Jump to content

no email access ,have I been hijacked? sent here by caintry_boy


leftydrummrr
 Share

Recommended Posts

  • Replies 58
  • Created
  • Last Reply

Top Posters In This Topic

How about getting me a different log and see if I can figure something out.

 

  • Download OTL to your desktop.
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • Check the boxes beside LOP Check and Purity Check.
  • Under Custom Scan paste this in

     

    netsvcs
    drivers32
    %SYSTEMDRIVE%*.*
    %systemroot%Fonts*.com
    %systemroot%Fonts*.dll
    %systemroot%Fonts*.ini
    %systemroot%Fonts*.ini2
    %systemroot%Fonts*.exe
    %systemroot%system32spoolprtprocsw32x86*.*
    %systemroot%REPAIR*.bak1
    %systemroot%REPAIR*.ini
    %systemroot%system32*.jpg
    %systemroot%*.jpg
    %systemroot%*.png
    %systemroot%*.scr
    %systemroot%*._sy
    %APPDATA%AdobeUpdate*.*
    %ALLUSERSPROFILE%Favorites*.*
    %APPDATA%Microsoft*.*
    %PROGRAMFILES%*.*
    %APPDATA%Update*.*
    %systemroot%*. /mp /s
    CREATERESTOREPOINT
    %systemroot%System32config*.sav
    %PROGRAMFILES%bak. /s
    %systemroot%system32bak. /s
    %ALLUSERSPROFILE%Start Menu*.lnk /x
    %systemroot%system32configsystemprofile*.dat /x
    %systemroot%*.config
    %systemroot%system32*.db
    %PROGRAMFILES%Internet Explorer*.dat
    %APPDATA%MicrosoftInternet ExplorerQuick Launch*.lnk /x
    %USERPROFILE%Desktop*.exe
    %PROGRAMFILES%Common Files*.*
    %systemroot%*.src
    %systemroot%install*.*
    %systemroot%system32DLL*.*
    %systemroot%system32HelpFiles*.*
    %systemroot%system32rundll*.*
    %systemroot%winn32*.*
    %systemroot%Java*.*
    %systemroot%system32test*.*
    %systemroot%system32Rundll32*.*
    %systemroot%AppPatchCustom*.*
    HKEY_LOCAL_MACHINESOFTWAREPoliciesMicrosoftWindowsWindowsUpdateAU
    HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionWindowsUpdateAuto UpdateResultsInstall|LastSuccessTime /rs
  • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.

  • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt.

    Note:These logs can be located in the OTL. folder on you C: drive if they fail to open automatically.

  • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post it with your next reply. You may need two posts to fit them both in.
Link to comment
Share on other sites

Ran the OTL scan here are the logs.

 

OTL Extras logfile created on: 9/4/2012 8:37:05 AM - Run 1

OTL by OldTimer - Version 3.2.60.0 Folder = C:Documents and Settingsmark gisiDesktop

Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation

Internet Explorer (Version = 8.0.6001.18702)

Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

 

1.96 Gb Total Physical Memory | 1.58 Gb Available Physical Memory | 80.74% Memory free

3.81 Gb Paging File | 3.59 Gb Available in Paging File | 94.34% Paging File free

Paging file location(s): C:pagefile.sys 2046 4092 [binary data]

 

%SystemDrive% = C: | %SystemRoot% = C:WINDOWS | %ProgramFiles% = C:Program Files

Drive C: | 70.60 Gb Total Space | 19.21 Gb Free Space | 27.22% Space Free | Partition Type: NTFS

Drive H: | 931.51 Gb Total Space | 757.79 Gb Free Space | 81.35% Space Free | Partition Type: NTFS

 

Computer Name: YOUR-DCA4C55FD8 | User Name: mark gisi | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: Current user

Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

 

========== Extra Registry (SafeList) ==========

 

 

========== File Associations ==========

 

[HKEY_LOCAL_MACHINESOFTWAREClasses<extension>]

.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*

 

========== Shell Spawning ==========

 

[HKEY_LOCAL_MACHINESOFTWAREClasses<key>shell[command]command]

batfile [open] -- "%1" %*

cmdfile [open] -- "%1" %*

comfile [open] -- "%1" %*

cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*

exefile [open] -- "%1" %*

piffile [open] -- "%1" %*

regfile [merge] -- Reg Error: Key error.

scrfile [config] -- "%1"

scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l

scrfile [open] -- "%1" /S

txtfile [edit] -- Reg Error: Key error.

Unknown [openas] -- %SystemRoot%system32rundll32.exe %SystemRoot%system32shell32.dll,OpenAs_RunDLL %1

Directory [find] -- %SystemRoot%Explorer.exe (Microsoft Corporation)

Folder [open] -- %SystemRoot%Explorer.exe /idlist,%I,%L (Microsoft Corporation)

Folder [explore] -- %SystemRoot%Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)

Drive [find] -- %SystemRoot%Explorer.exe (Microsoft Corporation)

 

========== Security Center Settings ==========

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity Center]

"FirstRunDisabled" = 1

"AntiVirusDisableNotify" = 0

"FirewallDisableNotify" = 0

"UpdatesDisableNotify" = 0

"AntiVirusOverride" = 0

"FirewallOverride" = 0

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoring]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringAhnlabAntiVirus]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringComputerAssociatesAntiVirus]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringKasperskyAntiVirus]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringMcAfeeAntiVirus]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringMcAfeeFirewall]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringPandaAntiVirus]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringPandaFirewall]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringSophosAntiVirus]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringSymantecAntiVirus]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringSymantecFirewall]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringTinyFirewall]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringTrendAntiVirus]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringTrendFirewall]

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoringZoneLabsFirewall]

 

========== System Restore Settings ==========

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionSystemRestore]

"DisableSR" = 0

 

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSr]

"Start" = 0

 

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSrService]

"Start" = 2

 

========== Firewall Settings ==========

 

[HKEY_LOCAL_MACHINESOFTWAREPoliciesMicrosoftWindowsFirewall]

 

[HKEY_LOCAL_MACHINESOFTWAREPoliciesMicrosoftWindowsFirewallDomainProfile]

 

[HKEY_LOCAL_MACHINESOFTWAREPoliciesMicrosoftWindowsFirewallStandardProfile]

 

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyDomainProfile]

 

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyStandardProfile]

 

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyStandardProfileGloballyOpenPortsList]

 

========== Authorized Applications List ==========

 

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyDomainProfileAuthorizedApplicationsList]

 

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyStandardProfileAuthorizedApplicationsList]

 

 

========== HKEY_LOCAL_MACHINE Uninstall List ==========

 

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstall]

"{072D2077-9E22-4F7F-B817-A92CA6CCC843}" = iriver Music Manager

"{0D2E9DCB-9938-475E-B4DD-8851738852FF}" = AIO_Scan

"{1746EA69-DCB6-4408-B5A5-E75F55439CDF}" = Scan

"{179C56A4-F57F-4561-8BBF-F911D26EB435}" = WebReg

"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP

"{38B39865-D988-4945-9A22-6107B8B40953}" = C4200

"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile

"{49F2B650-2D7B-4F59-B33D-346F63776BD3}" = DocProc

"{50CE21D8-0F44-4f3f-A392-7F9AD3194DEF}" = PS_AIO_Software

"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder

"{67D3F1A0-A1F2-49b7-B9EE-011277B170CD}" = HPProductAssistant

"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD 5.1

"{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder

"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable

"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com

"{849ABF1A-6AE3-45E1-B260-D5447B2F29F5}" = OpenMG Secure Module 4.2.00

"{8641C1CB-03B3-41d4-8DEC-79826A4B5C0E}" = HP Photosmart All-In-One Software 8.0

"{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder

"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight

"{8C6027FD-53DC-446D-BB75-CACD7028A134}" = HP Update

"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12

"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007

"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007

"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007

"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007

"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007

"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007

"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007

"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007

"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007

"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007

"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In

"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007

"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{95D08F4E-DFC2-4ce3-ACB7-8C8E206217E9}" = MarketResearch

"{978C25EE-5777-46e4-8988-732C297CBDBD}" = Status

"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

"{9B1FD9CE-0776-4f0b-A6F5-C6AB7B650CDF}" = Destinations

"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

"{A0EB195B-5876-48E6-879D-33D4B2102610}" = SonicStage 3.2

"{A36CD345-625C-4d6c-B3E2-76E1248CB451}" = SolutionCenter

"{A3B7C670-4A1E-4EE2-950E-C875BC1965D0}" = Copy

"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder

"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.4)

"{B668B2B8-70D4-4754-A890-17C1DDDA9418}" = PS_AIO_Software_min

"{BE77A81F-B315-4666-9BF3-AE70C0ADB057}" = BufferChm

"{C716522C-3731-4667-8579-40B098294500}" = Toolbox

"{E06F04B9-45E6-4AC0-8083-85F7515F40F7}" = UnloadSupport

"{E65CA2A8-1F2A-4400-AE55-FFD43D3B6980}" = c4200_Help

"{EB21A812-671B-4D08-B974-2A347F0D8F70}" = HP Photosmart Essential

"{EB75DE50-5754-4F6F-875D-126EDF8E4CB3}" = HPSSupply

"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX

"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219

"{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer

"{F44DA61E-720D-4E79-871F-F6E628B33242}" = OpenOffice.org 3.0

"{FE0C305A-37EE-4499-B4CF-0182E37B20C4}" = PS_AIO_ProductContext

"{FF075778-6E50-47ed-991D-3B07FD4E3250}" = TrayApp

"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022

"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX

"Ashampoo Burning Studio 6 FREE_is1" = Ashampoo Burning Studio 6 FREE v.6.80

"Audacity_is1" = Audacity 1.2.6

"avast" = avast! Free Antivirus

"CCleaner" = CCleaner

"ESET Online Scanner" = ESET Online Scanner v3

"Free File Opener_is1" = Free File Opener v2011.7.0.1

"Freemake Video Converter_is1" = Freemake Video Converter version 3.0.2

"HDMI" = Intel® Graphics Media Accelerator Driver

"HECI" = Intel® Management Engine Interface

"HOMESTUDENTR" = Microsoft Office Home and Student 2007

"HP Imaging Device Functions" = HP Imaging Device Functions 8.0

"HP Solution Center & Imaging Support Tools" = HP Solution Center 8.0

"HPExtendedCapabilities" = HP Customer Participation Program 8.0

"HPOCR" = HP OCR Software 8.0

"ie8" = Windows Internet Explorer 8

"InstallShield_{849ABF1A-6AE3-45E1-B260-D5447B2F29F5}" = OpenMG Secure Module 4.2.00

"LAME for Audacity_is1" = LAME v3.98.3 for Audacity

"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.62.0.1300

"MESOL" = Intel® Active Management Technology

"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile

"MLUpdater" = iRiver Updater

"Mozilla Firefox (3.0.5)" = Mozilla Firefox (3.0.5)

"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP

"OpenMG HotFix4.2-05-07-27-01" = OpenMG Limited Patch 4.2-05-07-27-01

"PhotoScape" = PhotoScape

"SpywareBlaster_is1" = SpywareBlaster 4.6

"Windows Media Format Runtime" = Windows Media Format 11 runtime

"Windows Media Player" = Windows Media Player 11

"WinX Free DVD to WMV Ripper_is1" = WinX Free DVD to WMV Ripper 3.1.11

"WMFDist11" = Windows Media Format 11 runtime

"wmp11" = Windows Media Player 11

"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0

"Yahoo! Companion" = att.net Toolbar

"Yahoo! Software Update" = Yahoo! Software Update

 

========== HKEY_CURRENT_USER Uninstall List ==========

 

[HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionUninstall]

"ImTOO Video Editor 2" = ImTOO Video Editor 2

 

========== Last 20 Event Log Errors ==========

 

[ Application Events ]

Error - 9/1/2012 11:19:00 AM | Computer Name = YOUR-DCA4C55FD8 | Source = Intel® AMT | ID = 2002

Description = [uNS] Failed to subscribe to local Intel® AMT.

