1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

help with leftover virus removal, Brontok and Rakyat kelaperan

Discussion in 'Virus & Other Malware Removal' started by scaleblue, Sep 14, 2011.

Thread Status:
Not open for further replies.
  1. scaleblue

    scaleblue Thread Starter

    Joined:
    Sep 13, 2011
    Messages:
    1
    Before when I was not as smart, I downloaded junk from not legit websites
    the worst was STOP!zilla from Piratebay.
    It gave me a rakyat kelaperan and brontok virus.
    It took me short time to be rid of it luckily because i had CCleaner .
    I downloaded AVG from Cnet and it found 1000+ worms I know now not to download bad things, but i still have leftover weird files and folders from the viruses
    (and i dont have Stop!zilla it was never there in the 1st place only a virus)

    AVG 2011, Ccleaner
    TDSSkiller by kaspersky( has never found anything ever)
    just downloaded Hijackthis

    Please look at my computer specs 1st



    here is my Hijackthis log

    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 9:44:47 PM, on 9/13/2011
    Platform: Windows 7 (WinNT 6.00.3504)
    MSIE: Internet Explorer v9.00 (9.00.8112.16421)
    Boot mode: Normal

    Running processes:
    C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
    C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://combatarms.nexon.net/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - URLSearchHook: (no name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - (no file)
    R3 - URLSearchHook: MyMatch_v2b Toolbar - {b860e266-f38a-4e23-a639-0fda18b1beaa} - C:\Program Files (x86)\MyMatch_v2b\prxtbMyMa.dll (file missing)
    R3 - URLSearchHook: (no name) - {edc8d02a-7ae5-1094-ddc0-16d2381944d0} - (no file)
    R3 - URLSearchHook: (no name) - - (no file)
    F2 - REG:system.ini: UserInit=c:\windows\syswow64\userinit.exe,
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
    O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngin.dll
    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: (no name) - {9D425283-D487-4337-BAB6-AB8354A81457} - (no file)
    O2 - BHO: DCA - {B49699FC-1665-4414-A1CB-C4A2A4A13EEC} - C:\Program Files (x86)\Common Files\FreeCause\DCA\dca-bho.dll
    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
    O2 - BHO: MyMatch_v2b - {b860e266-f38a-4e23-a639-0fda18b1beaa} - C:\Program Files (x86)\MyMatch_v2b\prxtbMyMa.dll (file missing)
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    O3 - Toolbar: (no name) - {9D425283-D487-4337-BAB6-AB8354A81457} - (no file)
    O3 - Toolbar: MyMatch_v2b Toolbar - {b860e266-f38a-4e23-a639-0fda18b1beaa} - C:\Program Files (x86)\MyMatch_v2b\prxtbMyMa.dll (file missing)
    O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngin.dll
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles(x86)%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles(x86)%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-21-4013351241-2695566010-2524397551-1011\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
    O4 - HKUS\S-1-5-21-4013351241-2695566010-2524397551-1011\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
    O4 - Startup: Xfire.lnk = C:\Program Files (x86)\Xfire\Xfire.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
    O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    O23 - Service: Apple OS Switch Manager (AppleOSSMgr) - Unknown owner - C:\Windows\system32\AppleOSSMgr.exe (file missing)
    O23 - Service: Apple Time Service (AppleTimeSrv) - Unknown owner - C:\Windows\system32\AppleTimeSrv.exe (file missing)
    O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
    O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
    O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
    O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --
    End of file - 10775 bytes




    _______________________________________________________________________________


    These are the processes that are running. idk If any of these are bad.
    Bootcamp.exe
    csrss.exe
    dwm.exe
    explorer.exe
    firefox.exe
    hijackthis.exe
    nvtray.exe NVidia control panel i think
    nvvsvc.exe NVidia control panel i think
    nvxdsync.exe NVidia control panel i think
    plugin-container.exe
    taskhost.exe
    taskmgr.exe
    winlogon.exe

    Is there a program that can check these to sea if any bad programs are merged with them?

    Also when I 1st loaded Hijackthis it was not in administrator mode so it said i should check this file
    i did and it said some bad websites that i have never been too.


    ----------------------------------------------------------------------
    This is what the file had written in it...???
    ---------------------------------------------

    127.0.0.1 localhost #***Inserted By STOPzilla***
    # Copyright (c) 1993-2009 Microsoft Corp.
    #
    # This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
    #
    # This file contains the mappings of IP addresses to host names. Each
    # entry should be kept on an individual line. The IP address should
    # be placed in the first column followed by the corresponding host name.
    # The IP address and the host name should be separated by at least one
    # space.
    #
    # Additionally, comments (such as these) may be inserted on individual
    # lines or following the machine name denoted by a '#' symbol.
    #
    # For example:
    #
    # 102.54.94.97 rhino.acme.com # source server
    # 38.25.63.10 x.acme.com # x client host

