Ga met Systeemherstel terug naar een datum toen AntiVir nog niet geïnstalleerd was
Download RSIT naar je Bureaublad
Dubbelklik op RSIT om het te starten.
Klik op Continue in het disclaimer venster.
Zodra de scan beëindigd is, zullen twee logs openen. Post de inhoud van log.txt
(<info.txt
(<
Systeemherstel lukte niet, RSIT wel:
Logfile of random's system information tool 1.05 (written by random/random)
Run by Lucie at 2009-02-07 16:54:19
Microsoft Windows XP Professional Service Pack 3
System drive C: has 14 GB (73%) free of 20 GB
Total RAM: 639 MB (68% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:54:43, on 7-2-2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
D:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe
C:\PROGRA~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe
C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe
C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe
C:\Documents and Settings\Lucie\Bureaublad\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Lucie.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: nwiz.exe /install
O4 - HKLM\..\Run: RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: “C:\Program Files\Java\jre6\bin\jusched.exe”
O4 - HKLM\..\Run: C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: D:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: C:\WINDOWS\System32\CTFMON.EXE (User ‘Lokale service’)
O4 - HKUS\S-1-5-20\..\Run: C:\WINDOWS\System32\CTFMON.EXE (User ‘Netwerkservice’)
O4 - HKUS\S-1-5-18\..\Run: C:\WINDOWS\System32\CTFMON.EXE (User ‘SYSTEM’)
O4 - HKUS\.DEFAULT\..\Run: C:\WINDOWS\System32\CTFMON.EXE (User ‘Default user’)
O4 - Global Startup: HPAiODevice(hp psc 700 series) - 1.lnk = C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra ‘Tools’ menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1233737672577
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1233737938905
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab?e=1233919909583&h=1ddf268090b08fd00ebe5a2984a916f6/&filename=jinstall-6u11-windows-i586-jc.cab
O16 - DPF: {A9F8D9EC-3D0A-4A60-BD82-FBD64BAD370D} - http://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O20 - Winlogon Notify: !SASWinLogon - D:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - D:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
–
End of file - 5922 bytes
======Registry dump======
AVG Safe Search
Spybot-S&D IE Protection - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
Java™ Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll
Java™ Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
“NvCplDaemon”=C:\WINDOWS\System32\NvCpl.dll
“nwiz”=nwiz.exe /install
“NvMediaCenter”=C:\WINDOWS\System32\NvMcTray.dll
“SunJavaUpdateSched”=C:\Program Files\Java\jre6\bin\jusched.exe
“Share-to-Web Namespace Daemon”=C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
“KernelFaultCheck”=C:\WINDOWS\system32\dumprep 0 -k
“CTFMON.EXE”=C:\WINDOWS\system32\ctfmon.exe
“SUPERAntiSpyware”=D:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programma's\Opstarten
HPAiODevice(hp psc 700 series) - 1.lnk - C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe
D:\Program Files\SUPERAntiSpyware\SASWINLO.dll
C:\WINDOWS\system32\WgaLogon.dll
“{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}”=D:\Program Files\SUPERAntiSpyware\SASSEH.DLL
“dontdisplaylastusername”=0
“legalnoticecaption”=
“legalnoticetext”=
“shutdownwithoutlogon”=1
“undockwithoutlogon”=1
“NoDriveTypeAutoRun”=145
“%windir%\Network Diagnostic\xpnetdiag.exe”=“%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000”
“%windir%\system32\sessmgr.exe”=“%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019”
“D:\Program Files\Auslogics\AusLogics Disk Defrag\diskdefrag.exe”=“D:\Program Files\Auslogics\AusLogics Disk Defrag\diskdefrag.exe:*:Enabled:AusLogics Disk Defrag”
“%windir%\Network Diagnostic\xpnetdiag.exe”=“%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000”
“%windir%\system32\sessmgr.exe”=“%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019”
======List of files/folders created in the last 1 months======
2009-02-07 16:53:07 —-D—- C:\rsit
2009-02-07 16:47:02 —-SHD—- C:\FOUND.002
2009-02-07 16:46:09 —-D—- C:\Documents and Settings\All Users.WINDOWS\Application Data\SUPERAntiSpyware.com
2009-02-07 16:46:08 —-D—- C:\WINDOWS\ERDNT
2009-02-07 16:23:36 —-D—- C:\Documents and Settings\Lucie\Application Data\SUPERAntiSpyware.com
2009-02-07 15:44:41 —-D—- C:\Qoobox
2009-02-07 14:24:52 —-D—- C:\Program Files\Trend Micro
2009-02-06 18:22:07 —-D—- C:\Documents and Settings\Lucie\Application Data\Macromedia
2009-02-06 18:22:07 —-D—- C:\Documents and Settings\Lucie\Application Data\Adobe
2009-02-06 18:16:43 —-D—- C:\Documents and Settings\All Users.WINDOWS\Application Data\MSN6
2009-02-06 18:16:42 —-D—- C:\Documents and Settings\Lucie\Application Data\MSN6
2009-02-06 17:56:15 —-A—- C:\WINDOWS\system32\wmpns.dll
2009-02-06 16:13:59 —-RA—- C:\WINDOWS\system32\hpocoi08.dll
2009-02-06 13:36:46 —-SHD—- C:\FOUND.001
2009-02-06 11:09:44 —-D—- C:\Documents and Settings\Lucie\Application Data\Desktopicon
2009-02-06 09:28:30 —-D—- C:\WINDOWS\AiOTemp
2009-02-06 09:15:48 —-SHD—- C:\FOUND.000
2009-02-05 18:36:34 —-A—- C:\WINDOWS\system32\aswBoot.exe
2009-02-05 17:35:12 —-D—- C:\Documents and Settings\All Users.WINDOWS\Application Data\Lavasoft
2009-02-05 17:34:04 —-D—- C:\Program Files\Common Files\Wise Installation Wizard
2009-02-05 16:24:54 —-RA—- C:\WINDOWS\system32\prontobj.dll
2009-02-05 16:24:54 —-RA—- C:\WINDOWS\system32\promon.exe
2009-02-05 16:24:54 —-A—- C:\WINDOWS\system32\Prounstl.exe
2009-02-05 16:24:54 —-A—- C:\WINDOWS\system32\IntelNic.dll
2009-02-05 16:24:09 —-D—- C:\WINDOWS\CATROOT
2009-02-05 16:23:50 —-D—- C:\Documents and Settings\Lucie\Application Data\Help
2009-02-05 15:53:39 —-A—- C:\WINDOWS\system32\hpojwia.dll
2009-02-05 15:44:36 —-D—- C:\WINDOWS\system32\appmgmt
2009-02-05 15:40:10 —-RA—- C:\WINDOWS\system32\hh.exe
2009-02-05 15:40:05 —-D—- C:\Documents and Settings\Lucie\Application Data\Verzendmap van Share-to-Web
2009-02-05 15:39:47 —-A—- C:\WINDOWS\Hposcv07.INI
2009-02-05 15:16:09 —-D—- C:\WINDOWS\Downloaded Installations
2009-02-05 14:25:49 —-D—- C:\Program Files\Hewlett-Packard
2009-02-05 14:25:47 —-A—- C:\WINDOWS\IsUninst.exe
2009-02-05 14:24:59 —-D—- C:\WINDOWS\system32\NtmsData
2009-02-05 11:50:48 —-A—- C:\WINDOWS\system32\javaws.exe
2009-02-05 11:50:48 —-A—- C:\WINDOWS\system32\javaw.exe
2009-02-05 11:50:48 —-A—- C:\WINDOWS\system32\java.exe
2009-02-05 11:50:48 —-A—- C:\WINDOWS\system32\deploytk.dll
2009-02-05 11:42:26 —-A—- C:\WINDOWS\system32\MSVCR71.dll
2009-02-05 11:42:26 —-A—- C:\WINDOWS\system32\MSVCP71.dll
2009-02-05 11:42:26 —-A—- C:\WINDOWS\system32\MFC71.dll
2009-02-05 10:29:01 —-D—- C:\Documents and Settings\Lucie\Application Data\WinRAR
2009-02-05 10:07:17 —-D—- C:\WINDOWS\Sun
2009-02-05 09:27:36 —-D—- C:\Program Files\Java
2009-02-05 09:27:35 —-D—- C:\Program Files\Common Files\Java
2009-02-05 09:18:57 —-D—- C:\Documents and Settings\Lucie\Application Data\Sun
2009-02-04 20:21:59 —-D—- C:\Program Files\ReflexiveArcade
2009-02-04 20:10:30 —-D—- C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy
2009-02-04 19:57:46 —-D—- C:\Documents and Settings\Lucie\Application Data\Malwarebytes
2009-02-04 19:57:40 —-D—- C:\Documents and Settings\All Users.WINDOWS\Application Data\Malwarebytes
2009-02-04 17:56:08 —-D—- C:\Documents and Settings\All Users.WINDOWS\Application Data\avg8
2009-02-04 17:20:54 —-A—- C:\WINDOWS\WORDPAD.INI
2009-02-04 15:58:20 —-D—- C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP
2009-02-04 15:58:16 —-A—- C:\WINDOWS\system32\MSSTDFMT.DLL
2009-02-04 15:54:19 —-A—- C:\WINDOWS\system32\STKIT432.DLL
2009-02-04 15:47:21 —-HD—- C:\WINDOWS\$NtUninstallKB951978$
2009-02-04 15:46:49 —-HD—- C:\WINDOWS\$NtUninstallKB954459$
2009-02-04 15:46:39 —-HD—- C:\WINDOWS\$NtUninstallKB952069_WM9$
2009-02-04 15:26:14 —-D—- C:\Documents and Settings\Lucie\Application Data\Auslogics
2009-02-04 15:16:02 —-SHD—- C:\Recycled
2009-02-04 12:38:48 —-HD—- C:\Program Files\InstallShield Installation Information
2009-02-04 12:33:44 —-HD—- C:\WINDOWS\$NtUninstallKB951376-v2$
2009-02-04 12:33:36 —-HD—- C:\WINDOWS\$NtUninstallKB952954$
