The scan using malware just finished, no infections were found. I have attached the log for this and RSIT below. Regarding net booster, i confirmed now that is a part of the software for the data card for wireless internet, Venturi Wireless is a part of that as well. But right now I am only using the wired connection and not wireless.
Log for mbam:Malwarebytes' Anti-Malware 1.30
Database version: 1348
Windows 6.0.6000
03-11-2008 03:33:45
mbam-log-2008-11-03 (03-33-45).txt
Scan type: Full Scan (C:\|D:\|E:\|F:\|)
Objects scanned: 139794
Time elapsed: 1 hour(s), 43 minute(s), 8 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
Log for RSIT:
Logfile of random's system information tool 1.04 (written by random/random)
Run by sunil at 2008-11-03 03:36:40
Microsoft® Windows Vista™ Home Premium
System drive C: has 103 GB (71%) free of 146 GB
Total RAM: 1013 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 03:37:05, on 03-11-2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16711)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\Netbooster Client\Configurator\ventcfg.exe
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Hp\HP Software Update\hpwuSchd2.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Users\sunil\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\sunil.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.rediff.com/index.htmlR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...O&pf=laptopR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...O&pf=laptopR0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [Venturi Configurator] C:\Program Files\Netbooster Client\Configurator\ventcfg.exe -nomsgbox
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: vwlsp.dll
O10 - Unknown file in Winsock LSP: vwlsp.dll
O10 - Unknown file in Winsock LSP: vwlsp.dll
O10 - Unknown file in Winsock LSP: vwlsp.dll
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{4B6DB833-A2D2-4AD0-B6E2-E79925B310B9}: NameServer = 192.168.0.1,202.88.130.67,202.88.130.15,202.88.130.5
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Venturi Client (VenturiClient) - Venturi Wireless - C:\Program Files\Netbooster Client\Client\ventc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 7906 bytes
======Scheduled tasks folder======
C:\Windows\tasks\User_Feed_Synchronization-{C203164B-CEC6-402C-8F72-1989ACCBF56A}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2008-10-31 455960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0\bin\ssv.dll [2007-05-07 501384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A057A204-BACC-4D26-9990-79A187E2698E}]
AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-10-31 2055960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{A057A204-BACC-4D26-9990-79A187E2698E} - AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-10-31 2055960]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-01-13 827392]
"Symantec PIF AlertEng"=C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe [2008-01-29 583048]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2008-10-31 1234712]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2007-09-13 1006264]
"WAWifiMessage"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe [2007-01-11 317128]
"Venturi Configurator"=C:\Program Files\Netbooster Client\Configurator\ventcfg.exe [2007-02-05 923272]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0\bin\jusched.exe [2007-05-07 77824]
"QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2007-02-14 159744]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-02-26 133912]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-02-26 138008]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-03-02 472776]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
"HP Health Check Scheduler"=C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2007-03-13 50696]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-02-26 154392]
"ccApp"=c:\Program Files\Common Files\Symantec Shared\ccApp.exe []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"=C:\Windows\SMINST\launcher.exe [2006-11-08 44128]
