Deckard's System Scanner v20071014.68 Run by Bartek on 2007-10-18 10:58:58 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- System Restore -------------------------------------------------------------- Successfully created a Deckard's System Scanner Restore Point. -- Last 5 Restore Point(s) -- 58: 2007-10-18 08:59:05 UTC - RP111 - Deckard's System Scanner Restore Point 57: 2007-10-17 16:51:33 UTC - RP110 - Zainstalowano: Silent Hill 2 PL 56: 2007-10-16 10:05:14 UTC - RP109 - Installed Java(TM) 6 Update 3 55: 2007-10-15 20:47:42 UTC - RP108 - Software Distribution Service 3.0 54: 2007-10-15 15:05:47 UTC - RP107 - Software Distribution Service 3.0 -- First Restore Point -- 1: 2007-09-25 17:51:23 UTC - RP54 - Usunięto: Dodatek SP2 na potrzeby zgodności z poprzednimi wersjami Klienta programu Zarządzanie prawami Windows Backed up registry hives. Performed disk cleanup. -- HijackThis (run as Bartek.exe) ---------------------------------------------- Logfile of HijackThis v1.99.1 Scan saved at 10:59:37, on 2007-10-18 Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\System32\PnkBstrA.exe C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe C:\Program Files\Softwin\BitDefender9\vsserv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe C:\Program Files\VDOTool\TBPanel.exe C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe C:\PROGRA~1\Softwin\BITDEF~1\bdnagent.exe C:\Program Files\Softwin\BitDefender9\bdoesrv.exe C:\progra~1\softwin\bitdef~1\bdswitch.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Gadu-Gadu\gg.exe C:\Program Files\foobar2000\foobar2000.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Bartek\Programy\DSS\dss.exe C:\Bartek\Programy\HIJACK~1\Bartek.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon O4 - HKLM\..\Run: [Gainward] C:\Program Files\VDOTool\TBPanel.exe /A O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [BDMCon] C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe O4 - HKLM\..\Run: [BDOESRV] "C:\Program Files\Softwin\BitDefender9\bdoesrv.exe" O4 - HKLM\..\Run: [BDNewsAgent] "C:\PROGRA~1\Softwin\BITDEF~1\bdnagent.exe" O4 - HKLM\..\Run: [BDSwitchAgent] "C:\PROGRA~1\Softwin\BITDEF~1\bdswitch.exe" O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra button: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1192438324265 O17 - HKLM\System\CCS\Services\Tcpip\..\{EA05521E-3B37-40C5-BBE2-43801BB6330D}: NameServer = 213.241.79.37 83.238.255.76 O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: „Usługa stanu ASP.NET (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing) O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing) O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing) O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\System32\PnkBstrA.exe O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing) O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing) -- HijackThis Fixed Entries (C:\Bartek\Programy\HIJACK~1\backups\) ------------- backup-20071011-201429-797 O23 - Service: Mims service (Mimserv) - Unknown owner - C:\WINDOWS\system32\dllcache\services.exe (file missing) backup-20071015-185236-105 O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file) -- File Associations ----------------------------------------------------------- [COLOR=red].cpl - cplfile - shell\cplopen\command - rundll32.exe shell32.dll,Control_RunDLL "%1",%*[/COLOR] [COLOR=red].cpl - cplfile - shell\runas\command - rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%*[/COLOR] [COLOR=red].js - JSFile - shell\open\command - %SystemRoot%\System32\CScript.exe "%1" %*[/COLOR] [COLOR=red].vbs - VBSFile - shell\open\command - %SystemRoot%\System32\CScript.exe "%1" %*[/COLOR] -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------- R2 TBPanel - c:\windows\system32\drivers\tbpanel.sys S3 ASFWHide - c:\docume~1\bartek\ustawi~1\temp\asfwhide (file missing) S3 Cardex - c:\windows\system32\drivers\tbpanel.sys S3 catchme - c:\docume~1\bartek\ustawi~1\temp\catchme.sys (file missing) S3 ENTECH - c:\windows\system32\drivers\entech.sys S3 RivaTuner32 - c:\program files\rivatuner v2.05\rivatuner32.sys -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled -------------------- S3 aspnet_state („Usługa stanu ASP.NET) - c:\windows\microsoft.net\framework\v2.0.50727\aspnet_state.exe (file missing) S4 MSWindows (Network Windows Service) - "c:\windows\system32\urdvxc.exe" /service (file missing) -- Device Manager: Disabled ---------------------------------------------------- No disabled devices found. -- Files created between 2007-09-18 and 2007-10-18 ----------------------------- 2007-10-16 21:12:57 1415680 --a------ C:\WINDOWS\system32\WMV9VCM.dll 2007-10-16 21:11:47 755200 --a------ C:\WINDOWS\system32\ir50_32.dll 2007-10-16 21:10:29 740442 --a------ C:\WINDOWS\system32\DivX.dll 2007-10-16 21:09:41 1559040 --a------ C:\WINDOWS\system32\xvidcore.dll 2007-10-16 19:57:58 0 d-------- C:\Program Files\uTorrent 2007-10-16 12:08:22 0 d-------- C:\WINDOWS\Sun 2007-10-16 12:06:43 0 d-------- C:\Program Files\Java 2007-10-16 12:05:20 0 d-------- C:\Program Files\Common Files\Java 2007-10-16 12:01:01 0 d-------- C:\Program Files\MarBit 2007-10-15 17:08:36 0 d-------- C:\Program Files\Windows Media Connect 2 2007-10-15 17:06:46 0 d-------- C:\WINDOWS\system32\drivers\UMDF 2007-10-15 13:05:36 0 d-------- C:\Program Files\RivaTuner v2.05 2007-10-15 11:39:08 0 d-------- C:\Program Files\Realtek AC97 2007-10-15 01:47:58 46352 --a------ C:\WINDOWS\setdebug.exe 2007-10-15 01:47:57 139536 --a------ C:\WINDOWS\system32\javaee.dll 2007-10-15 01:47:57 6550 --a------ C:\WINDOWS\jautoexp.dat 2007-10-15 01:47:51 113 --a------ C:\WINDOWS\system32\zonedon.reg 2007-10-15 01:47:51 113 --a------ C:\WINDOWS\system32\zonedoff.reg 2007-10-14 23:51:04 81984 --a------ C:\WINDOWS\system32\bdod.bin 2007-10-14 23:47:14 0 d-------- C:\WINDOWS\system32\NtmsData 2007-10-14 23:07:34 73728 --a------ C:\WINDOWS\system32\sockspy.dll 2007-10-14 23:06:42 77824 --a------ C:\WINDOWS\system32\xcomm.dll 2007-10-14 23:03:32 14 --a------ C:\WINDOWS\system32\getfile.dat 2007-10-13 12:06:37 0 d-------- C:\Program Files\SubEdit-Player 2007-10-11 21:58:31 0 d-------- C:\Program Files\AusLogics Disk Defrag 2007-10-11 13:34:56 0 d-------- C:\WINDOWS\ServicePackFiles 2007-10-10 15:23:40 0 d-------- C:\Program Files\Common Files\NSIS 2007-10-09 21:13:40 2916352 -----n--- C:\WINDOWS\UNNMP.exe 2007-10-09 21:11:16 155648 --a------ C:\WINDOWS\system32\NeroCheck.exe 2007-10-09 21:10:55 0 d-------- C:\Program Files\Common Files\Nero 2007-10-09 21:10:21 2977792 -----n--- C:\WINDOWS\UNNeroVision.exe 2007-10-09 21:09:26 364544 -----n--- C:\WINDOWS\system32\TwnLib4.dll 2007-10-09 21:09:26 471040 -----n--- C:\WINDOWS\system32\ImagXRA7.dll 2007-10-09 21:09:26 262144 -----n--- C:\WINDOWS\system32\ImagXR7.dll 2007-10-09 21:09:25 106496 --a------ C:\WINDOWS\system32\TwnLib20.dll 2007-10-09 21:09:25 38912 -----n--- C:\WINDOWS\system32\picn20.dll 2007-10-09 21:09:25 1568768 -----n--- C:\WINDOWS\system32\ImagX7.dll 2007-10-09 21:09:16 0 d-------- C:\Program Files\Common Files\Ahead 2007-10-09 21:09:15 0 d-------- C:\Program Files\Ahead 2007-10-08 22:42:34 0 d-------- C:\WINDOWS\Noslip 2007-10-06 21:13:15 0 d-------- C:\Filmy 2007-10-06 20:40:19 0 d-------- C:\Music 2007-10-06 15:00:16 0 d-------- C:\Program Files\Turbo Torrent 2007-10-03 17:20:54 0 d-------- C:\Program Files\Common Files\Blizzard Entertainment 2007-10-03 16:41:26 0 d-------- C:\Program Files\qoobox 2007-09-30 12:31:03 0 d-------- C:\WINDOWS\nview 2007-09-30 01:18:11 0 d--h----- C:\WINDOWS\system32\GroupPolicy 2007-09-30 01:08:01 0 d--hs---- C:\WINDOWS\CSC 2007-09-30 00:58:54 0 d-------- C:\WINDOWS\system32\bits 2007-09-30 00:58:34 0 d-------- C:\WINDOWS\system32\PreInstall 2007-09-30 00:58:29 0 d--h----- C:\WINDOWS\$hf_mig$ 2007-09-30 00:22:45 0 d-------- C:\WINDOWS\setup.pss 2007-09-29 15:38:02 0 d-------- C:\Program Files\DivX 2007-09-28 00:30:29 0 d-------- C:\Program Files\OpenOffice.org 2.3 2007-09-28 00:29:54 0 d-------- C:\Program Files\Open Office 2007-09-27 21:08:45 0 d-------- C:\Program Files\hp deskjet 3420 series 2007-09-27 21:04:13 0 d-------- C:\Program Files\Hewlett-Packard 2007-09-25 19:51:33 0 d-------- C:\WINDOWS\system32\appmgmt 2007-09-25 17:20:39 0 d-------- C:\Program Files\Malicious Software Removal Tool 2007-09-25 17:17:56 0 d-------- C:\Program Files\Dir2File 2007-09-25 17:17:28 77824 --a------ C:\WINDOWS\system32\StartupCPL.exe 2007-09-25 17:16:42 40960 --a------ C:\WINDOWS\system32\SSUBTMR6.DLL 2007-09-25 17:16:42 10752 --a------ C:\WINDOWS\system32\aamd532.dll 2007-09-24 19:09:23 0 d-------- C:\Program Files\Ashampoo 2007-09-24 19:08:32 0 d-------- C:\Program Files\Thomson 2007-09-23 21:50:25 848 --ahs---- C:\WINDOWS\system32\KGyGaAvL.sys 2007-09-23 12:52:04 0 d-------- C:\Zdjęcia 2007-09-23 12:25:13 0 d-------- C:\WINDOWS\LogFiles 2007-09-23 11:34:03 0 d-------- C:\Program Files\RegCleaner 2007-09-18 17:12:16 52736 --a------ C:\WINDOWS\ipuninst.exe 2007-09-18 17:12:14 0 d-------- C:\Program Files\BlackIsle 2007-09-18 11:20:03 0 d-------- C:\Program Files\Fraps -- Find3M Report --------------------------------------------------------------- 2007-10-18 08:05:42 0 d-------- C:\Program Files\eMule 2007-10-17 22:47:28 382894 --a------ C:\WINDOWS\system32\perfh015.dat 2007-10-17 22:47:28 64638 --a------ C:\WINDOWS\system32\perfc015.dat 2007-10-17 22:38:01 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\foobar2000 2007-10-17 18:42:17 0 d--h----- C:\Program Files\InstallShield Installation Information 2007-10-17 18:25:50 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\uTorrent 2007-10-17 17:37:58 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\OpenOffice.org2 2007-10-17 12:26:19 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\Skype 2007-10-16 21:45:11 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\Adobe 2007-10-16 21:13:03 45056 --a------ C:\WINDOWS\system32\ogg.dll 2007-10-16 21:01:54 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\Ahead 2007-10-16 15:36:01 0 d-------- C:\Program Files\Directory Lister Pro 2007-10-16 12:08:22 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\Sun 2007-10-16 12:08:15 1719 --a------ C:\WINDOWS\mozver.dat 2007-10-16 12:05:20 0 d-------- C:\Program Files\Common Files 2007-10-15 20:44:45 0 d-------- C:\Program Files\foobar2000 2007-10-15 12:45:37 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\KRKsoft 2007-10-15 11:39:17 0 d-------- C:\Program Files\AvRack 2007-10-15 01:07:49 0 d-------- C:\Program Files\Movie Maker 2007-10-15 01:04:33 0 d-------- C:\Program Files\Windows NT 2007-10-15 00:42:18 0 d-------- C:\Program Files\Messenger 2007-10-15 00:06:46 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\Lavasoft 2007-10-15 00:06:45 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\Mozilla 2007-10-15 00:06:45 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\Macromedia 2007-10-15 00:06:45 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\Identities 2007-10-15 00:06:45 0 d-------- C:\Documents and Settings\Bartek\Dane aplikacji\Gadu-Gadu 2007-10-14 23:07:58 138 --a------ C:\Program Files\INSTALL.LOG 2007-10-12 01:30:40 0 d-------- C:\Program Files\mp3DirectCut 2007-09-30 12:33:39 0 d-------- C:\Program Files\VDOTool 2007-09-25 17:18:55 0 d--h----- C:\Program Files\WindowsUpdate 2007-09-24 18:50:14 0 d-------- C:\Program Files\VIA 2007-09-17 21:24:30 0 d-------- C:\Program Files\totalcmd 2007-09-16 22:05:25 262144 --a------ C:\WINDOWS\system32\wrap_oal.dll 2007-09-16 22:05:25 86016 --a------ C:\WINDOWS\system32\OpenAL32.dll 2007-09-16 20:41:48 0 d-------- C:\Program Files\Avenger 2007-09-15 12:34:30 0 d-------- C:\Program Files\Common Files\Adobe 2007-09-14 18:04:57 0 d-------- C:\Program Files\Common Files\InstallShield 2007-09-14 18:02:58 0 d-------- C:\Program Files\Corel 2007-09-14 18:02:58 0 d-------- C:\Program Files\Common Files\Corel 2007-09-11 12:41:22 0 d-------- C:\Program Files\Realtek Sound Manager 2007-09-11 11:17:30 81920 --a------ C:\WINDOWS\system32\frapsvid.dll 2007-09-11 09:40:40 237568 --a------ C:\WINDOWS\system32\OggDS.dll 2007-09-11 09:40:38 921600 --a------ C:\WINDOWS\system32\vorbisenc.dll 2007-09-11 09:40:31 188416 --a------ C:\WINDOWS\system32\vorbis.dll 2007-09-11 09:40:16 245760 --a------ C:\WINDOWS\system32\mplvpx.dll 2007-09-11 09:40:14 9216 --a------ C:\WINDOWS\system32\cpuinf32.dll 2007-09-10 19:44:37 0 d-------- C:\Program Files\Common Files\Adobe Systems Shared 2007-09-09 20:46:46 0 d-------- C:\Program Files\DAEMON Tools 2007-09-09 20:13:39 664 --a------ C:\WINDOWS\system32\d3d9caps.dat 2007-09-09 19:47:44 0 d-------- C:\Program Files\Skype 2007-09-09 19:47:39 0 d-------- C:\Program Files\Common Files\Skype 2007-09-09 19:46:01 0 d-------- C:\Program Files\Lavalys 2007-09-09 19:43:07 0 d-------- C:\Program Files\Sony Ericsson 2007-09-09 17:32:50 0 d-------- C:\Program Files\Gadu-Gadu 2007-09-09 17:29:39 7260 --a------ C:\WINDOWS\system32\ke1.exe 2007-09-09 17:27:37 0 --a------ C:\WINDOWS\nsreg.dat 2007-09-09 17:25:28 0 d-------- C:\Program Files\Common Files\ODBC 2007-09-09 17:25:25 0 d-------- C:\Program Files\Common Files\SpeechEngines 2007-09-09 17:25:06 62 --ahs---- C:\Documents and Settings\Bartek\Dane aplikacji\desktop.ini 2007-09-09 17:22:48 0 d-------- C:\Program Files\Lavasoft 2007-09-09 17:22:36 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard 2007-09-09 16:32:35 0 d-------- C:\Program Files\microsoft frontpage 2007-09-09 16:32:16 0 -r-hs---- C:\MSDOS.SYS 2007-09-09 16:32:16 0 -r-hs---- C:\IO.SYS 2007-09-09 16:32:16 0 -----n--- C:\CONFIG.SYS 2007-09-09 16:32:16 0 -----n--- C:\AUTOEXEC.BAT 2007-09-09 16:30:20 0 d-------- C:\Program Files\Common Files\MSSoap 2007-09-09 16:29:42 21856 --a------ C:\WINDOWS\system32\emptyregdb.dat 2007-09-09 16:29:25 0 d-------- C:\Program Files\Usługi online 2007-09-09 16:29:17 0 d-------- C:\Program Files\MSN Gaming Zone -- Registry Dump --------------------------------------------------------------- *Note* empty entries & legit default entries are not shown [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SpeedTouch USB Diagnostics"="C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" [2004-08-06 09:45] "Gainward"="C:\Program Files\VDOTool\TBPanel.exe" [2006-09-13 09:58] "NvCplDaemon"="C:\WINDOWS\System32\NvCpl.dll" [2006-08-11 15:43] "nwiz"="nwiz.exe" [2006-08-11 15:43 C:\WINDOWS\system32\nwiz.exe] "NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50] "BDMCon"="C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe" [2007-10-14 23:07] "BDOESRV"="C:\Program Files\Softwin\BitDefender9\bdoesrv.exe" [2005-03-11 17:53] "BDNewsAgent"="C:\PROGRA~1\Softwin\BITDEF~1\bdnagent.exe" [2005-06-09 10:28] "BDSwitchAgent"="C:\PROGRA~1\Softwin\BITDEF~1\bdswitch.exe" [2005-04-06 13:09] "Cmaudio"="cmicnfg.cpl" [] "SoundMan"="SOUNDMAN.EXE" [2005-06-20 15:42 C:\WINDOWS\SOUNDMAN.EXE] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 00:44] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "appinit_dlls"=sockspy.dll [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] "Notification Packages"= scecli scecli scecli scecli scecli scecli [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}] @="Volume shadow copy" -- End of Deckard's System Scanner: finished at 2007-10-18 11:02:30 ------------