i was able to open my task manager after following your instructions and norton was no where to be found nor were the other things you were looking for, also i was unable to remove norton using the cc cleaner
i was able to download avir and am currently doing a scan, although norton is still hanging around
Logfile of random's system information tool 1.01 (written by random/random)
Run by Anthony at 2008-09-15 22:37:17
Microsoft Windows XP Professional Service Pack 3
System drive C: has 50 GB (87%) free of 57 GB
Total RAM: 511 MB (38% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:38:27 PM, on 9/15/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
C:\Program Files\Yahoo!\Common\YMailAdvisor.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Norton AntiVirus\Engine\16.0.0.120\ccSvcHst.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avscan.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Anthony\Local Settings\Temporary Internet Files\Content.IE5\XGBLYWCP\RSIT[1].exe
C:\Program Files\Trend Micro\HijackThis\Anthony.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://us.rd.yahoo.com/customize/ycomp/ ... .yahoo.comR3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn9\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn9\yt.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\16.0.0.120\IPSBHO.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn9\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn9\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [YSearchProtection] "C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"
O4 - HKLM\..\Run: [YMailAdvisor] "C:\Program Files\Yahoo!\Common\YMailAdvisor.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [YSearchProtection] C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2] C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe /S
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft.com/fwlink/?linkid=39204O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) -
http://us.dl1.yimg.com/download.yahoo.c ... urrent.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://www.update.microsoft.com/windows ... 1756123511O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) -
http://ax.emsisoft.com/asquared.cabO16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) -
http://wwwimages.adobe.com/www.adobe.co ... nos/gp.cabO23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Norton AntiVirus - Symantec Corporation - C:\Program Files\Norton AntiVirus\Engine\16.0.0.120\ccSvcHst.exe
--
End of file - 7572 bytes
Registry dump
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn9\yt.dll [2008-06-02 880880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-05-18 308856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-07-07 1562448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files\Norton AntiVirus\Engine\16.0.0.120\IPSBHO.DLL [2008-08-26 107896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2008-08-27 2403392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll [2008-04-08 654320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
SingleInstance Class - C:\Program Files\Yahoo!\Companion\Installs\cpn9\YTSingleInstance.dll [2008-06-02 160496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn9\yt.dll [2008-06-02 880880]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2008-08-27 2403392]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2008-05-02 413696]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-05-18 185896]
"YSearchProtection"=C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [2008-01-10 223984]
"YMailAdvisor"=C:\Program Files\Yahoo!\Common\YMailAdvisor.exe [2008-06-10 125208]
"avgnt"=C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe [2008-06-12 266497]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-13 1695232]
"YSearchProtection"=C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [2008-01-10 223984]
