Unknown Issue

View previous topic View next topic Go down

Unknown Issue

Post by shushon on 25th October 2012, 9:17 pm

I began noticing that the icons on my web pages were coming up white boxes with red x's. I tried going thru tools and searching all possibilities. But all the correct boxes in options were checked. I then went into safe mode and ran malwarebytes. I found three trojanbho and the program removed them. But still I have a very long start up and the white boxes and x's are still here.
I did the asked logs and I tried to get on line after running the scans. I received a connection time out error 3 times before I rebooted. After reboot I am currently on line in regular mode. Here are the logs. Please help.
# AdwCleaner v2.005 - Logfile created 10/25/2012 at 17:02:39
# Updated 14/10/2012 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Owner - MONSTERPUTER
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Owner\Desktop\adwcleaner.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****


***** [Registry] *****

Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Found : HKU\S-1-5-21-585979908-1887290237-2331346939-1003\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Registry is clean.

-\\ Google Chrome v [Unable to get version]

File : C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [1088 octets] - [25/10/2012 17:02:39]

########## EOF - C:\AdwCleaner[R1].txt - [1148 octets] ##########

OTL Extras logfile created on: 10/25/2012 4:52:38 PM - Run 1
OTL by OldTimer - Version 3.2.70.1 Folder = C:\Documents and Settings\Owner\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.99 Gb Total Physical Memory | 2.30 Gb Available Physical Memory | 76.88% Memory free
4.83 Gb Paging File | 4.33 Gb Available in Paging File | 89.62% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 143.88 Gb Total Space | 62.87 Gb Free Space | 43.69% Space Free | Partition Type: NTFS
Drive D: | 5.16 Gb Total Space | 2.58 Gb Free Space | 50.08% Space Free | Partition Type: FAT32

Computer Name: MONSTERPUTER | User Name: Owner | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*

[HKEY_CURRENT_USER\SOFTWARE\Classes\]
.html [@ = htmlfile] -- Reg Error: Unable to open value key File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Unable to open value key
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Unable to open value key
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation)
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe" = C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"C:\Program Files\Messenger\msmsgs.exe" = C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger -- (Microsoft Corporation)
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" = C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe" = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe:*:Enabled:EasyShare -- (Eastman Kodak Company)
"C:\WINDOWS\system32\lxdncoms.exe" = C:\WINDOWS\system32\lxdncoms.exe:*:Enabled:2600 Series Server -- ( )
"C:\Program Files\Lexmark 2600 Series\lxdnmon.exe" = C:\Program Files\Lexmark 2600 Series\lxdnmon.exe:*:Enabled:Printer Device Monitor -- ()
"C:\WINDOWS\system32\spool\drivers\w32x86\3\lxdnpswx.exe" = C:\WINDOWS\system32\spool\drivers\w32x86\3\lxdnpswx.exe:*:Enabled:Printer Status Window Interface -- ()
"C:\WINDOWS\system32\spool\drivers\w32x86\3\lxdntime.exe" = C:\WINDOWS\system32\spool\drivers\w32x86\3\lxdntime.exe:*:Enabled:Lexmark Connect Time Executable -- (Lexmark International, Inc.)
"C:\WINDOWS\system32\spool\drivers\w32x86\3\lxdnjswx.exe" = C:\WINDOWS\system32\spool\drivers\w32x86\3\lxdnjswx.exe:*:Enabled:Job Status Window Interface -- ()
"C:\Program Files\Lexmark 2600 Series\lxdnlscn.exe" = C:\Program Files\Lexmark 2600 Series\lxdnlscn.exe:*:Enabled: -- ()
"C:\Program Files\Lexmark 2600 Series\frun.exe" = C:\Program Files\Lexmark 2600 Series\frun.exe:*:Enabled:Printing Application -- ()
"C:\WINDOWS\system32\spool\drivers\w32x86\3\lxdnwbgw.exe" = C:\WINDOWS\system32\spool\drivers\w32x86\3\lxdnwbgw.exe:*:Enabled:Lexmark Web Gateway -- ()
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation)
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe" = C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger -- (Microsoft Corporation)
"C:\Program Files\iolo\System Shield\SysShield.exe" = C:\Program Files\iolo\System Shield\SysShield.exe:*:Enabled:iolo System Shield®
"C:\Program Files\LimeWire\LimeWire.exe" = C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire
"C:\Program Files\AVG\AVG10\avgmfapx.exe" = C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:AVG Installer
"C:\Program Files\Bonjour\mDNSResponder.exe" = C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service -- (Apple Inc.)
"C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe" = C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit -- (Apple Inc.)
"C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
"C:\Program Files\Microsoft Office\Office14\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office14\ONENOTE.EXE:*:Enabled:Microsoft OneNote -- (Microsoft Corporation)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{02627ee5-eaca-4742-a9cc-e687631773e4}" = Nero ShowTime
"{073F22CE-9A5B-4A40-A604-C7270AC6BF34}" = ESSSONIC
"{083ABCCD-D0A1-4068-A2B1-A4D06E0B9951}" = ESET NOD32 Antivirus
"{0E64B098-8018-4256-BA23-C316A43AD9B0}" = QuickTime
"{122ADF8C-DDA1-480C-9936-C88F2825B265}" = Apple Application Support
"{14D4ED84-6A9A-45A0-96F6-1753768C3CB5}" = ESSPCD
"{15377C3E-9655-400F-B441-E69F0A6BEAFE}" = Recovery Software Suite eMachines
"{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = DVD Suite
"{20400dbd-e6db-45b8-9b6b-1dd7033818ec}" = Nero InfoTool Help
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2348b586-c9ae-46ce-936c-a68e9426e214}" = Nero StartSmart Help
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 20
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{2D03B6F8-DF36-4980-B7B6-5B93D5BA3A8F}" = essvatgt
"{30DBAD4A-BA6D-4F9D-8AB0-2F6C7B0612A4}" = AVSDK5
"{3248F0A8-6813-11D6-A77B-00B0D0160040}" = Java(TM) 6 Update 4
"{33cf58f5-48d8-4575-83d6-96f574e4d83a}" = Nero DriveSpeed
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go 5.0
"{42938595-0D83-404D-9F73-F8177FDD531A}" = ESScore
"{43602F34-1AA3-44FB-AEB2-D08C2C73743F}" = Paint.NET v3.36
"{43e39830-1826-415d-8bae-86845787b54b}" = Nero Vision
"{4537EA4B-F603-4181-89FB-2953FC695AB1}" = netbrdg
"{45B8A76B-57EC-4242-B019-066400CD8428}" = BufferChm
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4EA684E9-5C81-4033-A696-3019EC57AC3A}" = HPProductAssistant
"{5316DFC9-CE99-4458-9AB3-E8726EDE0210}" = skin0001
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{595a3116-40bb-4e0f-a2e8-d7951da56270}" = NeroExpress
"{5d9be3c1-8ba4-4e7e-82fd-9f74fa6815d1}" = Nero Vision Help
"{605A4E39-613C-4A12-B56F-DEFBE6757237}" = SHASTA
"{608D2A3C-6889-4C11-9B54-A42F45ACBFDB}" = fflink
"{62ac81f6-bdd3-4110-9d36-3e9eaab40999}" = Nero CoverDesigner
"{643EAE81-920C-4931-9F0B-4B343B225CA6}" = ESSBrwr
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{6AD9F5F3-5BD0-4000-BD9C-B536CF86D988}" = iTunes
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{76EFFC7C-17A6-479D-9E47-8E658C1695AE}" = Windows Backup Utility
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7748ac8c-18e3-43bb-959b-088faea16fb2}" = Nero StartSmart
"{7829db6f-a066-4e40-8912-cb07887c20bb}" = Nero BurnRights
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials
"{83202942-84b3-4c50-8622-b8c0aa2d2885}" = Nero Express Help
"{869200db-287a-4dc0-b02b-2b6787fbcd4c}" = Nero DiscSpeed
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{8943CE61-53BD-475E-90E1-A580869E98A2}" = staticcr
"{8A502E38-29C9-49FA-BCFA-D727CA062589}" = ESSTOOLS
"{8bd44f2f-a95c-4436-8bd7-2caf62ace910}" = Nero 9 Essentials
"{8E92D746-CD9F-4B90-9668-42B74C14F765}" = ESSini
"{8F1ADE4D-EFAC-4F5A-B346-23C2687FAF50}" = Apple Mobile Device Support
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 14
"{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010
"{90140000-0015-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010
"{90140000-0016-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010
"{90140000-0018-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010
"{90140000-0019-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010
"{90140000-001A-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010
"{90140000-001B-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{46298F6A-1E7E-4D4A-B5F5-106A4F0E48C6}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010
"{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.SingleImage_{DEA87BE2-FFCC-4F33-9946-FCBE55A1E998}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010
"{90140000-002C-0409-0000-0000000FF1CE}_Office14.SingleImage_{7CA93DF4-8902-449E-A42E-4C5923CFBDE3}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010
"{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010
"{90140000-006E-0409-0000-0000000FF1CE}_Office14.SingleImage_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010
"{90140000-00A1-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010
"{90140000-0115-0409-0000-0000000FF1CE}_Office14.SingleImage_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010
"{90140000-0117-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{91517631-A9F3-4B7C-B482-43E0068FD55A}" = ESSgui
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{999D43F4-9709-4887-9B1A-83EBB15A8370}" = VPRINTOL
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3
"{ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}" = REALTEK GbE & FE Ethernet PCI NIC Driver
"{AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD}" = ESSCDBK
"{AED142A8-96EA-42DE-B212-60BFC98D6CC7}" = USBFast
"{B162D0A6-9A1D-4B7C-91A5-88FB48113C45}" = OfotoXMI
"{b1adf008-e898-4fe2-8a1f-690d9a06acaf}" = DolbyFiles
"{b2ec4a38-b545-4a00-8214-13fe0e915e6d}" = Advertising Center
"{B4B44FE7-41FF-4DAD-8C0A-E406DDA72992}" = CCScore
"{b78120a0-cf84-4366-a393-4d0a59bc546c}" = Menu Templates - Starter Kit
"{bd5ca0da-71ad-43da-b19e-6eee0c9adc9a}" = Nero ControlCenter
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C7F54CF8-D6FB-4E0A-93A3-E68AE0D6C476}" = SolutionCenter
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{cc019e3f-59d2-4486-8d4b-878105b62a71}" = Nero DiscSpeed Help
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{ce96f5a5-584d-4f8f-aa3e-9baed413db72}" = Nero CoverDesigner Help
"{D32470A1-B10C-4059-BA53-CF0486F68EBC}" = Kodak EasyShare software
"{d9dcf92e-72eb-412d-ac71-3b01276e5f8b}" = Nero ShowTime
"{DB02F716-6275-42E9-B8D2-83BA2BF5100B}" = SFR
"{DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1" = ConvertXtoDVD 4.0.12.327
"{dba84796-8503-4ff0-af57-1747dd9a166d}" = Nero Online Upgrade
"{DF86A72C-4585-4D75-B592-968C8C6604A1}" = eMachines Connect
"{e498385e-1c51-459a-b45f-1721e37aa1a0}" = Movie Templates - Starter Kit
"{e5c7d048-f9b4-4219-b323-8bdb01a2563d}" = Nero DriveSpeed Help
"{E79987F0-0E34-42CC-B8FF-6C860AEEB26A}" = tooltips
"{e8a80433-302b-4ff1-815d-fcc8eac482ff}" = Nero Installer
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F22C222C-3CE2-4A4B-A83F-AF4681371ABE}" = kgcbase
"{F314EA69-9590-4876-8E2B-44CBEE7FFAA1}" = AVG Identity Protection
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{f4041dce-3fe1-4e18-8a9e-9de65231ee36}" = Nero ControlCenter
"{F4A2E7CC-60CA-4AFA-B67F-AD5E58173C3F}" = SKINXSDK
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{f6bdd7c5-89ed-4569-9318-469aa9732572}" = Nero BurnRights Help
"{F9593CFB-D836-49BC-BFF1-0E669A411D9F}" = WIRELESS
"{fbcdfd61-7dcf-4e71-9226-873ba0053139}" = Nero InfoTool
"{FF262740-C85A-11D5-BBEC-00D0B740900A}" = PS2 Multimedia Keyboard Driver
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player
"Agere Systems Soft Modem" = Agere Systems PCI-SV92PP Soft Modem
"AVIConverter" = AVIConverter 3.0
"CCleaner" = CCleaner
"Free WMA to MP3 Converter_is1" = Free WMA to MP3 Converter 1.16
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"HP Solution Center & Imaging Support Tools" = HP Solution Center 7.0
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"Lexmark 2600 Series" = Lexmark 2600 Series
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.65.1.1000
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"MSNINST" = MSN
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"Office14.SingleImage" = Microsoft Office Home and Student 2010
"PC Tools Firewall Plus" = PC Tools Firewall Plus 6.0
"PokerStars" = PokerStars
"PokerStars.net" = PokerStars.net
"WGA" = Windows Genuine Advantage Validation Tool
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"Yahoo! Software Update" = Yahoo! Software Update

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 10/20/2012 9:14:18 AM | Computer Name = MONSTERPUTER | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from:
with error: A connection with the server could not be established

Error - 10/21/2012 5:04:55 PM | Computer Name = MONSTERPUTER | Source = Application Error | ID = 1000
Description = Faulting application zhotkey.exe, version 3.0.0.10, faulting module
zhotkey.exe, version 3.0.0.10, fault address 0x00009351.

Error - 10/22/2012 12:33:05 PM | Computer Name = MONSTERPUTER | Source = Application Error | ID = 1000
Description = Faulting application zhotkey.exe, version 3.0.0.10, faulting module
zhotkey.exe, version 3.0.0.10, fault address 0x00009351.

Error - 10/22/2012 3:13:19 PM | Computer Name = MONSTERPUTER | Source = Application Error | ID = 1000
Description = Faulting application zhotkey.exe, version 3.0.0.10, faulting module
zhotkey.exe, version 3.0.0.10, fault address 0x00009351.

Error - 10/23/2012 5:57:34 AM | Computer Name = MONSTERPUTER | Source = Application Error | ID = 1000
Description = Faulting application zhotkey.exe, version 3.0.0.10, faulting module
zhotkey.exe, version 3.0.0.10, fault address 0x00009351.

Error - 10/23/2012 6:23:49 AM | Computer Name = MONSTERPUTER | Source = Application Error | ID = 1000
Description = Faulting application zhotkey.exe, version 3.0.0.10, faulting module
zhotkey.exe, version 3.0.0.10, fault address 0x00009351.

Error - 10/23/2012 2:45:33 PM | Computer Name = MONSTERPUTER | Source = Application Error | ID = 1000
Description = Faulting application zhotkey.exe, version 3.0.0.10, faulting module
zhotkey.exe, version 3.0.0.10, fault address 0x00009351.

Error - 10/23/2012 4:56:22 PM | Computer Name = MONSTERPUTER | Source = Application Error | ID = 1000
Description = Faulting application zhotkey.exe, version 3.0.0.10, faulting module
zhotkey.exe, version 3.0.0.10, fault address 0x00009351.