 

Error - 9/1/2012 10:26:45 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Intel® AMT | ID = 2002

Description = [uNS] Failed to subscribe to local Intel® AMT.

 

Error - 9/1/2012 10:38:30 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Intel® AMT | ID = 2002

Description = [uNS] Failed to subscribe to local Intel® AMT.

 

Error - 9/2/2012 9:41:23 AM | Computer Name = YOUR-DCA4C55FD8 | Source = Intel® AMT | ID = 2002

Description = [uNS] Failed to subscribe to local Intel® AMT.

 

Error - 9/2/2012 1:40:02 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Intel® AMT | ID = 2002

Description = [uNS] Failed to subscribe to local Intel® AMT.

 

Error - 9/2/2012 1:52:58 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Intel® AMT | ID = 2002

Description = [uNS] Failed to subscribe to local Intel® AMT.

 

Error - 9/2/2012 2:03:13 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Intel® AMT | ID = 2002

Description = [uNS] Failed to subscribe to local Intel® AMT.

 

Error - 9/3/2012 10:40:16 AM | Computer Name = YOUR-DCA4C55FD8 | Source = Intel® AMT | ID = 2002

Description = [uNS] Failed to subscribe to local Intel® AMT.

 

Error - 9/3/2012 6:37:59 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Intel® AMT | ID = 2002

Description = [uNS] Failed to subscribe to local Intel® AMT.

 

Error - 9/4/2012 7:53:08 AM | Computer Name = YOUR-DCA4C55FD8 | Source = Intel® AMT | ID = 2002

Description = [uNS] Failed to subscribe to local Intel® AMT.

 

[ System Events ]

Error - 9/1/2012 11:19:08 AM | Computer Name = YOUR-DCA4C55FD8 | Source = Service Control Manager | ID = 7000

Description = The PfModNT service failed to start due to the following error: %%2

 

Error - 9/1/2012 10:26:58 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Service Control Manager | ID = 7000

Description = The PfModNT service failed to start due to the following error: %%2

 

Error - 9/1/2012 10:38:55 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Service Control Manager | ID = 7000

Description = The PfModNT service failed to start due to the following error: %%2

 

Error - 9/2/2012 9:41:49 AM | Computer Name = YOUR-DCA4C55FD8 | Source = Service Control Manager | ID = 7000

Description = The PfModNT service failed to start due to the following error: %%2

 

Error - 9/2/2012 1:40:18 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Service Control Manager | ID = 7000

Description = The PfModNT service failed to start due to the following error: %%2

 

Error - 9/2/2012 1:53:23 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Service Control Manager | ID = 7000

Description = The PfModNT service failed to start due to the following error: %%2

 

Error - 9/2/2012 2:03:36 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Service Control Manager | ID = 7000

Description = The PfModNT service failed to start due to the following error: %%2

 

Error - 9/3/2012 10:40:24 AM | Computer Name = YOUR-DCA4C55FD8 | Source = Service Control Manager | ID = 7000

Description = The PfModNT service failed to start due to the following error: %%2

 

Error - 9/3/2012 6:38:10 PM | Computer Name = YOUR-DCA4C55FD8 | Source = Service Control Manager | ID = 7000

Description = The PfModNT service failed to start due to the following error: %%2

 

Error - 9/4/2012 7:53:24 AM | Computer Name = YOUR-DCA4C55FD8 | Source = Service Control Manager | ID = 7000

Description = The PfModNT service failed to start due to the following error: %%2

 

 

< End of report >

Link to comment
Share on other sites

Second log.

 

OTL logfile created on: 9/4/2012 8:37:05 AM - Run 1

OTL by OldTimer - Version 3.2.60.0 Folder = C:Documents and Settingsmark gisiDesktop

Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation

Internet Explorer (Version = 8.0.6001.18702)

Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

 

1.96 Gb Total Physical Memory | 1.58 Gb Available Physical Memory | 80.74% Memory free

3.81 Gb Paging File | 3.59 Gb Available in Paging File | 94.34% Paging File free

Paging file location(s): C:pagefile.sys 2046 4092 [binary data]

 

%SystemDrive% = C: | %SystemRoot% = C:WINDOWS | %ProgramFiles% = C:Program Files

Drive C: | 70.60 Gb Total Space | 19.21 Gb Free Space | 27.22% Space Free | Partition Type: NTFS

Drive H: | 931.51 Gb Total Space | 757.79 Gb Free Space | 81.35% Space Free | Partition Type: NTFS

 

Computer Name: YOUR-DCA4C55FD8 | User Name: mark gisi | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: Current user

Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

 

========== Processes (SafeList) ==========

 

PRC - [2012/09/04 08:33:53 | 000,599,040 | ---- | M] (OldTimer Tools) -- C:Documents and Settingsmark gisiDesktopOTL.exe

PRC - [2012/08/30 07:54:16 | 000,058,288 | ---- | M] (Absolute Software Corp.) -- C:WINDOWSsystem32rpcnet.exe

PRC - [2012/08/21 04:12:26 | 004,282,728 | ---- | M] (AVAST Software) -- C:Program FilesAVAST SoftwareAvastAvastUI.exe

PRC - [2012/08/21 04:12:25 | 000,044,808 | ---- | M] (AVAST Software) -- C:Program FilesAVAST SoftwareAvastAvastSvc.exe

PRC - [2008/04/14 06:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:WINDOWSexplorer.exe

PRC - [2007/06/12 19:09:16 | 002,521,880 | ---- | M] (Intel) -- C:Program FilesIntelAMTUNS.exe

PRC - [2007/06/12 19:09:16 | 000,183,064 | ---- | M] (Intel Corporation) -- C:Program FilesIntelAMTatchksrv.exe

PRC - [2007/06/12 19:09:14 | 000,109,336 | ---- | M] (Intel) -- C:Program FilesIntelAMTLMS.exe

 

 

========== Modules (No Company Name) ==========

 

MOD - [2012/09/04 01:47:14 | 001,806,336 | ---- | M] () -- C:Program FilesAVAST SoftwareAvastdefs12090400algo.dll

 

 

========== Services (SafeList) ==========

 

SRV - [2012/08/30 07:54:16 | 000,058,288 | ---- | M] (Absolute Software Corp.) [Auto | Running] -- C:WINDOWSsystem32rpcnet.exe -- (rpcnet)

SRV - [2012/08/21 04:12:25 | 000,044,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:Program FilesAVAST SoftwareAvastAvastSvc.exe -- (avast! Antivirus)

SRV - [2008/11/09 15:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Disabled | Stopped] -- C:Program FilesYahoo!SoftwareUpdateYahooAUService.exe -- (YahooAUService)

SRV - [2007/06/12 19:09:16 | 002,521,880 | ---- | M] (Intel) [Auto | Running] -- C:Program FilesIntelAMTUNS.exe -- (UNS)

SRV - [2007/06/12 19:09:16 | 000,183,064 | ---- | M] (Intel Corporation) [Auto | Running] -- C:Program FilesIntelAMTatchksrv.exe -- (atchksrv)

SRV - [2007/06/12 19:09:14 | 000,109,336 | ---- | M] (Intel) [Auto | Running] -- C:Program FilesIntelAMTLMS.exe -- (LMS)

SRV - [2005/06/07 01:32:54 | 000,053,337 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:Program FilesCommon FilesSony SharedAVLibMSCSPTISRV.exe -- (MSCSPTISRV)

SRV - [2005/06/07 01:28:04 | 000,053,337 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:Program FilesCommon FilesSony SharedAVLibPACSPTISVR.exe -- (PACSPTISVR)

SRV - [2005/06/07 01:22:34 | 000,069,718 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:Program FilesCommon FilesSony SharedAVLibSPTISRV.exe -- (SPTISRV)

SRV - [2005/06/03 05:21:00 | 000,069,632 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:Program FilesCommon FilesSony SharedAVLibSSScsiSV.exe -- (SSScsiSV)

 

 

========== Driver Services (SafeList) ==========

 

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)

DRV - File not found [Kernel | Auto | Stopped] -- C:WINDOWSsystem32PfModNT.sys -- (PfModNT)

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)

DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)

DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)

DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)

DRV - File not found [Kernel | System | Stopped] -- -- (Changer)

DRV - [2012/08/21 04:13:15 | 000,729,752 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:WINDOWSSystem32driversaswSnx.sys -- (aswSnx)

DRV - [2012/08/21 04:13:15 | 000,355,632 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:WINDOWSSystem32driversaswSP.sys -- (aswSP)

DRV - [2012/08/21 04:13:15 | 000,054,232 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:WINDOWSSystem32driversaswTdi.sys -- (aswTdi)

DRV - [2012/08/21 04:13:14 | 000,097,608 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:WINDOWSSystem32driversaswmon2.sys -- (aswMon2)

DRV - [2012/08/21 04:13:14 | 000,035,928 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:WINDOWSSystem32driversaswRdr.sys -- (aswRdr)

DRV - [2012/08/21 04:13:13 | 000,025,256 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:WINDOWSSystem32driversaavmker4.sys -- (Aavmker4)

DRV - [2012/08/21 04:13:13 | 000,021,256 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:WINDOWSSystem32driversaswFsBlk.sys -- (aswFsBlk)

DRV - [2007/06/12 19:05:50 | 000,045,056 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:WINDOWSsystem32driversHECI.sys -- (HECI)

DRV - [2006/03/17 20:18:58 | 000,392,960 | ---- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:WINDOWSsystem32driverssenfilt.sys -- (SenFiltService)

DRV - [2004/03/29 17:28:24 | 000,014,531 | ---- | M] (iRiver, Inc.) [Kernel | Boot | Running] -- C:WINDOWSsystem32driversIfp800.sys -- (IFP800)

 

 

========== Standard Registry (SafeList) ==========

 

 

========== Internet Explorer ==========

 

IE - HKLMSOFTWAREMicrosoftInternet ExplorerSearch,Default_Search_URL =

IE - HKLM..SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKLM..SearchScopes{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}

 

IE - HKCUSOFTWAREMicrosoftInternet ExplorerMain,SearchDefaultBranded = 1

IE - HKCUSOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://att.net

IE - HKCUSOFTWAREMicrosoftInternet ExplorerSearch,SearchAssistant =

IE - HKCU..SearchScopes,DefaultScope = {F3D78156-A974-46B2-A50E-C890C332E39B}

IE - HKCU..SearchScopes{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC

IE - HKCU..SearchScopes{60E206F2-9E4F-49CC-87F3-E64B25EA6F64}: "URL" = http://delicious.com/search?p={searchTerms}

IE - HKCU..SearchScopes{9DFCF415-7BFF-4589-AF04-B4707B797C60}: "URL" = http://www.flickr.com/search/?q={searchTerms}

IE - HKCU..SearchScopes{F3D78156-A974-46B2-A50E-C890C332E39B}: "URL" = http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=att-ie8

IE - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings: "ProxyEnable" = 0

 

 

========== FireFox ==========

 

FF - HKLMSoftwareMozillaPlugins@Microsoft.com/NpCtrl,version=1.0: C:Program FilesMicrosoft Silverlight5.1.10411.0npctrl.dll ( Microsoft Corporation)

FF - HKLMSoftwareMozillaPluginsAdobe Reader: C:Program FilesAdobeReader 10.0ReaderAIRnppdf32.dll (Adobe Systems Inc.)