    # localhost name resolution is handled within DNS itself.
    # 127.0.0.1 localhost
    # ::1 localhost
    127.0.0.1 2005-search.com # ***Inserted By STOPzilla***
    127.0.0.1 600pics.com # ***Inserted By STOPzilla***
    127.0.0.1 a1.interclick.com # ***Inserted By STOPzilla***
    127.0.0.1 absolutepics.net # ***Inserted By STOPzilla***
    127.0.0.1 ad.yieldmanager.com # ***Inserted By STOPzilla***
    127.0.0.1 all-tgp.org # ***Inserted By STOPzilla***
    127.0.0.1 all-websearch.com # ***Inserted By STOPzilla***
    127.0.0.1 apps.deskwizz.com # ***Inserted By STOPzilla***
    127.0.0.1 awmdabest.com # ***Inserted By STOPzilla***
    127.0.0.1 b.casalemedia.com # ***Inserted By STOPzilla***
    127.0.0.1 bailefunk.com # ***Inserted By STOPzilla***
    127.0.0.1 best4all.net # ***Inserted By STOPzilla***
    127.0.0.1 besthardcore.net # ***Inserted By STOPzilla***
    127.0.0.1 bn.i-ru.net # ***Inserted By STOPzilla***
    127.0.0.1 bundleware.com # ***Inserted By STOPzilla***
    127.0.0.1 campaigns.interclick.com # ***Inserted By STOPzilla***
    127.0.0.1 code.jcash.biz # ***Inserted By STOPzilla***
    127.0.0.1 content.dollarrevenue.com # ***Inserted By STOPzilla***
    127.0.0.1 content.exetraffic.com # ***Inserted By STOPzilla***
    127.0.0.1 coolwebsearch.com # ***Inserted By STOPzilla***
    127.0.0.1 cumhereteens.com # ***Inserted By STOPzilla***
    127.0.0.1 dedmazai.com # ***Inserted By STOPzilla***
    127.0.0.1 download.abetterinternet.com # ***Inserted By STOPzilla***
    127.0.0.1 faccesborrate.com # ***Inserted By STOPzilla***
    127.0.0.1 flavinha.com # ***Inserted By STOPzilla***
    127.0.0.1 fullbizzone.com # ***Inserted By STOPzilla***
    127.0.0.1 game4all.biz # ***Inserted By STOPzilla***
    127.0.0.1 granjerascachondas.com # ***Inserted By STOPzilla***
    127.0.0.1 heretofind.com # ***Inserted By STOPzilla***
    127.0.0.1 hqthumbz.com # ***Inserted By STOPzilla***
    127.0.0.1 it.online-more.com # ***Inserted By STOPzilla***
    127.0.0.1 lust-mature.com # ***Inserted By STOPzilla***
    127.0.0.1 mikos.paraisoasiatico.com # ***Inserted By STOPzilla***
    127.0.0.1 more-pages.com # ***Inserted By STOPzilla***
    127.0.0.1 msmn.com # ***Inserted By STOPzilla***
    127.0.0.1 musah.info # ***Inserted By STOPzilla***
    127.0.0.1 newsh.com # ***Inserted By STOPzilla***
    127.0.0.1 nude-teen-bodies.com # ***Inserted By STOPzilla***
    127.0.0.1 onlyhotlinks.com # ***Inserted By STOPzilla***
    127.0.0.1 on-search.com # ***Inserted By STOPzilla***
    127.0.0.1 picshunter.us # ***Inserted By STOPzilla***
    127.0.0.1 picslab.com # ***Inserted By STOPzilla***
    127.0.0.1 redirect.msupdate.net # ***Inserted By STOPzilla***
    127.0.0.1 rogalik.net # ***Inserted By STOPzilla***
    127.0.0.1 search4www.com # ***Inserted By STOPzilla***
    127.0.0.1 searchforit.com # ***Inserted By STOPzilla***
    127.0.0.1 searchx.cc # ***Inserted By STOPzilla***
    127.0.0.1 sex-pics.biz # ***Inserted By STOPzilla***
    127.0.0.1 sp2admin.biz # ***Inserted By STOPzilla***
    127.0.0.1 surubanet.com # ***Inserted By STOPzilla***
    127.0.0.1 teen-biz.com # ***Inserted By STOPzilla***
    127.0.0.1 teen-fantazi.com # ***Inserted By STOPzilla***
    127.0.0.1 teenygirlshome.com # ***Inserted By STOPzilla***
    127.0.0.1 traffbest.biz # ***Inserted By STOPzilla***
    127.0.0.1 traffbucks.biz # ***Inserted By STOPzilla***
    127.0.0.1 traffmoney.biz # ***Inserted By STOPzilla***
    127.0.0.1 ukstories.net # ***Inserted By STOPzilla***
    127.0.0.1 ultra-search.biz # ***Inserted By STOPzilla***
    127.0.0.1 vivisexy.com # ***Inserted By STOPzilla***
    127.0.0.1 wearehosters.com # ***Inserted By STOPzilla***
    127.0.0.1 www.0websearch.com # ***Inserted By STOPzilla***
    127.0.0.1 www.600pics.com # ***Inserted By STOPzilla***
    127.0.0.1 www.all-tgp.org # ***Inserted By STOPzilla***
    127.0.0.1 www.all-websearch.com # ***Inserted By STOPzilla***
    127.0.0.1 www.bailefunk.com # ***Inserted By STOPzilla***
    127.0.0.1 www.best4all.net # ***Inserted By STOPzilla***
    127.0.0.1 www.besthardcore.net # ***Inserted By STOPzilla***
    127.0.0.1 www.bundleware.com # ***Inserted By STOPzilla***
    127.0.0.1 www.coolwebsearch.com # ***Inserted By STOPzilla***
    127.0.0.1 www.dedmazai.com # ***Inserted By STOPzilla***
    127.0.0.1 www.flavinha.com # ***Inserted By STOPzilla***
    127.0.0.1 www.granjerascachondas.com # ***Inserted By STOPzilla***
    127.0.0.1 www.heretofind.com # ***Inserted By STOPzilla***
    127.0.0.1 www.hqthumbz.com # ***Inserted By STOPzilla***
    127.0.0.1 www.lust-mature.com # ***Inserted By STOPzilla***
    127.0.0.1 www.mikos.paraisoasiatico.com # ***Inserted By STOPzilla***
    127.0.0.1 www.more-pages.com # ***Inserted By STOPzilla***
    127.0.0.1 www.msmn.com # ***Inserted By STOPzilla***
    127.0.0.1 www.newsh.com # ***Inserted By STOPzilla***
    127.0.0.1 www.nude-teens-bodies.com # ***Inserted By STOPzilla***
    127.0.0.1 www.onlyhotlinks.com # ***Inserted By STOPzilla***
    127.0.0.1 www.on-search.com # ***Inserted By STOPzilla***
    127.0.0.1 www.picshunter.us # ***Inserted By STOPzilla***
    127.0.0.1 www.picslab.com # ***Inserted By STOPzilla***
    127.0.0.1 www.procounter.biz # ***Inserted By STOPzilla***
    127.0.0.1 www.search4www.com # ***Inserted By STOPzilla***
    127.0.0.1 www.searchforit.com # ***Inserted By STOPzilla***
    127.0.0.1 www.searchx.cc # ***Inserted By STOPzilla***
    127.0.0.1 www.sex-pics.biz # ***Inserted By STOPzilla***
    127.0.0.1 www.sp2admin.biz # ***Inserted By STOPzilla***
    127.0.0.1 www.surubanet.com # ***Inserted By STOPzilla***
    127.0.0.1 www.teen-biz.com # ***Inserted By STOPzilla***
    127.0.0.1 www.teen-fantazi.com # ***Inserted By STOPzilla***
    127.0.0.1 www.teenygirlshome.com # ***Inserted By STOPzilla***
    127.0.0.1 www.traff4ppc.biz # ***Inserted By STOPzilla***
    127.0.0.1 www.vivisexy.com # ***Inserted By STOPzilla***
    127.0.0.1 www.wearehosters.com # ***Inserted By STOPzilla***
    127.0.0.1 www.ysbweb.com # ***Inserted By STOPzilla***
    127.0.0.1 www.zgallery.us # ***Inserted By STOPzilla***
    127.0.0.1 www.zonebest.com # ***Inserted By STOPzilla***
    127.0.0.1 yhvoo.eseconsult.info # ***Inserted By STOPzilla***
    127.0.0.1 ysbweb.com # ***Inserted By STOPzilla***
    127.0.0.1 zgallery.us # ***Inserted By STOPzilla***
    127.0.0.1 zonebest.com # ***Inserted By STOPzilla***

    I dont know anything about this^.
    ???????