"Uniblue RegistryBooster 2"=C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe /S []
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2008-08-18 1832272]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Google Updater.lnk - C:\Program Files\Google\Google Updater\GoogleUpdater.exe
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-05-03 61440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{EF8820EB-F11E-4DD6-BC6C-D99084691C18}"=C:\Program Files\Internet Explorer\
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
C:\WINDOWS\System32\opnkhgDs
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll,
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
File associations
.scr - open - "%1" %*
List of files/folders created in the last three months
2008-09-15 22:37:16 ----D---- C:\rsit
2008-09-15 22:23:09 ----D---- C:\Program Files\Avira
2008-09-15 22:23:09 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
2008-09-04 11:25:17 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2008-09-04 11:25:10 ----A---- C:\WINDOWS\system32\MSSTDFMT.DLL
2008-09-04 11:25:09 ----D---- C:\Program Files\SpywareBlaster
2008-09-03 19:36:13 ----D---- C:\Program Files\ZoneAlarmSB
2008-09-03 19:29:44 ----D---- C:\WINDOWS\system32\ZoneLabs
2008-09-03 19:29:44 ----D---- C:\Program Files\Zone Labs
2008-09-03 19:10:38 ----D---- C:\Documents and Settings\Anthony\Application Data\VersionTracker Pro
2008-09-03 19:10:13 ----D---- C:\Program Files\TechTracker
2008-09-03 17:13:21 ----D---- C:\Program Files\Symantec
2008-09-03 17:12:57 ----D---- C:\Program Files\Windows Sidebar
2008-09-03 17:12:51 ----D---- C:\Program Files\NortonInstaller
2008-09-03 17:12:51 ----D---- C:\Program Files\Norton AntiVirus
2008-09-03 16:11:57 ----D---- C:\Program Files\AskSBar
2008-09-03 16:10:47 ----D---- C:\Documents and Settings\Anthony\Application Data\Comodo
2008-09-03 16:10:34 ----D---- C:\Documents and Settings\All Users\Application Data\comodo
2008-09-03 16:10:29 ----D---- C:\Program Files\COMODO
2008-09-03 15:52:38 ----D---- C:\Program Files\Common Files\Adobe
2008-09-03 15:52:38 ----D---- C:\Program Files\Adobe
2008-09-03 15:40:40 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
2008-09-03 15:40:35 ----D---- C:\Program Files\NOS
2008-09-03 13:42:16 ----D---- C:\Program Files\OpenOffice.org 2.4
2008-09-02 08:43:20 ----D---- C:\Program Files\Lavasoft
2008-09-02 08:40:11 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2008-08-31 15:33:30 ----A---- C:\WINDOWS\system32\ftp.exe
2008-08-31 15:31:09 ----D---- C:\WINDOWS\ERUNT
2008-08-31 15:22:12 ----D---- C:\SDFix
2008-08-31 11:30:26 ----D---- C:\WINDOWS\system32\LogFiles
2008-08-31 11:27:55 ----A---- C:\WINDOWS\system32\wmpns.dll
2008-08-31 11:25:53 ----D---- C:\WINDOWS\Prefetch
2008-08-31 10:33:00 ----D---- C:\WINDOWS\system32\en-us
2008-08-31 10:32:52 ----D---- C:\WINDOWS\system32\scripting
2008-08-31 10:32:46 ----D---- C:\WINDOWS\l2schemas
2008-08-31 10:32:41 ----D---- C:\WINDOWS\system32\en
2008-08-31 09:54:52 ----D---- C:\WINDOWS\network diagnostic
2008-08-31 09:11:46 ----A---- C:\WINDOWS\system32\javaws.exe
2008-08-31 09:11:46 ----A---- C:\WINDOWS\system32\javaw.exe
2008-08-31 09:11:45 ----A---- C:\WINDOWS\system32\java.exe
2008-08-30 15:58:21 ----A---- C:\WINDOWS\system32\WING32.DLL
2008-08-30 15:57:34 ----D---- C:\KA
2008-08-30 15:57:34 ----A---- C:\WINDOWS\KA.INI
2008-08-29 19:56:19 ----N---- C:\WINDOWS\SchedLgU.Txt
2008-08-28 22:12:20 ----D---- C:\Program Files\MSXML 4.0
2008-08-28 11:16:35 ----N---- C:\WINDOWS\system32\xmllite.dll
2008-08-28 11:16:17 ----N---- C:\WINDOWS\system32\wmphoto.dll
2008-08-28 11:16:06 ----N---- C:\WINDOWS\system32\wlanapi.dll
2008-08-28 11:16:01 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2008-08-28 11:16:00 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2008-08-28 11:15:47 ----N---- C:\WINDOWS\system32\verclsid.exe
2008-08-28 11:15:29 ----N---- C:\WINDOWS\system32\tspkg.dll
2008-08-28 11:15:29 ----N---- C:\WINDOWS\system32\tsgqec.dll
2008-08-28 11:14:47 ----N---- C:\WINDOWS\system32\setupn.exe
2008-08-28 11:14:34 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2008-08-28 11:14:28 ----N---- C:\WINDOWS\system32\rasqec.dll
2008-08-28 11:14:25 ----N---- C:\WINDOWS\system32\qutil.dll
2008-08-28 11:14:21 ----N---- C:\WINDOWS\system32\qcliprov.dll
2008-08-28 11:14:21 ----N---- C:\WINDOWS\system32\qagentrt.dll
2008-08-28 11:14:20 ----N---- C:\WINDOWS\system32\qagent.dll
2008-08-28 11:14:14 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2008-08-28 11:14:03 ----N---- C:\WINDOWS\system32\onex.dll
2008-08-28 11:13:32 ----N---- C:\WINDOWS\system32\napstat.exe
2008-08-28 11:13:32 ----N---- C:\WINDOWS\system32\napmontr.dll
2008-08-28 11:13:31 ----N---- C:\WINDOWS\system32\napipsec.dll
2008-08-28 11:13:26 ----N---- C:\WINDOWS\system32\msxml6r.dll
2008-08-28 11:13:26 ----N---- C:\WINDOWS\system32\msxml6.dll
2008-08-28 11:13:19 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2008-08-28 11:13:19 ----N---- C:\WINDOWS\system32\mssha.dll
2008-08-28 11:12:27 ----N---- C:\WINDOWS\system32\mmcperf.exe
2008-08-28 11:12:25 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2008-08-28 11:12:25 ----N---- C:\WINDOWS\system32\mmcex.dll
2008-08-28 11:12:25 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2008-08-28 11:11:45 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2008-08-28 11:11:43 ----N---- C:\WINDOWS\system32\kmsvc.dll
2008-08-28 11:11:38 ----N---- C:\WINDOWS\system32\kbdpash.dll
2008-08-28 11:11:38 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2008-08-28 11:11:36 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2008-08-28 11:11:35 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2008-08-28 11:09:50 ----A---- C:\WINDOWS\005496_.tmp
2008-08-28 11:09:45 ----N---- C:\WINDOWS\system32\eapsvc.dll
2008-08-28 11:09:45 ----N---- C:\WINDOWS\system32\eapqec.dll
2008-08-28 11:09:45 ----N---- C:\WINDOWS\system32\eappprxy.dll
2008-08-28 11:09:45 ----N---- C:\WINDOWS\system32\eapphost.dll
2008-08-28 11:09:44 ----N---- C:\WINDOWS\system32\eappgnui.dll
2008-08-28 11:09:44 ----N---- C:\WINDOWS\system32\eappcfg.dll
2008-08-28 11:09:44 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2008-08-28 11:09:44 ----N---- C:\WINDOWS\system32\eapolqec.dll
2008-08-28 11:09:34 ----N---- C:\WINDOWS\system32\dot3ui.dll
2008-08-28 11:09:34 ----N---- C:\WINDOWS\system32\dot3svc.dll
2008-08-28 11:09:34 ----N---- C:\WINDOWS\system32\dot3msm.dll
2008-08-28 11:09:34 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2008-08-28 11:09:34 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2008-08-28 11:09:34 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2008-08-28 11:09:34 ----N---- C:\WINDOWS\system32\dot3api.dll
2008-08-28 11:09:27 ----N---- C:\WINDOWS\system32\dimsroam.dll
2008-08-28 11:09:26 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2008-08-28 11:09:25 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2008-08-28 11:09:15 ----N---- C:\WINDOWS\system32\credssp.dll
2008-08-28 11:08:54 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2008-08-28 11:08:53 ----N---- C:\WINDOWS\system32\azroles.dll
2008-08-28 11:08:19 ----N---- C:\WINDOWS\system32\aaclient.dll
2008-08-28 09:19:47 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2008-08-27 21:13:54 ----D---- C:\WINDOWS\system32\PreInstall
2008-08-27 21:13:50 ----HD---- C:\WINDOWS\$hf_mig$
2008-08-26 20:26:51 ----A---- C:\WINDOWS\system32\MRT.exe
2008-08-26 20:21:08 ----D---- C:\Program Files\Digital Photo Navigator 1.5
2008-08-26 19:22:33 ----A---- C:\WINDOWS\system32\S32EVNT1.DLL
2008-08-26 19:21:39 ----D---- C:\Documents and Settings\All Users\Application Data\Symantec
2008-08-26 18:48:06 ----D---- C:\Documents and Settings\All Users\Application Data\Avg7
2008-08-26 18:39:33 ----D---- C:\WINDOWS\peernet
2008-08-26 18:39:31 ----D---- C:\WINDOWS\provisioning
2008-08-26 18:33:35 ----D---- C:\WINDOWS\ServicePackFiles
2008-08-26 18:24:38 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2008-08-26 18:19:55 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2008-08-26 18:19:49 ----D---- C:\WINDOWS\EHome
2008-08-26 13:52:46 ----A---- C:\WINDOWS\system32\wpa.bak
2008-08-26 13:52:40 ----A---- C:\WINDOWS\system32\pidgen.dll.wga
2008-08-26 13:52:39 ----A---- C:\WINDOWS\system32\EULA.TXT.wga
2008-08-26 13:52:39 ----A---- C:\WINDOWS\system32\dpcdll.dll.wga
2008-08-15 16:30:04 ----A---- C:\WINDOWS\system32\DEBUG_LOG.txt
2008-08-14 10:35:26 ----D---- C:\Program Files\Common Files\Symantec Shared
2008-08-14 10:24:10 ----D---- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
2008-08-14 08:27:50 ----D---- C:\ComboFix
2008-08-14 08:27:48 ----A---- C:\WINDOWS\system32\CF23576.exe
2008-08-14 00:01:00 ----A---- C:\WINDOWS\system32\CF22604.exe
2008-08-13 23:58:32 ----A---- C:\WINDOWS\system32\CF22107.exe
2008-08-13 21:01:29 ----D---- C:\Documents and Settings\All Users\Application Data\MailFrontier
2008-08-13 21:00:38 ----A---- C:\WINDOWS\system32\SpOrder.dll
2008-08-13 20:57:53 ----D---- C:\WINDOWS\Internet Logs
2008-08-13 17:56:31 ----D---- C:\Documents and Settings\Anthony\Application Data\Opera
2008-08-13 17:55:59 ----D---- C:\Program Files\Opera
2008-08-13 12:36:42 ----D---- C:\Documents and Settings\Anthony\Application Data\Malwarebytes
2008-08-13 12:36:34 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2008-08-13 12:36:34 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-08-10 08:24:44 ----N---- C:\WINDOWS\system32\spnpinst.exe
2008-08-09 23:17:36 ----D---- C:\Documents and Settings\Anthony\Application Data\Uniblue
2008-08-09 22:36:00 ----N---- C:\WINDOWS\system32\E8.tmp
2008-08-09 21:46:20 ----SHD---- C:\WINDOWS\CSC
2008-08-09 21:21:29 ----D---- C:\Documents and Settings\All Users\Application Data\Norton
2008-08-09 21:21:17 ----D---- C:\Documents and Settings\All Users\Application Data\NortonInstaller
2008-08-09 19:47:37 ----D---- C:\Program Files\Trend Micro
2008-08-01 15:31:48 ----D---- C:\Program Files\Spybot - Search & Destroy
2008-08-01 15:31:48 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-08-01 15:24:06 ----D---- C:\Program Files\CCleaner
2008-08-01 15:17:32 ----D---- C:\Program Files\Sophos
2008-08-01 15:11:03 ----D---- C:\Program Files\Alwil Software
2008-07-30 20:02:21 ----D---- C:\Documents and Settings\Anthony\Application Data\Image Zone Express
2008-07-30 13:12:24 ----SH---- C:\WINDOWS\system32\bqtdatny.ini
2008-07-30 13:04:48 ----A---- C:\WINDOWS\system32\6bbe2fa4-.txt
2008-07-30 13:04:15 ----ASH---- C:\WINDOWS\system32\sDghknpo.ini2
2008-07-30 13:04:14 ----ASH---- C:\WINDOWS\system32\sDghknpo.ini
2008-07-26 22:03:22 ----D---- C:\Documents and Settings\Anthony\Application Data\ArcSoft
2008-07-26 15:26:52 ----A---- C:\WINDOWS\marscam.ini
2008-07-26 15:24:48 ----RA---- C:\WINDOWS\system32\mr310exv.dll
2008-07-26 15:24:48 ----RA---- C:\WINDOWS\system32\mr310exd.dll
2008-07-26 15:24:48 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2008-07-26 15:24:47 ----A---- C:\WINDOWS\system32\tsbyuv.dll
2008-07-26 15:24:47 ----A---- C:\WINDOWS\system32\msyuv.dll
2008-07-26 15:24:46 ----A---- C:\WINDOWS\system32\ksuser.dll
2008-07-26 15:24:43 ----A---- C:\WINDOWS\system32\iyuv_32.dll
2008-07-26 14:46:57 ----A---- C:\WINDOWS\PCDLIB32.DLL
2008-07-26 14:44:36 ----D---- C:\Program Files\ArcSoft
2008-07-14 06:09:18 ----N---- C:\WINDOWS\system32\tzchange.exe
2008-07-09 13:22:34 ----D---- C:\Documents and Settings\All Users\Application Data\Kodak
2008-07-08 20:30:20 ----D---- C:\Documents and Settings\Anthony\Application Data\MSN6
2008-07-08 20:30:20 ----D---- C:\Documents and Settings\All Users\Application Data\MSN6
2008-07-03 04:14:02 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2008-06-16 18:20:04 ----D---- C:\WINDOWS\system32\appmgmt
List of drivers
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2008-06-27 75072]
R1 BHDrvx86;Symantec Heuristics Driver; \??\C:\WINDOWS\system32\drivers\NAV\1000000.078\BHDrvx86.sys []
R1 ccHP;Symantec Hash Provider; \??\C:\WINDOWS\system32\drivers\NAV\1000000.078\ccHPx86.sys []
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys []
R1 IDSxpx86;IDSxpx86; \??\C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20080822.001\IDSxpx86.sys []
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\System32\DRIVERS\kbdhid.sys [2008-04-13 14592]
R1 SRTSPX;SRTSPX; \??\C:\WINDOWS\system32\drivers\NAV\1000000.078\SRTSPX.SYS []
R1 SYMTDI;SYMTDI; \??\C:\WINDOWS\system32\drivers\NAV\1000000.078\SYMTDI.SYS []
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\System32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2006-05-03 1540608]
R3 avgntflt;avgntflt; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys []
R3 es1371;Creative AudioPCI (ES1371,ES1373) (WDM); C:\WINDOWS\system32\drivers\es1371mp.sys [2001-08-17 40704]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ltmodem5;LT Modem Driver; C:\WINDOWS\System32\DRIVERS\ltmdmnt.sys [2003-03-31 625537]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\System32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [2004-08-04 20992]
R3 SYMDNS;SYMDNS; \??\C:\WINDOWS\system32\drivers\NAV\1000000.078\SYMDNS.SYS []
R3 SymEvent;SymEvent; \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS []
R3 SYMFW;SYMFW; \??\C:\WINDOWS\system32\drivers\NAV\1000000.078\SYMFW.SYS []
R3 SYMIDS;SYMIDS; \??\C:\WINDOWS\system32\drivers\NAV\1000000.078\SYMIDS.SYS []
R3 SymIMMP;SymIMMP; C:\WINDOWS\system32\DRIVERS\SymIM.sys [2008-08-26 35888]
R3 SYMNDIS;SYMNDIS; \??\C:\WINDOWS\system32\drivers\NAV\1000000.078\SYMNDIS.SYS []
R3 SYMREDRV;SYMREDRV; \??\C:\WINDOWS\system32\drivers\NAV\1000000.078\SYMREDRV.SYS []
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 intelppm;Intel Processor Driver; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-13 36352]
S1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2007-03-01 28352]
S3 catchme;catchme; \??\C:\DOCUME~1\Anthony\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [2006-01-31 49664]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [2006-01-31 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [2006-01-31 21568]
S3 MEMSWEEP2;MEMSWEEP2; \??\C:\WINDOWS\System32\37.tmp []
S3 MR97310_USB_DUAL_CAMERA;MR97310 CIF Dual Mode Camera; C:\WINDOWS\System32\DRIVERS\mr97310c.sys [2002-12-13 129875]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NAVENG;NAVENG; \??\C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080828.050\NAVENG.SYS []
S3 NAVEX15;NAVEX15; \??\C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080828.050\NAVEX15.SYS []
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 SRTSP;SRTSP; \??\C:\WINDOWS\system32\drivers\NAV\1000000.078\SRTSP.SYS []
S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 SymIM;Symantec Network Security Intermediate Filter Service; C:\WINDOWS\system32\DRIVERS\SymIM.sys [2008-08-26 35888]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\System32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
List of services
R2 aawservice;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-09-02 611664]
R2 AntiVirScheduler;Avira AntiVir Personal - Free Antivirus Scheduler; C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe [2008-06-12 68865]
R2 AntiVirService;Avira AntiVir Personal - Free Antivirus Guard; C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe [2008-08-07 149761]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\System32\Ati2evxx.exe [2006-05-03 413696]
R2 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-04-08 138680]
R2 Norton AntiVirus;Norton AntiVirus; C:\Program Files\Norton AntiVirus\Engine\16.0.0.120\ccSvcHst.exe [2008-08-26 115560]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-05-03 520192]
