((((((((((((((((((((((((((((( SnapShot@2009-05-14_02.35.01 )))))))))))))))))))))))))))))))))))))))))
.
+ 2005-06-17 21:13 . 2009-01-07 22:21 26144 c:\windows\system32\spupdsvc.exe
+ 2006-07-12 19:45 . 2009-01-07 22:20 16928 c:\windows\system32\spmsg.dll
+ 2004-08-10 18:51 . 2009-03-08 08:31 46592 c:\windows\system32\pngfilt.dll
+ 2006-06-29 12:05 . 2009-01-07 22:20 23552 c:\windows\system32\normaliz.dll
- 2006-06-29 12:05 . 2006-06-29 12:05 23552 c:\windows\system32\normaliz.dll
+ 2006-06-28 21:59 . 2009-01-07 22:20 24576 c:\windows\system32\nlsdl.dll
- 2006-06-28 21:59 . 2006-06-28 21:59 24576 c:\windows\system32\nlsdl.dll
+ 2004-08-10 18:51 . 2009-03-08 08:31 66560 c:\windows\system32\mshtmled.dll
+ 2009-03-08 08:31 . 2009-03-08 08:31 13312 c:\windows\system32\msfeedssync.exe
+ 2009-03-08 08:31 . 2009-03-08 08:31 55296 c:\windows\system32\msfeedsbs.dll
+ 2004-08-10 18:51 . 2009-03-08 08:33 25600 c:\windows\system32\jsproxy.dll
+ 2004-08-10 18:51 . 2009-03-08 08:32 94720 c:\windows\system32\inseng.dll
+ 2006-10-17 17:01 . 2009-03-08 08:32 36864 c:\windows\system32\ieudinit.exe
+ 2004-08-10 18:51 . 2009-03-08 08:32 55808 c:\windows\system32\iernonce.dll
- 2006-06-29 12:05 . 2006-06-29 12:05 26112 c:\windows\system32\idndl.dll
+ 2006-06-29 12:05 . 2009-01-07 22:20 26112 c:\windows\system32\idndl.dll
+ 2009-03-08 08:31 . 2009-03-08 08:31 59904 c:\windows\system32\icardie.dll
+ 2009-03-08 08:31 . 2009-03-08 08:31 46592 c:\windows\system32\dllcache\pngfilt.dll
+ 2009-03-08 08:31 . 2009-03-08 08:31 48128 c:\windows\system32\dllcache\mshtmler.dll
+ 2009-03-08 08:31 . 2009-03-08 08:31 66560 c:\windows\system32\dllcache\mshtmled.dll
+ 2009-03-08 08:31 . 2009-03-08 08:31 45568 c:\windows\system32\dllcache\mshta.exe
+ 2009-03-08 08:34 . 2009-03-08 08:34 43008 c:\windows\system32\dllcache\licmgr10.dll
+ 2009-03-08 08:33 . 2009-03-08 08:33 25600 c:\windows\system32\dllcache\jsproxy.dll
+ 2009-03-08 08:32 . 2009-03-08 08:32 94720 c:\windows\system32\dllcache\inseng.dll
+ 2009-03-08 08:31 . 2009-03-08 08:31 34816 c:\windows\system32\dllcache\imgutil.dll
+ 2009-03-08 08:32 . 2009-03-08 08:32 71680 c:\windows\system32\dllcache\iesetup.dll
+ 2009-03-08 08:32 . 2009-03-08 08:32 55808 c:\windows\system32\dllcache\iernonce.dll
+ 2009-03-08 08:24 . 2009-03-08 08:24 68608 c:\windows\system32\dllcache\hmmapi.dll
+ 2009-03-08 08:33 . 2009-03-08 08:33 18944 c:\windows\system32\dllcache\corpol.dll
+ 2009-03-08 08:32 . 2009-03-08 08:32 72704 c:\windows\system32\dllcache\admparse.dll
+ 2009-05-14 19:02 . 2009-05-14 19:02 25214 c:\windows\Installer\{CC016F21-3970-11DE-B878-005056806466}\UNINST_Uninstall_G_408FFBEED62349E08 B232864A94D2864.exe
+ 2009-05-14 19:02 . 2009-05-14 19:02 25214 c:\windows\Installer\{CC016F21-3970-11DE-B878-005056806466}\ShortcutOGL_EB071909B9884F8CBF3D6115 D4ADEE5E.exe
+ 2009-05-14 19:02 . 2009-05-14 19:02 25214 c:\windows\Installer\{CC016F21-3970-11DE-B878-005056806466}\ShortcutDX_EB071909B9884F8CBF3D6115D 4ADEE5E.exe
+ 2009-05-14 19:02 . 2009-05-14 19:02 25214 c:\windows\Installer\{CC016F21-3970-11DE-B878-005056806466}\googleearth.exe1_407B9B5CDAC54F44A75 6B57CAB4E6A8B.exe
+ 2009-05-14 19:02 . 2009-05-14 19:02 25214 c:\windows\Installer\{CC016F21-3970-11DE-B878-005056806466}\googleearth.exe_407B9B5CDAC54F44A756 B57CAB4E6A8B.exe
+ 2009-05-14 19:02 . 2009-05-14 19:02 25214 c:\windows\Installer\{CC016F21-3970-11DE-B878-005056806466}\ARPPRODUCTICON.exe
+ 2009-05-14 20:04 . 2008-04-14 00:12 37888 c:\windows\ie8\url.dll
+ 2009-05-14 20:05 . 2009-03-08 18:23 58464 c:\windows\ie8\spuninst\iecustom.dll
+ 2009-05-14 20:04 . 2008-04-14 00:12 39424 c:\windows\ie8\pngfilt.dll
+ 2009-05-14 20:04 . 2008-04-14 00:12 96256 c:\windows\ie8\occache.dll
+ 2009-05-14 20:04 . 2008-04-13 16:26 56832 c:\windows\ie8\mshtmler.dll
+ 2009-05-14 20:04 . 2008-04-14 00:12 29184 c:\windows\ie8\mshta.exe
+ 2009-05-14 20:04 . 2008-04-14 00:11 22016 c:\windows\ie8\licmgr10.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 15872 c:\windows\ie8\jsproxy.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 96256 c:\windows\ie8\inseng.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 35840 c:\windows\ie8\imgutil.dll
+ 2009-05-14 20:04 . 2008-04-14 00:12 93184 c:\windows\ie8\iexplore.exe
+ 2009-05-14 20:04 . 2008-04-14 00:11 62976 c:\windows\ie8\iesetup.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 48640 c:\windows\ie8\iernonce.dll
+ 2009-05-14 20:04 . 2009-02-20 08:10 81920 c:\windows\ie8\ieencode.dll
+ 2009-05-14 20:04 . 2008-04-14 00:12 34304 c:\windows\ie8\ie4uinit.exe
+ 2009-05-14 20:04 . 2008-04-14 00:11 38912 c:\windows\ie8\hmmapi.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 35328 c:\windows\ie8\corpol.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 99840 c:\windows\ie8\advpack.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 61440 c:\windows\ie8\admparse.dll
+ 2009-05-14 20:06 . 2009-03-08 08:35 2048 c:\windows\ie8updates\KB969497-IE8\iecompat.dll
- 2006-07-06 20:39 . 2008-04-14 00:12 121856 c:\windows\system32\xmllite.dll
+ 2006-07-06 20:39 . 2009-01-07 22:21 121856 c:\windows\system32\xmllite.dll
+ 2009-03-08 08:34 . 2009-03-08 08:34 208384 c:\windows\system32\WinFXDocObj.exe
+ 2004-08-10 18:51 . 2009-03-08 08:34 236544 c:\windows\system32\webcheck.dll
+ 2004-08-10 18:51 . 2009-03-08 08:34 105984 c:\windows\system32\url.dll
+ 2004-08-10 18:51 . 2009-03-08 08:34 109568 c:\windows\system32\occache.dll
+ 2004-08-10 18:51 . 2009-03-08 08:32 611840 c:\windows\system32\mstime.dll
+ 2004-08-10 18:51 . 2009-03-08 08:34 193536 c:\windows\system32\msrating.dll
+ 2009-03-08 08:32 . 2009-03-08 08:32 594432 c:\windows\system32\msfeeds.dll
+ 2009-01-07 22:20 . 2009-01-07 22:20 265720 c:\windows\system32\msdbg2.dll
+ 2004-08-10 18:51 . 2009-03-08 08:33 726528 c:\windows\system32\jscript.dll
+ 2009-03-08 08:22 . 2009-03-08 08:22 164352 c:\windows\system32\ieui.dll
+ 2004-08-10 18:51 . 2009-03-08 08:31 183808 c:\windows\system32\iepeers.dll
+ 2004-08-10 18:51 . 2009-03-08 18:09 391536 c:\windows\system32\iedkcs32.dll
+ 2009-03-08 08:11 . 2009-03-08 08:11 445952 c:\windows\system32\ieapfltr.dll
+ 2004-08-10 18:51 . 2009-03-08 08:32 163840 c:\windows\system32\ieakui.dll
+ 2004-08-10 18:51 . 2009-03-08 08:33 229376 c:\windows\system32\ieaksie.dll
+ 2004-08-10 18:51 . 2009-03-08 08:33 125952 c:\windows\system32\ieakeng.dll
+ 2004-08-10 18:51 . 2009-03-08 08:32 173056 c:\windows\system32\ie4uinit.exe
+ 2004-08-10 18:51 . 2009-03-08 08:31 216064 c:\windows\system32\dxtrans.dll
+ 2004-08-10 18:51 . 2009-03-08 08:31 348160 c:\windows\system32\dxtmsft.dll
+ 2008-04-21 06:44 . 2009-03-08 08:34 914944 c:\windows\system32\dllcache\wininet.dll
+ 2009-03-08 08:34 . 2009-03-08 08:34 236544 c:\windows\system32\dllcache\webcheck.dll
+ 2009-03-08 08:33 . 2009-03-08 08:33 759296 c:\windows\system32\dllcache\VGX.dll
+ 2008-05-09 10:53 . 2009-03-08 08:33 420352 c:\windows\system32\dllcache\vbscript.dll
+ 2009-03-08 08:34 . 2009-03-08 08:34 105984 c:\windows\system32\dllcache\url.dll
+ 2009-01-07 22:20 . 2009-01-07 22:20 134144 c:\windows\system32\dllcache\sqmapi.dll
+ 2009-01-07 22:20 . 2009-01-07 22:20 474112 c:\windows\system32\dllcache\shlwapi.dll
+ 2009-03-08 08:34 . 2009-03-08 08:34 109568 c:\windows\system32\dllcache\occache.dll
+ 2009-03-08 08:32 . 2009-03-08 08:32 611840 c:\windows\system32\dllcache\mstime.dll
+ 2009-03-08 08:34 . 2009-03-08 08:34 193536 c:\windows\system32\dllcache\msrating.dll
+ 2004-08-10 18:51 . 2009-03-08 08:22 156160 c:\windows\system32\dllcache\msls31.dll
+ 2008-05-09 10:53 . 2009-03-08 08:33 726528 c:\windows\system32\dllcache\jscript.dll
+ 2009-03-08 18:09 . 2009-03-08 18:09 638816 c:\windows\system32\dllcache\iexplore.exe
+ 2009-03-08 08:31 . 2009-03-08 08:31 183808 c:\windows\system32\dllcache\iepeers.dll
+ 2009-03-08 18:09 . 2009-03-08 18:09 391536 c:\windows\system32\dllcache\iedkcs32.dll
+ 2009-03-08 08:32 . 2009-03-08 08:32 163840 c:\windows\system32\dllcache\ieakui.dll
+ 2009-03-08 08:33 . 2009-03-08 08:33 229376 c:\windows\system32\dllcache\ieaksie.dll
+ 2009-03-08 08:33 . 2009-03-08 08:33 125952 c:\windows\system32\dllcache\ieakeng.dll
+ 2009-03-08 08:32 . 2009-03-08 08:32 173056 c:\windows\system32\dllcache\ie4uinit.exe
+ 2009-03-08 08:31 . 2009-03-08 08:31 216064 c:\windows\system32\dllcache\dxtrans.dll
+ 2009-03-08 08:31 . 2009-03-08 08:31 348160 c:\windows\system32\dllcache\dxtmsft.dll
+ 2009-03-08 08:32 . 2009-03-08 08:32 128512 c:\windows\system32\dllcache\advpack.dll
+ 2004-08-10 18:50 . 2009-03-08 08:32 128512 c:\windows\system32\advpack.dll
+ 2009-05-14 20:06 . 2008-07-09 07:38 382840 c:\windows\ie8updates\KB969497-IE8\spuninst\updspapi.dll
+ 2009-05-14 20:06 . 2008-07-09 07:38 231288 c:\windows\ie8updates\KB969497-IE8\spuninst\spuninst.exe
+ 2009-05-14 20:04 . 2009-02-20 08:10 666112 c:\windows\ie8\wininet.dll
+ 2009-05-14 20:04 . 2008-04-14 00:12 276480 c:\windows\ie8\webcheck.dll
+ 2009-05-14 20:04 . 2008-04-14 00:12 851968 c:\windows\ie8\vgx.dll
+ 2009-05-14 20:04 . 2008-05-09 10:53 430080 c:\windows\ie8\vbscript.dll
+ 2009-05-14 20:04 . 2009-02-20 08:10 619520 c:\windows\ie8\urlmon.dll