Error - 10/24/2012 7:59:55 PM | Computer Name = MONSTERPUTER | Source = Application Error | ID = 1000
Description = Faulting application zhotkey.exe, version 3.0.0.10, faulting module
zhotkey.exe, version 3.0.0.10, fault address 0x00009351.

Error - 10/24/2012 8:22:58 PM | Computer Name = MONSTERPUTER | Source = Application Error | ID = 1000
Description = Faulting application zhotkey.exe, version 3.0.0.10, faulting module
zhotkey.exe, version 3.0.0.10, fault address 0x00009351.

[ System Events ]
Error - 10/24/2012 8:24:13 PM | Computer Name = MONSTERPUTER | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
Lbd SBRE

Error - 10/24/2012 8:46:22 PM | Computer Name = MONSTERPUTER | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 10/24/2012 8:47:37 PM | Computer Name = MONSTERPUTER | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
eamon ehdrv Fips intelppm Lbd SBRE

Error - 10/24/2012 9:45:51 PM | Computer Name = MONSTERPUTER | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 10/24/2012 9:47:07 PM | Computer Name = MONSTERPUTER | Source = sr | ID = 1
Description = The System Restore filter encountered the unexpected error '0xC0000001'
while processing the file '' on the volume 'HarddiskVolume1'. It has stopped monitoring
the volume.

Error - 10/24/2012 9:48:39 PM | Computer Name = MONSTERPUTER | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
abp480n5 ACPIEC adpu160m agp440 agpCPQ Aha154x aic78u2 aic78xx AliIde alim1541 amdagp amsint
asc
asc3350p
asc3550
cbidf
cd20xrnt
CmdIde
Cpqarray
dac2w2k
dac960nt
dpti2o
hpn
i2omp
ini910u
IntelIde
Lbd
mraid35x
Pcmcia
perc2
perc2hib
ql1080
Ql10wnt
ql12160
ql1240
ql1280
SBRE
sisagp
Sparrow
symc810
symc8xx
sym_hi
sym_u3
TosIde
ultra
viaagp
ViaIde

Error - 10/24/2012 9:50:45 PM | Computer Name = MONSTERPUTER | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 10/24/2012 9:51:49 PM | Computer Name = MONSTERPUTER | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
eamon ehdrv Fips intelppm Lbd SBRE

Error - 10/25/2012 4:44:23 PM | Computer Name = MONSTERPUTER | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 10/25/2012 4:47:07 PM | Computer Name = MONSTERPUTER | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
Lbd SBRE



shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by shushon on 25th October 2012, 9:21 pm

OTL logfile created on: 10/25/2012 4:52:38 PM - Run 1
OTL by OldTimer - Version 3.2.70.1 Folder = C:\Documents and Settings\Owner\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.99 Gb Total Physical Memory | 2.30 Gb Available Physical Memory | 76.88% Memory free
4.83 Gb Paging File | 4.33 Gb Available in Paging File | 89.62% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 143.88 Gb Total Space | 62.87 Gb Free Space | 43.69% Space Free | Partition Type: NTFS
Drive D: | 5.16 Gb Total Space | 2.58 Gb Free Space | 50.08% Space Free | Partition Type: FAT32

Computer Name: MONSTERPUTER | User Name: Owner | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/10/25 16:51:11 | 000,600,064 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.com
PRC - [2012/03/07 15:40:34 | 000,913,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
PRC - [2012/03/07 15:40:28 | 003,117,344 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
PRC - [2010/01/19 18:46:54 | 000,117,288 | R--- | M] (Authentium, Inc) -- C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe
PRC - [2010/01/19 18:46:48 | 000,121,384 | R--- | M] (Authentium, Inc) -- C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe
PRC - [2010/01/12 11:41:00 | 003,168,216 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
PRC - [2009/11/09 11:20:14 | 000,818,432 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Firewall Plus\FWService.exe
PRC - [2009/07/20 12:51:52 | 000,935,208 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
PRC - [2009/03/31 20:02:58 | 000,386,480 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jucheck.exe
PRC - [2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/03/31 21:59:09 | 000,172,032 | ---- | M] (New Boundary Technologies, Inc.) -- C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
PRC - [2008/03/27 11:13:11 | 000,025,256 | ---- | M] () -- C:\Program Files\Lexmark 2600 Series\lxdnmsdmon.exe
PRC - [2008/02/27 19:07:26 | 000,594,600 | ---- | M] ( ) -- C:\WINDOWS\system32\lxdncoms.exe
PRC - [2006/11/07 17:34:26 | 000,053,248 | ---- | M] (Chicony) -- C:\WINDOWS\ModPS2Key.exe
PRC - [2006/11/07 17:08:40 | 000,547,840 | ---- | M] () -- C:\WINDOWS\zHotkey.exe
PRC - [2006/03/03 21:03:10 | 000,069,632 | ---- | M] (HP) -- C:\WINDOWS\system32\HPZipm12.exe


========== Modules (No Company Name) ==========

MOD - [2012/06/13 03:12:56 | 012,433,920 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\01abbadafaf265d9f4ac9bbb247acb98\System.Windows.Forms.ni.dll
MOD - [2012/06/13 03:12:42 | 001,592,320 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\d86f2038209a4cf0d0f5b30f6375c9b2\System.Drawing.ni.dll
MOD - [2012/05/12 03:16:17 | 000,971,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\3d5b7368bde0f65aa15d9f46b498cc89\System.Configuration.ni.dll
MOD - [2012/05/12 03:14:04 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\3bba1b8b0b5ef0be238b011cc7a0575e\System.Xml.ni.dll
MOD - [2012/05/12 03:09:47 | 007,953,408 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\e4b5afc4da43b1c576f9322f9f2e1bfe\System.ni.dll
MOD - [2012/05/12 03:09:12 | 011,492,352 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\e337c89bc9f81b69d7237aa70e935900\mscorlib.ni.dll
MOD - [2011/09/27 08:23:00 | 000,087,912 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/09/27 08:22:40 | 001,242,472 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2008/03/27 11:13:11 | 000,025,256 | ---- | M] () -- C:\Program Files\Lexmark 2600 Series\lxdnmsdmon.exe
MOD - [2008/02/27 07:05:40 | 000,115,200 | ---- | M] () -- C:\WINDOWS\system32\spool\prtprocs\w32x86\lxdndrpp.dll
MOD - [2008/01/04 15:09:23 | 000,036,864 | ---- | M] () -- C:\Program Files\Lexmark 2600 Series\app4r.monitor.core.dll
MOD - [2008/01/04 15:09:23 | 000,028,672 | ---- | M] () -- C:\Program Files\Lexmark 2600 Series\app4r.monitor.common.dll
MOD - [2008/01/04 15:08:04 | 000,061,440 | ---- | M] () -- C:\Program Files\Lexmark 2600 Series\app4r.devmons.mcmdevmon.dll
MOD - [2007/11/22 12:55:48 | 000,011,776 | ---- | M] () -- C:\Program Files\Lexmark 2600 Series\app4r.devmons.mcmdevmon.autoplayutil.dll
MOD - [2007/11/20 20:02:39 | 000,782,336 | ---- | M] () -- C:\WINDOWS\system32\lxdndrs.dll
MOD - [2007/11/20 19:44:48 | 000,081,920 | ---- | M] () -- C:\WINDOWS\system32\lxdncaps.dll
MOD - [2007/10/02 18:51:09 | 000,069,632 | ---- | M] () -- C:\WINDOWS\system32\lxdncnv4.dll
MOD - [2006/11/07 17:08:40 | 000,547,840 | ---- | M] () -- C:\WINDOWS\zHotkey.exe


========== Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2012/03/07 15:40:34 | 000,913,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn)
SRV - [2010/01/19 18:46:56 | 000,158,248 | ---- | M] (Authentium, Inc) [On_Demand | Stopped] -- C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe -- (vseqrts)
SRV - [2010/01/19 18:46:54 | 000,117,288 | R--- | M] (Authentium, Inc) [Auto | Running] -- C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe -- (vsedsps)
SRV - [2010/01/19 18:46:48 | 000,121,384 | R--- | M] (Authentium, Inc) [Auto | Running] -- C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe -- (vseamps)
SRV - [2009/11/09 11:20:14 | 000,818,432 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\PC Tools Firewall Plus\FWService.exe -- (PCToolsFirewallPlus)
SRV - [2009/07/20 12:51:52 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0)
SRV - [2008/11/09 16:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Disabled | Stopped] -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
SRV - [2008/03/31 21:59:09 | 000,172,032 | ---- | M] (New Boundary Technologies, Inc.) [Auto | Running] -- C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS -- (PrismXL)
SRV - [2008/02/27 19:07:26 | 000,594,600 | ---- | M] ( ) [Auto | Running] -- C:\WINDOWS\system32\lxdncoms.exe -- (lxdn_device)
SRV - [2008/02/27 19:07:14 | 000,098,984 | ---- | M] () [Disabled | Stopped] -- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxdnserv.exe -- (lxdnCATSCustConnectService)
SRV - [2006/03/03 21:03:10 | 000,069,632 | ---- | M] (HP) [Auto | Running] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\SymIM.sys -- (SymIMMP)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\SymIM.sys -- (SymIM)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\SPIXNEW.SYS -- (SUNPLUS)
DRV - File not found [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\SBREdrv.sys -- (SBRE)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\Internet Explorer\SABProcEnum.sys -- (SABProcEnum)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\2C.tmp -- (MEMSWEEP2)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [File_System | Boot | Stopped] -- system32\DRIVERS\Lbd.sys -- (Lbd)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2012/03/14 08:40:04 | 000,104,160 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir)
DRV - [2012/03/14 08:40:02 | 000,160,816 | ---- | M] (ESET) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon)
DRV - [2012/03/14 08:40:02 | 000,120,152 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2010/01/19 18:53:46 | 000,127,016 | R--- | M] (Authentium, Inc) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\amp.sys -- (AMP)
DRV - [2010/01/19 18:53:44 | 001,118,248 | R--- | M] (Authentium, Inc) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\ampse.sys -- (AMPSE)
DRV - [2010/01/13 08:59:28 | 000,115,216 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctplfw.sys -- (pctplfw)
DRV - [2010/01/12 09:34:14 | 000,070,664 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys -- (PCTFW-PacketFilter)
DRV - [2010/01/07 12:40:26 | 000,233,136 | ---- | M] (PC Tools) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\pctgntdi.sys -- (pctgntdi)
DRV - [2010/01/07 11:35:06 | 000,058,816 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctNdis.sys -- (pctNDIS)
DRV - [2009/11/23 13:54:20 | 000,088,040 | ---- | M] (PC Tools) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\PCTAppEvent.sys -- (PCTAppEvent)
DRV - [2009/07/01 13:26:08 | 000,016,640 | ---- | M] (Prolific Technology Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\plturbo.sys -- (PLTurbo)
DRV - [2009/07/01 13:26:04 | 000,016,384 | ---- | M] (Prolific Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\plturbh.sys -- (PLTurbh)
DRV - [2007/04/23 20:12:28 | 004,402,176 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2006/02/27 07:46:20 | 000,081,408 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp)
DRV - [2005/09/23 20:26:40 | 001,094,751 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2004/08/04 02:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139)
DRV - [2001/08/17 23:10:58 | 000,069,692 | ---- | M] (3Com Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\el575ND5.sys -- (el575nd5)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = [You must be registered and logged in to see this link.]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomSearch = [You must be registered and logged in to see this link.]
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = [You must be registered and logged in to see this link.]
IE - HKLM\..\SearchScopes\{75DC9B10-340F-4A7E-9745-35C31F2982B4}: "URL" = [You must be registered and logged in to see this link.]

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [You must be registered and logged in to see this link.]
IE - HKCU\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = [You must be registered and logged in to see this link.]
IE - HKCU\..\SearchScopes\{080FBDF6-B230-4e4d-A4E7-7C7A56D7BABC}: "URL" = [You must be registered and logged in to see this link.]
IE - HKCU\..\SearchScopes\{57A41C2C-B313-4B9E-9847-BBD63922249C}: "URL" = [You must be registered and logged in to see this link.]
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = [You must be registered and logged in to see this link.]
IE - HKCU\..\SearchScopes\{75DC9B10-340F-4A7E-9745-35C31F2982B4}: "URL" = [You must be registered and logged in to see this link.]
IE - HKCU\..\SearchScopes\{C2D2B905-B23C-4A91-899C-4E60F3E535EE}: "URL" = [You must be registered and logged in to see this link.]
IE - HKCU\..\SearchScopes\Yahoo!: "URL" = [You must be registered and logged in to see this link.]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local


========== FireFox ==========

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2012/10/20 09:13:30 | 000,000,000 | ---D | M]

[2009/08/08 08:08:52 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Owner\Application Data\Mozilla\Extensions
[2009/07/19 11:45:32 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Owner\Application Data\Mozilla\Extensions\mozswing@mozswing.org

========== Chrome ==========

CHR - homepage: [You must be registered and logged in to see this link.]
CHR - homepage: [You must be registered and logged in to see this link.]
CHR - Extension: YouTube = C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: No name found = C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1456_0\
CHR - Extension: Gmail = C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012/07/29 07:59:12 | 000,422,485 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 [You must be registered and logged in to see this link.]
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 [You must be registered and logged in to see this link.]
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 [You must be registered and logged in to see this link.]
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 [You must be registered and logged in to see this link.]
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 [You must be registered and logged in to see this link.]
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 [You must be registered and logged in to see this link.]
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 [You must be registered and logged in to see this link.]
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 [You must be registered and logged in to see this link.]
O1 - Hosts: 127.0.0.1 [You must be registered and logged in to see this link.]
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 [You must be registered and logged in to see this link.]
O1 - Hosts: 127.0.0.1 [You must be registered and logged in to see this link.]
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 127.0.0.1 123fporn.info
O1 - Hosts: 14590 more lines...
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
O4 - HKLM..\Run: [00PCTFW] C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe (PC Tools)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [CHotkey] C:\WINDOWS\zHotkey.exe ()
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKLM..\Run: [LanguageShortcut] C:\Program Files\CyberLink\PowerDVD\Language\Language.exe ()
O4 - HKLM..\Run: [lxdnamon] C:\Program Files\Lexmark 2600 Series\lxdnamon.exe ()
O4 - HKLM..\Run: [ModPS2] C:\WINDOWS\ModPS2Key.exe (Chicony)
O4 - HKLM..\Run: [Recguard] C:\WINDOWS\SMINST\Recguard.exe ()
O4 - HKLM..\Run: [ShowWnd] C:\WINDOWS\ShowWnd.exe ()
O4 - HKCU..\Run: [Power2GoExpress] NA File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_04\bin\npjpi160_04.dll (Sun Microsystems, Inc.)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe (PokerStars)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe (PokerStars)
O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} [You must be registered and logged in to see this link.] (Reg Error: Unable to open value key)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} [You must be registered and logged in to see this link.] (Shockwave ActiveX Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} [You must be registered and logged in to see this link.] (Windows Genuine Advantage Validation Tool)
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} [You must be registered and logged in to see this link.] (Reg Error: Unable to open value key)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} [You must be registered and logged in to see this link.] (Reg Error: Unable to open value key)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} [You must be registered and logged in to see this link.] (MUWebControl Class)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} [You must be registered and logged in to see this link.] (Reg Error: Unable to open value key)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} [You must be registered and logged in to see this link.] (Reg Error: Unable to open value key)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} [You must be registered and logged in to see this link.] (Java Plug-in 1.6.0_20)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} [You must be registered and logged in to see this link.] (Reg Error: Value error.)
O16 - DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} [You must be registered and logged in to see this link.] (SABScanProcesses Class)
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} [You must be registered and logged in to see this link.] (Reg Error: Unable to open value key)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} [You must be registered and logged in to see this link.] (Reg Error: Unable to open value key)
O16 - DPF: {CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA} [You must be registered and logged in to see this link.] (Java Plug-in 1.6.0_04)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [You must be registered and logged in to see this link.] (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [You must be registered and logged in to see this link.] (Java Plug-in 1.6.0_20)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EFB96425-9447-4A7C-B3D5-C076FDE3B96B}: DhcpNameServer = 192.168.2.1 192.168.1.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Owner\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Owner\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/05/06 21:38:36 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{01169890-af4f-11e0-8534-001e902f34ec}\Shell - "" = AutoRun
O33 - MountPoints2\{01169890-af4f-11e0-8534-001e902f34ec}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{01169890-af4f-11e0-8534-001e902f34ec}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL TL-Bootstrap.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