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2008-10-22 399504]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2006-11-02 125440]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2006-11-02 201728]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="avgrsstx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-02-22 200704]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1093926c-a184-11dc-ba3a-001a6bbe6591}]
shell\Open(&O)\command - RECYCLED\appmgmt.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{56917166-6fdc-11dc-8b68-001a6bbe6591}]
shell\Open(&O)\command - RECYCLED\appmgmt.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{60aabc97-87ae-11dc-bb23-001a6bbe6591}]
shell\Open(&O)\command - RECYCLED\appmgmt.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{6fa18d71-ee82-11dc-ae21-001a6bbe6591}]
shell\AutoRun\command - u18vxqle.com
shell\explore\command - u18vxqle.com
shell\open\command - u18vxqle.com
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7c73a9a6-57a1-11dd-bb70-001b2483eae6}]
shell\Auto\command - F:\TunerSetup.exe
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\TunerSetup.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d8f89697-d18a-11dc-9559-001a6bbe6591}]
shell\AutoRun\command - F:\1wod1.com
shell\explore\command - F:\1wod1.com
shell\open\command - F:\1wod1.com
======List of files/folders created in the last 3 months======
2008-11-03 01:29:38 ----D---- C:\Users\sunil\AppData\Roaming\Malwarebytes
2008-11-03 01:29:31 ----D---- C:\ProgramData\Malwarebytes
2008-11-03 01:29:31 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2008-11-02 23:13:47 ----D---- C:\rsit
2008-11-02 16:55:44 ----D---- C:\Program Files\Trend Micro
2008-11-02 01:00:00 ----D---- C:\Program Files\Electronic Arts
2008-11-02 00:59:49 ----A---- C:\Windows\uninst.exe
2008-10-31 18:09:14 ----HD---- C:\$AVG8.VAULT$
2008-10-31 17:23:12 ----A---- C:\Windows\system32\avgrsstx.dll
2008-10-31 17:21:52 ----D---- C:\ProgramData\avg8
2008-10-31 17:21:52 ----D---- C:\Program Files\AVG
2008-10-31 17:14:21 ----SHD---- C:\Config.Msi
2008-10-15 00:25:39 ----A---- C:\Windows\system32\ntkrnlpa.exe
2008-10-15 00:25:38 ----A---- C:\Windows\system32\ntoskrnl.exe
2008-09-25 22:29:15 ----A---- C:\Windows\system32\wups2.dll
2008-09-25 22:29:15 ----A---- C:\Windows\system32\wuauclt.exe
2008-09-25 22:29:14 ----A---- C:\Windows\system32\wucltux.dll
2008-09-25 22:29:14 ----A---- C:\Windows\system32\wuaueng.dll
2008-09-25 22:28:13 ----A---- C:\Windows\system32\wups.dll
2008-09-25 22:28:13 ----A---- C:\Windows\system32\wudriver.dll
2008-09-25 22:28:13 ----A---- C:\Windows\system32\wuapi.dll
2008-09-25 22:27:54 ----A---- C:\Windows\system32\wuwebv.dll
2008-09-25 22:27:54 ----A---- C:\Windows\system32\wuapp.exe
2008-09-21 00:37:35 ----A---- C:\Windows\system32\gameux.dll
2008-09-21 00:37:33 ----A---- C:\Windows\system32\Apphlpdm.dll
2008-09-21 00:37:31 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2008-09-13 22:23:58 ----A---- C:\Windows\system32\wmpeffects.dll
2008-09-06 00:44:04 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2008-09-06 00:44:02 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2008-09-06 00:43:37 ----A---- C:\Windows\system32\NlsData0009.dll
2008-09-06 00:43:37 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2008-09-06 00:43:36 ----A---- C:\Windows\system32\NlsData000c.dll
2008-09-06 00:43:35 ----A---- C:\Windows\system32\NlsData000a.dll
2008-09-06 00:43:34 ----A---- C:\Windows\system32\NlsData000d.dll
2008-09-06 00:43:33 ----A---- C:\Windows\system32\NlsData0027.dll
2008-09-06 00:43:33 ----A---- C:\Windows\system32\NlsData0011.dll
2008-09-06 00:43:33 ----A---- C:\Windows\system32\NlsData0001.dll
2008-09-06 00:43:30 ----A---- C:\Windows\system32\NlsData0007.dll
2008-09-06 00:43:29 ----A---- C:\Windows\system32\NlsData003e.dll
2008-09-06 00:43:28 ----A---- C:\Windows\system32\NlsData002a.dll
2008-09-06 00:43:28 ----A---- C:\Windows\system32\NlsData0022.dll
2008-09-06 00:43:28 ----A---- C:\Windows\system32\NlsData0021.dll
2008-09-06 00:43:28 ----A---- C:\Windows\system32\NlsData0002.dll
2008-09-06 00:43:27 ----A---- C:\Windows\system32\NlsData0024.dll
2008-09-06 00:43:27 ----A---- C:\Windows\system32\NlsData001a.dll
2008-09-06 00:43:27 ----A---- C:\Windows\system32\NlsData0018.dll
