Hello, I just got a replacement laptop from dell and they sent me a XPS M1730....Not bad for my inspiron E1505 lol. However i am not used to vista and ive noticed how slow it can be.....Here are the specs and is vista running optimal on my laptop. since i just got it i dont know much about my own laptop ;\ but i would love some input.
Deckard's System Scanner v20071014.68
Run by Kirk on 2008-01-28 10:46:10
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- Last 5 Restore Point(s) --
10: 2008-01-28 04:06:03 UTC - RP35 - Windows Update
9: 2008-01-28 01:43:36 UTC - RP34 - Scheduled Checkpoint
8: 2008-01-26 20:12:34 UTC - RP33 - Windows Update
7: 2008-01-26 18:28:18 UTC - RP32 - Installed DirectX
6: 2008-01-26 18:19:48 UTC - RP30 - Installed Tom Clancy's Ghost Recon Advanced Warfighter® 2
-- First Restore Point --
1: 2008-01-25 22:20:47 UTC - RP24 - New
Backed up registry hives.
Performed disk cleanup.
-- HijackThis (run as Kirk.exe) ------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:47:28 AM, on 1/28/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16575)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\OEM02Mon.exe
C:\Program Files\Sigmatel\C-Major Audio\WDM\sttray.exe
C:\Windows\System32\rundll32.exe
C:\Windows\System32\rundll32.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\Creative\SBAudigy\Volume Panel\VolPanlu.exe
C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Common Files\Logitech\LCD Manager\LCDMon.exe
C:\Program Files\Dell\MediaDirect\PCMService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\SetPoint\SetPoint.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Logitech\LCD Manager\Applets\LCDClock.exe
C:\Program Files\Common Files\Logitech\LCD Manager\Applets\LCDMedia.exe
C:\Program Files\Common Files\Logitech\LCD Manager\Applets\LCDCountdown.exe
C:\Program Files\Common Files\Logitech\LCD Manager\Applets\LCDPOP3.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
c:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
C:\Users\Kirk\Documents\dss.exe
C:\Windows\system32\SearchFilterHost.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Kirk.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\sttray.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NVHotkey] rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [VolPanel] "C:\Program Files\Creative\SBAudigy\Volume Panel\VolPanlu.exe" /r
O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE
O4 - HKLM\..\Run: [DELL Webcam Manager] "C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /s
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE"
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Launch LCDMon] "C:\Program Files\Common Files\Logitech\LCD Manager\LCDMon.exe"
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: QuickSet.lnk = C:\Program Files\Dell\QuickSet\quickset.exe
O4 - Global Startup: SetPoint.lnk = ?
O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O13 - Gopher Prefix:
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\system32\aestsrv.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\Windows\system32\CTsvcCDA.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Dell Internal Network Card Power Management (nicconfigsvc) - Dell Inc. - C:\Program Files\Dell\QuickSet\NicConfigSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\Windows\system32\STacSV.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
--
End of file - 9439 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
All drivers whitelisted.
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
R2 Bonjour Service - "c:\program files\bonjour\mdnsresponder.exe" <Not Verified; Apple Inc.; Bonjour>
R2 Creative Labs Licensing Service - "c:\program files\common files\creative labs shared\service\creativelicensing.exe" <Not Verified; Creative Labs; Creative Labs Licensing Service>
S3 stllssvr - "c:\program files\common files\surething shared\stllssvr.exe" <Not Verified; MicroVision Development, Inc.; SureThing CD Labeler>
-- Device Manager: Disabled ----------------------------------------------------
No disabled devices found.
