[b]-- Find3M Report ---------------------------------------------------------------
2007-12-20 12:13:11 0 d-------- C:\Program Files\IObit
2007-12-20 03:49:24 0 d-------- C:\Program Files\Common Files
2007-12-19 18:52:39 23348 --a------ C:\WINDOWS\system32\emptyregdb.dat
2007-12-19 18:52:15 0 d-------- C:\Program Files\Messenger
2007-12-15 03:20:19 0 --a------ C:\AUTOEXEC.BAT
2007-12-14 02:14:03 0 d–h----- C:\Program Files\InstallShield Installation Information
2007-12-14 01:50:33 0 d-------- C:\Program Files\Common Files\InstallShield
2007-11-17 11:44:30 109154 --a------ C:\WINDOWS\hpoins08.dat
2007-11-17 11:36:56 0 d-------- C:\Program Files\Common Files\Sonic Shared
2007-11-17 11:36:33 0 d-------- C:\Program Files\Common Files\HP
2007-11-17 11:34:12 0 d-------- C:\Program Files\Hewlett-Packard
2007-11-17 11:34:11 0 d-------- C:\Program Files\HP
2007-11-17 11:32:07 0 d-------- C:\Program Files\Common Files\Hewlett-Packard
2007-11-15 14:37:11 0 d-------- C:\Documents and Settings\jase\Application Data\Sony Corporation
2007-11-15 14:21:54 0 d-------- C:\Program Files\Sony
2007-11-15 14:21:10 0 d-------- C:\Documents and Settings\jase\Application Data\InstallShield
2007-11-14 01:54:11 0 d-------- C:\Documents and Settings\jase\Application Data\Real
2007-11-14 01:52:21 0 d-------- C:\Program Files\Common Files\xing shared
2007-11-14 01:52:19 0 d-------- C:\Program Files\Common Files\Real
2007-11-14 01:52:10 0 d-------- C:\Program Files\Real
2007-11-11 17:39:35 0 d-------- C:\Documents and Settings\jase\Application Data\Uniblue
2007-11-10 00:51:14 0 d-------- C:\Program Files\Acidx Productions
2007-11-09 22:20:29 0 d-------- C:\Program Files\Common Files\ODBC
2007-11-09 22:20:26 0 d-------- C:\Program Files\Common Files\SpeechEngines
2007-11-09 22:20:03 62 --ahs---- C:\Documents and Settings\jase\Application Data\desktop.ini
2007-11-09 17:34:01 0 d-------- C:\Program Files\Alwil Software
2007-11-09 17:29:32 0 d-------- C:\Documents and Settings\jase\Application Data\Macromedia
2007-11-09 17:27:55 0 d-------- C:\Program Files\Yahoo!
2007-11-09 17:22:58 0 d-------- C:\Program Files\Realtek
2007-11-09 17:19:11 0 d-------- C:\Program Files\Realtek AC97
2007-11-09 17:14:47 0 d-------- C:\Program Files\Intel
2007-11-09 17:14:03 0 d-------- C:\Program Files\MSXML 4.0
2007-11-09 17:07:56 0 d-------- C:\Documents and Settings\jase\Application Data\Identities
2007-11-09 17:01:01 0 d-------- C:\Program Files\microsoft frontpage
2007-11-09 17:00:41 0 -rahs---- C:\MSDOS.SYS
2007-11-09 17:00:41 0 -rahs---- C:\IO.SYS
2007-11-09 17:00:41 0 --a------ C:\CONFIG.SYS
2007-11-09 16:59:16 0 d–h----- C:\Program Files\WindowsUpdate
2007-11-09 16:59:13 0 d-------- C:\Program Files\Online Services
2007-11-09 16:58:31 0 d-------- C:\Program Files\Common Files\MSSoap
2007-11-09 16:58:22 0 d-------- C:\Program Files\Movie Maker
2007-11-09 16:57:09 0 d-------- C:\Program Files\MSN Gaming Zone
2007-11-09 16:57:01 0 d-------- C:\Program Files\Windows NT
– Registry Dump ---------------------------------------------------------------
Note empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE~\Browser Helper Objects{9828DDAB-2B7A-4626-885A-5579EA690FEB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“NvCplDaemon”=“C:\WINDOWS\system32\NvCpl.dll” [06/29/2007 12:43 AM]
“nwiz”=“nwiz.exe” [06/29/2007 12:43 AM C:\WINDOWS\system32\nwiz.exe]
“HP Software Update”=“C:\Program Files\HP\HP Software Update\HPWuSchd2.exe” [12/15/2005 11:18 AM]
“NeroFilterCheck”=“C:\WINDOWS\system32\NeroCheck.exe” [07/09/2001 10:50 AM]
“SunJavaUpdateSched”=“C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe” [09/25/2007 01:11 AM]
“IMJPMIG8.1”=“C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe” [08/03/2004 10:32 PM]
“IMEKRMIG6.1”=“C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE” [08/23/2001 05:30 PM]
“SoundMan”=“SOUNDMAN.EXE” [03/01/2006 01:52 PM C:\WINDOWS\soundman.exe]
“NvMediaCenter”=“C:\WINDOWS\system32\NvMcTray.dll” [06/29/2007 12:43 AM]
“AVG7_CC”=“C:\PROGRA~1\Grisoft\AVG7\avgcc.exe” [12/21/2007 12:53 AM]
“ZoneAlarm Client”=“C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe” [11/14/2007 04:05 PM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“Yahoo! Pager”=“C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.exe” [08/30/2007 05:43 PM]
“MSMSGS”=“C:\Program Files\Messenger\msmsgs.exe” [08/04/2004 01:06 AM]
“ctfmon.exe”=“C:\WINDOWS\system32\ctfmon.exe” [08/04/2004 12:56 AM]
“SUPERAntiSpyware”=“C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe” [12/18/2007 04:29 PM]
[HKEY_USERS.default\software\microsoft\windows\currentversion\runonce]
“tscuninstall”=%systemroot%\system32\tscupgrd.exe
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Adobe Gamma Loader.exe.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [11/24/2007 2:26:39 PM]
HP Photosmart Premier Fast Start.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe [12/15/2005 1:00:54 PM]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
“DisableRegistryTools”=0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
“LinkResolveIgnoreLinkInfo”=0 (0x0)
“NoResolveSearch”=1 (0x1)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
“{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}”= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [12/20/2006 12:55 PM 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 04/19/2007 12:41 PM 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yahoo! Pager]
“C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe” -quiet
Newly Created Service - APPMGMT
– End of Deckard’s System Scanner: finished at 2007-12-21 03:01:37 ------------[/b]