    ------------------------------------------------------------------------------

    I went into my C:\...\users...\appdata\local and found a bunch of weird files named brontok and stuff even after AVG
    here are some of them;
    - Bron.tok.A17.em.bin
    - Bron.tok-17-27 - folder
    - loc.mail.bron.tok - folder
    - ok-sendmail-bron-tok - folder
    - update.17.bron.tok.bin
    - kosong.bron.tok.txt - it says this

    Brontok.A
    By: HVM31
    -- JowoBot #VM Community --

    also a folder called

    Migwiz


    the debug log in it says this


    2011-03-20 22:30:34, Info PANTHR Unable to load global log filter.
    2011-03-20 22:30:34, Info MIGUI Starting the WDS Logger
    2011-03-20 22:30:34, Info MIGUI Set local mode
    2011-03-20 22:30:34, Info MIGUI SetUiMessageStrategy Set local mode
    2011-03-20 22:30:34, Info MIGUI Set local mode
    2011-03-20 22:30:34, Info MIGUI SetUiMessageStrategy Set local mode
    2011-03-20 22:30:34, Info Entering MigCloseCurrentStore method
    2011-03-20 22:30:34, Info Leaving MigCloseCurrentStore method
    2011-03-20 22:30:34, Info MIGUI
    WETInfo: System
    -----------------------------------------

    Computer Name: PAW
    OS Version: 6.1.7600. (Service Pack:0.0)
    Product Name: Windows 7 Ultimate
    BuildLab: 7600.16695.amd64fre.win7_gdr.101026-1503
    Language: en-US
    WET Build version: 6.1.7600
    Connection Pipe version: 0x4a575313
    Connection Handshake version: 1
    Architecture: 64-bit
    Type: FRE
    -----------------------------------------