-- Files created between 2007-12-28 and 2008-01-28 -----------------------------
2008-01-28 10:47:22 0 d-------- C:\Program Files\Trend Micro
2008-01-26 14:13:02 0 d-------- C:\Program Files\MSXML 4.0
2008-01-26 12:32:21 0 d-------- C:\Users\All Users\GRAW2
2008-01-26 12:27:43 0 d-------- C:\Users\All Users\Media Center Programs
2008-01-26 12:20:00 0 d-------- C:\Program Files\UBISOFT
2008-01-25 18:06:21 0 d-------- C:\Program Files\iPod
2008-01-25 18:06:20 0 d-------- C:\Program Files\iTunes
2008-01-25 18:05:55 0 d-------- C:\Program Files\Bonjour
2008-01-25 18:05:43 0 d-------- C:\Users\All Users\Apple Computer
2008-01-25 18:05:43 0 d-------- C:\Program Files\QuickTime
2008-01-25 18:05:26 0 d-------- C:\Program Files\Apple Software Update
2008-01-25 18:05:09 0 d-------- C:\Users\All Users\Apple
2008-01-25 18:05:09 0 d-------- C:\Program Files\Common Files\Apple
2008-01-25 17:04:08 0 --a------ C:\Windows\nsreg.dat
2008-01-25 14:50:17 0 d-------- C:\Users\Kirk\Bluetooth Software
2008-01-25 14:50:14 0 d-------- C:\Users\All Users\NVIDIA
2008-01-25 14:49:56 0 dr------- C:\Users\Kirk\Searches
2008-01-25 14:49:48 0 dr------- C:\Users\Kirk\Contacts
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Videos
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Templates
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Start Menu
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\SendTo
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Saved Games
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Recent
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\PrintHood
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Pictures
2008-01-25 14:49:28 1048576 --ahs---- C:\Users\Kirk\NTUSER.DAT
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\NetHood
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\My Documents
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Music
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Local Settings
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Links
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Favorites
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Downloads
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Documents
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Desktop
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Cookies
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Application Data
2008-01-25 14:49:28 0 d--h----- C:\Users\Kirk\AppData
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Templates
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Start Menu
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\SendTo
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Recent
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\PrintHood
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\NetHood
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\My Documents
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Local Settings
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Cookies
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Application Data
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Templates
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Start Menu
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Favorites
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Documents
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Desktop
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Application Data
2008-01-11 14:14:15 0 d-------- C:\Program Files\Synaptics
2008-01-11 14:05:18 0 d-------- C:\Windows\Users
2008-01-11 14:03:21 0 d-------- C:\doctemp
2008-01-11 14:02:17 0 d-------- C:\Windows\system32\oem
2008-01-11 14:02:17 0 d-------- C:\Drivers
2008-01-11 14:02:17 0 d-------- C:\DELL
2008-01-11 06:48:23 0 d-------- C:\Program Files\Microsoft Works
2008-01-11 06:48:01 0 d-------- C:\Users\All Users\Google
2008-01-11 06:48:00 0 d-------- C:\Program Files\Google
2008-01-11 06:47:41 0 d-------- C:\Users\All Users\Adobe
2008-01-11 06:47:39 0 d-------- C:\Program Files\Common Files\Adobe
2008-01-11 06:46:49 0 d-------- C:\Users\All Users\CyberLink
2008-01-11 06:46:42 44544 --a------ C:\Windows\system32\msxml4a.dll <Not Verified; Microsoft Corporation; Microsoft(R) MSXML 4.0 SP1>
2008-01-11 06:46:36 0 d-------- C:\Program Files\CyberLink
2008-01-11 06:45:44 0 d-------- C:\Users\All Users\Roxio
2008-01-11 06:43:40 0 d-------- C:\Program Files\Common Files\SureThing Shared
2008-01-11 06:43:39 0 d-------- C:\Users\All Users\InstallShield