 

FF - HKEY_LOCAL_MACHINEsoftwaremozillaFirefoxExtensionswrc@avast.com: C:Program FilesAVAST SoftwareAvastWebRepFF [2012/08/25 15:16:41 | 000,000,000 | ---D | M]

FF - HKEY_LOCAL_MACHINEsoftwaremozillaMozilla Firefox 3.0.5extensionsComponents: C:Program FilesMozilla Firefoxcomponents [2012/07/29 14:28:09 | 000,000,000 | ---D | M]

FF - HKEY_LOCAL_MACHINEsoftwaremozillaMozilla Firefox 3.0.5extensionsPlugins: C:Program FilesMozilla Firefoxplugins [2012/08/16 18:16:29 | 000,000,000 | ---D | M]

 

[2009/04/09 13:59:38 | 000,000,000 | ---D | M] (No name found) -- C:Program FilesMozilla Firefoxextensions

 

O1 HOSTS File: ([2012/09/01 21:23:26 | 000,000,027 | ---- | M]) - C:WINDOWSsystem32driversetchosts

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:Program FilesYahoo!CompanionInstallscpnyt.dll (Yahoo! Inc.)

O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:Program FilesAVAST SoftwareAvastaswWebRepIE.dll (AVAST Software)

O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:Program FilesYahoo!CompanionInstallscpnYTSingleInstance.dll (Yahoo! Inc)

O3 - HKLM..Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:Program FilesAVAST SoftwareAvastaswWebRepIE.dll (AVAST Software)

O3 - HKLM..Toolbar: (att.net Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:Program FilesYahoo!CompanionInstallscpnyt.dll (Yahoo! Inc.)

O4 - HKLM..Run: [avast] C:Program FilesAVAST SoftwareAvastavastUI.exe (AVAST Software)

O6 - HKLMSoftwarePoliciesMicrosoftInternet ExplorerRestrictions present

O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoDriveAutoRun = 67108863

O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoDriveTypeAutoRun = 323

O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoDrives = 0

O7 - HKCUSoftwarePoliciesMicrosoftInternet ExplorerControl Panel present

O7 - HKCUSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoDriveTypeAutoRun = 323

O7 - HKCUSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoDriveAutoRun = 67108863

O7 - HKCUSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoDrives = 0

O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (OnlineScanner Control)

O17 - HKLMSystemCCSServicesTcpipParameters: DhcpNameServer = 192.168.1.254

O17 - HKLMSystemCCSServicesTcpipParametersInterfaces{9B5B09E2-792E-4127-97C9-BDEAF27B0EE8}: DhcpNameServer = 192.168.1.254

O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:WINDOWSexplorer.exe (Microsoft Corporation)

O20 - HKLM Winlogon: UserInit - (C:WINDOWSsystem32userinit.exe) - C:WINDOWSsystem32userinit.exe (Microsoft Corporation)

O24 - Desktop WallPaper: C:Documents and Settingsmark gisiMy DocumentsMy Picturesst_louis_cardinals-9638.gif

O24 - Desktop BackupWallPaper: C:Documents and Settingsmark gisiLocal SettingsApplication DataMicrosoftWallpaper1.bmp

O32 - HKLM CDRom: AutoRun - 1

O32 - AutoRun File - [2009/04/09 13:56:59 | 000,000,000 | ---- | M] () - C:AUTOEXEC.BAT -- [ NTFS ]

O34 - HKLM BootExecute: (autocheck autochk *)

O35 - HKLM..comfile [open] -- "%1" %*

O35 - HKLM..exefile [open] -- "%1" %*

O37 - HKLM...com [@ = comfile] -- "%1" %*

O37 - HKLM...exe [@ = exefile] -- "%1" %*

O38 - SubSystemsWindows: (ServerDll=winsrv:UserServerDllInitialization,3)

O38 - SubSystemsWindows: (ServerDll=winsrv:ConServerDllInitialization,2)

 

NetSvcs: 6to4 - File not found

NetSvcs: Ias - File not found

NetSvcs: Iprip - File not found

NetSvcs: Irmon - File not found

NetSvcs: NWCWorkstation - File not found

NetSvcs: Nwsapagent - File not found

NetSvcs: WmdmPmSp - File not found

 

Drivers32: msacm.iac2 - C:WINDOWSsystem32iac25_32.ax (Intel Corporation)

Drivers32: msacm.l3acm - C:WINDOWSsystem32l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)

Drivers32: msacm.sl_anet - C:WINDOWSSystem32sl_anet.acm (Sipro Lab Telecom Inc.)

Drivers32: msacm.trspch - C:WINDOWSSystem32tssoft32.acm (DSP GROUP, INC.)

Drivers32: vidc.cvid - C:WINDOWSSystem32iccvid.dll (Radius Inc.)

Drivers32: vidc.iv31 - C:WINDOWSSystem32ir32_32.dll ()

Drivers32: vidc.iv32 - C:WINDOWSSystem32ir32_32.dll ()

Drivers32: vidc.iv41 - C:WINDOWSSystem32ir41_32.ax (Intel Corporation)

Drivers32: vidc.iv50 - C:WINDOWSSystem32ir50_32.dll (Intel Corporation)

 

CREATERESTOREPOINT

Error creating restore point.

 

========== Files/Folders - Created Within 30 Days ==========

 

[2012/09/04 08:33:52 | 000,599,040 | ---- | C] (OldTimer Tools) -- C:Documents and Settingsmark gisiDesktopOTL.exe

[2012/09/03 18:47:18 | 000,000,000 | ---D | C] -- C:Documents and Settingsmark gisiMy Documentssafe mode screen

[2012/09/03 10:14:00 | 000,116,224 | ---- | C] (Xerox) -- C:WINDOWSSystem32dllcachexrxwiadr.dll

[2012/09/03 10:13:58 | 000,023,040 | ---- | C] (Xerox Corporation) -- C:WINDOWSSystem32dllcachexrxwbtmp.dll

[2012/09/03 10:13:51 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachexrxflnch.exe

[2012/09/03 10:13:37 | 000,099,865 | ---- | C] (Eicon Technology) -- C:WINDOWSSystem32dllcachexlog.exe

[2012/09/03 10:13:34 | 000,016,970 | ---- | C] (US Robotics MCD (Megahertz)) -- C:WINDOWSSystem32dllcachexem336n5.sys

[2012/09/03 10:13:33 | 000,019,455 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewvchntxx.sys

[2012/09/03 10:13:30 | 000,019,200 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewstcodec.sys

[2012/09/03 10:13:29 | 000,012,063 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewsiintxx.sys

[2012/09/03 10:13:28 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewshirda.dll

[2012/09/03 10:13:16 | 000,008,832 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewmiacpi.sys

[2012/09/03 10:13:15 | 000,154,624 | ---- | C] (Lucent Technologies) -- C:WINDOWSSystem32dllcachewlluc48.sys

[2012/09/03 10:13:12 | 000,034,890 | ---- | C] (Raytheon Corp.) -- C:WINDOWSSystem32dllcachewlandrv2.sys

[2012/09/03 10:13:11 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewinzm.ime

[2012/09/03 10:13:11 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewinsp.ime

[2012/09/03 10:13:10 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewinpy.ime

[2012/09/03 10:13:09 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewinime.ime

[2012/09/03 10:13:08 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewingb.ime

[2012/09/03 10:13:07 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewinar30.ime

[2012/09/03 10:13:05 | 000,771,581 | ---- | C] (Rockwell) -- C:WINDOWSSystem32dllcachewinacisa.sys

[2012/09/03 10:13:01 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewiamsmud.dll

[2012/09/03 10:12:58 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewiafbdrv.dll

[2012/09/03 10:12:53 | 000,701,386 | ---- | C] (3Com Corporation) -- C:WINDOWSSystem32dllcachewdhaalba.sys

[2012/09/03 10:12:52 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewceusbsh.sys

[2012/09/03 10:12:52 | 000,023,615 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewch7xxnt.sys

[2012/09/03 10:12:49 | 000,035,871 | ---- | C] (Winbond Electronics Corp.) -- C:WINDOWSSystem32dllcachewbfirdma.sys

[2012/09/03 10:12:47 | 000,025,471 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewatv10nt.sys

[2012/09/03 10:12:46 | 000,033,599 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewatv04nt.sys

[2012/09/03 10:12:46 | 000,022,271 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewatv06nt.sys

[2012/09/03 10:12:45 | 000,019,551 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewatv02nt.sys

[2012/09/03 10:12:44 | 000,029,311 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewatv01nt.sys

[2012/09/03 10:12:43 | 000,011,935 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewadv11nt.sys

[2012/09/03 10:12:42 | 000,011,871 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewadv09nt.sys

[2012/09/03 10:12:42 | 000,011,295 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewadv08nt.sys

[2012/09/03 10:12:41 | 000,011,807 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewadv07nt.sys

[2012/09/03 10:12:40 | 000,012,127 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewadv02nt.sys

[2012/09/03 10:12:40 | 000,011,775 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewadv05nt.sys

[2012/09/03 10:12:39 | 000,012,415 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachewadv01nt.sys

[2012/09/03 10:12:38 | 000,014,208 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachewacompen.sys

[2012/09/03 10:12:34 | 000,016,925 | ---- | C] (Winbond Electronics Corporation) -- C:WINDOWSSystem32dllcachew940nd.sys

[2012/09/03 10:12:31 | 000,019,016 | ---- | C] (Winbond Electronics Corporation) -- C:WINDOWSSystem32dllcachew926nd.sys

[2012/09/03 10:12:28 | 000,019,528 | ---- | C] (Winbond Electronics Corporation) -- C:WINDOWSSystem32dllcachew840nd.sys

[2012/09/03 10:12:24 | 000,064,605 | ---- | C] (PCtel, Inc.) -- C:WINDOWSSystem32dllcachevvoice.sys

[2012/09/03 10:12:20 | 000,426,041 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachevoicepad.dll

[2012/09/03 10:12:20 | 000,397,502 | ---- | C] (PCtel, Inc.) -- C:WINDOWSSystem32dllcachevpctcom.sys

[2012/09/03 10:12:20 | 000,086,073 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachevoicesub.dll