    2011-03-20 22:30:34, Info Entering MigStartupOnline method
    2011-03-20 22:30:34, Info [0x0803ac] MIG Initializing online WinNT platform (Read/Write)
    2011-03-20 22:30:34, Info MIG Platform is using admin privileges
    2011-03-20 22:30:34, Info [0x0803df] MIG Adding direct mapping from HKLM to HKEY_LOCAL_MACHINE (R/W)
    2011-03-20 22:30:34, Info [0x0803e1] MIG Successfully mapped HKLM
    2011-03-20 22:30:34, Info [0x0803df] MIG Adding direct mapping from HKU to HKEY_USERS (R/W)
    2011-03-20 22:30:34, Info [0x0803e1] MIG Successfully mapped HKU
    2011-03-20 22:30:35, Info [0x08040e] MIG State data store is available.
    2011-03-20 22:30:35, Info [0x0803b4] MIG COnlineWinNTPlatform: ComputerName=PAW
    2011-03-20 22:30:36, Info [0x0803b5] MIG COnlineWinNTPlatform: Get Machine Sid S-1-5-21-4013351241-2695566010-2524397551
    2011-03-20 22:30:36, Info MIG COnlineWinNTPlatform::GetMachineGuid - return value -> {91557abc-ea03-4f50-87dd-dadb9b2c371e}
    2011-03-20 22:30:36, Info [0x0803b8] MIG Processing profile: C:\Windows\system32\config\systemprofile
    2011-03-20 22:30:36, Info [0x0803bf] MIG User profile HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18 excluded because SID S-1-5-18 is excluded by default.
    2011-03-20 22:30:36, Info [0x0803b8] MIG Processing profile: C:\Windows\ServiceProfiles\LocalService
    2011-03-20 22:30:36, Info [0x0803bd] MIG Cannot get user SID for profile HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-19
    2011-03-20 22:30:36, Info [0x0803b8] MIG Processing profile: C:\Windows\ServiceProfiles\NetworkService
    2011-03-20 22:30:36, Info [0x0803bd] MIG Cannot get user SID for profile HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20
    2011-03-20 22:30:36, Info [0x0803b8] MIG Processing profile: C:\Users\scaleblue
    2011-03-20 22:30:36, Info MIG Skipping temporary user profile HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-4013351241-2695566010-2524397551-1000
    2011-03-20 22:30:36, Info [0x0803b8] MIG Processing profile: C:\Users\Guest
    2011-03-20 22:30:36, Info MIG Skipping temporary user profile HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-4013351241-2695566010-2524397551-501
    2011-03-20 22:30:36, Info [0x0803b8] MIG Processing profile: C:\Windows\system32\config\systemprofile
    2011-03-20 22:30:36, Info [0x0803bf] MIG User profile HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18 excluded because SID S-1-5-18 is excluded by default.
    2011-03-20 22:30:36, Info [0x0803b8] MIG Processing profile: C:\Windows\ServiceProfiles\LocalService
    2011-03-20 22:30:36, Info [0x0803bd] MIG Cannot get user SID for profile HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-19
    2011-03-20 22:30:36, Info [0x0803b8] MIG Processing profile: C:\Windows\ServiceProfiles\NetworkService
    2011-03-20 22:30:36, Info [0x0803bd] MIG Cannot get user SID for profile HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20
    2011-03-20 22:30:36, Info [0x0803b8] MIG Processing profile: C:\Users\scaleblue
    2011-03-20 22:30:36, Info [0x0803df] MIG Adding direct mapping from HKCU to HKEY_USERS\S-1-5-21-4013351241-2695566010-2524397551-1000 (R/W)
    2011-03-20 22:30:36, Info [0x0803e1] MIG Successfully mapped HKCU
    2011-03-20 22:30:36, Info [0x0803df] MIG Adding direct mapping from HKCU\Software\Classes to HKEY_USERS\S-1-5-21-4013351241-2695566010-2524397551-1000_Classes (R/W)
    2011-03-20 22:30:36, Info [0x0803e1] MIG Successfully mapped HKCU\Software\Classes
    2011-03-20 22:30:36, Info [0x0803e6] MIG Removing mapping for HKCU\Software\Classes
    2011-03-20 22:30:36, Info [0x0803e7] MIG Successfully unmapped HKCU\Software\Classes
    2011-03-20 22:30:36, Info [0x0803e6] MIG Removing mapping for HKCU
    2011-03-20 22:30:36, Info [0x0803e7] MIG Successfully unmapped HKCU
    2011-03-20 22:30:36, Info [0x0803b8] MIG Processing profile: C:\Users\Guest
    2011-03-20 22:30:36, Info [0x0803e2] MIG Adding indirect mapping from HKCU to <C:\Users\Guest\NTUSER.DAT> loaded at HKEY_USERS\S-1-5-21-4013351241-2695566010-2524397551-501 (R/W)
    2011-03-20 22:30:36, Info [0x0803e4] MIG Successfully mapped HKCU
    2011-03-20 22:30:36, Info [0x0803e2] MIG Adding indirect mapping from HKCU\Software\Classes to <C:\Users\Guest\AppData\Local\Microsoft\Windows\UsrClass.dat> loaded at HKEY_USERS\S-1-5-21-4013351241-2695566010-2524397551-501_Classes (R/W)
    2011-03-20 22:30:36, Info [0x0803e4] MIG Successfully mapped HKCU\Software\Classes
    2011-03-20 22:30:36, Info [0x0803e6] MIG Removing mapping for HKCU\Software\Classes
    2011-03-20 22:30:36, Info [0x0803e7] MIG Successfully unmapped HKCU\Software\Classes
    2011-03-20 22:30:36, Info [0x0803e6] MIG Removing mapping for HKCU
    2011-03-20 22:30:36, Info [0x0803e7] MIG Successfully unmapped HKCU
    2011-03-20 22:30:36, Info MIG Known folder FOLDERID_PublicDownloads: C:\Users\Public\Downloads, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_COMMON_DESKTOPDIRECTORY: C:\Users\Public\Desktop, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_COMMON_DOCUMENTS: C:\Users\Public\Documents, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_COMMON_PROGRAMS: C:\ProgramData\Microsoft\Windows\Start Menu\Programs, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_COMMON_STARTMENU: C:\ProgramData\Microsoft\Windows\Start Menu, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_COMMON_STARTUP: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_COMMON_TEMPLATES: C:\ProgramData\Microsoft\Windows\Templates, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_COMMON_MUSIC: C:\Users\Public\Music, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_COMMON_PICTURES: C:\Users\Public\Pictures, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_COMMON_VIDEO: C:\Users\Public\Videos, default location: Yes
    2011-03-20 22:30:36, Info [0x0803ae] MIG Dumping detected users:
    2011-03-20 22:30:36, Info [0x0803af] MIG Name: Administrator, Domain: PAW, Profile: (NULL), SidString: S-1-5-21-4013351241-2695566010-2524397551-500, ID: USER00000002, IsAdmin: 1, IsBuiltInAdmin: 1, IsDisabled: 1, IsInteractive: 1, Groups: HomeUsers;Administrators
    2011-03-20 22:30:36, Info [0x0803af] MIG Name: Guest, Domain: PAW, Profile: C:\Users\Guest, SidString: S-1-5-21-4013351241-2695566010-2524397551-501, ID: USER00000001, IsAdmin: 0, IsBuiltInAdmin: 0, IsDisabled: 1, IsInteractive: 1, Groups: Guests
    2011-03-20 22:30:36, Info MIG Known folder FOLDERID_Downloads: C:\Users\Guest\Downloads, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_INTERNET_CACHE: C:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_COOKIES: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Cookies, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_DESKTOP: C:\Users\Guest\Desktop, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_DESKTOPDIRECTORY: C:\Users\Guest\Desktop, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_FAVORITES: C:\Users\Guest\Favorites, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_HISTORY: C:\Users\Guest\AppData\Local\Microsoft\Windows\History, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_MYPICTURES: C:\Users\Guest\Pictures, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_MYMUSIC: C:\Users\Guest\Music, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_MYVIDEO: C:\Users\Guest\Videos, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_PERSONAL: C:\Users\Guest\Documents, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_MYDOCUMENTS: C:\Users\Guest\Documents, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_PROGRAMS: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_RECENT: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Recent, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_SENDTO: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\SendTo, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_STARTMENU: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_STARTUP: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_TEMPLATES: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Templates, default location: Yes
    2011-03-20 22:30:36, Info [0x0803af] MIG Name: scaleblue, Domain: PAW, Profile: C:\Users\scaleblue, SidString: S-1-5-21-4013351241-2695566010-2524397551-1000, ID: USER00000000, IsAdmin: 1, IsBuiltInAdmin: 0, IsDisabled: 0, IsInteractive: 1, Groups: HomeUsers;Administrators
    2011-03-20 22:30:36, Info MIG Known folder FOLDERID_Downloads: C:\Users\scaleblue\Downloads, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_INTERNET_CACHE: C:\Users\scaleblue\AppData\Local\Microsoft\Windows\Temporary Internet Files, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_COOKIES: C:\Users\scaleblue\AppData\Roaming\Microsoft\Windows\Cookies, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_DESKTOP: C:\Users\scaleblue\Desktop, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_DESKTOPDIRECTORY: C:\Users\scaleblue\Desktop, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_FAVORITES: C:\Users\scaleblue\Favorites, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_HISTORY: C:\Users\scaleblue\AppData\Local\Microsoft\Windows\History, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_MYPICTURES: C:\Users\scaleblue\Pictures, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_MYMUSIC: C:\Users\scaleblue\Music, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_MYVIDEO: C:\Users\scaleblue\Videos, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_PERSONAL: C:\Users\scaleblue\Documents, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_MYDOCUMENTS: C:\Users\scaleblue\Documents, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_PROGRAMS: C:\Users\scaleblue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_RECENT: C:\Users\scaleblue\AppData\Roaming\Microsoft\Windows\Recent, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_SENDTO: C:\Users\scaleblue\AppData\Roaming\Microsoft\Windows\SendTo, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_STARTMENU: C:\Users\scaleblue\AppData\Roaming\Microsoft\Windows\Start Menu, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_STARTUP: C:\Users\scaleblue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup, default location: Yes
    2011-03-20 22:30:36, Info MIG Known folder CSIDL_TEMPLATES: C:\Users\scaleblue\AppData\Roaming\Microsoft\Windows\Templates, default location: Yes
    2011-03-20 22:30:36, Info [0x0803af] MIG Name: HomeGroupUser$, Domain: PAW, Profile: (NULL), SidString: S-1-5-21-4013351241-2695566010-2524397551-1005, ID: USER00000003, IsAdmin: 0, IsBuiltInAdmin: 0, IsDisabled: 0, IsInteractive: 0, Groups: HomeUsers
    2011-03-20 22:30:36, Info [0x0805a8] MIG Added drive root mapping for 'C:\' (type: 1, file system: 1, bus type: 3, hotplug media: No, hotplug device: No)
    2011-03-20 22:30:36, Info [0x0805a8] MIG Added drive root mapping for 'D:\' (type: 2, file system: 0, bus type: 0, hotplug media: No, hotplug device: No)
    2011-03-20 22:30:36, Info [0x0805a8] MIG Added drive root mapping for 'E:\' (type: 1, file system: 0, bus type: 3, hotplug media: No, hotplug device: No)
    2011-03-20 22:30:36, Info [0x0805a8] MIG Added drive root mapping for 'F:\' (type: 2, file system: 0, bus type: 0, hotplug media: No, hotplug device: No)
    2011-03-20 22:30:36, Info [0x0805a8] MIG Added drive root mapping for 'G:\' (type: 2, file system: 0, bus type: 0, hotplug media: No, hotplug device: No)
    2011-03-20 22:30:36, Info [0x0803e5] MIG Not unmapping HKCU\Software\Classes; it is not mapped
    2011-03-20 22:30:36, Info [0x0803e5] MIG Not unmapping HKCU; it is not mapped
    2011-03-20 22:30:36, Info [0x080411] MIG Setting SMI registry mappings for system context
    2011-03-20 22:30:36, Info MIG This platform supports mandatory labels (LABEL_SECURITY_INFORMATION)
    2011-03-20 22:30:36, Info [0x080485] MIG Initializing OS analysis service (data path = C:\Windows\System32\migwiz)
    2011-03-20 22:30:37, Info [0x080481] MIG Retrieving patterns from C:\Windows\System32\migwiz\SFPAT.INF (section prefix: System)
    2011-03-20 22:30:37, Info [0x080482] MIG Done retrieving patterns from C:\Windows\System32\migwiz\SFPAT.INF
    2011-03-20 22:30:37, Info [0x080481] MIG Retrieving patterns from C:\Windows\System32\migwiz\SFPATW7.INF (section prefix: System)
    2011-03-20 22:30:37, Info [0x080482] MIG Done retrieving patterns from C:\Windows\System32\migwiz\SFPATW7.INF
    2011-03-20 22:30:37, Info [0x080481] MIG Retrieving patterns from C:\Windows\System32\migwiz\SFPAT.INF (section prefix: User)
    2011-03-20 22:30:37, Info [0x080482] MIG Done retrieving patterns from C:\Windows\System32\migwiz\SFPAT.INF
    2011-03-20 22:30:37, Info [0x080481] MIG Retrieving patterns from C:\Windows\System32\migwiz\SFPATW7.INF (section prefix: User)
    2011-03-20 22:30:37, Info [0x080482] MIG Done retrieving patterns from C:\Windows\System32\migwiz\SFPATW7.INF
    2011-03-20 22:30:37, Info [0x080466] MIG Creating list-based system object filter
    2011-03-20 22:30:37, Info [0x080469] MIG Opening file list from file: C:\Windows\System32\migwiz\SFLISTW7.DAT
    2011-03-20 22:30:37, Warning [0x08046b] MIG Cannot expand LDID in file list record: 10.old\windows\system32\locale.nls
    2011-03-20 22:30:37, Warning [0x08046b] MIG Cannot expand LDID in file list record: 10.old\windows\winsxs\amd64_microsoft-windows-i..nal-core-locale-nls_31bf3856ad364e35_6.1.6913.0_none_0ea7705d61bb185f\locale.nls
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows): en-US
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\adam).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\adfs\bin).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\adfs\bin\ref).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\adws).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\application compatibility scripts).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\apppatch): en-US
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\apppatch\apppatch64).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\boot\dvd\efi): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\boot\dvd\pcat): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\boot\efi): cs-CZ da-DK de-DE el-GR en-US es-ES fi-FI fr-FR hu-HU it-IT ja-JP ko-KR nb-NO nl-NL pl-PL pt-BR pt-PT ru-RU sv-SE tr-TR zh-CN zh-HK zh-TW
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\boot\pcat): cs-CZ da-DK de-DE el-GR en-US es-ES fi-FI fr-FR hu-HU it-IT ja-JP ko-KR nb-NO nl-NL pl-PL pt-BR pt-PT ru-RU sv-SE tr-TR zh-CN zh-HK zh-TW
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\boot\pxe).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\branding\basebrd): en-US
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\cluster).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\scheduled\maintenance): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\aero): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\audio): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\device): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\homegroup): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\iebrowseweb): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\iesecurity): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\networking): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\pcw): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\performance): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\power): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\printer): en-US
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\diagnostics\system\radiag).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\search): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\windowsmediaplayerconfiguration): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\windowsmediaplayermedialibrary): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\diagnostics\system\windowsmediaplayerplaydvd): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\ehome): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\ehome\wow): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\help\help): en-US
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\help\mui): 0409
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\help\tablet pc).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\help\windows): en-US
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\idmu\common).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\idmu\nis).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\inf): en-US
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\.net clr data): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\.net clr networking): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\.net data provider for oracle): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\.net data provider for sqlserver): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\.netframework): 0000 0409
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ad rms activation proxy).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ad rms certification).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ad rms directory services).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ad rms group expansion).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ad rms licensing).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ad rms logging).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ad rms service discovery).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\asp.net).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\asp.net_2.0.50727).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\asp.net_64).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\asp.net_64_2.0.50727).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\asp).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\aspnet_state).
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\bits): 0000 0409
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\certsvc).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\contentfilter).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\contentindex).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\dhcpserver).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\directoryservices).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\dns).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\emdcache).
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\esent): 0000 0409
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\hcs).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ias).
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\iem): 0409
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\inetinfo).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\isapisearch).
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\msdtc bridge 3.0.0.0): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\msdtc): 0000 0409
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\msftpsvc).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\mssql$microsoft##ssee).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\nfsserver).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ntds).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ntfsdrv).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ocspisapiextension).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\ocspsvc).
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\perflib): 0000 0409
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\psched).
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\rdyboost): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\remoteaccess): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\servicemodelendpoint 3.0.0.0): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\servicemodeloperation 3.0.0.0): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\servicemodelservice 3.0.0.0): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\smsvchost 3.0.0.0): 0000 0409
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\smtpsvc).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{0874086b-4ad8-4b4d-9321-dcba3aa69c8c}).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{216eb3f9-cca5-4d88-b667-8753307deb5c}).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{216eb3f9-cca5-4d88-b667-8753307deb5c}\machine).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{2e38ccc9-9766-4a17-a43e-863e7212f31c}).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{37563dde-e710-405a-b8bf-76f27402e554}).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{37563dde-e710-405a-b8bf-76f27402e554}\machine).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{7665a933-1049-43dd-b692-416c7f6a55d6}).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{7665a933-1049-43dd-b692-416c7f6a55d6}\machine).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{8780588e-ef91-442b-bd5f-2d50de7abf76}).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{8780588e-ef91-442b-bd5f-2d50de7abf76}\user).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{9c03f88d-8608-44b7-a3e7-7316d1cac152}).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\inf\startergpos\{b52976f5-3ee4-4c77-80b9-11911f065ef7}).
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\tapisrv): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\termservice): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\ugatherer): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\ugthrsvc): 0000 0409
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\usbhub): 0000 0409
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\w3svc).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\wdsmc).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\wdsserver).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\wdstftp).
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\windows workflow foundation 3.0.0.0): 0000 0409
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\inf\wins).
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\wmiaprpl): 0009
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\inf\wsearchidxpi): 0000 0409
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\pla\reports): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\pla\rules): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\policydefinitions): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\resources\themes\aero): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\resources\themes\aero\shell\normalcolor): en-US
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\security\msscw\kbs\mui).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\security\msscw\transformfiles\mui).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\speech\common): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\speech\engines\lexicon): en-GB en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\speech\engines\sr): en-GB en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64): ar-SA bg-BG cs-CZ da-DK de-DE el-GR en en-US es-ES et-EE fi-FI fr-FR he-IL hr-HR hu-HU it-IT ja-JP ko-KR lt-LT lv-LV nb-NO nl-NL pl-PL pt-BR pt-PT ro-RO ru-RU sk-SK sl-SI sv-SE th-TH tr-TR uk-UA zh-CN zh-HK zh-TW
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\com): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\dism): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\drivers): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\driverstore): en-US
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\syswow64\inetsrv).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\migration): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\migwiz): en-US
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\syswow64\mui): 0409
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\oobe): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\printing_admin_scripts): en-US
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\syswow64\slmgr): 0409
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\speech\engines): SR
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\speech\engines\sr): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\speech\speechux): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\sysprep): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\wbem): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\wcn): en-US
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\windowspowershell\v1.0): en-US
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\syswow64\windowspowershell\v1.0\documents).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\syswow64\windowspowershell\v1.0\modules\applocker).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\windowspowershell\v1.0\modules\bitstransfer): en-US
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\syswow64\windowspowershell\v1.0\modules\diagpack).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\syswow64\windowspowershell\v1.0\modules\filetransfer).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\syswow64\windowspowershell\v1.0\modules\troubleshootingpack): en-US
    2011-03-20 22:30:37, Info MIG LCIDs found under folder (C:\Windows\syswow64\winrm): 0409
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\syswow64\xpsviewer).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\vmguest\support\amd64).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\vmguest\support\x86).
    2011-03-20 22:30:37, Info MIG No culture names found under folder (C:\Windows\windowsmobile).
    2011-03-20 22:30:37, Info MIG No LCIDs found under folder (C:\Windows\windowsmobile\mui).
    2011-03-20 22:30:37, Info MIG Culture names found under folder (C:\Windows\system32): ar-SA bg-BG cs-CZ da-DK de-DE el-GR en en-US es-ES et-EE fi-FI fr-FR he-IL hr-HR hu-HU it-IT ja-JP ko-KR lt-LT lv-LV nb-NO nl-NL pl-PL pt-BR pt-PT ro-RO ru-RU sk-SK sl-SI sv-SE th-TH tr-TR uk-UA zh-CN zh-HK zh-TW
    2011-03-20 22:30:38, Info MIG LCIDs found under folder (C:\Windows\system32): 0409
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\boot): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\certsrv).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\certsrv\mscep).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\com): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\dism): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\drivers): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\drivers\umdf): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\hcap).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\hcs).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\inetsrv).
    2011-03-20 22:30:38, Info MIG No LCIDs found under folder (C:\Windows\system32\inetsrv).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\migration): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\migwiz): en-US
    2011-03-20 22:30:38, Info MIG LCIDs found under folder (C:\Windows\system32\mui): 0409
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\oobe): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\printing_admin_scripts): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\reminst\boot\x64).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\reminst\boot\x86).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\rms).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\rpcproxy).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\servermanager).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\servermigrationtools).
    2011-03-20 22:30:38, Info MIG LCIDs found under folder (C:\Windows\system32\slmgr): 0409
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\speech\engines): SR
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\speech\engines\sr): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\speech\selectask).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\speech\speechux): en-gb en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\spool\tools): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\sysprep): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\wbem): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\wbem\adstatus).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\wcn): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\winbioplugins): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\windows system resource manager\bin).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\windowspowershell\v1.0): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\documents).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\modules\activedirectory).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\modules\applocker): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\modules\bestpractices).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\modules\bitstransfer): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\modules\diagpack).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\modules\failoverclusters).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\modules\filetransfer).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\modules\grouppolicy).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\modules\networkloadbalancingclusters).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\modules\remotedesktopservices).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Windows\system32\windowspowershell\v1.0\modules\troubleshootingpack): en-US
    2011-03-20 22:30:38, Info MIG LCIDs found under folder (C:\Windows\system32\winrm): 0409
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Windows\system32\xpsviewer).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\cmak).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\cmak\support).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\dvd maker): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\hyper-v).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\internet explorer): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\microsoft games\chess): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\microsoft games\freecell): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\microsoft games\hearts): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\microsoft games\inkball).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\microsoft games\mahjong): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\microsoft games\minesweeper): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\microsoft games\multiplayer).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\microsoft games\multiplayer\internet backgammon).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\microsoft games\multiplayer\internet checkers).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\microsoft games\multiplayer\internet spades).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\microsoft games\purble place): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\microsoft games\solitaire): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\microsoft games\spidersolitaire): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\microsoft hyper-v).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\movie maker).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\windows collaboration).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows defender): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows journal): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows mail): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows media player): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows nt\accessories): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows nt\tabletextservice): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\windows photo gallery).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows photo viewer): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows sidebar): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows sidebar\gadgets\calendar.gadget): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows sidebar\gadgets\clock.gadget): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\windows sidebar\gadgets\contacts.gadget).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows sidebar\gadgets\cpu.gadget): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows sidebar\gadgets\currency.gadget): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\windows sidebar\gadgets\notes.gadget).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows sidebar\gadgets\picturepuzzle.gadget): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows sidebar\gadgets\rssfeeds.gadget): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows sidebar\gadgets\slideshow.gadget): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files\windows sidebar\gadgets\stocks.gadget).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\windows sidebar\gadgets\weather.gadget): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\Common Files\microsoft shared\ink): ar-SA bg-BG cs-CZ da-DK de-DE el-GR en-US es-ES et-EE fi-FI fr-FR he-IL hr-HR hu-HU it-IT ja-JP ko-KR lt-LT lv-LV nb-NO nl-NL pl-PL pt-BR pt-PT ro-RO ru-RU sk-SK sl-SI sv-SE th-TH tr-TR uk-UA zh-CN zh-TW
