1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

freezing, ctrl alt delete not working, programs not opening

Discussion in 'Virus & Other Malware Removal' started by Johnny9s, Sep 28, 2010.

Thread Status:
Not open for further replies.
  1. Johnny9s

    Johnny9s Thread Starter

    Joined:
    Sep 28, 2010
    Messages:
    1
    HJT

    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 2:11:33 PM, on 28/09/2010
    Platform: Windows 7 (WinNT 6.00.3504)
    MSIE: Internet Explorer v8.00 (8.00.7600.16385)
    Boot mode: Normal

    Running processes:
    F:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
    F:\Program Files (x86)\Secunia\PSI\psi.exe
    F:\Windows\SysWOW64\CtHelper.exe
    F:\Program Files (x86)\IObit\IObit Security 360\is360tray.exe
    F:\Program Files (x86)\iTunes\iTunesHelper.exe
    F:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    F:\Program Files (x86)\Mozilla Firefox 3.6 Beta 4\firefox.exe
    F:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = F:\Windows\SysWOW64\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    F2 - REG:system.ini: UserInit=userinit.exe
    O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - F:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - F:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - F:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - F:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - F:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - F:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - F:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - F:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll
    O4 - HKLM\..\Run: [AsioThk32Reg] REGSVR32.EXE /S CTASIO.DLL
    O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
    O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
    O4 - HKLM\..\Run: [AsioReg] REGSVR32 /S CTASIO.DLL
    O4 - HKLM\..\Run: [IObit Security 360] "F:\Program Files (x86)\IObit\IObit Security 360\IS360tray.exe" /autostart
    O4 - HKLM\..\Run: [QuickTime Task] "F:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "F:\Program Files (x86)\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "F:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    O4 - HKCU\..\Run: [Sidebar] F:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [SUPERAntiSpyware] F:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    O4 - HKCU\..\Run: [SandboxieControl] "F:\Program Files\Sandboxie\SbieCtrl.exe"
    O4 - HKCU\..\Run: [igndlm.exe] F:\Program Files (x86)\Download Manager\DLM.exe /windowsstart /startifwork
    O4 - HKCU\..\Run: [Google Update] "F:\Users\John\AppData\Local\Google\Update\GoogleUpdate.exe" /c
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] F:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] F:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-18\..\Run: [DevconDefaultDB] F:\Windows\system32\READREG /SILENT /FAIL=1 (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [DevconDefaultDB] F:\Windows\system32\READREG /SILENT /FAIL=1 (User 'Default user')
    O4 - Startup: CurseClientStartup.ccip
    O8 - Extra context menu item: Append Link Target to Existing PDF - res://F:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    O8 - Extra context menu item: Append to Existing PDF - res://F:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://F:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    O8 - Extra context menu item: Convert to Adobe PDF - res://F:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
    O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - F:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
    O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - F:\Program Files (x86)\PokerStars.NET\PokerStarsUpdate.exe
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{C90D13F0-37A5-4059-B460-383044C540E5}: NameServer = 64.59.144.92,64.59.144.93
    O20 - Winlogon Notify: !SASWinLogon - F:\Program Files (x86)\SUPERAntiSpyware\SASWINLO.dll
    O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - F:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - F:\Windows\System32\alg.exe (file missing)
    O23 - Service: Apple Mobile Device - Apple Inc. - F:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    O23 - Service: AST Service (astcc) - Nalpeiron Ltd. - F:\Windows\system32\astsrv.exe
    O23 - Service: Bonjour Service - Apple Inc. - F:\Program Files (x86)\Bonjour\mDNSResponder.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - F:\Windows\System32\lsass.exe (file missing)
    O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - F:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
    O23 - Service: ESET Service (ekrn) - ESET - F:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - F:\Windows\system32\fxssvc.exe (file missing)
    O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - F:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - F:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
    O23 - Service: iPod Service - Apple Inc. - F:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: IS360service - IObit - F:\Program Files (x86)\IObit\IObit Security 360\IS360srv.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - F:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - F:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - F:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Nalpeiron X64 Service (nlscc) - Unknown owner - F:\Windows\system32\nlsInterface.exe (file missing)
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - F:\Windows\system32\nvvsvc.exe (file missing)
    O23 - Service: PnkBstrA - Unknown owner - F:\Windows\system32\PnkBstrA.exe
    O23 - Service: PnkBstrB - Unknown owner - F:\Windows\system32\PnkBstrB.exe
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - F:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - F:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - F:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Sandboxie Service (SbieSvc) - tzuk - F:\Program Files\Sandboxie\SbieSvc.exe
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - F:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - F:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - F:\Windows\system32\sppsvc.exe (file missing)
    O23 - Service: Steam Client Service - Valve Corporation - F:\Program Files (x86)\Common Files\Steam\SteamService.exe
    O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - F:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    O23 - Service: TabletServiceWacom - Unknown owner - F:\Windows\system32\Wacom_Tablet.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - F:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - F:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - F:\Windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - F:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - F:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - F:\Windows\system32\wbengine.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - F:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - F:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --
    End of file - 10758 bytes