2008-09-06 00:43:27 ----A---- C:\Windows\system32\NlsData000f.dll
2008-09-06 00:43:26 ----A---- C:\Windows\system32\NlsData0019.dll
2008-09-06 00:43:25 ----A---- C:\Windows\system32\NlsData001d.dll
2008-09-06 00:43:25 ----A---- C:\Windows\system32\NlsData0010.dll
2008-09-06 00:43:24 ----A---- C:\Windows\system32\NlsData0816.dll
2008-09-06 00:43:23 ----A---- C:\Windows\system32\NlsData0013.dll
2008-09-06 00:43:21 ----A---- C:\Windows\system32\NlsData0049.dll
2008-09-06 00:43:21 ----A---- C:\Windows\system32\NlsData0039.dll
2008-09-06 00:43:20 ----A---- C:\Windows\system32\NlsData0020.dll
2008-09-06 00:43:19 ----A---- C:\Windows\system32\NlsData0416.dll
2008-09-06 00:43:18 ----A---- C:\Windows\system32\NlsData0414.dll
2008-09-06 00:43:17 ----A---- C:\Windows\system32\NlsData004c.dll
2008-09-06 00:43:17 ----A---- C:\Windows\system32\NlsData004a.dll
2008-09-06 00:43:17 ----A---- C:\Windows\system32\NlsData0047.dll
2008-09-06 00:43:16 ----A---- C:\Windows\system32\NlsData081a.dll
2008-09-06 00:43:15 ----A---- C:\Windows\system32\NlsData0c1a.dll
2008-09-06 00:43:15 ----A---- C:\Windows\system32\NlsData001b.dll
2008-09-06 00:43:15 ----A---- C:\Windows\system32\NlsData0000.dll
2008-09-06 00:43:14 ----A---- C:\Windows\system32\NlsData004b.dll
2008-09-06 00:43:14 ----A---- C:\Windows\system32\NlsData0046.dll
2008-09-06 00:43:14 ----A---- C:\Windows\system32\NlsData0045.dll
2008-09-06 00:43:13 ----A---- C:\Windows\system32\NlsData004e.dll
2008-09-06 00:43:13 ----A---- C:\Windows\system32\NlsData0026.dll
2008-09-06 00:43:13 ----A---- C:\Windows\system32\NlsData0003.dll
2008-09-06 00:42:44 ----A---- C:\Windows\system32\NlsModels0011.dll
2008-09-06 00:42:43 ----A---- C:\Windows\system32\NlsLexicons0c1a.dll
2008-09-06 00:42:42 ----A---- C:\Windows\system32\NlsLexicons081a.dll
2008-09-06 00:42:41 ----A---- C:\Windows\system32\NlsLexicons0816.dll
2008-09-06 00:42:40 ----A---- C:\Windows\system32\NlsLexicons0416.dll
2008-09-06 00:42:38 ----A---- C:\Windows\system32\NlsLexicons0414.dll
2008-09-06 00:42:37 ----A---- C:\Windows\system32\NlsLexicons004c.dll
2008-09-06 00:42:36 ----A---- C:\Windows\system32\NlsLexicons004a.dll
2008-09-06 00:42:35 ----A---- C:\Windows\system32\NlsLexicons003e.dll
2008-09-06 00:42:33 ----A---- C:\Windows\system32\NlsLexicons0027.dll
2008-09-06 00:42:32 ----A---- C:\Windows\system32\NlsLexicons0026.dll
2008-09-06 00:42:31 ----A---- C:\Windows\system32\NlsLexicons0024.dll
2008-09-06 00:42:29 ----A---- C:\Windows\system32\NlsLexicons0022.dll
2008-09-06 00:42:29 ----A---- C:\Windows\system32\NlsLexicons0021.dll
2008-09-06 00:42:28 ----A---- C:\Windows\system32\NlsLexicons001d.dll
2008-09-06 00:42:27 ----A---- C:\Windows\system32\NlsLexicons001b.dll
2008-09-06 00:42:26 ----A---- C:\Windows\system32\NlsLexicons001a.dll
2008-09-06 00:42:25 ----A---- C:\Windows\system32\NlsLexicons0019.dll
2008-09-06 00:42:23 ----A---- C:\Windows\system32\NlsLexicons0018.dll
2008-09-06 00:42:22 ----A---- C:\Windows\system32\NlsLexicons0013.dll
2008-09-06 00:42:21 ----A---- C:\Windows\system32\NlsLexicons0011.dll
2008-09-06 00:42:21 ----A---- C:\Windows\system32\NlsLexicons0010.dll
2008-09-06 00:42:20 ----A---- C:\Windows\system32\NlsLexicons000f.dll
2008-09-06 00:42:18 ----A---- C:\Windows\system32\NlsLexicons000c.dll
2008-09-06 00:42:17 ----A---- C:\Windows\system32\NlsLexicons000a.dll
2008-09-06 00:42:15 ----A---- C:\Windows\system32\NlsLexicons0002.dll
2008-09-06 00:42:14 ----A---- C:\Windows\system32\NlsLexicons0001.dll
2008-09-06 00:42:13 ----A---- C:\Windows\system32\NlsLexicons004e.dll
2008-09-06 00:42:12 ----A---- C:\Windows\system32\NlsLexicons004b.dll
2008-09-06 00:42:12 ----A---- C:\Windows\system32\NlsLexicons0049.dll
2008-09-06 00:42:12 ----A---- C:\Windows\system32\NlsLexicons0047.dll
2008-09-06 00:42:11 ----A---- C:\Windows\system32\NlsLexicons0046.dll
2008-09-06 00:42:11 ----A---- C:\Windows\system32\NlsLexicons0045.dll
2008-09-06 00:42:11 ----A---- C:\Windows\system32\NlsLexicons0039.dll
2008-09-06 00:42:10 ----A---- C:\Windows\system32\NlsLexicons0020.dll
2008-09-06 00:42:10 ----A---- C:\Windows\system32\NlsLexicons000d.dll
2008-09-06 00:42:09 ----A---- C:\Windows\system32\NlsLexicons002a.dll
2008-09-06 00:42:09 ----A---- C:\Windows\system32\NlsLexicons0003.dll
2008-09-02 17:09:26 ----A---- C:\Windows\system32\tzres.dll
2008-09-02 16:51:28 ----A---- C:\Windows\system32\mshtml.dll
2008-09-02 16:51:26 ----A---- C:\Windows\system32\ieframe.dll
2008-09-02 16:51:25 ----A---- C:\Windows\system32\urlmon.dll
2008-09-02 16:51:24 ----A---- C:\Windows\system32\wininet.dll
2008-09-02 16:51:23 ----A---- C:\Windows\system32\mshtmled.dll
2008-09-02 16:51:22 ----A---- C:\Windows\system32\mstime.dll
2008-09-02 16:51:22 ----A---- C:\Windows\system32\ieui.dll
2008-09-02 16:51:22 ----A---- C:\Windows\system32\ieapfltr.dll
2008-09-02 16:51:22 ----A---- C:\Windows\system32\ie4uinit.exe
2008-09-02 16:51:22 ----A---- C:\Windows\system32\advpack.dll
2008-09-02 16:51:21 ----A---- C:\Windows\system32\pngfilt.dll
2008-09-02 16:51:21 ----A---- C:\Windows\system32\jsproxy.dll
2008-09-02 16:51:21 ----A---- C:\Windows\system32\ieUnatt.exe
2008-09-02 16:51:21 ----A---- C:\Windows\system32\iesetup.dll
2008-09-02 16:51:21 ----A---- C:\Windows\system32\iernonce.dll
2008-09-02 16:51:21 ----A---- C:\Windows\system32\icardie.dll
2008-09-02 16:51:21 ----A---- C:\Windows\system32\dxtrans.dll
2008-09-02 16:51:21 ----A---- C:\Windows\system32\dxtmsft.dll
2008-09-02 16:46:34 ----A---- C:\Windows\system32\winipsec.dll
2008-09-02 16:46:34 ----A---- C:\Windows\system32\polstore.dll
2008-09-02 16:46:34 ----A---- C:\Windows\system32\IPSECSVC.DLL
2008-09-02 16:46:34 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2008-09-02 16:46:28 ----A---- C:\Windows\system32\INETRES.dll
2008-09-02 16:46:28 ----A---- C:\Windows\system32\inetcomm.dll
2008-09-02 16:39:28 ----A---- C:\Windows\system32\es.dll
======List of files/folders modified in the last 3 months======
2008-11-03 03:37:04 ----D---- C:\Windows\Temp
2008-11-03 02:26:52 ----D---- C:\Windows\Prefetch
2008-11-03 01:30:51 ----D---- C:\Windows\system32\drivers
2008-11-03 01:29:31 ----RD---- C:\Program Files
2008-11-03 01:29:31 ----HD---- C:\ProgramData
2008-11-03 01:28:55 ----D---- C:\Windows\System32
2008-11-03 01:28:55 ----A---- C:\Windows\system32\PerfStringBackup.INI
2008-11-03 01:28:54 ----D---- C:\Windows\inf
2008-11-03 01:24:25 ----D---- C:\Windows\SMINST
2008-11-02 23:08:28 ----D---- C:\Windows\pss
2008-11-02 22:11:36 ----SHD---- C:\System Volume Information
2008-11-02 16:52:49 ----D---- C:\Windows\system32\catroot2
2008-11-02 02:55:52 ----D---- C:\Windows
2008-10-31 19:15:05 ----D---- C:\ProgramData\Symantec
2008-10-31 17:21:16 ----SHD---- C:\Windows\Installer
2008-10-31 17:21:16 ----D---- C:\Windows\winsxs
2008-10-31 17:20:56 ----D---- C:\Program Files\Common Files\microsoft shared
2008-10-31 17:20:15 ----D---- C:\Program Files\Common Files\Symantec Shared
2008-10-31 17:19:13 ----D---- C:\Program Files\Symantec
2008-10-31 17:19:09 ----D---- C:\Program Files\Common Files
2008-10-31 17:17:45 ----RSD---- C:\Windows\assembly
2008-10-31 17:15:18 ----D---- C:\Windows\Tasks
2008-10-31 17:11:57 ----SD---- C:\Users\sunil\AppData\Roaming\Microsoft
2008-10-28 04:44:39 ----D---- C:\Windows\system32\catroot
2008-10-14 23:58:01 ----D---- C:\Users\sunil\AppData\Roaming\LimeWire
2008-10-08 00:49:40 ----A---- C:\Windows\system32\mrt.exe
2008-10-01 19:39:09 ----D---- C:\Windows\system32\en-US
2008-09-21 01:30:19 ----D---- C:\Windows\AppPatch
2008-09-06 22:40:00 ----D---- C:\Windows\ehome
2008-09-04 23:22:50 ----D---- C:\Program Files\Mozilla Firefox
2008-09-02 22:51:54 ----D---- C:\Program Files\Internet Explorer
2008-09-02 22:51:53 ----D---- C:\Windows\system32\migration
2008-09-02 17:07:46 ----D---- C:\Program Files\Windows Mail
2008-09-01 18:05:30 ----D---- C:\Users\sunil\AppData\Roaming\Creative
2008-09-01 17:59:06 ----HD---- C:\Program Files\InstallShield Installation Information
2008-09-01 17:55:45 ----D---- C:\Program Files\Creative
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\Windows\System32\Drivers\avgldx86.sys [2008-10-31 97928]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\Windows\System32\Drivers\avgmfx86.sys [2008-10-31 26824]
R1 eabfiltr;eabfiltr; C:\Windows\system32\DRIVERS\eabfiltr.sys [2006-11-30 8192]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2007-09-11 395312]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2006-11-16 32256]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2006-11-16 43520]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2006-11-16 37376]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-11-28 8192]
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2008-04-29 19456]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2006-11-02 92160]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2008-04-29 29184]
R3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2007-01-02 80688]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-03-07 14208]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472]
R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2006-12-12 148992]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-12-07 985600]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2006-12-07 207360]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-22 1662464]
R3 NETw4v32;Intel® Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-10-31 2252800]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2006-11-02 49664]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2007-09-13 82432]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-01-13 181432]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-12-07 659968]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-03-07 11264]
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2008-04-29 220160]
S3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-03 182272]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2006-11-02 5632]
S3 E100B;Intel® PRO Network Connection Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2007-11-16 165496]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-22 1662464]
S3 Jukebox3;Jukebox3; C:\Windows\system32\DRIVERS\ctpdusb.sys [2003-10-23 16848]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2006-11-02 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2006-11-02 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2006-11-02 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2006-11-02 6016]
S3 NETw3v32;Intel® PRO/Wireless 3945BG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2007-02-08 1786880]
S3 Nokia USB Generic;Nokia USB Generic; C:\Windows\system32\drivers\nmwcdc.sys [2005-05-27 7288]
S3 Nokia USB Modem;Nokia USB Modem; C:\Windows\system32\drivers\nmwcdcm.sys [2005-05-27 11001]
S3 Nokia USB Phone Parent;Nokia USB Phone Parent; C:\Windows\system32\drivers\nmwcd.sys [2005-05-27 128295]
S3 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2006-11-02 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2006-11-02 82560]
S3 zteusbser;ZTE USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\zteusbser.sys [2007-08-20 98432]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Automatic LiveUpdate Scheduler;Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [2007-09-12 554352]
R2 avg8wd;AVG Free8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-10-31 231704]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2006-11-02 22016]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2007-03-15 62984]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-03 135168]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-12-15 61440]
R2 LiveUpdate Notice Service;LiveUpdate Notice Service; C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe [2008-01-29 583048]
R2 VenturiClient;Venturi Client; C:\Program Files\Netbooster Client\Client\ventc.exe [2007-02-05 2410080]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-11-28 386560]
S2 LiveUpdate Notice Ex;LiveUpdate Notice Service Ex; c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S3 Com4Qlb;Com4Qlb; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe [2007-01-10 110592]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2007-09-12 2999664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-02-12 880640]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-02-17 74656]
S3 usnjsvc;Messenger Sharing Folders USN Journal Reader service; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]
-----------------EOF-----------------