[2012/09/03 10:12:17 | 000,604,253 | ---- | C] (PCTEL, INC.) -- C:WINDOWSSystem32dllcachevmodem.sys

[2012/09/03 10:12:14 | 000,249,402 | ---- | C] (Xircom) -- C:WINDOWSSystem32dllcachevinwm.sys

[2012/09/03 10:12:13 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachevidcap.ax

[2012/09/03 10:12:10 | 000,024,576 | ---- | C] (VIA Technologies, Inc.) -- C:WINDOWSSystem32dllcacheviairda.sys

[2012/09/03 10:12:09 | 000,042,240 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheviaagp.sys

[2012/09/03 10:12:09 | 000,005,376 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheviaide.sys

[2012/09/03 10:12:08 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachevfwwdm32.dll

[2012/09/03 10:12:06 | 000,011,325 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachevchnt5.dll

[2012/09/03 10:12:03 | 000,687,999 | ---- | C] (U.S. Robotics Corporation) -- C:WINDOWSSystem32dllcacheusrwdxjs.sys

[2012/09/03 10:12:00 | 000,765,884 | ---- | C] (U.S. Robotics, Inc.) -- C:WINDOWSSystem32dllcacheusrti.sys

[2012/09/03 10:11:56 | 000,113,762 | ---- | C] (U.S. Robotics Corporation) -- C:WINDOWSSystem32dllcacheusrpda.sys

[2012/09/03 10:11:54 | 000,007,556 | ---- | C] (U.S. Robotics Corporation) -- C:WINDOWSSystem32dllcacheusroslba.sys

[2012/09/03 10:11:51 | 000,224,802 | ---- | C] (U.S. Robotics Corporation) -- C:WINDOWSSystem32dllcacheusr1807a.sys

[2012/09/03 10:11:48 | 000,794,399 | ---- | C] (U.S. Robotics, Inc.) -- C:WINDOWSSystem32dllcacheusr1806v.sys

[2012/09/03 10:11:45 | 000,793,598 | ---- | C] (U.S. Robotics, Inc.) -- C:WINDOWSSystem32dllcacheusr1806.sys

[2012/09/03 10:11:42 | 000,794,654 | ---- | C] (U.S. Robotics, Inc.) -- C:WINDOWSSystem32dllcacheusr1801.sys

[2012/09/03 10:11:41 | 000,121,984 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheusbvideo.sys

[2012/09/03 10:11:40 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheusbser.sys

[2012/09/03 10:11:39 | 000,017,152 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheusbohci.sys

[2012/09/03 10:11:37 | 000,060,032 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheusbaudio.sys

[2012/09/03 10:11:36 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheusb8023x.sys

[2012/09/03 10:11:35 | 000,032,384 | ---- | C] (KLSI USA, Inc.) -- C:WINDOWSSystem32dllcacheusb101et.sys

[2012/09/03 10:11:33 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheuniime.dll

[2012/09/03 10:11:33 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheunicdime.ime

[2012/09/03 10:11:30 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheumaxud32.dll

[2012/09/03 10:11:28 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheumaxu40.dll

[2012/09/03 10:11:25 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheumaxu22.dll

[2012/09/03 10:11:22 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheumaxu12.dll

[2012/09/03 10:11:20 | 000,050,688 | ---- | C] (UMAX DATA SYSTEMS INC.) -- C:WINDOWSSystem32dllcacheumaxscan.dll

[2012/09/03 10:11:17 | 000,022,912 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheumaxpcls.sys

[2012/09/03 10:11:14 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheumaxp60.dll

[2012/09/03 10:11:12 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheumaxcam.dll

[2012/09/03 10:11:09 | 000,211,968 | ---- | C] (UMAX Data Systems Inc.) -- C:WINDOWSSystem32dllcacheum54scan.dll

[2012/09/03 10:11:06 | 000,216,064 | ---- | C] (UMAX Data Systems Inc.) -- C:WINDOWSSystem32dllcacheum34scan.dll

[2012/09/03 10:11:03 | 000,036,736 | ---- | C] (Promise Technology, Inc.) -- C:WINDOWSSystem32dllcacheultra.sys

[2012/09/03 10:11:02 | 000,044,672 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheuagp35.sys

[2012/09/03 10:10:58 | 000,011,520 | ---- | C] (IBM Corporation) -- C:WINDOWSSystem32dllcachetwotrack.sys

[2012/09/03 10:10:52 | 000,166,784 | ---- | C] (Trident Microsystems Inc.) -- C:WINDOWSSystem32dllcachetridxpm.sys

[2012/09/03 10:10:49 | 000,525,568 | ---- | C] (Trident Microsystems Inc.) -- C:WINDOWSSystem32dllcachetridxp.dll

[2012/09/03 10:10:46 | 000,159,232 | ---- | C] (Trident Microsystems Inc.) -- C:WINDOWSSystem32dllcachetridkbm.sys

[2012/09/03 10:10:43 | 000,440,576 | ---- | C] (Trident Microsystems Inc.) -- C:WINDOWSSystem32dllcachetridkb.dll

[2012/09/03 10:10:41 | 000,222,336 | ---- | C] (Trident Microsystems Inc.) -- C:WINDOWSSystem32dllcachetrid3dm.sys

[2012/09/03 10:10:38 | 000,315,520 | ---- | C] (Trident Microsystems Inc.) -- C:WINDOWSSystem32dllcachetrid3d.dll

[2012/09/03 10:10:34 | 000,034,375 | ---- | C] (Intel Corporation) -- C:WINDOWSSystem32dllcachetpro4.sys

[2012/09/03 10:10:32 | 000,042,496 | ---- | C] (IBM Corporation) -- C:WINDOWSSystem32dllcachetp4res.dll

[2012/09/03 10:10:31 | 000,082,944 | ---- | C] (IBM Corporation) -- C:WINDOWSSystem32dllcachetp4mon.exe

[2012/09/03 10:10:28 | 000,031,744 | ---- | C] (IBM Corporation) -- C:WINDOWSSystem32dllcachetp4.dll

[2012/09/03 10:10:25 | 000,004,992 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachetoside.sys

[2012/09/03 10:10:22 | 000,230,912 | ---- | C] (Toshiba Corporation) -- C:WINDOWSSystem32dllcachetosdvd03.sys

[2012/09/03 10:10:19 | 000,241,664 | ---- | C] (Toshiba Corporation) -- C:WINDOWSSystem32dllcachetosdvd02.sys

[2012/09/03 10:10:16 | 000,028,232 | ---- | C] (TOSHIBA Corporation) -- C:WINDOWSSystem32dllcachetos4mo.sys

[2012/09/03 10:10:15 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachetmigrate.dll

[2012/09/03 10:10:12 | 000,123,995 | ---- | C] (Tiger Jet Network) -- C:WINDOWSSystem32dllcachetjisdn.sys

[2012/09/03 10:10:11 | 000,571,392 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachetintlgnt.ime

[2012/09/03 10:10:11 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachetintsetp.exe

[2012/09/03 10:10:11 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachetintlphr.exe

[2012/09/03 10:10:08 | 000,138,528 | ---- | C] (Trident Microsystems Inc.) -- C:WINDOWSSystem32dllcachetgiulnt5.sys

[2012/09/03 10:10:05 | 000,081,408 | ---- | C] (Trident Microsystems Inc.) -- C:WINDOWSSystem32dllcachetgiul50.dll

[2012/09/03 10:10:04 | 000,149,376 | ---- | C] (M-Systems) -- C:WINDOWSSystem32dllcachetffsport.sys

[2012/09/03 10:10:00 | 000,017,129 | ---- | C] (TDK Corporation) -- C:WINDOWSSystem32dllcachetdkcd31.sys

[2012/09/03 10:09:58 | 000,037,961 | ---- | C] (TDK Corporation) -- C:WINDOWSSystem32dllcachetdk100b.sys

[2012/09/03 10:09:53 | 000,030,464 | ---- | C] (Toshiba Corporation) -- C:WINDOWSSystem32dllcachetbatm155.sys

[2012/09/03 10:09:49 | 000,007,040 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachetandqic.sys

[2012/09/03 10:09:46 | 000,036,640 | ---- | C] (Number Nine Visual Technology Corp.) -- C:WINDOWSSystem32dllcachet2r4mini.sys

[2012/09/03 10:09:44 | 000,172,768 | ---- | C] (Number Nine Visual Technology) -- C:WINDOWSSystem32dllcachet2r4disp.dll

[2012/09/03 10:09:39 | 000,032,640 | ---- | C] (LSI Logic) -- C:WINDOWSSystem32dllcachesymc8xx.sys

[2012/09/03 10:09:36 | 000,016,256 | ---- | C] (Symbios Logic Inc.) -- C:WINDOWSSystem32dllcachesymc810.sys

[2012/09/03 10:09:34 | 000,030,688 | ---- | C] (LSI Logic) -- C:WINDOWSSystem32dllcachesym_u3.sys

[2012/09/03 10:09:31 | 000,028,384 | ---- | C] (LSI Logic) -- C:WINDOWSSystem32dllcachesym_hi.sys

[2012/09/03 10:09:28 | 000,094,293 | ---- | C] (Perle Systems Ltd. ) -- C:WINDOWSSystem32dllcachesxports.dll

[2012/09/03 10:09:26 | 000,103,936 | ---- | C] (Perle Systems Ltd. ) -- C:WINDOWSSystem32dllcachesx.sys

[2012/09/03 10:09:23 | 000,003,968 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheswusbflt.sys

[2012/09/03 10:09:21 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheswpidflt.dll

[2012/09/03 10:09:19 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheswpdflt2.dll

[2012/09/03 10:09:16 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesw_wheel.dll

[2012/09/03 10:09:13 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesw_effct.dll

[2012/09/03 10:09:12 | 000,015,232 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachestreamip.sys

[2012/09/03 10:09:09 | 000,155,648 | ---- | C] (Stallion Technologies) -- C:WINDOWSSystem32dllcachestlnprop.dll

[2012/09/03 10:09:07 | 000,053,248 | ---- | C] (Stallion Technologies) -- C:WINDOWSSystem32dllcachestlncoin.dll

[2012/09/03 10:09:04 | 000,285,760 | ---- | C] (Stallion Technologies) -- C:WINDOWSSystem32dllcachestlnata.sys

[2012/09/03 10:09:01 | 000,016,896 | ---- | C] (SCM Microsystems, Inc.) -- C:WINDOWSSystem32dllcachestcusb.sys

[2012/09/03 10:08:56 | 000,048,736 | ---- | C] (3Com) -- C:WINDOWSSystem32dllcachesrwlnd5.sys

[2012/09/03 10:08:53 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesrusd.dll

[2012/09/03 10:08:49 | 000,024,660 | ---- | C] (Perle Systems Ltd.) -- C:WINDOWSSystem32dllcachespxupchk.dll

[2012/09/03 10:08:45 | 000,061,824 | ---- | C] (Perle Systems Ltd.) -- C:WINDOWSSystem32dllcachespeed.sys

[2012/09/03 10:08:42 | 000,106,584 | ---- | C] (Perle Systems Ltd.) -- C:WINDOWSSystem32dllcachespdports.dll

[2012/09/03 10:08:40 | 000,019,072 | ---- | C] (Adaptec, Inc.) -- C:WINDOWSSystem32dllcachesparrow.sys

[2012/09/03 10:08:37 | 000,007,552 | ---- | C] (Sony Corporation) -- C:WINDOWSSystem32dllcachesonypvu1.sys

[2012/09/03 10:08:34 | 000,037,040 | ---- | C] (Sony Corporation) -- C:WINDOWSSystem32dllcachesonypi.sys

[2012/09/03 10:08:32 | 000,114,688 | ---- | C] (Sony Corporation) -- C:WINDOWSSystem32dllcachesonypi.dll

[2012/09/03 10:08:29 | 000,020,752 | ---- | C] (Sony Corporation) -- C:WINDOWSSystem32dllcachesonync.sys

[2012/09/03 10:08:27 | 000,009,600 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesonymc.sys

[2012/09/03 10:08:25 | 000,007,552 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesonyait.sys

[2012/09/03 10:08:24 | 000,143,422 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesoftkey.dll

[2012/09/03 10:08:22 | 000,007,040 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesnyaitmc.sys

[2012/09/03 10:08:15 | 000,058,368 | ---- | C] (Silicon Motion Inc.) -- C:WINDOWSSystem32dllcachesmiminib.sys

[2012/09/03 10:08:12 | 000,147,200 | ---- | C] (Silicon Motion Inc.) -- C:WINDOWSSystem32dllcachesmidispb.dll

[2012/09/03 10:08:09 | 000,025,034 | ---- | C] (SMC Networks, Inc.) -- C:WINDOWSSystem32dllcachesmcpwr2n.sys

[2012/09/03 10:08:07 | 000,035,913 | ---- | C] (SMC) -- C:WINDOWSSystem32dllcachesmcirda.sys

[2012/09/03 10:08:04 | 000,024,576 | ---- | C] (SMC Networks, Inc.) -- C:WINDOWSSystem32dllcachesmc8000n.sys

[2012/09/03 10:08:02 | 000,006,784 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesmbhc.sys

[2012/09/03 10:08:01 | 000,006,912 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesmbclass.sys

[2012/09/03 10:08:00 | 000,016,000 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesmbbatt.sys

[2012/09/03 10:08:00 | 000,005,888 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesmbali.sys

[2012/09/03 10:07:57 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesmb3w.dll

[2012/09/03 10:07:55 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesmb0w.dll

[2012/09/03 10:07:52 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesma0w.dll

[2012/09/03 10:07:50 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesm91w.dll

[2012/09/03 10:07:47 | 000,073,796 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcacheslserv.exe

[2012/09/03 10:07:47 | 000,013,240 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcacheslwdmsup.sys

[2012/09/03 10:07:46 | 000,032,866 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcacheslrundll.exe

[2012/09/03 10:07:44 | 000,404,990 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcacheslntamr.sys

[2012/09/03 10:07:44 | 000,095,424 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcacheslnthal.sys

[2012/09/03 10:07:43 | 000,188,508 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcacheslgen.dll

[2012/09/03 10:07:43 | 000,129,535 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcacheslnt7554.sys

[2012/09/03 10:07:43 | 000,011,136 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheslip.sys

[2012/09/03 10:07:42 | 000,286,792 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcacheslextspk.dll

[2012/09/03 10:07:42 | 000,073,832 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcacheslcoinst.dll

[2012/09/03 10:07:41 | 000,063,547 | ---- | C] (Symbol Technologies) -- C:WINDOWSSystem32dllcachesla30nd5.sys

[2012/09/03 10:07:39 | 000,091,294 | ---- | C] (SysKonnect, a business unit of Schneider & Koch & Co. Datensysteme GmbH.) -- C:WINDOWSSystem32dllcacheskfpwin.sys

[2012/09/03 10:07:36 | 000,094,698 | ---- | C] (SysKonnect GmbH.) -- C:WINDOWSSystem32dllcachesk98xwin.sys

[2012/09/03 10:07:34 | 000,157,696 | ---- | C] (Silicon Integrated Systems Corporation) -- C:WINDOWSSystem32dllcachesisv256.dll

[2012/09/03 10:07:31 | 000,050,432 | ---- | C] (Silicon Integrated Systems Corporation) -- C:WINDOWSSystem32dllcachesisv.sys

[2012/09/03 10:07:30 | 000,032,768 | ---- | C] (SiS Corporation) -- C:WINDOWSSystem32dllcachesisnic.sys

[2012/09/03 10:07:28 | 000,238,592 | ---- | C] (Silicon Integrated Systems Corporation) -- C:WINDOWSSystem32dllcachesisgrv.dll

[2012/09/03 10:07:26 | 000,104,064 | ---- | C] (Silicon Integrated Systems Corporation) -- C:WINDOWSSystem32dllcachesisgrp.sys

[2012/09/03 10:07:25 | 000,040,960 | ---- | C] (Silicon Integrated Systems Corporation) -- C:WINDOWSSystem32dllcachesisagp.sys

[2012/09/03 10:07:23 | 000,150,144 | ---- | C] (Silicon Integrated Systems Corporation) -- C:WINDOWSSystem32dllcachesis6306v.dll

[2012/09/03 10:07:20 | 000,068,608 | ---- | C] (Silicon Integrated Systems Corporation) -- C:WINDOWSSystem32dllcachesis6306p.sys

[2012/09/03 10:07:18 | 000,252,032 | ---- | C] (Silicon Integrated Systems Corporation) -- C:WINDOWSSystem32dllcachesis300iv.dll

[2012/09/03 10:07:15 | 000,101,760 | ---- | C] (Silicon Integrated Systems Corporation) -- C:WINDOWSSystem32dllcachesis300ip.sys

[2012/09/03 10:07:15 | 000,003,901 | ---- | C] (Intel® Corporation) -- C:WINDOWSSystem32dllcachesiint5.dll

[2012/09/03 10:07:08 | 000,161,568 | ---- | C] (Micro Systemation) -- C:WINDOWSSystem32dllcachesgsmusb.sys

[2012/09/03 10:07:06 | 000,018,400 | ---- | C] (Micro Systemation) -- C:WINDOWSSystem32dllcachesgsmld.sys

[2012/09/03 10:07:03 | 000,098,080 | ---- | C] (Trident Microsystems Inc.) -- C:WINDOWSSystem32dllcachesgiulnt5.sys

[2012/09/03 10:07:01 | 000,386,560 | ---- | C] (Trident Microsystems Inc.) -- C:WINDOWSSystem32dllcachesgiul50.dll

[2012/09/03 10:06:58 | 000,036,480 | ---- | C] (Creative Technology Ltd.) -- C:WINDOWSSystem32dllcachesfmanm.sys

[2012/09/03 10:06:53 | 000,006,784 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheserscan.sys

[2012/09/03 10:06:51 | 000,017,664 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesermouse.sys

[2012/09/03 10:06:47 | 000,006,912 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheseaddsmc.sys

[2012/09/03 10:06:46 | 000,011,520 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachescsiscan.sys

[2012/09/03 10:06:44 | 000,011,648 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachescsiprnt.sys

[2012/09/03 10:06:40 | 000,017,280 | ---- | C] (SCM Microsystems) -- C:WINDOWSSystem32dllcachescr111.sys

[2012/09/03 10:06:38 | 000,016,640 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachescmstcs.sys

[2012/09/03 10:06:35 | 000,023,936 | ---- | C] (OMNIKEY AG) -- C:WINDOWSSystem32dllcachesccmusbm.sys

[2012/09/03 10:06:32 | 000,023,936 | ---- | C] (OMNIKEY AG) -- C:WINDOWSSystem32dllcachesccmn50m.sys

[2012/09/03 10:06:31 | 000,043,904 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachesbp2port.sys

[2012/09/03 10:06:29 | 000,495,616 | ---- | C] (Creative Technology Ltd.) -- C:WINDOWSSystem32dllcachesblfx.dll

[2012/09/03 10:06:25 | 000,075,392 | ---- | C] (S3 Graphics, Inc.) -- C:WINDOWSSystem32dllcaches3savmxm.sys

[2012/09/03 10:06:23 | 000,245,632 | ---- | C] (S3 Graphics, Inc.) -- C:WINDOWSSystem32dllcaches3savmx.dll

[2012/09/03 10:06:20 | 000,077,824 | ---- | C] (S3 Incorporated) -- C:WINDOWSSystem32dllcaches3sav4m.sys

[2012/09/03 10:06:18 | 000,198,400 | ---- | C] (S3 Incorporated) -- C:WINDOWSSystem32dllcaches3sav4.dll

[2012/09/03 10:06:15 | 000,061,504 | ---- | C] (S3 Incorporated) -- C:WINDOWSSystem32dllcaches3sav3dm.sys

[2012/09/03 10:06:13 | 000,179,264 | ---- | C] (S3 Incorporated) -- C:WINDOWSSystem32dllcaches3sav3d.dll

[2012/09/03 10:06:11 | 000,210,496 | ---- | C] (S3 Incorporated) -- C:WINDOWSSystem32dllcaches3mvirge.dll

[2012/09/03 10:06:08 | 000,062,496 | ---- | C] (S3 Incorporated) -- C:WINDOWSSystem32dllcaches3mtrio.dll

[2012/09/03 10:06:06 | 000,041,216 | ---- | C] (S3 Incorporated) -- C:WINDOWSSystem32dllcaches3mt3d.sys

[2012/09/03 10:06:04 | 000,182,272 | ---- | C] (S3 Incorporated) -- C:WINDOWSSystem32dllcaches3mt3d.dll

[2012/09/03 10:06:01 | 000,166,720 | ---- | C] (S3 Incorporated) -- C:WINDOWSSystem32dllcaches3m.sys

[2012/09/03 10:05:59 | 000,065,664 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcaches3legacy.sys

[2012/09/03 10:05:58 | 000,397,056 | ---- | C] (S3 Graphics, Inc.) -- C:WINDOWSSystem32dllcaches3gnb.dll

[2012/09/03 10:05:58 | 000,166,912 | ---- | C] (S3 Graphics, Inc.) -- C:WINDOWSSystem32dllcaches3gnbm.sys

[2012/09/03 10:05:55 | 000,082,432 | ---- | C] (Ricoh Co., Ltd.) -- C:WINDOWSSystem32dllcacherwia450.dll

[2012/09/03 10:05:53 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:WINDOWSSystem32dllcacherwia430.dll

[2012/09/03 10:05:51 | 000,029,696 | ---- | C] (Ricoh Co., Ltd.) -- C:WINDOWSSystem32dllcacherw450ext.dll

[2012/09/03 10:05:51 | 000,027,648 | ---- | C] (Ricoh Co., Ltd.) -- C:WINDOWSSystem32dllcacherw430ext.dll

[2012/09/03 10:05:49 | 000,020,992 | ---- | C] (Realtek Semiconductor Corporation) -- C:WINDOWSSystem32dllcachertl8139.sys

[2012/09/03 10:05:46 | 000,019,017 | ---- | C] (Realtek Semiconductor Corporation) -- C:WINDOWSSystem32dllcachertl8029.sys

[2012/09/03 10:05:44 | 000,030,720 | ---- | C] (Conexant Systems Inc.) -- C:WINDOWSSystem32dllcacherthwcls.sys

[2012/09/03 10:05:40 | 000,009,216 | ---- | C] (Brother Industries, Ltd.) -- C:WINDOWSSystem32dllcachersmgrstr.dll

[2012/09/03 10:05:37 | 000,003,840 | ---- | C] (Conexant Systems Inc.) -- C:WINDOWSSystem32dllcacherpfun.sys

[2012/09/03 10:05:35 | 000,079,104 | ---- | C] (Comtrol Corporation) -- C:WINDOWSSystem32dllcacherocket.sys

[2012/09/03 10:05:35 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheromanime.ime

[2012/09/03 10:05:34 | 000,030,592 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacherndismpx.sys

[2012/09/03 10:05:31 | 000,037,563 | ---- | C] (RadioLAN) -- C:WINDOWSSystem32dllcacherlnet5.sys

[2012/09/03 10:05:30 | 000,059,136 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacherfcomm.sys

[2012/09/03 10:05:27 | 000,086,097 | ---- | C] (Xircom) -- C:WINDOWSSystem32dllcachereslog32.dll

[2012/09/03 10:05:23 | 000,013,776 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcacherecagent.sys

[2012/09/03 10:05:15 | 000,019,584 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacherasirda.sys

[2012/09/03 10:05:11 | 000,714,762 | ---- | C] (Xircom, Inc.) -- C:WINDOWSSystem32dllcacher2mdmkxx.sys

[2012/09/03 10:05:07 | 000,899,146 | ---- | C] (Xircom, Inc.) -- C:WINDOWSSystem32dllcacher2mdkxga.sys

[2012/09/03 10:05:04 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheqvusd.dll

[2012/09/03 10:05:02 | 000,003,328 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheqv2kux.sys

[2012/09/03 10:05:01 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachequick.ime

[2012/09/03 10:04:57 | 000,049,024 | ---- | C] (QLogic Corporation) -- C:WINDOWSSystem32dllcacheql1280.sys

[2012/09/03 10:04:55 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheql1240.sys

[2012/09/03 10:04:53 | 000,045,312 | ---- | C] (QLogic Corporation) -- C:WINDOWSSystem32dllcacheql12160.sys

[2012/09/03 10:04:50 | 000,033,152 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheql10wnt.sys

[2012/09/03 10:04:48 | 000,040,320 | ---- | C] (QLogic Corporation) -- C:WINDOWSSystem32dllcacheql1080.sys

[2012/09/03 10:04:47 | 000,006,016 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheqic157.sys

[2012/09/03 10:04:44 | 000,130,942 | ---- | C] (PCTEL, INC.) -- C:WINDOWSSystem32dllcacheptserlv.sys

[2012/09/03 10:04:41 | 000,112,574 | ---- | C] (PCTEL, INC.) -- C:WINDOWSSystem32dllcacheptserlp.sys

[2012/09/03 10:04:39 | 000,128,286 | ---- | C] (PCTEL, INC.) -- C:WINDOWSSystem32dllcacheptserli.sys

[2012/09/03 10:04:38 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheptpusd.dll

[2012/09/03 10:04:36 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheptpusb.dll

[2012/09/03 10:04:33 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachepsisload.dll

[2012/09/03 10:04:30 | 000,016,128 | ---- | C] (SCM Microsystems, Inc.) -- C:WINDOWSSystem32dllcachepscr.sys

[2012/09/03 10:04:27 | 000,017,664 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheppa3.sys

[2012/09/03 10:04:25 | 000,017,792 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheppa.sys

[2012/09/03 10:04:24 | 000,008,832 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachepowerfil.sys

[2012/09/03 10:04:22 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachepnrmc.sys

[2012/09/03 10:04:21 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachepmigrate.dll

[2012/09/03 10:04:20 | 000,482,304 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachepintlgnt.ime

[2012/09/03 10:04:20 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachepintlphr.exe

[2012/09/03 10:04:20 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachepintlcsd.dll

[2012/09/03 10:04:15 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachephvfwext.dll

[2012/09/03 10:04:15 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachephon.ime

[2012/09/03 10:04:13 | 000,019,840 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachephiltune.sys

[2012/09/03 10:04:10 | 000,092,416 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachephildec.sys

[2012/09/03 10:04:08 | 000,173,696 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachephilcam2.sys

[2012/09/03 10:04:05 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachephilcam1.sys

[2012/09/03 10:04:03 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachephilcam1.dll

[2012/09/03 10:04:01 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachephdsext.ax

[2012/09/03 10:04:00 | 000,259,328 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:WINDOWSSystem32dllcacheperm3dd.dll

[2012/09/03 10:04:00 | 000,028,032 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:WINDOWSSystem32dllcacheperm3.sys

[2012/09/03 10:03:59 | 000,211,584 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:WINDOWSSystem32dllcacheperm2dll.dll

[2012/09/03 10:03:59 | 000,027,904 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:WINDOWSSystem32dllcacheperm2.sys

[2012/09/03 10:03:56 | 000,005,504 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheperc2hib.sys

[2012/09/03 10:03:54 | 000,027,296 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheperc2.sys

[2012/09/03 10:03:53 | 000,169,984 | ---- | C] (Cisco Systems) -- C:WINDOWSSystem32dllcachepcx500.sys

[2012/09/03 10:03:50 | 000,086,016 | ---- | C] (PCtel, Inc.) -- C:WINDOWSSystem32dllcachepctspk.exe

[2012/09/03 10:03:48 | 000,035,328 | ---- | C] (AMD Inc.) -- C:WINDOWSSystem32dllcachepcntpci5.sys

[2012/09/03 10:03:45 | 000,029,769 | ---- | C] (AMD Inc.) -- C:WINDOWSSystem32dllcachepcntn5m.sys

[2012/09/03 10:03:43 | 000,030,282 | ---- | C] (AMD Inc.) -- C:WINDOWSSystem32dllcachepcntn5hl.sys

[2012/09/03 10:03:41 | 000,026,153 | ---- | C] (Linksys) -- C:WINDOWSSystem32dllcachepcmlm56.sys

[2012/09/03 10:03:39 | 000,029,502 | ---- | C] (Marconi Communications, Inc.) -- C:WINDOWSSystem32dllcachepca200e.sys

[2012/09/03 10:03:36 | 000,030,495 | ---- | C] (Linksys) -- C:WINDOWSSystem32dllcachepc100nds.sys

[2012/09/03 10:03:35 | 000,036,927 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachepadrs411.dll

[2012/09/03 10:03:35 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachepadrs404.dll

[2012/09/03 10:03:35 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachepadrs804.dll

[2012/09/03 10:03:35 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachepadrs412.dll

[2012/09/03 10:03:32 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheovui2rc.dll

[2012/09/03 10:03:30 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheovui2.dll

[2012/09/03 10:03:27 | 000,025,216 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheovsound2.sys

[2012/09/03 10:03:25 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheovcoms.exe

[2012/09/03 10:03:23 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheovcomc.dll

[2012/09/03 10:03:20 | 000,351,616 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheovcodek2.sys

[2012/09/03 10:03:18 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheovcodec2.dll

[2012/09/03 10:03:16 | 000,031,872 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheovce.sys

[2012/09/03 10:03:13 | 000,028,032 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheovcd.sys

[2012/09/03 10:03:11 | 000,048,000 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheovcam2.sys

[2012/09/03 10:03:09 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheovca.sys

[2012/09/03 10:03:06 | 000,054,186 | ---- | C] (Ositech Communications, Inc.) -- C:WINDOWSSystem32dllcacheotcsercb.sys

[2012/09/03 10:03:04 | 000,043,689 | ---- | C] (Ositech Communications, Inc.) -- C:WINDOWSSystem32dllcacheotceth5.sys

[2012/09/03 10:03:02 | 000,027,209 | ---- | C] (Ositech Communications, Inc.) -- C:WINDOWSSystem32dllcacheotc06x5.sys

[2012/09/03 10:02:59 | 000,054,528 | ---- | C] (Yamaha Corp.) -- C:WINDOWSSystem32dllcacheopl3sax.sys

[2012/09/03 10:02:57 | 000,061,696 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheohci1394.sys

[2012/09/03 10:02:53 | 004,274,816 | ---- | C] (NVIDIA Corporation) -- C:WINDOWSSystem32dllcachenv4_disp.dll

[2012/09/03 10:02:53 | 001,897,408 | ---- | C] (NVIDIA Corporation) -- C:WINDOWSSystem32dllcachenv4_mini.sys

[2012/09/03 10:02:51 | 000,198,144 | ---- | C] (NVIDIA Corporation) -- C:WINDOWSSystem32dllcachenv3.sys

[2012/09/03 10:02:48 | 000,123,776 | ---- | C] (NVIDIA Corporation) -- C:WINDOWSSystem32dllcachenv3.dll

[2012/09/03 10:02:47 | 000,180,360 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcachentmtlfax.sys

[2012/09/03 10:02:42 | 000,051,552 | ---- | C] (Kensington Technology Group) -- C:WINDOWSSystem32dllcachentgrip.sys

[2012/09/03 10:02:39 | 000,009,344 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachentapm.sys

[2012/09/03 10:02:36 | 000,007,552 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachensmmc.sys

[2012/09/03 10:02:35 | 000,028,672 | ---- | C] (National Semiconductor Corporation) -- C:WINDOWSSystem32dllcachenscirda.sys

[2012/09/03 10:02:31 | 000,087,040 | ---- | C] (NeoMagic Corporation) -- C:WINDOWSSystem32dllcachenm6wdm.sys

[2012/09/03 10:02:29 | 000,126,080 | ---- | C] (NeoMagic Corporation) -- C:WINDOWSSystem32dllcachenm5a2wdm.sys

[2012/09/03 10:02:26 | 000,032,840 | ---- | C] (NETGEAR Corporation.) -- C:WINDOWSSystem32dllcachengrpci.sys

[2012/09/03 10:02:25 | 000,132,695 | ---- | C] (802.11b) -- C:WINDOWSSystem32dllcachenetwlan5.sys

[2012/09/03 10:02:21 | 000,065,278 | ---- | C] (Compaq Computer Corporation) -- C:WINDOWSSystem32dllcachenetflx3.sys

[2012/09/03 10:02:17 | 000,039,264 | ---- | C] (NeoMagic Corporation) -- C:WINDOWSSystem32dllcacheneo20xx.sys

[2012/09/03 10:02:15 | 000,060,480 | ---- | C] (NeoMagic Corporation) -- C:WINDOWSSystem32dllcacheneo20xx.dll

[2012/09/03 10:02:12 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachene2000.sys

[2012/09/03 10:02:11 | 000,010,880 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachendisip.sys

[2012/09/03 10:02:09 | 000,085,248 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachenabtsfec.sys

[2012/09/03 10:02:07 | 000,091,488 | ---- | C] (Number Nine Visual Technology Corp.) -- C:WINDOWSSystem32dllcachen9i3disp.dll

[2012/09/03 10:02:05 | 000,027,936 | ---- | C] (Number Nine Visual Technology Corp.) -- C:WINDOWSSystem32dllcachen9i3d.sys

[2012/09/03 10:02:02 | 000,033,088 | ---- | C] (Number Nine Visual Technology Corp.) -- C:WINDOWSSystem32dllcachen9i128v2.sys

[2012/09/03 10:02:00 | 000,059,104 | ---- | C] (Number Nine Visual Technology Corp.) -- C:WINDOWSSystem32dllcachen9i128v2.dll

[2012/09/03 10:01:58 | 000,013,664 | ---- | C] (Number Nine Visual Technology Corp.) -- C:WINDOWSSystem32dllcachen9i128.sys

[2012/09/03 10:01:56 | 000,035,392 | ---- | C] (Number Nine Visual Technology Corp.) -- C:WINDOWSSystem32dllcachen9i128.dll

[2012/09/03 10:01:54 | 000,128,000 | ---- | C] (Compaq Computer Corporation) -- C:WINDOWSSystem32dllcachen100325.sys

[2012/09/03 10:01:51 | 000,052,255 | ---- | C] (Compaq Computer Corporation) -- C:WINDOWSSystem32dllcachen1000nt5.sys

[2012/09/03 10:01:49 | 000,075,520 | ---- | C] (Moxa Technologies Co., Ltd.) -- C:WINDOWSSystem32dllcachemxport.sys

[2012/09/03 10:01:47 | 000,007,168 | ---- | C] (Moxa Technologies Co., Ltd) -- C:WINDOWSSystem32dllcachemxport.dll

[2012/09/03 10:01:45 | 000,019,968 | ---- | C] (Macronix International Co., Ltd. ) -- C:WINDOWSSystem32dllcachemxnic.sys

[2012/09/03 10:01:43 | 000,019,968 | ---- | C] (Moxa Technologies Co., Ltd) -- C:WINDOWSSystem32dllcachemxicfg.dll

[2012/09/03 10:01:40 | 000,021,888 | ---- | C] (Moxa Technologies Co., Ltd.) -- C:WINDOWSSystem32dllcachemxcard.sys

[2012/09/03 10:01:39 | 000,229,439 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemultibox.dll

[2012/09/03 10:01:39 | 000,012,672 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemutohpen.sys

[2012/09/03 10:01:37 | 000,103,296 | ---- | C] (Matrox Graphics Inc) -- C:WINDOWSSystem32dllcachemtxvideo.sys

[2012/09/03 10:01:36 | 000,452,736 | ---- | C] (Matrox Graphics Inc.) -- C:WINDOWSSystem32dllcachemtxparhm.sys

[2012/09/03 10:01:35 | 001,737,856 | ---- | C] (Matrox Graphics Inc.) -- C:WINDOWSSystem32dllcachemtxparhd.dll

[2012/09/03 10:01:35 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemtstocom.exe

[2012/09/03 10:01:34 | 001,309,184 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcachemtlstrm.sys

[2012/09/03 10:01:33 | 000,126,686 | ---- | C] (Smart Link) -- C:WINDOWSSystem32dllcachemtlmnt5.sys

[2012/09/03 10:01:30 | 000,005,504 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemstee.sys

[2012/09/03 10:01:29 | 000,049,024 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemstape.sys

[2012/09/03 10:01:24 | 000,012,416 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemsriffwv.sys

[2012/09/03 10:01:19 | 000,002,944 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemsmpu401.sys

[2012/09/03 10:01:17 | 001,875,968 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemsir3jp.lex

[2012/09/03 10:01:17 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemsir3jp.dll

[2012/09/03 10:01:17 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemsircomm.sys

[2012/09/03 10:01:11 | 000,035,200 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemsgame.sys

[2012/09/03 10:01:08 | 000,006,016 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemsfsio.sys

[2012/09/03 10:01:07 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemsdv.sys

[2012/09/03 10:01:02 | 000,017,280 | ---- | C] (American Megatrends Inc.) -- C:WINDOWSSystem32dllcachemraid35x.sys

[2012/09/03 10:00:59 | 000,015,232 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachempe.sys

[2012/09/03 10:00:54 | 000,016,128 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemodemcsa.sys

[2012/09/03 10:00:49 | 000,006,528 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheminiqic.sys

[2012/09/03 10:00:45 | 000,320,384 | ---- | C] (Matrox Graphics Inc.) -- C:WINDOWSSystem32dllcachemgaum.sys

[2012/09/03 10:00:43 | 000,235,648 | ---- | C] (Matrox Graphics Inc.) -- C:WINDOWSSystem32dllcachemgaud.dll

[2012/09/03 10:00:41 | 000,026,112 | ---- | C] (Sony Corporation) -- C:WINDOWSSystem32dllcachememstpci.sys

[2012/09/03 10:00:39 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachememgrp.dll

[2012/09/03 10:00:37 | 000,008,320 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachememcard.sys

[2012/09/03 10:00:33 | 000,164,586 | ---- | C] (Madge Networks Ltd) -- C:WINDOWSSystem32dllcachemdgndis5.sys

[2012/09/03 10:00:29 | 000,007,424 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachemammoth.sys

[2012/09/03 10:00:25 | 000,048,768 | ---- | C] (ESS Technology, Inc.) -- C:WINDOWSSystem32dllcachemaestro.sys

[2012/09/03 10:00:23 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachem3092dc.dll

[2012/09/03 10:00:21 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachem3091dc.dll

[2012/09/03 10:00:17 | 000,022,848 | ---- | C] (Logitech Inc.) -- C:WINDOWSSystem32dllcachelwusbhid.sys

[2012/09/03 10:00:17 | 000,020,864 | ---- | C] (Logitech Inc.) -- C:WINDOWSSystem32dllcachelwadihid.sys

[2012/09/03 10:00:14 | 000,797,500 | ---- | C] (LT) -- C:WINDOWSSystem32dllcacheltsmt.sys

[2012/09/03 10:00:12 | 000,802,683 | ---- | C] (Lucent Technologies) -- C:WINDOWSSystem32dllcacheltsm.sys

[2012/09/03 10:00:10 | 000,007,040 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheltotape.sys

[2012/09/03 10:00:09 | 000,420,992 | ---- | C] (LT) -- C:WINDOWSSystem32dllcacheltmdmntt.sys

[2012/09/03 10:00:07 | 000,606,684 | ---- | C] (LT) -- C:WINDOWSSystem32dllcacheltmdmnt.sys

[2012/09/03 10:00:07 | 000,576,746 | ---- | C] (LT) -- C:WINDOWSSystem32dllcacheltmdmntl.sys

[2012/09/03 10:00:05 | 000,727,786 | ---- | C] (Xircom, Inc.) -- C:WINDOWSSystem32dllcacheltck000c.sys

[2012/09/03 10:00:00 | 000,004,992 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheloop.sys

[2012/09/03 09:59:54 | 000,070,730 | ---- | C] (Linksys Group, Inc.) -- C:WINDOWSSystem32dllcachelne100tx.sys

[2012/09/03 09:59:52 | 000,020,573 | ---- | C] (The Linksts Group ) -- C:WINDOWSSystem32dllcachelne100.sys

[2012/09/03 09:59:50 | 000,025,065 | ---- | C] (D-Link) -- C:WINDOWSSystem32dllcachelmndis3.sys

[2012/09/03 09:59:47 | 000,015,744 | ---- | C] (Litronic Industries) -- C:WINDOWSSystem32dllcachelit220p.sys

[2012/09/03 09:59:46 | 000,034,688 | ---- | C] (Toshiba Corp.) -- C:WINDOWSSystem32dllcachelbrtfdc.sys

[2012/09/03 09:59:44 | 000,026,442 | ---- | C] (SMSC) -- C:WINDOWSSystem32dllcachelanepic5.sys

[2012/09/03 09:59:42 | 000,019,016 | ---- | C] (Kingston Technology Company ) -- C:WINDOWSSystem32dllcachektc111.sys

[2012/09/03 09:59:41 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekswdmcap.ax

[2012/09/03 09:59:41 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheksxbar.ax

[2012/09/03 09:59:40 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekstvtune.ax

[2012/09/03 09:59:38 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekorwbrkr.dll

[2012/09/03 09:59:38 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekousd.dll

[2012/09/03 09:59:37 | 000,253,952 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekdsusd.dll

[2012/09/03 09:59:36 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekdsui.dll

[2012/09/03 09:59:30 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekbdkor.dll

[2012/09/03 09:59:29 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekbdjpn.dll

[2012/09/03 09:59:23 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekbd106.dll

[2012/09/03 09:59:21 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekbd103.dll

[2012/09/03 09:59:19 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekbd101c.dll

[2012/09/03 09:59:17 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcachekbd101b.dll

[2012/09/03 09:59:13 | 000,026,624 | ---- | C] (SigmaTel, Inc.) -- C:WINDOWSSystem32dllcacheirstusb.sys

[2012/09/03 09:59:11 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheirmon.dll

[2012/09/03 09:59:11 | 000,018,688 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheirsir.sys

[2012/09/03 09:59:09 | 000,023,552 | ---- | C] (MKNet Corporation) -- C:WINDOWSSystem32dllcacheirmk7.sys

[2012/09/03 09:59:08 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheirftp.exe

[2012/09/03 09:59:07 | 000,088,192 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheirda.sys

[2012/09/03 09:59:07 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheirbus.sys

[2012/09/03 09:59:05 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheipsink.ax

[2012/09/03 09:59:01 | 000,045,632 | ---- | C] (Interphase ® Corporation a Windows ® 2000 DDK Driver Provider) -- C:WINDOWSSystem32dllcacheip5515.sys

[2012/09/03 09:58:59 | 000,090,200 | ---- | C] (Perle Systems Ltd. ) -- C:WINDOWSSystem32dllcacheio8ports.dll

[2012/09/03 09:58:57 | 000,038,784 | ---- | C] (Perle Systems Ltd. ) -- C:WINDOWSSystem32dllcacheio8.sys

[2012/09/03 09:58:56 | 000,005,504 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheintelide.sys

[2012/09/03 09:58:54 | 000,013,056 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheinport.sys

[2012/09/03 09:58:52 | 000,016,000 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheini910u.sys

[2012/09/03 09:58:50 | 000,471,102 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimskdic.dll

[2012/09/03 09:58:50 | 000,315,455 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimskf.dll

[2012/09/03 09:58:49 | 000,274,489 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjputyc.dll

[2012/09/03 09:58:49 | 000,102,456 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimlang.dll

[2012/09/03 09:58:49 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimkrinst.exe

[2012/09/03 09:58:48 | 000,262,200 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjputy.exe

[2012/09/03 09:58:48 | 000,233,527 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjprw.exe

[2012/09/03 09:58:48 | 000,045,109 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjpuex.exe

[2012/09/03 09:58:47 | 000,307,257 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjpdct.exe

[2012/09/03 09:58:47 | 000,208,952 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjpmig.exe

[2012/09/03 09:58:47 | 000,155,705 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjpdsvr.exe

[2012/09/03 09:58:46 | 000,811,064 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjp81k.dll

[2012/09/03 09:58:46 | 000,716,856 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjpcus.dll

[2012/09/03 09:58:46 | 000,368,696 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjpcic.dll

[2012/09/03 09:58:46 | 000,081,976 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjpdct.dll

[2012/09/03 09:58:46 | 000,057,398 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjpdadm.exe

[2012/09/03 09:58:45 | 000,340,023 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimjp81.ime

[2012/09/03 09:58:45 | 000,311,359 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimepadsv.exe

[2012/09/03 09:58:45 | 000,102,463 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimepadsm.dll

[2012/09/03 09:58:45 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimekrmig.exe

[2012/09/03 09:58:44 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimekrcic.dll

[2012/09/03 09:58:44 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimekr61.ime

[2012/09/03 09:58:44 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheimekrmbx.dll

[2012/09/03 09:58:41 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheieencode.dll

[2012/09/03 09:58:37 | 000,372,824 | ---- | C] (Xircom) -- C:WINDOWSSystem32dllcacheiconf32.dll

[2012/09/03 09:58:35 | 000,100,992 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheicam5usb.sys

[2012/09/03 09:58:33 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheicam5ext.dll

[2012/09/03 09:58:31 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:WINDOWSSystem32dllcacheicam5com.dll

[2012/09/03 09:58:29 | 000,154,496

Link to comment
Share on other sites

OK... we have some interest in investigation one of your registry keys:

 

Please download SystemLook from one of the links below and save it to your Desktop.

Download Mirror #1

Download Mirror #2

  • Double-click SystemLook.exe to run it.
  • Copy the content of the following codebox into the main textfield:

    :reg
    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot] /s
    
  • Click the Look button to start the scan.
  • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.
Note: The log can also be found on your Desktop entitled SystemLook.txt
Link to comment
Share on other sites

Ran the scan,here is the log.

 

 

SystemLook 30.07.11 by jpshortstuff

Log created at 08:37 on 05/09/2012 by mark gisi

Administrator - Elevation successful

 

========== reg ==========

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafeboot]

"AlternateShell"="cmd.exe"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal]

(No values found)

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalAppMgmt]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalBase]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalBoot Bus Extender]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalBoot file system]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalCryptSvc]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalDcomLaunch]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimaldmadmin]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimaldmboot.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimaldmio.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimaldmload.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimaldmserver]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalEventLog]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalFile system]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalFilter]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalHelpSvc]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalNetlogon]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalPCI Configuration]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalPlugPlay]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalPNP Filter]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalPrimary disk]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalrpcnet]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalRpcSs]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalSCSI Class]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalsermouse.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalsr.sys]

@="FSFilter System Recovery"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalSRService]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalSystem Bus Extender]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalvga.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalvgasave.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimalWinMgmt]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{36FC9E60-C465-11CF-8056-444553540000}]

@="Universal Serial Bus controllers"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{4D36E965-E325-11CE-BFC1-08002BE10318}]

@="CD-ROM Drive"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{4D36E967-E325-11CE-BFC1-08002BE10318}]

@="DiskDrive"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{4D36E969-E325-11CE-BFC1-08002BE10318}]

@="Standard floppy disk controller"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{4D36E96A-E325-11CE-BFC1-08002BE10318}]

@="Hdc"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{4D36E96B-E325-11CE-BFC1-08002BE10318}]

@="Keyboard"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{4D36E96F-E325-11CE-BFC1-08002BE10318}]

@="Mouse"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{4D36E977-E325-11CE-BFC1-08002BE10318}]

@="PCMCIA Adapters"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{4D36E97B-E325-11CE-BFC1-08002BE10318}]

@="SCSIAdapter"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{4D36E97D-E325-11CE-BFC1-08002BE10318}]

@="System"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{4D36E980-E325-11CE-BFC1-08002BE10318}]

@="Floppy disk drive"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

@="Volume"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootMinimal{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

@="Human Interface Devices"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork]

(No values found)

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkAFD]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkAppMgmt]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkBase]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkBoot Bus Extender]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkBoot file system]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkBrowser]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkCryptSvc]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkDcomLaunch]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkDhcp]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkdmadmin]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkdmboot.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkdmio.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkdmload.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkdmserver]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkDnsCache]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkEventLog]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkFile system]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkFilter]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkHelpSvc]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkip6fw.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkipnat.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkLanmanServer]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkLanmanWorkstation]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkLmHosts]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkMessenger]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNDIS]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNDIS Wrapper]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNdisuio]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNetBIOS]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNetBIOSGroup]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNetBT]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNetDDEGroup]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNetlogon]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNetMan]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNetwork]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNetworkProvider]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkNtLmSsp]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkPCI Configuration]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkPlugPlay]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkPNP Filter]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkPNP_TDI]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkPrimary disk]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkrdpcdd.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkrdpdd.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkrdpwd.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkrdsessmgr]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkrpcnet]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkRpcSs]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkSCSI Class]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworksermouse.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkSharedAccess]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworksr.sys]

@="FSFilter System Recovery"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkSRService]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkStreams Drivers]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkSystem Bus Extender]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkTcpip]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkTDI]

@="Driver Group"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworktdpipe.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworktdtcp.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworktermservice]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkvga.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkvgasave.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkWinMgmt]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetworkWZCSVC]

@="Service"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{36FC9E60-C465-11CF-8056-444553540000}]

@="Universal Serial Bus controllers"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E965-E325-11CE-BFC1-08002BE10318}]

@="CD-ROM Drive"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E967-E325-11CE-BFC1-08002BE10318}]

@="DiskDrive"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E969-E325-11CE-BFC1-08002BE10318}]

@="Standard floppy disk controller"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E96A-E325-11CE-BFC1-08002BE10318}]

@="Hdc"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E96B-E325-11CE-BFC1-08002BE10318}]

@="Keyboard"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E96F-E325-11CE-BFC1-08002BE10318}]

@="Mouse"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E972-E325-11CE-BFC1-08002BE10318}]

@="Net"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E973-E325-11CE-BFC1-08002BE10318}]

@="NetClient"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E974-E325-11CE-BFC1-08002BE10318}]

@="NetService"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E975-E325-11CE-BFC1-08002BE10318}]

@="NetTrans"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E977-E325-11CE-BFC1-08002BE10318}]

@="PCMCIA Adapters"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E97B-E325-11CE-BFC1-08002BE10318}]

@="SCSIAdapter"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E97D-E325-11CE-BFC1-08002BE10318}]

@="System"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{4D36E980-E325-11CE-BFC1-08002BE10318}]

@="Floppy disk drive"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

@="Volume"

 

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootNetwork{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

@="Human Interface Devices"

 

 

-= EOF =-

Link to comment
Share on other sites

Let's try providing another way into safemode.

 

Please highlight the following code, right-click and select copy

multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Safemode" /noexecute=optin /fastdetect /safeboot:minimal

On your desktop... right-click on My computer and select Properties.

 

On the advanced tab, click on the Settings button under Startup and recovery.

 

Under System Startup, click on the Edit button. (notepad will open a boot file)

 

Click anywhere on the last line that appears in the notepad and then click the End button on your keyboard. Then press enter.

Right click and select paste (this will paste the line that you copied earlier)

 

Click on File at the top of the page and select save.

 

Now please reboot your computer. As your computer is starting up, a bootloader window will open. Press the down arrow key to select Microsoft Windows XP Safemode and press enter. (You will have to be quick as you only have 2 seconds to do this).

 

Please let me know if your system enters safemode.

Link to comment
Share on other sites

I'm having trouble with this. Followed your instructions up to the reboot. When I restart,I'm not sure what a bootloader window is. What I have is a "Windows Boot Manager" with two options,Windows or System Restore.If I choose Windows,the computer starts up normally. If I choose system restore,I can press F8 and get an "Advanced Boot Options screen". On that screen,the first three choices are Safemode,Safemode With Networking and third,Safemode with command prompt. There are other choices on that screen that I'm not familiar with and don't fully understand.

I choose Safemode and press enter.The black screen fills with rolling lines of "loading Windows files" at the bottom is says please wait. It changes to another black screen that says Safemode in all four corners with a circle turning in the middle. When that circle stops,the screen I showed you pics of appears and you know what that says. I hope I have done what you have told me to do but I'm not sure. So far,no change,no safemode.

Link to comment
Share on other sites

What you're describing when you attempt to enter safemode is exactly what should happen... right up until you get the screen you posted a pic of.

 

With the instructions I gave you... when you see the "Windows Boot Manager" window, you should have added a third choice that is called "Microsoft Windows XP Safemode" (that was the whole point of adding that line to that file.) Apparently something did not work.

 

Please go through the instructions again - up to the point what the Boot file is opened. Then please copy the contents and post them here.

Link to comment
Share on other sites

Went through the instructions two more times. The last time I saw something new.A light blue screen that said CHKDSK Disc Check checking file sytem"C" one disc needs to be checked for consistency First time I have ever seen that. There was more,but that was all I could write down before the scan finished and the screen went away.

Link to comment
Share on other sites

If you cannot use your mouse...

 

With the notepad window opens -

 

Hold the Ctrl key and press A (this will highlight everything on the page).

While still holding the Ctrl key press C (This will copy the contents to your clipboard)

 

Now come back here and in your reply window hold ctrl and press V (this will paste from the clipboard)

Link to comment
Share on other sites

I rebooted,got to windows boot manager,held down ctrl and A,nothing happened. No highlight,no change on the screen.Went to advanced boot options,same thing,no highlight. Am I missing something? Rebooted,Active desktop recovery screen came up. This is new to me. Went to desktop and picked my usual backround. No problem. I saw I had picked up MSN messenger in my icon tray. I went to startup, unchecked it and rebooted.Its now gone.

Link to comment
Share on other sites

On your desktop... right-click on My computer and select Properties.

 

On the advanced tab, click on the Settings button under Startup and recovery.

 

Under System Startup, click on the Edit button. (notepad will open a boot file)

 

Hold the Ctrl key and press A (this will highlight everything on the page).

While still holding the Ctrl key press C (This will copy the contents to your clipboard)

 

Now come back here and in your reply window hold ctrl and press V (this will paste from the clipboard)

Link to comment
Share on other sites

[boot loader]

timeout=3

default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS

[operating systems]

C:\CMDCONS\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons

UnsupportedDebug="do not select this" /debug

multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Safemode" /noexecute=optin /fastdetect /safeboot:minimal

 

Very sorry! I completely missed what you were asking for. Hope this is it.

Link to comment
Share on other sites

That's exactly what I wanted. Sorry that I confused you with my instructions. What you have provided appears to be exactly as it should be. I don't know why it is not showing up.

 

I'd like you to modify that last line again. You can delete the extra characters right in the notepad window and then save it again. I'd like you to make it read:

 

multi(0)disk(0)rdisk(0)partition(2)WINDOWS="Microsoft Windows XP Safemode" /safeboot:minimal

 

Save it and then reboot and see if it appears as a viable choice. If it does - then select it.

Link to comment
Share on other sites

[boot loader]

timeout=3

default=multi(0)disk(0)rdisk(0)partition(2)WINDOWS

[operating systems]

C:CMDCONSBOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons

UnsupportedDebug="do not select this" /debug

multi(0)disk(0)rdisk(0)partition(2)WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

multi(0)disk(0)rdisk(0)partition(2)WINDOWS="Microsoft Windows XP Safemode" /safeboot:minimal

 

Added the new line,it now looks like this. Still didnt come up in boot manager or advanced options,no change.

Link to comment
Share on other sites

  • 4 weeks later...
Guest
This topic is now closed to further replies.
 Share


×
×
  • Create New...