    DDS


    DDS (Ver_09-09-29.01) - NTFSx86
    Run by John at 14:14:59.01 on 28/09/2010
    Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_21
    Microsoft Windows 7 Ultimate 6.1.7600.0.1252.2.1033.18.8191.6175 [GMT -7:00]

    SP: SUPERAntiSpyware *enabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}

    ============== Running Processes ===============

    F:\Windows\system32\wininit.exe
    F:\Windows\system32\lsm.exe
    F:\Windows\system32\svchost.exe -k DcomLaunch
    F:\Windows\system32\nvvsvc.exe
    F:\Windows\system32\svchost.exe -k RPCSS
    F:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    F:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    F:\Windows\system32\svchost.exe -k netsvcs
    F:\Windows\system32\svchost.exe -k LocalService
    F:\Windows\system32\svchost.exe -k NetworkService
    F:\Windows\system32\nvvsvc.exe
    F:\Windows\SYSTEM32\WISPTIS.EXE
    F:\Windows\System32\spoolsv.exe
    F:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    F:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
    F:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    F:\Windows\SysWOW64\astsrv.exe
    F:\Program Files (x86)\Bonjour\mDNSResponder.exe
    F:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
    F:\Windows\system32\taskhost.exe
    F:\Windows\SYSTEM32\WISPTIS.EXE
    F:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
    F:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
    F:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    F:\Program Files (x86)\IObit\IObit Security 360\IS360srv.exe
    F:\Windows\system32\nlsInterface.exe
    F:\Windows\SysWOW64\PnkBstrA.exe
    F:\Windows\SysWOW64\PnkBstrB.exe
    F:\Program Files\Sandboxie\SbieSvc.exe
    F:\Windows\system32\svchost.exe -k imgsvc
    F:\Windows\system32\Dwm.exe
    F:\Windows\Explorer.EXE
    F:\Windows\system32\Wacom_Tablet.exe
    F:\Windows\system32\Wacom_Tablet.exe
    F:\Windows\system32\WUDFHost.exe
    F:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
    F:\Windows\System32\svchost.exe -k swprv
    F:\Windows\system32\taskeng.exe
    F:\Program Files (x86)\Secunia\PSI\psi.exe
    F:\Program Files\Windows Sidebar\sidebar.exe
    F:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
    F:\Windows\system32\SearchIndexer.exe
    F:\Program Files\Sandboxie\SbieCtrl.exe
    F:\Users\John\AppData\Local\Apps\2.0\CWZPDVJR.T5Z\2HPQQO8H.AJ0\curs..tion_eee711038731a406_0004.0000_172b37d8269e5e48\CurseClient.exe
    F:\Windows\SysWOW64\CtHelper.exe
    F:\Program Files (x86)\IObit\IObit Security 360\is360tray.exe
    F:\Program Files (x86)\iTunes\iTunesHelper.exe
    F:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    F:\Program Files\Windows Media Player\wmpnetwk.exe
    F:\Program Files\iPod\bin\iPodService.exe
    F:\Windows\system32\SearchProtocolHost.exe
    F:\Windows\System32\svchost.exe -k LocalServicePeerNet
    F:\Windows\SysWOW64\DllHost.exe
    F:\Windows\servicing\TrustedInstaller.exe
    F:\Program Files (x86)\Mozilla Firefox 3.6 Beta 4\firefox.exe
    F:\Windows\system32\sppsvc.exe
    F:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
    F:\Windows\System32\svchost.exe -k secsvcs
    F:\Windows\system32\msiexec.exe
    F:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
    F:\Windows\system32\svchost.exe -k SDRSVC
    F:\Windows\SysWOW64\NOTEPAD.EXE
    F:\Windows\system32\wuauclt.exe
    F:\Windows\system32\SearchFilterHost.exe
    F:\Users\John\Downloads\dds.com
    F:\Windows\system32\conhost.exe
    F:\Windows\system32\wbem\wmiprvse.exe

