I did exactly as you said however YOOG SEARCH bar is still in firefox and IE. Infact it's right there as I'm typing this.
I almost feel it's impossible to remove. v___v
Also, it seems I'm still infected with something as all my google searches would be redirected to some malicious place. I have just fixed this though. However, it must have somehow snuck in since the google search problem only happened today.
This is my grandmothers computer which I'm trying to fix btw.

http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/happy.gif\' class=\'bbc_emoticon\' alt=\'^_^\' /> Her son had a trojan which transferred to the PC from his Sony PSP. It seems everything came from this.
The cause of the google results redirects was TDSSserv.sys. I also see some "TDS" related files in RSIT's log of 'recently created files'. hmm...
Here's the RSIT log:(attached)
Logfile of random's system information tool 1.05 (written by random/random)
Run by Compaq_Owner at 2008-12-21 14:26:32
Microsoft Windows XP Home Edition Service Pack 2
System drive C: has 82 GB (57%) free of 145 GB
Total RAM: 446 MB (20% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:27:24 PM, on 12/21/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18241)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\TrojanHunter 5.0\THGuard.exe
C:\Program Files\Eset\nod32kui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\LSI SoftModem\agrsmsvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Compaq_Owner.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktopR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.comcast.net/b/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 5.0\THGuard.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - S-1-5-18 Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'SYSTEM')
O4 - .DEFAULT Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Program Files\LSI SoftModem\agrsmsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
--
End of file - 5798 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Easy Internet Sign-up.job
C:\WINDOWS\tasks\EasyShare Registration Task.job
C:\WINDOWS\tasks\Malwarebytes' Scheduled Update for Compaq_Owner.job
C:\WINDOWS\tasks\Norton Internet Security - Run Full System Scan - Compaq_Owner.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2008-11-18 1082880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2005-11-27 1157120]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2005-11-27 1157120]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"THGuard"=C:\Program Files\TrojanHunter 5.0\THGuard.exe [2008-03-25 1047712]
"nod32kui"=C:\Program Files\Eset\nod32kui.exe [2008-12-17 949376]
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2008-12-03 399504]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-12-10 216520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2005-12-15 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPBootOp]
C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe [2005-09-21 1605740]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe [2008-11-20 290088]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Microsoft OCX]
C:\WINDOWS\system32\fglimztkm.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2007-10-18 5724184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Orb]
C:\Program Files\Winamp Remote\bin\OrbTray.exe /background []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCDrProfiler]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2008-11-04 413696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\regcmdcons]
c:\hp\bin\cloaker.exe [1999-11-07 27136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2008-11-18 21633320]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2008-08-20 1576176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^ WinCinema Manager.lnk]
C:\PROGRA~1\SanDisk\Common\Bin\WINCIN~1.EXE [2006-09-19 303104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Compaq Connections.lnk]
C:\PROGRA~1\COMPAQ~1\5577497\Program\COMPAQ~1.EXE [2005-11-27 36903]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2006-02-19 288472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Kodak EasyShare software.lnk]
C:\PROGRA~1\Kodak\KODAKE~1\bin\EASYSH~1.EXE [2008-05-10 282624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Compaq_Owner.YOUR-27E1513D96^Start Menu^Programs^Startup^Compaq Organize.lnk]
C:\PROGRA~1\HEWLET~1\COMPAQ~1\bin\DISPLA~1.EXE [2005-05-09 36864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2008-07-23 352256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2005-08-13 46080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe"="C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe:*:Enabled:Compaq Connections"
"C:\Program Files\EarthLink TotalAccess\TaskPanl.exe"="C:\Program Files\EarthLink TotalAccess\TaskPanl.exe:*:Enabled:Earthlink"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:�Torrent"
"C:\Program Files\Winamp Remote\bin\Orb.exe"="C:\Program Files\Winamp Remote\bin\Orb.exe:*:Enabled:Orb"
"C:\Program Files\Winamp Remote\bin\OrbTray.exe"="C:\Program Files\Winamp Remote\bin\OrbTray.exe:*:Enabled:OrbTray"
"C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe"="C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe:*:Enabled:Orb Stream Client"
"C:\WINDOWS\system32\fglimztkm.exe"="C:\WINDOWS\system32\fglimztkm.exe:*:Enabled:Microsoft OCX"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe"="C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe:*:Enabled:EasyShare"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe"="C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe"
"C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe"="C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe"
"C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe"="C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe:*:Enabled:hpqdia.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe"="C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe:*:Enabled:Compaq Connections"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2d435b36-e506-11d9-9b78-e6b009352ae7}]
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{98d5040a-c23c-11dd-92c6-806d6172696f}]
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480
======List of files/folders created in the last 1 months======
2008-12-21 11:34:51 ----A---- C:\WINDOWS\system32\PerfStringBackup.TMP
2008-12-20 21:40:30 ----A---- C:\WINDOWS\system32\TDSSqekn.dll
2008-12-20 21:40:26 ----A---- C:\WINDOWS\system32\TDSSrojf.dll
2008-12-20 21:40:26 ----A---- C:\WINDOWS\system32\TDSSirxy.dll
2008-12-20 21:39:42 ----A---- C:\WINDOWS\system32\TDSSktkl.dll
2008-12-19 17:14:28 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Apple Computer
2008-12-19 17:14:04 ----A---- C:\WINDOWS\system32\GEARAspi.dll
2008-12-19 17:13:33 ----D---- C:\Program Files\iPod
2008-12-19 17:13:21 ----D---- C:\Program Files\iTunes
2008-12-19 17:13:21 ----D---- C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-12-19 17:11:43 ----D---- C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-12-19 17:11:06 ----D---- C:\Program Files\Apple Software Update
2008-12-19 17:10:27 ----D---- C:\Program Files\Common Files\Apple
2008-12-19 17:10:25 ----D---- C:\Documents and Settings\All Users\Application Data\Apple
2008-12-19 16:50:08 ----A---- C:\WINDOWS\system32\SpoonUninstall.exe
2008-12-19 16:50:04 ----D---- C:\Program Files\Illustrate
2008-12-19 16:19:48 ----D---- C:\rsit
2008-12-19 15:41:06 ----D---- C:\Program Files\Common Files\DESIGNER
2008-12-19 15:29:04 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\DAEMON Tools
2008-12-19 15:29:01 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\DAEMON Tools Pro
2008-12-19 15:27:25 ----D---- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
2008-12-19 15:27:13 ----D---- C:\Program Files\DAEMON Tools Lite
2008-12-19 15:24:10 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\DAEMON Tools Lite
2008-12-19 14:51:06 ----D---- C:\Program Files\LSI SoftModem
2008-12-19 14:50:02 ----D---- C:\Program Files\Microsoft Silverlight
2008-12-19 14:44:31 ----N---- C:\WINDOWS\system32\spmsg.dll
2008-12-19 14:41:31 ----D---- C:\WINDOWS\system32\LogFiles
2008-12-19 14:37:36 ----HDC---- C:\WINDOWS\$NtUninstallKB925876$
2008-12-19 14:32:52 ----HDC---- C:\WINDOWS\$NtUninstallKB896344$
2008-12-19 14:29:59 ----N---- C:\WINDOWS\system32\tsgqec.dll
2008-12-19 14:29:59 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2008-12-19 14:29:59 ----N---- C:\WINDOWS\system32\aaclient.dll
2008-12-19 05:07:47 ----A---- C:\WINDOWS\imsins.BAK
2008-12-19 05:07:38 ----D---- C:\WINDOWS\ie8updates
2008-12-18 20:47:06 ----D---- C:\Program Files\Trend Micro
2008-12-18 20:42:05 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2008-12-18 20:24:01 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\HP
2008-12-18 20:17:23 ----A---- C:\WINDOWS\system32\hpzll43a.dll
2008-12-18 20:16:34 ----A---- C:\WINDOWS\system32\HPZisn12.dll
2008-12-18 20:16:34 ----A---- C:\WINDOWS\system32\HPZipt12.dll
2008-12-18 20:16:34 ----A---- C:\WINDOWS\system32\HPZipr12.dll
2008-12-18 20:16:34 ----A---- C:\WINDOWS\system32\HPZipm12.exe
2008-12-18 20:16:34 ----A---- C:\WINDOWS\system32\HPZinw12.exe
2008-12-18 20:16:34 ----A---- C:\WINDOWS\system32\HPZidr12.dll
2008-12-18 20:11:06 ----A---- C:\WINDOWS\system32\hpotscl2.dll
2008-12-18 20:11:05 ----A---- C:\WINDOWS\system32\hpowiax2.dll
2008-12-18 20:11:04 ----A---- C:\WINDOWS\system32\hpovst09.dll
2008-12-18 20:11:03 ----A---- C:\WINDOWS\system32\hpzjsn01.dll
2008-12-18 20:11:03 ----A---- C:\WINDOWS\system32\hpzids01.dll
2008-12-18 18:26:35 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Skinux
2008-12-18 17:51:40 ----D---- C:\Program Files\CCleaner
2008-12-18 16:26:19 ----D---- C:\WINDOWS\ERDNT
2008-12-18 14:14:13 ----D---- C:\Program Files\ERUNT
2008-12-18 14:13:17 ----D---- C:\Program Files\Lavasoft
2008-12-18 14:13:12 ----D---- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-12-18 12:31:58 ----D---- C:\Program Files\Spybot - Search & Destroy
2008-12-18 12:31:58 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-12-18 04:09:49 ----A---- C:\WINDOWS\system32\muweb.dll
2008-12-18 04:09:49 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2008-12-18 04:09:48 ----A---- C:\WINDOWS\system32\mucltui.dll
2008-12-17 20:28:25 ----DC---- C:\WINDOWS\system32\DRVSTORE
2008-12-17 20:23:44 ----SHDC---- C:\Program Files\Common Files\WindowsLiveInstaller
2008-12-17 20:23:04 ----D---- C:\Program Files\Windows Live
2008-12-17 20:22:08 ----D---- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-12-17 20:11:44 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\AdobeUM
2008-12-17 18:45:39 ----A---- C:\WINDOWS\system32\imon.dll
2008-12-17 18:43:37 ----D---- C:\Program Files\ESET
2008-12-17 17:10:13 ----A---- C:\WINDOWS\system32\xvidcore.dll
2008-12-17 17:10:12 ----D---- C:\Program Files\Xvid
2008-12-17 17:10:12 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2008-12-17 17:09:47 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Sun
2008-12-17 16:42:00 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Malwarebytes
2008-12-17 16:41:52 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2008-12-17 16:41:52 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-12-17 16:25:15 ----A---- C:\WINDOWS\system32\LuResult.txt
2008-12-17 15:35:14 ----D---- C:\ESET_NOD32_v2.70.39_WIth_NOD_FIX_2.2_and_NOD-UE
2008-12-17 08:27:47 ----A---- C:\WINDOWS\system32\ptpusb.dll
2008-12-17 08:27:42 ----A---- C:\WINDOWS\system32\ptpusd.dll
2008-12-17 08:23:32 ----D---- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-12-17 08:23:09 ----D---- C:\Program Files\SUPERAntiSpyware
2008-12-17 08:23:08 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\SUPERAntiSpyware.com
2008-12-17 08:22:27 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2008-12-17 08:22:00 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\WinRAR
2008-12-17 08:21:22 ----D---- C:\Program Files\WinRAR
2008-12-16 21:24:28 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\TrojanHunter
2008-12-16 21:15:08 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2008-12-16 21:15:08 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2008-12-16 21:15:08 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2008-12-16 21:15:08 ----N---- C:\WINDOWS\system32\pxafs.dll
2008-12-16 21:14:52 ----D---- C:\Program Files\Winamp
2008-12-16 21:14:52 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Winamp
2008-12-16 20:55:39 ----D---- C:\Program Files\uTorrent
2008-12-16 20:55:36 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\uTorrent
2008-12-16 20:50:55 ----R---- C:\WINDOWS\system32\streamhlp.dll
2008-12-16 20:50:54 ----D---- C:\Program Files\TrojanHunter 5.0
2008-12-15 14:42:17 ----HDC---- C:\WINDOWS\ie8
2008-12-13 21:44:30 ----HDC---- C:\WINDOWS\$NtUninstallKB958215$
2008-12-13 21:42:53 ----A---- C:\WINDOWS\system32\MRT.exe
2008-12-13 21:38:02 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2008-12-13 21:31:16 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2008-12-13 20:26:31 ----D---- C:\WINDOWS\system32\PreInstall
2008-12-13 14:01:46 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\skypePM
2008-12-13 13:41:43 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Help
2008-12-13 13:22:48 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\WinBatch
2008-12-13 12:57:57 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Skype
2008-12-11 22:25:42 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2008-12-11 22:25:35 ----HDC---- C:\WINDOWS\$NtUninstallKB955839$
2008-12-11 22:24:54 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2008-12-11 22:24:40 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2008-12-11 20:37:51 ----D---- C:\Program Files\InterActual
2008-12-11 08:45:40 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\alot
2008-12-08 22:12:35 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\InterVideo
2008-12-05 08:13:19 ----D---- C:\WINDOWS\system32\en-US
2008-12-05 07:36:20 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Mozilla
2008-12-04 18:36:01 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Adobe
2008-12-04 14:14:17 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Macromedia
2008-12-04 14:08:33 ----A---- C:\WINDOWS\system32\wmpns.dll
2008-12-04 14:05:40 ----ASH---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\desktop.ini
2008-12-04 14:05:36 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Intuit
2008-12-04 14:05:36 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Identities
2008-12-04 14:05:35 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Symantec
2008-12-04 14:05:35 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Real
2008-12-04 14:05:35 ----D---- C:\Documents and Settings\Compaq_Owner.YOUR-27E1513D96\Application Data\Microsoft
2008-12-04 13:58:43 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2008-12-02 12:05:39 ----D---- C:\Program Files\Inbox Toolbar
2008-11-28 11:22:36 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2008-11-22 05:05:51 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2008-11-22 05:04:45 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2008-11-22 05:02:45 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
======List of files/folders modified in the last 1 months======
2008-12-21 14:26:33 ----D---- C:\WINDOWS\Prefetch
2008-12-21 14:23:17 ----D---- C:\Program Files\Mozilla Firefox
2008-12-21 14:09:32 ----D---- C:\WINDOWS\Tasks
2008-12-21 13:34:16 ----D---- C:\WINDOWS\Temp
2008-12-21 12:18:14 ----D---- C:\WINDOWS\system32
2008-12-21 12:17:14 ----D---- C:\WINDOWS
2008-12-21 12:15:57 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-12-21 12:15:30 ----RASH---- C:\boot. ini
2008-12-21 12:15:30 ----A---- C:\WINDOWS\win.ini
2008-12-21 12:15:30 ----A---- C:\WINDOWS\system.ini
2008-12-21 11:40:50 ----HD---- C:\WINDOWS\inf
2008-12-21 11:40:35 ----D---- C:\WINDOWS\system32\CatRoot2
2008-12-21 10:53:32 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-12-20 21:40:25 ----D---- C:\WINDOWS\system32\drivers
2008-12-20 13:04:22 ----D---- C:\WINDOWS\system32\wbem
2008-12-20 02:24:14 ----HD---- C:\Config.Msi
2008-12-20 02:24:12 ----SHD---- C:\WINDOWS\Installer
2008-12-20 02:24:10 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-12-20 02:23:19 ----D---- C:\WINDOWS\system32\dllcache
2008-12-20 02:23:18 ----D---- C:\WINDOWS\system32\CatRoot
2008-12-20 02:20:09 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2008-12-20 02:19:52 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2008-12-20 02:17:12 ----D---- C:\Program Files\Common Files\Microsoft Shared
2008-12-20 02:14:06 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP11$
2008-12-19 19:30:40 ----D---- C:\Program Files
2008-12-19 17:12:44 ----D---- C:\Program Files\Bonjour
2008-12-19 17:12:13 ----D---- C:\Program Files\QuickTime
2008-12-19 17:10:27 ----D---- C:\Program Files\Common Files
2008-12-19 16:16:26 ----D---- C:\WINDOWS\system32\config
2008-12-19 15:41:23 ----D---- C:\WINDOWS\WinSxS
2008-12-19 15:40:53 ----RSD---- C:\WINDOWS\Fonts
2008-12-19 15:34:39 ----D---- C:\Program Files\Microsoft Office
2008-12-19 15:34:39 ----D---- C:\Program Files\Common Files\System
2008-12-19 15:25:11 ----D---- C:\WINDOWS\security
2008-12-19 15:11:13 ----D---- C:\WINDOWS\SHELLNEW
2008-12-19 14:56:15 ----D---- C:\WINDOWS\AppPatch
2008-12-19 14:47:46 ----D---- C:\Program Files\Common Files\logishrd
2008-12-19 14:44:52 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2008-12-19 14:43:57 ----D---- C:\Program Files\Windows Media Player
2008-12-19 14:43:53 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2008-12-19 14:42:28 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2008-12-19 14:37:46 ----D---- C:\WINDOWS\Help
2008-12-19 14:37:33 ----HD---- C:\WINDOWS\$hf_mig$
2008-12-19 14:37:20 ----HDC---- C:\WINDOWS\$NtUninstallKB904942$
2008-12-19 14:36:43 ----D---- C:\Program Files\Internet Explorer
2008-12-19 14:32:59 ----D---- C:\WINDOWS\system32\usmt
2008-12-18 20:42:16 ----D---- C:\WINDOWS\system
2008-12-18 20:34:43 ----D---- C:\WINDOWS\system32\Setup
2008-12-18 20:34:43 ----D---- C:\WINDOWS\system32\Restore
2008-12-18 20:34:43 ----D---- C:\WINDOWS\system32\Com
2008-12-18 20:34:43 ----D---- C:\WINDOWS\srchasst
2008-12-18 20:34:43 ----D---- C:\WINDOWS\msagent
2008-12-18 20:34:42 ----D---- C:\WINDOWS\ime
2008-12-18 20:34:42 ----D---- C:\WINDOWS\Downloaded Program Files
2008-12-18 20:34:40 ----D---- C:\Program Files\Quicken
2008-12-18 20:34:40 ----D---- C:\Program Files\Outlook Express
2008-12-18 20:34:40 ----D---- C:\Program Files\NetMeeting
2008-12-18 20:34:40 ----D---- C:\Program Files\Movie Maker
2008-12-18 20:34:40 ----D---- C:\Program Files\Microsoft Works
2008-12-18 20:34:40 ----D---- C:\Program Files\Messenger
2008-12-18 20:34:39 ----D---- C:\Program Files\Google
2008-12-18 20:34:39 ----D---- C:\Program Files\Common Files\SureThing Shared
2008-12-18 20:34:39 ----D---- C:\Program Files\Common Files\Sonic Shared
2008-12-18 20:34:39 ----D---- C:\Program Files\Common Files\Skype
2008-12-18 20:34:39 ----D---- C:\Program Files\Common Files\Palo Alto Software
2008-12-18 20:34:39 ----AD---- C:\Program Files\Common Files\LightScribe
2008-12-18 20:30:53 ----D---- C:\WINDOWS\pss
2008-12-18 20:24:17 ----D---- C:\WINDOWS\system32\FxsTmp
2008-12-18 20:16:34 ----D---- C:\Program Files\HP
2008-12-18 17:53:03 ----D---- C:\WINDOWS\Debug
2008-12-18 14:05:13 ----A---- C:\WINDOWS\WININIT.INI
2008-12-17 20:27:20 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft
2008-12-17 16:32:02 ----D---- C:\Program Files\Symantec
2008-12-17 16:29:51 ----D---- C:\Program Files\Common Files\Symantec Shared
2008-12-17 16:26:12 ----D---- C:\Documents and Settings\All Users\Application Data\Symantec
2008-12-17 14:51:23 ----D---- C:\Documents and Settings
2008-12-17 11:03:38 ----D---- C:\Program Files\Morpheus
2008-12-15 18:04:57 ----HDC---- C:\WINDOWS\$NtUninstallKB899587$
2008-12-15 18:04:45 ----HDC---- C:\WINDOWS\$NtUninstallKB927779$
2008-12-15 18:04:33 ----HDC---- C:\WINDOWS\$NtUninstallKB927802$
2008-12-15 18:04:19 ----HDC---- C:\WINDOWS\$NtUninstallKB943460$
2008-12-15 18:04:08 ----HDC---- C:\WINDOWS\$NtUninstallKB928255$
2008-12-15 18:03:55 ----HDC---- C:\WINDOWS\$NtUninstallKB911927$
2008-12-15 18:03:44 ----HDC---- C:\WINDOWS\$NtUninstallKB901017$
2008-12-15 18:03:33 ----HDC---- C:\WINDOWS\$NtUninstallKB899591$
2008-12-15 18:03:24 ----HDC---- C:\WINDOWS\$NtUninstallKB933729$
2008-12-15 18:03:08 ----HDC---- C:\WINDOWS\$NtUninstallKB920685$
2008-12-15 18:02:58 ----HDC---- C:\WINDOWS\$NtUninstallKB893756$
2008-12-15 18:02:46 ----HDC---- C:\WINDOWS\$NtUninstallKB923980$
2008-12-15 18:02:36 ----HDC---- C:\WINDOWS\$NtUninstallKB911280$
2008-12-15 18:02:27 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$
2008-12-15 18:02:17 ----HDC---- C:\WINDOWS\$NtUninstallKB938828$
2008-12-15 18:02:05 ----HDC---- C:\WINDOWS\$NtUninstallKB924667$
2008-12-15 18:01:58 ----HDC---- C:\WINDOWS\$NtUninstallKB896423$
2008-12-15 18:01:47 ----HDC---- C:\WINDOWS\$NtUninstallKB900485$
2008-12-15 18:01:35 ----HDC---- C:\WINDOWS\$NtUninstallKB924270$
2008-12-15 18:01:25 ----HDC---- C:\WINDOWS\$NtUninstallKB931261$
2008-12-15 18:01:15 ----HDC---- C:\WINDOWS\$NtUninstallKB927891$
2008-12-15 18:01:06 ----HDC---- C:\WINDOWS\$NtUninstallKB946026$
2008-12-15 18:00:58 ----HDC---- C:\WINDOWS\$NtUninstallKB925398_WMP64$
2008-12-15 18:00:35 ----HDC---- C:\WINDOWS\$NtUninstallKB910437$
2008-12-15 18:00:25 ----HDC---- C:\WINDOWS\$NtUninstallKB911564$
2008-12-15 17:59:50 ----HDC---- C:\WINDOWS\$NtUninstallKB925902$
2008-12-15 17:59:38 ----HDC---- C:\WINDOWS\$NtUninstallKB929123$
2008-12-15 17:59:27 ----HDC---- C:\WINDOWS\$NtUninstallKB920670$
2008-12-15 17:59:17 ----HDC---- C:\WINDOWS\$NtUninstallKB918439$
2008-12-15 17:59:08 ----HDC---- C:\WINDOWS\$NtUninstallKB890046$
2008-12-15 17:58:58 ----HDC---- C:\WINDOWS\$NtUninstallKB926436$
2008-12-15 17:58:50 ----HDC---- C:\WINDOWS\$NtUninstallKB920872$
2008-12-15 17:58:33 ----HDC---- C:\WINDOWS\$NtUninstallKB930178$
2008-12-15 17:58:23 ----HDC---- C:\WINDOWS\$NtUninstallKB914388$
2008-12-15 17:58:12 ----HDC---- C:\WINDOWS\$NtUninstallKB905414$
2008-12-15 17:58:02 ----HDC---- C:\WINDOWS\$NtUninstallKB932168$
2008-12-15 17:57:53 ----HDC---- C:\WINDOWS\$NtUninstallKB923191$
2008-12-15 17:57:43 ----HDC---- C:\WINDOWS\$NtUninstallKB922582$
2008-12-15 17:57:30 ----HDC---- C:\WINDOWS\$NtUninstallKB918118$
2008-12-15 17:57:20 ----HDC---- C:\WINDOWS\$NtUninstallKB926255$
2008-12-15 17:57:09 ----HDC---- C:\WINDOWS\$NtUninstallKB888302$
2008-12-15 17:57:01 ----HDC---- C:\WINDOWS\$NtUninstallKB900725$
2008-12-15 17:56:45 ----HDC---- C:\WINDOWS\$NtUninstallKB920213$
2008-12-15 17:56:35 ----HDC---- C:\WINDOWS\$NtUninstallKB935840$
2008-12-15 17:56:27 ----HDC---- C:\WINDOWS\$NtUninstallKB943485$
2008-12-15 17:56:15 ----HDC---- C:\WINDOWS\$NtUninstallKB945553$
2008-12-15 17:56:05 ----HDC---- C:\WINDOWS\$NtUninstallKB886185$
2008-12-15 17:55:55 ----HDC---- C:\WINDOWS\$NtUninstallKB916595$
2008-12-15 17:55:45 ----HDC---- C:\WINDOWS\$NtUninstallKB930916$
2008-12-15 17:55:34 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-12-15 17:55:19 ----HDC---- C:\WINDOWS\$NtUninstallKB950749$
2008-12-15 17:54:58 ----HDC---- C:\WINDOWS\$NtUninstallKB908531$
2008-12-15 17:54:45 ----HDC---- C:\WINDOWS\$NtUninstallKB905749$
2008-12-15 17:54:34 ----HDC---- C:\WINDOWS\$NtUninstallKB913580$
2008-12-15 17:54:23 ----HDC---- C:\WINDOWS\$NtUninstallKB896428$
2008-12-15 17:54:13 ----HDC---- C:\WINDOWS\$NtUninstallKB935839$
2008-12-15 17:54:04 ----HDC---- C:\WINDOWS\$NtUninstallKB943055$
2008-12-15 17:53:54 ----HDC---- C:\WINDOWS\$NtUninstallKB908519$
2008-12-15 17:53:44 ----HDC---- C:\WINDOWS\$NtUninstallKB920683$
2008-12-15 17:53:33 ----HDC---- C:\WINDOWS\$NtUninstallKB914389$
2008-12-15 17:53:24 ----HDC---- C:\WINDOWS\$NtUninstallKB944653$
2008-12-15 17:53:07 ----HDC---- C:\WINDOWS\$NtUninstallKB928843$
2008-12-15 15:16:18 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2008-12-15 14:47:38 ----D---- C:\WINDOWS\Media
2008-12-14 07:59:44 ----A---- C:\WINDOWS\system32\mshtml.dll
2008-12-13 21:45:53 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-12-13 21:45:44 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-12-13 21:45:36 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-12-13 21:45:27 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2008-12-13 21:45:14 ----HDC---- C:\WINDOWS\$NtUninstallKB923723$
2008-12-13 21:45:02 ----HDC---- C:\WINDOWS\$NtUninstallKB956391$
2008-12-13 21:44:53 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2008-12-13 21:42:46 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-12-13 21:42:37 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-12-13 21:42:26 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2008-12-13 21:42:09 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2008-12-13 21:40:21 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2008-12-13 21:40:00 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-12-13 21:39:44 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2008-12-13 21:39:17 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-12-13 21:39:08 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-12-13 21:38:57 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-12-13 21:38:42 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2008-12-13 21:37:13 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP10$
2008-12-13 20:26:29 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2008-12-13 13:36:07 ----SHD---- C:\RECYCLER
2008-12-13 13:20:22 ----HD---- C:\hp
2008-12-13 13:14:58 ----D---- C:\WINDOWS\Registration
2008-12-13 13:14:21 ----HDC---- C:\WINDOWS\$NtUninstallKB914440$
2008-12-13 13:14:20 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
2008-12-13 13:14:14 ----HDC---- C:\WINDOWS\ie7
2008-12-13 13:13:02 ----HDC---- C:\WINDOWS\$NtUninstallKB890859$
2008-12-13 13:12:50 ----HDC---- C:\WINDOWS\$NtUninstallKB953356$
2008-12-13 13:11:25 ----HDC---- C:\WINDOWS\$NtUninstallKB948590$
2008-12-13 13:11:04 ----HDC---- C:\WINDOWS\$NtUninstallKB951072-v2$
2008-12-13 12:27:26 ----D---- C:\Program Files\MSN
2008-12-11 12:24:32 ----D---- C:\WINDOWS\network diagnostic
2008-12-06 12:40:59 ----D---- C:\WINDOWS\ie7updates
2008-12-04 14:08:25 ----AD---- C:\WINDOWS\system32\pcintro
2008-12-04 13:58:58 ----D---- C:\WINDOWS\SoftwareDistribution
2008-12-04 13:12:50 ----D---- C:\Documents and Settings\All Users\Application Data\Kontiki
2008-12-04 12:47:58 ----D---- C:\WINDOWS\I386
2008-12-04 12:45:27 ----D---- C:\Program Files\Windows NT
2008-12-04 12:45:12 ----D---- C:\Program Files\Common Files\Services
2008-12-04 12:44:45 ----D---- C:\WINDOWS\system32\ras
2008-12-04 12:44:43 ----D---- C:\WINDOWS\system32\oobe
2008-12-04 12:44:29 ----D---- C:\WINDOWS\system32\npp
2008-12-04 12:44:15 ----D---- C:\WINDOWS\system32\icsxml
2008-12-04 12:44:14 ----D---- C:\WINDOWS\system32\ias
2008-12-04 12:42:29 ----RD---- C:\WINDOWS\Web
2008-12-04 12:42:29 ----D---- C:\WINDOWS\addins
2008-12-04 12:42:24 ----D---- C:\WINDOWS\PeerNet
2008-12-04 12:42:08 ----D---- C:\WINDOWS\Cursors
2008-12-04 12:42:05 ----AHDC---- C:\WINDOWS\$NtUninstallKB902400$
2008-12-04 12:42:02 ----AHDC---- C:\WINDOWS\$NtUninstallKB901214$
2008-12-04 12:42:01 ----AHDC---- C:\WINDOWS\$NtUninstallKB896688$
2008-12-04 12:41:58 ----AHDC---- C:\WINDOWS\$NtUninstallKB896422$
2008-12-04 12:41:57 ----AHDC---- C:\WINDOWS\$NtUninstallKB896358$
2008-12-04 12:41:57 ----AHDC---- C:\WINDOWS\$NtUninstallKB893066$
2008-12-04 12:41:57 ----AHDC---- C:\WINDOWS\$NtUninstallKB892050$
2008-12-04 12:41:57 ----AHDC---- C:\WINDOWS\$NtUninstallKB891781$
2008-12-04 12:41:57 ----AHDC---- C:\WINDOWS\$NtUninstallKB890175$
2008-12-04 12:41:56 ----AHDC---- C:\WINDOWS\$NtUninstallKB888239$
2008-12-04 12:41:56 ----AHDC---- C:\WINDOWS\$NtUninstallKB888113$
2008-12-04 12:41:56 ----AHDC---- C:\WINDOWS\$NtUninstallKB887742$
2008-12-04 12:41:56 ----AHDC---- C:\WINDOWS\$NtUninstallKB885836$
2008-12-04 12:41:56 ----AHDC---- C:\WINDOWS\$NtUninstallKB885835$
2008-12-04 12:41:56 ----AHDC---- C:\WINDOWS\$NtUninstallKB885250$
2008-12-04 12:41:56 ----AHDC---- C:\WINDOWS\$NtUninstallKB883667$
2008-12-04 12:41:55 ----AHDC---- C:\WINDOWS\$NtUninstallKB873339$
2008-12-04 12:41:52 ----RHD---- C:\MSOCache
2008-12-04 12:41:04 ----RSD---- C:\WINDOWS\assembly
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AmdK8;AMD Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2005-03-09 36352]
R1 nod32drv;nod32drv; C:\WINDOWS\system32\drivers\nod32drv.sys [2008-12-17 15424]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
R2 AMON;AMON; C:\WINDOWS\system32\drivers\amon.sys [2008-12-17 512096]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2008-10-29 1204128]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2005-08-29 3644928]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2004-08-04 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2005-08-13 1313792]
R3 CamDrL;Logitech QuickCam Pro 3000(CamDrl); C:\WINDOWS\system32\DRIVERS\Camdrl.sys [2007-02-03 1075360]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2008-04-17 15464]
R3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2005-10-21 49920]
R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2005-10-21 16496]
R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2005-10-22 21568]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\LVUSBSta.sys [2007-02-03 41504]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys []
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys []
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2004-08-04 61824]
R3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2008-02-25 105088]
R3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-04 59264]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-04 31616]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2005-03-31 27008]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-04 57600]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-04 17024]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-04 25856]
R3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-04 15104]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
S2 MCSTRM;MCSTRM; C:\WINDOWS\system32\drivers\MCSTRM.sys []
S3 aza1nkgc;aza1nkgc; C:\WINDOWS\system32\drivers\aza1nkgc.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-04 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 SASENUM;SASENUM; \??\C:\Program Files\SUPERAntiSpyware\SASENUM.SYS []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2008-11-07 32000]
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-04 20480]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agrsmsvc.exe [2008-08-26 14336]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2005-08-13 376832]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2008-12-03 170640]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 NOD32krn;NOD32 Kernel Service; C:\Program Files\Eset\nod32krn.exe [2008-12-17 552064]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2005-03-14 69632]
S3 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-11-07 132424]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-08-29 238888]
S3 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2004-08-04 267776]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-11-20 536872]
S3 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2005-10-23 69632]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2004-08-04 14336]
S4 aawservice;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-09-10 611664]
S4 usnjsvc;Messenger Sharing Folders USN Journal Reader service; C:\Program Files\Windows Live\Messenger\usnsvc.exe [2007-10-18 98328]
-----------------EOF-----------------