3RD PART-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled
R2 AegisP (AEGIS Protocol (IEEE 802.1x) v3.4.0.1) - c:\windows\system32\drivers\aegisp.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 3.4.0.1>
R2 ASCTRM - c:\windows\system32\drivers\asctrm.sys <Not Verified; Windows (R) 2000 DDK provider; Windows (R) 2000 DDK driver>
R3 GTNDIS5 (GTNDIS5 NDIS Protocol Driver) - c:\windows\system32\gtndis5.sys <Not Verified; Printing Communications Assoc., Inc. (PCAUSA); PCAUSA Rawether for Windows>
S1 UdfReadr - c:\windows\system32\drivers\udfreadr.sys <Not Verified; Adaptec; UDF Reader Driver>
S3 DSproct - c:\program files\dellsupport\gtaction\triggers\dsproct.sys <Not Verified; Gteko Ltd.; processt>
S3 PalmUSBD - c:\windows\system32\drivers\palmusbd.sys (file missing)
S3 wanatw (WAN Miniport (ATW)) - c:\windows\system32\drivers\wanatw4.sys (file missing)
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled
R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
R2 ScsiAccess - c:\windows\system32\scsiaccess.exe
-- Device Manager: Disabled -
No disabled devices found.
-- Scheduled Tasks -
2007-10-05 12:40:02 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
-- Files created between 2007-10-30 and 2007-11-30
2007-11-28 21:14:35 0 d--- C:\Program Files\Common Files\Panda Software
2007-11-28 20:24:24 25600 --a-- C:\WINDOWS\system32\WS2Fix.exe
2007-11-28 20:24:24 289144 --a-- C:\WINDOWS\system32\VCCLSID.exe <Not Verified; S!Ri; >
2007-11-28 20:24:24 288417 --a-- C:\WINDOWS\system32\SrchSTS.exe <Not Verified; S!Ri; SrchSTS>
2007-11-28 20:24:24 53248 --a-- C:\WINDOWS\system32\Process.exe <Not Verified;
http://www.beyondlogic.org; Command Line Process Utility>
2007-11-28 20:24:24 51200 --a-- C:\WINDOWS\system32\dumphive.exe
2007-11-28 20:03:37 0 d-- C:\Documents and Settings\Administrator\Application Data\Sonic
2007-11-28 20:03:37 0 d--s---- C:\Documents and Settings\Administrator\Application Data\Microsoft
2007-11-28 20:03:37 0 d-- C:\Documents and Settings\Administrator\Application Data\Jasc Software Inc
2007-11-28 20:03:37 0 d-- C:\Documents and Settings\Administrator\Application Data\Identities
2007-11-28 20:03:36 0 d--h- C:\Documents and Settings\Administrator\Templates
2007-11-28 20:03:36 0 dr- C:\Documents and Settings\Administrator\Start Menu
2007-11-28 20:03:36 0 dr-h-- C:\Documents and Settings\Administrator\SendTo
2007-11-28 20:03:36 0 dr-h-- C:\Documents and Settings\Administrator\Recent
2007-11-28 20:03:36 0 d--h-- C:\Documents and Settings\Administrator\PrintHood
2007-11-28 20:03:36 0 d--h-- C:\Documents and Settings\Administrator\NetHood
2007-11-28 20:03:36 0 dr-- C:\Documents and Settings\Administrator\My Documents
2007-11-28 20:03:36 0 d--h C:\Documents and Settings\Administrator\Local Settings
2007-11-28 20:03:36 0 dr--- C:\Documents and Settings\Administrator\Favorites
2007-11-28 20:03:36 0 d----C:\Documents and Settings\Administrator\Desktop
2007-11-28 20:03:36 0 d--hs- C:\Documents and Settings\Administrator\Cookies
2007-11-28 20:03:36 0 dr-h-- C:\Documents and Settings\Administrator\Application Data
2007-11-28 20:03:36 0 d----C:\Documents and Settings\Administrator\Application Data\Symantec
2007-11-28 20:03:36 0 d----C:\Documents and Settings\Administrator\Application Data\Sun
2007-11-28 20:03:35 786432 --ah-- C:\Documents and Settings\Administrator\NTUSER.DAT
2007-11-27 22:43:30 3500 --a--- C:\WINDOWS\system32\tmp.reg
2007-11-27 21:25:55 0 d-- C:\Documents and Settings\SpenceJan\Application Data\Grisoft
2007-11-27 21:22:32 0 d--- C:\Program Files\Lavasoft
2007-11-27 21:22:31 0 d--- C:\Documents and Settings\All Users\Application Data\Lavasoft
2007-11-27 21:21:38 0 d-- C:\Program Files\Common Files\Wise Installation Wizard
2007-11-27 21:20:31 0 d-- C:\Documents and Settings\All Users\Application Data\Grisoft
2007-11-26 20:07:48 0 d-- C:\WINDOWS\pss
2007-11-24 08:52:23 7713 -a-- C:\WINDOWS\system32\ldcore.dll
2007-11-20 21:08:51 0 d-- C:\Documents and Settings\All Users\Application Data\Rabio
2007-11-20 20:39:26 0 d-- C:\Program Files\Cool
2007-11-16 10:20:44 208896 --a-- C:\WINDOWS\io43mvuiw4kj.exe <Not Verified; ; io43mvuiw4kj>
2007-11-11 10:37:01 236 --a-- C:\Documents and Settings\SpenceJan\jobq.dat
2007-11-11 10:36:49 0 d-- C:\Documents and Settings\SpenceJan\iArchives
2007-11-01 19:55:34 0 d-- C:\Program Files\Netflix
-- Find3M Report
2007-11-29 19:12:21 0 d--- C:\Documents and Settings\SpenceJan\Application Data\Smilebox
2007-11-28 21:14:35 0 d-- C:\Program Files\Common Files
2007-11-11 10:35:19 0 d-- C:\Program Files\Java
2007-11-02 15:32:09 0 d-- C:\Program Files\Microsoft Digital Image 10
2007-10-21 16:38:38 0 d-- C:\Program Files\GospeLink
2007-10-07 09:21:20 0 d--h-- C:\Documents and Settings\SpenceJan\Application Data\Move Networks
2007-09-12 11:52:44 53248 --a- C:\WINDOWS\hg173.exe <Not Verified; ; hg173>
2007-09-12 11:50:34 53248 --a-- C:\WINDOWS\df87173.exe <Not Verified; ; df87173>
-- Registry Dump -
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{5C2A9795-B130-4622-B036-BDCAD28602DC}]
11/12/2007 11:50 AM 397312 --a------ C:\Program Files\Cool\Cool.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="C:\Program Files\Analog Devices\Core\smax4pnp.exe" [10/14/2004 05:42 PM]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe" [12/15/2006 03:23 AM]
"IntelMeM"="C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe" [09/03/2003 06:12 PM]
"UpdateManager"="C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" [01/06/2004 11:01 PM]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [06/29/2007 05:24 AM]
"dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [12/05/2004 11:05 PM]
"@"="" []
"igfxtray"="C:\WINDOWS\system32\igfxtray.exe" [09/20/2005 09:35 AM]
"igfxhkcmd"="C:\WINDOWS\system32\hkcmd.exe" [09/20/2005 09:32 AM]
"igfxpers"="C:\WINDOWS\system32\igfxpers.exe" [09/20/2005 09:36 AM]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [09/06/2007 03:06 AM]
"Dell Photo AIO Printer 942"="C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe" [08/31/2004 07:18 AM]
"DellMCM"="C:\Program Files\Dell Photo AIO Printer 942\memcard.exe" [07/27/2004 07:08 AM]
"io43mvuiw4kj"="C:\WINDOWS\io43mvuiw4kj.exe" [11/16/2007 10:20 AM]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [06/11/2007 02:25 AM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [08/04/2004 03:00 AM]
"H/PC Connection Agent"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe" [11/15/2005 07:44 PM]
"ISUSPM"="C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" [09/11/2006 04:40 AM]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [9/23/2005 10:05:26 PM]
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE [2/13/2001 12:01:04 AM]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"appinit_dlls"= c:\windows\system32\ldcore.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@="Service"