    ============== Pseudo HJT Report ===============

    uStart Page = hxxp://www.google.ca
    mLocal Page = f:\windows\syswow64\blank.htm
    uInternet Settings,ProxyOverride = *.local
    mWinlogon: Userinit=userinit.exe
    BHO: ContributeBHO Class: {074c1dc5-9320-4a9a-947d-c042949c6216} - f:\program files (x86)\adobe\/Adobe Contribute CS4/contributeieplugin.dll
    BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - f:\program files (x86)\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
    BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
    BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - f:\program files (x86)\common files\microsoft shared\windows live\WindowsLiveLogin.dll
    BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - f:\program files (x86)\common files\adobe\acrobat\activex\AcroIEFavClient.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - f:\program files (x86)\java\jre6\bin\jp2ssv.dll
    BHO: SmartSelect Class: {f4971ee7-daa0-4053-9964-665d8ee6a077} - f:\program files (x86)\common files\adobe\acrobat\activex\AcroIEFavClient.dll
    TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - f:\program files (x86)\common files\adobe\acrobat\activex\AcroIEFavClient.dll
    TB: Contribute Toolbar: {517bdde4-e3a7-4570-b21e-2b52b6139fc7} - f:\program files (x86)\adobe\/Adobe Contribute CS4/contributeieplugin.dll
    TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
    uRun: [Sidebar] f:\program files\windows sidebar\sidebar.exe /autoRun
    uRun: [SUPERAntiSpyware] f:\program files\superantispyware\SUPERAntiSpyware.exe
    uRun: [AdobeBridge]
    uRun: [SandboxieControl] "f:\program files\sandboxie\SbieCtrl.exe"
    uRun: [igndlm.exe] f:\program files (x86)\download manager\DLM.exe /windowsstart /startifwork
    uRun: [Google Update] "f:\users\john\appdata\local\google\update\GoogleUpdate.exe" /c
    mRun: [<NO NAME>]
    mRun: [AsioThk32Reg] REGSVR32.EXE /S CTASIO.DLL
    mRun: [CTHelper] CTHELPER.EXE
    mRun: [CTxfiHlp] CTXFIHLP.EXE
    mRun: [AsioReg] REGSVR32 /S CTASIO.DLL
    mRun: [IObit Security 360] "f:\program files (x86)\iobit\iobit security 360\IS360tray.exe" /autostart
    mRun: [QuickTime Task] "f:\program files (x86)\quicktime\QTTask.exe" -atboottime
    mRun: [iTunesHelper] "f:\program files (x86)\itunes\iTunesHelper.exe"
    mRun: [SunJavaUpdateSched] "f:\program files (x86)\common files\java\java update\jusched.exe"
    dRun: [DevconDefaultDB] f:\windows\system32\READREG /SILENT /FAIL=1
    StartupFolder: f:\users\john\appdata\roaming\microsoft\windows\start menu\programs\startup\CurseClientStartup.ccip
    mPolicies-explorer: NoActiveDesktop = 1 (0x1)
    mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
    mPolicies-explorer: ForceActiveDesktopOn = 0 (0x0)
    mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
    mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
    mPolicies-system: EnableLUA = 0 (0x0)
    mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
    mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
    IE: Append Link Target to Existing PDF - f:\program files (x86)\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    IE: Append to Existing PDF - f:\program files (x86)\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppend.html
    IE: Convert Link Target to Adobe PDF - f:\program files (x86)\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    IE: Convert to Adobe PDF - f:\program files (x86)\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECapture.html
    IE: {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - f:\program files (x86)\pokerstars\PokerStarsUpdate.exe
    IE: {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - f:\program files (x86)\pokerstars.net\PokerStarsUpdate.exe
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    TCP: {C90D13F0-37A5-4059-B460-383044C540E5} = 64.59.144.92,64.59.144.93
    Notify: !SASWinLogon - f:\program files (x86)\superantispyware\SASWINLO.dll
    SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - f:\program files (x86)\superantispyware\SASSEH.DLL

    ================= FIREFOX ===================

    FF - ProfilePath - f:\users\john\appdata\roaming\mozilla\firefox\profiles\2u5rgnob.default\
    FF - plugin: f:\program files (x86)\download manager\npfpdlm.dll
    FF - plugin: f:\program files (x86)\java\jre6\bin\new_plugin\npdeployJava1.dll
    FF - plugin: f:\program files (x86)\tabletplugins\npwacom.dll
    FF - plugin: f:\users\john\appdata\local\google\update\1.2.183.29\npGoogleOneClick8.dll
    FF - plugin: f:\windows\syswow64\macromed\flash\NPSWF32.dll
    FF - HiddenExtension: Java Console: No Registry Reference - f:\program files (x86)\mozilla firefox 3.6 beta 4\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
    FF - HiddenExtension: Java Console: No Registry Reference - f:\program files (x86)\mozilla firefox 3.6 beta 4\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}
    FF - HiddenExtension: Java Console: No Registry Reference - f:\program files (x86)\mozilla firefox 3.6 beta 4\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
    FF - HiddenExtension: Java Console: No Registry Reference - f:\program files (x86)\mozilla firefox 3.6 beta 4\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}

    ---- FIREFOX POLICIES ----
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("ui.use_native_colors", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("ui.use_native_popup_windows", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.proxy.type", 5);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.buffer.cache.count", 24);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("network.buffer.cache.size", 4096);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("svg.smil.enabled", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("browser.formfill.debug", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\all.js - pref("accelerometer.enabled", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
    f:\program files (x86)\mozilla firefox 3.6 beta 4\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);

