0

I recently got the Internet Security 2010 Virus and I thought i completely removed it. I got rid of the symptoms of it and it stopped popping up on my screen but since i removed it my computer has been constantly freezing, especially while using the internet. The screen will be completely unresponsive but the mouse will still be functional. The freezing is so consistent while using the internet that i cant spend more than 5 minutes using it before it freezes so i had to resort to making this thread using the browser on my ps3. The freezing happens when i use other programs as well and sometimes during a virus scan or if my computer is just idle for an extended period of time. The same thing happens if i boot in safe mode.

here is the HijackThis log

3
Contributors
17
Replies
18
Views
7 Years
Discussion Span
Last Post by PhilliePhan
0

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:38:17 AM, on 3/3/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16981)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Binn\sqlservr.exe
C:\Program Files\CyberPower PowerPanel Personal Edition\ppped.exe
C:\Program Files\Common Files\Sony Shared\WMPlugIn\SonicStageMonitoring.exe
C:\Program Files\Sony\Sony TV Tuner Library\SMceMan.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TVersity\Media Server\MediaServer.exe
C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Sony\Sony TV Tuner Library\RM_SV.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\PROGRA~1\COMMON~1\Stardock\SDMCP.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\CyberPower PowerPanel Personal Edition\pppeuser.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://sbc.yahoo.com/dsl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:5555
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAudPropShortcut.exe
O4 - HKLM\..\Run: [VAIO Update 2] "C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe" /Stationary
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [WD Drive Manager] C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
O4 - HKLM\..\Run: [WD Anywhere Backup] C:\Program Files\WD\WD Anywhere Backup\MemeoLauncher2.exe --silent
O4 - HKLM\..\Run: [Memeo AutoSync] C:\Program Files\Memeo\AutoSync\MemeoLauncher2.exe --silent
O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Ramzey El Gadi\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [PowerPanel Personal Edition User Interaction] "C:\Program Files\CyberPower PowerPanel Personal Edition\pppeuser.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Image Converter video recording monitor for VAIO Entertainment - Sony Corporation - C:\Program Files\Sony\Image Converter 2\IcVzMon.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: MemeoBackgroundService - Memeo - C:\Program Files\WD\WD Anywhere Backup\MemeoBackgroundService.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: PowerPanel Personal Edition Service (ppped) - Unknown owner - C:\Program Files\CyberPower PowerPanel Personal Edition\ppped.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: SonicStageMonitoring - Sony Corporation - C:\Program Files\Common Files\Sony Shared\WMPlugIn\SonicStageMonitoring.exe
O23 - Service: Sony TV Tuner Controller - Sony Corporation - C:\Program Files\Sony\Sony TV Tuner Library\halsv.exe
O23 - Service: Sony TV Tuner Manager - Sony Corporation - C:\Program Files\Sony\Sony TV Tuner Library\RM_SV.exe
O23 - Service: Sony TVTA Manager - Sony Corporation - C:\Program Files\Sony\Sony TV Tuner Library\SMceMan.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: TVersityMediaServer - Unknown owner - C:\Program Files\TVersity\Media Server\MediaServer.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
O23 - Service: WD Drive Manager Service (WDBtnMgrSvc.exe) - WDC - C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe

--
End of file - 12113 bytes

0

> R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:5555
This is a loopback proxy. But without anything to act as a proxy, you don't go anywhere.

http://support.microsoft.com/kb/135982
Follow the guide for you version of IE, and select the option for "direct connection" rather than via a proxy (which should list the same information that HJT has produced).

0

huh?

i dont use IE but if do this will this help me with my situation?

0

So, this behavior started immediately after the infection was cleaned?
-- You can pretty much rule out other causes such as overheating?

Are you able to run MBA-M and DDS as per the linky below?

http://www.daniweb.com/forums/thread134865.html

If so, please post those logs for me.

-- Do you have a viable System Restore point from before the infection?

Let us know.

Cheers :)
PP

0

i couldnt finish the scan for mba unless i booted in safe mode. otherwise it would freeze midway. here are the logs

Malwarebytes' Anti-Malware 1.44
Database version: 3833
Windows 5.1.2600 Service Pack 3 (Safe Mode)
Internet Explorer 7.0.5730.13

1/4/2002 2:44:07 AM
mbam-log-2002-01-04 (02-44-07).txt

Scan type: Full Scan (C:\|)
Objects scanned: 337711
Time elapsed: 1 hour(s), 22 minute(s), 57 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)


-------------------------------------------------------------------------------------------

DDS (Ver_09-12-01.01) - NTFSx86
Run by Ramzey El Gadi at 22:21:27.60 on Thu 01/03/2002
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_17
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1015.535 [GMT -8:00]

AV: Avira AntiVir PersonalEdition *On-access scanning enabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
svchost.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Binn\sqlservr.exe
C:\Program Files\CyberPower PowerPanel Personal Edition\ppped.exe
C:\Program Files\Common Files\Sony Shared\WMPlugIn\SonicStageMonitoring.exe
C:\Program Files\Sony\Sony TV Tuner Library\SMceMan.exe
svchost.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\TVersity\Media Server\MediaServer.exe
C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Sony\Sony TV Tuner Library\RM_SV.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
C:\PROGRA~1\COMMON~1\Stardock\SDMCP.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
C:\Program Files\CyberPower PowerPanel Personal Edition\pppeuser.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Ramzey El Gadi\Desktop\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://sbc.yahoo.com/dsl
uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
mSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
uInternet Settings,ProxyServer = http=127.0.0.1:5555
uInternet Settings,ProxyOverride = <local>
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: Yahoo! IE Services Button: {5bab4b5b-68bc-4b02-94d6-2fc0de4a7897} - c:\program files\yahoo!\common\yiesrvc.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No File
TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
EB: &Yahoo! Messenger: {4528bbe0-4e08-11d5-ad55-00010333d0ad} - c:\progra~1\yahoo!\common\yhexbmesus.dll
uRun: [DAEMON Tools] "c:\program files\daemon tools\daemon.exe" -lang 1033
uRun: [Google Update] "c:\documents and settings\ramzey el gadi\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [PowerPanel Personal Edition User Interaction] "c:\program files\cyberpower powerpanel personal edition\pppeuser.exe"
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [ehTray] c:\windows\ehome\ehtray.exe
mRun: [High Definition Audio Property Page Shortcut] HDAudPropShortcut.exe
mRun: [VAIO Update 2] "c:\program files\sony\vaio update 2\VAIOUpdt.exe" /Stationary
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [AGRSMMSG] AGRSMMSG.exe
mRun: [ATIPTA] c:\program files\ati technologies\ati control panel\atiptaxx.exe
mRun: [HPDJ Taskbar Utility] c:\windows\system32\spool\drivers\w32x86\3\hpztsb07.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [avgnt] "c:\program files\avira\antivir personaledition classic\avgnt.exe" /min
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [WD Drive Manager] c:\program files\western digital\wd drive manager\WDBtnMgrUI.exe
mRun: [WD Anywhere Backup] c:\program files\wd\wd anywhere backup\MemeoLauncher2.exe --silent
mRun: [Memeo AutoSync] c:\program files\memeo\autosync\MemeoLauncher2.exe --silent
mRun: [Picasa Media Detector] c:\program files\picasa2\PicasaMediaDetector.exe
StartupFolder: c:\docume~1\ramzey~1\startm~1\programs\startup\stardo~1.lnk - c:\program files\stardock\objectdock\ObjectDock.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office\OSA9.EXE
IE: &Yahoo! Search - file:///c:\program files\yahoo!\Common/ycsrch.htm
IE: Yahoo! &Dictionary - file:///c:\program files\yahoo!\Common/ycdict.htm
IE: Yahoo! &Maps - file:///c:\program files\yahoo!\Common/ycmap.htm
IE: Yahoo! &SMS - file:///c:\program files\yahoo!\Common/ycsms.htm
IE: {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - c:\program files\aim\aim.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - c:\program files\yahoo!\common\yiesrvc.dll
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
Notify: igfxcui - igfxdev.dll
Notify: MCPClient - c:\progra~1\common~1\stardock\mcpstub.dll
SSODL: 0aMCPClient - {F5DF91F9-15E9-416B-A7C3-7519B11ECBFC} - c:\progra~1\common~1\stardock\MCPCore.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
LSA: Authentication Packages = msv1_0 nwprovau

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\ramzey~1\applic~1\mozilla\firefox\profiles\qrg8gp4h.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/ig
FF - plugin: c:\documents and settings\ramzey el gadi\local settings\application data\google\update\1.2.183.17\npGoogleOneClick8.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npmozax.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npunagi2.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npyaxmpb.dll
FF - plugin: c:\program files\opera\program\plugins\npdivx32.dll
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}

---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - truec:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);

============= SERVICES / DRIVERS ===============

R1 avgio;avgio;c:\program files\avira\antivir personaledition classic\avgio.sys [2008-9-28 11608]
R2 AntiVirScheduler;Avira AntiVir Personal - Free Antivirus Scheduler;c:\program files\avira\antivir personaledition classic\sched.exe [2008-9-28 68865]
R2 AntiVirService;Avira AntiVir Personal - Free Antivirus Guard;c:\program files\avira\antivir personaledition classic\avguard.exe [2008-9-28 151297]
R2 McrdSvc;Media Center Extender Service;c:\windows\ehome\mcrdsvc.exe [2005-8-5 99328]
R2 MSSQL$VAIO_VEDB;MSSQL$VAIO_VEDB;c:\program files\microsoft sql server\mssql$vaio_vedb\binn\sqlservr.exe -svaio_vedb --> c:\program files\microsoft sql server\mssql$vaio_vedb\binn\sqlservr.exe -sVAIO_VEDB [?]
R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\viewpoint\common\ViewpointService.exe [2007-1-11 24652]
R2 WDBtnMgrSvc.exe;WD Drive Manager Service;c:\program files\western digital\wd drive manager\WDBtnMgrSvc.exe [2009-5-27 102400]
R3 avgntflt;avgntflt;c:\program files\avira\antivir personaledition classic\avgntflt.sys [2008-9-28 52056]
S2 MemeoBackgroundService;MemeoBackgroundService;c:\program files\wd\wd anywhere backup\MemeoBackgroundService.exe [2008-11-7 25824]
S3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2005-8-2 32512]
S3 SQLAgent$VAIO_VEDB;SQLAgent$VAIO_VEDB;c:\program files\microsoft sql server\mssql$vaio_vedb\binn\sqlagent.exe -i vaio_vedb --> c:\program files\microsoft sql server\mssql$vaio_vedb\binn\sqlagent.EXE -i VAIO_VEDB [?]
S3 WlanUIG;2Wire 802.11g USB Driver;c:\windows\system32\drivers\WlanUIG.sys [2002-1-2 347648]
S4 Neet_infm;Neet_infm; [x]

=============== Created Last 30 ================

2010-03-02 18:12:48 0 d-----w- c:\docume~1\alluse~1\applic~1\MemeoCommon
2010-02-28 07:45:02 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-02-28 07:44:59 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-29 11:04:05 0 d-----w- c:\program files\MSXML 4.0
2010-01-29 01:37:43 0 d-----w- c:\program files\ESET
2010-01-28 01:09:43 0 d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-27 08:32:40 0 d-----w- c:\program files\Trend Micro
2010-01-27 00:39:57 0 d-----w- c:\docume~1\ramzey~1\applic~1\Malwarebytes
2010-01-27 00:37:37 0 d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2010-01-26 09:31:30 0 d-----w- c:\program files\TrendMicro
2009-10-13 10:30:16 270336 -c----w- c:\windows\system32\dllcache\oakley.dll
2009-10-12 13:38:19 149504 -c----w- c:\windows\system32\dllcache\rastls.dll
2009-10-12 13:38:18 79872 -c----w- c:\windows\system32\dllcache\raschap.dll
2009-10-03 23:11:41 0 d-----w- C:\log
2009-09-04 21:03:36 58880 -c----w- c:\windows\system32\dllcache\msasn1.dll
2009-08-06 12:44:21 21504 -c--a-w- c:\windows\system32\dllcache\hidserv.dll
2009-08-06 12:44:21 21504 ----a-w- c:\windows\system32\hidserv.dll
2009-08-06 12:44:15 12160 -c--a-w- c:\windows\system32\drivers\mouhid.sys
2009-08-06 12:44:15 12160 -c--a-w- c:\windows\system32\dllcache\mouhid.sys
2009-08-06 12:44:11 14592 -c--a-w- c:\windows\system32\dllcache\kbdhid.sys
2009-08-06 12:44:11 14592 ----a-w- c:\windows\system32\drivers\kbdhid.sys
2009-08-06 12:44:04 10368 -c--a-w- c:\windows\system32\drivers\hidusb.sys
2009-08-06 12:44:04 10368 -c--a-w- c:\windows\system32\dllcache\hidusb.sys
2009-08-06 12:43:58 32128 -c--a-w- c:\windows\system32\drivers\usbccgp.sys
2009-08-06 12:43:58 32128 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
2009-07-21 08:05:40 1348432 ----a-w- c:\windows\system32\msxml4.dll
2009-07-17 19:01:06 58880 -c----w- c:\windows\system32\dllcache\atl.dll
2009-06-25 08:25:26 54272 -c----w- c:\windows\system32\dllcache\wdigest.dll
2009-06-25 08:25:26 136192 -c----w- c:\windows\system32\dllcache\msv1_0.dll
2009-06-24 11:18:41 92928 -c----w- c:\windows\system32\dllcache\ksecdd.sys
2009-06-13 02:42:45 0 d-----w- c:\docume~1\alluse~1\applic~1\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-06-10 14:13:29 84992 -c----w- c:\windows\system32\dllcache\avifil32.dll
2009-06-10 06:14:49 132096 -c----w- c:\windows\system32\dllcache\wkssvc.dll
2009-05-27 00:18:34 90112 ----a-w- c:\windows\system32\QuickTimeVR.qtx
2009-05-27 00:18:34 57344 ----a-w- c:\windows\system32\QuickTime.qts
2009-05-15 11:49:50 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll
2009-05-15 11:49:50 284160 -c----w- c:\windows\system32\dllcache\pdh.dll
2009-05-15 11:49:49 730112 -c----w- c:\windows\system32\dllcache\lsasrv.dll
2009-05-15 11:49:49 714752 -c----w- c:\windows\system32\dllcache\ntdll.dll
2009-05-15 11:49:49 617472 -c----w- c:\windows\system32\dllcache\advapi32.dll
2009-05-15 11:49:49 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll
2009-05-15 11:49:49 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2009-05-15 11:49:49 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2009-05-15 11:47:56 2560 -c----w- c:\windows\system32\xpsp4res.dll
2009-05-07 15:32:35 345600 -c----w- c:\windows\system32\dllcache\localspl.dll
2009-04-15 14:51:25 585216 -c----w- c:\windows\system32\dllcache\rpcrt4.dll
2009-03-21 14:06:58 989696 -c----w- c:\windows\system32\dllcache\kernel32.dll
2009-02-03 19:59:07 56832 -c----w- c:\windows\system32\dllcache\secur32.dll
2008-12-16 12:30:34 354816 -c----w- c:\windows\system32\dllcache\winhttp.dll
2008-12-12 18:18:16 87336 -c--a-w- c:\windows\system32\dns-sd.exe
2008-12-12 18:11:46 61440 -c--a-w- c:\windows\system32\dnssd.dll
2008-11-12 17:54:26 455296 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2008-11-12 17:54:01 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2008-10-24 05:34:50 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2008-10-23 12:36:14 286720 -c----w- c:\windows\system32\dllcache\gdi32.dll
2008-10-17 15:23:59 262144 ----a-w- C:\ntuser.dat
2008-10-15 10:19:45 333952 -c----w- c:\windows\system32\dllcache\srv.sys
2008-10-15 10:19:00 2189184 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2008-10-15 10:19:00 2145280 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2008-10-15 10:18:59 2023936 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2008-10-15 10:18:58 2066048 -c----w- c:\windows\system32\dllcache\ntkrnlpa.exe
2008-09-28 11:26:45 0 d-----w- c:\program files\Avira
2008-09-28 11:26:45 0 d-----w- c:\docume~1\alluse~1\applic~1\Avira
2008-09-25 15:17:15 0 d-----w- c:\windows\system32\scripting
2008-09-25 15:17:14 0 d-----w- c:\windows\system32\en
2008-09-25 15:17:14 0 d-----w- c:\windows\system32\bits
2008-09-25 15:17:14 0 d-----w- c:\windows\l2schemas
2008-09-25 15:14:44 0 d-----w- c:\windows\ServicePackFiles
2008-09-24 02:25:59 72387 -c--a-w- c:\windows\system32\dllcache\archvapp.inf
2008-09-10 08:36:37 39424 ----a-w- c:\windows\system32\drivers\usbaapl.sys
2008-09-10 08:36:37 2060288 ----a-w- c:\windows\system32\usbaaplrc.dll
2008-08-20 03:37:30 0 d-----w- c:\windows\system32\Adobe
2008-08-14 09:39:40 691712 -c----w- c:\windows\system32\dllcache\inetcomm.dll
2008-07-30 07:22:33 0 d-----w- c:\program files\Spybot - Search & Destroy
2008-07-30 07:22:33 0 d-----w- c:\docume~1\alluse~1\applic~1\Spybot - Search & Destroy
2008-07-20 14:30:53 0 d-----w- c:\program files\Media Player Classic
2008-07-19 04:08:11 0 d-----w- c:\program files\Red Kawa
2008-07-18 19:02:19 23040 -c----w- c:\windows\kb913800.exe
2008-07-18 11:50:19 7680 ----a-w- c:\windows\system32\ff_vfw.dll
2008-07-18 11:50:19 547 ----a-w- c:\windows\system32\ff_vfw.dll.manifest
2008-07-18 11:50:18 60273 -c--a-w- c:\windows\system32\pthreadGC2.dll
2008-07-18 11:50:17 0 d-----w- c:\program files\ffdshow
2008-07-18 11:48:52 0 d-----w- c:\program files\TVersity Codec Pack
2008-07-18 11:48:08 0 d-----w- c:\program files\TVersity
2008-07-18 10:52:22 0 d-----w- c:\program files\Windows Media Connect 2
2008-07-18 10:30:30 46592 -c--a-w- c:\windows\system32\dllcache\irbus.sys
2008-07-18 10:30:30 46592 -c----w- c:\windows\system32\drivers\irbus.sys
2008-07-18 10:30:30 19200 -c--a-w- c:\windows\system32\dllcache\hidir.sys
2008-07-18 10:30:30 19200 -c----w- c:\windows\system32\drivers\hidir.sys
2008-07-17 12:10:50 0 d-----w- c:\windows\network diagnostic
2008-07-17 12:09:31 52224 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2008-07-17 12:09:31 459264 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2008-07-17 12:09:31 268288 -c----w- c:\windows\system32\dllcache\iertutil.dll
2008-07-17 12:09:30 63488 -c----w- c:\windows\system32\dllcache\icardie.dll
2008-07-17 12:09:30 380928 -c----w- c:\windows\system32\dllcache\ieapfltr.dll
2008-07-17 12:09:30 2452872 -c----w- c:\windows\system32\dllcache\ieapfltr.dat
2008-07-17 12:09:30 13824 -c----w- c:\windows\system32\dllcache\ieudinit.exe
2008-07-17 12:09:29 991232 -c----w- c:\windows\system32\dllcache\ieframe.dll.mui
2008-07-17 12:09:28 6067200 -c----w- c:\windows\system32\dllcache\ieframe.dll
2008-07-17 12:07:21 33792 -c--a-w- c:\windows\system32\dllcache\SET17D.tmp
2008-07-07 20:26:58 253952 -c----w- c:\windows\system32\dllcache\es.dll
2008-06-24 16:43:16 74240 -c----w- c:\windows\system32\dllcache\mscms.dll
2008-06-20 17:46:57 245248 -c----w- c:\windows\system32\dllcache\mswsock.dll
2008-06-20 17:46:57 147968 -c----w- c:\windows\system32\dllcache\dnsapi.dll
2008-06-20 11:51:12 361600 -c----w- c:\windows\system32\dllcache\tcpip.sys
2008-06-20 11:40:08 138496 -c----w- c:\windows\system32\dllcache\afd.sys
2008-06-20 11:08:27 225856 -c----w- c:\windows\system32\dllcache\tcpip6.sys
2008-06-17 19:02:19 8461312 -c----w- c:\windows\system32\dllcache\shell32.dll
2008-06-12 14:23:32 66560 -c----w- c:\windows\system32\dllcache\mtxclu.dll
2008-06-11 01:57:29 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2008-06-11 01:57:29 272128 ------w- c:\windows\system32\drivers\bthport.sys
2008-06-11 01:56:28 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2008-05-09 23:23:42 135168 -c----w- c:\windows\system32\dllcache\wshom.ocx
2008-05-09 10:53:40 172032 -c----w- c:\windows\system32\dllcache\scrrun.dll
2008-05-08 11:24:44 155648 -c----w- c:\windows\system32\dllcache\wscript.exe
2008-05-07 05:12:40 1291264 -c----w- c:\windows\system32\dllcache\quartz.dll
2008-04-26 09:09:56 0 d-----w- c:\windows\pss
2008-04-11 04:30:44 6144 -csha-w- c:\documents and settings\ramzey el gadi\Thumbs.db
2008-04-10 09:48:15 0 d--h--w- c:\windows\PIF
2008-04-01 09:12:56 0 d-----w- c:\documents and settings\ramzey el gadi\dwhelper
2008-03-31 21:25:52 161096 -c--a-w- c:\windows\system32\DivXCodecVersionChecker.exe
2008-03-31 21:25:48 823296 -c--a-w- c:\windows\system32\divx_xx0c.dll
2008-03-31 21:25:48 823296 -c--a-w- c:\windows\system32\divx_xx07.dll
2008-03-31 21:25:46 831488 -c--a-w- c:\windows\system32\divx_xx0a.dll
2008-03-31 21:25:46 802816 -c--a-w- c:\windows\system32\divx_xx11.dll
2008-03-31 00:27:57 9464 -c----w- c:\windows\system32\drivers\cdralw2k.sys
2008-03-31 00:27:57 9336 -c----w- c:\windows\system32\drivers\cdr4_xp.sys
2008-03-31 00:27:55 129784 -c----w- c:\windows\system32\pxafs.dll
2008-03-30 02:16:03 0 d-----w- c:\program files\Mozilla Firefox 3 Beta 4
2008-03-25 04:50:58 621344 -c----w- c:\windows\system32\dllcache\mswstr10.dll
2008-03-25 04:50:42 60192 -c----w- c:\windows\system32\dllcache\msjter40.dll
2008-03-25 04:50:42 248608 -c----w- c:\windows\system32\dllcache\msjtes40.dll
2008-03-25 04:50:40 355112 -c----w- c:\windows\system32\dllcache\msjetol1.dll
2008-03-25 04:50:34 1516568 -c----w- c:\windows\system32\dllcache\msjet40.dll
2008-03-21 20:30:12 524288 -c--a-w- c:\windows\system32\DivXsm.exe
2008-03-21 20:30:12 4816 -c--a-w- c:\windows\system32\divxsm.tlb
2008-03-21 20:30:08 3596288 -c--a-w- c:\windows\system32\qt-dx331.dll
2008-03-21 20:30:00 200704 -c--a-w- c:\windows\system32\ssldivx.dll
2008-03-21 20:30:00 1044480 -c--a-w- c:\windows\system32\libdivx.dll
2008-03-21 20:28:54 81920 -c--a-w- c:\windows\system32\dpl100.dll
2008-03-21 20:28:54 416 -c--a-w- c:\windows\system32\dtu100.dll.manifest
2008-03-21 20:28:54 416 -c--a-w- c:\windows\system32\dpl100.dll.manifest
2008-03-21 20:28:54 196608 -c--a-w- c:\windows\system32\dtu100.dll
2008-03-21 20:28:52 53248 -c--a-w- c:\windows\system32\dpuGUI10.dll
2008-03-21 20:28:50 593920 ----a-w- c:\windows\system32\dpuGUI11.dll
2008-03-21 20:28:50 57344 -c--a-w- c:\windows\system32\dpv11.dll
2008-03-21 20:28:50 344064 -c--a-w- c:\windows\system32\dpus11.dll
2008-03-21 20:28:50 294912 -c--a-w- c:\windows\system32\dpu11.dll
2008-03-21 20:28:50 294912 -c--a-w- c:\windows\system32\dpu10.dll
2008-03-21 20:28:20 12288 -c--a-w- c:\windows\system32\DivXWMPExtType.dll
2008-03-05 09:03:50 0 d-----w- c:\docume~1\alluse~1\applic~1\Azureus
2008-01-24 21:19:28 0 d-----w- c:\program files\Wipeer
2008-01-24 21:19:28 0 d-----w- c:\docume~1\ramzey~1\applic~1\WiPeer
2007-10-31 08:07:08 0 d-----w- c:\program files\mIRC
2007-10-31 08:07:08 0 d-----w- c:\docume~1\ramzey~1\applic~1\mIRC
2007-10-24 08:47:38 84480 -c--a-w- c:\windows\system32\mscories.dll
2007-10-24 08:47:38 282112 ----a-w- c:\windows\system32\mscoree.dll
2007-10-24 08:47:38 158720 -c--a-w- c:\windows\system32\mscorier.dll
2007-10-24 08:47:28 96760 -c--a-w- c:\windows\system32\dfshim.dll
2007-10-23 00:34:25 0 d-----w- c:\program files\Mr QuestionMan
2007-09-19 17:12:21 0 d-----w- c:\docume~1\alluse~1\applic~1\Last.fm
2007-08-14 01:54:10 233472 -c----w- c:\windows\system32\dllcache\webcheck.dll
2007-08-14 01:54:10 156160 -c----w- c:\windows\system32\dllcache\msls31.dll
2007-08-14 01:44:30 105984 -c----w- c:\windows\system32\dllcache\url.dll
2007-08-14 01:44:06 102912 -c----w- c:\windows\system32\dllcache\occache.dll
2007-08-14 01:43:56 634648 -c----w- c:\windows\system32\dllcache\iexplore.exe
2007-08-14 01:40:52 991232 ----a-w- c:\windows\system32\ieframe.dll.mui
2007-08-14 01:39:00 124928 -c----w- c:\windows\system32\dllcache\advpack.dll
2007-08-14 01:38:48 10240 -c----w- c:\windows\system32\advpack.dll.mui
2007-08-14 01:32:30 45568 -c----w- c:\windows\system32\dllcache\mshta.exe
2007-08-04 23:46:53 23 -c--a-w- c:\windows\system32\presets.ini
2007-08-04 23:38:32 0 d-----w- c:\program files\SystemRequirementsLab
2007-07-24 01:55:17 0 d-----w- c:\program files\Diskeeper Corporation
2007-07-20 21:00:19 43520 -c--a-w- c:\windows\system32\CmdLineExt03.dll
2007-07-19 20:30:57 2560 -c--a-w- c:\windows\_MSRSTRT.EXE
2007-07-19 19:50:27 4254 -c--a-w- c:\windows\langorig.ini
2007-07-19 19:49:42 36864 -c----w- c:\windows\system32\wbsys.dll
2007-07-19 19:49:42 20480 -c--a-w- c:\windows\system32\wbload.dll
2007-07-15 04:17:20 54156 -c-ha-w- c:\windows\QTFont.qfn
2007-07-15 04:17:20 1409 -c--a-w- c:\windows\QTFont.for
2007-07-06 06:04:32 0 d-----w- c:\program files\3D-Analyze
2007-07-06 04:12:27 172032 ----a-w- c:\windows\system32\igfxres.dll
2007-07-06 04:08:55 0 d-----w- C:\Intel
2007-07-06 01:02:11 98304 -c--a-w- c:\windows\system32\CmdLineExt.dll
2007-06-24 22:19:12 0 d-----w- c:\program files\DAEMON Tools
2007-06-24 20:30:16 682232 ----a-w- c:\windows\system32\drivers\sptd.sys
2007-06-14 22:52:53 0 d-----w- c:\program files\Bonjour
2007-06-10 22:32:13 0 d-----w- c:\program files\2Wire
2007-06-08 23:10:39 0 d-----w- c:\docume~1\ramzey~1\applic~1\iSproggler
2007-06-08 22:56:33 0 d-----w- c:\program files\Last.fm
2007-06-06 19:51:07 0 d-----w- c:\docume~1\ramzey~1\applic~1\Joost
2007-06-05 19:35:39 21728 ----a-w- c:\windows\system32\wucltui.dll.mui
2007-06-05 19:35:38 17632 ----a-w- c:\windows\system32\wuaueng.dll.mui
2007-06-05 19:35:38 15072 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
2007-06-05 19:35:38 15064 ----a-w- c:\windows\system32\wuapi.dll.mui
2007-06-01 08:01:58 0 d-----w- c:\docume~1\ramzey~1\applic~1\Adesso Systems
2007-05-24 15:18:54 3006774 ----a-w- C:\WallRandom.bmp
2007-05-03 03:54:14 0 d-----w- c:\docume~1\ramzey~1\applic~1\iLike
2007-03-04 23:30:05 3608 -c--a-w- c:\documents and settings\ramzey el gadi\.pyscrobble.cache-journal
2007-03-02 05:57:13 0 d-----w- c:\program files\Executive Software
2007-02-28 07:03:06 0 d-----w- c:\program files\AltoMP3 Gold
2007-02-28 06:53:31 0 d-----w- c:\docume~1\ramzey~1\applic~1\SolidDocuments
2007-02-28 06:51:33 0 d-----w- c:\docume~1\alluse~1\applic~1\SolidDocuments
2007-02-28 06:40:27 0 d-----w- c:\docume~1\ramzey~1\applic~1\River Past G4
2007-02-28 06:36:49 0 d-----w- c:\docume~1\alluse~1\applic~1\River Past G4
2007-02-27 23:03:42 0 d-----w- c:\program files\Total Video Converter
2007-02-27 07:40:09 0 d-----w- c:\docume~1\ramzey~1\applic~1\Softplicity
2007-02-27 07:39:54 0 d-----w- c:\program files\TotalAudioConverter
2007-02-16 03:38:55 900096 -c--a-w- c:\documents and settings\ramzey el gadi\.pyscrobble.cache
2007-02-16 03:37:57 0 d-----w- c:\program files\The Last.fm Toolshed
2007-02-11 09:39:20 25 -c--a-w- c:\windows\cdplayer.ini
2007-02-11 09:36:03 0 d-----w- c:\program files\common files\xing shared
2007-02-11 09:35:35 0 d-----w- c:\program files\common files\Real
2007-01-02 17:02:10 0 d-----w- c:\program files\WC3Banlist
2007-01-02 06:04:42 0 d-----w- c:\windows\system32\appmgmt
2006-11-13 06:32:59 679936 -c--a-w- c:\windows\system32\D3DX81ab.dll
2006-11-13 06:27:08 0 d-----w- c:\program files\WinPcap
2006-11-07 07:21:46 0 d-----w- c:\program files\common files\Viewpoint
2006-10-19 03:00:14 17408 -c----w- c:\windows\system32\wpdshextautoplay.exe
2006-10-14 22:11:28 0 d-----w- c:\program files\VideoLAN
2006-10-09 23:15:52 1669632 -c--a-w- c:\windows\system32\SET9.tmp
2006-10-09 23:12:40 291840 -c--a-w- c:\windows\system32\SETA.tmp
2006-10-04 02:47:52 107368 -c--a-w- c:\windows\system32\GEARAspi.dll
2006-10-02 22:28:42 312128 -c----w- c:\windows\system32\msdelta.dll
2006-09-29 03:13:26 95344 -c----w- c:\windows\system32\WUDFCoinstaller.dll
2006-09-29 02:00:34 82944 -c----w- c:\windows\system32\drivers\WudfRd.sys
2006-09-29 01:56:38 316416 -c----w- c:\windows\system32\WUDFx.dll
2006-09-29 01:56:38 146432 -c----w- c:\windows\system32\WudfHost.exe
2006-09-29 01:56:16 165376 -c----w- c:\windows\system32\WudfPlatform.dll
2006-09-29 01:56:14 55808 -c----w- c:\windows\system32\WudfSvc.dll
2006-09-29 01:55:50 77568 -c----w- c:\windows\system32\drivers\WudfPf.sys
2006-09-23 20:12:38 74715 -c----w- c:\windows\system32\IE7Eula.rtf
2006-09-19 23:44:04 23400 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2006-09-07 23:04:37 44576 -c--a-w- c:\windows\system32\GDIPFONTCACHEV1.DAT
2006-09-07 02:12:40 376 -c--a-w- c:\windows\ODBC.INI
2006-09-07 02:11:22 94208 -c--a-w- c:\windows\system32\dllcache\fpencode.dll
2006-09-01 15:44:04 8798 -c--a-w- c:\windows\system32\icrav03.rat
2006-09-01 15:44:04 1988 -c----w- c:\windows\system32\ticrf.rat
2006-08-21 17:52:08 247326 -c----w- c:\windows\system32\dllcache\strmdll.dll
2006-08-17 00:51:55 800 -c--a-w- c:\windows\hpinfo.lnk
2006-08-17 00:51:43 0 d-----w- c:\program files\hp deskjet 3320 series
2006-08-17 00:51:21 518 ----a-w- C:\hpfr3320.xml
2006-08-17 00:45:31 25856 -c--a-w- c:\windows\system32\drivers\usbprint.sys
2006-08-17 00:45:31 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2006-06-29 15:05:44 26112 -c----w- c:\windows\system32\idndl.dll
2006-06-29 15:05:44 23552 ------w- c:\windows\system32\normaliz.dll
2006-06-29 00:59:26 24576 -c----w- c:\windows\system32\nlsdl.dll
2006-06-19 23:20:42 236928 -c----w- c:\windows\system32\dllcache\WgaLogon.dll
2006-06-19 23:19:26 336768 -c----w- c:\windows\system32\dllcache\WgaTray.exe
2006-06-10 20:34:14 754 -c--a-w- c:\windows\WORDPAD.INI
2006-06-08 19:06:50 66384 -c----w- c:\windows\system32\normnfkc.nls
2006-06-08 19:06:50 60294 -c----w- c:\windows\system32\normnfkd.nls
2006-06-08 19:06:50 59342 -c----w- c:\windows\system32\normidna.nls
2006-06-08 19:06:50 45794 -c----w- c:\windows\system32\normnfc.nls
2006-06-08 19:06:50 39284 -c----w- c:\windows\system32\normnfd.nls
2006-05-22 23:07:53 0 d-----w- C:\Temp
2006-05-19 15:08:32 3599360 -c----w- c:\windows\system32\dllcache\mshtml.dll
2006-05-13 22:18:14 32 -c--a-w- c:\windows\wininit.ini
2006-05-12 05:51:20 16153 ----a-w- C:\iPodnanoCover.jpg
2006-05-10 05:23:03 832512 -c----w- c:\windows\system32\dllcache\wininet.dll
2006-05-10 05:23:01 671232 -c----w- c:\windows\system32\dllcache\mstime.dll
2006-05-10 05:23:01 477696 -c----w- c:\windows\system32\dllcache\mshtmled.dll
2006-05-10 05:23:01 44544 -c----w- c:\windows\system32\dllcache\pngfilt.dll
2006-05-10 05:23:01 193024 -c----w- c:\windows\system32\dllcache\msrating.dll
2006-05-10 05:22:59 347136 -c----w- c:\windows\system32\dllcache\dxtmsft.dll
2006-05-10 05:22:59 27648 -c----w- c:\windows\system32\dllcache\jsproxy.dll
2006-05-10 05:22:59 214528 -c----w- c:\windows\system32\dllcache\dxtrans.dll
2006-05-10 05:22:59 133120 -c----w- c:\windows\system32\dllcache\extmgr.dll
2006-05-07 09:10:18 0 d-----w- c:\program files\Soulseek
2006-04-29 23:50:03 0 d-----w- c:\docume~1\ramzey~1\applic~1\last.fm
2006-04-29 23:49:42 0 d-----w- c:\program files\Last.fm Player
2006-04-26 00:16:05 348 ----a-w- C:\My Documents.lnk
2006-04-17 09:00:13 1038024 -c--a-w- c:\windows\setupapi.log.1.old
2006-03-29 00:27:16 54891 ----a-w- C:\iTunes_Artwork.png
2006-03-20 04:59:16 0 d-----w- c:\docume~1\ramzey~1\applic~1\Azureus
2006-03-20 04:58:47 0 d-----w- c:\program files\Azureus
2006-03-17 00:38:01 28672 ------w- c:\windows\system32\verclsid.exe
2006-03-08 07:56:59 0 d-sh--w- c:\documents and settings\ramzey el gadi\UserData
2006-03-08 07:16:48 0 d-----w- c:\windows\system32\LogFiles
2006-03-03 06:23:29 25088 -c--a-w- c:\windows\system32\msxml3a.dll
2006-03-02 08:32:00 0 d-----w- c:\program files\Plato DVD to MP3 Ripper
2006-03-02 08:22:43 0 d-----w- c:\program files\Xilisoft
2006-03-02 08:10:49 131072 -c--a-w- c:\windows\system32\SpoonUninstall.exe
2006-03-02 08:10:40 0 d-----w- c:\program files\Illustrate
2006-03-02 08:05:23 0 d-----w- c:\program files\Audiogalaxy Satellite
2006-03-02 07:40:46 0 d-----w- c:\docume~1\ramzey~1\applic~1\Avant Browser
2006-03-02 07:25:44 0 d-----w- c:\program files\Lavasoft
2006-03-02 07:16:24 0 d-----w- c:\program files\LucasArts
2006-03-02 07:08:37 0 d-----w- c:\program files\Infogrames Interactive
2006-02-22 09:31:15 436 ----a-w- C:\wallrandom.ini
2006-02-22 09:07:57 0 d-----w- c:\program files\Stardock
2006-02-22 09:07:57 0 d-----w- c:\program files\common files\Stardock
2006-02-22 08:30:25 0 d-----w- c:\docume~1\ramzey~1\applic~1\Jasc
2006-02-18 05:10:41 0 d-----w- C:\Fraps
2006-02-18 05:01:10 0 d-----w- c:\program files\DivX
2006-02-18 01:42:41 0 d-----w- c:\docume~1\ramzey~1\applic~1\uTorrent
2006-02-18 00:42:09 0 d-----w- c:\program files\AIM
2006-02-17 23:34:31 0 d-----w- c:\program files\Yahoo!
2006-02-13 07:19:56 0 d-----w- c:\program files\iTunes
2006-01-30 01:13:00 0 d-----w- c:\docume~1\ramzey~1\applic~1\Atari
2006-01-16 23:50:27 0 d-----w- c:\program files\AOD
2006-01-16 23:50:25 0 d-----w- c:\program files\Viewpoint
2006-01-16 23:50:25 0 d-----w- c:\docume~1\alluse~1\applic~1\Viewpoint
2006-01-16 23:50:02 0 d-----w- c:\program files\common files\Nullsoft
2006-01-16 23:49:39 0 d-----w- c:\program files\common files\AOL
2006-01-16 23:39:27 28 -c--a-w- c:\windows\atid.ini
2005-12-15 23:47:00 0 d-----w- c:\program files\MsnMusic
2005-12-15 23:45:54 0 d-----w- c:\windows\RegisteredPackages
2005-12-07 03:24:19 0 d-----w- C:\VAIO Entertainment
2005-12-07 03:24:18 0 d-----w- c:\documents and settings\all users\VAIO Media Integrated Server
2005-12-07 03:06:52 0 d-----w- c:\windows\system32\NtmsData
2005-12-06 07:17:39 0 d-----w- c:\documents and settings\ramzey el gadi\Shared
2005-12-06 07:17:37 0 d-----w- c:\documents and settings\ramzey el gadi\Incomplete
2005-12-06 07:17:26 0 d-----w- c:\docume~1\ramzey~1\applic~1\LimeWire
2005-12-05 09:31:33 0 d-----w- c:\windows\system32\PreInstall
2005-12-05 05:17:48 413760 ----a-w- c:\windows\system32\mpg4c32.dll
2005-12-05 05:17:48 157696 -c--a-w- c:\windows\system32\unrar.dll
2005-12-05 05:17:47 1415680 ----a-w- c:\windows\system32\WMV9VCM.dll
2005-12-05 05:17:45 344064 -c--a-w- c:\windows\system32\msvcr70.dll
2005-12-05 04:16:05 107132 -c--a-w- c:\windows\UninstallFirefox.exe
2005-12-05 04:15:59 4535 -c--a-w- c:\windows\mozver.dat
2005-12-05 02:33:05 0 d-----w- c:\windows\system32\SoftwareDistribution
2005-12-03 11:56:50 36864 ----a-w- c:\windows\system32\frapsvid.dll
2005-12-03 07:19:31 0 d-----w- c:\windows\Downloaded Installations
2005-12-03 07:19:05 0 d-----w- c:\program files\iPod
2005-12-03 06:25:48 140488 -c--a-w- c:\windows\system32\Comdlg32.ocx
2005-12-03 05:53:54 0 d-----w- c:\program files\Jasc Software Inc
2005-12-03 05:42:28 0 d-----w- c:\program files\common files\Adobe Systems Shared
2005-12-03 05:11:26 70777 -c--a-w- c:\windows\War3Unin.dat
2005-12-03 05:11:25 2829 -c--a-w- c:\windows\War3Unin.pif
2005-12-03 05:11:25 139264 -c--a-w- c:\windows\War3Unin.exe
2005-12-03 05:07:35 86061 ----a-w- c:\windows\system32\LMRTREND.klw
2005-12-03 04:47:47 0 d-----w- c:\docume~1\ramzey~1\applic~1\Symantec
2005-12-03 04:47:47 0 d-----w- c:\docume~1\ramzey~1\applic~1\Intuit
2005-10-31 15:56:00 700416 ----a-w- C:\StubInstaller.exe
2005-09-29 01:33:05 579312 -c--a-w- c:\windows\WindowsXP-KB899588-x86-ENU.bak
2005-09-29 01:33:05 4293872 -c--a-w- c:\windows\WindowsXP-KB896727-x86-ENU.bak
2005-09-29 01:29:36 625904 -c--a-w- c:\windows\WINDOWSXP-KB901214-X86-ENU.bak
2005-09-29 01:29:36 494832 -c--a-w- c:\windows\WINDOWSXP-KB903235-X86-ENU.bak
2005-09-29 01:25:58 0 d-----w- c:\docume~1\alluse~1\applic~1\Symantec
2005-09-29 01:25:34 0 d-----w- c:\documents and settings\all users\ImageConverter2
2005-09-29 01:25:14 0 d-----w- c:\program files\common files\Borland Shared
2005-09-29 01:24:59 0 d-----w- c:\windows\ShellNew
2005-09-29 01:24:53 0 d-----w- c:\program files\WordPerfect Office 12
2005-09-29 01:24:53 0 d-----w- c:\program files\common files\Corel
2005-09-29 01:24:28 2150 -c--a-w- c:\windows\system32\ssmute.ini
2005-09-29 01:24:28 0 d-----w- c:\program files\InterMute
2005-09-29 01:24:23 0 d-----w- c:\program files\MoodLogic
2005-09-29 01:23:37 0 d-----w- c:\docume~1\alluse~1\applic~1\VAIO Media Platform
2005-09-29 01:22:27 180 -c--a-w- c:\windows\Quicken.ini
2005-09-29 01:22:24 0 d-----w- c:\program files\common files\Palo Alto Software
2005-09-29 01:22:24 0 d-----w- c:\program files\common files\Intuit
2005-09-29 01:22:20 0 d-----w- c:\program files\Quicken
2005-09-29 01:22:20 0 d-----w- c:\docume~1\alluse~1\applic~1\Intuit
2005-09-29 01:21:41 204800 -c--a-w- c:\windows\system32\IVIresizeW7.dll
2005-09-29 01:21:41 20480 -c--a-w- c:\windows\system32\IVIresize.dll
2005-09-29 01:21:41 200704 -c--a-w- c:\windows\system32\IVIresizeA6.dll
2005-09-29 01:21:41 192512 -c--a-w- c:\windows\system32\IVIresizeP6.dll
2005-09-29 01:21:41 192512 -c--a-w- c:\windows\system32\IVIresizeM6.dll
2005-09-29 01:21:41 188416 -c--a-w- c:\windows\system32\IVIresizePX.dll
2005-09-29 01:21:41 0 d-----w- c:\program files\common files\InterVideo
2005-09-29 01:21:39 0 d-----w- c:\program files\InterVideo
2005-09-29 01:17:59 0 d-----w- c:\program files\Sonic
2005-09-29 01:17:49 2981888 -c--a-w- c:\windows\system32\iplw7.dll
2005-09-29 01:17:49 2785280 -c--a-w- c:\windows\system32\iplm6.dll
2005-09-29 01:17:49 2686976 -c--a-w- c:\windows\system32\iplm5.dll
2005-09-29 01:17:49 2531328 -c--a-w- c:\windows\system32\iplp6.dll
2005-09-29 01:17:49 2502656 -c--a-w- c:\windows\system32\iplpx.dll
2005-09-29 01:17:48 53248 -c--a-w- c:\windows\system32\ipl.dll
2005-09-29 01:17:48 2973696 -c--a-w- c:\windows\system32\ipla6.dll
2005-09-29 01:17:48 19968 -c--a-w- c:\windows\system32\Cpuinf32.dll
2005-09-29 01:16:45 757760 -c--a-w- c:\windows\system32\CDDBUI.dll
2005-09-29 01:16:45 630784 -c--a-w- c:\windows\system32\CDDBControl.dll
2005-08-09 22:13:31 245408 -c--a-w- c:\windows\system32\unicows.dll
2005-08-09 22:12:07 352401 -c--a-w- c:\windows\system32\DivXMedia.ax
2005-08-05 21:02:00 224256 -c--a-w- c:\windows\system32\dllcache\psisrndr.ax
2005-08-05 21:02:00 224256 -c----w- c:\windows\system32\psisrndr.ax
2005-08-05 21:01:58 8843776 -c--a-w- c:\windows\system32\dllcache\ehres.dll
2005-08-05 21:01:58 558592 -c----w- c:\windows\system32\dllcache\ehui.dll
2005-08-05 21:01:56 97280 -c----w- c:\windows\system32\dllcache\ehProxy.dll
2005-08-05 21:01:56 20480 -c----w- c:\windows\system32\dllcache\ehdebug.dll
2005-08-05 21:01:54 58368 -c--a-w- c:\windows\system32\dllcache\msdvbnp.ax
2005-08-05 21:01:54 58368 -c----w- c:\windows\system32\Msdvbnp.ax
2005-08-05 21:01:54 291840 -c----w- c:\windows\system32\dllcache\sbe.dll
2005-08-05 21:01:54 235008 -c--a-w- c:\windows\system32\dllcache\psisdecd.dll
2005-08-05 21:01:54 235008 -c----w- c:\windows\system32\psisdecd.dll
2005-08-05 21:01:54 1669632 -c----w- c:\windows\system32\dllcache\msvidctl.dll
2005-08-05 21:01:54 117248 -c----w- c:\windows\system32\dllcache\bdatunepia.dll
2005-08-05 20:56:28 65536 -c----w- c:\windows\system32\dllcache\ehRec.exe
2005-08-05 20:29:00 3223552 -c----w- c:\windows\system32\dllcache\ehshell.exe
2005-08-05 20:19:52 110592 -c----w- c:\windows\system32\dllcache\ehExtCOM.dll
2005-08-05 20:10:28 8192 -c----w- c:\windows\system32\dllcache\ehiExtCOM.dll
2005-08-05 20:05:32 64512 -c----w- c:\windows\system32\msnp.ax
2005-08-04 01:29:52 535040 -c--a-w- c:\windows\system32\wmdrmsdk.dll
2005-08-04 01:29:52 249856 -c--a-w- c:\windows\system32\drmupgds.exe
2005-08-04 01:29:52 212992 -c--a-w- c:\windows\system32\MFPLAT.dll
2005-08-02 21:24:01 53299 -c--a-w- c:\windows\system32\pthreadVC.dll
2005-08-02 21:18:45 233472 -c--a-w- c:\windows\system32\wpcap.dll
2005-08-02 21:10:13 32512 -c--a-w- c:\windows\system32\drivers\npf.sys
2005-08-02 21:08:09 81920 -c--a-w- c:\windows\system32\Packet.dll
2005-08-02 21:08:06 61440 -c--a-w- c:\windows\system32\WanPacket.dll
2005-06-01 20:07:00 4084976 -c--a-w- c:\windows\WindowsXP-KB890923-x86-ENU.exe
2005-06-01 19:40:06 0 d-----w- c:\windows\Options
2005-06-01 19:37:05 88363 ----a-w- c:\windows\AGRSMMSG.exe
2005-06-01 19:37:05 64512 -c--a-w- c:\windows\agrsmdel.exe
2005-06-01 19:37:05 1270540 ----a-w- c:\windows\system32\drivers\AGRSM.sys
2005-06-01 19:09:37 81342 -c--a-w- c:\windows\system32\atiicdxx.dat
2005-06-01 19:09:37 36864 -c--a-w- c:\windows\system32\drivers\ati2erec.dll
2005-03-04 05:17:16 0 d-----w- c:\program files\Shield
2005-03-04 05:15:14 86016 -c--a-w- c:\windows\system32\VCCenter.cpl
2005-03-04 05:08:24 497408 -c--a-w- c:\windows\Q895198_xpmce_sp2_x86_EN.exe
2005-03-04 05:05:36 435432 -c--a-w- c:\windows\WindowsXP-KB888239-x86-ENU.exe