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files\Common Files\system): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\Common Files\microsoft shared\ink): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\Common Files\system): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Users\all users\microsoft\assistance\client\1.0): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Users\all users\microsoft\bestpractices\models\certificateservices).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Users\all users\microsoft\bestpractices\models\dnsserver).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Users\all users\microsoft\bestpractices\models\terminalservices).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Users\all users\microsoft\bestpractices\models\webserver).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Users\all users\microsoft\windows nt\msfax\common coverpages): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Users\all users\microsoft\windows nt\msfax\virtualinbox): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\programdata\microsoft\assistance\client\1.0): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\programdata\microsoft\bestpractices\models\certificateservices).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\programdata\microsoft\bestpractices\models\directoryservices).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\programdata\microsoft\bestpractices\models\dnsserver).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\programdata\microsoft\bestpractices\models\terminalservices).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\programdata\microsoft\bestpractices\models\webserver).
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\programdata\microsoft\dxp\task\{07deb856-fc6e-4fb9-8add-d8f2cf8722c9}).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\programdata\microsoft\windows nt\msfax\common coverpages): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\programdata\microsoft\windows nt\msfax\virtualinbox): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\internet explorer): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows defender): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows mail): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows media player): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows nt\accessories): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows nt\tabletextservice): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files (x86)\windows photo gallery).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows photo viewer): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows sidebar): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows sidebar\gadgets\calendar.gadget): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows sidebar\gadgets\clock.gadget): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files (x86)\windows sidebar\gadgets\contacts.gadget).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows sidebar\gadgets\cpu.gadget): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows sidebar\gadgets\currency.gadget): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files (x86)\windows sidebar\gadgets\notes.gadget).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows sidebar\gadgets\picturepuzzle.gadget): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows sidebar\gadgets\rssfeeds.gadget): en-US
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows sidebar\gadgets\slideshow.gadget): en-US
    2011-03-20 22:30:38, Info MIG No culture names found under folder (C:\Program Files (x86)\windows sidebar\gadgets\stocks.gadget).
    2011-03-20 22:30:38, Info MIG Culture names found under folder (C:\Program Files (x86)\windows sidebar\gadgets\weather.gadget): en-US
    2011-03-20 22:30:38, Info [0x080486] MIG Initialized OS analysis service
    2011-03-20 22:30:38, Info [0x080489] MIG Setting system object filter context (System)
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern A:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern A:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern A:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern A:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern A:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern A:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: A: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern B:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern B:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern B:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern B:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern B:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern B:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: B: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: C:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: C:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: C:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: C:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: C:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: C:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: C: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: D:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: D:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: D:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: D:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: D:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: D:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: D: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: E:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: E:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: E:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: E:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: E:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: E:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: E: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: F:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: F:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: F:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: F:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: F:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: F:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: F: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: G:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: G:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: G:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: G:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: G:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: G:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: G: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern H:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern H:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern H:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern H:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern H:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern H:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: H: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern I:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern I:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern I:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern I:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern I:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern I:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: I: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern J:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern J:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern J:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern J:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern J:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern J:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: J: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern K:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern K:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern K:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern K:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern K:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern K:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: K: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern L:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern L:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern L:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern L:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern L:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern L:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: L: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern M:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern M:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern M:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern M:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern M:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern M:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: M: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern N:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern N:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern N:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern N:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern N:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern N:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: N: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern O:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern O:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern O:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern O:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern O:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern O:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: O: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern P:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern P:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern P:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern P:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern P:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern P:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: P: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Q:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Q:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Q:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Q:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Q:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Q:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: Q: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern R:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern R:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern R:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern R:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern R:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern R:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: R: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern S:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern S:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern S:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern S:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern S:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern S:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: S: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern T:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern T:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern T:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern T:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern T:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern T:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: T: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern U:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern U:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern U:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern U:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern U:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern U:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: U: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern V:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern V:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern V:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern V:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern V:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern V:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: V: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern W:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern W:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern W:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern W:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern W:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern W:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: W: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern X:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern X:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern X:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern X:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern X:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern X:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: X: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Y:\Boot\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Y:\$Recycle\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Y:\Recycled\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Y:\Recycler\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Y:\System Volume Information\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Ignoring irrelevant file pattern Y:\$Recycle.Bin\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: Y: [pagefile.sys]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: C:\Users\scaleblue\AppData\Local\Temp\tmp98C6.tmp\*
    [*]
    2011-03-20 22:30:38, Info Startup exclusions - Adding excluded file pattern: C:\Users\scaleblue\AppData\Local\MigWiz\*
    [*]
    2011-03-20 22:30:38, Info MIG COutOfProcPluginFactory::COutOfProcPluginFactory: Plugin timeout set to 5 minutes
    2011-03-20 22:30:38, Info [0x080172] MIG AgentManager: not loading agent CMockAgent in mockagent.dll due to configuration settings
    2011-03-20 22:30:39, Info [0x080558] MIG MXE Agent: Added XML script C:\Windows\system32\migwiz\MigApp.xml
    2011-03-20 22:30:39, Info MIG CSIAgent: Enumerating replacement manifests from C:\Windows\system32\migwiz\ReplacementManifests
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-ActiveDirectory-WebServices
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Application-Experience-Program-Compatibility-Assistant
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Audio-MMECore-Other
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Authentication-AuthUI
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-CAPI2-certs
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-DHCP-Client-Dll
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-DHCPServerMigPlugin
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-ehome-reg-inf
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-eudcedit
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Extensible-Authentication-Protocol-Host-Service
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-FailoverCluster-Core-WOW64-RM
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Type1-Fonts
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for FunDisc
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-GameUXMig
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-IIS-FTPExtnsibility
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-IIS-FTPSvc
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-IIS-PowerShellProvider
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-IIS-SharedLibraries
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-IIS-WebDAV
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-International-Core
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-IPv4IPv6CoexistenceMigration
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Hyper-V-Management-Clients
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Hyper-V-Drivers
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Hyper-V-VStack-Config
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Fax-Service
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-IE-InternetExplorer
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-NETFX35CDFComp
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-NETFXCoreComp
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-OfflineFiles-Core
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-SecureStartup-FilterDriver
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-WCFCoreComp
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft.Windows.ServerManager-NonMSIL
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-mmsys
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-NDIS
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-NFS-AdminCore
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-NFS-ClientCore
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-NFS-ServerCore
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Printing-LocalPrinting
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Printing-ServerCore-WOW64-RM
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-RasmanService
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Rasppp
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Rights-Management-Client-v1-API
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-ServerCore-EA-IME-WOW64-RM
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-ServerCore-WOW64-RM
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-shmig
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Shell-Sounds
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-FSRM-DataScreenDriver
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-FSRM-QuotaDriver
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-FSRM-Service
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-FSRM-StorageReportService
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-FSRM-UI
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-Gadgets-stickyNotes
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Subsystem-for-UNIX-based-applications-Core-WOW64-RM
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-sysdm
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-SystemMaintenanceService
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-TabletPC-UIHub
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-TabletPC-Platform-Input-Core
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-TabletPC-StickyNotes
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-TCPIP
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-TerminalServices-AppServer-Licensing
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-TerminalServices-LicenseServer
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-TerminalServices-Manager-SnapIn-NonMSIL
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for TSPortalWebPart
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for TerminalServicesSBMgrReplacement
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-UsbMigPlugin
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-VirtualDiskService
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-VssService
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-VssSystemProvider
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for WCF-HTTP-Activation
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for WCF-NonHTTP-Activation
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-MarketTheme-MCTAdmin-Component
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for WindowsSearchEngine
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-WMI-Core
    2011-03-20 22:30:39, Info MIG Loading replacement manifest data for Microsoft-Windows-WSRM-Service
    2011-03-20 22:30:39, Info MIG CSIAgent: Enumerating Installed manifest from C:\Windows\winsxs\Manifests
    2011-03-20 22:30:41, Info Working directory = C:\Users\scaleblue\AppData\Local\Temp\tmp98C6.tmp
    2011-03-20 22:30:41, Info Log directory = C:\Users\scaleblue\AppData\Local\MigWiz
    2011-03-20 22:30:41, Info Leaving MigStartupOnline method
    2011-03-20 22:31:13, Info MIGUI Closing CWizardFrame
    2011-03-20 22:31:13, Info MIGUI WizardPage posting UI_WIZARDPAGE_SHUTDOWN_DONE
    2011-03-20 22:31:13, Info MIGUI Received UI_WIZARDPAGE_SHUTDOWN_DONE; Posting BL_CLOSE_APP
    2011-03-20 22:31:13, Info MIGUI Cancellation requested on all progress modes 16
    2011-03-20 22:31:13, Info MIGUI BL thread posting quit message to itself
    2011-03-20 22:31:13, Info Entering MigShutdown method
    2011-03-20 22:31:13, Info MIG Manifest thread was canceled. Exiting.
    2011-03-20 22:31:13, Info [0x0803e6] MIG Removing mapping for HKLM
    2011-03-20 22:31:13, Info [0x0803e7] MIG Successfully unmapped HKLM
    2011-03-20 22:31:13, Info [0x0803e6] MIG Removing mapping for HKU
    2011-03-20 22:31:13, Info [0x0803e7] MIG Successfully unmapped HKU
    2011-03-20 22:31:13, Info [0x080487] MIG Destroying OS analysis service
    2011-03-20 22:31:13, Info [0x080488] MIG Destroyed OS analysis service
    2011-03-20 22:31:13, Info Leaving MigShutdown method
    2011-03-20 22:31:13, Info MIGUI CBusinessLogicThread::ExitInstance Releasing statemanager
    2011-03-20 22:31:13, Info MIGUI CBusinessLogicThread::ExitInstance Releasing Icon Fetcher
    2011-03-20 22:31:13, Info MIGUI CBusinessLogicThread::ExitInstance Releasing Thumbnail Fetcher
    2011-03-20 22:31:13, Info MIGUI CThumbnailFetcher::ThumbnailFetcherProc-> Stopping thumnail creation
    2011-03-20 22:31:13, Info MIGUI CBusinessLogicThread::ExitInstance Releasing user image store
    2011-03-20 22:31:13, Info MIGUI CWizardFrame::OnBlShutdownDone -> Enter
    2011-03-20 22:31:13, Info MIGUI Connection Manager shut down successfully
    2011-03-20 22:31:13, Info MIGUI SQM Data: <WETExitCode> : 1
    2011-03-20 22:31:13, Info MIGUI SQM Data: <WETPageCancel> : 1000
    2011-03-20 22:31:13, Info MIGUI SQM Data: <OSBuildNumber> : 7600
    2011-03-20 22:31:13, Info MIGUI SQM CEIP Opted-Out

    This seems like a worm machine or something I dont know...




    ----------------------------------------------------------------------------


    Also right on the main C:\ drive is a file called "hosts" when i open in notepad it says

    127.0.0.1 localhost
    ::1 localhost


    Also what are the weird files i keep seaing called?

    {93E26451-CD9A-43A5-A2FA-C42392EA4001}

    i keep seaing lots of files called things like this?



    _____________________________________________________________________________
     
As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/1017568

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice