[color=red][b]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/b][/color]
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
((((((((((((((((((((((((( Files Created from 2008-08-16 to 2008-09-16 )))))))))))))))))))))))))))))))
.
2008-09-16 08:18 . 2008-09-16 08:19 <DIR> d----c--- C:\Program Files\Malwarebytes' Anti-Malware
2008-09-16 08:18 . 2008-09-16 08:18 <DIR> d----c--- C:\Documents and Settings\Ben Appleton\Application Data\Malwarebytes
2008-09-16 08:18 . 2008-09-16 08:18 <DIR> d----c--- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-09-16 08:18 . 2008-09-10 00:04 38,528 --a--c--- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-09-16 08:18 . 2008-09-10 00:03 17,200 --a--c--- C:\WINDOWS\system32\drivers\mbam.sys
2008-09-16 00:16 . 2008-09-16 00:16 <DIR> d----c--- C:\Documents and Settings\Ben Appleton\Application Data\Apple Computer
2008-09-15 23:58 . 2008-09-15 23:58 <DIR> d----c--- C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-09-15 23:43 . 2008-09-15 23:50 <DIR> d----c--- C:\Documents and Settings\Ben Appleton\Application Data\vlc
2008-09-15 23:43 . 2008-09-15 23:45 <DIR> d----c--- C:\Documents and Settings\Ben Appleton\Application Data\dvdcss
2008-09-15 23:40 . 2008-09-15 23:40 <DIR> d----c--- C:\Program Files\VideoLAN
2008-09-15 23:21 . 2005-01-28 13:44 96,768 --a--c--- C:\WINDOWS\system32\setb1.tmp
2008-09-15 23:19 . 2008-09-15 23:19 <DIR> d----c--- C:\Program Files\J River
2008-09-15 23:19 . 2008-09-15 23:19 <DIR> d----c--- C:\Documents and Settings\Ben Appleton\Application Data\J River
2008-09-15 22:45 . 2008-09-16 09:58 <DIR> d----c--- C:\Virus Restore
2008-09-15 19:59 . 2008-09-15 19:59 <DIR> d----c--- C:\Program Files\SUPERAntiSpyware
2008-09-15 19:59 . 2008-09-15 19:59 <DIR> d----c--- C:\Documents and Settings\Ben Appleton\Application Data\SUPERAntiSpyware.com
2008-09-15 19:59 . 2008-09-15 19:59 <DIR> d----c--- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-09-15 19:57 . 2008-09-15 19:57 <DIR> d----c--- C:\Program Files\Common Files\Wise Installation Wizard
2008-09-15 19:22 . 2008-09-15 19:22 <DIR> d----c--- C:\Program Files\CCleaner
2008-09-15 18:55 . 2008-09-15 18:55 <DIR> d----c--- C:\Documents and Settings\All Users\Application Data\LogMeIn
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-09-16 07:00 --------- dc----w C:\Documents and Settings\All Users\Application Data\AVG7
2008-09-15 23:19 --------- dc----w C:\Program Files\LogMeIn
2008-09-15 21:51 --------- dc----w C:\Program Files\BearShare
2005-05-01 12:13 77,312 -csha-w C:\Program Files\Thumbs.db
2004-12-17 11:37 3,816,760 -c--a-w C:\Documents and Settings\FW_update_30\suds.bin
2004-08-07 15:07 560 -c--a-w C:\Documents and Settings\Ben Appleton\Application Data\ViewerApp.dat
2003-08-22 09:09 45,056 -c--a-w C:\WINDOWS\inf\slntinst_staticW2k.exe
2001-11-02 09:57 45,056 -c--a-w C:\WINDOWS\inf\Slntinst.exe
2004-05-10 20:44 32 -csha-w C:\WINDOWS\{4838CF0F-507D-4A93-893E-6D1625DCCB37}.dat
2004-05-10 20:47 32 -csha-w C:\WINDOWS\{C6CEB0A1-2889-41A0-8F80-912C3F553767}.dat
2004-07-27 14:44 56 -csh--r C:\WINDOWS\system32\2DD78CFF0D.sys
2004-09-21 09:10 11,690 -csha-w C:\WINDOWS\system32\KGyGaAvL.sys
2004-05-10 20:44 32 -csha-w C:\WINDOWS\system32\{59C017F5-1562-47A0-ABA4-BB8A731BCA5A}.dat
2004-05-10 20:47 32 -csha-w C:\WINDOWS\system32\{CA438A09-55E8-4ED9-82CE-6696672375C0}.dat
.
(((((((((((((((((((((((((((((
snapshot@2008-09-15_22.34.34.01 )))))))))))))))))))))))))))))))))))))))))
.
- 2004-09-22 17:45:38 161,792 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\cewmdm.dll
+ 2005-01-28 12:44:28 164,864 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\cewmdm.dll
- 2004-09-22 17:45:54 25,088 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll
+ 2005-01-28 12:44:28 25,088 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll
- 2004-09-22 17:45:54 169,472 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSP.dll
+ 2005-01-28 12:44:28 173,568 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSP.dll
- 2004-09-22 17:45:56 360,176 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MSSCP.dll
+ 2005-01-28 12:44:28 364,784 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MSSCP.dll
- 2004-09-22 17:45:56 311,296 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MSWMDM.dll
+ 2005-01-28 12:44:28 315,904 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MSWMDM.dll
- 2004-09-22 17:46:12 30,208 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\WMDMLOG.dll
+ 2005-01-28 12:44:28 28,160 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\WMDMLOG.dll
- 2004-09-22 17:46:12 34,304 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\WMDMPS.dll
+ 2005-01-28 12:44:28 33,792 -c--a-w C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\WMDMPS.dll
+ 2004-09-22 17:46:10 47,104 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\uwdf.exe
+ 2004-09-22 17:46:10 15,872 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\wdfapi.dll
+ 2004-09-22 17:46:10 38,912 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\wdfmgr.exe
+ 2004-09-22 17:46:38 38,912 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\wpd_ci.dll
+ 2004-09-22 17:46:36 61,952 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\wpdconns.dll
+ 2004-09-22 17:46:36 114,176 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\wpdmtp.dll
+ 2004-09-22 17:46:36 331,776 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\wpdmtpdr.dll
+ 2004-09-22 17:46:36 66,560 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\wpdmtpus.dll
+ 2004-09-22 17:46:36 327,680 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\wpdsp.dll
+ 2004-09-22 17:46:38 10,752 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\wpdtrace.dll
+ 2004-09-22 17:46:38 18,944 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\wpdusb.sys
- 2004-09-22 17:46:10 47,104 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\uwdf.exe
+ 2005-01-28 12:44:28 47,104 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\uwdf.exe
- 2004-09-22 17:46:10 15,872 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wdfapi.dll
+ 2005-01-28 12:44:28 15,872 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wdfapi.dll
- 2004-09-22 17:46:10 38,912 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wdfmgr.exe
+ 2005-01-28 12:44:28 38,912 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wdfmgr.exe
- 2004-09-22 17:46:38 38,912 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpd_ci.dll
+ 2005-01-28 12:44:28 38,912 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpd_ci.dll
- 2004-09-22 17:46:36 61,952 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdconns.dll
+ 2005-01-28 12:44:28 61,952 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdconns.dll
- 2004-09-22 17:46:36 114,176 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdmtp.dll
+ 2005-01-28 12:44:28 114,176 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdmtp.dll
- 2004-09-22 17:46:36 331,776 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdmtpdr.dll
+ 2005-01-28 12:44:28 331,776 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdmtpdr.dll
- 2004-09-22 17:46:36 66,560 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdmtpus.dll
+ 2005-01-28 12:44:28 66,560 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdmtpus.dll
- 2004-09-22 17:46:36 327,680 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdsp.dll
+ 2005-01-28 12:44:28 331,264 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdsp.dll
- 2004-09-22 17:46:38 10,752 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdtrace.dll
+ 2005-01-28 12:44:28 10,752 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdtrace.dll
- 2004-09-22 17:46:38 18,944 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdusb.sys
+ 2005-01-28 12:44:28 18,944 -c--a-w C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdusb.sys
+ 2004-09-22 17:46:32 1,181,944 -c--a-w C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}$BACKUP$\System\wmvadvd.dll
- 2004-09-22 17:46:10 380,144 -c--a-w C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\wmadmod.dll
+ 2005-01-28 12:44:28 396,528 -c--a-w C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\wmadmod.dll
- 2004-09-22 17:46:26 773,368 -c--a-w C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\wmsdmod.dll
+ 2005-01-28 12:44:28 774,904 -c--a-w C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\wmsdmod.dll
- 2004-09-22 17:46:30 531,192 -c--a-w C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\wmspdmod.dll
+ 2005-01-28 12:44:28 413,944 -c--a-w C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\wmspdmod.dll
- 2004-09-22 17:46:32 1,181,944 -c--a-w C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\wmvadvd.dll
+ 2005-01-28 12:44:28 1,218,808 -c--a-w C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\wmvadvd.dll
- 2004-09-22 17:46:34 871,160 -c--a-w C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\wmvdmod.dll
+ 2005-01-28 12:44:28 895,736 -c--a-w C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\wmvdmod.dll
+ 2004-09-22 17:46:12 344,064 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}$BACKUP$\System\WMDRMdev.dll
+ 2004-09-22 17:46:14 290,816 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}$BACKUP$\System\WMDRMNet.dll
+ 2004-09-22 17:46:32 1,509,376 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}$BACKUP$\System\WMVADVE.DLL
- 2004-09-22 17:45:44 6,656 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\laprxy.dll
+ 2005-01-28 12:44:28 6,656 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\laprxy.dll
- 2004-09-22 17:45:44 96,768 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\logagent.exe
+ 2005-01-28 12:44:28 96,768 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\logagent.exe
- 2004-09-22 17:46:02 221,184 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\qasf.dll
+ 2005-01-28 12:44:28 221,184 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\qasf.dll
- 2004-09-22 17:46:10 712,704 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmadmoe.dll
+ 2005-01-28 12:44:28 716,288 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmadmoe.dll
- 2004-09-22 17:46:12 229,376 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmasf.dll
+ 2005-01-28 12:44:28 224,768 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmasf.dll
- 2004-09-22 17:46:12 344,064 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\WMDRMdev.dll
+ 2005-01-28 12:44:28 335,872 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\WMDRMdev.dll
- 2004-09-22 17:46:14 290,816 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\WMDRMNet.dll
+ 2005-01-28 12:44:28 290,816 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\WMDRMNet.dll
- 2004-09-22 17:46:14 150,016 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmidx.dll
+ 2005-01-28 12:44:28 150,016 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmidx.dll
- 2004-09-22 17:46:16 1,027,072 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmnetmgr.dll
+ 2005-01-28 12:44:28 1,027,072 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmnetmgr.dll
- 2004-09-22 17:46:26 1,116,160 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmsdmoe2.dll
+ 2005-01-28 12:44:28 1,119,744 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmsdmoe2.dll
- 2004-09-22 17:46:30 936,960 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmspdmoe.dll
+ 2005-01-28 12:44:28 940,544 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmspdmoe.dll
- 2004-09-22 17:46:32 1,509,376 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\WMVADVE.DLL
+ 2005-01-28 12:44:28 1,512,448 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\WMVADVE.DLL
- 2004-09-22 17:46:32 2,362,104 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmvcore.dll
+ 2005-01-28 12:44:28 2,370,296 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmvcore.dll
- 2004-09-22 17:46:34 999,424 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmvdmoe2.dll
+ 2005-01-28 12:44:28 1,003,008 -c--a-w C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\wmvdmoe2.dll
- 2004-09-22 17:45:38 233,472 -c--a-w C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\blackbox.dll
+ 2005-01-28 12:44:28 294,912 -c--a-w C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\blackbox.dll
- 2004-09-22 17:45:42 253,688 -c--a-w C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\drmclien.dll
+ 2005-01-28 12:44:28 258,296 -c--a-w C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\drmclien.dll
- 2004-09-22 17:45:42 95,232 -c--a-w C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\drmstor.dll
+ 2005-01-28 12:44:28 96,768 -c--a-w C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\drmstor.dll
- 2004-09-22 17:45:42 527,360 -c--a-w C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\drmv2clt.dll
+ 2005-01-28 12:44:28 502,272 -c--a-w C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\drmv2clt.dll
- 2004-09-22 17:45:52 141,312 -c--a-w C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\msnetobj.dll
+ 2005-01-28 12:44:28 142,336 -c--a-w C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\msnetobj.dll
- 2004-09-22 17:45:38 233,472 -c--a-w C:\WINDOWS\system32\blackbox.dll
+ 2005-01-28 12:44:28 294,912 -c--a-w C:\WINDOWS\system32\blackbox.dll
- 2004-09-22 17:45:38 161,792 -c--a-w C:\WINDOWS\system32\cewmdm.dll
+ 2005-01-28 12:44:28 164,864 -c--a-w C:\WINDOWS\system32\cewmdm.dll
- 2008-09-15 20:43:21 32,768 -c--a-w C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat
+ 2008-09-16 06:56:48 32,768 -c--a-w C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat
- 2008-09-15 20:43:21 32,768 -c--a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2008-09-16 06:56:48 32,768 -c--a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2008-09-15 20:43:21 49,152 -c--a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2008-09-16 06:56:48 49,152 -c--a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
- 2008-09-15 21:27:46 270,336 ----a-w C:\WINDOWS\system32\config\systemprofile\ntuser.dat
+ 2008-09-16 09:03:48 270,336 ----a-w C:\WINDOWS\system32\config\systemprofile\ntuser.dat
- 2004-09-22 17:45:38 233,472 -c--a-w C:\WINDOWS\system32\dllcache\blackbox.dll
+ 2005-01-28 12:44:28 294,912 -c--a-w C:\WINDOWS\system32\dllcache\blackbox.dll
- 2004-09-22 17:45:38 161,792 -c--a-w C:\WINDOWS\system32\dllcache\cewmdm.dll
+ 2005-01-28 12:44:28 164,864 -c--a-w C:\WINDOWS\system32\dllcache\cewmdm.dll
- 2004-09-22 17:45:42 253,688 -c--a-w C:\WINDOWS\system32\dllcache\drmclien.dll
+ 2005-01-28 12:44:28 258,296 -c--a-w C:\WINDOWS\system32\dllcache\drmclien.dll
- 2004-09-22 17:45:42 95,232 -c--a-w C:\WINDOWS\system32\dllcache\drmstor.dll
+ 2005-01-28 12:44:28 96,768 -c--a-w C:\WINDOWS\system32\dllcache\drmstor.dll
- 2002-12-11 17:09:22 678,912 -c--a-w C:\WINDOWS\system32\dllcache\drmv2clt.dll
+ 2005-01-28 12:44:28 502,272 -c--a-w C:\WINDOWS\system32\dllcache\drmv2clt.dll
- 2004-09-22 17:45:44 6,656 -c--a-w C:\WINDOWS\system32\dllcache\laprxy.dll
+ 2005-01-28 12:44:28 6,656 -c--a-w C:\WINDOWS\system32\dllcache\laprxy.dll
- 2004-09-22 17:45:44 96,768 -c--a-w C:\WINDOWS\system32\dllcache\logagent.exe
+ 2005-01-28 12:44:28 96,768 -c--a-w C:\WINDOWS\system32\dllcache\logagent.exe
- 2004-09-22 17:45:52 141,312 -c--a-w C:\WINDOWS\system32\dllcache\msnetobj.dll
+ 2005-01-28 12:44:28 142,336 -c--a-w C:\WINDOWS\system32\dllcache\msnetobj.dll
- 2004-09-22 17:45:54 169,472 -c--a-w C:\WINDOWS\system32\dllcache\mspmsp.dll
+ 2005-01-28 12:44:28 173,568 -c--a-w C:\WINDOWS\system32\dllcache\mspmsp.dll
- 2004-09-22 17:45:56 360,176 -c--a-w C:\WINDOWS\system32\dllcache\msscp.dll
+ 2005-01-28 12:44:28 364,784 -c--a-w C:\WINDOWS\system32\dllcache\msscp.dll
- 2004-09-22 17:45:56 311,296 -c--a-w C:\WINDOWS\system32\dllcache\mswmdm.dll
+ 2005-01-28 12:44:28 315,904 -c--a-w C:\WINDOWS\system32\dllcache\mswmdm.dll
- 2004-09-22 17:46:02 221,184 -c--a-w C:\WINDOWS\system32\dllcache\qasf.dll
+ 2005-01-28 12:44:28 221,184 -c--a-w C:\WINDOWS\system32\dllcache\qasf.dll
- 2004-09-22 17:46:10 380,144 -c--a-w C:\WINDOWS\system32\dllcache\wmadmod.dll
+ 2005-01-28 12:44:28 396,528 -c--a-w C:\WINDOWS\system32\dllcache\wmadmod.dll
- 2004-09-22 17:46:10 712,704 -c--a-w C:\WINDOWS\system32\dllcache\wmadmoe.dll
+ 2005-01-28 12:44:28 716,288 -c--a-w C:\WINDOWS\system32\dllcache\wmadmoe.dll
- 2004-09-22 17:46:12 229,376 -c--a-w C:\WINDOWS\system32\dllcache\wmasf.dll
+ 2005-01-28 12:44:28 224,768 -c--a-w C:\WINDOWS\system32\dllcache\wmasf.dll
- 2004-09-22 17:46:12 30,208 -c--a-w C:\WINDOWS\system32\dllcache\wmdmlog.dll
+ 2005-01-28 12:44:28 28,160 -c--a-w C:\WINDOWS\system32\dllcache\wmdmlog.dll
- 2004-09-22 17:46:12 34,304 -c--a-w C:\WINDOWS\system32\dllcache\wmdmps.dll
+ 2005-01-28 12:44:28 33,792 -c--a-w C:\WINDOWS\system32\dllcache\wmdmps.dll
- 2004-09-22 17:46:16 1,027,072 -c--a-w C:\WINDOWS\system32\dllcache\wmnetmgr.dll
+ 2005-01-28 12:44:28 1,027,072 -c--a-w C:\WINDOWS\system32\dllcache\wmnetmgr.dll
- 2004-09-22 17:46:26 773,368 -c--a-w C:\WINDOWS\system32\dllcache\wmsdmod.dll
+ 2005-01-28 12:44:28 774,904 -c--a-w C:\WINDOWS\system32\dllcache\wmsdmod.dll
- 2004-09-22 17:46:32 2,362,104 -c--a-w C:\WINDOWS\system32\dllcache\wmvcore.dll
+ 2005-01-28 12:44:28 2,370,296 -c--a-w C:\WINDOWS\system32\dllcache\wmvcore.dll
- 2004-09-22 17:46:34 871,160 -c--a-w C:\WINDOWS\system32\dllcache\wmvdmod.dll
+ 2005-01-28 12:44:28 895,736 -c--a-w C:\WINDOWS\system32\dllcache\wmvdmod.dll
- 2004-09-22 17:46:38 18,944 -c--a-w C:\WINDOWS\system32\drivers\wpdusb.sys
+ 2005-01-28 12:44:28 18,944 -c--a-w C:\WINDOWS\system32\drivers\wpdusb.sys
- 2004-09-22 17:45:42 253,688 -c--a-w C:\WINDOWS\system32\drmclien.dll
+ 2005-01-28 12:44:28 258,296 -c--a-w C:\WINDOWS\system32\drmclien.dll
- 2004-09-22 17:45:42 95,232 -c--a-w C:\WINDOWS\system32\drmstor.dll
+ 2005-01-28 12:44:28 96,768 -c--a-w C:\WINDOWS\system32\drmstor.dll
- 2004-09-22 17:45:42 527,360 -c--a-w C:\WINDOWS\system32\drmv2clt.dll
+ 2005-01-28 12:44:28 502,272 -c--a-w C:\WINDOWS\system32\drmv2clt.dll
- 2004-09-22 17:45:44 6,656 -c--a-w C:\WINDOWS\system32\laprxy.dll
+ 2005-01-28 12:44:28 6,656 -c--a-w C:\WINDOWS\system32\laprxy.dll
- 2004-09-22 17:45:44 96,768 -c--a-w C:\WINDOWS\system32\logagent.exe
+ 2005-01-28 12:44:28 96,768 -c--a-w C:\WINDOWS\system32\logagent.exe
- 2004-09-22 17:45:52 141,312 -c--a-w C:\WINDOWS\system32\msnetobj.dll
+ 2005-01-28 12:44:28 142,336 -c--a-w C:\WINDOWS\system32\msnetobj.dll
- 2004-09-22 17:45:54 25,088 -c--a-w C:\WINDOWS\system32\MsPMSNSv.dll
+ 2005-01-28 12:44:28 25,088 -c--a-w C:\WINDOWS\system32\MsPMSNSv.dll
- 2004-09-22 17:45:54 169,472 -c--a-w C:\WINDOWS\system32\MsPMSP.dll
+ 2005-01-28 12:44:28 173,568 -c--a-w C:\WINDOWS\system32\MsPMSP.dll
- 2004-09-22 17:45:56 360,176 -c--a-w C:\WINDOWS\system32\MSSCP.dll
+ 2005-01-28 12:44:28 364,784 -c--a-w C:\WINDOWS\system32\MSSCP.dll
- 2004-09-22 17:45:56 311,296 -c--a-w C:\WINDOWS\system32\MSWMDM.dll
+ 2005-01-28 12:44:28 315,904 -c--a-w C:\WINDOWS\system32\MSWMDM.dll
- 2004-09-22 17:46:02 221,184 -c--a-w C:\WINDOWS\system32\qasf.dll
+ 2005-01-28 12:44:28 221,184 -c--a-w C:\WINDOWS\system32\qasf.dll
- 2004-09-22 17:46:10 47,104 -c--a-w C:\WINDOWS\system32\uwdf.exe
+ 2005-01-28 12:44:28 47,104 -c--a-w C:\WINDOWS\system32\uwdf.exe
- 2004-09-22 17:46:10 15,872 -c--a-w C:\WINDOWS\system32\wdfapi.dll
+ 2005-01-28 12:44:28 15,872 -c--a-w C:\WINDOWS\system32\wdfapi.dll
- 2004-09-22 17:46:10 38,912 -c--a-w C:\WINDOWS\system32\wdfmgr.exe
+ 2005-01-28 12:44:28 38,912 -c--a-w C:\WINDOWS\system32\wdfmgr.exe
- 2004-09-22 17:46:10 380,144 -c--a-w C:\WINDOWS\system32\wmadmod.dll
+ 2005-01-28 12:44:28 396,528 -c--a-w C:\WINDOWS\system32\wmadmod.dll
- 2004-09-22 17:46:10 712,704 -c--a-w C:\WINDOWS\system32\wmadmoe.dll
+ 2005-01-28 12:44:28 716,288 -c--a-w C:\WINDOWS\system32\wmadmoe.dll
- 2004-09-22 17:46:12 229,376 -c--a-w C:\WINDOWS\system32\wmasf.dll
+ 2005-01-28 12:44:28 224,768 -c--a-w C:\WINDOWS\system32\wmasf.dll
- 2004-09-22 17:46:12 30,208 -c--a-w C:\WINDOWS\system32\WMDMLOG.dll
+ 2005-01-28 12:44:28 28,160 -c--a-w C:\WINDOWS\system32\WMDMLOG.dll
- 2004-09-22 17:46:12 34,304 -c--a-w C:\WINDOWS\system32\WMDMPS.dll
+ 2005-01-28 12:44:28 33,792 -c--a-w C:\WINDOWS\system32\WMDMPS.dll
- 2004-09-22 17:46:12 344,064 -c--a-w C:\WINDOWS\system32\WMDRMdev.dll
+ 2005-01-28 12:44:28 335,872 -c--a-w C:\WINDOWS\system32\WMDRMdev.dll
- 2004-09-22 17:46:14 290,816 -c--a-w C:\WINDOWS\system32\WMDRMNet.dll
+ 2005-01-28 12:44:28 290,816 -c--a-w C:\WINDOWS\system32\WMDRMNet.dll
- 2004-09-22 17:46:14 150,016 -c--a-w C:\WINDOWS\system32\wmidx.dll
+ 2005-01-28 12:44:28 150,016 -c--a-w C:\WINDOWS\system32\wmidx.dll
- 2004-09-22 17:46:16 1,027,072 -c--a-w C:\WINDOWS\system32\wmnetmgr.dll
+ 2005-01-28 12:44:28 1,027,072 -c--a-w C:\WINDOWS\system32\wmnetmgr.dll
- 2004-09-22 17:46:26 773,368 -c--a-w C:\WINDOWS\system32\wmsdmod.dll
+ 2005-01-28 12:44:28 774,904 -c--a-w C:\WINDOWS\system32\wmsdmod.dll
- 2004-09-22 17:46:26 1,116,160 -c--a-w C:\WINDOWS\system32\wmsdmoe2.dll
+ 2005-01-28 12:44:28 1,119,744 -c--a-w C:\WINDOWS\system32\wmsdmoe2.dll
- 2004-09-22 17:46:30 531,192 -c--a-w C:\WINDOWS\system32\wmspdmod.dll
+ 2005-01-28 12:44:28 413,944 -c--a-w C:\WINDOWS\system32\wmspdmod.dll
- 2004-09-22 17:46:30 936,960 -c--a-w C:\WINDOWS\system32\wmspdmoe.dll
+ 2005-01-28 12:44:28 940,544 -c--a-w C:\WINDOWS\system32\wmspdmoe.dll
- 2004-09-22 17:46:32 1,181,944 -c--a-w C:\WINDOWS\system32\wmvadvd.dll
+ 2005-01-28 12:44:28 1,218,808 -c--a-w C:\WINDOWS\system32\wmvadvd.dll
- 2004-09-22 17:46:32 1,509,376 -c--a-w C:\WINDOWS\system32\WMVADVE.DLL
+ 2005-01-28 12:44:28 1,512,448 -c--a-w C:\WINDOWS\system32\WMVADVE.DLL
- 2004-09-22 17:46:32 2,362,104 -c--a-w C:\WINDOWS\system32\wmvcore.dll
+ 2005-01-28 12:44:28 2,370,296 -c--a-w C:\WINDOWS\system32\wmvcore.dll
- 2004-09-22 17:46:34 871,160 -c--a-w C:\WINDOWS\system32\wmvdmod.dll
+ 2005-01-28 12:44:28 895,736 -c--a-w C:\WINDOWS\system32\wmvdmod.dll
- 2004-09-22 17:46:34 999,424 -c--a-w C:\WINDOWS\system32\wmvdmoe2.dll
+ 2005-01-28 12:44:28 1,003,008 -c--a-w C:\WINDOWS\system32\wmvdmoe2.dll
- 2004-09-22 17:46:38 38,912 -c--a-w C:\WINDOWS\system32\wpd_ci.dll
+ 2005-01-28 12:44:28 38,912 -c--a-w C:\WINDOWS\system32\wpd_ci.dll
- 2004-09-22 17:46:36 61,952 -c--a-w C:\WINDOWS\system32\wpdconns.dll
+ 2005-01-28 12:44:28 61,952 -c--a-w C:\WINDOWS\system32\wpdconns.dll
- 2004-09-22 17:46:36 114,176 -c--a-w C:\WINDOWS\system32\wpdmtp.dll
+ 2005-01-28 12:44:28 114,176 -c--a-w C:\WINDOWS\system32\wpdmtp.dll
- 2004-09-22 17:46:36 331,776 -c--a-w C:\WINDOWS\system32\wpdmtpdr.dll
+ 2005-01-28 12:44:28 331,776 -c--a-w C:\WINDOWS\system32\wpdmtpdr.dll
- 2004-09-22 17:46:36 66,560 -c--a-w C:\WINDOWS\system32\wpdmtpus.dll
+ 2005-01-28 12:44:28 66,560 -c--a-w C:\WINDOWS\system32\wpdmtpus.dll
- 2004-09-22 17:46:36 327,680 -c--a-w C:\WINDOWS\system32\wpdsp.dll
+ 2005-01-28 12:44:28 331,264 -c--a-w C:\WINDOWS\system32\wpdsp.dll
- 2004-09-22 17:46:38 10,752 -c--a-w C:\WINDOWS\system32\wpdtrace.dll
+ 2005-01-28 12:44:28 10,752 -c--a-w C:\WINDOWS\system32\wpdtrace.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\disallowrun]
"0"= blackd.exe
"1"= blackice.exe
"2"= lockdown.exe
"3"= lockdown2000.exe
"4"= netmon.exe
"5"= processmonitor.exe
"6"= taskkill.exe
"7"= tskill.exe
"8"= smc.exe
"9"= sniffem.exe
"10"= zapro.exe
"11"= zlclient.exe
"12"= zonealarm.exe
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "C:\Program Files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2008-07-23 16:28 352256 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LMIinit]
2008-05-28 12:32 87352 C:\WINDOWS\system32\LMIinit.dll
R2 LMIRfsDriver;LogMeIn Remote File System Driver;C:\WINDOWS\System32\drivers\LMIRfsDriver.sys [2008-03-07 45848]
R3 BTCOMM;BTCOMM;C:\WINDOWS\System32\drivers\Btcomm.sys [2003-04-14 55616]
R3 BTKRNBDG;Bluetooth COM Bridge;C:\WINDOWS\System32\DRIVERS\btkrnbdg.sys [2003-03-18 15876]
R3 CALIAUD;Conexant AMC 3D ENVIRONMENTAL AUDIO;C:\WINDOWS\System32\drivers\caliaud.sys [2002-11-05 291328]
R3 CALIHALA;CALIHALA;C:\WINDOWS\System32\drivers\calihal.sys [2002-11-05 244608]
R3 DP83815;National Semiconductor Corp. DP83815/816 NDIS 5.0 Miniport Driver;C:\WINDOWS\System32\DRIVERS\DP83815.SYS [2003-10-17 16512]
R3 vad_multi;Windigo Virtual Audio Device (WDM);C:\WINDOWS\System32\drivers\vadmulti.sys [2003-11-05 19840]
S2 LMIInfo;LogMeIn Kernel Information Provider;C:\Program Files\LogMeIn\x86\RaInfo.sys [2008-02-28 12856]
S3 CSRBC01;%CSRBC01.SvcDesc%;C:\WINDOWS\System32\Drivers\csrbc01.sys [2003-10-29 24523]
S3 FA312;NETGEAR FA330/FA312/FA311 Fast Ethernet Adapter Driver;C:\WINDOWS\System32\DRIVERS\FA312nd5.sys [2001-08-17 16074]
S3 PRISM_ICB;NETGEAR WG511 Wireless LAN Driver;C:\WINDOWS\System32\DRIVERS\WG511ICB.sys [ ]
S3 WLAN;NETGEAR Wireless 802.11b LAN Driver;C:\WINDOWS\System32\DRIVERS\MA401RB.SYS [2003-03-05 614400]
S3 WNUSCTLH;NEC 606 CONTROL Driver;C:\WINDOWS\System32\DRIVERS\WNUSCTLH.SYS [2002-04-18 46810]
S3 WNUSENUH;NEC 606 ENUMERATION Driver;C:\WINDOWS\System32\DRIVERS\WNUSENUH.SYS [2002-04-18 14458]
S3 WNUSOBXH;NEC 606 OBEX Port Driver;C:\WINDOWS\System32\DRIVERS\WNUSOBXH.sys [2002-09-12 33536]
S3 WNUSTACH;NEC 606 Command Port Driver;C:\WINDOWS\System32\DRIVERS\WNUSTACH.sys [2002-04-18 28304]
S4 Lmhic2oegi;Lmhic2oegi;C:\WINDOWS\System32\drivers\rasacd.sys [2001-08-18 8832]
.
Contents of the 'Scheduled Tasks' folder
.
.
------- Supplementary Scan -------
.
R0 -: HKCU-Main,Start Page = hxxp://google.com
R0 -: HKLM-Main,Start Page = hxxp://home.bt.yahoo.com
R0 -: HKLM-Main,Search Bar = hxxp://uk.red.clientapps.yahoo.com/customize/btyahoo/defaults/sb/*http://uk.docs.yahoo.com/info/bt_side.html
R1 -: HKCU-SearchURL,(Default) = hxxp://uk.red.clientapps.yahoo.com/customize/btyahoo/defaults/su/*http://uk.search.yahoo.com/
O16 -: {1803B9EF-9905-4F34-AFC4-05D1BAB28801} - hxxp://us.dl1.yimg.com/download.yahoo.com/dl/controls/yregucfg/2004_10_11_1/yregucfg.cab
C:\WINDOWS\Downloaded Program Files\yregucfg.dll
O16 -: {1EEC3C99-7AA3-4F6E-B381-AF6942B51618} - hxxp://www.lazychestnuts.net/0015/ph/pup.CAB
C:\WINDOWS\Downloaded Program Files\pup.INF
C:\WINDOWS\System32\mscomctl.ocx
C:\WINDOWS\System32\MSVBVM60.DLL
C:\WINDOWS\System32\OLEAUT32.DLL
C:\WINDOWS\System32\OLEPRO32.DLL
C:\WINDOWS\System32\ASYCFILT.DLL
C:\WINDOWS\System32\STDOLE2.TLB
C:\WINDOWS\System32\COMCAT.DLL
C:\WINDOWS\Downloaded Program Files\pup.exe
O16 -: {4D561B31-49A0-4E2C-8AFF-353468EC669B} - hxxp://www.greasypalm.co.uk/bho/update/GreasyPalm.cab
C:\WINDOWS\Downloaded Program Files\GreasyPalm.inf
C:\WINDOWS\Downloaded Program Files\GreasyPalmHelper.dll
O16 -: {4E62C4DE-627D-4604-B157-4B7D6B09F02E} - hxxps://moneymanager.egg.com/Pinsafe/accounttracking.cab
C:\WINDOWS\Downloaded Program Files\accounttracking.dll
O16 -: {71057C18-0507-4747-86BC-E11CE7512C5F} - hxxp://register.btinternet.com/templates/btmailcontrol013.cab
C:\WINDOWS\Downloaded Program Files\btmailcontrol.inf
C:\WINDOWS\Downloaded Program Files\btmailcontrol.dll
O16 -: {AB676D96-BE22-4133-A45F-9FD6376366DA} - hxxp://www.freefunmp3.com/contenido/IconoMail.cab
C:\WINDOWS\Downloaded Program Files\msamail.inf
O16 -: {B9A296D4-38AC-4566-8168-F7ACAF7D35E6} - hxxp://imlive.com/ChatSource/gVideoContol.cab
C:\WINDOWS\Downloaded Program Files\gVideoContol.inf
C:\WINDOWS\System32\Unicows.dll
C:\WINDOWS\Downloaded Program Files\EStream7Decoder.dll
C:\WINDOWS\Downloaded Program Files\EStream8Decoder.dll
C:\WINDOWS\Downloaded Program Files\EyeStream7.dll
C:\WINDOWS\Downloaded Program Files\GSM.dll
C:\WINDOWS\Downloaded Program Files\MELP.dll
C:\WINDOWS\Downloaded Program Files\MID.ocx
C:\WINDOWS\Downloaded Program Files\SslNetwork.dll
C:\WINDOWS\Downloaded Program Files\CoVideoMessage.ocx
C:\WINDOWS\Downloaded Program Files\ChatRoom.ocx
C:\WINDOWS\Downloaded Program Files\CoVideoWindow.ocx
C:\WINDOWS\Downloaded Program Files\VideoSession.ocx
.
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...