MsConfig - StartUpFolder: C:^Documents and Settings^Owner^Start Menu^Programs^Startup^OneNote 2010 Screen Clipper and Launcher.lnk - C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE - (Microsoft Corporation)
MsConfig - StartUpReg: AvgUninstallURL - hkey= - key= - File not found
MsConfig - StartUpReg: iTunesHelper - hkey= - key= - C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
MsConfig - State: "system.ini" - 0
MsConfig - State: "win.ini" - 0
MsConfig - State: "bootini" - 0
MsConfig - State: "services" - 0
MsConfig - State: "startup" - 2

SafeBootMin: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

ActiveX: {0213C6AF-5562-4D09-884C-2ADCFC8C2F35} - Microsoft .NET Framework 1.1 Security Update (KB2656353)
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Vector Graphics Rendering (VML)
ActiveX: {1325db73-d9f1-48f8-8895-6d814ec58889} - Security Update for Windows XP (KB913433)
ActiveX: {1897C549-AE52-4571-8996-44854F5612B2} - Microsoft .NET Framework 1.1 Security Update (KB2656370)
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 6.4
ActiveX: {233C1507-6A77-46A4-9443-F871F945D258} - Adobe Shockwave Director 10.4
ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation
ActiveX: {2A202491-F00D-11cf-87CC-0020AFEECF20} - Adobe Shockwave Director 10.4
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Dynamic HTML Data Binding for Java
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe
ActiveX: {411EDCF7-755D-414E-A74B-3DCD6583F589} - Microsoft .NET Framework 1.1 Service Pack 1 (KB867460)
ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Advanced Authoring
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - DirectAnimation Java Classes
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.8
ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} - .NET Framework
ActiveX: {73fa19d0-2d75-11d2-995d-00c04f98bbc9} - Web Folders
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - .NET Framework
ActiveX: {C3C986D6-06B1-43BF-90DD-BE30756C00DE} - RevokedRootsUpdate
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} - .NET Framework
ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Task Scheduler
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Adobe Flash Player
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe
ActiveX: >{1C2C2DF6-5D7E-4721-946E-667916F74D36} - RunDLL32 IEDKCS32.DLL,BrandIE4 CUSTOM
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /HideWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE

Drivers32: msacm.clmp3enc - C:\Program Files\CyberLink\Power2Go\CLMP3Enc.ACM (CyberLink Corp.)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found
NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2012/10/25 16:51:11 | 000,600,064 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.com
[2012/10/24 21:14:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/10/24 21:14:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2012/10/24 21:14:46 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2012/10/24 21:14:46 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012/10/22 15:37:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\ESET
[2012/10/20 09:13:29 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2012/10/20 09:13:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\ESET
[2012/10/20 09:13:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\ESET
[2012/10/17 20:50:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner\Local Settings\Application Data\MFAData
[2012/10/17 20:27:51 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Owner\Recent
[2011/01/04 18:32:31 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Owner\Application Data\pcouffin.sys

========== Files - Modified Within 30 Days ==========

[2012/10/25 16:52:01 | 000,538,941 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\adwcleaner.exe
[2012/10/25 16:51:11 | 000,600,064 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.com
[2012/10/25 16:45:21 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/10/25 16:45:20 | 3212,365,824 | -HS- | M] () -- C:\hiberfil.sys
[2012/10/24 19:06:04 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/10/23 16:58:10 | 000,109,568 | ---- | M] () -- C:\Documents and Settings\Owner\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/10/20 08:54:50 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2012/10/20 08:53:56 | 050,730,496 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\eav_nt32_enu.msi
[2012/10/01 21:19:08 | 000,000,281 | -HS- | M] () -- C:\boot.ini
[2012/09/29 19:54:26 | 000,022,856 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys

========== Files Created - No Company Name ==========

[2012/10/25 16:52:00 | 000,538,941 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\adwcleaner.exe
[2012/10/25 16:45:20 | 3212,365,824 | -HS- | C] () -- C:\hiberfil.sys
[2012/10/20 08:53:53 | 050,730,496 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\eav_nt32_enu.msi
[2012/03/16 23:17:44 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012/02/04 14:16:07 | 000,000,040 | ---- | C] () -- C:\Documents and Settings\Owner\jagex_cl_runescape_LIVE.dat
[2012/01/25 22:08:09 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/12/10 22:34:45 | 000,048,464 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2011/06/05 18:06:28 | 000,001,412 | -HS- | C] () -- C:\Documents and Settings\Owner\Local Settings\Application Data\3mmpcx56v67rag1662cqrb0uf0msqcvcpbyab1ej0
[2011/06/05 18:06:28 | 000,001,412 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\3mmpcx56v67rag1662cqrb0uf0msqcvcpbyab1ej0
[2011/03/19 14:59:19 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2011/01/31 09:17:26 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Owner\Application Data\downloads.m3u
[2011/01/04 22:02:56 | 000,000,172 | ---- | C] () -- C:\Documents and Settings\Owner\Application Data\default.rss
[2011/01/04 22:02:38 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2011/01/04 18:33:27 | 000,001,057 | ---- | C] () -- C:\Documents and Settings\Owner\Application Data\vso_ts_preview.xml
[2011/01/04 18:32:31 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Owner\Application Data\inst.exe
[2011/01/04 18:32:31 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Owner\Application Data\pcouffin.cat
[2011/01/04 18:32:30 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Owner\Application Data\pcouffin.inf
[2010/12/07 18:26:43 | 000,000,117 | ---- | C] () -- C:\Documents and Settings\Owner\jagex_runescape_preferences2.dat
[2010/12/07 18:24:49 | 000,000,034 | ---- | C] () -- C:\Documents and Settings\Owner\jagex_runescape_preferences.dat
[2010/10/26 19:29:08 | 000,000,107 | ---- | C] () -- C:\Documents and Settings\Owner\Application Data\netstat.bat
[2008/09/26 17:35:28 | 000,001,755 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2008/09/07 19:49:01 | 000,109,568 | ---- | C] () -- C:\Documents and Settings\Owner\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/08/21 19:08:36 | 000,003,142 | ---- | C] () -- C:\Documents and Settings\Owner\Application Data\wklnhst.dat
[2008/08/14 00:08:48 | 000,713,982 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\LuUninstall.LiveUpdate

========== ZeroAccess Check ==========

[2006/05/06 21:44:26 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]


shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by shushon on 25th October 2012, 9:22 pm

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008/04/13 20:12:05 | 001,499,136 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009/02/09 08:10:48 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008/04/13 20:12:08 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== Custom Scans ==========

< %AppData%\Roaming\Mozilla\Firefox\Profiles\*.default\extensions\ /s /md5 >

< %AppData%\Local\ >

< %systemroot%\system32\sysprep >

< *.xpi /md5 >

< %systemroot%\Downloaded Program Files\ >

< HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile >
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts]

< hklm\software\clients\startmenuinternet|command /rs >
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\WINDOWS\system32\ie4uinit.exe" -reinstall [2012/08/28 08:07:34 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -hide [2012/08/28 08:07:34 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -show [2012/08/28 08:07:34 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff [2009/03/08 14:09:26 | 000,638,816 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\Program Files\Internet Explorer\IEXPLORE.EXE" [2009/03/08 14:09:26 | 000,638,816 | ---- | M] (Microsoft Corporation)

< hklm\software\clients\startmenuinternet|command /64 /rs >
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\WINDOWS\system32\ie4uinit.exe" -reinstall [2012/08/28 08:07:34 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -hide [2012/08/28 08:07:34 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -show [2012/08/28 08:07:34 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff [2009/03/08 14:09:26 | 000,638,816 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\Program Files\Internet Explorer\IEXPLORE.EXE" [2009/03/08 14:09:26 | 000,638,816 | ---- | M] (Microsoft Corporation)

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\system32\drivers\*.sys /90 >
[2012/09/29 19:54:26 | 000,022,856 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\system32\drivers\mbam.sys

< %systemroot%\System32\config\*.sav >
[2006/05/06 14:29:39 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2006/05/06 14:29:39 | 000,634,880 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2006/05/06 14:29:39 | 000,884,736 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav

< %SYSTEMDRIVE%\*.exe /md5 >

< "%WinDir%\$NtUninstallKB*$." /30 >

< %systemdrive%\Program Files\Common Files\ComObjects\*.* /s >

< %systemroot%\*. /mp /s >

< %systemroot%\*. /rp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\Installer\ /s >

< %systemroot%\system32\Cache\ /s >

< %systemroot%\system32\config\systemprofile\ /s >

< %PROGRAMFILES%\*. >
[2008/03/31 22:19:09 | 000,000,000 | ---D | M] -- C:\Program Files\Acceller
[2009/03/20 14:01:53 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe
[2011/12/10 11:33:04 | 000,000,000 | ---D | M] -- C:\Program Files\Apple Software Update
[2008/08/14 00:20:51 | 000,000,000 | ---D | M] -- C:\Program Files\BigFix
[2011/12/10 11:32:30 | 000,000,000 | ---D | M] -- C:\Program Files\Bonjour
[2012/10/01 20:36:03 | 000,000,000 | ---D | M] -- C:\Program Files\CCleaner
[2012/09/02 20:26:08 | 000,000,000 | ---D | M] -- C:\Program Files\Common Files
[2006/05/06 21:36:08 | 000,000,000 | ---D | M] -- C:\Program Files\ComPlus Applications
[2008/03/31 22:15:20 | 000,000,000 | ---D | M] -- C:\Program Files\CyberLink
[2008/03/31 22:12:03 | 000,000,000 | ---D | M] -- C:\Program Files\eBay
[2009/01/12 14:42:20 | 000,000,000 | ---D | M] -- C:\Program Files\eMusic Download Manager
[2008/12/14 23:30:02 | 000,000,000 | ---D | M] -- C:\Program Files\Enigma Software Group
[2012/10/20 09:13:29 | 000,000,000 | ---D | M] -- C:\Program Files\ESET
[2012/03/31 10:20:47 | 000,000,000 | ---D | M] -- C:\Program Files\Free Window Registry Repair
[2008/09/09 16:34:08 | 000,000,000 | ---D | M] -- C:\Program Files\Free WMA to MP3 Converter
[2011/06/24 18:48:20 | 000,000,000 | ---D | M] -- C:\Program Files\Full Tilt Poker
[2012/07/28 10:05:26 | 000,000,000 | ---D | M] -- C:\Program Files\Google
[2008/08/14 00:01:15 | 000,000,000 | ---D | M] -- C:\Program Files\Hewlett-Packard
[2008/08/14 00:01:16 | 000,000,000 | ---D | M] -- C:\Program Files\HP
[2011/01/04 18:25:34 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information
[2008/03/31 22:09:17 | 000,000,000 | ---D | M] -- C:\Program Files\Intel
[2012/09/22 03:01:53 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Explorer
[2009/08/08 09:09:29 | 000,000,000 | ---D | M] -- C:\Program Files\IObit
[2012/07/19 18:50:45 | 000,000,000 | ---D | M] -- C:\Program Files\iPod
[2012/07/19 18:51:57 | 000,000,000 | ---D | M] -- C:\Program Files\iTunes
[2012/07/28 09:39:55 | 000,000,000 | ---D | M] -- C:\Program Files\Java
[2008/09/26 16:20:07 | 000,000,000 | ---D | M] -- C:\Program Files\Kodak
[2009/09/13 15:08:10 | 000,000,000 | ---D | M] -- C:\Program Files\Lavasoft
[2008/10/16 23:14:06 | 000,000,000 | ---D | M] -- C:\Program Files\Lexmark 2600 Series
[2008/10/16 23:04:13 | 000,000,000 | ---D | M] -- C:\Program Files\Lexmark Toolbar
[2010/10/27 19:39:35 | 000,000,000 | ---D | M] -- C:\Program Files\LimeWire
[2012/01/27 20:59:00 | 000,000,000 | ---D | M] -- C:\Program Files\LP
[2012/10/24 21:18:43 | 000,000,000 | ---D | M] -- C:\Program Files\Malwarebytes' Anti-Malware
[2008/09/05 14:34:47 | 000,000,000 | ---D | M] -- C:\Program Files\Messenger
[2009/11/30 17:33:59 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft
[2012/09/02 19:58:20 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Analysis Services
[2006/05/06 21:38:52 | 000,000,000 | ---D | M] -- C:\Program Files\microsoft frontpage
[2012/09/02 20:01:28 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Office
[2012/10/10 03:03:40 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Works
[2008/03/31 22:17:07 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft.NET
[2012/08/25 09:25:28 | 000,000,000 | ---D | M] -- C:\Program Files\Misc. Support Library (Spybot - Search & Destroy)
[2010/08/11 17:52:03 | 000,000,000 | ---D | M] -- C:\Program Files\Movie Maker
[2009/03/20 16:23:17 | 000,000,000 | ---D | M] -- C:\Program Files\MSBuild
[2008/09/21 19:57:53 | 000,000,000 | ---D | M] -- C:\Program Files\MSN
[2006/05/06 21:35:17 | 000,000,000 | ---D | M] -- C:\Program Files\MSN Gaming Zone
[2008/03/31 22:33:24 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 4.0
[2008/03/31 22:12:32 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 6.0
[2009/08/08 08:09:26 | 000,000,000 | ---D | M] -- C:\Program Files\MySpace
[2011/02/05 19:58:43 | 000,000,000 | ---D | M] -- C:\Program Files\NCH Software
[2011/01/04 18:15:05 | 000,000,000 | ---D | M] -- C:\Program Files\Nero
[2008/09/05 14:30:24 | 000,000,000 | ---D | M] -- C:\Program Files\NetMeeting
[2012/03/16 21:39:45 | 000,000,000 | ---D | M] -- C:\Program Files\NetZero
[2009/11/13 18:35:33 | 000,000,000 | ---D | M] -- C:\Program Files\Nitto 1320 Legends
[2011/02/01 08:28:45 | 000,000,000 | ---D | M] -- C:\Program Files\NOS
[2012/07/22 11:07:03 | 000,000,000 | ---D | M] -- C:\Program Files\Online Services
[2010/12/15 04:01:06 | 000,000,000 | ---D | M] -- C:\Program Files\Outlook Express
[2008/10/17 11:12:47 | 000,000,000 | ---D | M] -- C:\Program Files\Paint.NET
[2012/10/11 04:25:14 | 000,000,000 | ---D | M] -- C:\Program Files\PC Tools Firewall Plus
[2012/08/27 00:14:01 | 000,000,000 | ---D | M] -- C:\Program Files\PokerStars
[2012/08/27 00:15:11 | 000,000,000 | ---D | M] -- C:\Program Files\PokerStars.NET
[2012/07/19 18:34:36 | 000,000,000 | ---D | M] -- C:\Program Files\QuickTime
[2008/03/31 22:11:05 | 000,000,000 | ---D | M] -- C:\Program Files\Realtek
[2009/03/20 16:23:09 | 000,000,000 | ---D | M] -- C:\Program Files\Reference Assemblies
[2011/04/05 22:27:11 | 000,000,000 | ---D | M] -- C:\Program Files\Shared
[2010/11/07 11:51:02 | 000,000,000 | ---D | M] -- C:\Program Files\Solveig Multimedia
[2012/03/16 19:24:10 | 000,000,000 | ---D | M] -- C:\Program Files\Sophos
[2006/05/06 21:42:07 | 000,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information
[2011/01/04 18:25:34 | 000,000,000 | ---D | M] -- C:\Program Files\USBFast
[2011/01/04 18:32:22 | 000,000,000 | ---D | M] -- C:\Program Files\VSO
[2009/11/30 17:33:27 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live
[2010/11/12 07:45:43 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live Safety Center
[2008/09/23 14:07:44 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live Toolbar
[2008/03/31 22:13:47 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Connect 2
[2008/09/05 14:30:20 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Player
[2012/05/06 08:45:17 | 000,000,000 | ---D | M] -- C:\Program Files\Windows NT
[2006/05/06 21:37:04 | 000,000,000 | -H-D | M] -- C:\Program Files\WindowsUpdate
[2010/06/21 22:17:18 | 000,000,000 | ---D | M] -- C:\Program Files\WinRAR
[2006/05/06 21:38:52 | 000,000,000 | ---D | M] -- C:\Program Files\xerox
[2009/07/05 18:46:34 | 000,000,000 | ---D | M] -- C:\Program Files\Yahoo!