2008-01-11 06:43:39 0 d-------- C:\Program Files\Roxio
2008-01-11 06:43:28 0 d-------- C:\Users\All Users\Sonic
2008-01-11 06:43:25 0 d-------- C:\Program Files\Common Files\Sonic Shared
2008-01-11 06:43:08 0 d-------- C:\Program Files\Common Files\Roxio Shared
2008-01-11 06:42:17 229376 --a------ C:\Windows\system32\BtwRSupport.dll <Not Verified; Broadcom Corporation.; Bluetooth Software 6.0.1.3100>
2008-01-11 06:42:16 0 d-------- C:\Windows\system32\es-MX
2008-01-11 06:42:16 0 d-------- C:\Windows\system32\es-AR
2008-01-11 06:42:15 0 d-------- C:\Program Files\WIDCOMM
2008-01-11 06:42:01 0 d-------- C:\Windows\system32\AGEIA
2008-01-11 06:42:00 0 d-------- C:\Program Files\AGEIA Technologies
2008-01-11 06:41:58 0 d-------- C:\Program Files\Logitech
2008-01-11 06:41:07 0 d-------- C:\Program Files\Broadcom
2008-01-11 06:41:03 126976 --a------ C:\Windows\system32\Imsmudlg.exe <Not Verified; Intel(R) Corporation; Uninstset Installation Utility>
2008-01-11 06:41:03 0 d-------- C:\Windows\system32\ENU
2008-01-11 06:40:59 0 d-------- C:\Program Files\Intel
2008-01-11 06:40:57 0 d-------- C:\Users\All Users\Dell
2008-01-11 06:34:49 69632 --a------ C:\Windows\system32\KemXML.dll <Not Verified; Logitech Inc.; Logitech SetPoint>
2008-01-11 06:34:49 110592 --a------ C:\Windows\system32\KemWnd.dll <Not Verified; Logitech Inc.; Logitech SetPoint>
2008-01-11 06:34:49 131072 --a------ C:\Windows\system32\KemUtil.dll <Not Verified; Logitech Inc.; Logitech SetPoint>
2008-01-11 06:34:49 163840 --a------ C:\Windows\system32\kemutb.dll <Not Verified; Logitech Inc.; Logitech SetPoint>
2008-01-11 06:34:45 0 d-------- C:\Users\All Users\Logitech
2008-01-11 06:34:44 0 d-------- C:\Program Files\SetPoint
2008-01-11 06:34:43 0 d-------- C:\Program Files\Common Files\Logitech
2008-01-11 06:34:13 76 -r-hs---- C:\Windows\CT4CET.bin
2008-01-11 06:34:06 0 d-------- C:\Documents and Settings
2008-01-11 06:33:59 0 d-------- C:\Program Files\Common Files\Reallusion
2008-01-11 06:33:25 0 d-------- C:\Program Files\Creative Live! Cam
2008-01-11 06:33:13 0 d-------- C:\Program Files\Dell
2008-01-11 06:32:37 25088 -----n--- C:\Windows\system32\CTSVCCTL.EXE <Not Verified; Creative Technology Ltd; Creative Service Control>
2008-01-11 06:32:37 44032 -----n--- C:\Windows\system32\CTSVCCDA.EXE <Not Verified; Creative Technology Ltd; Creative Service for CDROM Access>
2008-01-11 06:32:26 0 d-------- C:\Program Files\Common Files\Creative
2008-01-11 06:32:23 0 d--h----- C:\Program Files\Creative Installation Information
2008-01-11 06:32:12 66560 -----n--- C:\Windows\system32\CmdRtr.dll
2008-01-11 06:32:12 101376 -----n--- C:\Windows\system32\APOMngr.dll
2008-01-11 06:32:11 409600 --a------ C:\Windows\system32\wrap_oal.dll <Not Verified; Creative Labs; Creative Labs OpenAL32>
2008-01-11 06:32:11 114688 --a------ C:\Windows\system32\OpenAL32.dll <Not Verified; Portions (C) Creative Labs Inc. and NVIDIA Corp.; Standard OpenAL(TM) Library>
2008-01-11 06:31:47 0 d-------- C:\Program Files\Creative
2008-01-11 06:31:43 0 d-------- C:\Users\All Users\Creative
2008-01-11 06:31:43 0 d-------- C:\Users\All Users\Creative Labs
2008-01-11 06:31:42 0 d-------- C:\Program Files\Common Files\Creative Labs Shared
2008-01-11 06:31:33 0 d-------- C:\Windows\java
2008-01-11 06:31:33 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-01-11 06:31:32 0 d-------- C:\Program Files\Common Files\InstallShield
2008-01-11 06:31:24 0 d-------- C:\Program Files\Java
2008-01-11 06:31:24 0 d-------- C:\Program Files\Common Files\Java
2008-01-11 06:30:04 0 d--hs---- C:\Windows\Installer
2008-01-11 06:29:02 0 d-------- C:\Windows\system32\Macromed
2008-01-11 06:20:28 1515 --a------ C:\Windows\bthservsdp.dat
2008-01-11 06:20:17 0 d-------- C:\Windows\SoftwareDistribution
2008-01-11 06:19:32 0 d-------- C:\Program Files\Sigmatel
2008-01-11 06:18:36 0 d--hs---- C:\System Volume Information
-- Find3M Report ---------------------------------------------------------------
2008-01-28 10:33:56 27240 --a------ C:\Users\Kirk\AppData\Roaming\nvModes.dat
2008-01-28 10:33:55 27240 --a------ C:\Users\Kirk\AppData\Roaming\nvModes.001
2008-01-26 20:07:29 0 d-------- C:\Users\Kirk\AppData\Roaming\Macromedia
2008-01-26 20:07:29 0 d-------- C:\Users\Kirk\AppData\Roaming\Adobe
2008-01-26 19:49:47 0 d-------- C:\Users\Kirk\AppData\Roaming\tmp
2008-01-26 19:49:47 0 d-------- C:\Users\Kirk\AppData\Roaming\Reallusion
2008-01-26 19:46:29 0 d-------- C:\Users\Kirk\AppData\Roaming\Creative
2008-01-26 15:07:48 0 d-------- C:\Program Files\Windows Mail
2008-01-26 15:07:46 0 d-------- C:\Program Files\Windows Sidebar
