SDFix: Version 1.79Run by Administrator - 26/04/2007 - 17:14:13.43Microsoft Windows XP [Version 5.1.2600]Running From: C:\SDFixSafe Mode:Checking Services: Restoring Windows Registry ValuesRestoring Windows Default Hosts FileRebooting...Normal Mode:Checking Files:Below files will be copied to Backups folder then removed:C:\WINDOWS\SYSTEM32\TASKKILL.EXE - DeletedRemoving Temp FilesADS Check:Checking if ADS is attached to system32 Folder C:\WINDOWS\system32No streams found.Checking if ADS is attached to svchost.exeC:\WINDOWS\system32\svchost.exeNo streams found. Final Check:Remaining Services:------------------Authorized Application Key Export:[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe
:enabled
xpsp2res.dll,-22019""C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe
:Enabled:Messenger""C:\\Program Files\\Morpheus\\Morpheus.exe"="C:\\Program Files\\Morpheus\\Morpheus.exe
:Enabled:M5Shell"[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe
:enabled
xpsp2res.dll,-22019"Remaining Files:---------------Checking For Files with Hidden Attributes:C:\Documents and Settings\Ed\Mercury\MSN\Resources\DisplayPictures\hax000r@hotmail.com\Thumbs.dbC:\Documents and Settings\Kristy\Local Settings\Application Data\Microsoft\Messenger\krisparmley@hotmail.com\Sharing Folders\birminghamnewstreet@hotmail.com\Thumbs.dbC:\Documents and Settings\Kristy\Local Settings\Application Data\Microsoft\Messenger\krisparmley@hotmail.com\Sharing Folders\charmedone87@gmail.com\Thumbs.dbC:\Documents and Settings\Kristy\Local Settings\Application Data\Microsoft\Messenger\krisparmley@hotmail.com\Sharing Folders\eddersgti@hotmail.com\Thumbs.dbC:\Documents and Settings\Kristy\Local Settings\Application Data\Microsoft\Messenger\krisparmley@hotmail.com\Sharing Folders\juliejay08@hotmail.com\Thumbs.dbC:\Documents and Settings\Kristy\Local Settings\Application Data\Microsoft\Messenger\krisparmley@hotmail.com\Sharing Folders\razorblade_1983@hotmail.com\Thumbs.dbC:\Documents and Settings\Kristy\Mercury\MSN\Resources\DisplayPictures\beno@dsl.pipex.com\Thumbs.dbC:\Documents and Settings\Kristy\Mercury\MSN\Resources\DisplayPictures\better_than_hammett@hotmail.com\Thumbs.dbC:\Documents and Settings\Kristy\Mercury\MSN\Resources\DisplayPictures\me_againsttheworld16@hotmail.com\Thumbs.dbC:\Documents and Settings\Kristy\My Documents\Mcfly - Wonderland (2005-Pop) .[WwW.LiMiTeDiVx.CoM].By KELOLO\Thumbs.dbC:\Program Files\Common Files\Ahead\AudioPlugins\lpaccodec.dllC:\Program Files\Common Files\Ahead\AudioPlugins\lpac_codec_api.dllC:\Program Files\Common Files\Ahead\AudioPlugins\PNCRT.dllC:\Program Files\Common Files\Ahead\AudioPlugins\AC3\AC3ENC.DLLC:\Program Files\Common Files\Ahead\AudioPlugins\AC3\AZID.DLLC:\Program Files\Common Files\Ahead\AudioPlugins\Common\atrc3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\auth3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\cook3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\drv13260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\drv23260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\drv33260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\drv43260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\pnen3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\pnvi3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\pnxr3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\ramf3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rare3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rims3290.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rmff3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rmse3290.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rmwr3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rnlt3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rorw3290.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rtae3290.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rtin3290.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rtve3290.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rv103260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rv203260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rv303260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rv403260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\rvre3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\sipr3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\smpl3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\vsrl3260.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\xmlp3261.dllC:\Program Files\Common Files\Ahead\AudioPlugins\Common\zipf3260.dllC:\Program Files\AOL 9.0a\aolphx.exeC:\Program Files\AOL 9.0a\aoltray.exeC:\Program Files\AOL 9.0a\RBM.exeC:\Program Files\Common Files\Adobe\ESD\DLMCleanup.exeC:\Program Files\Common Files\Ahead\AudioPlugins\AACMP4.EXEC:\Program Files\Common Files\Ahead\AudioPlugins\OFR.EXEC:\Program Files\Common Files\Ahead\AudioPlugins\RMADEC.EXEC:\Program Files\Common Files\Ahead\AudioPlugins\MusePack\MPPDEC.EXEC:\Program Files\Common Files\Ahead\AudioPlugins\MusePack\MPPENC.EXEC:\Program Files\Internet Explorer\IEXPLORE.EXEC:\Program Files\Messenger\msmsgs.exeC:\WINDOWS\WSYS049.SYSC:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmpC:\WINDOWS\system\tnebli.tmpC:\WINDOWS\system32\ihhkj.tmpC:\WINDOWS\system32\mlkkj.tmpC:\WINDOWS\system32\ttvwa.tmpC:\WINDOWS\system32\ycbeg.tmpC:\WINDOWS\system32\config\default.tmp.LOGC:\WINDOWS\system32\config\SAM.tmp.LOGC:\WINDOWS\system32\config\SECURITY.tmp.LOGC:\WINDOWS\system32\config\software.tmp.LOGC:\WINDOWS\system32\config\system.tmp.LOG Finished | DaniWeb Message | |
| Cancel Changes | |