< %appdata%\*.* >
[2012/03/03 13:21:07 | 000,000,172 | ---- | M] () -- C:\Documents and Settings\Owner\Application Data\default.rss
[2006/05/06 14:30:43 | 000,000,062 | -HS- | M] () -- C:\Documents and Settings\Owner\Application Data\desktop.ini
[2011/01/31 09:17:26 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Owner\Application Data\downloads.m3u
[2011/01/04 18:32:31 | 000,087,608 | ---- | M] () -- C:\Documents and Settings\Owner\Application Data\inst.exe
[2010/11/06 11:17:48 | 000,000,107 | ---- | M] () -- C:\Documents and Settings\Owner\Application Data\netstat.bat
[2011/01/04 18:32:31 | 000,007,887 | ---- | M] () -- C:\Documents and Settings\Owner\Application Data\pcouffin.cat
[2011/01/04 18:32:30 | 000,001,144 | ---- | M] () -- C:\Documents and Settings\Owner\Application Data\pcouffin.inf
[2011/01/04 18:32:53 | 000,000,034 | ---- | M] () -- C:\Documents and Settings\Owner\Application Data\pcouffin.log
[2011/01/04 18:32:31 | 000,047,360 | ---- | M] (VSO Software) -- C:\Documents and Settings\Owner\Application Data\pcouffin.sys
[2012/02/04 17:53:04 | 000,001,057 | ---- | M] () -- C:\Documents and Settings\Owner\Application Data\vso_ts_preview.xml
[2012/08/06 21:36:29 | 000,003,142 | ---- | M] () -- C:\Documents and Settings\Owner\Application Data\wklnhst.dat

< MD5 for: AFD.SYS >
[2011/08/17 09:49:54 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=1E44BC1E83D8FD2305F8D452DB109CF9 -- C:\WINDOWS\system32\dllcache\afd.sys
[2011/08/17 09:49:54 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=1E44BC1E83D8FD2305F8D452DB109CF9 -- C:\WINDOWS\system32\drivers\afd.sys
[2008/04/13 15:19:23 | 000,138,112 | ---- | M] (Microsoft Corporation) MD5=322D0E36693D6E24A2398BEE62A268CD -- C:\WINDOWS\ServicePackFiles\i386\afd.sys
[2008/10/16 11:07:58 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=38D7B715504DA4741DF35E3594FE2099 -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\afd.sys
[2008/08/14 06:34:26 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=4D43E74F2A1239D53929B82600F1971C -- C:\WINDOWS\$hf_mig$\KB956803\SP3QFE\afd.sys
[2011/02/16 09:25:05 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=8D499B1276012EB907E7A9E0F4D8FDA4 -- C:\WINDOWS\$hf_mig$\KB2503665\SP3QFE\afd.sys
[2008/06/20 06:44:38 | 000,138,368 | ---- | M] (Microsoft Corporation) MD5=944CA435BFCFC82CC1ED9E3A7D731AA9 -- C:\WINDOWS\$NtServicePackUninstall$\afd.sys
[2008/06/20 07:48:03 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=D6EE6014241D034E63C49A50CB2B442A -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\afd.sys
[2008/06/20 06:44:08 | 000,138,368 | ---- | M] (Microsoft Corporation) MD5=D99DDFFB33DEACDCF20717CB520379F6 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\afd.sys
[2008/06/20 07:40:08 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=E3049B90FE06F3F740B7CFDA44995E2C -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\afd.sys
[2011/08/17 09:41:46 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=F6B7B1ECD7B41736BDB6FF4B092BCB79 -- C:\WINDOWS\$hf_mig$\KB2592799\SP3QFE\afd.sys

< MD5 for: ATAPI.SYS >
[2004/08/04 16:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008/09/05 14:25:56 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2004/08/04 16:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp2.cab:atapi.sys
[2008/09/05 14:25:56 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/13 14:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
[2008/04/13 14:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/13 14:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004/08/04 01:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2004/08/04 09:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0003\DriverFiles\i386\atapi.sys
[2004/08/04 01:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\i386\atapi.sys

< MD5 for: CRYPTSVC.DLL >
[2008/04/13 20:11:51 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=3D4E199942E29207970E04315D02AD3B -- C:\WINDOWS\ERDNT\cache\cryptsvc.dll
[2008/04/13 20:11:51 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=3D4E199942E29207970E04315D02AD3B -- C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll
[2008/04/13 20:11:51 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=3D4E199942E29207970E04315D02AD3B -- C:\WINDOWS\system32\cryptsvc.dll
[2006/02/11 07:48:12 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=87F3E2D2A3231F820F9248DB90090F42 -- C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll

< MD5 for: DNSRSLVR.DLL >
[2008/04/13 20:11:52 | 000,045,568 | ---- | M] (Microsoft Corporation) MD5=474B4DC3983173E4B4C9740B0DAC98A6 -- C:\WINDOWS\ServicePackFiles\i386\dnsrslvr.dll
[2009/04/20 13:17:26 | 000,045,568 | ---- | M] (Microsoft Corporation) MD5=5F7E24FA9EAB896051FFB87F840730D2 -- C:\WINDOWS\system32\dllcache\dnsrslvr.dll
[2009/04/20 13:17:26 | 000,045,568 | ---- | M] (Microsoft Corporation) MD5=5F7E24FA9EAB896051FFB87F840730D2 -- C:\WINDOWS\system32\dnsrslvr.dll
[2008/02/20 14:49:36 | 000,045,568 | ---- | M] (Microsoft Corporation) MD5=6333C7E182E5B6247500188D28214DEF -- C:\WINDOWS\$hf_mig$\KB945553\SP2QFE\dnsrslvr.dll
[2008/02/20 01:32:43 | 000,045,568 | ---- | M] (Microsoft Corporation) MD5=AAC8FFBFD61E784FA3BAC851D4A0BD5F -- C:\WINDOWS\$NtServicePackUninstall$\dnsrslvr.dll
[2009/04/20 13:06:44 | 000,045,568 | ---- | M] (Microsoft Corporation) MD5=D977659AE4D8ECE5286D99D1ED34614D -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\dnsrslvr.dll

< MD5 for: ES.DLL >
[2008/04/13 20:11:53 | 000,246,272 | ---- | M] (Microsoft Corporation) MD5=19A799805B24990867B00C120D300C3A -- C:\WINDOWS\ServicePackFiles\i386\es.dll
[2008/07/07 16:32:22 | 000,253,952 | ---- | M] (Microsoft Corporation) MD5=60D1A6342238378BFB7545C81EE3606C -- C:\WINDOWS\$NtServicePackUninstall$\es.dll
[2005/07/26 08:20:28 | 000,243,200 | ---- | M] (Microsoft Corporation) MD5=95F5FEA4C6DE2C3F28784D0DCC8F0DD3 -- C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\es.dll
[2008/07/07 16:06:43 | 000,253,952 | ---- | M] (Microsoft Corporation) MD5=A4AB3DCA4A383F0DF4988ABDEB84F9A4 -- C:\WINDOWS\$hf_mig$\KB950974\SP2QFE\es.dll
[2008/07/07 16:26:58 | 000,253,952 | ---- | M] (Microsoft Corporation) MD5=D4991D98F2DB73C60D042F1AEF79EFAE -- C:\WINDOWS\$hf_mig$\KB950974\SP3GDR\es.dll
[2008/07/07 16:26:58 | 000,253,952 | ---- | M] (Microsoft Corporation) MD5=D4991D98F2DB73C60D042F1AEF79EFAE -- C:\WINDOWS\ERDNT\cache\es.dll
[2008/07/07 16:26:58 | 000,253,952 | ---- | M] (Microsoft Corporation) MD5=D4991D98F2DB73C60D042F1AEF79EFAE -- C:\WINDOWS\system32\dllcache\es.dll
[2008/07/07 16:26:58 | 000,253,952 | ---- | M] (Microsoft Corporation) MD5=D4991D98F2DB73C60D042F1AEF79EFAE -- C:\WINDOWS\system32\es.dll
[2008/07/07 16:23:18 | 000,253,952 | ---- | M] (Microsoft Corporation) MD5=F17F6226BDC0CD5F0BEF0DAF84D29BEC -- C:\WINDOWS\$hf_mig$\KB950974\SP3QFE\es.dll

< MD5 for: EXPLORER.EXE >
[2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\ERDNT\cache\explorer.exe
[2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\explorer.exe
[2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2007/06/13 07:26:03 | 001,033,216 | ---- | M] (Microsoft Corporation) MD5=7712DF0CDDE3A5AC89843E61CD5B3658 -- C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
[2007/06/13 06:23:07 | 001,033,216 | ---- | M] (Microsoft Corporation) MD5=97BD6515465659FF8F3B7BE375B2EA87 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe

< MD5 for: IPNATHLP.DLL >
[2004/08/04 16:00:00 | 000,331,264 | ---- | M] (Microsoft Corporation) MD5=36CC8C01B5E50163037BEF56CB96DEFF -- C:\WINDOWS\$NtServicePackUninstall$\ipnathlp.dll
[2008/04/13 20:11:55 | 000,331,264 | ---- | M] (Microsoft Corporation) MD5=83F41D0D89645D7235C051AB1D9523AC -- C:\WINDOWS\ServicePackFiles\i386\ipnathlp.dll
[2008/04/13 20:11:55 | 000,331,264 | ---- | M] (Microsoft Corporation) MD5=83F41D0D89645D7235C051AB1D9523AC -- C:\WINDOWS\system32\ipnathlp.dll

< MD5 for: IPSEC.SYS >
[2008/04/13 15:19:42 | 000,075,264 | ---- | M] (Microsoft Corporation) MD5=23C74D75E36E7158768DD63D92789A91 -- C:\WINDOWS\ServicePackFiles\i386\ipsec.sys
[2008/04/13 15:19:42 | 000,075,264 | ---- | M] (Microsoft Corporation) MD5=23C74D75E36E7158768DD63D92789A91 -- C:\WINDOWS\system32\drivers\ipsec.sys
[2004/08/04 16:00:00 | 000,074,752 | ---- | M] (Microsoft Corporation) MD5=64537AA5C003A6AFEEE1DF819062D0D1 -- C:\WINDOWS\$NtServicePackUninstall$\ipsec.sys

< MD5 for: NETBT.SYS >
[2004/08/04 16:00:00 | 000,162,816 | ---- | M] (Microsoft Corporation) MD5=0C80E410CD2F47134407EE7DD19CC86B -- C:\WINDOWS\$NtServicePackUninstall$\netbt.sys
[2008/04/13 15:21:00 | 000,162,816 | ---- | M] (Microsoft Corporation) MD5=74B2B2F5BEA5E9A3DC021D685551BD3D -- C:\WINDOWS\ServicePackFiles\i386\netbt.sys
[2008/04/13 15:21:00 | 000,162,816 | ---- | M] (Microsoft Corporation) MD5=74B2B2F5BEA5E9A3DC021D685551BD3D -- C:\WINDOWS\system32\drivers\netbt.sys

< MD5 for: NETMAN.DLL >
[2008/04/13 20:12:01 | 000,198,144 | ---- | M] (Microsoft Corporation) MD5=13E67B55B3ABD7BF3FE7AAE5A0F9A9DE -- C:\WINDOWS\ERDNT\cache\netman.dll
[2008/04/13 20:12:01 | 000,198,144 | ---- | M] (Microsoft Corporation) MD5=13E67B55B3ABD7BF3FE7AAE5A0F9A9DE -- C:\WINDOWS\ServicePackFiles\i386\netman.dll
[2008/04/13 20:12:01 | 000,198,144 | ---- | M] (Microsoft Corporation) MD5=13E67B55B3ABD7BF3FE7AAE5A0F9A9DE -- C:\WINDOWS\system32\netman.dll
[2005/08/22 22:24:55 | 000,197,632 | ---- | M] (Microsoft Corporation) MD5=3516D8A18B36784B1005B950B84232E1 -- C:\WINDOWS\$hf_mig$\KB905414\SP2QFE\netman.dll
[2005/08/22 22:29:46 | 000,197,632 | ---- | M] (Microsoft Corporation) MD5=36739B39267914BA69AD0610A0299732 -- C:\WINDOWS\$NtServicePackUninstall$\netman.dll

< MD5 for: QMGR.DLL >
[2004/08/04 16:00:00 | 000,382,464 | ---- | M] (Microsoft Corporation) MD5=2C69EC7E5A311334D10DD95F338FCCEA -- C:\WINDOWS\$NtServicePackUninstall$\qmgr.dll
[2008/04/13 20:12:03 | 000,409,088 | ---- | M] (Microsoft Corporation) MD5=574738F61FCA2935F5265DC4E5691314 -- C:\WINDOWS\ERDNT\cache\qmgr.dll
[2008/04/13 20:12:03 | 000,409,088 | ---- | M] (Microsoft Corporation) MD5=574738F61FCA2935F5265DC4E5691314 -- C:\WINDOWS\ServicePackFiles\i386\qmgr.dll
[2008/04/13 20:12:03 | 000,409,088 | ---- | M] (Microsoft Corporation) MD5=574738F61FCA2935F5265DC4E5691314 -- C:\WINDOWS\system32\bits\qmgr.dll
[2008/04/13 20:12:03 | 000,409,088 | ---- | M] (Microsoft Corporation) MD5=574738F61FCA2935F5265DC4E5691314 -- C:\WINDOWS\system32\qmgr.dll

< MD5 for: RPCSS.DLL >
[2008/04/13 20:12:04 | 000,399,360 | ---- | M] (Microsoft Corporation) MD5=2589FE6015A316C0F5D5112B4DA7B509 -- C:\WINDOWS\ServicePackFiles\i386\rpcss.dll
[2009/02/09 08:10:48 | 000,401,408 | ---- | M] (Microsoft Corporation) MD5=6B27A5C03DFB94B4245739065431322C -- C:\WINDOWS\ERDNT\cache\rpcss.dll
[2009/02/09 08:10:48 | 000,401,408 | ---- | M] (Microsoft Corporation) MD5=6B27A5C03DFB94B4245739065431322C -- C:\WINDOWS\system32\dllcache\rpcss.dll
[2009/02/09 08:10:48 | 000,401,408 | ---- | M] (Microsoft Corporation) MD5=6B27A5C03DFB94B4245739065431322C -- C:\WINDOWS\system32\rpcss.dll
[2009/02/09 06:56:36 | 000,401,408 | ---- | M] (Microsoft Corporation) MD5=9222562D44021B988B9F9F62207FB6F2 -- C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\rpcss.dll
[2005/01/14 09:07:42 | 000,395,776 | ---- | M] (Microsoft Corporation) MD5=94456045BEB4545B5EBE1DCC85951AFA -- C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\rpcss.dll
[2005/07/26 08:20:40 | 000,398,336 | ---- | M] (Microsoft Corporation) MD5=C369DF215D352B6F3A0B8C3469AA34F8 -- C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\rpcss.dll
[2005/07/26 08:39:49 | 000,397,824 | ---- | M] (Microsoft Corporation) MD5=CE94A2BD25E3E9F4D46A7373FF455C6D -- C:\WINDOWS\$NtServicePackUninstall$\rpcss.dll
[2005/04/28 23:35:01 | 000,396,288 | ---- | M] (Microsoft Corporation) MD5=DA383FB39A6F1C445F3AFC94B3EB1248 -- C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\rpcss.dll

< MD5 for: SERVICES.EXE >
[2009/02/06 07:06:24 | 000,110,592 | ---- | M] (Microsoft Corporation) MD5=020CEAAEDC8EB655B6506B8C70D53BB6 -- C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\services.exe
[2008/04/13 20:12:34 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=0E776ED5F7CC9F94299E70461B7B8185 -- C:\WINDOWS\ServicePackFiles\i386\services.exe
[2009/02/06 07:11:05 | 000,110,592 | ---- | M] (Microsoft Corporation) MD5=65DF52F5B8B6E9BBD183505225C37315 -- C:\WINDOWS\ERDNT\cache\services.exe
[2009/02/06 07:11:05 | 000,110,592 | ---- | M] (Microsoft Corporation) MD5=65DF52F5B8B6E9BBD183505225C37315 -- C:\WINDOWS\system32\dllcache\services.exe
[2009/02/06 07:11:05 | 000,110,592 | ---- | M] (Microsoft Corporation) MD5=65DF52F5B8B6E9BBD183505225C37315 -- C:\WINDOWS\system32\services.exe
[2004/08/04 16:00:00 | 000,108,032 | ---- | M] (Microsoft Corporation) MD5=C6CE6EEC82F187615D1002BB3BB50ED4 -- C:\WINDOWS\$NtServicePackUninstall$\services.exe

< MD5 for: SR.SYS >
[2008/04/13 14:36:52 | 000,073,472 | ---- | M] (Microsoft Corporation) MD5=76BB022C2FB6902FD5BDD4F78FC13A5D -- C:\WINDOWS\ServicePackFiles\i386\sr.sys
[2008/04/13 14:36:52 | 000,073,472 | ---- | M] (Microsoft Corporation) MD5=76BB022C2FB6902FD5BDD4F78FC13A5D -- C:\WINDOWS\system32\drivers\sr.sys
[2004/08/04 16:00:00 | 000,073,472 | ---- | M] (Microsoft Corporation) MD5=E41B6D037D6CD08461470AF04500DC24 -- C:\WINDOWS\$NtServicePackUninstall$\sr.sys

< MD5 for: SRSVC.DLL >
[2008/04/13 20:12:07 | 000,171,008 | ---- | M] (Microsoft Corporation) MD5=3805DF0AC4296A34BA4BF93B346CC378 -- C:\WINDOWS\ERDNT\cache\srsvc.dll
[2008/04/13 20:12:07 | 000,171,008 | ---- | M] (Microsoft Corporation) MD5=3805DF0AC4296A34BA4BF93B346CC378 -- C:\WINDOWS\ServicePackFiles\i386\srsvc.dll
[2008/04/13 20:12:07 | 000,171,008 | ---- | M] (Microsoft Corporation) MD5=3805DF0AC4296A34BA4BF93B346CC378 -- C:\WINDOWS\system32\srsvc.dll
[2004/08/04 16:00:00 | 000,170,496 | ---- | M] (Microsoft Corporation) MD5=92BDF74F12D6CBEC43C94D4B7F804838 -- C:\WINDOWS\$NtServicePackUninstall$\srsvc.dll

< MD5 for: SVCHOST.EXE >
[2008/04/13 20:12:36 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\ERDNT\cache\svchost.exe
[2008/04/13 20:12:36 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008/04/13 20:12:36 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\system32\svchost.exe
[2012/09/29 19:54:26 | 000,218,184 | ---- | M] () MD5=8846E87210AD131CF71E3E2E49F647B0 -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2004/08/04 16:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=8F078AE4ED187AAABC0A305146DE6716 -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe

< MD5 for: TCPIP.SYS >
[2008/06/20 06:45:13 | 000,360,320 | ---- | M] (Microsoft Corporation) MD5=2A5554FC5B1E04E131230E3CE035C3F9 -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2006/01/13 21:07:08 | 000,360,448 | ---- | M] (Microsoft Corporation) MD5=5562CC0A47B2AEF06D3417B733F3C195 -- C:\WINDOWS\$hf_mig$\KB913446\SP2QFE\tcpip.sys
[2005/05/25 23:07:12 | 000,359,936 | ---- | M] (Microsoft Corporation) MD5=63FDFEA54EB53DE2D863EE454937CE1E -- C:\WINDOWS\$hf_mig$\KB893066\SP2QFE\tcpip.sys
[2007/10/30 12:53:32 | 000,360,832 | ---- | M] (Microsoft Corporation) MD5=64798ECFA43D78C7178375FCDD16D8C8 -- C:\WINDOWS\$hf_mig$\KB941644\SP2QFE\tcpip.sys
[2008/06/20 06:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[2008/04/13 15:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008/06/20 07:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008/06/20 07:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\ERDNT\cache\tcpip.sys
[2008/06/20 07:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008/06/20 07:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008/06/20 07:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008/06/20 07:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[2006/04/20 16:18:35 | 000,360,576 | ---- | M] (Microsoft Corporation) MD5=B2220C618B42A2212A59D91EBD6FC4B4 -- C:\WINDOWS\$hf_mig$\KB917953\SP2QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2004/08/04 16:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=39B1FFB03C2296323832ACBAE50D2AFF -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
[2008/04/13 20:12:38 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\ERDNT\cache\userinit.exe
[2008/04/13 20:12:38 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008/04/13 20:12:38 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\system32\userinit.exe

< MD5 for: VOLSNAP.SYS >
[2008/04/13 14:41:01 | 000,052,352 | ---- | M] (Microsoft Corporation) MD5=4C8FCB5CC53AAB716D810740FE59D025 -- C:\WINDOWS\ServicePackFiles\i386\volsnap.sys
[2008/04/13 14:41:01 | 000,052,352 | ---- | M] (Microsoft Corporation) MD5=4C8FCB5CC53AAB716D810740FE59D025 -- C:\WINDOWS\system32\drivers\volsnap.sys
[2004/08/04 16:00:00 | 000,052,352 | ---- | M] (Microsoft Corporation) MD5=EE4660083DEBA849FF6C485D944B379B -- C:\WINDOWS\$NtServicePackUninstall$\volsnap.sys

< MD5 for: WINLOGON.EXE >
[2004/08/04 16:00:00 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=01C3346C241652F43AED8E2149881BFE -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2012/09/29 19:54:26 | 000,218,184 | ---- | M] () MD5=8846E87210AD131CF71E3E2E49F647B0 -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2008/04/13 20:12:39 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\ERDNT\cache\winlogon.exe
[2008/04/13 20:12:39 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008/04/13 20:12:39 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\system32\winlogon.exe

< MD5 for: WMISVC.DLL >
[2008/04/13 20:12:09 | 000,144,896 | ---- | M] (Microsoft Corporation) MD5=2D0E4ED081963804CCC196A0929275B5 -- C:\WINDOWS\ServicePackFiles\i386\wmisvc.dll
[2008/04/13 20:12:09 | 000,144,896 | ---- | M] (Microsoft Corporation) MD5=2D0E4ED081963804CCC196A0929275B5 -- C:\WINDOWS\system32\wbem\wmisvc.dll
[2004/08/04 16:00:00 | 000,144,896 | ---- | M] (Microsoft Corporation) MD5=F399242A80C4066FD155EFA4CF96658E -- C:\WINDOWS\$NtServicePackUninstall$\wmisvc.dll

< MD5 for: WSCSVC.DLL >
[2004/08/04 16:00:00 | 000,081,408 | ---- | M] (Microsoft Corporation) MD5=4D59DAA66C60858CDF4F67A900F42D4A -- C:\WINDOWS\$NtServicePackUninstall$\wscsvc.dll
[2008/04/13 20:12:10 | 000,080,896 | ---- | M] (Microsoft Corporation) MD5=7C278E6408D1DCE642230C0585A854D5 -- C:\WINDOWS\ServicePackFiles\i386\wscsvc.dll
[2008/04/13 20:12:10 | 000,080,896 | ---- | M] (Microsoft Corporation) MD5=7C278E6408D1DCE642230C0585A854D5 -- C:\WINDOWS\system32\wscsvc.dll

< MD5 for: WUAUSERV.DLL >
[2004/08/04 16:00:00 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=13D72740963CBA12D9FF76A7F218BCD8 -- C:\WINDOWS\$NtServicePackUninstall$\wuauserv.dll
[2008/04/13 20:12:11 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=35321FB577CDC98CE3EB3A3EB9E4610A -- C:\WINDOWS\ServicePackFiles\i386\wuauserv.dll
[2008/04/13 20:12:11 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=35321FB577CDC98CE3EB3A3EB9E4610A -- C:\WINDOWS\system32\wuauserv.dll

< >

========== Hard Links - Junction Points - Mount Points - Symbolic Links ==========
[C:\WINDOWS\$NtUninstallKB29286$] -> Error: Cannot create file handle -> Unknown point type
[C:\WINDOWS\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a] -> C:\WINDOWS\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790 -> Junction
[C:\WINDOWS\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a] -> C:\WINDOWS\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e -> Junction

========== Alternate Data Streams ==========

@Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:0B4227B4
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C31F31E6

< End of report >

shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by Superdave on 25th October 2012, 10:51 pm

Hello and welcome to GeekPolice.Net My name is Dave. I will be helping you out with your particular problem on your computer.

1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
2. The fixes are specific to your problem and should only be used for this issue on this machine.
3. If you don't know or understand something, please don't hesitate to ask.
4. Please DO NOT run any other tools or scans while I am helping you.
5. It is important that you reply to this thread. Do not start a new topic.
6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
7. Absence of symptoms does not mean that everything is clear.

If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line.
*****************************************************************
Remove the Adware:

  • Please close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Delete.
  • Confirm each time with OK
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the content of that logfile in your reply.
  • You can find the logfile at C:\AdwCleaner[Sn].txt as well - n is the order number.

*******************************************************
* Open OTL
* Copy and Paste the following text in the codebox into the Custom Scans/Fixes window.

Code:
:OTL

C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 www.1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 127.0.0.1 123fporn.info
O1 - Hosts: 14590 more lines...
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.

:COMMANDS
[resethosts]
[purity]
[start explorer]

* Click Run Fix
* OTLI2 may ask to reboot the machine. Please do so if asked.
* Click OK
* A report will open. Copy and Paste that report in your next reply.
*************************************************************
Download Combofix from any of the links below, and save it to your DESKTOP.

[You must be registered and logged in to see this link.]
[You must be registered and logged in to see this link.]
[You must be registered and logged in to see this link.]

To prevent your anti-virus application interfering with ComboFix we need to disable it. See [You must be registered and logged in to see this link.] for a tutorial regarding how to do so if you are unsure.

  • Close any open windows and double click ComboFix.exe to run it.

    You will see the following image:



Click I Agree to start the program.

ComboFix will then extract the necessary files and you will see this:



As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. This will not occur in Windows Vista and 7

It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.

If you did not have it installed, you will see the prompt below. Choose YES.



Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.

Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:



Click on Yes, to continue scanning for malware.

When finished, it will produce a report for you. Please post the contents of the log (C:\ComboFix.txt).

Leave your computer alone while ComboFix is running. ComboFix will restart your computer if malware is found; allow it to do so.

Note: Please Do NOT mouseclick combofix's window while its running because it may cause it to stall.

Superdave
Captain
Captain

Posts Posts : 4202
Joined Joined : 2010-02-01
Gender Gender : Male
OS OS : Windows 8.1 and a dual-boot with XP Home SP3
Protection Protection : MSE, Windows Defender, Windows firewall
Points Points : 83211
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by shushon on 26th October 2012, 1:38 am

Thank you for your quick reply. I have ran the scans and will post the logs. I do want to mention that while doing combofix i got a message that avg was running, I no longer have avg....I do have it showing in my programs but can not, no matter what i do, extract it. Also the white box and red x problem is still existing. Thanks again! I appreciate your time and efforts.
# AdwCleaner v2.005 - Logfile created 10/25/2012 at 20:57:12
# Updated 14/10/2012 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Owner - MONSTERPUTER
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Owner\Desktop\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****


***** [Registry] *****

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Registry is clean.

-\\ Google Chrome v [Unable to get version]

File : C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [1217 octets] - [25/10/2012 17:02:39]
AdwCleaner[S1].txt - [1000 octets] - [25/10/2012 20:57:12]

########## EOF - C:\AdwCleaner[S1].txt - [1060 octets] ##########

shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by shushon on 26th October 2012, 1:39 am

========== OTL ==========
127.0.0.1 [You must be registered and logged in to see this link.] removed from HOSTS file successfully
127.0.0.1 007guard.com removed from HOSTS file successfully
127.0.0.1 008i.com removed from HOSTS file successfully
127.0.0.1 [You must be registered and logged in to see this link.] removed from HOSTS file successfully
127.0.0.1 008k.com removed from HOSTS file successfully
127.0.0.1 [You must be registered and logged in to see this link.] removed from HOSTS file successfully
127.0.0.1 00hq.com removed from HOSTS file successfully
127.0.0.1 010402.com removed from HOSTS file successfully
127.0.0.1 [You must be registered and logged in to see this link.] removed from HOSTS file successfully
127.0.0.1 032439.com removed from HOSTS file successfully
127.0.0.1 [You must be registered and logged in to see this link.] removed from HOSTS file successfully
127.0.0.1 0scan.com removed from HOSTS file successfully
127.0.0.1 1000gratisproben.com removed from HOSTS file successfully
127.0.0.1 1001namen.com removed from HOSTS file successfully
127.0.0.1 100888290cs.com removed from HOSTS file successfully
127.0.0.1 [You must be registered and logged in to see this link.] removed from HOSTS file successfully
127.0.0.1 100sexlinks.com removed from HOSTS file successfully
127.0.0.1 10sek.com removed from HOSTS file successfully
127.0.0.1 [You must be registered and logged in to see this link.] removed from HOSTS file successfully
127.0.0.1 1-2005-search.com removed from HOSTS file successfully
127.0.0.1 123fporn.info removed from HOSTS file successfully
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4efb-9B51-7695ECA05670}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}\ not found.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

OTL by OldTimer - Version 3.2.70.1 log created on 10252012_210352

shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by shushon on 26th October 2012, 1:39 am

ComboFix 12-10-25.02 - Owner 10/25/2012 21:20:42.4.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.3063.2531 [GMT -4:00]
Running from: c:\documents and settings\Owner\Desktop\ComboFix.exe
AV: AVG Anti-Virus Free Edition 2011 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: ESET NOD32 Antivirus 5.2 *Disabled/Updated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: PC Tools Firewall Plus *Enabled* {ABBD5028-5A95-4B6D-996E-98D64AE88D52}
* Resident AV is active
.
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\Administrator.MONSTERPUTER\WINDOWS
c:\documents and settings\All Users\Application Data\TEMP
c:\documents and settings\Default User\WINDOWS
c:\documents and settings\Owner\Application Data\inst.exe
c:\documents and settings\Owner\Application Data\vso_ts_preview.xml
c:\documents and settings\Owner\WINDOWS
c:\program files\LP
c:\program files\Shared
c:\program files\Shared\shared.sig
c:\windows\$NtUninstallKB29286$
c:\windows\$NtUninstallKB29286$\2410871665
c:\windows\$NtUninstallKB29286$\663049699\@
c:\windows\$NtUninstallKB29286$\663049699\cfg.ini
c:\windows\$NtUninstallKB29286$\663049699\Desktop.ini
c:\windows\$NtUninstallKB29286$\663049699\L\evpbxyye
c:\windows\$NtUninstallKB29286$\663049699\U\00000001.@
c:\windows\$NtUninstallKB29286$\663049699\U\00000002.@
c:\windows\$NtUninstallKB29286$\663049699\U\00000004.@
c:\windows\$NtUninstallKB29286$\663049699\U\80000000.@
c:\windows\$NtUninstallKB29286$\663049699\U\80000004.@
c:\windows\$NtUninstallKB29286$\663049699\U\80000032.@
c:\windows\$NtUninstallKB29286$\663049699\version
c:\windows\Downloaded Program Files\ODCTOOLS
c:\windows\system32\config\systemprofile\WINDOWS
c:\windows\system32\URTTemp
c:\windows\system32\URTTemp\regtlib.exe
.
c:\windows\system32\drivers\Serial.sys was missing
Restored copy from - c:\windows\system32\dllcache\Serial.sys
.
.
((((((((((((((((((((((((( Files Created from 2012-09-26 to 2012-10-26 )))))))))))))))))))))))))))))))
.
.
2012-10-26 01:03 . 2012-10-26 01:03 -------- d-----w- C:\_OTL
2012-10-25 01:14 . 2012-10-25 01:14 -------- d-----w- c:\documents and settings\Administrator.MONSTERPUTER\Application Data\Malwarebytes
2012-10-25 01:14 . 2012-10-25 01:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2012-10-25 01:14 . 2012-10-25 01:18 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-10-25 01:14 . 2012-09-29 23:54 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-10-25 00:53 . 2012-10-25 00:53 -------- d-----w- c:\documents and settings\Administrator.MONSTERPUTER\Local Settings\Application Data\Identities
2012-10-22 19:37 . 2012-10-22 19:37 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\ESET
2012-10-20 13:13 . 2012-10-20 13:13 -------- d-----w- c:\program files\ESET
2012-10-20 13:13 . 2012-10-20 13:13 -------- d-----w- c:\documents and settings\All Users\Application Data\ESET
2012-10-18 00:50 . 2012-10-18 00:50 -------- d-----w- c:\documents and settings\Owner\Local Settings\Application Data\MFAData
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-28 15:14 . 2006-05-07 01:24 916992 ----a-w- c:\windows\system32\wininet.dll
2012-08-28 15:14 . 2006-05-07 01:24 43520 ----a-w- c:\windows\system32\licmgr10.dll
2012-08-28 15:14 . 2006-05-07 01:24 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2012-08-28 12:07 . 2006-05-07 01:24 385024 ----a-w- c:\windows\system32\html.iec
2012-08-24 13:53 . 2006-05-07 01:24 177664 ----a-w- c:\windows\system32\wintrust.dll
2012-08-21 13:29 . 2006-05-07 01:24 2192896 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-08-21 12:58 . 2004-08-04 06:59 2069632 ----a-w- c:\windows\system32\ntkrnlpa.exe
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Power2GoExpress"="NA" [X]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ShowWnd"="ShowWnd.exe" [2005-01-27 36864]
"RTHDCPL"="RTHDCPL.EXE" [2007-04-12 16132608]
"Recguard"="c:\windows\SMINST\RECGUARD.EXE" [2002-09-14 212992]
"ModPS2"="ModPS2Key.exe" [2006-11-07 53248]
"lxdnamon"="c:\program files\Lexmark 2600 Series\lxdnamon.exe" [2008-03-27 16040]
"LanguageShortcut"="c:\program files\CyberLink\PowerDVD\Language\Language.exe" [2006-11-29 58928]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2006-10-06 98304]
"CHotkey"="zHotkey.exe" [2006-11-07 547840]
"00PCTFW"="c:\program files\PC Tools Firewall Plus\FirewallGUI.exe" [2010-01-12 3168216]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-05-31 59280]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2012-04-19 421888]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-04-01 148888]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2012-03-07 3117344]
.
[HKLM\~\startupfolder\C:^Documents and Settings^Owner^Start Menu^Programs^Startup^OneNote 2010 Screen Clipper and Launcher.lnk]
path=c:\documents and settings\Owner\Start Menu\Programs\Startup\OneNote 2010 Screen Clipper and Launcher.lnk
backup=c:\windows\pss\OneNote 2010 Screen Clipper and Launcher.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AvgUninstallURL]
start [You must be registered and logged in to see this link.] [?]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2012-06-07 23:33 421776 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Kodak\\Kodak EasyShare software\\bin\\EasyShare.exe"=
"c:\\WINDOWS\\system32\\lxdncoms.exe"=
"c:\\Program Files\\Lexmark 2600 Series\\lxdnmon.exe"=
"c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdnpswx.exe"=
"c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdntime.exe"=
"c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdnjswx.exe"=
"c:\\Program Files\\Lexmark 2600 Series\\lxdnlscn.exe"=
"c:\\Program Files\\Lexmark 2600 Series\\frun.exe"=
"c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdnwbgw.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Common Files\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\Microsoft Office\\Office14\\ONENOTE.EXE"=
.
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [3/14/2012 8:40 AM 120152]
R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [3/14/2012 8:40 AM 104160]
R1 pctgntdi;pctgntdi;c:\windows\system32\drivers\pctgntdi.sys [7/8/2010 6:19 PM 233136]
R2 AMP;AMP;c:\windows\system32\drivers\amp.sys [1/19/2010 6:53 PM 127016]
R2 AMPSE;AMPSE;c:\windows\system32\drivers\ampse.sys [1/19/2010 6:53 PM 1118248]
R2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [3/7/2012 3:40 PM 913144]
R2 lxdn_device;lxdn_device;c:\windows\system32\lxdncoms.exe -service --> c:\windows\system32\lxdncoms.exe -service [?]
R2 PCTAppEvent;PCTAppEvent Driver;c:\windows\system32\drivers\PCTAppEvent.sys [7/8/2010 6:19 PM 88040]
R2 vseamps;vseamps;c:\program files\Common Files\Authentium\AntiVirus5\vseamps.exe [1/19/2010 6:46 PM 121384]
R2 vsedsps;vsedsps;c:\program files\Common Files\Authentium\AntiVirus5\vsedsps.exe [1/19/2010 6:46 PM 117288]
R3 pcouffin;VSO Software pcouffin;c:\windows\system32\drivers\pcouffin.sys [1/4/2011 6:32 PM 47360]
R3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver;c:\windows\system32\drivers\pctNdis-PacketFilter.sys [7/8/2010 6:18 PM 70664]
R3 pctNDIS;PC Tools Driver;c:\windows\system32\drivers\pctNdis.sys [7/8/2010 6:18 PM 58816]
R3 pctplfw;pctplfw;c:\windows\system32\drivers\pctplfw.sys [7/8/2010 6:18 PM 115216]
R3 PLTurbo;Prolific turbo filter driver for odd;c:\windows\system32\drivers\plturbo.sys [1/4/2011 6:25 PM 16640]
S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys --> c:\windows\system32\DRIVERS\Lbd.sys [?]
S1 SBRE;SBRE;\??\c:\windows\system32\drivers\SBREdrv.sys --> c:\windows\system32\drivers\SBREdrv.sys [?]
S3 el575nd5;3Com Megahertz 10/100 LAN CardBus PC Card Driver;c:\windows\system32\drivers\el575ND5.sys [7/1/2006 1:44 AM 69692]
S3 MEMSWEEP2;MEMSWEEP2;\??\c:\windows\system32\2C.tmp --> c:\windows\system32\2C.tmp [?]
S3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [1/9/2010 9:37 PM 4640000]
S3 PLTurbh;Prolific turbo filter driver for hdd;c:\windows\system32\drivers\plturbh.sys [1/4/2011 6:25 PM 16384]
S3 SUNPLUS;SightCAM PC-100p;c:\windows\system32\Drivers\SPIXNEW.SYS --> c:\windows\system32\Drivers\SPIXNEW.SYS [?]
S3 vseqrts;vseqrts;c:\program files\Common Files\Authentium\AntiVirus5\vseqrts.exe [1/19/2010 6:46 PM 158248]
S4 lxdnCATSCustConnectService;lxdnCATSCustConnectService;c:\windows\system32\spool\drivers\w32x86\3\lxdnserv.exe [10/16/2008 11:05 PM 98984]
.
.
------- Supplementary Scan -------
.
uStart Page = [You must be registered and logged in to see this link.]
mSearch Bar = [You must be registered and logged in to see this link.]
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = [You must be registered and logged in to see this link.]
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\MICROS~3\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.2.1 192.168.1.254
.
.
------- File Associations -------
.
JSEFile=NOTEPAD.EXE %1
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, [You must be registered and logged in to see this link.]
Rootkit scan 2012-10-25 21:30
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MEMSWEEP2]
"ImagePath"="\??\c:\windows\system32\2C.tmp"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(484)
c:\windows\system32\WININET.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\system32\lxdncoms.exe
c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe
c:\program files\PC Tools Firewall Plus\FWService.exe
c:\windows\system32\HPZipm12.exe
c:\program files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
c:\program files\CyberLink\Shared Files\RichVideo.exe
c:\windows\RTHDCPL.EXE
c:\windows\ModPS2Key.exe
c:\windows\zHotkey.exe
c:\program files\Lexmark 2600 Series\lxdnMsdMon.exe
.
**************************************************************************
.
Completion time: 2012-10-25 21:36:01 - machine was rebooted
ComboFix-quarantined-files.txt 2012-10-26 01:35
.
Pre-Run: 67,609,124,864 bytes free
Post-Run: 67,848,151,040 bytes free
.
- - End Of File - - 81F51CEEB5DD8331BE6E606A3CF16E2D

shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by Superdave on 26th October 2012, 1:54 am

Please run this tool to get rid of AVG.

AVG Antivirus - [You must be registered and logged in to see this link.]
***************************************************
Please download and run the below tool named Rkill (courtesy of BleepingComputer.com) which may help allow other programs to run.
Save Rkill to your desktop.

There are 7 different versions. If one of them won't run then download and try to run the other one.

Vista and Win7 users need to right click Rkill and choose Run as Administrator


You only need to get one of these to run, not all of them. You may get warnings from your antivirus about this tool, ignore them or shutdown your antivirus.

* [You must be registered and logged in to see this link.]
* [You must be registered and logged in to see this link.]
* [You must be registered and logged in to see this link.]
* [You must be registered and logged in to see this link.]
* [You must be registered and logged in to see this link.]
* [You must be registered and logged in to see this link.]
* [You must be registered and logged in to see this link.]
**********************************************************************
Download Security Check by screen317 from one of the following links and save it to your desktop.

[You must be registered and logged in to see this link.]
[You must be registered and logged in to see this link.]

* Double-click Security Check.bat
* Follow the on-screen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt
* Post the contents of that document in your next reply.

Note: If a security program requests permission from dig.exe to access the Internet, allow it to do so.
************************************************************
SysProt Antirootkit

Download
SysProt Antirootkit from the link below (you will find it at the bottom
of the page under attachments, or you can get it from one of the
mirrors).

[You must be registered and logged in to see this link.]

Unzip it into a folder on your desktop.

  • Double click Sysprot.exe to start the program.
  • Click on the Log tab.
  • In the Write to log box select the following items.

    • Process << Selected
    • Kernel Modules << Selected
    • SSDT << Selected
    • Kernel Hooks << Selected
    • IRP Hooks << NOT Selected
    • Ports << NOT Selected
    • Hidden Files << Selected

  • At the bottom of the page

    • Hidden Objects Only << Selected

  • Click on the Create Log button on the bottom right.
  • After a few seconds a new window should appear.
  • Select Scan Root Drive. Click on the Start button.
  • When it is complete a new window will appear to indicate that the scan is finished.
  • The log will be saved automatically in the same folder Sysprot.exe was extracted to. Open the text file and copy/paste the log here.


Superdave
Captain
Captain

Posts Posts : 4202
Joined Joined : 2010-02-01
Gender Gender : Male
OS OS : Windows 8.1 and a dual-boot with XP Home SP3
Protection Protection : MSE, Windows Defender, Windows firewall
Points Points : 83211
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by shushon on 26th October 2012, 11:45 pm

Rkill 2.4.3 by Lawrence Abrams (Grinler)
[You must be registered and logged in to see this link.]
Copyright 2008-2012 BleepingComputer.com
More Information about Rkill can be found at this link:
[You must be registered and logged in to see this link.]

Program started at: 10/26/2012 07:21:53 PM in x86 mode.
Windows Version: Microsoft Windows XP Service Pack 3

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* C:\WINDOWS\ModPS2Key.exe (PID: 3500) [WD-HEUR]
* C:\WINDOWS\zHotkey.exe (PID: 3540) [WD-HEUR]

2 proccesses terminated!

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* Windows Firewall Disabled

[HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = dword:00000000

Checking Windows Service Integrity:

* RpcSs => %SystemRoot%\system32\svchost.exe -k rpcss [Incorrect ImagePath]

Searching for Missing Digital Signatures:

* No issues found.

Checking HOSTS File:

* HOSTS file entries found:

127.0.0.1 localhost

Program finished at: 10/26/2012 07:22:38 PM
Execution time: 0 hours(s), 0 minute(s), and 44 seconds(s)

shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by shushon on 26th October 2012, 11:46 pm