2008-01-26 12:18:17 0 d-------- C:\Users\Kirk\AppData\Roaming\InstallShield
2008-01-25 18:06:27 0 d-------- C:\Users\Kirk\AppData\Roaming\Apple Computer
2008-01-25 18:05:09 0 d-------- C:\Program Files\Common Files
2008-01-25 17:04:06 0 d-------- C:\Users\Kirk\AppData\Roaming\Mozilla
2008-01-25 16:21:45 0 d-------- C:\Users\Kirk\AppData\Roaming\Google
2008-01-25 14:50:18 0 d-------- C:\Users\Kirk\AppData\Roaming\Logitech
2008-01-25 14:49:49 0 d-------- C:\Users\Kirk\AppData\Roaming\Identities
2008-01-11 14:10:04 0 d-------- C:\Program Files\Windows Calendar
2008-01-11 14:07:14 0 d-------- C:\Program Files\Windows Defender
2008-01-11 06:21:01 174 --ahs---- C:\Program Files\desktop.ini
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [01/11/2008 02:07 PM]
"ECenter"="C:\Dell\E-Center\EULALauncher.exe" [05/25/2007 12:03 AM]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [05/22/2007 11:34 PM]
"OEM02Mon.exe"="C:\Windows\OEM02Mon.exe" [08/28/2007 11:54 PM]
"SigmatelSysTrayApp"="C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe" [10/08/2007 06:10 AM]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [11/06/2007 03:38 AM]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [11/06/2007 03:37 AM]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [11/06/2007 03:38 AM]
"NVHotkey"="C:\Windows\system32\nvHotkey.dll" [11/06/2007 03:38 AM]
"Windows Mobile Device Center"="%windir%\WindowsMobile\wmdc.exe" []
"VolPanel"="C:\Program Files\Creative\SBAudigy\Volume Panel\VolPanlu.exe" [11/27/2006 09:14 AM]
"UpdReg"="C:\Windows\UpdReg.EXE" [05/11/2000 01:00 AM]
"DELL Webcam Manager"="C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" [07/27/2007 04:43 PM]
"Logitech Hardware Abstraction Layer"="C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE" [01/11/2007 07:15 PM]
"@"="" []
"IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [02/12/2007 01:37 PM]
"Launch LCDMon"="C:\Program Files\Common Files\Logitech\LCD Manager\LCDMon.exe" [07/18/2007 07:26 AM]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [10/03/2006 11:37 AM]
"PCMService"="C:\Program Files\Dell\MediaDirect\PCMService.exe" [04/16/2007 04:10 PM]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [05/11/2007 03:06 AM]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [01/11/2008 06:48 AM]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [01/11/2007 07:15 PM C:\Windows\KHALMNPR.Exe]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [01/10/2008 03:27 PM]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [01/15/2008 03:22 AM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WindowsWelcomeCenter"="oobefldr.dll,ShowWelcomeCenter" []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [11/3/2006 5:55:50 PM]
QuickSet.lnk - C:\Program Files\Dell\QuickSet\quickset.exe [7/20/2007 6:13:26 PM]
SetPoint.lnk - C:\Program Files\SetPoint\SetPoint.exe [1/11/2008 6:34:48 AM]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"=2 (0x2)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"appinit_dlls"=C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
@="IEEE 1394 Bus host controllers"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
@="SBP2 IEEE 1394 Devices"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
@="SecurityDevices"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalSystemNetworkRestricted hidserv UxSms WdiSystemHost Netman trkwks AudioEndpointBuilder WUDFSvc irmon sysmain IPBusEnum dot3svc PcaSvc EMDMgmt TabletInputService wlansvc WPDBusEnum
bthsvcs BthServ
WindowsMobile wcescomm rapimgr
LocalServiceRestricted WcesComm RapiMgr
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1d4f99d3-c03f-11dc-b47d-806e6f6e6963}]
AutoRun\command- E:\Start.exe
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
C:\Windows\system32\unregmp2.exe /ShowWMP
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
%SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI
-- End of Deckard's System Scanner: finished at 2008-01-28 10:48:16 ------------
Deckard's System Scanner v20071014.68
Run by Kirk on 2008-01-28 10:46:10
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- Last 5 Restore Point(s) --
10: 2008-01-28 04:06:03 UTC - RP35 - Windows Update
9: 2008-01-28 01:43:36 UTC - RP34 - Scheduled Checkpoint
8: 2008-01-26 20:12:34 UTC - RP33 - Windows Update
7: 2008-01-26 18:28:18 UTC - RP32 - Installed DirectX
6: 2008-01-26 18:19:48 UTC - RP30 - Installed Tom Clancy's Ghost Recon Advanced Warfighter® 2
-- First Restore Point --
1: 2008-01-25 22:20:47 UTC - RP24 - New
Backed up registry hives.
Performed disk cleanup.
-- HijackThis (run as Kirk.exe) ------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:47:28 AM, on 1/28/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16575)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\OEM02Mon.exe
C:\Program Files\Sigmatel\C-Major Audio\WDM\sttray.exe
C:\Windows\System32\rundll32.exe
C:\Windows\System32\rundll32.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\Creative\SBAudigy\Volume Panel\VolPanlu.exe
C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Common Files\Logitech\LCD Manager\LCDMon.exe
C:\Program Files\Dell\MediaDirect\PCMService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\SetPoint\SetPoint.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Logitech\LCD Manager\Applets\LCDClock.exe
C:\Program Files\Common Files\Logitech\LCD Manager\Applets\LCDMedia.exe
C:\Program Files\Common Files\Logitech\LCD Manager\Applets\LCDCountdown.exe
C:\Program Files\Common Files\Logitech\LCD Manager\Applets\LCDPOP3.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
c:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
C:\Users\Kirk\Documents\dss.exe
C:\Windows\system32\SearchFilterHost.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Kirk.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\sttray.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NVHotkey] rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [VolPanel] "C:\Program Files\Creative\SBAudigy\Volume Panel\VolPanlu.exe" /r
O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE
O4 - HKLM\..\Run: [DELL Webcam Manager] "C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /s
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE"
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Launch LCDMon] "C:\Program Files\Common Files\Logitech\LCD Manager\LCDMon.exe"
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: QuickSet.lnk = C:\Program Files\Dell\QuickSet\quickset.exe
O4 - Global Startup: SetPoint.lnk = ?
O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O13 - Gopher Prefix:
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\system32\aestsrv.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\Windows\system32\CTsvcCDA.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Dell Internal Network Card Power Management (nicconfigsvc) - Dell Inc. - C:\Program Files\Dell\QuickSet\NicConfigSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\Windows\system32\STacSV.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
--
End of file - 9439 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
All drivers whitelisted.
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
R2 Bonjour Service - "c:\program files\bonjour\mdnsresponder.exe" <Not Verified; Apple Inc.; Bonjour>
R2 Creative Labs Licensing Service - "c:\program files\common files\creative labs shared\service\creativelicensing.exe" <Not Verified; Creative Labs; Creative Labs Licensing Service>
S3 stllssvr - "c:\program files\common files\surething shared\stllssvr.exe" <Not Verified; MicroVision Development, Inc.; SureThing CD Labeler>
-- Device Manager: Disabled ----------------------------------------------------
No disabled devices found.
