Corporation [Ver = 3, 0, 14, 160 | Size = 61440 bytes | Modified Date = 8/6/2003 4:16:10 PM | Attr = ]
WebLaunchInstaller.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\WebLaunchInstaller.exe -> thriXXX [Ver = 1.0 | Size = 627119 bytes | Modified Date = 9/23/2007 9:26:52 PM | Attr = ]
559 C:\Documents and Settings\Owner\Local Settings\Temp\*.tmp files -> C:\Documents and Settings\Owner\Local Settings\Temp\*.tmp ->
md5deep.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~eozxxul.tmp\md5deep.exe -> [Ver = | Size = 21504 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
sed.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~eozxxul.tmp\sed.exe -> [Ver = | Size = 37376 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
swreg.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~eozxxul.tmp\swreg.exe -> SteelWerX [Ver = 2.0.2.0 | Size = 119296 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
md5deep.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~gsiqhdo.tmp\md5deep.exe -> [Ver = | Size = 21504 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
sed.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~gsiqhdo.tmp\sed.exe -> [Ver = | Size = 37376 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
swreg.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~gsiqhdo.tmp\swreg.exe -> SteelWerX [Ver = 2.0.2.0 | Size = 119296 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
md5deep.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~niisniz.tmp\md5deep.exe -> [Ver = | Size = 21504 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
sed.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~niisniz.tmp\sed.exe -> [Ver = | Size = 37376 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
swreg.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~niisniz.tmp\swreg.exe -> SteelWerX [Ver = 2.0.2.0 | Size = 119296 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
md5deep.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~okxekcy.tmp\md5deep.exe -> [Ver = | Size = 21504 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
sed.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~okxekcy.tmp\sed.exe -> [Ver = | Size = 37376 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
swreg.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~okxekcy.tmp\swreg.exe -> SteelWerX [Ver = 2.0.2.0 | Size = 119296 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
md5deep.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~qftmqri.tmp\md5deep.exe -> [Ver = | Size = 21504 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
sed.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~qftmqri.tmp\sed.exe -> [Ver = | Size = 37376 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
swreg.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~qftmqri.tmp\swreg.exe -> SteelWerX [Ver = 2.0.2.0 | Size = 119296 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
md5deep.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~slesmha.tmp\md5deep.exe -> [Ver = | Size = 21504 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
sed.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~slesmha.tmp\sed.exe -> [Ver = | Size = 37376 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
swreg.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\~slesmha.tmp\swreg.exe -> SteelWerX [Ver = 2.0.2.0 | Size = 119296 bytes | Modified Date = 7/29/2007 9:23:07 PM | Attr = ]
setup.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\7zS6D.tmp\setup.exe -> Mozilla Corporation [Ver = 2.0.0.8 | Size = 423840 bytes | Modified Date = 10/9/2007 12:33:14 AM | Attr = ]
updater.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\7zS6D.tmp\nonlocalized\updater.exe -> Mozilla Foundation [Ver = 1.8.1.8: 2007100816 | Size = 131968 bytes | Modified Date = 10/9/2007 12:33:23 AM | Attr = ]
xpicleanup.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\7zS6D.tmp\nonlocalized\xpicleanup.exe -> Mozilla Foundation [Ver = 1.8.1.8: 2007100816 | Size = 73072 bytes | Modified Date = 10/9/2007 12:33:27 AM | Attr = ]
talkback.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\7zS6D.tmp\optional\extensions\
[email protected]\components\talkback.exe -> Full Circle Software, Inc. [Ver = 2.2.unofficial | Size = 406776 bytes | Modified Date = 10/9/2007 12:33:35 AM | Attr = ]
setup.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\7zSC7.tmp\setup.exe -> Mozilla Corporation [Ver = 2.0.0.8 | Size = 423840 bytes | Modified Date = 10/9/2007 12:33:14 AM | Attr = ]
helper.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\7zSC7.tmp\localized\uninstall\helper.exe -> Mozilla Corporation [Ver = 2.0.0.8 | Size = 450552 bytes | Modified Date = 10/9/2007 12:33:15 AM | Attr = ]
firefox.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\7zSC7.tmp\nonlocalized\firefox.exe -> Mozilla Corporation [Ver = 1.8.1.8: 2007100816 | Size = 7648616 bytes | Modified Date = 10/9/2007 12:33:17 AM | Attr = ]
updater.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\7zSC7.tmp\nonlocalized\updater.exe -> Mozilla Foundation [Ver = 1.8.1.8: 2007100816 | Size = 131968 bytes | Modified Date = 10/9/2007 12:33:23 AM | Attr = ]
xpicleanup.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\7zSC7.tmp\nonlocalized\xpicleanup.exe -> Mozilla Foundation [Ver = 1.8.1.8: 2007100816 | Size = 73072 bytes | Modified Date = 10/9/2007 12:33:27 AM | Attr = ]
talkback.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\7zSC7.tmp\optional\extensions\
[email protected]\components\talkback.exe -> Full Circle Software, Inc. [Ver = 2.2.unofficial | Size = 406776 bytes | Modified Date = 10/9/2007 12:33:35 AM | Attr = ]
DELL_Drv.Exe -> C:\Documents and Settings\Owner\Local Settings\Temp\DellDJ\DELL_Drv.Exe -> [Ver = | Size = 932460 bytes | Modified Date = 1/30/2005 6:52:00 PM | Attr = ]
setup.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\DellDJ\setup.exe -> [Ver = | Size = 86016 bytes | Modified Date = 6/21/2005 9:50:36 AM | Attr = ]
AVSDVDCopyTrial.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\DRDld\AVSDVDCopyTrial.exe -> Online Media Technologies Ltd. [Ver = 1.4.1.92 | Size = 28826158 bytes | Modified Date = 10/21/2007 8:45:04 PM | Attr = ]
InternetSecuritySetup.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\PeoplePC Online\InternetSecuritySetup.exe -> PeoplePC, Inc. [Ver = 1.5.0.15 | Size = 20816473 bytes | Modified Date = 4/19/2006 3:51:46 PM | Attr = ]
PPCPost6000.EXE -> C:\Documents and Settings\Owner\Local Settings\Temp\PeoplePC Online\PPCPost6000.EXE -> [Ver = | Size = 44483 bytes | Modified Date = 1/16/2007 7:13:37 PM | Attr = ]
Setup.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\PeoplePC Online\Setup.exe -> [Ver = 6, 3, 0, 75 | Size = 81920 bytes | Modified Date = 4/14/2006 3:58:34 PM | Attr = ]
regcure.1.x.x.xx-patch.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Rar$EX01.672\regcure.1.x.x.xx-patch.exe -> [Ver = | Size = 245493 bytes | Modified Date = 4/6/2007 8:09:16 AM | Attr = ]
RegCureSetup_1_5.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Rar$EX01.672\RegCureSetup_1_5.exe -> ParetoLogic Inc. [Ver = 1.5.0.0 | Size = 1075536 bytes | Modified Date = 8/16/2007 2:55:25 PM | Attr = ]
regcure.1.x.x.xx-patch.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Rar$EX12.078\regcure.1.x.x.xx-patch.exe -> [Ver = | Size = 245493 bytes | Modified Date = 4/6/2007 8:09:16 AM | Attr = ]
RegCureSetup_1_5.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Rar$EX12.078\RegCureSetup_1_5.exe -> ParetoLogic Inc. [Ver = 1.5.0.0 | Size = 1075536 bytes | Modified Date = 8/16/2007 2:55:25 PM | Attr = ]
regcure.1.x.x.xx-patch.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Rar$EX14.1578\regcure.1.x.x.xx-patch.exe -> [Ver = | Size = 245493 bytes | Modified Date = 4/6/2007 8:09:16 AM | Attr = ]
RegCureSetup_1_5.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Rar$EX14.1578\RegCureSetup_1_5.exe -> ParetoLogic Inc. [Ver = 1.5.0.0 | Size = 1075536 bytes | Modified Date = 8/16/2007 2:55:25 PM | Attr = ]
BluesPortScan.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 1 for blue.zip\blue\BluesPortScan.exe -> Volker Voss [Ver = 5.0.2.1262 | Size = 254464 bytes | Modified Date = 11/25/2002 9:26:54 AM | Attr = ]
MotoSkin.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 1 for motoskinv0.1.8.zip\MotoSkin.exe -> [Ver = | Size = 52224 bytes | Modified Date = 1/26/2005 4:36:22 PM | Attr = ]
MySpaceMp3Gopher.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 1 for MySpaceMp3Gopher.zip\MySpaceMp3Gopher.exe ->
www.mouseindustries.com [Ver = 2, 0, 9, 11 | Size = 135680 bytes | Modified Date = 5/27/2007 5:11:20 PM | Attr = ]
rapidhacker 1.0.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 1 for RapidHacker_1.0beta.zip\RapidHacker 1.0beta\rapidhacker 1.0.exe -> xyr0x security [Ver = 1.00 | Size = 311296 bytes | Modified Date = 1/24/2007 9:20:48 AM | Attr = ]
MySpaceMp3Gopher.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 2 for MySpaceMp3Gopher.zip\MySpaceMp3Gopher.exe ->
www.mouseindustries.com [Ver = 2, 0, 9, 11 | Size = 135680 bytes | Modified Date = 5/27/2007 5:11:20 PM | Attr = ]
Mot_unlocker.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 2 for unlocker.zip\unlocker\Mot_unlocker.exe -> [Ver = | Size = 717824 bytes | Modified Date = 12/9/2004 1:12:56 PM | Attr = ]
MySpaceMp3Gopher.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 3 for MySpaceMp3Gopher.zip\MySpaceMp3Gopher.exe ->
www.mouseindustries.com [Ver = 2, 0, 9, 11 | Size = 135680 bytes | Modified Date = 5/27/2007 5:11:20 PM | Attr = ]
MySpaceMp3Gopher.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 4 for MySpaceMp3Gopher.zip\MySpaceMp3Gopher.exe ->
www.mouseindustries.com [Ver = 2, 0, 9, 11 | Size = 135680 bytes | Modified Date = 5/27/2007 5:11:20 PM | Attr = ]
MySpaceMp3Gopher.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 6 for MySpaceMp3Gopher.zip\MySpaceMp3Gopher.exe ->
www.mouseindustries.com [Ver = 2, 0, 9, 11 | Size = 135680 bytes | Modified Date = 5/27/2007 5:11:20 PM | Attr = ]
MySpaceMp3Gopher.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 7 for MySpaceMp3Gopher.zip\MySpaceMp3Gopher.exe ->
www.mouseindustries.com [Ver = 2, 0, 9, 11 | Size = 135680 bytes | Modified Date = 5/27/2007 5:11:20 PM | Attr = ]
MySpaceMp3Gopher.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 8 for MySpaceMp3Gopher.zip\MySpaceMp3Gopher.exe ->
www.mouseindustries.com [Ver = 2, 0, 9, 11 | Size = 135680 bytes | Modified Date = 5/27/2007 5:11:20 PM | Attr = ]
MySpaceMp3Gopher.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 9 for MySpaceMp3Gopher.zip\MySpaceMp3Gopher.exe ->
www.mouseindustries.com [Ver = 2, 0, 9, 11 | Size = 135680 bytes | Modified Date = 5/27/2007 5:11:20 PM | Attr = ]
setup.exe -> C:\Documents and Settings\Owner\Local Settings\Temp\WMDM\setup.exe -> [Ver = | Size = 86016 bytes | Modified Date = 11/17/2005 9:54:34 AM | Attr = ]
acsdir.dll -> C:\Documents and Settings\Owner\Local Settings\Temp\acsdir.dll -> [Ver = | Size = 81920 bytes | Modified Date = 8/6/2003 5:02:18 PM | Attr = ]
AOLVPChk.dll -> C:\Documents and Settings\Owner\Local Settings\Temp\AOLVPChk.dll -> Viewpoint Corporation [Ver = 3, 2, 2, 26 | Size = 49152 bytes | Modified Date = 8/20/20