2005-03-04 05:05:36 106728 -c--a-w- c:\windows\WindowsXP-KB888239-x86-Symbols-ENU.exe
2005-02-23 23:15:34 8192 -c--a-w- c:\windows\REGLOCS.OLD
2005-02-23 22:44:38 61 -c--a-w- c:\windows\smscfg.ini
2005-02-23 22:32:27 333 -c--a-w- c:\windows\system32\$ncsp$.inf
2005-02-23 22:19:20 0 d-----w- c:\windows\system32\Lang
2005-02-23 22:18:16 0 d-----w- c:\windows\system32\RTCOM
2005-02-23 22:18:10 32 ----a-w- c:\windows\system32\drivers\RtkHDAud.dat
2005-02-23 22:18:09 9766400 -c--a-w- c:\windows\RTLCPL.EXE
2005-02-23 22:18:09 8376832 -c--a-w- c:\windows\RTHDCPL.exe
2005-02-23 22:18:09 77824 ----a-w- c:\windows\SOUNDMAN.EXE
2005-02-23 22:18:09 57344 ----a-w- c:\windows\ALCMTR.EXE
2005-02-23 22:18:09 40960 -c--a-w- c:\windows\system32\ChCfg.exe
2005-02-23 22:18:09 278528 -c--a-w- c:\windows\system32\ALSNDMGR.CPL
2005-02-23 22:18:09 2748928 ----a-w- c:\windows\ALCWZRD.EXE
2005-02-23 22:18:09 2319808 ----a-w- c:\windows\system32\drivers\RtkHDAud.sys
2005-02-23 22:18:09 156672 -c--a-w- c:\windows\system32\RTLCPAPI.dll
2005-02-23 22:18:08 0 d-----w- c:\program files\Realtek
2005-02-23 21:52:37 33340 -c--a-w- c:\windows\system32\dbmsqlgc.dll
2005-02-23 21:52:37 24576 -c--a-w- c:\windows\system32\dbmsgnet.dll
2005-02-23 21:52:28 0 d-----w- c:\program files\Microsoft SQL Server
2005-02-23 21:51:35 610304 -c--a-w- c:\windows\system32\lpykrp.exe
2005-02-23 21:51:35 34 -c--a-w- c:\windows\system32\snyinst.oem
2005-02-23 21:37:14 0 d-----w- c:\program files\Movielink
2005-02-23 21:36:44 0 d-----w- c:\docume~1\alluse~1\applic~1\Sony Corporation
2005-02-23 21:35:54 120056 -c----w- c:\windows\system32\pxcpyi64.exe
2005-02-23 21:35:54 118520 -c----w- c:\windows\system32\pxinsi64.exe
2005-02-23 21:31:01 0 d-----w- c:\windows\system32\URTTemp
2005-02-23 21:30:51 324 -c--a-w- c:\windows\mce_refresh_rate_off.reg
2005-02-23 21:28:25 348160 ------w- c:\windows\system32\msvcr71.dll
2005-02-23 21:28:24 499712 -c--a-w- c:\windows\system32\msvcp71.dll
2005-02-23 21:27:55 560640 -c--a-w- c:\windows\system32\ltocx10N.ocx
2005-02-23 21:27:55 41984 -c--a-w- c:\windows\system32\lfgif10N.dll
2005-02-23 21:27:55 37376 -c--a-w- c:\windows\system32\lttwn10N.dll
2005-02-23 21:27:55 34304 -c--a-w- c:\windows\system32\lfbmp10N.dll
2005-02-23 21:27:55 297984 -c--a-w- c:\windows\system32\ltkrn10N.dll
2005-02-23 21:27:55 271360 -c--a-w- c:\windows\system32\LFCMP10N.DLL
2005-02-23 21:27:55 24576 -c--a-w- c:\windows\system32\lfavi10N.dll
2005-02-23 21:27:55 229888 -c--a-w- c:\windows\system32\LTDIS10N.dll
2005-02-23 21:27:55 221184 -c--a-w- c:\windows\system32\ltefx10N.dll
2005-02-23 21:27:55 114176 -c--a-w- c:\windows\system32\ltimg10N.dll
2005-02-23 21:27:55 108032 -c--a-w- c:\windows\system32\ltfil10N.DLL
2005-02-23 21:27:55 0 d-----w- c:\program files\Sony
2005-02-23 21:25:52 3952 ----a-w- c:\windows\system32\drivers\DMICall.sys
2005-02-23 21:25:52 0 d-----w- c:\program files\common files\Sony Shared
2005-02-23 21:12:22 1080552 -c--a-w- c:\windows\windowsxp-kb887472-x86-enu.exe
2005-02-23 21:12:02 4473064 -c--a-w- c:\windows\windowsxp-kb890047-x86-enu.exe
2005-02-23 21:11:48 396008 -c--a-w- c:\windows\windowsxp-kb888302-x86-enu.exe
2005-02-23 21:11:33 369384 -c--a-w- c:\windows\windowsxp-kb888113-x86-enu.exe
2005-02-23 21:11:18 405736 -c--a-w- c:\windows\windowsxp-kb891781-x86-enu.exe
2005-02-23 21:10:59 3826416 -c--a-w- c:\windows\windowsxp-kb867282-x86-enu.exe
2005-02-23 21:10:43 1776872 -c--a-w- c:\windows\windowsxp-kb873333-x86-enu.exe
2005-02-23 21:10:23 786664 -c--a-w- c:\windows\windowsxp-kb885250-x86-enu.exe
2005-02-23 21:10:04 852712 -c--a-w- c:\windows\windowsxp-kb891220-x86-enu.exe
2005-02-23 21:09:44 680680 -c--a-w- c:\windows\windowsxp-kb890175-x86-enu.exe
2005-02-23 21:09:25 3104488 -c--a-w- c:\windows\windowsxp-kb885835-x86-enu.exe
2005-02-23 21:09:08 457448 -c--a-w- c:\windows\windowsxp-kb887742-x86-enu.exe
2005-02-23 21:08:50 528616 -c--a-w- c:\windows\windowsxp-kb885836-x86-enu.exe
2005-02-23 21:08:39 0 d--h--w- c:\windows\$hf_mig$
2005-02-23 21:08:36 393448 -c--a-w- c:\windows\windowsxp-kb886185-x86-enu.exe
2005-02-23 21:08:17 26488 ----a-w- c:\windows\system32\spupdsvc.exe
2005-02-23 21:07:34 9944800 -c--a-r- c:\windows\windowsxpmediacenter2005-kb873369-enu.exe
2005-02-23 21:06:21 6272 ----a-w- c:\windows\system32\drivers\splitter.sys
2005-02-23 21:06:19 83072 ----a-w- c:\windows\system32\drivers\wdmaud.sys
2005-02-23 21:06:18 52864 ----a-w- c:\windows\system32\drivers\dmusic.sys
2005-02-23 21:06:13 395008 -c--a-w- c:\windows\windowsmedia10-kb886612-x86-enu.exe
2005-02-23 21:06:12 56576 ----a-w- c:\windows\system32\drivers\swmidi.sys
2005-02-23 21:06:11 142592 ------w- c:\windows\system32\drivers\aec.sys
2005-02-23 21:06:10 172416 ----a-w- c:\windows\system32\drivers\kmixer.sys
2005-02-23 21:06:09 2944 ----a-w- c:\windows\system32\drivers\drmkaud.sys
2005-02-23 21:06:07 60800 ----a-w- c:\windows\system32\drivers\sysaudio.sys
2005-02-23 21:05:59 60160 ----a-w- c:\windows\system32\drivers\drmk.sys
2005-02-23 21:05:14 658136 -c--a-w- c:\windows\kb835221.exe
2005-02-23 21:05:08 106240 -c--a-r- c:\windows\windows-kb870669-x86-enu.exe
2005-02-23 21:04:55 527080 -c--a-w- c:\windows\windowsxp-kb884018-x86-enu.exe
2005-02-23 21:04:19 31 -c--a-w- c:\windows\system32\elcric.dat
2005-02-23 21:02:11 180 -c--a-w- c:\windows\system\ykrp.com
2005-02-23 20:25:59 0 d-----w- c:\program files\ATI Technologies
2005-02-23 20:19:09 0 d-----w- c:\docume~1\alluse~1\applic~1\SBSI
2005-02-23 20:10:36 0 d-sh--w- c:\documents and settings\all users\DRM
2005-02-23 20:10:17 0 d--h--w- c:\program files\WindowsUpdate
2005-02-23 20:10:13 0 d-----w- c:\program files\Online Services
2005-02-23 20:09:59 0 d-----w- c:\program files\common files\MSSoap
2005-02-23 20:08:21 0 d-----w- c:\program files\Windows Plus
2005-02-23 20:08:07 0 d-----w- c:\program files\Messenger
2005-02-23 20:08:06 0 d-----w- c:\program files\MSN Gaming Zone
2005-02-23 20:08:01 0 d-----w- c:\program files\Windows NT
2005-02-23 12:04:03 0 d-----w- c:\program files\common files\ODBC
2005-02-23 12:04:02 0 d-----w- c:\program files\common files\SpeechEngines
2005-02-23 12:03:49 0 d-----r- c:\documents and settings\all users\Documents
2002-12-08 08:46:28 0 d-----w- c:\program files\CyberPower PowerPanel Personal Edition
2002-12-08 08:45:27 0 d-----w- c:\program files\common files\Zero G Software
2002-01-11 02:05:49 0 d-----w- c:\program files\PS3 Media Server
2002-01-10 04:43:06 0 d-----w- c:\program files\auksbx
2002-01-07 00:21:17 0 d-----w- c:\program files\mkv2vob
2002-01-07 00:20:52 0 d-----w- c:\program files\common files\Wise Installation Wizard
2002-01-06 07:46:09 0 d-----w- c:\docume~1\ramzey~1\applic~1\WD
2002-01-06 07:46:09 0 d-----w- c:\docume~1\ramzey~1\applic~1\Memeo
2002-01-06 07:28:13 0 d-----w- c:\program files\Picasa2
2002-01-06 07:23:14 0 d-----w- c:\program files\common files\Memeo
2002-01-06 07:23:11 0 d-----w- c:\program files\Memeo
2002-01-06 07:22:08 0 d-----w- c:\program files\common files\eSellerate
2002-01-06 07:22:04 0 d-----w- c:\program files\WD
2002-01-06 07:20:33 0 d-----w- c:\program files\Western Digital Corporation
2002-01-06 07:20:21 0 d-----w- c:\program files\Western Digital

==================== Find3M ====================

2010-01-05 10:00:29 832512 ------w- c:\windows\system32\wininet.dll
2010-01-05 10:00:21 78336 ----a-w- c:\windows\system32\ieencode.dll
2010-01-05 10:00:20 17408 ------w- c:\windows\system32\corpol.dll
2009-12-10 06:54:07 261632 ----a-w- c:\windows\PEV.exe
2009-10-25 14:11:34 77312 ----a-w- c:\windows\MBR.exe
2009-10-21 05:38:36 75776 ----a-w- c:\windows\system32\strmfilt.dll
2009-10-21 05:38:36 25088 ----a-w- c:\windows\system32\httpapi.dll
2009-10-20 16:20:16 265728 ----a-w- c:\windows\system32\drivers\http.sys
2009-10-15 16:28:26 81920 ----a-w- c:\windows\system32\fontsub.dll
2009-10-15 16:28:26 119808 ----a-w- c:\windows\system32\t2embed.dll
2009-10-13 10:30:16 270336 ----a-w- c:\windows\system32\oakley.dll
2009-10-12 13:38:19 149504 ----a-w- c:\windows\system32\rastls.dll
2009-10-12 13:38:18 79872 ----a-w- c:\windows\system32\raschap.dll
2009-10-11 12:17:27 411368 -c--a-w- c:\windows\system32\deploytk.dll
2009-09-11 14:18:39 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-04 21:03:36 58880 ----a-w- c:\windows\system32\msasn1.dll
2009-08-26 08:00:21 247326 ----a-w- c:\windows\system32\strmdll.dll
2009-08-25 09:17:27 354816 ----a-w- c:\windows\system32\winhttp.dll
2009-08-14 13:21:25 1850624 ----a-w- c:\windows\system32\win32k.sys
2009-08-05 09:01:48 204800 ----a-w- c:\windows\system32\mswebdvd.dll
2009-08-04 15:13:08 2145280 ------w- c:\windows\system32\ntoskrnl.exe
2009-08-04 14:20:09 2023936 ------w- c:\windows\system32\ntkrnlpa.exe
2009-07-31 18:05:44 1372672 ------w- c:\windows\system32\msxml6.dll
2009-07-31 04:35:42 1172480 ----a-w- c:\windows\system32\msxml3.dll
2009-07-17 19:01:06 58880 ----a-w- c:\windows\system32\atl.dll
2009-07-17 16:22:18 1435648 ----a-w- c:\windows\system32\query.dll
2009-07-14 07:43:24 286208 ----a-w- c:\windows\system32\wmpdxm.dll
2009-06-25 08:25:26 730112 ----a-w- c:\windows\system32\lsasrv.dll
2009-06-25 08:25:26 56832 ----a-w- c:\windows\system32\secur32.dll
2009-06-25 08:25:26 54272 ----a-w- c:\windows\system32\wdigest.dll
2009-06-25 08:25:26 301568 ----a-w- c:\windows\system32\kerberos.dll
2009-06-25 08:25:26 147456 ----a-w- c:\windows\system32\schannel.dll
2009-06-24 11:18:41 92928 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2009-06-12 12:31:40 80896 ----a-w- c:\windows\system32\tlntsess.exe
2009-06-12 12:31:39 76288 ----a-w- c:\windows\system32\telnet.exe
2009-06-10 17:19:38 2066432 ----a-w- c:\windows\system32\mstscax.dll
2009-06-10 14:13:29 84992 ----a-w- c:\windows\system32\avifil32.dll
2009-06-10 06:14:49 132096 ----a-w- c:\windows\system32\wkssvc.dll
2009-06-03 19:09:37 1291264 ----a-w- c:\windows\system32\quartz.dll
2009-05-07 15:32:35 345600 ----a-w- c:\windows\system32\localspl.dll
2009-04-15 14:51:25 585216 ----a-w- c:\windows\system32\rpcrt4.dll
2009-04-02 07:02:22 604160 ----a-w- c:\windows\system32\wmspdmod.dll
2009-03-13 21:37:00 49904 ----a-r- c:\windows\system32\drivers\BVRPMPR5.SYS
2009-03-06 14:22:18 284160 ----a-w- c:\windows\system32\pdh.dll
2009-02-09 12:10:48 714752 ----a-w- c:\windows\system32\ntdll.dll
2009-02-09 12:10:48 617472 ----a-w- c:\windows\system32\advapi32.dll
2009-02-09 12:10:48 473600 ----a-w- c:\windows\system32\wbem\fastprox.dll
2009-02-09 12:10:48 453120 ----a-w- c:\windows\system32\wbem\wmiprvsd.dll
2009-02-09 12:10:48 401408 ------w- c:\windows\system32\rpcss.dll
2009-02-06 11:11:05 110592 ------w- c:\windows\system32\services.exe
2009-02-06 10:39:08 35328 ----a-w- c:\windows\system32\sc.exe
2009-02-06 10:10:02 227840 ----a-w- c:\windows\system32\wbem\wmiprvse.exe
2008-12-11 10:57:09 333952 ----a-w- c:\windows\system32\drivers\srv.sys
2008-10-24 11:21:09 455296 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2008-10-23 12:36:14 286720 ----a-w- c:\windows\system32\gdi32.dll
2008-08-14 10:04:36 138496 ----a-w- c:\windows\system32\drivers\afd.sys
2008-07-07 20:26:58 253952 ------w- c:\windows\system32\es.dll
2008-06-25 01:12:58 295936 ------w- c:\windows\system32\wmpeffects.dll
2008-06-24 16:43:16 74240 ----a-w- c:\windows\system32\mscms.dll
2008-06-20 17:46:57 245248 ------w- c:\windows\system32\mswsock.dll
2008-06-20 11:51:12 361600 ------w- c:\windows\system32\drivers\tcpip.sys
2008-06-20 11:08:27 225856 ----a-w- c:\windows\system32\drivers\tcpip6.sys
2008-06-18 13:03:08 938496 ----a-w- c:\windows\system32\WMNetmgr.dll
2008-06-18 09:09:22 100864 ----a-w- c:\windows\system32\logagent.exe
2008-06-12 14:23:32 956928 ----a-w- c:\windows\system32\msdtctm.dll
2008-06-12 14:23:32 91648 ----a-w- c:\windows\system32\mtxoci.dll
2008-06-12 14:23:32 66560 ----a-w- c:\windows\system32\mtxclu.dll
2008-06-12 14:23:32 58880 ----a-w- c:\windows\system32\msdtclog.dll
2008-06-12 14:23:32 428032 ----a-w- c:\windows\system32\msdtcprx.dll
2008-06-12 14:23:32 161792 ----a-w- c:\windows\system32\msdtcuiu.dll
2008-05-09 10:53:40 90112 ----a-w- c:\windows\system32\wshext.dll
2008-05-09 10:53:40 430080 ----a-w- c:\windows\system32\vbscript.dll
2008-05-09 10:53:40 172032 ----a-w- c:\windows\system32\scrrun.dll
2008-05-09 10:53:39 180224 ----a-w- c:\windows\system32\scrobj.dll
2008-05-08 14:02:52 203136 ----a-w- c:\windows\system32\drivers\rmcast.sys
2008-05-08 11:24:44 155648 ----a-w- c:\windows\system32\wscript.exe
2008-05-07 09:07:23 135168 ----a-w- c:\windows\system32\cscript.exe
2008-04-14 12:42:38 11264 -c--a-w- c:\windows\system32\spnpinst.exe
2008-04-14 12:42:06 985088 ----a-w- c:\windows\system32\setupapi.dll
2008-04-14 12:41:58 423936 ----a-w- c:\windows\system32\licdll.dll
2008-04-14 00:25:26 1804 -c--a-w- c:\windows\system32\dcache.bin
2008-04-14 00:16:51 329728 -c--a-w- c:\windows\system32\netsetup.exe
2008-04-14 00:13:22 92424 ----a-w- c:\windows\system32\rdpdd.dll
2008-04-14 00:13:22 87176 -c--a-w- c:\windows\system32\rdpwsx.dll
2008-04-14 00:13:22 139656 -c--a-w- c:\windows\system32\drivers\rdpwd.sys
2008-04-14 00:13:21 21896 -c--a-w- c:\windows\system32\drivers\tdtcp.sys
2008-04-14 00:13:21 12168 -c--a-w- c:\windows\system32\tsddd.dll
2008-04-14 00:13:20 40840 ----a-w- c:\windows\system32\drivers\termdd.sys
2008-04-14 00:13:20 12040 -c--a-w- c:\windows\system32\drivers\tdpipe.sys
2008-04-14 00:11:59 997376 ----a-w- c:\windows\system32\msgina.dll
2008-04-14 00:10:31 53279 -c--a-w- c:\windows\system32\odbcji32.dll
2008-04-14 00:10:08 4126 -c--a-w- c:\windows\system32\msdxmlc.dll
2008-04-14 00:10:06 3584 -c--a-w- c:\windows\system32\msafd.dll
2008-04-13 19:45:12 60032 ----a-w- c:\windows\system32\drivers\USBAUDIO.sys
2008-04-13 19:36:38 10240 ----a-w- c:\windows\system32\drivers\compbatt.sys
2008-04-13 19:36:32 14208 ----a-w- c:\windows\system32\drivers\battc.sys
2008-04-13 19:28:39 175744 ----a-w- c:\windows\system32\drivers\rdbss.sys
2008-04-13 19:21:00 162816 ----a-w- c:\windows\system32\drivers\netbt.sys
2008-04-13 19:20:42 91520 ----a-w- c:\windows\system32\drivers\ndiswan.sys
2008-04-13 19:20:37 182656 ------w- c:\windows\system32\drivers\ndis.sys

============= FINISH: 22:22:29.73 ===============

0

also i think my processes are using up more memory than usual. also here is the mba log which had viruses last. i thought that if i removed these everything would be fixed.

Malwarebytes' Anti-Malware 1.44
Database version: 3815
Windows 5.1.2600 Service Pack 3
Internet Explorer 7.0.5730.13

3/2/2010 4:31:36 PM
mbam-log-2010-03-02 (16-31-36).txt

Scan type: Full Scan (C:\|)
Objects scanned: 337736
Time elapsed: 4 hour(s), 58 minute(s), 56 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 9

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\Documents and Settings\HelpAssistant\Local Settings\Application Data\qbygvt\asrqsftav.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Ramzey El Gadi\Local Settings\Application Data\qbygvt\asrqsftav.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{F6751740-EB65-4F51-9F4B-AC268B6E20CE}\RP1538\A0201955.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{F6751740-EB65-4F51-9F4B-AC268B6E20CE}\RP1538\A0202041.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{F6751740-EB65-4F51-9F4B-AC268B6E20CE}\RP1540\A0213418.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{F6751740-EB65-4F51-9F4B-AC268B6E20CE}\RP1540\A0214196.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{F6751740-EB65-4F51-9F4B-AC268B6E20CE}\RP1541\A0228329.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{F6751740-EB65-4F51-9F4B-AC268B6E20CE}\RP1541\A0229330.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{F6751740-EB65-4F51-9F4B-AC268B6E20CE}\RP1541\A0230058.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.

0

So, this behavior started immediately after the infection was cleaned?
-- You can pretty much rule out other causes such as overheating?
-- Do you have a viable System Restore point from before the infection?

I really don't see anything there that would cause the problems you are having. Certainly not the malware previously removed by MBA-M.

What about my questions above?

It could very well be an issue with a legitimate program on your machine - especially if it works fine in Safe Mode.

-- Do you have Safe Mode with Networking available? Does it still freeze up?

PP:)

0

ive tried restoring to a system restore point and it was unable to. i dont think its overheating, then again i dont know how to test if it is.

and yes i have safe mode with networking available.

Edited by Ramez05: n/a

0

i dont think its overheating, then again i dont know how to test if it is.
and yes i have safe mode with networking available.

-- A friend of mine likes Speedfan to look for overheating issues, but I've never tried it myself.....

-- Fire up Safe Mode with Networking and see if you can surf around without locking up and let us know. We'll go from there.

PP:)

0

hmmmm while idle in safemode my cpu is 58 degrees Celsius. that seems high, am i right?

0

and yes it's still freezing in safemode, though not as quickly...

0

hmmmm while idle in safemode my cpu is 58 degrees Celsius. that seems high, am i right?

I am not sure what the specs are for VAIO, but laptops do run hot.

I will say that that does seem awfully hot for idle + safe mode. I would expect in the 40s - but I am not an expert in this area and could be wrong.
Were you able to test it under load? Maybe process some video?
-- If it is 58 idle, it probably jumps to the 70s under load and that is waay high.

-- How old is the VAIO?

The thing that bothers me is that you would have noticed performance issues before this last minor malware attack if it were a heat issue.
I suppose we could try a few more anti-malware tools - assuming we can get them to run. But the fact that it lock up in Safe Mode with only the "bare bones" running makes me believe it's a hardware/heat issue......

PP:)

0

heh my computer is somewhere between 6 and 8 years old. in fact i wouldnt be that surprised if its age was the cause of this.

so if its a hardware issue i guess this is the wrong forum. what hardware specifically would it be? im pretty sure its not the power supply because i bought a new one a couple months ago.

... or am i just better off getting a new computer already

0

heh my computer is somewhere between 6 and 8 years old. in fact i wouldnt be that surprised if its age was the cause of this.

Well, it probably has accumulated a lot of dust.
You could try cleaning it - I'm sure there are a number of "how to" threads on the web....

so if its a hardware issue i guess this is the wrong forum. what hardware specifically would it be? im pretty sure its not the power supply because i bought a new one a couple months ago.

It is hard to say - these things are tough to deduce in a forum setting. I am fairly certain it is not malware based on the steps you took and the way the machines still locks up in safe mode.
Overheating is a likely culprit, but I could be wrong there - again, hard to say.
At this point, I'd just be guessing. Sorry.

... or am i just better off getting a new computer already

Everybody that I talk to seems to like Windows 7. Wish I had the cash to upgrade my ancient machine....

PP:)

This topic has been dead for over six months. Start a new discussion instead.
Have something to contribute to this discussion? Please be thoughtful, detailed and courteous, and be sure to adhere to our posting rules.