-- Files created between 2007-12-28 and 2008-01-28 -----------------------------
2008-01-28 10:47:22 0 d-------- C:\Program Files\Trend Micro
2008-01-26 14:13:02 0 d-------- C:\Program Files\MSXML 4.0
2008-01-26 12:32:21 0 d-------- C:\Users\All Users\GRAW2
2008-01-26 12:27:43 0 d-------- C:\Users\All Users\Media Center Programs
2008-01-26 12:20:00 0 d-------- C:\Program Files\UBISOFT
2008-01-25 18:06:21 0 d-------- C:\Program Files\iPod
2008-01-25 18:06:20 0 d-------- C:\Program Files\iTunes
2008-01-25 18:05:55 0 d-------- C:\Program Files\Bonjour
2008-01-25 18:05:43 0 d-------- C:\Users\All Users\Apple Computer
2008-01-25 18:05:43 0 d-------- C:\Program Files\QuickTime
2008-01-25 18:05:26 0 d-------- C:\Program Files\Apple Software Update
2008-01-25 18:05:09 0 d-------- C:\Users\All Users\Apple
2008-01-25 18:05:09 0 d-------- C:\Program Files\Common Files\Apple
2008-01-25 17:04:08 0 --a------ C:\Windows\nsreg.dat
2008-01-25 14:50:17 0 d-------- C:\Users\Kirk\Bluetooth Software
2008-01-25 14:50:14 0 d-------- C:\Users\All Users\NVIDIA
2008-01-25 14:49:56 0 dr------- C:\Users\Kirk\Searches
2008-01-25 14:49:48 0 dr------- C:\Users\Kirk\Contacts
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Videos
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Templates
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Start Menu
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\SendTo
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Saved Games
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Recent
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\PrintHood
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Pictures
2008-01-25 14:49:28 1048576 --ahs---- C:\Users\Kirk\NTUSER.DAT
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\NetHood
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\My Documents
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Music
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Local Settings
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Links
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Favorites
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Downloads
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Documents
2008-01-25 14:49:28 0 dr------- C:\Users\Kirk\Desktop
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Cookies
2008-01-25 14:49:28 0 d--hs---- C:\Users\Kirk\Application Data
2008-01-25 14:49:28 0 d--h----- C:\Users\Kirk\AppData
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Templates
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Start Menu
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\SendTo
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Recent
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\PrintHood
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\NetHood
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\My Documents
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Local Settings
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Cookies
2008-01-25 14:48:41 0 d--hs---- C:\Users\Default\Application Data
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Templates
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Start Menu
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Favorites
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Documents
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Desktop
2008-01-25 14:48:41 0 d--hs---- C:\Users\All Users\Application Data
2008-01-11 14:14:15 0 d-------- C:\Program Files\Synaptics
2008-01-11 14:05:18 0 d-------- C:\Windows\Users
2008-01-11 14:03:21 0 d-------- C:\doctemp
2008-01-11 14:02:17 0 d-------- C:\Windows\system32\oem
2008-01-11 14:02:17 0 d-------- C:\Drivers
2008-01-11 14:02:17 0 d-------- C:\DELL
2008-01-11 06:48:23 0 d-------- C:\Program Files\Microsoft Works
2008-01-11 06:48:01 0 d-------- C:\Users\All Users\Google
2008-01-11 06:48:00 0 d-------- C:\Program Files\Google
2008-01-11 06:47:41 0 d-------- C:\Users\All Users\Adobe
2008-01-11 06:47:39 0 d-------- C:\Program Files\Common Files\Adobe
2008-01-11 06:46:49 0 d-------- C:\Users\All Users\CyberLink
2008-01-11 06:46:42 44544 --a------ C:\Windows\system32\msxml4a.dll <Not Verified; Microsoft Corporation; Microsoft(R) MSXML 4.0 SP1>
2008-01-11 06:46:36 0 d-------- C:\Program Files\CyberLink
2008-01-11 06:45:44 0 d-------- C:\Users\All Users\Roxio
2008-01-11 06:43:40 0 d-------- C:\Program Files\Common Files\SureThing Shared
2008-01-11 06:43:39 0 d-------- C:\Users\All Users\InstallShield
2008-01-11 06:43:39 0 d-------- C:\Program Files\Roxio
2008-01-11 06:43:28 0 d-------- C:\Users\All Users\Sonic
2008-01-11 06:43:25 0 d-------- C:\Program Files\Common Files\Sonic Shared
2008-01-11 06:43:08 0 d-------- C:\Program Files\Common Files\Roxio Shared
2008-01-11 06:42:17 229376 --a------ C:\Windows\system32\BtwRSupport.dll <Not Verified; Broadcom Corporation.; Bluetooth Software 6.0.1.3100>
2008-01-11 06:42:16 0 d-------- C:\Windows\system32\es-MX
2008-01-11 06:42:16 0 d-------- C:\Windows\system32\es-AR
2008-01-11 06:42:15 0 d-------- C:\Program Files\WIDCOMM
2008-01-11 06:42:01 0 d-------- C:\Windows\system32\AGEIA
2008-01-11 06:42:00 0 d-------- C:\Program Files\AGEIA Technologies
2008-01-11 06:41:58 0 d-------- C:\Program Files\Logitech
2008-01-11 06:41:07 0 d-------- C:\Program Files\Broadcom
2008-01-11 06:41:03 126976 --a------ C:\Windows\system32\Imsmudlg.exe <Not Verified; Intel(R) Corporation; Uninstset Installation Utility>
2008-01-11 06:41:03 0 d-------- C:\Windows\system32\ENU
2008-01-11 06:40:59 0 d-------- C:\Program Files\Intel
2008-01-11 06:40:57 0 d-------- C:\Users\All Users\Dell
2008-01-11 06:34:49 69632 --a------ C:\Windows\system32\KemXML.dll <Not Verified; Logitech Inc.; Logitech SetPoint>
2008-01-11 06:34:49 110592 --a------ C:\Windows\system32\KemWnd.dll <Not Verified; Logitech Inc.; Logitech SetPoint>
2008-01-11 06:34:49 131072 --a------ C:\Windows\system32\KemUtil.dll <Not Verified; Logitech Inc.; Logitech SetPoint>
2008-01-11 06:34:49 163840 --a------ C:\Windows\system32\kemutb.dll <Not Verified; Logitech Inc.; Logitech SetPoint>
2008-01-11 06:34:45 0 d-------- C:\Users\All Users\Logitech
2008-01-11 06:34:44 0 d-------- C:\Program Files\SetPoint
2008-01-11 06:34:43 0 d-------- C:\Program Files\Common Files\Logitech
2008-01-11 06:34:13 76 -r-hs---- C:\Windows\CT4CET.bin
2008-01-11 06:34:06 0 d-------- C:\Documents and Settings
2008-01-11 06:33:59 0 d-------- C:\Program Files\Common Files\Reallusion
2008-01-11 06:33:25 0 d-------- C:\Program Files\Creative Live! Cam
2008-01-11 06:33:13 0 d-------- C:\Program Files\Dell
2008-01-11 06:32:37 25088 -----n--- C:\Windows\system32\CTSVCCTL.EXE <Not Verified; Creative Technology Ltd; Creative Service Control>
2008-01-11 06:32:37 44032 -----n--- C:\Windows\system32\CTSVCCDA.EXE <Not Verified; Creative Technology Ltd; Creative Service for CDROM Access>
2008-01-11 06:32:26 0 d-------- C:\Program Files\Common Files\Creative
2008-01-11 06:32:23 0 d--h----- C:\Program Files\Creative Installation Information
2008-01-11 06:32:12 66560 -----n--- C:\Windows\system32\CmdRtr.dll
2008-01-11 06:32:12 101376 -----n--- C:\Windows\system32\APOMngr.dll
2008-01-11 06:32:11 409600 --a------ C:\Windows\system32\wrap_oal.dll <Not Verified; Creative Labs; Creative Labs OpenAL32>
2008-01-11 06:32:11 114688 --a------ C:\Windows\system32\OpenAL32.dll <Not Verified; Portions (C) Creative Labs Inc. and NVIDIA Corp.; Standard OpenAL(TM) Library>
2008-01-11 06:31:47 0 d-------- C:\Program Files\Creative
2008-01-11 06:31:43 0 d-------- C:\Users\All Users\Creative
2008-01-11 06:31:43 0 d-------- C:\Users\All Users\Creative Labs
2008-01-11 06:31:42 0 d-------- C:\Program Files\Common Files\Creative Labs Shared
2008-01-11 06:31:33 0 d-------- C:\Windows\java
2008-01-11 06:31:33 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-01-11 06:31:32 0 d-------- C:\Program Files\Common Files\InstallShield
2008-01-11 06:31:24 0 d-------- C:\Program Files\Java
2008-01-11 06:31:24 0 d-------- C:\Program Files\Common Files\Java
2008-01-11 06:30:04 0 d--hs---- C:\Windows\Installer
2008-01-11 06:29:02 0 d-------- C:\Windows\system32\Macromed
2008-01-11 06:20:28 1515 --a------ C:\Windows\bthservsdp.dat
2008-01-11 06:20:17 0 d-------- C:\Windows\SoftwareDistribution
2008-01-11 06:19:32 0 d-------- C:\Program Files\Sigmatel
2008-01-11 06:18:36 0 d--hs---- C:\System Volume Information
-- Find3M Report ---------------------------------------------------------------
2008-01-28 10:33:56 27240 --a------ C:\Users\Kirk\AppData\Roaming\nvModes.dat
2008-01-28 10:33:55 27240 --a------ C:\Users\Kirk\AppData\Roaming\nvModes.001
2008-01-26 20:07:29 0 d-------- C:\Users\Kirk\AppData\Roaming\Macromedia