S3 getPlus(R) Helper;getPlus(R) Helper; C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [2008-08-29 33752]
S4 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\HPZipm12.exe []
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.01 2008-09-15 22:38:36
Uninstall list
-->C:\PROGRA~1\Yahoo!\Common\UNYT_W~1.EXE
-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Ad-Aware-->MsiExec.exe /I{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}
Adobe AIR-->MsiExec.exe /I{00203668-8170-44A0-BE44-B632FA4D780F}
Adobe Flash Player ActiveX-->C:\WINDOWS\System32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin-->C:\WINDOWS\System32\Macromed\Flash\uninstall_plugin.exe
Adobe Media Player-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Application Installer.exe -uninstall com.adobe.amp 4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
Adobe Media Player-->MsiExec.exe /I{1EBB57D4-63FF-87CC-A0F0-D73982CF6008}
Adobe Shockwave Player-->C:\WINDOWS\system32\Adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
ArcSoft PhotoImpression 4-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{68D5CEF9-0DA8-47FE-B0EB-4CBFB5AAF662}\setup.exe" -l0x9
ATI - Software Uninstall Utility-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Display Driver-->rundll32 C:\WINDOWS\System32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
Digital Photo Navigator 1.5-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B7EF4BD8-CA13-11D5-AE3D-005004B8E30C}\Setup.exe" -l0x9
FoxyTunes for Firefox-->"C:\Program Files\Mozilla Firefox\firefox.exe" -chrome chrome://foxytunes/content/extras/uninstallExtension.xul
getPlus(R) for Adobe-->"C:\Program Files\NOS\bin\getPlus_HelperSvc.exe" /UninstallGet1
Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar1.dll"
Google Updater-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
HP Imaging Device Functions 7.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP Photosmart and Deskjet 7.0.A-->C:\Program Files\HP\Digital Imaging\{A9F5421F-DA70-4C77-BB97-8D77EC33ED5E}\setup\hpzscr01.exe -datfile hposcr09.dat
HP Photosmart Essential-->MsiExec.exe /X{6994491D-D491-48F1-AE1F-E179C1FFFC2F}
HP Solution Center 7.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update-->MsiExec.exe /X{C8FD5BC1-92EF-4C15-92A9-F9AC7F61985F}
Java(TM) 6 Update 5-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
JumpStart Reading for Second Graders v1.0-->C:\WINDOWS\IsUninst.exe -fC:\KA\JSR2G\DeIsL1.isu
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Mozilla Firefox (3.0.1)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
Norton AntiVirus-->C:\Program Files\NortonInstaller\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV\3EAA38BF\16.0.0.120\InstStub.exe /X
OCR Software by I.R.I.S 7.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
RealPlayer-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Security Update for Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953838)-->"C:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
SpywareBlaster 4.1-->"C:\Program Files\SpywareBlaster\unins000.exe"
Update for Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Update for Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
Yahoo! Install Manager-->C:\WINDOWS\System32\regsvr32 /u C:\WINDOWS\DOWNLO~1\YINSTH~1.DLL
Yahoo! Internet Mail-->C:\WINDOWS\System32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\Common\YMMAPI.dll
Yahoo! Mail Advisor-->C:\PROGRA~1\Yahoo!\Common\UNINST~1.EXE
Yahoo! Search Protection-->C:\PROGRA~1\Yahoo!\SEARCH~1\UNINST~1.EXE
Yahoo! Toolbar-->C:\PROGRA~1\Yahoo!\Common\UNYT_W~1.EXE
Hosts File
127.0.0.1 localhost
Security center information
AV: Norton AntiVirus (outdated)
AV: Avira AntiVir PersonalEdition
Environment variables
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 0 Stepping 7, GenuineIntel
"PROCESSOR_REVISION"=0007
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO
-----------------EOF-----------------