2009-02-04 12:33:30 —-HD—- C:\WINDOWS\$NtUninstallKB946648$
2009-02-04 12:33:24 —-HD—- C:\WINDOWS\$NtUninstallKB956803$
2009-02-04 12:33:16 —-HD—- C:\WINDOWS\$NtUninstallKB955839$
2009-02-04 12:33:08 —-HD—- C:\WINDOWS\$NtUninstallKB956391$
2009-02-04 12:32:32 —-HD—- C:\WINDOWS\$NtUninstallKB950974$
2009-02-04 12:32:24 —-HD—- C:\WINDOWS\$NtUninstallKB951698$
2009-02-04 12:32:18 —-HD—- C:\WINDOWS\$NtUninstallKB954211$
2009-02-04 12:32:02 —-HD—- C:\WINDOWS\$NtUninstallKB956841$
2009-02-04 12:31:54 —-HD—- C:\WINDOWS\$NtUninstallKB950762$
2009-02-04 12:31:48 —-HD—- C:\WINDOWS\$NtUninstallKB957097$
2009-02-04 12:31:42 —-HD—- C:\WINDOWS\$NtUninstallKB958687$
2009-02-04 12:31:36 —-HD—- C:\WINDOWS\$NtUninstallKB952287$
2009-02-04 12:31:28 —-HD—- C:\WINDOWS\$NtUninstallKB951066$
2009-02-04 12:31:20 —-HD—- C:\WINDOWS\$NtUninstallKB951748$
2009-02-04 12:31:14 —-HD—- C:\WINDOWS\$NtUninstallKB938464$
2009-02-04 12:31:08 —-HD—- C:\WINDOWS\$NtUninstallKB954600$
2009-02-04 12:31:00 —-HD—- C:\WINDOWS\$NtUninstallKB958644$
2009-02-04 12:30:54 —-HD—- C:\WINDOWS\$NtUninstallKB955069$
2009-02-04 12:30:44 —-HD—- C:\WINDOWS\$NtUninstallKB956802$
2009-02-04 12:21:16 —-D—- C:\WINDOWS\Prefetch
2009-02-04 12:16:22 —-D—- C:\WINDOWS\system32\nl
2009-02-04 12:16:22 —-D—- C:\WINDOWS\l2schemas
2009-02-04 12:00:34 —-N—- C:\WINDOWS\system32\wmphoto.dll
2009-02-04 12:00:32 —-N—- C:\WINDOWS\system32\wlanapi.dll
2009-02-04 12:00:30 —-N—- C:\WINDOWS\system32\windowscodecsext.dll
2009-02-04 12:00:30 —-N—- C:\WINDOWS\system32\windowscodecs.dll
2009-02-04 12:00:30 —-N—- C:\WINDOWS\system32\verclsid.exe
2009-02-04 12:00:26 —-N—- C:\WINDOWS\system32\tzchange.exe
2009-02-04 12:00:26 —-N—- C:\WINDOWS\system32\tspkg.dll
2009-02-04 12:00:26 —-N—- C:\WINDOWS\system32\tsgqec.dll
2009-02-04 12:00:18 —-N—- C:\WINDOWS\system32\setupn.exe
2009-02-04 12:00:16 —-N—- C:\WINDOWS\system32\rhttpaa.dll
2009-02-04 12:00:14 —-N—- C:\WINDOWS\system32\rasqec.dll
2009-02-04 12:00:14 —-N—- C:\WINDOWS\system32\qutil.dll
2009-02-04 12:00:12 —-N—- C:\WINDOWS\system32\qcliprov.dll
2009-02-04 12:00:12 —-N—- C:\WINDOWS\system32\qagentrt.dll
2009-02-04 12:00:12 —-N—- C:\WINDOWS\system32\qagent.dll
2009-02-04 12:00:12 —-N—- C:\WINDOWS\system32\photometadatahandler.dll
2009-02-04 12:00:10 —-N—- C:\WINDOWS\system32\onex.dll
2009-02-04 12:00:04 —-N—- C:\WINDOWS\system32\napstat.exe
2009-02-04 12:00:04 —-N—- C:\WINDOWS\system32\napmontr.dll
2009-02-04 12:00:04 —-N—- C:\WINDOWS\system32\napipsec.dll
2009-02-04 12:00:04 —-N—- C:\WINDOWS\system32\msxml6r.dll
2009-02-04 12:00:04 —-N—- C:\WINDOWS\system32\msxml6.dll
2009-02-04 12:00:02 —-N—- C:\WINDOWS\system32\msshavmsg.dll
2009-02-04 12:00:02 —-N—- C:\WINDOWS\system32\mssha.dll
2009-02-04 11:59:56 —-N—- C:\WINDOWS\system32\mmcperf.exe
2009-02-04 11:59:56 —-N—- C:\WINDOWS\system32\mmcfxcommon.dll
2009-02-04 11:59:56 —-N—- C:\WINDOWS\system32\mmcex.dll
2009-02-04 11:59:56 —-N—- C:\WINDOWS\system32\microsoft.managementconsole.dll
2009-02-04 11:59:50 —-N—- C:\WINDOWS\system32\l2gpstore.dll
2009-02-04 11:59:50 —-N—- C:\WINDOWS\system32\kmsvc.dll
2009-02-04 11:59:50 —-N—- C:\WINDOWS\system32\kbdpash.dll
2009-02-04 11:59:50 —-N—- C:\WINDOWS\system32\kbdnepr.dll
2009-02-04 11:59:50 —-N—- C:\WINDOWS\system32\kbdiultn.dll
2009-02-04 11:59:50 —-N—- C:\WINDOWS\system32\kbdbhc.dll
2009-02-04 11:59:48 —-N—- C:\WINDOWS\system32\smtpapi.dll
2009-02-04 11:59:48 —-N—- C:\WINDOWS\system32\rwnh.dll
2009-02-04 11:59:42 —-N—- C:\WINDOWS\system32\eapsvc.dll
2009-02-04 11:59:42 —-N—- C:\WINDOWS\system32\eapqec.dll
2009-02-04 11:59:42 —-N—- C:\WINDOWS\system32\eappprxy.dll
2009-02-04 11:59:42 —-N—- C:\WINDOWS\system32\eapphost.dll
2009-02-04 11:59:42 —-N—- C:\WINDOWS\system32\eappgnui.dll
2009-02-04 11:59:42 —-N—- C:\WINDOWS\system32\eappcfg.dll
2009-02-04 11:59:42 —-N—- C:\WINDOWS\system32\eapp3hst.dll
2009-02-04 11:59:42 —-N—- C:\WINDOWS\system32\eapolqec.dll
2009-02-04 11:59:40 —-N—- C:\WINDOWS\system32\dot3ui.dll
2009-02-04 11:59:40 —-N—- C:\WINDOWS\system32\dot3svc.dll
2009-02-04 11:59:40 —-N—- C:\WINDOWS\system32\dot3msm.dll
2009-02-04 11:59:40 —-N—- C:\WINDOWS\system32\dot3gpclnt.dll
2009-02-04 11:59:40 —-N—- C:\WINDOWS\system32\dot3dlg.dll
2009-02-04 11:59:40 —-N—- C:\WINDOWS\system32\dot3cfg.dll
2009-02-04 11:59:40 —-N—- C:\WINDOWS\system32\dot3api.dll
2009-02-04 11:59:40 —-N—- C:\WINDOWS\system32\dimsroam.dll
2009-02-04 11:59:40 —-N—- C:\WINDOWS\system32\dimsntfy.dll
2009-02-04 11:59:40 —-N—- C:\WINDOWS\system32\dhcpqec.dll
2009-02-04 11:59:40 —-N—- C:\WINDOWS\system32\credssp.dll
2009-02-04 11:59:38 —-N—- C:\WINDOWS\system32\bitsprx4.dll
2009-02-04 11:59:36 —-N—- C:\WINDOWS\system32\azroles.dll
2009-02-04 11:59:34 —-N—- C:\WINDOWS\system32\aaclient.dll
2009-02-04 11:48:42 —-D—- C:\WINDOWS\system32\PreInstall
2009-02-04 11:48:40 —-HD—- C:\WINDOWS\$NtUninstallKB898461$
2009-02-04 11:45:44 —-D—- C:\WINDOWS\Minidump
2009-02-04 11:43:22 —-D—- C:\WINDOWS\ie7updates
2009-02-04 11:42:54 —-D—- C:\WINDOWS\WBEM
2009-02-04 11:42:54 —-D—- C:\WINDOWS\system32\nl-nl
2009-02-04 11:41:40 —-HD—- C:\WINDOWS\ie7
2009-02-04 11:41:20 —-HD—- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2009-02-04 11:41:02 —-HD—- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2009-02-04 11:40:40 —-HD—- C:\WINDOWS\$NtUninstallKB915865$
2009-02-04 11:40:38 —-A—- C:\WINDOWS\system32\xmllite.dll
2009-02-04 11:39:42 —-HD—- C:\WINDOWS\$NtUninstallKB914440$
2009-02-04 11:39:42 —-D—- C:\WINDOWS\network diagnostic
2009-02-04 11:39:34 —-HD—- C:\WINDOWS\$NtUninstallKB904942$
2009-02-04 11:39:34 —-HD—- C:\WINDOWS\$hf_mig$
2009-02-04 10:37:14 —-A—- C:\WINDOWS\system32\mucltui.dll.mui
2009-02-04 10:37:14 —-A—- C:\WINDOWS\system32\mucltui.dll
2009-02-04 10:35:18 —-A—- C:\WINDOWS\system32\MRT.exe
2009-02-04 10:31:48 —-SD—- C:\WINDOWS\system32\Microsoft
2009-02-04 10:26:28 —-D—- C:\WINDOWS\provisioning
2009-02-04 10:26:28 —-D—- C:\WINDOWS\peernet
2009-02-04 10:24:42 —-D—- C:\WINDOWS\ServicePackFiles
2009-02-04 10:21:44 —-A—- C:\WINDOWS\system32\h323log.txt
2009-02-04 10:21:22 —-D—- C:\WINDOWS\system32\ReinstallBackups
2009-02-04 10:20:52 —-A—- C:\WINDOWS\system32\spupdsvc.exe
2009-02-04 10:18:04 —-HD—- C:\WINDOWS\$NtServicePackUninstall$
2009-02-04 10:18:02 —-D—- C:\WINDOWS\EHome
2009-02-04 10:16:30 —-A—- C:\WINDOWS\system32\usbui.dll
2009-02-04 10:16:26 —-A—- C:\WINDOWS\system32\ksuser.dll
2009-02-04 10:15:02 —-A—- C:\WINDOWS\system32\PerfStringBackup.INI
2009-02-04 10:15:02 —-A—- C:\WINDOWS\ODBCINST.INI
2009-02-04 10:14:56 —-RA—- C:\WINDOWS\system32\kbdtuq.dll
2009-02-04 10:14:56 —-RA—- C:\WINDOWS\system32\kbdtuf.dll
2009-02-04 10:14:56 —-RA—- C:\WINDOWS\system32\kbdazel.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbdycc.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbduzb.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbdur.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbdtat.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbdru1.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbdru.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbdmon.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbdkyr.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbdkaz.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbdbu.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbdblr.dll
2009-02-04 10:14:54 —-RA—- C:\WINDOWS\system32\kbdaze.dll
2009-02-04 10:14:52 —-RA—- C:\WINDOWS\system32\kbdhept.dll
2009-02-04 10:14:52 —-RA—- C:\WINDOWS\system32\kbdhela3.dll
2009-02-04 10:14:52 —-RA—- C:\WINDOWS\system32\kbdhela2.dll
2009-02-04 10:14:52 —-RA—- C:\WINDOWS\system32\kbdhe319.dll
2009-02-04 10:14:52 —-RA—- C:\WINDOWS\system32\kbdhe220.dll
2009-02-04 10:14:52 —-RA—- C:\WINDOWS\system32\kbdhe.dll
2009-02-04 10:14:52 —-RA—- C:\WINDOWS\system32\kbdgkl.dll
2009-02-04 10:14:50 —-RA—- C:\WINDOWS\system32\kbdlv1.dll
2009-02-04 10:14:50 —-RA—- C:\WINDOWS\system32\kbdlv.dll
2009-02-04 10:14:50 —-RA—- C:\WINDOWS\system32\kbdlt1.dll
2009-02-04 10:14:50 —-RA—- C:\WINDOWS\system32\kbdlt.dll
2009-02-04 10:14:50 —-RA—- C:\WINDOWS\system32\kbdest.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdycl.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdsl1.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdsl.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdro.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdpl1.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdpl.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdhu1.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdhu.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdcz2.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdcz1.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdcz.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\kbdcr.dll
2009-02-04 10:14:48 —-RA—- C:\WINDOWS\system32\KBDAL.DLL
2009-02-04 10:14:44 —-A—- C:\WINDOWS\system32\spxcoins.dll
2009-02-04 10:14:44 —-A—- C:\WINDOWS\system32\irclass.dll
2009-02-04 10:14:44 —-A—- C:\WINDOWS\system32\EqnClass.Dll
2009-02-04 10:14:44 —-A—- C:\WINDOWS\system32\dgsetup.dll
2009-02-04 10:14:44 —-A—- C:\WINDOWS\system32\dgrpsetu.dll
2009-02-04 10:14:44 —-A—- C:\WINDOWS\system32\batt.dll
2009-02-04 10:14:42 —-A—- C:\WINDOWS\TASKMAN.EXE
2009-02-04 10:14:42 —-A—- C:\WINDOWS\system32\storprop.dll
2009-02-04 10:14:42 —-A—- C:\WINDOWS\notepad.exe
2009-02-04 10:14:32 —-ASH—- C:\Documents and Settings\All Users.WINDOWS\Application Data\desktop.ini
2009-02-04 10:14:20 —-D—- C:\WINDOWS\system32\CatRoot2
2009-02-04 10:14:20 —-D—- C:\WINDOWS\system32\CatRoot
2009-02-04 10:14:14 —-SD—- C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft
2009-02-04 10:13:30 —-N—- C:\WINDOWS\system32\xmlprovi.dll
2009-02-04 10:13:30 —-N—- C:\WINDOWS\system32\xmlprov.dll
2009-02-04 10:13:30 —-N—- C:\WINDOWS\system32\wuaueng1.dll
2009-02-04 10:13:30 —-N—- C:\WINDOWS\system32\wuauclt1.exe
2009-02-04 10:13:28 —-N—- C:\WINDOWS\system32\wshbth.dll
2009-02-04 10:13:28 —-N—- C:\WINDOWS\system32\wmvdmoe2.dll
2009-02-04 10:13:28 —-N—- C:\WINDOWS\system32\wmspdmoe.dll
2009-02-04 10:13:28 —-N—- C:\WINDOWS\system32\wmspdmod.dll
2009-02-04 10:13:28 —-N—- C:\WINDOWS\system32\wmsdmoe2.dll
2009-02-04 10:13:28 —-A—- C:\WINDOWS\system32\wscsvc.dll
2009-02-04 10:13:28 —-A—- C:\WINDOWS\system32\wscntfy.exe
2009-02-04 10:13:26 —-N—- C:\WINDOWS\system32\wmpdxm.dll
2009-02-04 10:13:26 —-N—- C:\WINDOWS\system32\wmpasf.dll
2009-02-04 10:13:26 —-N—- C:\WINDOWS\system32\wmp.dll
2009-02-04 10:13:26 —-N—- C:\WINDOWS\system32\wmidx.dll
2009-02-04 10:13:26 —-N—- C:\WINDOWS\system32\wmerror.dll
2009-02-04 10:13:24 —-N—- C:\WINDOWS\system32\winshfhc.dll
2009-02-04 10:13:24 —-N—- C:\WINDOWS\system32\winbrand.dll
2009-02-04 10:13:22 —-N—- C:\WINDOWS\system32\w3ssl.dll
2009-02-04 10:13:18 —-N—- C:\WINDOWS\system32\twext.dll
2009-02-04 10:13:14 —-N—- C:\WINDOWS\system32\xpsp1res.dll
2009-02-04 10:13:14 —-N—- C:\WINDOWS\system32\strmfilt.dll
2009-02-04 10:13:14 —-N—- C:\WINDOWS\system32\spupdwxp.exe
2009-02-04 10:13:14 —-N—- C:\WINDOWS\system32\spnpinst.exe
2009-02-04 10:13:14 —-A—- C:\WINDOWS\system32\xpsp2res.dll
2009-02-04 10:13:12 —-N—- C:\WINDOWS\system32\smbinst.exe
2009-02-04 10:13:12 —-N—- C:\WINDOWS\system32\slserv.exe
2009-02-04 10:13:12 —-N—- C:\WINDOWS\system32\slrundll.exe
2009-02-04 10:13:12 —-N—- C:\WINDOWS\system32\slgen.dll
2009-02-04 10:13:12 —-N—- C:\WINDOWS\system32\slextspk.dll
2009-02-04 10:13:12 —-N—- C:\WINDOWS\system32\slcoinst.dll
2009-02-04 10:13:12 —-N—- C:\WINDOWS\slrundll.exe
2009-02-04 10:13:12 —-A—- C:\WINDOWS\system32\spdwnwxp.exe
2009-02-04 10:13:08 —-N—- C:\WINDOWS\system32\sdhcinst.dll
2009-02-04 10:13:08 —-N—- C:\WINDOWS\system32\sbeio.dll
2009-02-04 10:13:08 —-N—- C:\WINDOWS\system32\sbe.dll
2009-02-04 10:13:08 —-N—- C:\WINDOWS\system32\s3gnb.dll
2009-02-04 10:13:06 —-N—- C:\WINDOWS\system32\powercfg.exe
2009-02-04 10:13:06 —-N—- C:\WINDOWS\system32\pnrpnsp.dll
2009-02-04 10:13:04 —-N—- C:\WINDOWS\system32\p2psvc.dll
2009-02-04 10:13:04 —-N—- C:\WINDOWS\system32\p2pnetsh.dll
2009-02-04 10:13:04 —-N—- C:\WINDOWS\system32\p2pgraph.dll
2009-02-04 10:13:04 —-N—- C:\WINDOWS\system32\p2pgasvc.dll
2009-02-04 10:13:04 —-N—- C:\WINDOWS\system32\p2p.dll
2009-02-04 10:12:58 —-N—- C:\WINDOWS\system32\mtxparhd.dll
2009-02-04 10:12:56 —-N—- C:\WINDOWS\system32\mssap.dll
2009-02-04 10:12:56 —-N—- C:\WINDOWS\system32\mspmsnsv.dll
2009-02-04 10:12:52 —-N—- C:\WINDOWS\system32\msftedit.dll
2009-02-04 10:12:52 —-N—- C:\WINDOWS\system32\msdadiag.dll
2009-02-04 10:12:50 —-N—- C:\WINDOWS\system32\mp4sdmod.dll
2009-02-04 10:12:50 —-N—- C:\WINDOWS\system32\mp43dmod.dll
2009-02-04 10:12:48 —-N—- C:\WINDOWS\system32\mdmxsdk.dll
2009-02-04 10:12:40 —-N—- C:\WINDOWS\system32\kbdukx.dll
2009-02-04 10:12:40 —-N—- C:\WINDOWS\system32\kbdsmsno.dll
2009-02-04 10:12:40 —-N—- C:\WINDOWS\system32\kbdsmsfi.dll
2009-02-04 10:12:40 —-N—- C:\WINDOWS\system32\kbdno1.dll
2009-02-04 10:12:40 —-N—- C:\WINDOWS\system32\kbdmlt48.dll
2009-02-04 10:12:40 —-N—- C:\WINDOWS\system32\kbdmlt47.dll
2009-02-04 10:12:40 —-N—- C:\WINDOWS\system32\kbdmaori.dll
2009-02-04 10:12:40 —-N—- C:\WINDOWS\system32\kbdinmal.dll
2009-02-04 10:12:40 —-N—- C:\WINDOWS\system32\kbdinben.dll
2009-02-04 10:12:40 —-N—- C:\WINDOWS\system32\kbdinbe1.dll
2009-02-04 10:12:40 —-N—- C:\WINDOWS\system32\kbdfi1.dll
2009-02-04 10:12:38 —-N—- C:\WINDOWS\system32\spiisupd.exe
2009-02-04 10:12:36 —-N—- C:\WINDOWS\system32\comsdupd.exe
2009-02-04 10:12:36 —-N—- C:\WINDOWS\system32\asr_pfu.exe
2009-02-04 10:12:34 —-N—- C:\WINDOWS\system32\httpapi.dll
2009-02-04 10:12:34 —-N—- C:\WINDOWS\system32\hsfcisp2.dll
2009-02-04 10:12:34 —-A—- C:\WINDOWS\system32\ieencode.dll
2009-02-04 10:12:32 —-N—- C:\WINDOWS\system32\hccoin.dll
2009-02-04 10:12:32 —-N—- C:\WINDOWS\system32\fwcfg.dll
2009-02-04 10:12:32 —-N—- C:\WINDOWS\system32\fsquirt.exe
2009-02-04 10:12:30 —-N—- C:\WINDOWS\system32\fltmc.exe
2009-02-04 10:12:30 —-N—- C:\WINDOWS\system32\fltlib.dll
2009-02-04 10:12:30 —-N—- C:\WINDOWS\system32\faxpatch.exe
2009-02-04 10:12:30 —-N—- C:\WINDOWS\system32\extmgr.dll
2009-02-04 10:12:30 —-N—- C:\WINDOWS\system32\encdec.dll
2009-02-04 10:12:30 —-N—- C:\WINDOWS\system32\encapi.dll
2009-02-04 10:12:28 —-N—- C:\WINDOWS\system32\dxdiagn.dll
2009-02-04 10:12:28 —-N—- C:\WINDOWS\system32\dsprpres.dll
2009-02-04 10:12:24 —-N—- C:\WINDOWS\system32\d3d9.dll
2009-02-04 10:12:24 —-N—- C:\WINDOWS\system32\cmsetacl.dll
2009-02-04 10:12:22 —-N—- C:\WINDOWS\system32\btpanui.dll
2009-02-04 10:12:20 —-N—- C:\WINDOWS\system32\bthserv.dll
2009-02-04 10:12:20 —-N—- C:\WINDOWS\system32\bthci.dll
2009-02-04 10:12:20 —-N—- C:\WINDOWS\system32\blastcln.exe
2009-02-04 10:12:20 —-N—- C:\WINDOWS\system32\auditusr.exe
2009-02-04 10:12:20 —-N—- C:\WINDOWS\system32\ativvaxx.dll
2009-02-04 10:12:20 —-N—- C:\WINDOWS\system32\ativtmxx.dll
2009-02-04 10:12:20 —-N—- C:\WINDOWS\system32\ati3duag.dll
2009-02-04 10:12:20 —-N—- C:\WINDOWS\system32\ati3d1ag.dll
2009-02-04 10:12:20 —-N—- C:\WINDOWS\system32\ati2dvag.dll
2009-02-04 10:12:20 —-N—- C:\WINDOWS\system32\ati2dvaa.dll
2009-02-04 10:12:20 —-N—- C:\WINDOWS\system32\ati2cqag.dll
2009-02-04 10:08:34 —-RSHD—- C:\WINDOWS\system32\dllcache
2009-02-04 10:08:34 —-RSD—- C:\WINDOWS\Fonts
2009-02-04 10:08:34 —-RD—- C:\WINDOWS\Web
2009-02-04 10:08:34 —-HD—- C:\WINDOWS\inf
2009-02-04 10:08:34 —-D—- C:\WINDOWS\WinSxS
2009-02-04 10:08:34 —-D—- C:\WINDOWS\twain_32
2009-02-04 10:08:34 —-D—- C:\WINDOWS\Temp
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\wins
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\wbem
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\usmt
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\spool
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\ShellExt
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\Setup
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\ras
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\oobe
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\npp
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\mui
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\inetsrv
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\IME
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\icsxml
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\ias
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\export
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\drivers
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\dhcp
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\config
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\3com_dmi
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\3076
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\2052
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\1054
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\1043
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\1042
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\1041
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\1037
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\1033
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\1031
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\1028
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32\1025
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system32
2009-02-04 10:08:34 —-D—- C:\WINDOWS\system
2009-02-04 10:08:34 —-D—- C:\WINDOWS\security
2009-02-04 10:08:34 —-D—- C:\WINDOWS\Resources
2009-02-04 10:08:34 —-D—- C:\WINDOWS\repair
2009-02-04 10:08:34 —-D—- C:\WINDOWS\mui
2009-02-04 10:08:34 —-D—- C:\WINDOWS\msapps
2009-02-04 10:08:34 —-D—- C:\WINDOWS\msagent
2009-02-04 10:08:34 —-D—- C:\WINDOWS\Media
2009-02-04 10:08:34 —-D—- C:\WINDOWS\java
2009-02-04 10:08:34 —-D—- C:\WINDOWS\ime
2009-02-04 10:08:34 —-D—- C:\WINDOWS\Help
2009-02-04 10:08:34 —-D—- C:\WINDOWS\Driver Cache
2009-02-04 10:08:34 —-D—- C:\WINDOWS\Debug
2009-02-04 10:08:34 —-D—- C:\WINDOWS\Cursors
2009-02-04 10:08:34 —-D—- C:\WINDOWS\Connection Wizard
2009-02-04 10:08:34 —-D—- C:\WINDOWS\Config
2009-02-04 10:08:34 —-D—- C:\WINDOWS\AppPatch
2009-02-04 10:08:34 —-D—- C:\WINDOWS\addins
2009-02-04 10:08:34 —-D—- C:\WINDOWS
2009-02-04 09:59:50 —-D—- C:\Documents and Settings\All Users.WINDOWS\Application Data\Windows Genuine Advantage
2009-02-04 09:56:18 —-D—- C:\WINDOWS\system32\bits
2009-02-04 09:56:12 —-N—- C:\WINDOWS\system32\spmsg.dll
2009-02-04 09:56:10 —-HD—- C:\WINDOWS\$NtUninstallKB842773$
2009-02-04 09:56:00 —-N—- C:\WINDOWS\system32\bitsprx3.dll
2009-02-04 09:56:00 —-N—- C:\WINDOWS\system32\bitsprx2.dll
2009-02-04 09:56:00 —-A—- C:\WINDOWS\system32\winhttp.dll
2009-02-04 09:56:00 —-A—- C:\WINDOWS\system32\qmgrprxy.dll
2009-02-04 09:55:10 —-A—- C:\WINDOWS\system32\wups2.dll
2009-02-04 09:55:10 —-A—- C:\WINDOWS\system32\wups.dll
2009-02-04 09:55:10 —-A—- C:\WINDOWS\system32\wucltui.dll.mui
2009-02-04 09:55:10 —-A—- C:\WINDOWS\system32\wucltui.dll
2009-02-04 09:55:10 —-A—- C:\WINDOWS\system32\wuaueng.dll.mui
2009-02-04 09:55:08 —-A—- C:\WINDOWS\system32\wuapi.dll.mui
2009-02-04 09:55:08 —-A—- C:\WINDOWS\system32\wuapi.dll
2009-02-04 09:54:48 —-D—- C:\WINDOWS\SoftwareDistribution
2009-02-04 09:44:00 —-D—- C:\WINDOWS\nview
2009-02-04 09:44:00 —-A—- C:\WINDOWS\system32\nvudisp.exe
2009-02-04 09:43:16 —-D—- C:\Program Files\Common Files\InstallShield
2009-02-04 09:42:34 —-A—- C:\WINDOWS\system32\NVUNINST.EXE
2009-02-04 09:37:00 —-SHD—- C:\WINDOWS\Installer
2009-02-04 09:36:58 —-D—- C:\Documents and Settings\Lucie\Application Data\Identities
2009-02-04 09:36:46 —-SD—- C:\Documents and Settings\Lucie\Application Data\Microsoft
2009-02-04 09:36:46 —-ASH—- C:\Documents and Settings\Lucie\Application Data\desktop.ini
2009-02-04 09:35:18 —-A—- C:\WINDOWS\SchedLgU.Txt
2009-02-04 09:28:44 —-D—- C:\WINDOWS\system32\xircom
2009-02-04 09:28:16 —-A—- C:\WINDOWS\control.ini
2009-02-04 09:28:00 —-A—- C:\WINDOWS\system32\mapi32.dll
2009-02-04 09:26:46 —-SD—- C:\WINDOWS\Downloaded Program Files
2009-02-04 09:26:46 —-RD—- C:\WINDOWS\Offline Web Pages
2009-02-04 09:26:46 —-RAH—- C:\WINDOWS\system32\logonui.exe.manifest
2009-02-04 09:26:38 —-RAH—- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-02-04 09:26:14 —-D—- C:\WINDOWS\srchasst
2009-02-04 09:26:06 —-D—- C:\WINDOWS\system32\Macromed
2009-02-04 09:26:06 —-D—- C:\WINDOWS\system32\DirectX
2009-02-04 09:26:00 —-A—- C:\WINDOWS\system32\qmgr.dll
2009-02-04 09:25:40 —-A—- C:\WINDOWS\system32\safrslv.dll
2009-02-04 09:25:40 —-A—- C:\WINDOWS\system32\safrdm.dll
2009-02-04 09:25:40 —-A—- C:\WINDOWS\system32\safrcdlg.dll
2009-02-04 09:25:40 —-A—- C:\WINDOWS\system32\racpldlg.dll
2009-02-04 09:25:40 —-A—- C:\WINDOWS\system32\atrace.dll
2009-02-04 09:25:36 —-A—- C:\WINDOWS\system32\desktop.ini
2009-02-04 09:25:36 —-A—- C:\WINDOWS\desktop.ini
2009-02-04 09:25:30 —-D—- C:\WINDOWS\system32\Restore
2009-02-04 09:25:30 —-A—- C:\WINDOWS\system32\srsvc.dll
2009-02-04 09:25:30 —-A—- C:\WINDOWS\system32\srrstr.dll
2009-02-04 09:25:30 —-A—- C:\WINDOWS\system32\srclient.dll
2009-02-04 09:25:28 —-D—- C:\WINDOWS\PCHEALTH
2009-02-04 09:25:28 —-A—- C:\WINDOWS\system32\nmmkcert.dll
2009-02-04 09:25:28 —-A—- C:\WINDOWS\system32\nmevtmsg.dll
2009-02-04 09:25:28 —-A—- C:\WINDOWS\system32\msoert2.dll
2009-02-04 09:25:28 —-A—- C:\WINDOWS\system32\msoeacct.dll
2009-02-04 09:25:28 —-A—- C:\WINDOWS\system32\msconf.dll
2009-02-04 09:25:28 —-A—- C:\WINDOWS\system32\mnmsrvc.exe
2009-02-04 09:25:28 —-A—- C:\WINDOWS\system32\mnmdd.dll
2009-02-04 09:25:28 —-A—- C:\WINDOWS\system32\isrdbg32.dll
2009-02-04 09:25:28 —-A—- C:\WINDOWS\system32\ils.dll
2009-02-04 09:25:28 —-A—- C:\WINDOWS\system32\acctres.dll
2009-02-04 09:25:26 —-SD—- C:\WINDOWS\Tasks
2009-02-04 09:25:26 —-A—- C:\WINDOWS\system32\schedsvc.dll
2009-02-04 09:25:26 —-A—- C:\WINDOWS\system32\mstinit.exe
2009-02-04 09:25:26 —-A—- C:\WINDOWS\system32\mstask.dll
2009-02-04 09:25:26 —-A—- C:\WINDOWS\system32\inetres.dll
2009-02-04 09:25:26 —-A—- C:\WINDOWS\system32\inetcomm.dll
2009-02-04 09:25:24 —-A—- C:\WINDOWS\system32\isign32.dll
2009-02-04 09:25:24 —-A—- C:\WINDOWS\system32\inetcfg.dll
2009-02-04 09:25:24 —-A—- C:\WINDOWS\system32\icwphbk.dll
2009-02-04 09:25:24 —-A—- C:\WINDOWS\system32\icwdial.dll
2009-02-04 09:25:24 —-A—- C:\WINDOWS\system32\icfgnt5.dll
2009-02-04 09:24:22 —-A—- C:\WINDOWS\vbaddin.ini
2009-02-04 09:24:22 —-A—- C:\WINDOWS\vb.ini
2009-02-04 09:24:18 —-D—- C:\WINDOWS\Registration
2009-02-04 09:24:02 —-A—- C:\WINDOWS\system32\write.exe
2009-02-04 09:23:56 —-A—- C:\WINDOWS\system32\accwiz.exe
2009-02-04 09:23:54 —-A—- C:\WINDOWS\system32\winchat.exe
2009-02-04 09:23:54 —-A—- C:\WINDOWS\system32\sndvol32.exe
2009-02-04 09:23:54 —-A—- C:\WINDOWS\system32\sndrec32.exe
2009-02-04 09:23:54 —-A—- C:\WINDOWS\system32\mplay32.exe
2009-02-04 09:23:54 —-A—- C:\WINDOWS\system32\hypertrm.dll
2009-02-04 09:23:54 —-A—- C:\WINDOWS\system32\hticons.dll
2009-02-04 09:23:54 —-A—- C:\WINDOWS\system32\avwav.dll
2009-02-04 09:23:54 —-A—- C:\WINDOWS\system32\avtapi.dll
2009-02-04 09:23:54 —-A—- C:\WINDOWS\system32\avmeter.dll
2009-02-04 09:23:52 —-A—- C:\WINDOWS\system32\mspaint.exe
2009-02-04 09:23:48 —-A—- C:\WINDOWS\system32\clipbrd.exe
2009-02-04 09:23:46 —-A—- C:\WINDOWS\system32\winmine.exe
2009-02-04 09:23:46 —-A—- C:\WINDOWS\system32\spider.exe
2009-02-04 09:23:46 —-A—- C:\WINDOWS\system32\sol.exe
2009-02-04 09:23:46 —-A—- C:\WINDOWS\system32\getuname.dll
2009-02-04 09:23:46 —-A—- C:\WINDOWS\system32\charmap.exe
2009-02-04 09:23:46 —-A—- C:\WINDOWS\system32\calc.exe
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\wuauserv.dll
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\wuaueng.dll
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\wuauclt.exe
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\tscfgwmi.dll
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\reset.exe
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\remotepg.dll
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\rdshost.exe
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\rdsaddin.exe
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\mstscax.dll
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\mstsc.exe
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\mshearts.exe
2009-02-04 09:23:44 —-A—- C:\WINDOWS\system32\freecell.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\usrlogon.cmd
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\tsshutdn.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\tslabels.ini
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\tskill.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\tsdiscon.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\tscupgrd.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\tscon.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\termsrv.dll
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\shadow.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\sessmgr.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\rwinsta.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\regini.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\rdpwsx.dll
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\rdpsnd.dll
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\rdpclip.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\rdpcfgex.dll
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\rdchost.dll
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\qwinsta.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\qprocess.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\qappsrv.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\msg.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\logoff.exe
2009-02-04 09:23:42 —-A—- C:\WINDOWS\system32\icaapi.dll
2009-02-04 09:23:40 —-D—- C:\WINDOWS\system32\MsDtc
2009-02-04 09:23:40 —-A—- C:\WINDOWS\system32\xolehlp.dll
2009-02-04 09:23:40 —-A—- C:\WINDOWS\system32\mtxoci.dll
2009-02-04 09:23:40 —-A—- C:\WINDOWS\system32\msdtcuiu.dll
2009-02-04 09:23:40 —-A—- C:\WINDOWS\system32\msdtctm.dll
2009-02-04 09:23:40 —-A—- C:\WINDOWS\system32\msdtcprx.dll
2009-02-04 09:23:40 —-A—- C:\WINDOWS\system32\msdtcprf.ini
2009-02-04 09:23:40 —-A—- C:\WINDOWS\system32\msdtclog.dll
2009-02-04 09:23:40 —-A—- C:\WINDOWS\system32\msdtc.exe
2009-02-04 09:23:40 —-A—- C:\WINDOWS\system32\cfgbkend.dll
2009-02-04 09:23:40 —-A—- C:\WINDOWS\system32\cdmodem.dll
2009-02-04 09:23:38 —-D—- C:\WINDOWS\system32\Com
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\stclient.dll
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\mtxlegih.dll
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\mtxex.dll
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\mtxdm.dll
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\dcomcnfg.exe
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\comrepl.dll
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\comaddin.dll
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\colbact.dll
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\clbcatex.dll
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\catsrvut.dll
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\catsrvps.dll
2009-02-04 09:23:38 —-A—- C:\WINDOWS\system32\catsrv.dll
2009-02-04 09:23:36 —-A—- C:\WINDOWS\system32\comuid.dll
2009-02-04 09:23:36 —-A—- C:\WINDOWS\system32\comsvcs.dll
2009-02-04 09:23:36 —-A—- C:\WINDOWS\system32\comsnap.dll
2009-02-04 09:23:36 —-A—- C:\WINDOWS\system32\clbcatq.dll
2009-02-04 09:23:24 —-A—- C:\WINDOWS\system32\wmimgmt.msc
2009-02-04 09:23:22 —-A—- C:\WINDOWS\system32\servdeps.dll
2009-02-04 09:23:22 —-A—- C:\WINDOWS\system32\mmfutil.dll
2009-02-04 09:23:22 —-A—- C:\WINDOWS\system32\licwmi.dll
2009-02-04 09:23:22 —-A—- C:\WINDOWS\system32\cmprops.dll
2009-02-03 18:26:48 —-SHD—- C:\RECYCLER
2009-01-30 18:23:26 —-D—- C:\Program Files\Common Files\ODBC
2009-01-30 18:23:24 —-RD—- C:\Program Files
2009-01-30 18:23:24 —-D—- C:\Program Files\Common Files\SpeechEngines
2009-01-30 18:23:24 —-D—- C:\Program Files\Common Files\Microsoft Shared
2009-01-30 18:23:24 —-D—- C:\Program Files\Common Files
2009-01-30 18:22:26 —-D—- C:\Documents and Settings
2009-01-30 18:21:32 —-RASH—- C:\boot.ini
2009-01-30 17:38:58 —-HD—- C:\Program Files\Uninstall Information
2009-01-30 17:37:44 —-SHD—- C:\System Volume Information
2009-01-30 17:34:12 —-D—- C:\Program Files\xerox
2009-01-30 17:34:12 —-D—- C:\Program Files\microsoft frontpage
2009-01-30 17:33:44 —-A—- C:\AUTOEXEC.BAT
2009-01-30 17:31:44 —-D—- C:\Program Files\Movie Maker
2009-01-30 17:31:14 —-D—- C:\Program Files\Windows Media Player
2009-01-30 17:31:08 —-D—- C:\Program Files\NetMeeting
2009-01-30 17:31:08 —-D—- C:\Program Files\Common Files\Services
2009-01-30 17:31:02 —-D—- C:\Program Files\Outlook Express
2009-01-30 17:30:58 —-D—- C:\Program Files\Common Files\MSSoap
2009-01-30 17:30:54 —-D—- C:\Program Files\Common Files\System
2009-01-30 17:30:52 —-D—- C:\Program Files\Internet Explorer
2009-01-30 17:30:00 —-D—- C:\Program Files\ComPlus Applications
2009-01-30 17:29:46 —-HD—- C:\Program Files\WindowsUpdate
2009-01-30 17:29:46 —-D—- C:\Program Files\Online Services
2009-01-30 17:29:40 —-D—- C:\Program Files\Messenger
2009-01-30 17:29:34 —-D—- C:\Program Files\MSN
2009-01-30 17:29:30 —-D—- C:\Program Files\MSN Gaming Zone
2009-01-30 17:29:20 —-D—- C:\Program Files\Windows NT
2009-01-13 14:18:40 —-A—- C:\WINDOWS\system32\nwiz.exe
2009-01-13 14:18:40 —-A—- C:\WINDOWS\system32\nvwssr.dll
2009-01-13 14:18:40 —-A—- C:\WINDOWS\system32\nvwss.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrszht.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrszhc.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrstr.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrsth.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrssv.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrssl.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrssk.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrsru.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrsptb.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrspt.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrspl.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrsno.dll
2009-01-13 14:18:38 —-A—- C:\WINDOWS\system32\nvwrsnl.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrsko.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrsja.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrsit.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrshu.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrshe.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrsfr.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrsfi.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrsesm.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrses.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrseng.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrsel.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrsde.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrsda.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrscs.dll
2009-01-13 14:18:36 —-A—- C:\WINDOWS\system32\nvwrsar.dll
2009-01-13 14:18:34 —-A—- C:\WINDOWS\system32\nvwimg.dll
2009-01-13 14:18:34 —-A—- C:\WINDOWS\system32\nvwdmcpl.dll
2009-01-13 14:18:34 —-A—- C:\WINDOWS\system32\nvwddi.dll
2009-01-13 14:18:30 —-A—- C:\WINDOWS\system32\nvvitvsr.dll
2009-01-13 14:18:30 —-A—- C:\WINDOWS\system32\nvvitvs.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvsvc32.exe
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvshell.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrszht.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrszhc.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrstr.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrsth.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrssv.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrssl.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrssk.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrsru.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrsptb.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrspt.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrspl.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrsno.dll
2009-01-13 14:18:28 —-A—- C:\WINDOWS\system32\nvrsnl.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrsko.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrsja.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrsit.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrshu.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrshe.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrsfr.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrsfi.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrsesm.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrses.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrseng.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrsel.dll
2009-01-13 14:18:26 —-A—- C:\WINDOWS\system32\nvrsde.dll
2009-01-13 14:18:24 —-A—- C:\WINDOWS\system32\nvrsda.dll
2009-01-13 14:18:24 —-A—- C:\WINDOWS\system32\nvrscs.dll
2009-01-13 14:18:24 —-A—- C:\WINDOWS\system32\nvrsar.dll
2009-01-13 14:18:24 —-A—- C:\WINDOWS\system32\nvoglnt.dll
2009-01-13 14:18:24 —-A—- C:\WINDOWS\system32\nvnt4cpl.dll
2009-01-13 14:18:22 —-A—- C:\WINDOWS\system32\nvmoblsr.dll
2009-01-13 14:18:22 —-A—- C:\WINDOWS\system32\nvmobls.dll
2009-01-13 14:18:20 —-A—- C:\WINDOWS\system32\nvmctray.dll
2009-01-13 14:18:20 —-A—- C:\WINDOWS\system32\nvmccssr.dll
2009-01-13 14:18:20 —-A—- C:\WINDOWS\system32\nvmccss.dll
2009-01-13 14:18:20 —-A—- C:\WINDOWS\system32\nvmccsrs.dll
2009-01-13 14:18:20 —-A—- C:\WINDOWS\system32\nvmccs.dll
2009-01-13 14:18:18 —-A—- C:\WINDOWS\system32\nview.dll
2009-01-13 14:18:18 —-A—- C:\WINDOWS\system32\nvgamesr.dll
2009-01-13 14:18:18 —-A—- C:\WINDOWS\system32\nvgames.dll
2009-01-13 14:18:18 —-A—- C:\WINDOWS\system32\nvexpbar.dll
2009-01-13 14:18:16 —-A—- C:\WINDOWS\system32\nvdspsch.exe
2009-01-13 14:18:14 —-A—- C:\WINDOWS\system32\nvdispsr.dll
2009-01-13 14:18:12 —-A—- C:\WINDOWS\system32\nvdisps.dll
2009-01-13 14:18:12 —-A—- C:\WINDOWS\system32\nvcuda.dll
2009-01-13 14:18:10 —-A—- C:\WINDOWS\system32\nvcpluir.dll
2009-01-13 14:18:10 —-A—- C:\WINDOWS\system32\nvcplui.exe
2009-01-13 14:18:06 —-A—- C:\WINDOWS\system32\nvcpl.dll
2009-01-13 14:18:04 —-A—- C:\WINDOWS\system32\nvcolor.exe
2009-01-13 14:18:02 —-A—- C:\WINDOWS\system32\nvcodins.dll
2009-01-13 14:18:02 —-A—- C:\WINDOWS\system32\nvcod.dll
2009-01-13 14:18:02 —-A—- C:\WINDOWS\system32\nvappbar.exe
2009-01-13 14:18:02 —-A—- C:\WINDOWS\system32\nvapi.dll
2009-01-13 14:18:02 —-A—- C:\WINDOWS\system32\nv4_disp.dll
2009-01-13 14:17:56 —-A—- C:\WINDOWS\system32\keystone.exe
======List of files/folders modified in the last 1 months======
2009-02-05 15:39:48 —-A—- C:\WINDOWS\win.ini
2009-02-04 10:22:16 —-RASH—- C:\NTDETECT.COM
2009-02-04 10:14:58 —-A—- C:\WINDOWS\system.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys
R1 SASDIFSV;SASDIFSV; \??\D:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
R1 SASKUTIL;SASKUTIL; \??\D:\Program Files\SUPERAntiSpyware\SASKUTIL.sys
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys
R3 ac97intc;Intel(r) 82801 Audio Driver Install Service (WDM); C:\WINDOWS\system32\drivers\ac97intc.sys
R3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\System32\DRIVERS\e100b325.sys
R3 nv;nv; C:\WINDOWS\System32\DRIVERS\nv4_mini.sys
R3 SASENUM;SASENUM; \??\D:\Program Files\SUPERAntiSpyware\SASENUM.SYS
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\System32\DRIVERS\usbhub.sys
R3 USBSTOR;Stuurprogramma voor USB-massaopslag; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\System32\DRIVERS\usbuhci.sys
S2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys
S3 dot4;Microsoft IEEE-1284.4-stuurprogramma; C:\WINDOWS\system32\DRIVERS\Dot4.sys
S3 Dot4Print;Stuurprogramma voor printerklasse voor IEEE-1284.4; C:\WINDOWS\system32\DRIVERS\Dot4Prt.sys
S3 Dot4Scan;Stuurprogramma voor scannerklasse voor IEEE-1284.4; C:\WINDOWS\system32\DRIVERS\Dot4Scan.sys
S3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aawservice;Lavasoft Ad-Aware Service; D:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\System32\nvsvc32.exe
—————–EOF—————–
info.txt logfile of random's system information tool 1.05 2009-02-07 16:54:49
======Uninstall list======
–>MsiExec.exe /X{DEBEA68F-45AA-4707-A9A7-DBD6DB4FBE89}
–>rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Ad-Aware–>MsiExec.exe /I{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}
Adobe Flash Player 10 ActiveX–>C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Auslogics BoostSpeed–>“D:\Program Files\Auslogics\Auslogics BoostSpeed\unins000.exe”
AusLogics Disk Defrag–>“D:\Program Files\Auslogics\AusLogics Disk Defrag\unins000.exe”
AusLogics Registry Defrag–>“D:\Program Files\Auslogics\AusLogics Registry Defrag\unins000.exe”
Beveiligingsupdate voor Windows Internet Explorer 7 (KB938127-v2)–>“C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows Internet Explorer 7 (KB956390)–>“C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows Internet Explorer 7 (KB958215)–>“C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows Internet Explorer 7 (KB960714)–>“C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows Media Player (KB952069)–>“C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB923789)–>C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Beveiligingsupdate voor Windows XP (KB938464)–>“C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB946648)–>“C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB950762)–>“C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB950974)–>“C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB951066)–>“C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB951376-v2)–>“C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB951698)–>“C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB951748)–>“C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB952954)–>“C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB954211)–>“C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB954459)–>“C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB954600)–>“C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB955069)–>“C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB956391)–>“C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB956802)–>“C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB956803)–>“C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB956841)–>“C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB957097)–>“C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB958644)–>“C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe”
Beveiligingsupdate voor Windows XP (KB958687)–>“C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe”
Birds On A Wire–>“E:\Program Files\Birds On A Wire\ReflexiveArcade\unins000.exe”
CCleaner (remove only)–>“D:\Program Files\CCleaner\uninst.exe”
CleanUp!–>D:\Program Files\CleanUp!\uninstall.exe
Eusing Free Registry Cleaner–>D:\PROGRA~1\EUSING~1\UNWISE.EXE D:\PROGRA~1\EUSING~1\INSTALL.LOG
Foxit Reader–>D:\Program Files\Foxit Software\Foxit Reader\Uninstall.exe
HijackThis 2.0.2–>“C:\Program Files\Trend Micro\HijackThis\HijackThis.exe” /uninstall
Hotfix voor Windows XP (KB952287)–>“C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe”
HP Driver Diagnostics–>MsiExec.exe /X{4CCC7F68-A437-4559-A840-F5E010934951}
hp psc 700 series–>C:\WINDOWS\system32\hpocon09.exe /u 1233933307 /d “hp psc 700 series”
HP Share-to-Web–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{748F4870-8350-11D3-B0BF-080009FB4A19}\setup.exe” –MAIN -l19
Intel(R) PRO Network Adapters and Drivers–>Prounstl.exe
Java(TM) 6 Update 11–>MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Java(TM) 6 Update 7–>MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Malwarebytes' Anti-Malware–>“D:\Program Files\Malwarebytes' Anti-Malware\unins000.exe”
Microsoft Internationalized Domain Names Mitigation APIs–>“C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe”
Microsoft National Language Support Downlevel APIs–>“C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe”
Microsoft Visual C++ 2005 Redistributable–>MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
NVIDIA Drivers–>C:\WINDOWS\System32\nvuninst.exe UninstallGUI
Registry Mechanic 7.0–>“D:\Program Files\Registry Mechanic\unins000.exe”
Spybot - Search & Destroy–>“D:\Program Files\Spybot - Search & Destroy\unins000.exe”
SpywareBlaster 4.1–>“D:\Program Files\SpywareBlaster\unins000.exe”
SUPERAntiSpyware Free Edition–>MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
Unlocker 1.8.7–>D:\Program Files\Unlocker\uninst.exe
Update voor Windows XP (KB951978)–>“C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe”
Update voor Windows XP (KB955839)–>“C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe”
Windows XP Service Pack 3–>“C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe”
WinRAR archiver–>D:\Program Files\WinRAR\uninstall.exe
======Security center information======
AV: Avira AntiVir PersonalEdition
System event log
Computer Name: HIER-UF76PWD3Q7
Event Code: 7036
Message: De Terminal Services-service heeft nu de status Wordt uitgevoerd.
Record Number: 5
Source Name: Service Control Manager
Time Written: 20090206091714.000000+060
Event Type: Gegevens
User:
Computer Name: HIER-UF76PWD3Q7
Event Code: 7000
Message: De avast! Standard Shield Support-service kan vanwege de volgende fout niet worden gestart:
Het systeem kan het opgegeven bestand niet vinden.
Record Number: 4
Source Name: Service Control Manager
Time Written: 20090206091714.000000+060
Event Type: Fout
User:
Computer Name: HIER-UF76PWD3Q7
Event Code: 1001
Message: De computer is opnieuw gestart na een foutencontrole. Foutencontrole:
0x00000023 (0x000e00e0, 0xf900fa88, 0xf900f784, 0x805025f9).
Er is een dump opgeslagen in: C:\WINDOWS\Minidump\Mini020609-01.dmp.
Record Number: 3
Source Name: Save Dump
Time Written: 20090206091621.000000+060
Event Type: Gegevens
User:
Computer Name: HIER-UF76PWD3Q7
Event Code: 6005
Message: De Event Log-service is gestart.
Record Number: 2
Source Name: EventLog
Time Written: 20090206091621.000000+060
Event Type: Gegevens
User:
Computer Name: HIER-UF76PWD3Q7
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 3 Uniprocessor Free.
Record Number: 1
Source Name: EventLog
Time Written: 20090206091621.000000+060
Event Type: Gegevens
User:
Application event log
Computer Name: HIER-UF76PWD3Q7
Event Code: 11724
Message: Product: hp psc 700 series – Removal completed successfully.
Record Number: 5
Source Name: MsiInstaller
Time Written: 20090206092603.000000+060
Event Type: Gegevens
User: HIER-UF76PWD3Q7\Lucie
Computer Name: HIER-UF76PWD3Q7
Event Code: 1800
Message: De Windows Security Center-service is gestart.
Record Number: 4
Source Name: SecurityCenter
Time Written: 20090206091714.000000+060
Event Type: Gegevens
User:
Computer Name: HIER-UF76PWD3Q7
Event Code: 1001
Message: Het bestandssysteem op E: wordt gecontroleerd…
Het type bestandssysteem is FAT32.
De schijfruimte van een of meer stations moet op consistentie worden
gecontroleerd. U kunt de schijfcontrole annuleren, maar wordt aangeraden
deze procedure niet af te breken.
Windows zal de schijf nu controleren.
Het volumenummer is 9310-BB8A
Het bestandssysteem is gecontroleerd, er zijn geen problemen vastgesteld.
34386336 kB totale schijfruimte.
256 kB in 16 verborgen bestanden.
1072 kB in 67 mappen.
69008 kB in 1528 bestanden.
34315984 kB beschikbaar.
16384 bytes per cluster
2149146 clusters in totaal op schijf
2144749 clusters beschikbaar op schijf
Record Number: 3
Source Name: Winlogon
Time Written: 20090206091623.000000+060
Event Type: Gegevens
User:
Computer Name: HIER-UF76PWD3Q7
Event Code: 1001
Message: Het bestandssysteem op D: wordt gecontroleerd…
Het type bestandssysteem is FAT32.
De schijfruimte van een of meer stations moet op consistentie worden
gecontroleerd. U kunt de schijfcontrole annuleren, maar wordt aangeraden
deze procedure niet af te breken.
Windows zal de schijf nu controleren.
Het volumenummer is 4988-5DC3
Het bestandssysteem is gecontroleerd, er zijn geen problemen vastgesteld.
25137408 kB totale schijfruimte.
18288 kB in 17 verborgen bestanden.
1424 kB in 89 mappen.
409856 kB in 685 bestanden.
24707824 kB beschikbaar.
16384 bytes per cluster
1571088 clusters in totaal op schijf
1544239 clusters beschikbaar op schijf
Het bestandssysteem op D: wordt gecontroleerd…
Het type bestandssysteem is FAT32.
De schijfruimte van een of meer stations moet op consistentie worden
gecontroleerd. U kunt de schijfcontrole annuleren, maar wordt aangeraden
deze procedure niet af te breken.
Windows zal de schijf nu controleren.
Het volumenummer is 4988-5DC3
Het bestandssysteem is gecontroleerd, er zijn geen problemen vastgesteld.
25137408 kB totale schijfruimte.
18352 kB in 21 verborgen bestanden.
1648 kB in 103 mappen.
452448 kB in 939 bestanden.
24664944 kB beschikbaar.
16384 bytes per cluster
1571088 clusters in totaal op schijf
1541559 clusters beschikbaar op schijf
Record Number: 2
Source Name: Winlogon
Time Written: 20090206091623.000000+060
Event Type: Gegevens
User:
Computer Name: HIER-UF76PWD3Q7
Event Code: 1001
Message: Het bestandssysteem op C: wordt gecontroleerd…
Het type bestandssysteem is FAT32.
De schijfruimte van een of meer stations moet op consistentie worden
gecontroleerd. U kunt de schijfcontrole annuleren, maar wordt aangeraden
deze procedure niet af te breken.
Windows zal de schijf nu controleren.
Het volumenummer is 4989-8FB7
\System Volume Information\_restore{23E851D7-ABD5-4E19-AB93-4AE7A30DA910}\RP36\A0017303.dll is kruislings aan cluster 67497 gekoppeld.
Kruiskoppeling hersteld tijdens kopiëren.
Verloren ketens omzetten in bestanden (J/N)? Ja
4 kB in 1 herstelde bestanden.
Het bestandssysteem is hersteld.
20442892 kB totale schijfruimte.
1008676 kB in 898 verborgen bestanden.
6940 kB in 1464 mappen.
5892156 kB in 31751 bestanden.
13535116 kB beschikbaar.
4096 bytes per cluster
5110723 clusters in totaal op schijf
3383779 clusters beschikbaar op schijf
Record Number: 1
Source Name: Winlogon
Time Written: 20090206091623.000000+060
Event Type: Gegevens
User:
======Environment variables======
“ComSpec”=%SystemRoot%\system32\cmd.exe
“Path”=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
“windir”=%SystemRoot%
“OS”=Windows_NT
“PROCESSOR_ARCHITECTURE”=x86
“PROCESSOR_LEVEL”=15
“PROCESSOR_IDENTIFIER”=x86 Family 15 Model 1 Stepping 2, GenuineIntel
“PROCESSOR_REVISION”=0102
“NUMBER_OF_PROCESSORS”=1
“PATHEXT”=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
“TEMP”=%SystemRoot%\TEMP
“TMP”=%SystemRoot%\TEMP
“FP_NO_HOST_CHECK”=NO
—————–EOF—————–
Goedemorgen Argus,
Intussen heb ik ook een tool gevonden om restanten van Avira te verwijderen, maar ik weet niet of deze veilig is. (Heb hiermee dus nog niets verwijderd!) Daarom plak ik er ook een log van, en daaronder de gevraagde van Hijack This
######################################
Avira Registry Cleaner
08.02.2009 09:30:50
######################################
The registry was scanned for the following words:
avira,h+bedv,x-avcsd,antivir,avgio,avgnt,avgntflt,ssmdrv,avipbb,aveservice,shell extension for malware
Access denied: S-1-5-21-606747145-1275210071-725345543-1003
Access denied: SAM
Access denied: SECURITY
Access denied: *Local Machine*
Access denied: Pending Help Session
Access denied: Windows
Access denied: Credentials
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: EncryptedDirectories
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: EncryptedDirectories
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: Properties
Access denied: EncryptedDirectories
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\p3p\history\alltiettantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\p3p\history\antivir2007.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\p3p\history\antivirusaskeladd.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\p3p\history\antiviruspcsuite.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\p3p\history\antivirusscherm.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\p3p\history\winantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\1stantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\advancedantivirusscan.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\alltiettantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivir-64.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivir2007.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivir64.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirgear.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirgins.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirprotect.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008-noadware.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008-pro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008-pro.info
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008-pro.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008-pro.org
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008a-pro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008pro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008pro.info
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008pro.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008pro.org
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008y-pro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2009pro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-bestscan.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-database.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-hq.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-rapid-scanner.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-scanner.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-scanonline.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-server.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-stop.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008pro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008pro.info
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008pro.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008pro.org
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008scanner.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008x.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2009-freescan.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2009-scanner.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2009professional.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusadvance.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusaskeladd.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusdoc-scanner.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusdoc.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusdwl.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusgereedschap.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusgolden.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antiviruspcsuite.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusplasma.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antiviruspremium.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusprotector.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusscherm.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirussecuritypro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirussentry.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirussuite.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusxp2008pro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\bestantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\buysysantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\doctorantivirus2008a.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\download-antivir.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\e-antiviruspro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\eantivirus-payment.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\expressantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\extraantivir.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\fastfreedownload.com\antivirus
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\fastfreedownload.com\www.antivirus
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\grab-antivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\ie-antivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\ieantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\internet-antivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\internetantiviruspro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\isafe-antivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\isafeantivir.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\isafeantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\isafeantiviruspro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\isaferantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\liveantivirusscanner.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\mcafee-antivirus-2007.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\micro-antivir2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\micro-antivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\microantivir-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\microantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\microantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\microantivirusxp.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\msantivirusxp.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\nanoantivir.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\nanoantiviruscheck.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\online-antivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\pandaantivirus-2007.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\pcantivirusscanneronline.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\power-antivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\powerantivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\powerantivirus.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\powerantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\pwrantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\rapid-antivir.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\rapid-antivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\rapidantivir.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\rapidantivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\rapidantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\rapidantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\scanner-antivirus360.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\secure-online-antivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\secured-antivirus-scan.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus-2009-buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus-2009buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus2009-buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus2009buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smartantivirus-2009-buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smartantivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smartantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smartantivirus2009buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\sysantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\total-antivirus-scan.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\totalantivirusonline.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\trustedantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\ultraantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\updatesantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\win-antivirus-protect.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\winantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\winantiviruspro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\winantiviruspro.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\windifesavirale.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\winsikkerantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\wista-antivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\www-download-antivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\xpantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\xpantiviruspro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\xpantivirussecurity.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\xpertantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\domains\zeusantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\1stantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\alltiettantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivir2007.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirgear.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirprotect.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008-pro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008-pro.info
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008-pro.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008-pro.org
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008pro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008pro.info
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008pro.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008pro.org
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2009pro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-database.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-hq.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-scanner.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-server.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-stop.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008pro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008pro.info
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008pro.net
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008pro.org
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008scanner.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008x.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2009-freescan.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2009professional.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusadvance.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusaskeladd.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusdwl.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusgereedschap.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusgolden.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antiviruspcsuite.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusplasma.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antiviruspremium.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusprotector.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusscherm.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirussecuritypro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirussentry.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirussuite.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\download-antivir.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\fastfreedownload.com\antivirus
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\fastfreedownload.com\www.antivirus
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\grab-antivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\internet-antivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\isafeantivir.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\mcafee-antivirus-2007.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\microantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\microantivirusxp.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\online-antivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\pandaantivirus-2007.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\pcantivirusscanneronline.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\power-antivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\powerantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus-2009-buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus-2009buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus2009-buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus2009buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smartantivirus-2009-buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smartantivirus-2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smartantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smartantivirus2009buy.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\total-antivirus-scan.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\trustedantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\ultraantivirus2009.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\updatesantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\winantivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\winantiviruspro.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\www-download-antivirus.com
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\xpantiviruspro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\p3p\history\alltiettantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\p3p\history\antivir2007.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\p3p\history\antivirusaskeladd.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\p3p\history\antiviruspcsuite.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\p3p\history\antivirusscherm.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\p3p\history\winantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\1stantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\alltiettantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivir2007.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirgear.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirprotect.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008-pro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008-pro.info
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008-pro.net
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008-pro.org
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008pro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008pro.info
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008pro.net
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2008pro.org
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-2009pro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-database.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-hq.net
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-scanner.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-server.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus-stop.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008pro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008pro.info
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008pro.net
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008pro.org
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008scanner.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2008x.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2009-freescan.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirus2009professional.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusadvance.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusaskeladd.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusdwl.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusgereedschap.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusgolden.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antiviruspcsuite.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusplasma.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antiviruspremium.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusprotector.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirusscherm.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirussecuritypro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirussentry.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\antivirussuite.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\download-antivir.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\fastfreedownload.com\antivirus
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\fastfreedownload.com\www.antivirus
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\grab-antivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\internet-antivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\isafeantivir.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\mcafee-antivirus-2007.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\microantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\microantivirusxp.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\online-antivirus-2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\pandaantivirus-2007.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\pcantivirusscanneronline.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\power-antivirus-2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\powerantivirus2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus-2009-buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus-2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus-2009buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus2009-buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smart-antivirus2009buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smartantivirus-2009-buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smartantivirus-2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smartantivirus2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\smartantivirus2009buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\total-antivirus-scan.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\trustedantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\ultraantivirus2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\updatesantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\winantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\winantiviruspro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\www-download-antivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\domains\xpantiviruspro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\1stantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\alltiettantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivir2007.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirgear.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirprotect.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008-pro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008-pro.info
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008-pro.net
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008-pro.org
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008pro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008pro.info
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008pro.net
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2008pro.org
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-2009pro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-database.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-hq.net
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-scanner.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-server.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus-stop.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008pro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008pro.info
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008pro.net
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008pro.org
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008scanner.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2008x.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2009-freescan.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirus2009professional.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusadvance.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusaskeladd.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusdwl.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusgereedschap.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusgolden.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antiviruspcsuite.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusplasma.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antiviruspremium.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusprotector.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirusscherm.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirussecuritypro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirussentry.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\antivirussuite.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\download-antivir.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\fastfreedownload.com\antivirus
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\fastfreedownload.com\www.antivirus
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\grab-antivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\internet-antivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\isafeantivir.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\mcafee-antivirus-2007.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\microantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\microantivirusxp.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\online-antivirus-2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\pandaantivirus-2007.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\pcantivirusscanneronline.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\power-antivirus-2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\powerantivirus2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus-2009-buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus-2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus-2009buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus2009-buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smart-antivirus2009buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smartantivirus-2009-buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smartantivirus-2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smartantivirus2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\smartantivirus2009buy.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\total-antivirus-scan.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\trustedantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\ultraantivirus2009.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\updatesantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\winantivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\winantiviruspro.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\www-download-antivirus.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\xpantiviruspro.com
Number of found keys: 363
DELETED KEYS:
Hijack This Uninstall List:
Ad-Aware
Adobe Flash Player 10 ActiveX
AusLogics Disk Defrag
AusLogics Registry Defrag
Beveiligingsupdate voor Windows Internet Explorer 7 (KB938127-v2)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB956390)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB958215)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB960714)
Beveiligingsupdate voor Windows Media Player (KB952069)
Beveiligingsupdate voor Windows XP (KB923789)
Beveiligingsupdate voor Windows XP (KB938464)
Beveiligingsupdate voor Windows XP (KB946648)
Beveiligingsupdate voor Windows XP (KB950762)
Beveiligingsupdate voor Windows XP (KB950974)
Beveiligingsupdate voor Windows XP (KB951066)
Beveiligingsupdate voor Windows XP (KB951376-v2)
Beveiligingsupdate voor Windows XP (KB951698)
Beveiligingsupdate voor Windows XP (KB951748)
Beveiligingsupdate voor Windows XP (KB952954)
Beveiligingsupdate voor Windows XP (KB954211)
Beveiligingsupdate voor Windows XP (KB954459)
Beveiligingsupdate voor Windows XP (KB954600)
Beveiligingsupdate voor Windows XP (KB955069)
Beveiligingsupdate voor Windows XP (KB956391)
Beveiligingsupdate voor Windows XP (KB956802)
Beveiligingsupdate voor Windows XP (KB956803)
Beveiligingsupdate voor Windows XP (KB956841)
Beveiligingsupdate voor Windows XP (KB957097)
Beveiligingsupdate voor Windows XP (KB958644)
Beveiligingsupdate voor Windows XP (KB958687)
Birds On A Wire
CCleaner (remove only)
CleanUp!
Eusing Free Registry Cleaner
Foxit Reader
HijackThis 2.0.2
Hotfix voor Windows XP (KB952287)
HP Driver Diagnostics
hp psc 700 series
HP Share-to-Web
Intel(R) PRO Network Adapters and Drivers
Java(TM) 6 Update 11
Java(TM) 6 Update 7
Malwarebytes' Anti-Malware
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Visual C++ 2005 Redistributable
NVIDIA Drivers
Registry Mechanic 7.0
Spybot - Search & Destroy
SpywareBlaster 4.1
SUPERAntiSpyware Free Edition
Unlocker 1.8.7
Update voor Windows XP (KB951978)
Update voor Windows XP (KB955839)
Windows XP Service Pack 3
WinRAR archiver
Avira? je bedoeld Avast zeker
Hoe komen zulke tools nu op een pas geïnstallerde PC
AusLogics Disk Defrag
AusLogics Registry Defrag
Birds on A Wire
Registry Mechanic 7.0
Unlocker 1.8.7
De scan die daarboven laat zien komt of van SpywareBlaster 4.1
of van immuniseer functie van Spybot
http://www.avast.com/eng/avast-uninstall-utility.html
En gebruik CCleaner om het register op te schonen
Ga daarbij zolang door tot er niets meer gevonden word
Hoi Argus,
Ik zal het nog een keer proberen uit te leggen: wat anti-virus betreft begonnen met AVG 8 maar die wilde niet. Toen Avast maar die stopte na een dag. De map hiervan in program files kreeg ik met geen mogelijkheid weg, ook niet met Unlocker. (vandaar deze install.) Op advies van Knutselsmurf (zie mijn vorige topic) Avira erop gezet, die het eerst keurig deed maar gisteren bij het opstarten weer een foutmelding gaf. Toen de scanners (van hier rechts) laten draaien en Spybot S&D heeft inderdaad wat verwijderd, waarna ik een 2 logjes plaatste. Jij adviseerde Combofix te downloaden, maar die zag de restanten van Avira nog staan. Vanochtend dus ook een logje van de Avira-verwijderingstool geplaatst, in de hoop dat ik 'm inderdaad kan draaien, nadat jij bijv. je deskundig oog erover had laten gaan…..zodat ik misschien toch Combofix kan draaien…..?
P.S: die Avast uninstall-tool wil dus ook niet en CCleaner heb ik al meermaals grondig laten cleanen. Maar de laatste hindernis was dus dat Combofix meldt dat Avira actief is, terwijl ik die gedeïnstalleerd heb en er zelf niks meer van terug vind, behalve dan met dat tooltje. (waarvan ik onzeker ben of ik dat wel veilig kan gebruiken)
Weet je zeker dat je deze post als spam wil rapporteren aan de beheerder?
Deze post wordt als spam gerapporteerd aan de beheerder van het forum. Bedankt!
Weet u zeker dat u dit topic wil verwijderen?