    ============= SERVICES / DRIVERS ===============

    R0 PxHlpa64;PxHlpa64;f:\windows\system32\drivers\pxhlpa64.sys --> f:\windows\system32\drivers\PxHlpa64.sys [?]
    R1 SASDIFSV;SASDIFSV;f:\program files\superantispyware\sasdifsv64.sys [2010-2-17 14920]
    R1 SASKUTIL;SASKUTIL;f:\program files\superantispyware\saskutil64.sys [2010-2-17 12360]
    R2 !SASCORE;SAS Core Service;f:\program files\superantispyware\SASCore64.exe [2010-6-29 128752]
    R2 cpuz134;cpuz134;\??\f:\windows\system32\drivers\cpuz134_x64.sys --> f:\windows\system32\drivers\cpuz134_x64.sys [?]
    R2 ekrn;ESET Service;f:\program files\eset\eset nod32 antivirus\x86\ekrn.exe [2009-2-6 727720]
    R2 epfwwfpr;epfwwfpr;f:\windows\system32\drivers\epfwwfpr.sys --> f:\windows\system32\drivers\epfwwfpr.sys [?]
    R2 IS360service;IS360service;f:\program files (x86)\iobit\iobit security 360\is360srv.exe [2010-3-3 312152]
    R2 nlscc;Nalpeiron X64 Service;f:\windows\system32\nlsinterface.exe --> f:\windows\system32\nlsInterface.exe [?]
    R2 TabletServiceWacom;TabletServiceWacom;f:\windows\system32\wacom_tablet.exe --> f:\windows\system32\Wacom_Tablet.exe [?]
    R3 SbieDrv;SbieDrv;f:\program files\sandboxie\SbieDrv.sys [2010-2-3 134760]
    R3 Spyder3;Datacolor Spyder3;f:\windows\system32\drivers\spyder3.sys --> f:\windows\system32\drivers\Spyder3.sys [?]
    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;f:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;f:\windows\microsoft.net\framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
    S3 COMMONFX;COMMONFX;f:\windows\system32\drivers\commonfx.sys --> f:\windows\system32\drivers\COMMONFX.SYS [?]
    S3 copperhd;Razer Copperhead Driver;f:\windows\system32\drivers\copperhd.sys --> f:\windows\system32\drivers\copperhd.sys [?]
    S3 CTAUDFX;CTAUDFX;f:\windows\system32\drivers\ctaudfx.sys --> f:\windows\system32\drivers\CTAUDFX.SYS [?]
    S3 CTERFXFX;CTERFXFX;f:\windows\system32\drivers\cterfxfx.sys --> f:\windows\system32\drivers\CTERFXFX.SYS [?]
    S3 CTSBLFX;CTSBLFX;f:\windows\system32\drivers\ctsblfx.sys --> f:\windows\system32\drivers\CTSBLFX.SYS [?]
    S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;f:\program files\common files\macrovision shared\flexnet publisher\FNPLicensingService64.exe [2009-10-17 1038088]
    S3 PSI;PSI;f:\windows\system32\drivers\psi_mf.sys --> f:\windows\system32\drivers\psi_mf.sys [?]
    S3 RivaTuner64;RivaTuner64;f:\program files (x86)\rivatuner v2.24 msi master overclocking arena 2009 edition\RivaTuner64.sys [2009-8-22 19952]
    S3 SASENUM;SASENUM;f:\program files (x86)\superantispyware\SASENUM.SYS [2009-10-12 12872]
    S3 SwitchBoard;Adobe SwitchBoard;f:\program files (x86)\common files\adobe\switchboard\SwitchBoard.exe [2010-2-19 517096]
    S3 USBAAPL64;Apple Mobile USB Driver;f:\windows\system32\drivers\usbaapl64.sys --> f:\windows\system32\drivers\usbaapl64.sys [?]
    S3 wacmoumonitor;Wacom Mode Helper;f:\windows\system32\drivers\wacmoumonitor.sys --> f:\windows\system32\drivers\wacmoumonitor.sys [?]
    S3 WatAdminSvc;Windows Activation Technologies Service;f:\windows\system32\wat\watadminsvc.exe --> f:\windows\system32\wat\WatAdminSvc.exe [?]
    S4 Adobe Version Cue CS4;Adobe Version Cue CS4;f:\program files (x86)\common files\adobe\adobe version cue cs4\server\bin\VersionCueCS4.exe [2008-8-15 284016]

    =============== Created Last 30 ================

    2010-09-28 13:26 <DIR> --d----- f:\program files (x86)\Trend Micro
    2010-09-28 12:14 <DIR> --d----- f:\windows\system32\drivers\avg
    2010-09-28 12:05 <DIR> --d-h--- F:\$AVG
    2010-09-28 12:04 <DIR> --d----- f:\programdata\avg9
    2010-09-28 12:04 <DIR> --d----- f:\program files (x86)\AVG
    2010-09-28 12:04 <DIR> --d----- f:\progra~3\avg9
    2010-09-16 22:57 1,166,772 a---h--- f:\users\john\appdata\roaming\RBXML550.dll
    2010-09-16 22:57 1,037,824 a---h--- f:\users\john\appdata\roaming\RBScript600.dll
    2010-09-16 22:57 653,924 a---h--- f:\users\john\appdata\roaming\RBSSLSocket550.dll
    2010-09-16 22:57 481,792 a---h--- f:\users\john\appdata\roaming\RBDB550.dll
    2010-09-16 22:57 241,664 a---h--- f:\users\john\appdata\roaming\EHPng2601.dll
    2010-09-16 22:57 188,416 a---h--- f:\users\john\appdata\roaming\EHJpg2601.dll
    2010-09-16 22:57 114,688 a---h--- f:\users\john\appdata\roaming\EHTreeView3551.DLL
    2010-09-16 22:57 90,112 a---h--- f:\users\john\appdata\roaming\EHEffects5901.dll
    2010-09-16 22:57 88,576 a---h--- f:\users\john\appdata\roaming\rbap550.dll
    2010-09-16 22:57 86,016 a---h--- f:\users\john\appdata\roaming\EHRotation5901.dll
    2010-09-16 22:57 86,016 a---h--- f:\users\john\appdata\roaming\EHObjectCollection4501.dll
    2010-09-16 22:57 77,824 a---h--- f:\users\john\appdata\roaming\EHGammaLib3101.dll
    2010-09-16 22:57 73,728 a---h--- f:\users\john\appdata\roaming\RBRegEx550.dll
    2010-09-16 22:57 73,728 a---h--- f:\users\john\appdata\roaming\EHZStream9201.dll
    2010-09-16 22:57 73,728 a---h--- f:\users\john\appdata\roaming\EHEffects35901.dll
    2010-09-16 22:57 69,632 a---h--- f:\users\john\appdata\roaming\EHTypes5651.dll
    2010-09-16 22:57 69,632 a---h--- f:\users\john\appdata\roaming\EHTLStreams5651.dll
    2010-09-16 22:57 69,632 a---h--- f:\users\john\appdata\roaming\EHObjectArray4501.dll
    2010-09-16 22:57 69,632 a---h--- f:\users\john\appdata\roaming\EHInterfaces4501.dll
    2010-09-16 22:57 52,736 a---h--- f:\users\john\appdata\roaming\EHCalCtrl4001.dll
    2010-09-16 22:57 39,936 a---h--- f:\users\john\appdata\roaming\RBShell555.dll
    2010-09-16 22:57 32,256 a---h--- f:\users\john\appdata\roaming\EHLocation5721.dll
    2010-09-16 22:57 30,720 a---h--- f:\users\john\appdata\roaming\RBInternetEncodings600.dll
    2010-09-16 22:57 30,208 a---h--- f:\users\john\appdata\roaming\RBMD5550.dll
    2010-09-16 22:57 30,208 a---h--- f:\users\john\appdata\roaming\EHDateCtrl3561.dll
    2010-09-16 22:57 24,576 a---h--- f:\users\john\appdata\roaming\EHMacBinaryStream9201.dll
    2010-09-16 22:57 22,528 a---h--- f:\users\john\appdata\roaming\EHTimeCtrl3501.DLL
    2010-09-16 22:53 <DIR> --d----- f:\users\john\appdata\roaming\AstroPlanner
    2010-09-16 22:53 <DIR> --d----- f:\programdata\AstroPlanner
    2010-09-16 22:53 <DIR> --d----- f:\program files (x86)\AstroPlanner
    2010-09-16 22:53 <DIR> --d----- f:\progra~3\AstroPlanner
    2010-09-14 13:47 <DIR> --d----- f:\program files (x86)\PokerStars
    2010-09-08 22:12 <DIR> --d----- f:\programdata\NVIDIA Corporation
    2010-09-08 22:12 <DIR> --d----- f:\progra~3\NVIDIA Corporation
    2010-09-04 12:08 <DIR> --d----- f:\program files (x86)\iTunes

    ==================== Find3M ====================

    2010-09-02 21:20 125,660 a---h--- f:\windows\system32\mlfcache.dat
    2010-07-28 23:30 82,944 a------- f:\windows\system32\iccvid.dll
    2010-07-17 05:00 423,656 a------- f:\windows\system32\deployJava1.dll
    2010-07-10 05:38 14,092,904 a------- f:\windows\system32\nvoglv32.dll
    2010-07-10 05:38 10,267,240 a------- f:\windows\system32\nvcompiler.dll
    2010-07-10 05:38 9,818,728 a------- f:\windows\system32\nvd3dum.dll
    2010-07-10 05:38 5,107,816 a------- f:\windows\system32\nvwgf2um.dll
    2010-07-10 05:38 4,553,832 a------- f:\windows\system32\nvcuda.dll
    2010-07-10 05:38 2,892,904 a------- f:\windows\system32\nvcuvid.dll
    2010-07-10 05:38 2,506,344 a------- f:\windows\system32\nvcuvenc.dll
    2010-07-10 05:38 1,625,192 a------- f:\windows\system32\nvapi.dll
    2010-07-10 05:38 314,984 a------- f:\windows\system32\nvdecodemft.dll
    2010-07-10 05:38 56,936 a------- f:\windows\system32\OpenCL.dll
    2010-07-06 22:52 135,168 a------- f:\windows\apppatch\apppatch64\AcXtrnal.dll
    2010-07-06 22:52 347,648 a------- f:\windows\apppatch\apppatch64\AcLayers.dll
    2009-07-13 22:37 291,294 a------- f:\windows\inf\perflib\0409\perfi.dat
    2009-07-13 22:37 291,294 a------- f:\windows\inf\perflib\0409\perfh.dat
    2009-07-13 22:37 31,548 a------- f:\windows\inf\perflib\0409\perfd.dat
    2009-07-13 22:37 31,548 a------- f:\windows\inf\perflib\0409\perfc.dat
    2009-07-13 21:54 174 a--sh--- f:\program files (x86)\desktop.ini
    2009-07-13 18:00 291,294 a------- f:\windows\inf\perflib\0000\perfi.dat
    2009-07-13 18:00 291,294 a------- f:\windows\inf\perflib\0000\perfh.dat
    2009-07-13 18:00 31,548 a------- f:\windows\inf\perflib\0000\perfd.dat
    2009-07-13 18:00 31,548 a------- f:\windows\inf\perflib\0000\perfc.dat
    2009-06-10 13:44 9,633,792 a--shr-- f:\windows\fonts\StaticCache.dat
    2010-01-04 14:17 16,384 a--sh--- f:\windows\serviceprofiles\networkservice\appdata\local\temp\cookies\index.dat
    2010-01-04 14:17 16,384 a--sh--- f:\windows\serviceprofiles\networkservice\appdata\local\temp\history\history.ie5\index.dat
    2010-01-04 14:17 32,768 a--sh--- f:\windows\serviceprofiles\networkservice\appdata\local\temp\temporary internet files\content.ie5\index.dat
    2009-07-13 21:55 16,384 a--sh--- f:\windows\system32\config\systemprofile\appdata\local\microsoft\windows\history\history.ie5\index.dat
    2009-07-13 21:55 32,768 a--sh--- f:\windows\system32\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\index.dat
    2009-07-13 21:55 16,384 a--sh--- f:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\index.dat
    2009-07-13 21:55 16,384 a--sh--- f:\windows\syswow64\config\systemprofile\appdata\local\microsoft\windows\history\history.ie5\index.dat
    2009-07-13 21:55 32,768 a--sh--- f:\windows\syswow64\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\index.dat
    2009-07-13 21:55 16,384 a--sh--- f:\windows\syswow64\config\systemprofile\appdata\roaming\microsoft\windows\cookies\index.dat
    2009-07-13 18:39 398,848 a--sh--- f:\windows\winsxs\amd64_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_4d4d1f2f696639a2\WinMail.exe
    2009-07-13 18:14 396,800 a--sh--- f:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe

    ============= FINISH: 14:15:35.94 ===============
     

    Attached Files:

    • ark.txt
      File size:
      458 bytes
      Views:
      0
As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Similar Threads - freezing ctrl delete
  1. chickie225
    Replies:
    9
    Views:
    597
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/953042

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice