((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) ))
.
2009-11-04 21:58 . 2008-12-19 21:48 -------- d-----w- c:\documents and settings\LocalService\Application Data\SACore
2009-11-04 18:59 . 2009-08-31 16:03 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-11-03 03:47 . 2008-10-21 05:24 -------- d-----w- c:\documents and settings\All Users\Application Data\Lavasoft
2009-11-01 23:49 . 2009-03-23 19:58 117760 ----a-w- c:\documents and settings\Owner\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\ UIREPAIR.DLL
2009-10-31 14:38 . 2008-10-22 18:56 9288 ----a-w- c:\documents and settings\Owner\Application Data\wklnhst.dat
2009-10-21 22:28 . 2008-10-22 17:43 6018 ----a-w- c:\documents and settings\Georgina Clark\Application Data\wklnhst.dat
2009-10-20 23:32 . 2008-10-22 17:09 82960 ----a-w- c:\documents and settings\Georgina Clark\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-10-20 21:50 . 2008-10-20 22:24 82960 ----a-w- c:\documents and settings\Owner\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-10-20 18:56 . 2008-10-20 22:27 -------- d-----w- c:\program files\Microsoft Works
2009-10-19 17:15 . 2008-10-20 23:34 -------- d-----w- c:\program files\Common Files\InstallShield
2009-10-17 15:36 . 2008-10-24 21:13 -------- d-----w- c:\program files\Common Files\Adobe
2009-10-16 18:47 . 2009-09-11 18:42 -------- d-----w- c:\program files\rsqwsd
2009-10-16 18:45 . 2009-09-11 18:41 -------- d-----w- c:\program files\kjtqqw
2009-09-21 15:35 . 2009-09-21 15:35 -------- d-----w- c:\documents and settings\Owner\Application Data\HpUpdate
2009-09-21 15:35 . 2008-10-20 22:46 -------- d-----w- c:\program files\HP
2009-09-11 14:18 . 2004-08-12 14:01 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-04 21:03 . 2004-08-12 14:00 58880 ----a-w- c:\windows\system32\msasn1.dll
2009-08-29 08:08 . 2009-08-29 08:08 9728 ----a-w- c:\windows\system32\ctfmon_xy.exe
2009-08-29 08:08 . 2004-08-12 14:09 916480 ----a-w- c:\windows\system32\wininet.dll
2009-08-27 04:41 . 2008-10-20 22:43 49920 ----a-w- c:\windows\system32\drivers\HPZid412.sys
2009-08-27 04:41 . 2008-10-20 22:43 16496 ----a-w- c:\windows\system32\drivers\HPZipr12.sys
2009-08-27 04:40 . 2008-10-20 22:43 21568 ----a-w- c:\windows\system32\drivers\HPZius12.sys
2009-08-26 08:00 . 2004-08-12 14:06 247326 ----a-w- c:\windows\system32\strmdll.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-14 1695232]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 1404928]
"Microsoft Works Update Detection"="c:\program files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe" [2003-06-07 50688]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2009-05-14 2029640]
"ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2006-02-10 344064]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2005-5-11 282624]
HP Image Zone Fast Start.lnk - c:\program files\HP\Digital Imaging\bin\hpqthb08.exe [2005-5-11 73728]
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqDIA.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\WINDOWS\\system32\\mmc.exe"=
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [11/1/2009 8:52 AM 64288]
R0 tffsport;M-Systems DiskOnChip 2000;c:\windows\system32\drivers\tffsport.sys [12/5/2008 1:27 PM 149376]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [5/14/2009 2:47 PM 107256]
R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfw tdir.sys [5/14/2009 2:49 PM 94360]
R2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [5/14/2009 2:47 PM 731840]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\McAfee\SiteAdvisor\McSACore.exe [12/19/2008 2:25 PM 210216]
S1 SASKUTIL;SASKUTIL;\??\c:\program files\SUPERAntiSpyware\SASKUTIL.sys --> c:\program files\SUPERAntiSpyware\SASKUTIL.sys [?]
C