Thanks for the help I really appreciate it. I had to download the dekards program off my friends computer and place on a disk. everything I download is corrupt.
Deckard's System Scanner v20071014.68
Run by Randy on 2008-06-16 20:48:50
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Successfully created a Deckard's System Scanner Restore Point.
-- Last 5 Restore Point(s) --
14: 2008-06-17 01:48:57 UTC - RP14 - Deckard's System Scanner Restore Point
13: 2008-06-16 23:21:20 UTC - RP13 - System Checkpoint
12: 2008-06-15 02:59:23 UTC - RP12 - Software Distribution Service 3.0
11: 2008-06-15 02:50:12 UTC - RP11 - Installed Windows Internet Explorer 7.
10: 2008-06-15 02:48:36 UTC - RP10 - Installed Windows IDNMitigationAPIs.
-- First Restore Point --
1: 2008-06-12 18:51:58 UTC - RP1 - System Checkpoint
Backed up registry hives.
Performed disk cleanup.
-- HijackThis (run as Randy.exe) -----------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:56:39 PM, on 6/16/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\ZoneLabs\avsys\ScanningProcess.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\sprscore.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\WINDOWS\rundys32.exe
C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\WINDOWS\system32\Rundll32.exe
C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\MICROS~4\wcescomm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\MICROS~4\rapimgr.exe
C:\Documents and Settings\Randy\Desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Randy.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page =
http://go.microsoft.com/fwlink/?LinkId=54843
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [stezinit] C:\WINDOWS\sprscore.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Media Codec Update Service] C:\Program Files\Essentials Codec Pack\update.exe -silent
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
O4 - HKLM\..\Run: [gretinit] C:\WINDOWS\sprscore.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [BM7bf9ca38] Rundll32.exe "C:\WINDOWS\system32\fqbspmtq.dll",s
O4 - HKCU\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRA~1\MICROS~4\wcescomm.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone:
http://www.pandasecurity.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {3DA2AAF4-4289-4D6E-B9C0-D8360229607B} (IPAQSelfHelp Class) -
https://h50203.www5.hp.com/HPISWeb/C...PEIPAQTool.CAB
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) -
http://download.bitdefender.com/reso...an8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://www.update.microsoft.com/wind...?1200722177342
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) -
http://h20270.www2.hp.com/ediags/gmn...tDetection.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://www.update.microsoft.com/micr...?1200726449030
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/ge...sh/swflash.cab
O20 - Winlogon Notify: khfcAssT - khfcAssT.dll (file missing)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: IMAPI CD-Burning COM Service (ImapiService) - Roxio Inc. - C:\WINDOWS\system32\ImapiRox.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
--
End of file - 9238 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R1 OMCI - c:\windows\system32\drivers\omci.sys <Not Verified; Dell Computer Corporation; OMCI Driver>
R3 pfc (Padus ASPI Shell) - c:\windows\system32\drivers\pfc.sys <Not Verified; Padus, Inc.; Padus(R) ASPI Shell>
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
R2 Bonjour Service - "c:\program files\bonjour\mdnsresponder.exe" <Not Verified; Apple Inc.; Bonjour>
-- Device Manager: Disabled ----------------------------------------------------
No disabled devices found.
-- Scheduled Tasks -------------------------------------------------------------
2008-06-16 17:29:49 438 --a------ C:\WINDOWS\Tasks\RegCure Program Check.job
2008-06-14 11:53:23 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2008-06-12 18:16:19 372 --a------ C:\WINDOWS\Tasks\RegCure.job
-- Files created between 2008-05-16 and 2008-06-16 -----------------------------
2008-06-16 20:55:56 0 d-------- C:\Program Files\Trend Micro
2008-06-14 00

07 0 d-------- C:\WINDOWS\BDOSCAN8
2008-06-13 23:37:41 0 d-------- C:\Program Files\Sun
2008-06-12 10:55:35 0 d-------- C:\Program Files\Karen's Power Tools
2008-06-12 10:55:12 0 d-------- C:\Documents and Settings\All Users\Application Data\Karen's Power Tools
2008-06-12 10:08:52 0 d-------- C:\ie-spyad_zo
2008-06-11 11:24:53 0 d-------- C:\Documents and Settings\NetworkService\Start Menu
2008-06-10 17:51:26 0 d-------- C:\WINDOWS\pss
2008-06-10 16:41:48 0 d-------- C:\Documents and Settings\All Users\Application Data\nView_Profiles
2008-06-09 22:53:45 0 d-------- C:\Documents and Settings\All Users\Application Data\SecTaskMan
2008-06-09 22:53:22 0 d-------- C:\Program Files\Security Task Manager
2008-06-09 10:14:54 0 d-------- C:\Documents and Settings\LocalService\Application Data\Google
2008-06-09 10:14:37 0 dr------- C:\Documents and Settings\LocalService\Favorites
2008-06-09 08:20:03 0 d-------- C:\Program Files\Common Files\PC Tools
2008-06-09 08:19:41 0 d-------- C:\Documents and Settings\All Users\Application Data\PC Tools
2008-06-08 22:54:50 0 d-------- C:\Program Files\Spyware Doctor
2008-06-08 22:54:50 0 d-------- C:\Documents and Settings\Randy\Application Data\PC Tools
2008-06-08 16:01:54 105472 --a------ C:\WINDOWS\system32\fqbspmtq.dll
2008-06-07 16:02:02 111616 --a------ C:\WINDOWS\system32\ridtrkco.dll
2008-06-07 16:00:23 101376 --a------ C:\WINDOWS\system32\vbfecgaf.dll
2008-06-07 15:58:55 744262 --ahs---- C:\WINDOWS\system32\gNXHNXbc.ini2
2008-05-20 17:26:07 0 d-------- C:\Program Files\Apple Software Update
-- Find3M Report ---------------------------------------------------------------
2008-06-16 17:36:13 0 d-------- C:\Program Files\Mozilla Thunderbird
2008-06-15 14:15:14 0 d-------- C:\Program Files\OpenedFilesView
2008-06-13 23:36:32 0 d-------- C:\Program Files\Java
2008-06-12 13:08:59 2423 --a------ C:\WINDOWS\dep32ceg.dll
2008-06-12 13:08:45 0 --a------ C:\WINDOWS\spr32snl.dll
2008-06-12 13:08:45 0 --a------ C:\WINDOWS\iopb32ul.dll
2008-06-12 13:08:45 0 --a------ C:\WINDOWS\iopa32ul.dll
2008-06-12 10:17:19 0 d-------- C:\Program Files\Essentials Codec Pack
2008-06-11 18

28 0 d--h----- C:\Program Files\WindowsUpdate
2008-06-11 17:15:14 0 d-------- C:\Program Files\Mozilla Sunbird
2008-06-09 08:20:03 0 d-------- C:\Program Files\Common Files
2008-06-06 22:26:40 4212 --ah----- C:\WINDOWS\system32\zllictbl.dat
2008-05-19 16:50:02 0 d-------- C:\Program Files\Microsoft Silverlight
2008-05-11 14:48:49 0 d-------- C:\Documents and Settings\Randy\Application Data\Stellarium
2008-05-11 14:48:37 0 d-------- C:\Program Files\Stellarium
2008-05-11 14:21:41 0 d-------- C:\Program Files\Calendar Magic
2008-05-11 08:03:16 0 d-------- C:\Program Files\Sudoktor
2008-05-10 20:16:26 0 d-------- C:\Documents and Settings\Randy\Application Data\LimeWire
2008-05-10 20:16:08 0 d-------- C:\Program Files\LimeWire
2008-05-10 19:43:31 147456 --a------ C:\WINDOWS\system32\vbzip10.dll <Not Verified; Info-ZIP; Info-ZIP's WiZ>
2008-05-09 23:50:18 0 d-------- C:\Documents and Settings\Randy\Application Data\EssentialPIM
2008-05-09 23:50:03 0 d-------- C:\Program Files\EssentialPIM
2008-05-09 23:45:39 0 d-------- C:\Program Files\Rainlendar2
2008-05-09 22:17:33 0 d-------- C:\Documents and Settings\Randy\Application Data\Talkback
2008-05-09 22:17:20 0 d-------- C:\Documents and Settings\Randy\Application Data\Mozilla
2008-05-09 13:32:54 0 d-------- C:\Program Files\e-Sword
2008-05-09 09:34:49 0 d-------- C:\Program Files\BeST 2.0 Standard
2008-05-09 09:17:47 0 d-------- C:\Program Files\MSBuild
2008-05-09 09:17:31 0 d-------- C:\Program Files\Reference Assemblies
2008-05-09 09:11:27 0 d-------- C:\Program Files\MSXML 6.0
2008-05-09 06:49:17 0 d-------- C:\Program Files\Pocket e-Sword
2008-05-06 19:48:48 651 --a------ C:\Documents and Settings\Randy\Application Data\com.kennettnet.MusicRescueProfiles.plist
2008-05-06 19:48:48 3270 --a------ C:\Documents and Settings\Randy\Application Data\com.kennettnet.MusicRescue.plist
2008-05-06 19:24:06 0 d-------- C:\Program Files\Music Rescue
2008-05-06 19:15:12 0 d-------- C:\Documents and Settings\Randy\Application Data\iPod Copy Expert
2008-05-03 18:43:58 0 d-------- C:\Program Files\iPod Copy Expert
2008-05-03 17:11:52 0 d-------- C:\Documents and Settings\Randy\Application Data\Apple Computer
2008-05-03 17:11:12 0 d-------- C:\Program Files\iTunes
2008-05-03 17:10:58 0 d-------- C:\Program Files\iPod
2008-05-03 17:10:26 0 d-------- C:\Program Files\Bonjour
2008-05-03 17:10:02 0 d-------- C:\Program Files\QuickTime
2008-05-03 17:07:28 0 d-------- C:\Program Files\Common Files\Apple
2008-04-27 09

01 0 d-------- C:\Program Files\RegCure
2008-04-18 22:24:28 0 d-------- C:\Documents and Settings\Randy\Application Data\WinRAR
2008-04-11 00

55 39424 --a------ C:\WINDOWS\zipinst.exe <Not Verified; NirSoft; ZipInstaller>
2008-04-06 20:09:23 2528 --a------ C:\Documents and Settings\Randy\Application Data\$_hpcst$.hpc
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ZoneAlarm Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" [03/13/2008 11:11 PM]
"stezinit"="C:\WINDOWS\sprscore.exe" [12/09/2007 05:28 PM]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [03/28/2008 11:37 PM]
"nwiz"="nwiz.exe" [12/05/2007 02:41 AM C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [12/05/2007 02:41 AM]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [12/05/2007 02:41 AM]
"Media Codec Update Service"="C:\Program Files\Essentials Codec Pack\update.exe" [04/08/2007 11:44 AM]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [03/30/2008 10:36 AM]
"ISTray"="C:\Program Files\Spyware Doctor\pctsTray.exe" [04/10/2008 03:14 PM]
"gretinit"="C:\WINDOWS\sprscore.exe" [12/09/2007 05:28 PM]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [01/11/2008 11:16 PM]
"AdaptecDirectCD"="C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe" [09/04/2001 04:31 PM]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" [03/25/2008 04:28 AM]
"BM7bf9ca38"="C:\WINDOWS\system32\fqbspmtq.dll" [06/08/2008 04:01 PM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SsAAD.exe"="C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe" [05/08/2006 06:17 AM]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [10/13/2004 11:24 AM]
"H/PC Connection Agent"="C:\PROGRA~1\MICROS~4\wcescomm.exe" [11/13/2006 01:39 PM]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [08/04/2004 02:56 AM]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE [2/17/1999 10:05:56 PM]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"Wallpaper"=
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"ForceActiveDesktopOn"=0 (0x0)
"NoActiveDesktop"=2 (0x2)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\khfcAssT]
khfcAssT.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
"Authentication Packages"= msv1_0 C:\WINDOWS\system32\cbXNHXNg
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
-- End of Deckard's System Scanner: finished at 2008-06-16 21:02:05 ------------