+ 2009-05-14 20:05 . 2009-01-07 22:21 382496 c:\windows\ie8\spuninst\updspapi.dll
+ 2009-05-14 20:05 . 2009-01-07 22:20 231456 c:\windows\ie8\spuninst\spuninst.exe
+ 2009-05-14 20:04 . 2008-04-14 00:12 532480 c:\windows\ie8\mstime.dll
+ 2009-05-14 20:04 . 2008-04-14 00:12 146432 c:\windows\ie8\msrating.dll
+ 2009-05-14 20:04 . 2004-08-04 11:00 146432 c:\windows\ie8\msls31.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 449024 c:\windows\ie8\mshtmled.dll
+ 2009-05-14 20:04 . 2008-05-09 10:53 512000 c:\windows\ie8\jscript.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 251904 c:\windows\ie8\iepeers.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 323584 c:\windows\ie8\iedkcs32.dll
+ 2009-05-14 20:04 . 2004-08-04 11:00 221184 c:\windows\ie8\ieakui.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 216576 c:\windows\ie8\ieaksie.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 143360 c:\windows\ie8\ieakeng.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 205312 c:\windows\ie8\dxtrans.dll
+ 2009-05-14 20:04 . 2008-04-14 00:11 357888 c:\windows\ie8\dxtmsft.dll
+ 2004-08-10 18:51 . 2009-03-08 08:34 1206784 c:\windows\system32\urlmon.dll
+ 2004-08-10 18:51 . 2009-03-08 08:41 5937152 c:\windows\system32\mshtml.dll
+ 2009-03-08 08:32 . 2009-03-08 08:32 1985024 c:\windows\system32\iertutil.dll
+ 2009-02-07 01:07 . 2009-02-07 01:07 3698584 c:\windows\system32\ieapfltr.dat
+ 2008-06-26 08:15 . 2009-03-08 08:34 1206784 c:\windows\system32\dllcache\urlmon.dll
+ 2008-04-21 06:44 . 2009-03-08 08:41 5937152 c:\windows\system32\dllcache\mshtml.dll
+ 2009-01-07 22:20 . 2009-01-07 22:20 1022976 c:\windows\system32\dllcache\browseui.dll
+ 2009-05-14 20:04 . 2009-02-20 08:11 3068416 c:\windows\ie8\mshtml.dll
+ 2005-05-10 22:42 . 2009-05-07 07:16 24699336 c:\windows\system32\MRT.exe
+ 2009-03-08 08:39 . 2009-03-08 08:39 11063808 c:\windows\system32\ieframe.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-02-16 1601304]
"d"="c:\program files\Java\jre6\bin\dejusched.exe" [2009-05-12 67584]
"TrojanScanner"="c:\program files\Trojan Remover\Trjscan.exe" [2009-05-10 1059208]
"dellsupportcenter"="c:\program files\Dell Support Center\bin\sprtcmd.exe" [2008-08-13 206064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\RunOnce]
"GrpConv"="grpconv -o" [X]
"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2009-04-06 1277584]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\IntelWireless]
2004-09-07 22:08 110592 ----a-w c:\program files\Intel\Wireless\Bin\LgNotify.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-02-16 21:35 10520 ----a-w c:\windows\system32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"="0x00000000"
"UpdatesDisableNotify"="0x00000000"
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Dell Inc\\Dell Picture Studio v3.0\\launch.exe"=
"c:\\Program Files\\Hewlett-Packard\\AiO\\hp officejet d series\\FRU\\Itp32.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\HP Software Update\\HPWUCli.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
"c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=
"c:\\Documents and Settings\\Tim Murphy\\Desktop\\misc\\LimeWire\\LimeWire.exe"=
"c:\\Westwood\\RA2\\game.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\GloballyOpenPorts\List]
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2/16/2009 5:35 PM 64160]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [1/18/2009 5:34 PM 953168]
S1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2/16/2009 5:35 PM 325128]
S1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2/16/2009 5:35 PM 107272]
S1 DW;DW; [x]
S2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe [2/16/2009 5:35 PM 903960]
S2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [2/16/2009 5:35 PM 298264]
S2 gupdate1c9d4c62c1a6df4;Google Update Service (gupdate1c9d4c62c1a6df4);c:\program files\Google\Update\GoogleUpdate.exe [5/14/2009 2:59 PM 133104]
S3 AX88172;ASIX AX88172 USB2 to Fast Ethernet Adapter;c:\windows\system32\drivers\ax88172.sys [3/9/2005 3:52 PM 10496]
S3 dwusbdnt;dwusbdnt;c:\windows\system32\drivers\dwus bdnt.sys [4/29/2009 8:44 PM 10368]
[HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\explorer\mountpoints2\E]
\Shell\AutoRun\command - E:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\explorer\mountpoints2\{345e5ec0-be72-11da-9a7b-0011437191c5}]
\Shell\AutoRun\command - e:\jdsecure\Windows\JDSecure31.exe
[HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\explorer\mountpoints2\{4cde5816-9c82-11dc-9d6a-00505b0161f5}]
\Shell\AutoRun\command - f:\wd_windows_tools\setup.exe
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSe tup SIGNUP
.
Contents of the 'Scheduled Tasks' folder
2009-05-11 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-01-18 20:37]
2009-05-14 c:\windows\Tasks\GoogleUpdateTaskMachine.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-05-14 18:59]
.
- - - - ORPHANS REMOVED - - - -
Toolbar-Locked - (no file)
HKLM-RunOnce-<NO NAME> - (no file)
.
------- Supplementary Scan -------
.
uInternet Settings,ProxyOverride = <local>
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
.
************************************************** ************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
GMER - Rootkit Detector and Remover
Rootkit scan 2009-05-14 18:55
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
************************************************** ************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-142327467-3618201263-4169217308-1008\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:c1,05,3f,79,7e,19,e9,43,00,bd,3b,d3,40,64 ,d3,70,c1,88,5d,ce,70,72,c5,
17,4d,c3,2a,f6,72,30,10,a1,8b,c3,d3,68,79,e7,93,30 ,95,7d,51,6e,19,78,2c,f1,\
"??"=hex:a4,85,77,d6,48,b5,d7,21,60,bf,ff,19,6f,ed ,a1,f1
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(224)
c:\program files\Intel\Wireless\Bin\LgNotify.dll
.
Completion time: 2009-05-14 18:59
ComboFix-quarantined-files.txt 2009-05-14 22:58
ComboFix2.txt 2009-05-14 02:38
Pre-Run: 30,914,338,816 bytes free
Post-Run: 30,900,219,904 bytes free
338 --- E O F --- 2009-05-14 15:45