2008-01-26 20:07:29 0 d-------- C:\Users\Kirk\AppData\Roaming\Adobe
2008-01-26 19:49:47 0 d-------- C:\Users\Kirk\AppData\Roaming\tmp
2008-01-26 19:49:47 0 d-------- C:\Users\Kirk\AppData\Roaming\Reallusion
2008-01-26 19:46:29 0 d-------- C:\Users\Kirk\AppData\Roaming\Creative
2008-01-26 15:07:48 0 d-------- C:\Program Files\Windows Mail
2008-01-26 15:07:46 0 d-------- C:\Program Files\Windows Sidebar
2008-01-26 12:18:17 0 d-------- C:\Users\Kirk\AppData\Roaming\InstallShield
2008-01-25 18:06:27 0 d-------- C:\Users\Kirk\AppData\Roaming\Apple Computer
2008-01-25 18:05:09 0 d-------- C:\Program Files\Common Files
2008-01-25 17:04:06 0 d-------- C:\Users\Kirk\AppData\Roaming\Mozilla
2008-01-25 16:21:45 0 d-------- C:\Users\Kirk\AppData\Roaming\Google
2008-01-25 14:50:18 0 d-------- C:\Users\Kirk\AppData\Roaming\Logitech
2008-01-25 14:49:49 0 d-------- C:\Users\Kirk\AppData\Roaming\Identities
2008-01-11 14:10:04 0 d-------- C:\Program Files\Windows Calendar
2008-01-11 14:07:14 0 d-------- C:\Program Files\Windows Defender
2008-01-11 06:21:01 174 --ahs---- C:\Program Files\desktop.ini
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [01/11/2008 02:07 PM]
"ECenter"="C:\Dell\E-Center\EULALauncher.exe" [05/25/2007 12:03 AM]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [05/22/2007 11:34 PM]
"OEM02Mon.exe"="C:\Windows\OEM02Mon.exe" [08/28/2007 11:54 PM]
"SigmatelSysTrayApp"="C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe" [10/08/2007 06:10 AM]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [11/06/2007 03:38 AM]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [11/06/2007 03:37 AM]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [11/06/2007 03:38 AM]
"NVHotkey"="C:\Windows\system32\nvHotkey.dll" [11/06/2007 03:38 AM]
"Windows Mobile Device Center"="%windir%\WindowsMobile\wmdc.exe" []
"VolPanel"="C:\Program Files\Creative\SBAudigy\Volume Panel\VolPanlu.exe" [11/27/2006 09:14 AM]
"UpdReg"="C:\Windows\UpdReg.EXE" [05/11/2000 01:00 AM]
"DELL Webcam Manager"="C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" [07/27/2007 04:43 PM]
"Logitech Hardware Abstraction Layer"="C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE" [01/11/2007 07:15 PM]
"@"="" []
"IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [02/12/2007 01:37 PM]
"Launch LCDMon"="C:\Program Files\Common Files\Logitech\LCD Manager\LCDMon.exe" [07/18/2007 07:26 AM]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [10/03/2006 11:37 AM]
"PCMService"="C:\Program Files\Dell\MediaDirect\PCMService.exe" [04/16/2007 04:10 PM]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [05/11/2007 03:06 AM]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [01/11/2008 06:48 AM]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [01/11/2007 07:15 PM C:\Windows\KHALMNPR.Exe]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [01/10/2008 03:27 PM]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [01/15/2008 03:22 AM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WindowsWelcomeCenter"="oobefldr.dll,ShowWelcomeCenter" []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [11/3/2006 5:55:50 PM]
QuickSet.lnk - C:\Program Files\Dell\QuickSet\quickset.exe [7/20/2007 6:13:26 PM]
SetPoint.lnk - C:\Program Files\SetPoint\SetPoint.exe [1/11/2008 6:34:48 AM]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"=2 (0x2)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"appinit_dlls"=C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
@="IEEE 1394 Bus host controllers"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
@="SBP2 IEEE 1394 Devices"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
@="SecurityDevices"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalSystemNetworkRestricted hidserv UxSms WdiSystemHost Netman trkwks AudioEndpointBuilder WUDFSvc irmon sysmain IPBusEnum dot3svc PcaSvc EMDMgmt TabletInputService wlansvc WPDBusEnum
bthsvcs BthServ
WindowsMobile wcescomm rapimgr
LocalServiceRestricted WcesComm RapiMgr
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1d4f99d3-c03f-11dc-b47d-806e6f6e6963}]
AutoRun\command- E:\Start.exe
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
C:\Windows\system32\unregmp2.exe /ShowWMP
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
%SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI
-- End of Deckard's System Scanner: finished at 2008-01-28 10:48:16 ------------