Results of screen317's Security Check version 0.99.53
Windows XP Service Pack 3 x86
Internet Explorer 8
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Disabled!
AVG PC TuneUp
AVG PC TuneUp Language Pack (en-US)
ESET NOD32 Antivirus
PC Tools Firewall Plus 6.0
`````````Anti-malware/Other Utilities Check:`````````
Malwarebytes Anti-Malware version 1.65.1.1000
AVG PC TuneUp
AVG PC TuneUp Language Pack (en-US)
CCleaner
Java(TM) 6 Update 20
Java(TM) 6 Update 4
Java version out of Date!
Adobe Flash Player 10 Flash Player out of Date!
Adobe Reader 9 Adobe Reader out of Date!
````````Process Check: objlist.exe by Laurent````````
ESET NOD32 Antivirus egui.exe
ESET NOD32 Antivirus ekrn.exe
Common Files Authentium AntiVirus5 vsedsps.exe
Common Files Authentium AntiVirus5 vseamps.exe
PC Tools Firewall Plus FWService.exe
PC Tools Firewall Plus FirewallGUI.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C:: 0%
````````````````````End of Log``````````````````````

shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by shushon on 26th October 2012, 11:47 pm

SysProt AntiRootkit v1.0.1.0
by swatkat

******************************************************************************************
******************************************************************************************

No Hidden Processes found

******************************************************************************************
******************************************************************************************
No Hidden Kernel Modules found

******************************************************************************************
******************************************************************************************
SSDT:
Function Name: ZwAssignProcessToJobObject
Address: A87204B0
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwCreateThread
Address: A87207F0
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwDebugActiveProcess
Address: A8720AB0
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwDuplicateObject
Address: A87205D0
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwLoadDriver
Address: A87208B0
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwOpenProcess
Address: A8720350
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwOpenThread
Address: A8720410
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwProtectVirtualMemory
Address: A8720570
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwQueueApcThread
Address: A8720630
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwSetContextThread
Address: A8720530
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwSetInformationThread
Address: A87204F0
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwSetSecurityObject
Address: A8720670
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwSetSystemInformation
Address: A8720870
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwSuspendProcess
Address: A87203B0
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwSuspendThread
Address: A8720430
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwSystemDebugControl
Address: A8720830
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwTerminateProcess
Address: A8720370
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwTerminateThread
Address: A8720470
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

Function Name: ZwWriteVirtualMemory
Address: A87205F0
Driver Base: A871F000
Driver End: A873F000
Driver Name: \SystemRoot\system32\DRIVERS\ehdrv.sys

******************************************************************************************
******************************************************************************************
No Kernel Hooks found

******************************************************************************************
******************************************************************************************
No IRP Hooks found

******************************************************************************************
******************************************************************************************
Ports:
Local Address: MONSTERPUTER.BELKIN:NETBIOS-SSN
Remote Address: 0.0.0.0:0
Type: TCP
Process: System
State: LISTENING

Local Address: MONSTERPUTER:30606
Remote Address: 0.0.0.0:0
Type: TCP
Process: C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
State: LISTENING

Local Address: MONSTERPUTER:27015
Remote Address: 0.0.0.0:0
Type: TCP
Process: C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
State: LISTENING

Local Address: MONSTERPUTER:5354
Remote Address: LOCALHOST:1028
Type: TCP
Process: C:\Program Files\Bonjour\mDNSResponder.exe
State: ESTABLISHED

Local Address: MONSTERPUTER:5354
Remote Address: 0.0.0.0:0
Type: TCP
Process: C:\Program Files\Bonjour\mDNSResponder.exe
State: LISTENING

Local Address: MONSTERPUTER:1208
Remote Address: LOCALHOST:30606
Type: TCP
Process: C:\Program Files\Internet Explorer\iexplore.exe
State: CLOSE_WAIT

Local Address: MONSTERPUTER:1206
Remote Address: LOCALHOST:30606
Type: TCP
Process: C:\Program Files\Internet Explorer\iexplore.exe
State: CLOSE_WAIT

Local Address: MONSTERPUTER:1029
Remote Address: 0.0.0.0:0
Type: TCP
Process: C:\WINDOWS\system32\alg.exe
State: LISTENING

Local Address: MONSTERPUTER:1028
Remote Address: LOCALHOST:5354
Type: TCP
Process: C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
State: ESTABLISHED

Local Address: MONSTERPUTER:10095
Remote Address: 0.0.0.0:0
Type: TCP
Process: C:\WINDOWS\system32\lxdncoms.exe
State: LISTENING

Local Address: MONSTERPUTER:2869
Remote Address: 0.0.0.0:0
Type: TCP
Process: C:\WINDOWS\system32\svchost.exe
State: LISTENING

Local Address: MONSTERPUTER:MICROSOFT-DS
Remote Address: 0.0.0.0:0
Type: TCP
Process: System
State: LISTENING

Local Address: MONSTERPUTER:EPMAP
Remote Address: 0.0.0.0:0
Type: TCP
Process: C:\WINDOWS\system32\svchost.exe
State: LISTENING

Local Address: MONSTERPUTER.BELKIN:5353
Remote Address: NA
Type: UDP
Process: C:\Program Files\Bonjour\mDNSResponder.exe
State: NA

Local Address: MONSTERPUTER.BELKIN:1900
Remote Address: NA
Type: UDP
Process: C:\WINDOWS\system32\svchost.exe
State: NA

Local Address: MONSTERPUTER.BELKIN:138
Remote Address: NA
Type: UDP
Process: System
State: NA

Local Address: MONSTERPUTER.BELKIN:NETBIOS-NS
Remote Address: NA
Type: UDP
Process: System
State: NA

Local Address: MONSTERPUTER.BELKIN:123
Remote Address: NA
Type: UDP
Process: C:\WINDOWS\system32\svchost.exe
State: NA

Local Address: MONSTERPUTER:1900
Remote Address: NA
Type: UDP
Process: C:\WINDOWS\system32\svchost.exe
State: NA

Local Address: MONSTERPUTER:1230
Remote Address: NA
Type: UDP
Process: C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
State: NA

Local Address: MONSTERPUTER:1056
Remote Address: NA
Type: UDP
Process: C:\Program Files\Internet Explorer\iexplore.exe
State: NA

Local Address: MONSTERPUTER:1026
Remote Address: NA
Type: UDP
Process: C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
State: NA

Local Address: MONSTERPUTER:1025
Remote Address: NA
Type: UDP
Process: C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
State: NA

Local Address: MONSTERPUTER:123
Remote Address: NA
Type: UDP
Process: C:\WINDOWS\system32\svchost.exe
State: NA

Local Address: MONSTERPUTER:4500
Remote Address: NA
Type: UDP
Process: C:\WINDOWS\system32\lsass.exe
State: NA

Local Address: MONSTERPUTER:1027
Remote Address: NA
Type: UDP
Process: C:\Program Files\Bonjour\mDNSResponder.exe
State: NA

Local Address: MONSTERPUTER:500
Remote Address: NA
Type: UDP
Process: C:\WINDOWS\system32\lsass.exe
State: NA

Local Address: MONSTERPUTER:MICROSOFT-DS
Remote Address: NA
Type: UDP
Process: System
State: NA

******************************************************************************************
******************************************************************************************
Hidden files/folders:
Object: C:\Qoobox\BackEnv\AppData.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Cache.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Cookies.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Desktop.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Favorites.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\History.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\LocalAppData.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\LocalSettings.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Music.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\NetHood.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Personal.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Pictures.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\PrintHood.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Profiles.Folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Profiles.Folder.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Programs.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Recent.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\SendTo.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\SetPath.bat
Status: Access denied

Object: C:\Qoobox\BackEnv\StartMenu.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\StartUp.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\SysPath.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\Templates.folder.dat
Status: Access denied

Object: C:\Qoobox\BackEnv\VikPev00
Status: Access denied


shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by Superdave on 27th October 2012, 1:23 am

How's your computer working now?

Update Your Java (JRE)

Old versions of Java have vulnerabilities that malware can use to infect your system.


First [You must be registered and logged in to see this link.]

If there are any other version(s) installed then update now.

Get the new version (if needed)

If your version is out of date install the newest version of the [You must be registered and logged in to see this link.].

Note: UNCHECK any pre-checked toolbar and/or software offered with the Java update. The pre-checked toolbars/software are not part of the Java update.

Be sure to close ALL open web browsers before starting the installation.

Remove any old versions

1. Download [You must be registered and logged in to see this link.] and unzip the file to your Desktop.
2. Open JavaRA.exe and choose Remove Older Versions
3. Once complete exit JavaRA.

Additional Note: [You must be registered and logged in to see this link.] adds a service to improve the initial startup time of Java applets and applications. To disable the JQS service if you don't want to use it, go to Start > Control Panel > Java > Advanced > Miscellaneous and uncheck the box for Java Quick Starter. Click OK and reboot your computer.
************************************************
Update your Adobe Reader. [You must be registered and logged in to see this link.].

Be sure to uncheck the Free McAfee Security Scan so it isn't installed.

************************************************
I'd like to scan your machine with ESET OnlineScan

•Hold down Control and click on the following link to open ESET OnlineScan in a new window.
[You must be registered and logged in to see this link.]
•Click the button.
•For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)

  • Click on to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the icon on your desktop.

•Check
•Click the button.
•Accept any security warnings from your browser.
•Check
•Push the Start button.
•ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
•When the scan completes, push
•Push , and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
•Push the button.
•Push
A log file will be saved here: C:\Program Files\ESET\ESET Online Scanner\log.txt

Superdave
Captain
Captain

Posts Posts : 4202
Joined Joined : 2010-02-01
Gender Gender : Male
OS OS : Windows 8.1 and a dual-boot with XP Home SP3
Protection Protection : MSE, Windows Defender, Windows firewall
Points Points : 83211
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by shushon on 27th October 2012, 12:02 pm

Operating memory » C:\Program Files\PC Tools Firewall Plus\PPSupport.dll » Armadillo - is OK (internal scanning not performed)
C:\hiberfil.sys - error opening
C:\pagefile.sys - error opening
C:\Documents and Settings\Administrator.MONSTERPUTER\Local Settings\Application Data\Identities\{B6166FA3-9EB0-414D-84C2-A58372214B8B}\Microsoft\Outlook Express\Inbox.dbx » DBX - is OK (internal scanning not performed)
C:\Documents and Settings\Owner\Application Data\Apple Computer\MobileSync\Backup\28bd1db8c875c089511820c891c33e2c617b7af0\5d15c06ef39b7a5aa229bdcfc71baaab241a2b18 » ZIP » tmp - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » bundles/.#downloader.bundle.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » bundles/.#launcher.bundle.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » bundles/.#patcher.bundle.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » bundles/downloader.bundle - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » bundles/launcher.bundle - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » bundles/patcher.bundle - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/.#background.png.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/.#buttonPause-rtl.png.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/.#buttonPause.png.1.2 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/.#main-dialog-layer.png.1.2 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/.#Microsoft_logo-white.png.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/.#programBkgd-rtl.png.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/.#programBkgd.png.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/.#space.png.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/.#winClose.png.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/.#winMin.png.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/background.png - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/buttonPause-rtl.png - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/buttonPause.png - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/main-dialog-layer.png - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/Microsoft_logo-white.png - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/programBkgd-rtl.png - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/programBkgd.png - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/space.png - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/winClose.png - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/images/winMin.png - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_css/.#custom.css.1.5 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_css/custom.css - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_css/custom_rtl.css - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/.#actionactionlist.js.1.2 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/.#actiondownload.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/.#actionlist.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/.#actionlistmanager.js.1.5 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/.#jquery-1.6.2.min.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/.#ping.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/.#skinmanager.js.1.9 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/actionactionlist.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/actiondownload.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/actionlist.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/actionlistmanager.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/actionlistmanager.js.3.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/custom.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/index.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/jquery-1.6.2.min.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/ping.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/_js/skinmanager.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/.#index.css.1.5 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/.#index.js.1.15 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/.#index.js.1.22 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/.#index.js.orig.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/.#window.config.xml.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/index-en.html - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/index.css - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/index.ico - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/index.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/index.js.orig - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » mainwindow/window.config.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#app.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#bundleloader.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#host.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#httpdownload.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#interop.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#jshelper.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#json2.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#oserror.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#skinwindow.js.1.1 - incorrect CRC checksum, the file may be damaged
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#skinwindowprompt.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#textfilereader.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/.#textfilewriter.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/app.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/bundleloader.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/host.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/httpdownload.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/interop.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/jshelper.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/json2.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/oserror.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/skinwindow.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/skinwindowprompt.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/textfilereader.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _host/textfilewriter.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/.#authenticate.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/.#excanvas.min.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/.#jquery.flot.min.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/.#jquery.min.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/.#language.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/.#pnganim.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/.#repair.js.1.1 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/authenticate.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/excanvas.min.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/jquery.flot.min.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/jquery.min.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-ar-sa.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-bg-bg.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-cs-cz.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-da-dk.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-de-de.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-el-gr.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-en-au.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-en-ca.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-en-gb.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-en-nz.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-en-us.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-en.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-es-es.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-es-mx.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-et-ee.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-fi-fi.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-fr-ca.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-fr-fr.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-he-il.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-hi-in.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-hr-hr.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-hu-hu.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-it-it.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-ja-jp.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-kk-kz.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-ko-kr.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-lt-lt.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-lv-lv.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-nb-no.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-nl-nl.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-pl-pl.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-pt-br.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-pt-pt.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-ro-ro.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-ru-ru.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-sk-sk.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-sl-si.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-sv-se.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-th-th.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-tr-tr.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-uk-ua.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-zh-cn.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language-zh-tw.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/language.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/pnganim.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » _js/repair.js - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » .#app.config.xml.1.5 - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » app.config.Dev.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » app.config.Prod.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » app.config.QA.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » app.config.Stage.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » app.config.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » bundles.json - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » download.solidconfig - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-ar.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-cs.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-da.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-de.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-el.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-en.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-es-es.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-es-mx.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-es.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-et.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-fi.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-fr-ca.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-fr-fr.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-fr.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-he.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-hi.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-hu.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-it.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-ja.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-kk.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-ko.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-lt.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-lv.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-nb.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-nl.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-pl.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-pt-br.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-pt-pt.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-pt.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-ro.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-ru.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-sk.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-sl.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-sv.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-th.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-tr.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-uk.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-zh-cn.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-zh-tw.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language-zh.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » language.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » logo.ico - error - password-protected file
C:\Documents and Settings\Owner\Desktop\7913164442a84c43a85d266a91609ad5_Pod023_en-us.exe » ZIP » settings.xml - error - password-protected file
C:\Documents and Settings\Owner\Desktop\JavaSetup7u9.exe » CAB » jusched - archive damaged - the file could not be extracted.
C:\Documents and Settings\Owner\Desktop\JavaSetup7u9.exe » CAB » task.xml - archive damaged - the file could not be extracted.
C:\Documents and Settings\Owner\Desktop\JavaSetup7u9.exe » CAB » task64.xml - archive damaged - the file could not be extracted.
C:\Documents and Settings\Owner\Local Settings\Application Data\Identities\{B6166FA3-9EB0-414D-84C2-A58372214B8B}\Microsoft\Outlook Express\Inbox.dbx » DBX - is OK (internal scanning not performed)
C:\Documents and Settings\Owner\Local Settings\Application Data\Identities\{B6166FA3-9EB0-414D-84C2-A58372214B8B}\Microsoft\Outlook Express\Outbox.dbx » DBX - is OK (internal scanning not performed)
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgBody.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgBodyLarge.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgButton.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgButtonFinished.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgCloseProgram.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgDownloadBarEmpty.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgDownloadBarError.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgDownloadBarFull.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgHeaderError.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgListBullet.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonCenter.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonCenterHighlight.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonLeft.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonLeftHighlight.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonRight.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonRightHighlight.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/iconBlank.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/iconComplete.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/~[Filtered JS Events]~.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/iconHeader.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/jspArrowDown.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/jspArrowUp.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/logoAdobe.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/stencil.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _css/default.css - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _css/jquery.jscrollpane.css - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _css/openx.css - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/app.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/bundleloader.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/host.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/httpdownload.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/interop.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/jshelper.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/json2.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/oserror.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/skinwindow.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/skinwindowprompt.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/textfilereader.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/textfilewriter.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionairappexists.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionairappinstall.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionairruntimeexists.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actioncheckreaderversion.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actioncheckuninstall.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actiondiskspace.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actiondownload.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actiondownloadadobe.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actiongccheck.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actiongtbcheck.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionitem.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlaunch.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlaunchadobe.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlaunchchrome.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlaunchflashplayer.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlaunchreader.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlist.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionregistrykeypathcheck.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionregistryvaluecheck.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/adobe.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/authenticate.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/index.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/jquery.hasevent.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/jquery.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/jquery.jscrollpane.min.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/jquery.mousewheel.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-cs.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-da.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-de.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-es.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-fi.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-fr.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-it.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-ja.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-ko.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-nl.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-no.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-pl.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-pt.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-ru.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-sv.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-tr.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-zh-cn.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-zh-tw.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/mwheelIntent.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/ping.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/sitecatalyst.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » app.config.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » bundles.json - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » download.solidconfig - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » downloader.bundle - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » gccheck.exe - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » gtbcheck.exe - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » index.html - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-cs.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-da.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-de.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-es.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-fi.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-fr.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-it.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-ja.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-ko.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-nl.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-no.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-pl.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-pt.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-ru.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-sv.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-tr.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-zh-cn.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-zh-tw.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » launcher.bundle - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » logo.ico - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » openx.html - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\temp\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » window.config.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgBody.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgBodyLarge.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgButton.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgButtonFinished.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgCloseProgram.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgDownloadBarEmpty.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgDownloadBarError.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgDownloadBarFull.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgHeaderError.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/bgListBullet.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonCenter.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonCenterHighlight.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonLeft.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonLeftHighlight.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonRight.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/buttonRightHighlight.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/iconBlank.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/iconComplete.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/~[Filtered JS Events]~.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/iconHeader.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/jspArrowDown.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/jspArrowUp.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/logoAdobe.gif - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » images/stencil.png - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _css/default.css - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _css/jquery.jscrollpane.css - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _css/openx.css - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/app.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/bundleloader.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/host.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/httpdownload.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/interop.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/jshelper.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/json2.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/oserror.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/skinwindow.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/skinwindowprompt.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/textfilereader.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _host/textfilewriter.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionairappexists.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionairappinstall.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionairruntimeexists.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actioncheckreaderversion.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actioncheckuninstall.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actiondiskspace.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actiondownload.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actiondownloadadobe.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actiongccheck.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actiongtbcheck.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionitem.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlaunch.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlaunchadobe.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlaunchchrome.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlaunchflashplayer.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlaunchreader.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionlist.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionregistrykeypathcheck.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/actionregistryvaluecheck.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/adobe.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/authenticate.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/index.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/jquery.hasevent.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/jquery.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/jquery.jscrollpane.min.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/jquery.mousewheel.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-cs.js - error - password-protected file

shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by shushon on 27th October 2012, 12:03 pm

C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-da.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-de.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-es.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-fi.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-fr.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-it.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-ja.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-ko.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-nl.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-no.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-pl.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-pt.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-ru.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-sv.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-tr.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-zh-cn.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language-zh-tw.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/language.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/mwheelIntent.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/ping.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » _js/sitecatalyst.js - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » app.config.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » bundles.json - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » download.solidconfig - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » downloader.bundle - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » gccheck.exe - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » gtbcheck.exe - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » index.html - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-cs.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-da.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-de.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-es.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-fi.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-fr.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-it.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-ja.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-ko.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-nl.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-no.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-pl.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-pt.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-ru.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-sv.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-tr.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-zh-cn.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language-zh-tw.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » language.xml - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » launcher.bundle - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » logo.ico - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » openx.html - error - password-protected file
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\AN3QE7KN\install_reader11_en_gtbd_chrd_dn_aih[1].exe » ZIP » window.config.xml - error - password-protected file
C:\Documents and Settings\Owner\My Documents\ConvertXToDVD\Shark Night 2011 R5 LiNE XviD - MiSTERE.iso » ISO » T_11VB - decompression could not complete (possible reasons: insufficient free memory or disk space, or a problem with temp folders)
C:\Documents and Settings\Owner\My Documents\ConvertXToDVD\Shark Night 2011 R5 LiNE XviD - MiSTERE.iso » ISO » T_12VB - error reading archive
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/cfg/Game.txt - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/cfg/gear.txt - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/cfg/Objects.txt - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/cfg/weapon.txt - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/background.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/color.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/lv.cfg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/lv.dot - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/lv.terrain - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/lv.tm - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/message.txt - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/sence01.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/sky.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/sky.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/view1.dot - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/view2.dot - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/view3.dot - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/view4.dot - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/view5.dot - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/buildings/house.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/buildings/house0.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/buildings/house1.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/buildings/house2.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/buildings/house3.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1/buildings/house4.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/background.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/color.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/fog.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/lv.cfg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/lv.dot - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/lv.terrain - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/lv.tm - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/message.txt - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/opactiy1.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/sence1.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/sence2.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/sky.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/sky.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/view1.dot - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/lvs/lv1001/view2.dot - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/fc.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/fx.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Mark2.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Shadow.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/ak-47/ak-47.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/ak-47/ak-47.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/BadassA/Badass.pak - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/BadassA/Skin.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/BadassB/Badass.pak - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/BadassB/Skin.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/BadassC/Badass.pak - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/BadassC/Skin.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/BadassD/Badass.pak - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/BadassD/Skin.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/BadassE/Badass.pak - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/BadassE/Skin.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Barrel/Barrel.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Barrel/publictx.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/CharShared/Ani.txt - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/CharShared/Shared.pak - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/grass001/1.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/grass001/grass.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/grass002/1.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/grass002/grass.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/grass004/1.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/grass005/1.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/grass005/grass.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/hanma/1.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/hanma/han.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/mp5/mp5.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/mp5/mp5.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/psg-1/psg-1.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/psg-1/psg-1.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/rock/rock.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/rock/rock01.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Songguo/Songguo.model - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Songguo/Songguo.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Songguo/Songguo.txt - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Squirrel/Squirrel.model - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Squirrel/squirrel.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Squirrel/Squirrel.txt - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/stump/1.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/stump/gang.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/stump2/1.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree001/1.model - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree001/3.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree001/leaf.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree001/trunk.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree002/1.model - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree002/3.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree002/leaf.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree003/1.model - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree003/3.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree003/leaf.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree004/1.model - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree004/4.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/Tree004/leaf.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/ump45/ump45.pvr - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/Objects/ump45/ump45.sModel - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/beijizhong.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/buy.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/chilun.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/chong.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/clear.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/enemydie.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/enemyfire1.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/enemyfire2.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/enemyfire4.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/enemyfire5.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/enemyhurt.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/failed.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/fire1.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/hold1.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/hold2.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/ka.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/kaijing.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/list.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/lock.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/locked.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/mission06.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/reng.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/sfxButton.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/songguo.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/squirreldie.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/squirrelhurt.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/tandan.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/tiaozhan2.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/use.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/sound/wrong.ogg - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/AgencyFB.dat - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/AgencyFB.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/Gears.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/hits.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/Julius.dat - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/Julius.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/logo.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/shop.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/tips.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/uiLevel.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/uiLMV.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/uiLMV2.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/uiLoad.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/uiLoadx.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/uiLVFailed.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/uiLVFailed2.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/uiMain.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/uio.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/uiPause.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/help/help1.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/help/help2.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\iSniper 3D 1.0.ipa » ZIP » Payload/iSniper 3D.app/dataLE.dat » ZIP » data/ui/help/help3.png - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » it is on.itrack - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » it is on.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » it is on_easy.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » nitro circuit.itrack - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » nitro circuit.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » nitro circuit_easy.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » spark plug.itrack - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » spark plug.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » spark plug_easy.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » arcade_divisions_iphone.txt - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » blender.itrack - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » blender.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » blender_easy.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » bonus.itrack - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » bonus.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » bonus_easy.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » heavy duty.itrack - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » heavy duty.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » heavy duty_easy.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » blotz.itrack - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » blotz.replay - error - password-protected file
C:\Documents and Settings\Owner\My Documents\My Music\iTunes\iTunes Media\Mobile Applications\Mad Skills MX 1.7.0.ipa » ZIP » Payload/MadSkillsMotocrossBlitz.app/TrackData_lite.msm » ZIP » blotz_easy.replay - error - password-protected file
C:\Program Files\BigFix\__Data\BigFix\gather-now.fxf » MIME - is OK (internal scanning not performed)
C:\Program Files\BigFix\__Data\BigFix\__Local\Masthead » MIME - is OK (internal scanning not performed)
C:\Program Files\BigFix\__Data\emachines\Welcome.fxf » MIME - is OK (internal scanning not performed)
C:\Program Files\BigFix\__Data\emachines\__Local\Masthead » MIME - is OK (internal scanning not performed)
C:\System Volume Information\_restore{39C571A2-5C6A-433B-8AC6-DBD815F09639}\RP284\A0021273.exe - a variant of Win32/Adware.iBryte.C application - cleaned by deleting - quarantined
C:\System Volume Information\_restore{39C571A2-5C6A-433B-8AC6-DBD815F09639}\RP284\A0021275.dll - a variant of Win32/Adware.Facetheme.E application - cleaned by deleting - quarantined
D:\I386\Apps\App001925\AOL90\COMPS\VWPT\VWPT.EXE » NSIS - unpack error
Boot sector of disk E: - error opening
E:\ - error opening
Boot sector of disk F: - error opening
F:\ - error opening

shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by shushon on 27th October 2012, 12:05 pm

The computer is running alot better, the icons are back, no more x's.....I am just concerned that I may need to do some alterations to the computer to keep it up and running more smoothly. Any suggestions.

shushon
Novice
Novice

Posts Posts : 48
Joined Joined : 2009-03-19
OS OS : windows xp home version
Points Points : 28668
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Unknown Issue

Post by Superdave on 27th October 2012, 7:16 pm

Ok. Let's do some cleanup.

To uninstall ComboFix


  • Click the Start button. Click Run. For Vista: type in Run in the Start search, and click on Run in the results pane.
  • In the field, type in ComboFix /uninstall




(Note: Make sure there's a space between the word ComboFix and the forward-slash.)


  • Then, press Enter, or click OK.
  • This will uninstall ComboFix, delete its folders and files, hides System files and folders, and resets System Restore.

***********************************************
To remove all of the tools we used and the files and folders they created do the following:
Double click OTL.exe.

  • Click the CleanUp button.
  • Select Yes when the "Begin cleanup Process?" prompt appears.
  • If you are prompted to Reboot during the cleanup, select Yes.
  • The tool will delete itself once it finishes.

Note: If any tool, file or folder (belonging to the program we have used) hasn't been deleted, please delete it manually.
***********************************************
Click Start> Computer> right click the C Drive and choose Properties> enter
Click Disk Cleanup from there.



Click OK on the Disk Cleanup Screen.
Click Yes on the Confirmation screen.



This runs the Disk Cleanup utility along with other selections if you have chosen any. (if you had a lot System Restore points, you will see a significant change in the free space in C drive)
**************************************************
Go to [You must be registered and logged in to see this link.] and get all critical updates.

----------

I suggest using [You must be registered and logged in to see this link.]. WOT is a free Internet security addon for your browser. It will keep you safe from online scams, identity theft, spyware, spam, viruses and unreliable shopping sites. WOT warns you before you interact with a risky website. It's easy and it's free.

[You must be registered and logged in to see this link.]- Secure your Internet Explorer to make it harder for ActiveX programs to run on your computer. Also stop certain cookies from being added to your computer when running Mozilla based browsers like Firefox.
* [You must be registered and logged in to see this link.] from Spyware and Malware
* If you don't know what ActiveX controls are, see [You must be registered and logged in to see this link.]

Protect yourself against spyware using the Immunize feature in [You must be registered and logged in to see this link.] Guide: [You must be registered and logged in to see this link.] to prevent spyware infection in real-time. Note: To ensure you have the latest Immunizations always update Spybot - Search & Destroy before Immunizing. [You must be registered and logged in to see this link.]

Check out [You must be registered and logged in to see this link.] for tips and free tools to help keep you safe in the future.

Also see [You must be registered and logged in to see this link.] for free cleaning/maintenance tools to help keep your computer running smoothly.
Safe Surfing!

Superdave
Captain
Captain

Posts Posts : 4202
Joined Joined : 2010-02-01
Gender Gender : Male
OS OS : Windows 8.1 and a dual-boot with XP Home SP3
Protection Protection : MSE, Windows Defender, Windows firewall
Points Points : 83211
# Likes # Likes : 0

View user profile

Back to top Go down

View previous topic View next topic Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum