1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Inactive No option for System Restore

Discussion in 'Malware and Virus Removal Archive' started by Jeremie, 2011/01/06.

Thread Status:
Not open for further replies.
  1. 2011/01/08
    Jeremie

    Jeremie Inactive Thread Starter

    Joined:
    2011/01/06
    Messages:
    117
    Likes Received:
    0
    Combofix cannot run when avg is installed. This is dues to AVGs targeting of Combofix files/processes. It would be dangerous to continue. Please uninstall AVG or use another tool.
     
  2. 2011/01/08
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116

  3. to hide this advert.

  4. 2011/01/08
    Jeremie

    Jeremie Inactive Thread Starter

    Joined:
    2011/01/06
    Messages:
    117
    Likes Received:
    0
    2011-01-09 05:51:13,437 DEBUG Avg9Uninstall\Directories key failed to open (error: e0010013)
    2011-01-09 05:51:13,466 DEBUG Avg8Uninstall\Directories key failed to open (error: e0010013)
    2011-01-09 05:51:13,466 DEBUG Reading HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion:programFilesDir (x86) value failed (error: e001003d)
    2011-01-09 05:51:13,466 INFO Command line: "C:\Documents and Settings\Gregg\Desktop\avg_remover_stf_x86_2011_1184.exe"
    2011-01-09 05:51:13,466 WARN AvgDir param empty.
    2011-01-09 05:51:13,481 WARN AvgAdminDir param empty.
    2011-01-09 05:51:13,481 WARN AvgDataDir param empty.
    2011-01-09 05:51:17,031 INFO AvgRemover runs in attempt number 1
    2011-01-09 05:51:17,031 INFO ***** Msi data *****
    2011-01-09 05:51:17,045 DEBUG No product code found for our upgrade codes, nothing to do here
    2011-01-09 05:51:17,045 INFO ***** Exchange&Outlook plugins data *****
    2011-01-09 05:51:17,045 INFO Removing AvgOutlook addin
    2011-01-09 05:51:17,045 INFO AvgOutlook Removing HKCR addin keys x86
    2011-01-09 05:51:17,045 DEBUG Failed to delete key 'avgoutlook.Addin': 0xe001003d
    2011-01-09 05:51:17,045 DEBUG Failed to delete key 'avgoutlook.Addin.1': 0xe001003d
    2011-01-09 05:51:17,045 DEBUG Failed to delete key 'CLSID\{9F39046C-801E-4E15-8CD9-ACF0ACF29048}': 0xe001003d
    2011-01-09 05:51:17,045 DEBUG Failed to delete key 'CLSID\{F083C5AB-08AD-4ABF-A2BE-8FA5C7D2F10A}': 0xe001003d
    2011-01-09 05:51:17,045 DEBUG Failed to delete key 'AppID\avgoutlook.DLL': 0xe001003d
    2011-01-09 05:51:17,045 INFO AvgOutlook Removing HKCR addin keys x64
    2011-01-09 05:51:17,045 DEBUG Failed to delete key 'avgoutlook.Addin': 0xe001003d
    2011-01-09 05:51:17,045 DEBUG Failed to delete key 'avgoutlook.Addin.1': 0xe001003d
    2011-01-09 05:51:17,045 DEBUG Failed to delete key 'CLSID\{9F39046C-801E-4E15-8CD9-ACF0ACF29048}': 0xe001003d
    2011-01-09 05:51:17,045 DEBUG Failed to delete key 'CLSID\{F083C5AB-08AD-4ABF-A2BE-8FA5C7D2F10A}': 0xe001003d
    2011-01-09 05:51:17,045 DEBUG Failed to delete key 'AppID\avgoutlook.DLL': 0xe001003d
    2011-01-09 05:51:17,045 INFO Removing Sharepoint plugin if exists
    2011-01-09 05:51:17,045 INFO Removing Antispam plugin for Exchange 2000/2003 if exists
    2011-01-09 05:51:17,045 DEBUG Stopping service 'MSExchangeIS' to remove VSAPI plugin...
    2011-01-09 05:51:17,045 DEBUG Service MSExchangeIS Stop failed (error: c0070424)
    2011-01-09 05:51:17,045 DEBUG Exchange&Outlook plugins removal failed with error 0xc0070424
    2011-01-09 05:51:17,045 INFO ***** Services *****
    2011-01-09 05:51:17,045 INFO Processing service avg8emc, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Service avg8emc is not installed
    2011-01-09 05:51:17,045 INFO Processing service avgfws8, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service avg8wd, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AvgWFPx, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AvgWFPa, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service avg9wd, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AvgMfx86, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AvgMfx64, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AvgLdx86, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AvgLdx64, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AvgTdiX, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AvgTdiA, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AvgRkx86, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AvgRkx64, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service avg9emc, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service avgfws9, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service avgfws, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AVGIDSAgent, it can take several minutes...
    2011-01-09 05:51:17,045 INFO Processing service AVGIDSShimxpx, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Service AVGIDSShimxpx is not installed
    2011-01-09 05:51:17,090 INFO Service AVGIDSAgent is not installed
    2011-01-09 05:51:17,090 INFO Service avgfws is not installed
    2011-01-09 05:51:17,090 INFO Service avgfws9 is not installed
    2011-01-09 05:51:17,090 INFO Service avg9emc is not installed
    2011-01-09 05:51:17,090 INFO Service AvgRkx64 is not installed
    2011-01-09 05:51:17,090 INFO Service AvgRkx86 is not installed
    2011-01-09 05:51:17,090 INFO Service AvgTdiA is not installed
    2011-01-09 05:51:17,090 INFO Service AvgTdiX is not installed
    2011-01-09 05:51:17,090 INFO Service AvgLdx64 is not installed
    2011-01-09 05:51:17,090 INFO Service AvgLdx86 is not installed
    2011-01-09 05:51:17,090 INFO Service AvgMfx64 is not installed
    2011-01-09 05:51:17,090 INFO Service AvgMfx86 is not installed
    2011-01-09 05:51:17,090 INFO Service avg9wd is not installed
    2011-01-09 05:51:17,090 INFO Service AvgWFPa is not installed
    2011-01-09 05:51:17,090 INFO Service AvgWFPx is not installed
    2011-01-09 05:51:17,090 INFO Service avg8wd is not installed
    2011-01-09 05:51:17,090 INFO Service avgfws8 is not installed
    2011-01-09 05:51:17,090 DEBUG Service avg8emc RegCleanup
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSFilterxpx, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSDriverxpx, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSShimvtx, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSFiltervtx, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSDrivervtx, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSFiltervta, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSDrivervta, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSShimw7x, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSFilterw7x, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSDriverw7x, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSFilterw7a, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSDriverw7a, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSErHrxpx, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSErHrvtx, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSErHrvta, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSErHrw7x, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service AVGIDSErHrw7a, it can take several minutes...
    2011-01-09 05:51:17,090 INFO Processing service avgwd, it can take several minutes...
    2011-01-09 05:51:17,134 DEBUG Registry keys for service avg8emc are not present
    2011-01-09 05:51:17,179 INFO Service avgwd is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSErHrw7a is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSErHrw7x is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSErHrvta is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSErHrvtx is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSErHrxpx is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSDriverw7a is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSFilterw7a is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSDriverw7x is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSFilterw7x is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSShimw7x is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSDrivervta is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSFiltervta is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSDrivervtx is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSFiltervtx is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSShimvtx is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSDriverxpx is not installed
    2011-01-09 05:51:17,179 INFO Service AVGIDSFilterxpx is not installed
    2011-01-09 05:51:17,179 DEBUG Service avgfws8 RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service avg8wd RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AvgWFPx RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AvgWFPa RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service avg9wd RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AvgMfx86 RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AvgMfx64 RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AvgLdx86 RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AvgLdx64 RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AvgTdiX RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AvgTdiA RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AvgRkx86 RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AvgRkx64 RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service avg9emc RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service avgfws9 RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service avgfws RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AVGIDSAgent RegCleanup
    2011-01-09 05:51:17,179 DEBUG Service AVGIDSShimxpx RegCleanup
    2011-01-09 05:51:17,179 INFO Processing service AvgAdminServer, it can take several minutes...
    2011-01-09 05:51:17,224 DEBUG Registry keys for service avgfws8 are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service avg8wd are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AvgWFPx are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AvgWFPa are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service avg9wd are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AvgMfx86 are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AvgMfx64 are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AvgLdx86 are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AvgLdx64 are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AvgTdiX are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AvgTdiA are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AvgRkx86 are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AvgRkx64 are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service avg9emc are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service avgfws9 are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service avgfws are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AVGIDSAgent are not present
    2011-01-09 05:51:17,224 DEBUG Registry keys for service AVGIDSShimxpx are not present
    2011-01-09 05:51:17,224 INFO Service AvgAdminServer is not installed
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSFilterxpx RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSDriverxpx RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSShimvtx RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSFiltervtx RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSDrivervtx RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSFiltervta RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSDrivervta RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSShimw7x RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSFilterw7x RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSDriverw7x RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSFilterw7a RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSDriverw7a RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSErHrxpx RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSErHrvtx RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSErHrvta RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSErHrw7x RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service AVGIDSErHrw7a RegCleanup
    2011-01-09 05:51:17,224 DEBUG Service avgwd RegCleanup
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSFilterxpx are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSDriverxpx are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSShimvtx are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSFiltervtx are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSDrivervtx are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSFiltervta are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSDrivervta are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSShimw7x are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSFilterw7x are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSDriverw7x are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSFilterw7a are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSDriverw7a are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSErHrxpx are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSErHrvtx are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSErHrvta are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSErHrw7x are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AVGIDSErHrw7a are not present
    2011-01-09 05:51:17,253 DEBUG Registry keys for service avgwd are not present
    2011-01-09 05:51:17,253 DEBUG Service AvgAdminServer RegCleanup
    2011-01-09 05:51:17,253 DEBUG Registry keys for service AvgAdminServer are not present
    2011-01-09 05:51:17,253 INFO ***** Avg Fw NDIS driver(separate process) *****
    2011-01-09 05:51:17,283 DEBUG Avg9Uninstall\Directories key failed to open (error: e0010013)
    2011-01-09 05:51:17,283 DEBUG Avg8Uninstall\Directories key failed to open (error: e0010013)
    2011-01-09 05:51:17,283 DEBUG Reading HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion:programFilesDir (x86) value failed (error: e001003d)
    2011-01-09 05:51:17,283 INFO Command line: "C:\Documents and Settings\Gregg\Desktop\avg_remover_stf_x86_2011_1184.exe" /ndisonly /skipask
    2011-01-09 05:51:17,283 WARN AvgDir param empty.
    2011-01-09 05:51:17,283 WARN AvgAdminDir param empty.
    2011-01-09 05:51:17,283 WARN AvgDataDir param empty.
    2011-01-09 05:51:17,313 INFO AvgRemover runs in attempt number 1
    2011-01-09 05:51:17,313 INFO ***** Avg Fw NDIS driver *****
    2011-01-09 05:51:17,313 INFO ...this operation can take several minutes...
    2011-01-09 05:51:17,328 INFO FW removing policy
    2011-01-09 05:51:18,219 INFO FW NDIS driver not present
    2011-01-09 05:51:18,219 DEBUG Remove NDIS driver pass, next uninstalation step is 10, old was 1
    2011-01-09 05:51:18,219 INFO ***** end of Fw NDIS separated process *****
    2011-01-09 05:51:18,233 INFO ***** Drivers *****
    2011-01-09 05:51:18,233 INFO ***** Running AVG process *****
    2011-01-09 05:51:19,629 INFO ***** Registry keys and values *****
    2011-01-09 05:51:19,629 INFO Processing registry SOFTWARE\Mozilla\Firefox\Extensions
    2011-01-09 05:51:19,629 DEBUG Value SOFTWARE\Mozilla\Firefox\Extensions:{3f963a5b-e555-4543-90e2-c3908898db71} Remove
    2011-01-09 05:51:19,629 INFO Value SOFTWARE\Mozilla\Firefox\Extensions:{3f963a5b-e555-4543-90e2-c3908898db71} is not present
    2011-01-09 05:51:19,659 INFO Processing registry SOFTWARE\Mozilla\Firefox\Extensions
    2011-01-09 05:51:19,659 DEBUG Value SOFTWARE\Mozilla\Firefox\Extensions:{1d5287d1-8a92-0001-1f31-1cec198018d8} Remove
    2011-01-09 05:51:19,659 INFO Value SOFTWARE\Mozilla\Firefox\Extensions:{1d5287d1-8a92-0001-1f31-1cec198018d8} is not present
    2011-01-09 05:51:19,674 INFO Processing registry SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg8Alrt
    2011-01-09 05:51:19,674 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg8Alrt ForceRemove
    2011-01-09 05:51:19,674 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg8Alrt not found
    2011-01-09 05:51:19,674 INFO Processing registry SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg9Alrt
    2011-01-09 05:51:19,689 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg9Alrt ForceRemove
    2011-01-09 05:51:19,689 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\Avg9Alrt not found
    2011-01-09 05:51:19,689 INFO Processing registry SYSTEM\CurrentControlSet\Services\Eventlog\Application\AvgEms
    2011-01-09 05:51:19,689 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\AvgEms ForceRemove
    2011-01-09 05:51:19,689 DEBUG Key SYSTEM\CurrentControlSet\Services\Eventlog\Application\AvgEms not found
    2011-01-09 05:51:19,689 INFO Processing registry SYSTEM\CurrentControlSet\Services\Avg
    2011-01-09 05:51:19,689 DEBUG Key SYSTEM\CurrentControlSet\Services\Avg ForceRemove
    2011-01-09 05:51:19,689 DEBUG Key SYSTEM\CurrentControlSet\Services\Avg not found
    2011-01-09 05:51:19,689 INFO Processing registry SYSTEM\CurrentControlSet\Services\Avg
    2011-01-09 05:51:19,689 DEBUG Key SYSTEM\CurrentControlSet\Services\Avg ForceRemove
    2011-01-09 05:51:19,689 DEBUG Key SYSTEM\CurrentControlSet\Services\Avg not found
    2011-01-09 05:51:19,689 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2AF1721-312E-4B07-8B17-CEB780DCD054}
    2011-01-09 05:51:19,689 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2AF1721-312E-4B07-8B17-CEB780DCD054} ForceRemove
    2011-01-09 05:51:19,689 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2AF1721-312E-4B07-8B17-CEB780DCD054} not found
    2011-01-09 05:51:19,689 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
    2011-01-09 05:51:19,689 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
    2011-01-09 05:51:19,689 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
    2011-01-09 05:51:19,689 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Toolbar
    2011-01-09 05:51:19,704 DEBUG Value SOFTWARE\Microsoft\Internet Explorer\Toolbar:{CCC7A320-B3CA-4199-B1A6-9F516DD69829} Remove
    2011-01-09 05:51:19,704 INFO Value SOFTWARE\Microsoft\Internet Explorer\Toolbar:{CCC7A320-B3CA-4199-B1A6-9F516DD69829} is not present
    2011-01-09 05:51:19,704 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
    2011-01-09 05:51:19,704 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
    2011-01-09 05:51:19,704 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
    2011-01-09 05:51:19,704 INFO Processing registry SOFTWARE\Microsoft\Exchange\Client\Extensions
    2011-01-09 05:51:19,704 DEBUG Value SOFTWARE\Microsoft\Exchange\Client\Extensions:Outlook Setup Extension Remove
    2011-01-09 05:51:19,704 INFO Value SOFTWARE\Microsoft\Exchange\Client\Extensions:Outlook Setup Extension is not present
    2011-01-09 05:51:19,704 INFO Processing registry SOFTWARE\Microsoft\Exchange\Client\Extensions
    2011-01-09 05:51:19,704 DEBUG Value SOFTWARE\Microsoft\Exchange\Client\Extensions:AVG Exchange Extension Remove
    2011-01-09 05:51:19,704 INFO Value SOFTWARE\Microsoft\Exchange\Client\Extensions:AVG Exchange Extension is not present
    2011-01-09 05:51:19,719 INFO Processing registry SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows
    2011-01-09 05:51:19,719 DEBUG Value SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows:AppInit_DLLs Modify
    2011-01-09 05:51:19,719 DEBUG Value SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows:AppInit_DLLs doesn't need to be modified
    2011-01-09 05:51:19,719 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    2011-01-09 05:51:19,719 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} Remove
    2011-01-09 05:51:19,719 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} is not present
    2011-01-09 05:51:19,719 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    2011-01-09 05:51:19,719 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} Remove
    2011-01-09 05:51:19,719 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} is not present
    2011-01-09 05:51:19,719 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    2011-01-09 05:51:19,719 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} Remove
    2011-01-09 05:51:19,719 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} is not present
    2011-01-09 05:51:19,733 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    2011-01-09 05:51:19,733 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} Remove
    2011-01-09 05:51:19,733 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved:{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} is not present
    2011-01-09 05:51:19,733 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    2011-01-09 05:51:19,733 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG8_TRAY Remove
    2011-01-09 05:51:19,733 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG8_TRAY is not present
    2011-01-09 05:51:19,733 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    2011-01-09 05:51:19,733 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG9_TRAY Remove
    2011-01-09 05:51:19,733 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG9_TRAY is not present
    2011-01-09 05:51:19,748 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG8Uninstall
    2011-01-09 05:51:19,748 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG8Uninstall ForceRemove
    2011-01-09 05:51:19,748 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG8Uninstall not found
    2011-01-09 05:51:19,748 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall
    2011-01-09 05:51:19,748 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall ForceRemove
    2011-01-09 05:51:19,748 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall not found
    2011-01-09 05:51:19,748 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG9Uninstall
    2011-01-09 05:51:19,748 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG9Uninstall ForceRemove
    2011-01-09 05:51:19,748 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG9Uninstall not found
    2011-01-09 05:51:19,748 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}
    2011-01-09 05:51:19,748 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C} ForceRemove
    2011-01-09 05:51:19,748 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C} not found
    2011-01-09 05:51:19,748 INFO Processing registry SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}
    2011-01-09 05:51:19,748 DEBUG Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} ForceRemove
    2011-01-09 05:51:19,748 DEBUG Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} not found
    2011-01-09 05:51:19,778 INFO Processing registry SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}
    2011-01-09 05:51:19,778 DEBUG Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} ForceRemove
    2011-01-09 05:51:19,778 DEBUG Key SOFTWARE\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} not found
    2011-01-09 05:51:19,778 INFO Processing registry SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82}
    2011-01-09 05:51:19,808 DEBUG Key SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} ForceRemove
    2011-01-09 05:51:19,808 DEBUG Key SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} not found
    2011-01-09 05:51:19,808 INFO Processing registry SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82}
    2011-01-09 05:51:19,808 DEBUG Key SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} ForceRemove
    2011-01-09 05:51:19,822 DEBUG Key SOFTWARE\Classes\CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} not found
    2011-01-09 05:51:19,822 INFO Processing registry SOFTWARE\Classes\AvgDiagFile
    2011-01-09 05:51:19,822 DEBUG Key SOFTWARE\Classes\AvgDiagFile ForceRemove
    2011-01-09 05:51:19,822 DEBUG Key SOFTWARE\Classes\AvgDiagFile not found
    2011-01-09 05:51:19,822 INFO Processing registry SOFTWARE\Classes\AvgDiagFile
    2011-01-09 05:51:19,822 DEBUG Key SOFTWARE\Classes\AvgDiagFile ForceRemove
    2011-01-09 05:51:19,822 DEBUG Key SOFTWARE\Classes\AvgDiagFile not found
    2011-01-09 05:51:19,822 INFO Processing registry SOFTWARE\Classes\.avgdi
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\.avgdi ForceRemove
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\.avgdi not found
    2011-01-09 05:51:19,852 INFO Processing registry SOFTWARE\Classes\.avgdx
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\.avgdx ForceRemove
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\.avgdx not found
    2011-01-09 05:51:19,852 INFO Processing registry SOFTWARE\Classes\.avgdx
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\.avgdx ForceRemove
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\.avgdx not found
    2011-01-09 05:51:19,852 INFO Processing registry SOFTWARE\Classes\.avgdx
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\.avgdx ForceRemove
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\.avgdx not found
    2011-01-09 05:51:19,852 INFO Processing registry SOFTWARE\Classes\.avgdx
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\.avgdx ForceRemove
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\.avgdx not found
    2011-01-09 05:51:19,852 INFO Processing registry SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG8 Shell Extension
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG8 Shell Extension ForceRemove
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG8 Shell Extension not found
    2011-01-09 05:51:19,852 INFO Processing registry SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\AVG8 Shell Extension
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\AVG8 Shell Extension ForceRemove
    2011-01-09 05:51:19,852 DEBUG Key SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\AVG8 Shell Extension not found
    2011-01-09 05:51:19,852 INFO Processing registry SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG8 Shell Extension
    2011-01-09 05:51:19,867 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG8 Shell Extension ForceRemove
    2011-01-09 05:51:19,867 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG8 Shell Extension not found
    2011-01-09 05:51:19,897 INFO Processing registry SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension
    2011-01-09 05:51:19,897 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
    2011-01-09 05:51:19,897 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension not found
    2011-01-09 05:51:19,897 INFO Processing registry SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension
    2011-01-09 05:51:19,897 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
    2011-01-09 05:51:19,897 DEBUG Key SOFTWARE\Classes\*\shellex\ContextMenuHandlers\AVG9 Shell Extension not found
    2011-01-09 05:51:19,897 INFO Processing registry SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension
    2011-01-09 05:51:19,897 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
    2011-01-09 05:51:19,897 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension not found
    2011-01-09 05:51:19,897 INFO Processing registry SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension
    2011-01-09 05:51:19,912 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
    2011-01-09 05:51:19,926 DEBUG Key SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\AVG9 Shell Extension not found
    2011-01-09 05:51:19,926 INFO Processing registry SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension
    2011-01-09 05:51:19,926 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
    2011-01-09 05:51:19,926 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension not found
    2011-01-09 05:51:19,926 INFO Processing registry SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension
    2011-01-09 05:51:19,926 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension ForceRemove
    2011-01-09 05:51:19,926 DEBUG Key SOFTWARE\Classes\piffile\shellex\ContextMenuHandlers\AVG9 Shell Extension not found
    2011-01-09 05:51:19,926 INFO Processing registry SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner ForceRemove
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner not found
    2011-01-09 05:51:19,941 INFO Processing registry SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner ForceRemove
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\PROTOCOLS\Handler\linkscanner not found
    2011-01-09 05:51:19,941 INFO Processing registry SOFTWARE\Classes\avgsbg.state
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\avgsbg.state ForceRemove
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\avgsbg.state not found
    2011-01-09 05:51:19,941 INFO Processing registry SOFTWARE\Classes\avgsbg.state
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\avgsbg.state ForceRemove
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\avgsbg.state not found
    2011-01-09 05:51:19,941 INFO Processing registry SOFTWARE\Classes\avgsbg.state.1
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\avgsbg.state.1 ForceRemove
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\avgsbg.state.1 not found
    2011-01-09 05:51:19,941 INFO Processing registry SOFTWARE\Classes\avgsbg.state.1
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\avgsbg.state.1 ForceRemove
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\avgsbg.state.1 not found
    2011-01-09 05:51:19,941 INFO Processing registry SOFTWARE\Classes\LinkScannerIE.NavFilter
    2011-01-09 05:51:19,941 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter ForceRemove
    2011-01-09 05:51:19,971 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter not found
    2011-01-09 05:51:19,971 INFO Processing registry SOFTWARE\Classes\LinkScannerIE.NavFilter
    2011-01-09 05:51:19,971 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter ForceRemove
    2011-01-09 05:51:19,971 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter not found
    2011-01-09 05:51:19,971 INFO Processing registry SOFTWARE\Classes\LinkScannerIE.NavFilter.1
    2011-01-09 05:51:19,971 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter.1 ForceRemove
    2011-01-09 05:51:19,971 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter.1 not found
    2011-01-09 05:51:19,971 INFO Processing registry SOFTWARE\Classes\LinkScannerIE.NavFilter.1
    2011-01-09 05:51:19,971 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter.1 ForceRemove
    2011-01-09 05:51:19,971 DEBUG Key SOFTWARE\Classes\LinkScannerIE.NavFilter.1 not found
    2011-01-09 05:51:19,971 INFO Processing registry SOFTWARE\Classes\MicroScanner.MicroScanner
    2011-01-09 05:51:19,971 DEBUG Key SOFTWARE\Classes\MicroScanner.MicroScanner ForceRemove
    2011-01-09 05:51:19,971 DEBUG Key SOFTWARE\Classes\MicroScanner.MicroScanner not found
    2011-01-09 05:51:19,971 INFO Processing registry SOFTWARE\Classes\MicroScanner.MicroScanner
    2011-01-09 05:51:19,971 DEBUG Key SOFTWARE\Classes\MicroScanner.MicroScanner ForceRemove
    2011-01-09 05:51:19,986 DEBUG Key SOFTWARE\Classes\MicroScanner.MicroScanner not found
    2011-01-09 05:51:19,986 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL
    2011-01-09 05:51:19,986 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL ForceRemove
    2011-01-09 05:51:19,986 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AVGSE.DLL not found
    2011-01-09 05:51:19,986 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    2011-01-09 05:51:19,986 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_TRAY Remove
    2011-01-09 05:51:19,986 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_TRAY is not present
    2011-01-09 05:51:19,986 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    2011-01-09 05:51:19,986 DEBUG Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_TRAY Remove
    2011-01-09 05:51:19,986 INFO Value SOFTWARE\Microsoft\Windows\CurrentVersion\Run:AVG_TRAY is not present
    2011-01-09 05:51:19,986 INFO Processing registry SOFTWARE\Classes\AppID\avgsbg.DLL
    2011-01-09 05:51:19,986 DEBUG Key SOFTWARE\Classes\AppID\avgsbg.DLL ForceRemove
    2011-01-09 05:51:19,986 DEBUG Key SOFTWARE\Classes\AppID\avgsbg.DLL not found
    2011-01-09 05:51:19,986 INFO Processing registry SOFTWARE\Classes\AppID\avgsbg.DLL
    2011-01-09 05:51:20,001 DEBUG Key SOFTWARE\Classes\AppID\avgsbg.DLL ForceRemove
    2011-01-09 05:51:20,001 DEBUG Key SOFTWARE\Classes\AppID\avgsbg.DLL not found
    2011-01-09 05:51:20,001 INFO Processing registry SYSTEM\ControlSet001\Control\GroupOrderList
    2011-01-09 05:51:20,001 DEBUG Value SYSTEM\ControlSet001\Control\GroupOrderList:AVG Remove
    2011-01-09 05:51:20,001 INFO Value SYSTEM\ControlSet001\Control\GroupOrderList:AVG is not present
    2011-01-09 05:51:20,016 INFO Processing registry SYSTEM\ControlSet001\services\Avg
    2011-01-09 05:51:20,016 DEBUG Key SYSTEM\ControlSet001\services\Avg ForceRemove
    2011-01-09 05:51:20,016 DEBUG Key SYSTEM\ControlSet001\services\Avg not found
    2011-01-09 05:51:20,030 INFO Processing registry SYSTEM\ControlSet001\services\Avgfwfd
    2011-01-09 05:51:20,030 DEBUG Key SYSTEM\ControlSet001\services\Avgfwfd ForceRemove
    2011-01-09 05:51:20,030 DEBUG Key SYSTEM\ControlSet001\services\Avgfwfd not found
    2011-01-09 05:51:20,030 INFO Processing registry SYSTEM\ControlSet001\services\AVG Security Toolbar Service
    2011-01-09 05:51:20,045 DEBUG Key SYSTEM\ControlSet001\services\AVG Security Toolbar Service ForceRemove
    2011-01-09 05:51:20,045 DEBUG Key SYSTEM\ControlSet001\services\AVG Security Toolbar Service not found
    2011-01-09 05:51:20,045 INFO Processing registry SYSTEM\ControlSet001\services\Avgfws
    2011-01-09 05:51:20,060 DEBUG Key SYSTEM\ControlSet001\services\Avgfws ForceRemove
    2011-01-09 05:51:20,060 DEBUG Key SYSTEM\ControlSet001\services\Avgfws not found
    2011-01-09 05:51:20,060 INFO Processing registry SYSTEM\ControlSet001\services\AVGIDSAgent
    2011-01-09 05:51:20,060 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSAgent ForceRemove
    2011-01-09 05:51:20,060 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSAgent not found
    2011-01-09 05:51:20,060 INFO Processing registry SYSTEM\ControlSet001\services\AVGIDSDriver
    2011-01-09 05:51:20,060 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSDriver ForceRemove
    2011-01-09 05:51:20,060 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSDriver not found
    2011-01-09 05:51:20,060 INFO Processing registry SYSTEM\ControlSet001\services\AVGIDSEH
    2011-01-09 05:51:20,060 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSEH ForceRemove
    2011-01-09 05:51:20,060 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSEH not found
    2011-01-09 05:51:20,060 INFO Processing registry SYSTEM\ControlSet001\services\AVGIDSFilter
    2011-01-09 05:51:20,075 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSFilter ForceRemove
    2011-01-09 05:51:20,075 DEBUG Key SYSTEM\ControlSet001\services\AVGIDSFilter not found
    2011-01-09 05:51:20,075 INFO Processing registry SYSTEM\ControlSet001\services\avgldx64
    2011-01-09 05:51:20,075 DEBUG Key SYSTEM\ControlSet001\services\avgldx64 ForceRemove
    2011-01-09 05:51:20,075 DEBUG Key SYSTEM\ControlSet001\services\avgldx64 not found
    2011-01-09 05:51:20,075 INFO Processing registry SYSTEM\ControlSet001\services\avgldx86
    2011-01-09 05:51:20,075 DEBUG Key SYSTEM\ControlSet001\services\avgldx86 ForceRemove
    2011-01-09 05:51:20,075 DEBUG Key SYSTEM\ControlSet001\services\avgldx86 not found
    2011-01-09 05:51:20,075 INFO Processing registry SYSTEM\ControlSet001\services\avgmfx64
    2011-01-09 05:51:20,075 DEBUG Key SYSTEM\ControlSet001\services\avgmfx64 ForceRemove
    2011-01-09 05:51:20,075 DEBUG Key SYSTEM\ControlSet001\services\avgmfx64 not found
    2011-01-09 05:51:20,075 INFO Processing registry SYSTEM\ControlSet001\services\avgmfx86
    2011-01-09 05:51:20,075 DEBUG Key SYSTEM\ControlSet001\services\avgmfx86 ForceRemove
    2011-01-09 05:51:20,075 DEBUG Key SYSTEM\ControlSet001\services\avgmfx86 not found
    2011-01-09 05:51:20,075 INFO Processing registry SYSTEM\ControlSet001\services\avgrkx64
    2011-01-09 05:51:20,075 DEBUG Key SYSTEM\ControlSet001\services\avgrkx64 ForceRemove
    2011-01-09 05:51:20,105 DEBUG Key SYSTEM\ControlSet001\services\avgrkx64 not found
    2011-01-09 05:51:20,105 INFO Processing registry SYSTEM\ControlSet001\services\avgrkx86
    2011-01-09 05:51:20,105 DEBUG Key SYSTEM\ControlSet001\services\avgrkx86 ForceRemove
    2011-01-09 05:51:20,105 DEBUG Key SYSTEM\ControlSet001\services\avgrkx86 not found
    2011-01-09 05:51:20,134 INFO Processing registry SYSTEM\ControlSet001\services\avgtdia
    2011-01-09 05:51:20,134 DEBUG Key SYSTEM\ControlSet001\services\avgtdia ForceRemove
    2011-01-09 05:51:20,134 DEBUG Key SYSTEM\ControlSet001\services\avgtdia not found
    2011-01-09 05:51:20,134 INFO Processing registry SYSTEM\ControlSet001\services\avgtdix
    2011-01-09 05:51:20,134 DEBUG Key SYSTEM\ControlSet001\services\avgtdix ForceRemove
    2011-01-09 05:51:20,134 DEBUG Key SYSTEM\ControlSet001\services\avgtdix not found
    2011-01-09 05:51:20,134 INFO Processing registry SYSTEM\ControlSet001\services\avgwd
    2011-01-09 05:51:20,134 DEBUG Key SYSTEM\ControlSet001\services\avgwd ForceRemove
    2011-01-09 05:51:20,134 DEBUG Key SYSTEM\ControlSet001\services\avgwd not found
    2011-01-09 05:51:20,134 INFO Processing registry SYSTEM\ControlSet001\services\avgfwdx
    2011-01-09 05:51:20,134 DEBUG Key SYSTEM\ControlSet001\services\avgfwdx ForceRemove
    2011-01-09 05:51:20,134 DEBUG Key SYSTEM\ControlSet001\services\avgfwdx not found
    2011-01-09 05:51:20,134 INFO Processing registry SYSTEM\ControlSet001\services\avgfwda
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet001\services\avgfwda ForceRemove
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet001\services\avgfwda not found
    2011-01-09 05:51:20,149 INFO Processing registry SYSTEM\ControlSet002\services\Avg
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\Avg ForceRemove
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\Avg not found
    2011-01-09 05:51:20,149 INFO Processing registry SYSTEM\ControlSet002\services\Avgfwfd
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\Avgfwfd ForceRemove
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\Avgfwfd not found
    2011-01-09 05:51:20,149 INFO Processing registry SYSTEM\ControlSet002\services\AVG Security Toolbar Service
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\AVG Security Toolbar Service ForceRemove
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\AVG Security Toolbar Service not found
    2011-01-09 05:51:20,149 INFO Processing registry SYSTEM\ControlSet002\services\Avgfws
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\Avgfws ForceRemove
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\Avgfws not found
    2011-01-09 05:51:20,149 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSAgent
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSAgent ForceRemove
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSAgent not found
    2011-01-09 05:51:20,149 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSDriver
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSDriver ForceRemove
    2011-01-09 05:51:20,149 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSDriver not found
    2011-01-09 05:51:20,149 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSEH
    2011-01-09 05:51:20,164 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSEH ForceRemove
    2011-01-09 05:51:20,164 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSEH not found
    2011-01-09 05:51:20,164 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSFilter
    2011-01-09 05:51:20,164 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSFilter ForceRemove
    2011-01-09 05:51:20,179 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSFilter not found
    2011-01-09 05:51:20,179 INFO Processing registry SYSTEM\ControlSet002\services\avgldx64
    2011-01-09 05:51:20,179 DEBUG Key SYSTEM\ControlSet002\services\avgldx64 ForceRemove
    2011-01-09 05:51:20,179 DEBUG Key SYSTEM\ControlSet002\services\avgldx64 not found
    2011-01-09 05:51:20,179 INFO Processing registry SYSTEM\ControlSet002\services\avgldx86
    2011-01-09 05:51:20,179 DEBUG Key SYSTEM\ControlSet002\services\avgldx86 ForceRemove
    2011-01-09 05:51:20,179 DEBUG Key SYSTEM\ControlSet002\services\avgldx86 not found
    2011-01-09 05:51:20,179 INFO Processing registry SYSTEM\ControlSet002\services\avgmfx64
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgmfx64 ForceRemove
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgmfx64 not found
    2011-01-09 05:51:20,194 INFO Processing registry SYSTEM\ControlSet002\services\avgmfx86
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgmfx86 ForceRemove
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgmfx86 not found
    2011-01-09 05:51:20,194 INFO Processing registry SYSTEM\ControlSet002\services\avgrkx64
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgrkx64 ForceRemove
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgrkx64 not found
    2011-01-09 05:51:20,194 INFO Processing registry SYSTEM\ControlSet002\services\avgrkx86
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgrkx86 ForceRemove
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgrkx86 not found
    2011-01-09 05:51:20,194 INFO Processing registry SYSTEM\ControlSet002\services\avgtdia
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgtdia ForceRemove
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgtdia not found
    2011-01-09 05:51:20,194 INFO Processing registry SYSTEM\ControlSet002\services\avgtdix
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgtdix ForceRemove
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgtdix not found
    2011-01-09 05:51:20,194 INFO Processing registry SYSTEM\ControlSet002\services\avgwd
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgwd ForceRemove
    2011-01-09 05:51:20,194 DEBUG Key SYSTEM\ControlSet002\services\avgwd not found
    2011-01-09 05:51:20,194 INFO Processing registry SYSTEM\ControlSet002\services\avgfwdx
    2011-01-09 05:51:20,209 DEBUG Key SYSTEM\ControlSet002\services\avgfwdx ForceRemove
    2011-01-09 05:51:20,209 DEBUG Key SYSTEM\ControlSet002\services\avgfwdx not found
    2011-01-09 05:51:20,209 INFO Processing registry SYSTEM\ControlSet002\services\avgfwda
    2011-01-09 05:51:20,209 DEBUG Key SYSTEM\ControlSet002\services\avgfwda ForceRemove
    2011-01-09 05:51:20,209 DEBUG Key SYSTEM\ControlSet002\services\avgfwda not found
    2011-01-09 05:51:20,209 INFO Processing registry SYSTEM\ControlSet002\services\Avg
    2011-01-09 05:51:20,223 DEBUG Key SYSTEM\ControlSet002\services\Avg ForceRemove
    2011-01-09 05:51:20,223 DEBUG Key SYSTEM\ControlSet002\services\Avg not found
    2011-01-09 05:51:20,223 INFO Processing registry SYSTEM\ControlSet002\services\Avgfwfd
    2011-01-09 05:51:20,223 DEBUG Key SYSTEM\ControlSet002\services\Avgfwfd ForceRemove
    2011-01-09 05:51:20,223 DEBUG Key SYSTEM\ControlSet002\services\Avgfwfd not found
    2011-01-09 05:51:20,223 INFO Processing registry SYSTEM\ControlSet002\services\AVG Security Toolbar Service
    2011-01-09 05:51:20,223 DEBUG Key SYSTEM\ControlSet002\services\AVG Security Toolbar Service ForceRemove
    2011-01-09 05:51:20,223 DEBUG Key SYSTEM\ControlSet002\services\AVG Security Toolbar Service not found
    2011-01-09 05:51:20,223 INFO Processing registry SYSTEM\ControlSet002\services\Avgfws
    2011-01-09 05:51:20,223 DEBUG Key SYSTEM\ControlSet002\services\Avgfws ForceRemove
    2011-01-09 05:51:20,223 DEBUG Key SYSTEM\ControlSet002\services\Avgfws not found
    2011-01-09 05:51:20,223 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSAgent
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSAgent ForceRemove
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSAgent not found
    2011-01-09 05:51:20,253 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSDriver
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSDriver ForceRemove
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSDriver not found
    2011-01-09 05:51:20,253 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSEH
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSEH ForceRemove
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSEH not found
    2011-01-09 05:51:20,253 INFO Processing registry SYSTEM\ControlSet002\services\AVGIDSFilter
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSFilter ForceRemove
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\AVGIDSFilter not found
    2011-01-09 05:51:20,253 INFO Processing registry SYSTEM\ControlSet002\services\avgldx64
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\avgldx64 ForceRemove
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\avgldx64 not found
    2011-01-09 05:51:20,253 INFO Processing registry SYSTEM\ControlSet002\services\avgldx86
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\avgldx86 ForceRemove
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\avgldx86 not found
    2011-01-09 05:51:20,253 INFO Processing registry SYSTEM\ControlSet002\services\avgmfx64
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\avgmfx64 ForceRemove
    2011-01-09 05:51:20,253 DEBUG Key SYSTEM\ControlSet002\services\avgmfx64 not found
    2011-01-09 05:51:20,253 INFO Processing registry SYSTEM\ControlSet002\services\avgmfx86
    2011-01-09 05:51:20,268 DEBUG Key SYSTEM\ControlSet002\services\avgmfx86 ForceRemove
    2011-01-09 05:51:20,268 DEBUG Key SYSTEM\ControlSet002\services\avgmfx86 not found
    2011-01-09 05:51:20,268 INFO Processing registry SYSTEM\ControlSet002\services\avgrkx64
    2011-01-09 05:51:20,268 DEBUG Key SYSTEM\ControlSet002\services\avgrkx64 ForceRemove
    2011-01-09 05:51:20,268 DEBUG Key SYSTEM\ControlSet002\services\avgrkx64 not found
    2011-01-09 05:51:20,268 INFO Processing registry SYSTEM\ControlSet002\services\avgrkx86
    2011-01-09 05:51:20,283 DEBUG Key SYSTEM\ControlSet002\services\avgrkx86 ForceRemove
    2011-01-09 05:51:20,283 DEBUG Key SYSTEM\ControlSet002\services\avgrkx86 not found
    2011-01-09 05:51:20,283 INFO Processing registry SYSTEM\ControlSet002\services\avgtdia
    2011-01-09 05:51:20,283 DEBUG Key SYSTEM\ControlSet002\services\avgtdia ForceRemove
    2011-01-09 05:51:20,283 DEBUG Key SYSTEM\ControlSet002\services\avgtdia not found
    2011-01-09 05:51:20,283 INFO Processing registry SYSTEM\ControlSet002\services\avgtdix
    2011-01-09 05:51:20,283 DEBUG Key SYSTEM\ControlSet002\services\avgtdix ForceRemove
    2011-01-09 05:51:20,283 DEBUG Key SYSTEM\ControlSet002\services\avgtdix not found
    2011-01-09 05:51:20,283 INFO Processing registry SYSTEM\ControlSet002\services\avgwd
     
  5. 2011/01/08
    Jeremie

    Jeremie Inactive Thread Starter

    Joined:
    2011/01/06
    Messages:
    117
    Likes Received:
    0
    2011-01-09 05:51:20,283 DEBUG Key SYSTEM\ControlSet002\services\avgwd ForceRemove
    2011-01-09 05:51:20,283 DEBUG Key SYSTEM\ControlSet002\services\avgwd not found
    2011-01-09 05:51:20,283 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGFWS
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGFWS ForceRemove
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGFWS not found
    2011-01-09 05:51:20,298 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSAGENT
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSAGENT ForceRemove
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSAGENT not found
    2011-01-09 05:51:20,298 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVER
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVER ForceRemove
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVER not found
    2011-01-09 05:51:20,298 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSEH
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSEH ForceRemove
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSEH not found
    2011-01-09 05:51:20,298 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSFILTER
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSFILTER ForceRemove
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSFILTER not found
    2011-01-09 05:51:20,298 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIM
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIM ForceRemove
    2011-01-09 05:51:20,298 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIM not found
    2011-01-09 05:51:20,298 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX86
    2011-01-09 05:51:20,313 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX86 ForceRemove
    2011-01-09 05:51:20,313 WARN Deleting key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX86 failed (error e0010058)
    2011-01-09 05:51:20,313 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX86
    2011-01-09 05:51:20,313 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX86 ForceRemove
    2011-01-09 05:51:20,313 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX86 not found
    2011-01-09 05:51:20,313 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX86
    2011-01-09 05:51:20,313 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX86 ForceRemove
    2011-01-09 05:51:20,313 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX86 not found
    2011-01-09 05:51:20,313 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX64
    2011-01-09 05:51:20,313 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX64 ForceRemove
    2011-01-09 05:51:20,313 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGLDX64 not found
    2011-01-09 05:51:20,313 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX64
    2011-01-09 05:51:20,327 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX64 ForceRemove
    2011-01-09 05:51:20,327 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGMFX64 not found
    2011-01-09 05:51:20,327 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX64
    2011-01-09 05:51:20,357 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX64 ForceRemove
    2011-01-09 05:51:20,357 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGRKX64 not found
    2011-01-09 05:51:20,357 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIX
    2011-01-09 05:51:20,357 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIX ForceRemove
    2011-01-09 05:51:20,372 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIX not found
    2011-01-09 05:51:20,372 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIA
    2011-01-09 05:51:20,372 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIA ForceRemove
    2011-01-09 05:51:20,372 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGTDIA not found
    2011-01-09 05:51:20,372 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWD
    2011-01-09 05:51:20,372 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWD ForceRemove
    2011-01-09 05:51:20,372 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGWD not found
    2011-01-09 05:51:20,372 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG9WD
    2011-01-09 05:51:20,372 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG9WD ForceRemove
    2011-01-09 05:51:20,372 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVG9WD not found
    2011-01-09 05:51:20,372 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVERXPX
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVERXPX ForceRemove
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSDRIVERXPX not found
    2011-01-09 05:51:20,387 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSERHRXPX
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSERHRXPX ForceRemove
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSERHRXPX not found
    2011-01-09 05:51:20,387 INFO Processing registry SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIMXPX
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIMXPX ForceRemove
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIDSSHIMXPX not found
    2011-01-09 05:51:20,387 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGFWS
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGFWS ForceRemove
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGFWS not found
    2011-01-09 05:51:20,387 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSAGENT
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSAGENT ForceRemove
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSAGENT not found
    2011-01-09 05:51:20,387 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVER
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVER ForceRemove
    2011-01-09 05:51:20,387 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVER not found
    2011-01-09 05:51:20,387 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSEH
    2011-01-09 05:51:20,402 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSEH ForceRemove
    2011-01-09 05:51:20,402 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSEH not found
    2011-01-09 05:51:20,402 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSFILTER
    2011-01-09 05:51:20,402 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSFILTER ForceRemove
    2011-01-09 05:51:20,402 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSFILTER not found
    2011-01-09 05:51:20,402 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIM
    2011-01-09 05:51:20,402 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIM ForceRemove
    2011-01-09 05:51:20,402 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIM not found
    2011-01-09 05:51:20,402 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX86
    2011-01-09 05:51:20,402 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX86 ForceRemove
    2011-01-09 05:51:20,402 WARN Deleting key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX86 failed (error e0010058)
    2011-01-09 05:51:20,402 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX86
    2011-01-09 05:51:20,402 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX86 ForceRemove
    2011-01-09 05:51:20,402 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX86 not found
    2011-01-09 05:51:20,402 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX86
    2011-01-09 05:51:20,402 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX86 ForceRemove
    2011-01-09 05:51:20,402 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX86 not found
    2011-01-09 05:51:20,416 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX64
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX64 ForceRemove
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGLDX64 not found
    2011-01-09 05:51:20,416 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX64
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX64 ForceRemove
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGMFX64 not found
    2011-01-09 05:51:20,416 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX64
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX64 ForceRemove
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGRKX64 not found
    2011-01-09 05:51:20,416 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIX
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIX ForceRemove
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIX not found
    2011-01-09 05:51:20,416 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIA
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIA ForceRemove
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGTDIA not found
    2011-01-09 05:51:20,416 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWD
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWD ForceRemove
    2011-01-09 05:51:20,416 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGWD not found
    2011-01-09 05:51:20,416 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG9WD
    2011-01-09 05:51:20,461 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG9WD ForceRemove
    2011-01-09 05:51:20,461 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVG9WD not found
    2011-01-09 05:51:20,461 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVERXPX
    2011-01-09 05:51:20,461 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVERXPX ForceRemove
    2011-01-09 05:51:20,476 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSDRIVERXPX not found
    2011-01-09 05:51:20,476 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSERHRXPX
    2011-01-09 05:51:20,476 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSERHRXPX ForceRemove
    2011-01-09 05:51:20,476 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSERHRXPX not found
    2011-01-09 05:51:20,476 INFO Processing registry SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIMXPX
    2011-01-09 05:51:20,491 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIMXPX ForceRemove
    2011-01-09 05:51:20,491 DEBUG Key SYSTEM\ControlSet001\Enum\Root\LEGACY_AVGIDSSHIMXPX not found
    2011-01-09 05:51:20,491 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGFWS
    2011-01-09 05:51:20,491 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGFWS ForceRemove
    2011-01-09 05:51:20,491 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGFWS not found
    2011-01-09 05:51:20,491 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSAGENT
    2011-01-09 05:51:20,491 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSAGENT ForceRemove
    2011-01-09 05:51:20,491 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSAGENT not found
    2011-01-09 05:51:20,491 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVER
    2011-01-09 05:51:20,491 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVER ForceRemove
    2011-01-09 05:51:20,491 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVER not found
    2011-01-09 05:51:20,491 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSEH
    2011-01-09 05:51:20,491 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSEH ForceRemove
    2011-01-09 05:51:20,491 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSEH not found
    2011-01-09 05:51:20,491 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSFILTER
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSFILTER ForceRemove
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSFILTER not found
    2011-01-09 05:51:20,520 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIM
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIM ForceRemove
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIM not found
    2011-01-09 05:51:20,520 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX86
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX86 ForceRemove
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX86 not found
    2011-01-09 05:51:20,520 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX86
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX86 ForceRemove
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX86 not found
    2011-01-09 05:51:20,520 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX86
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX86 ForceRemove
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX86 not found
    2011-01-09 05:51:20,520 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX64
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX64 ForceRemove
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGLDX64 not found
    2011-01-09 05:51:20,520 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX64
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX64 ForceRemove
    2011-01-09 05:51:20,520 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGMFX64 not found
    2011-01-09 05:51:20,520 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX64
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX64 ForceRemove
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGRKX64 not found
    2011-01-09 05:51:20,535 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIX
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIX ForceRemove
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIX not found
    2011-01-09 05:51:20,535 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIA
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIA ForceRemove
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGTDIA not found
    2011-01-09 05:51:20,535 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWD
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWD ForceRemove
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGWD not found
    2011-01-09 05:51:20,535 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVG9WD
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVG9WD ForceRemove
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVG9WD not found
    2011-01-09 05:51:20,535 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVERXPX
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVERXPX ForceRemove
    2011-01-09 05:51:20,535 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSDRIVERXPX not found
    2011-01-09 05:51:20,535 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSERHRXPX
    2011-01-09 05:51:20,550 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSERHRXPX ForceRemove
    2011-01-09 05:51:20,550 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSERHRXPX not found
    2011-01-09 05:51:20,550 INFO Processing registry SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIMXPX
    2011-01-09 05:51:20,550 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIMXPX ForceRemove
    2011-01-09 05:51:20,550 DEBUG Key SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIDSSHIMXPX not found
    2011-01-09 05:51:20,550 INFO Processing registry SOFTWARE\AVG\Clients
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\Clients ForceRemove
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\Clients not found
    2011-01-09 05:51:20,550 INFO Processing registry SOFTWARE\AVG\AVG8
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG8 ForceRemove
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG8 not found
    2011-01-09 05:51:20,550 INFO Processing registry SOFTWARE\AVG\AVG9
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG9 ForceRemove
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG9 not found
    2011-01-09 05:51:20,550 INFO Processing registry SOFTWARE\AVG\AVG10
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG10 ForceRemove
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG10 not found
    2011-01-09 05:51:20,550 INFO Processing registry SOFTWARE\AVG\AVG10
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG10 ForceRemove
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG10 not found
    2011-01-09 05:51:20,550 INFO Processing registry SOFTWARE\AVG\AVG IDS
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG IDS ForceRemove
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG IDS not found
    2011-01-09 05:51:20,550 INFO Processing registry SOFTWARE\AVG\AVG IDS
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG IDS ForceRemove
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AVG IDS not found
    2011-01-09 05:51:20,550 INFO Processing registry SOFTWARE\AVG
    2011-01-09 05:51:20,550 DEBUG Value SOFTWARE\AVG:DumpType Remove
    2011-01-09 05:51:20,550 DEBUG Value SOFTWARE\AVG:DumpType not present - Key not found
    2011-01-09 05:51:20,550 INFO Processing registry SOFTWARE\AVG\AvgAdmin10
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AvgAdmin10 ForceRemove
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AvgAdmin10 not found
    2011-01-09 05:51:20,550 INFO Processing registry SOFTWARE\AVG\AvgAdmin10
    2011-01-09 05:51:20,550 DEBUG Key SOFTWARE\AVG\AvgAdmin10 ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG\AvgAdmin10 not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\AVG
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\AVG
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\AVG Security Toolbar
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG Security Toolbar ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG Security Toolbar not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\AVG Security Toolbar
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG Security Toolbar ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG Security Toolbar not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\AVG\AVG8
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG\AVG8 ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG\AVG8 not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\AVG\AVG9
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG\AVG9 ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG\AVG9 not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\AVG\AVG10
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG\AVG10 ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG\AVG10 not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\AVG\AVG10
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG\AVG10 ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG\AVG10 not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\AVG
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\AVG
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG ForceRemove
    2011-01-09 05:51:20,565 DEBUG Key SOFTWARE\AVG not found
    2011-01-09 05:51:20,565 INFO Processing registry SOFTWARE\AVG Security Toolbar
    2011-01-09 05:51:20,580 DEBUG Key SOFTWARE\AVG Security Toolbar ForceRemove
    2011-01-09 05:51:20,580 DEBUG Key SOFTWARE\AVG Security Toolbar not found
    2011-01-09 05:51:20,580 INFO Processing registry SOFTWARE\AVG Security Toolbar
    2011-01-09 05:51:20,580 DEBUG Key SOFTWARE\AVG Security Toolbar ForceRemove
    2011-01-09 05:51:20,580 DEBUG Key SOFTWARE\AVG Security Toolbar not found
    2011-01-09 05:51:20,580 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks
    2011-01-09 05:51:20,580 DEBUG Value SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks:{A3BC75A2-1F87-4686-AA43-5347D756017C} Remove
    2011-01-09 05:51:20,580 INFO Value SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks:{A3BC75A2-1F87-4686-AA43-5347D756017C} is not present
    2011-01-09 05:51:20,580 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
    2011-01-09 05:51:20,580 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
    2011-01-09 05:51:20,580 DEBUG Key SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
    2011-01-09 05:51:20,580 INFO Processing registry SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser
    2011-01-09 05:51:20,580 DEBUG Value SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser:{CCC7A320-B3CA-4199-B1A6-9F516DD69829} Remove
    2011-01-09 05:51:20,580 INFO Value SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser:{CCC7A320-B3CA-4199-B1A6-9F516DD69829} is not present
    2011-01-09 05:51:20,580 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
    2011-01-09 05:51:20,595 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
    2011-01-09 05:51:20,595 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
    2011-01-09 05:51:20,595 INFO Processing registry SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A3BC75A2-1F87-4686-AA43-5347D756017C}
    2011-01-09 05:51:20,595 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A3BC75A2-1F87-4686-AA43-5347D756017C} ForceRemove
    2011-01-09 05:51:20,595 DEBUG Key SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A3BC75A2-1F87-4686-AA43-5347D756017C} not found
    2011-01-09 05:51:20,595 INFO Processing registry SOFTWARE\AppDataLow\Avg
    2011-01-09 05:51:20,595 DEBUG Key SOFTWARE\AppDataLow\Avg ForceRemove
    2011-01-09 05:51:20,595 DEBUG Key SOFTWARE\AppDataLow\Avg not found
    2011-01-09 05:51:20,595 INFO Processing registry SOFTWARE\AppDataLow\Software\AVG Security Toolbar
    2011-01-09 05:51:20,595 DEBUG Key SOFTWARE\AppDataLow\Software\AVG Security Toolbar ForceRemove
    2011-01-09 05:51:20,595 DEBUG Key SOFTWARE\AppDataLow\Software\AVG Security Toolbar not found
    2011-01-09 05:51:20,595 INFO Processing registry .avgdxa
    2011-01-09 05:51:20,595 DEBUG Key .avgdxa ForceRemove
    2011-01-09 05:51:20,595 DEBUG Key .avgdxa not found
    2011-01-09 05:51:20,595 INFO Processing registry aAvgAPI.AvgBro
    2011-01-09 05:51:20,595 DEBUG Key aAvgAPI.AvgBro ForceRemove
    2011-01-09 05:51:20,595 DEBUG Key aAvgAPI.AvgBro not found
    2011-01-09 05:51:20,595 INFO Processing registry AVG.Office
    2011-01-09 05:51:20,595 DEBUG Key AVG.Office ForceRemove
    2011-01-09 05:51:20,595 DEBUG Key AVG.Office not found
    2011-01-09 05:51:20,595 INFO Processing registry AVG.Office.8
    2011-01-09 05:51:20,595 DEBUG Key AVG.Office.8 ForceRemove
    2011-01-09 05:51:20,595 DEBUG Key AVG.Office.8 not found
    2011-01-09 05:51:20,595 INFO Processing registry AvgDiagFile
    2011-01-09 05:51:20,595 DEBUG Key AvgDiagFile ForceRemove
    2011-01-09 05:51:20,595 DEBUG Key AvgDiagFile not found
    2011-01-09 05:51:20,595 INFO Processing registry AvgDiagExFile
    2011-01-09 05:51:20,595 DEBUG Key AvgDiagExFile ForceRemove
    2011-01-09 05:51:20,595 DEBUG Key AvgDiagExFile not found
    2011-01-09 05:51:20,595 INFO Processing registry avgtoolbar.AVGTOOLBAR
    2011-01-09 05:51:20,595 DEBUG Key avgtoolbar.AVGTOOLBAR ForceRemove
    2011-01-09 05:51:20,595 DEBUG Key avgtoolbar.AVGTOOLBAR not found
    2011-01-09 05:51:20,595 INFO Processing registry avgtoolbar.AVGTOOLBARMenu Button
    2011-01-09 05:51:20,610 DEBUG Key avgtoolbar.AVGTOOLBARMenu Button ForceRemove
    2011-01-09 05:51:20,610 DEBUG Key avgtoolbar.AVGTOOLBARMenu Button not found
    2011-01-09 05:51:20,610 INFO Processing registry avgtoolbar.AVGTOOLBARToggle Button
    2011-01-09 05:51:20,610 DEBUG Key avgtoolbar.AVGTOOLBARToggle Button ForceRemove
    2011-01-09 05:51:20,610 DEBUG Key avgtoolbar.AVGTOOLBARToggle Button not found
    2011-01-09 05:51:20,610 INFO Processing registry LinkScannerIE.NavFilter
    2011-01-09 05:51:20,610 DEBUG Key LinkScannerIE.NavFilter ForceRemove
    2011-01-09 05:51:20,610 DEBUG Key LinkScannerIE.NavFilter not found
    2011-01-09 05:51:20,610 INFO Processing registry LinkScannerIE.NavFilter.1
    2011-01-09 05:51:20,610 DEBUG Key LinkScannerIE.NavFilter.1 ForceRemove
    2011-01-09 05:51:20,610 DEBUG Key LinkScannerIE.NavFilter.1 not found
    2011-01-09 05:51:20,610 INFO Processing registry CLSID\{04373D9C-5ED8-44f2-BA00-7895D6A5A2DA}
    2011-01-09 05:51:20,610 DEBUG Key CLSID\{04373D9C-5ED8-44f2-BA00-7895D6A5A2DA} ForceRemove
    2011-01-09 05:51:20,610 DEBUG Key CLSID\{04373D9C-5ED8-44f2-BA00-7895D6A5A2DA} not found
    2011-01-09 05:51:20,610 INFO Processing registry CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A}
    2011-01-09 05:51:20,610 DEBUG Key CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A} ForceRemove
    2011-01-09 05:51:20,610 DEBUG Key CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A} not found
    2011-01-09 05:51:20,610 INFO Processing registry CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
    2011-01-09 05:51:20,610 DEBUG Key CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} ForceRemove
    2011-01-09 05:51:20,610 DEBUG Key CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} not found
    2011-01-09 05:51:20,610 INFO Processing registry CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} ForceRemove
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} not found
    2011-01-09 05:51:20,624 INFO Processing registry CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} ForceRemove
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} not found
    2011-01-09 05:51:20,624 INFO Processing registry CLSID\{A057A204-BACC-4D26-9990-79A187E2698E}
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698E} ForceRemove
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698E} not found
    2011-01-09 05:51:20,624 INFO Processing registry CLSID\{A057A204-BACC-4D26-9990-79A187E2698F}
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698F} ForceRemove
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E2698F} not found
    2011-01-09 05:51:20,624 INFO Processing registry CLSID\{A057A204-BACC-4D26-9990-79A187E26990}
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E26990} ForceRemove
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{A057A204-BACC-4D26-9990-79A187E26990} not found
    2011-01-09 05:51:20,624 INFO Processing registry CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1}
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} ForceRemove
    2011-01-09 05:51:20,624 DEBUG Key CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} not found
    2011-01-09 05:51:20,624 INFO Processing registry CLSID\{9781B2D1-AF27-474F-A3A5-C0763FBDF3B7}
    2011-01-09 05:51:20,639 DEBUG Key CLSID\{9781B2D1-AF27-474F-A3A5-C0763FBDF3B7} ForceRemove
    2011-01-09 05:51:20,639 DEBUG Key CLSID\{9781B2D1-AF27-474F-A3A5-C0763FBDF3B7} not found
    2011-01-09 05:51:20,639 INFO Processing registry CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}
    2011-01-09 05:51:20,639 DEBUG Key CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C} ForceRemove
    2011-01-09 05:51:20,639 DEBUG Key CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C} not found
    2011-01-09 05:51:20,639 INFO Processing registry CLSID\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
    2011-01-09 05:51:20,639 DEBUG Key CLSID\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
    2011-01-09 05:51:20,639 DEBUG Key CLSID\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
    2011-01-09 05:51:20,639 INFO Processing registry Interface\{52261B0E-CA1A-4FA9-9805-4D01202DF09D}
    2011-01-09 05:51:20,639 DEBUG Key Interface\{52261B0E-CA1A-4FA9-9805-4D01202DF09D} ForceRemove
    2011-01-09 05:51:20,639 DEBUG Key Interface\{52261B0E-CA1A-4FA9-9805-4D01202DF09D} not found
    2011-01-09 05:51:20,639 INFO Processing registry Interface\{8EA1F9F2-997A-4832-8E09-815E3D0C0A0C}
    2011-01-09 05:51:20,639 DEBUG Key Interface\{8EA1F9F2-997A-4832-8E09-815E3D0C0A0C} ForceRemove
    2011-01-09 05:51:20,639 DEBUG Key Interface\{8EA1F9F2-997A-4832-8E09-815E3D0C0A0C} not found
    2011-01-09 05:51:20,639 INFO Processing registry Interface\{7F24AABF-C822-4C18-9432-21433208F4DC}
    2011-01-09 05:51:20,639 DEBUG Key Interface\{7F24AABF-C822-4C18-9432-21433208F4DC} ForceRemove
    2011-01-09 05:51:20,639 DEBUG Key Interface\{7F24AABF-C822-4C18-9432-21433208F4DC} not found
    2011-01-09 05:51:20,639 INFO Processing registry TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30}
    2011-01-09 05:51:20,654 DEBUG Key TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30} ForceRemove
    2011-01-09 05:51:20,654 DEBUG Key TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30} not found
    2011-01-09 05:51:20,654 INFO Processing registry TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7}
    2011-01-09 05:51:20,654 DEBUG Key TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7} ForceRemove
    2011-01-09 05:51:20,654 DEBUG Key TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7} not found
    2011-01-09 05:51:20,654 INFO Processing registry TypeLib\{A0C8F0F1-DE25-4ADB-8F0B-508F6CA43DE9}
    2011-01-09 05:51:20,654 DEBUG Key TypeLib\{A0C8F0F1-DE25-4ADB-8F0B-508F6CA43DE9} ForceRemove
    2011-01-09 05:51:20,654 DEBUG Key TypeLib\{A0C8F0F1-DE25-4ADB-8F0B-508F6CA43DE9} not found
    2011-01-09 05:51:20,654 INFO Processing registry TypeLib\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
    2011-01-09 05:51:20,654 DEBUG Key TypeLib\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} ForceRemove
    2011-01-09 05:51:20,654 DEBUG Key TypeLib\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} not found
    2011-01-09 05:51:20,654 INFO Processing registry CLSID\{8B39AD4E-1AB3-4AE1-B533-706F1CACED83}
    2011-01-09 05:51:20,654 DEBUG Key CLSID\{8B39AD4E-1AB3-4AE1-B533-706F1CACED83} ForceRemove
    2011-01-09 05:51:20,654 DEBUG Key CLSID\{8B39AD4E-1AB3-4AE1-B533-706F1CACED83} not found
    2011-01-09 05:51:20,654 INFO Processing registry CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82}
    2011-01-09 05:51:20,654 DEBUG Key CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} ForceRemove
    2011-01-09 05:51:20,654 DEBUG Key CLSID\{6E801D47-45B7-4D10-8268-DBBD5C233F82} not found
    2011-01-09 05:51:20,654 INFO Processing registry CLSID\{DC182551-99C7-4e28-A8F3-8DCFC4745C4C}
    2011-01-09 05:51:20,654 DEBUG Key CLSID\{DC182551-99C7-4e28-A8F3-8DCFC4745C4C} ForceRemove
    2011-01-09 05:51:20,669 DEBUG Key CLSID\{DC182551-99C7-4e28-A8F3-8DCFC4745C4C} not found
    2011-01-09 05:51:20,669 DEBUG Removing Session Manager values
    2011-01-09 05:51:20,669 DEBUG Registry remover failed for some registry item(s)
    2011-01-09 05:51:20,669 INFO ***** Files and folders *****
    2011-01-09 05:51:20,669 DEBUG Missing ParentDir path for fileItem number 0
    2011-01-09 05:51:20,699 DEBUG Missing ParentDir path for fileItem number 1
    2011-01-09 05:51:20,699 DEBUG Missing ParentDir path for fileItem number 2
    2011-01-09 05:51:20,699 DEBUG Missing ParentDir path for fileItem number 3
    2011-01-09 05:51:20,699 DEBUG Missing ParentDir path for fileItem number 4
    2011-01-09 05:51:20,728 DEBUG Missing ParentDir path for fileItem number 5
    2011-01-09 05:51:20,728 DEBUG Missing ParentDir path for fileItem number 6
    2011-01-09 05:51:20,728 DEBUG Missing ParentDir path for fileItem number 7
    2011-01-09 05:51:20,728 DEBUG Missing ParentDir path for fileItem number 8
    2011-01-09 05:51:20,728 DEBUG Missing ParentDir path for fileItem number 9
    2011-01-09 05:51:20,758 DEBUG Missing ParentDir path for fileItem number 10
    2011-01-09 05:51:20,758 DEBUG Missing ParentDir path for fileItem number 11
    2011-01-09 05:51:20,758 DEBUG Missing ParentDir path for fileItem number 12
    2011-01-09 05:51:20,758 DEBUG Missing ParentDir path for fileItem number 13
    2011-01-09 05:51:20,832 DEBUG Missing ParentDir path for fileItem number 14
    2011-01-09 05:51:20,832 DEBUG Missing ParentDir path for fileItem number 15
    2011-01-09 05:51:20,832 DEBUG Missing ParentDir path for fileItem number 16
    2011-01-09 05:51:20,832 DEBUG Processing item 'C:\Documents and Settings\Gregg\Application Data\AVGTOOLBAR'
    2011-01-09 05:51:20,832 INFO Directory 'C:\Documents and Settings\Gregg\Application Data\AVGTOOLBAR' not found
    2011-01-09 05:51:20,877 DEBUG Processing item 'C:\WINDOWS\System32\Drivers'
    2011-01-09 05:51:20,877 DEBUG Processing item 'C:\Documents and Settings\All Users\Start Menu\Programs\avg 8.0'
    2011-01-09 05:51:20,877 INFO Directory 'C:\Documents and Settings\All Users\Start Menu\Programs\avg 8.0' not found
    2011-01-09 05:51:20,921 DEBUG Processing item 'C:\Documents and Settings\All Users\Start Menu\Programs\avg free 8.0'
    2011-01-09 05:51:20,921 INFO Directory 'C:\Documents and Settings\All Users\Start Menu\Programs\avg free 8.0' not found
    2011-01-09 05:51:20,921 DEBUG Processing item 'C:\Documents and Settings\All Users\Start Menu\Programs\avg 8.5'
    2011-01-09 05:51:20,921 INFO Directory 'C:\Documents and Settings\All Users\Start Menu\Programs\avg 8.5' not found
    2011-01-09 05:51:20,966 DEBUG Processing item 'C:\Documents and Settings\All Users\Start Menu\Programs\avg free 8.5'
    2011-01-09 05:51:20,966 INFO Directory 'C:\Documents and Settings\All Users\Start Menu\Programs\avg free 8.5' not found
    2011-01-09 05:51:20,966 DEBUG Processing item 'C:\Documents and Settings\All Users\Desktop\avg 8.0.lnk'
    2011-01-09 05:51:20,966 INFO File 'C:\Documents and Settings\All Users\Desktop\avg 8.0.lnk' not found
    2011-01-09 05:51:20,996 DEBUG Processing item 'C:\Documents and Settings\All Users\Desktop\avg free 8.0.lnk'
    2011-01-09 05:51:20,996 INFO File 'C:\Documents and Settings\All Users\Desktop\avg free 8.0.lnk' not found
    2011-01-09 05:51:20,996 DEBUG Processing item 'C:\Documents and Settings\All Users\Desktop\avg 8.5.lnk'
    2011-01-09 05:51:21,040 INFO File 'C:\Documents and Settings\All Users\Desktop\avg 8.5.lnk' not found
    2011-01-09 05:51:21,040 DEBUG Processing item 'C:\Documents and Settings\All Users\Desktop\avg free 8.5.lnk'
    2011-01-09 05:51:21,040 INFO File 'C:\Documents and Settings\All Users\Desktop\avg free 8.5.lnk' not found
    2011-01-09 05:51:21,040 DEBUG Missing ParentDir path for fileItem number 27
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 28
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 29
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 30
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 31
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 32
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 33
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 34
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 35
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 36
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 37
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 38
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 39
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 40
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 41
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 42
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 43
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 44
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 45
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 46
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 47
    2011-01-09 05:51:21,085 DEBUG Missing ParentDir path for fileItem number 48
    2011-01-09 05:51:21,085 DEBUG Processing item 'C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar\Languages'
    2011-01-09 05:51:21,085 INFO Directory 'C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar\Languages' not found
    2011-01-09 05:51:21,085 DEBUG Processing item 'C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar\Update'
    2011-01-09 05:51:21,085 INFO Directory 'C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar\Update' not found
    2011-01-09 05:51:21,100 DEBUG Processing item 'C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar'
    2011-01-09 05:51:21,114 INFO Directory 'C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar' not found
    2011-01-09 05:51:21,114 DEBUG Processing item 'C:\WINDOWS\System32\Drivers'
    2011-01-09 05:51:21,114 DEBUG Processing item 'C:\Documents and Settings\All Users\Desktop\avg 9.0.lnk'
    2011-01-09 05:51:21,114 INFO File 'C:\Documents and Settings\All Users\Desktop\avg 9.0.lnk' not found
    2011-01-09 05:51:21,114 DEBUG Processing item 'C:\Documents and Settings\All Users\Desktop\avg free 9.0.lnk'
    2011-01-09 05:51:21,114 INFO File 'C:\Documents and Settings\All Users\Desktop\avg free 9.0.lnk' not found
    2011-01-09 05:51:21,114 DEBUG Missing ParentDir path for fileItem number 55
    2011-01-09 05:51:21,114 DEBUG Missing ParentDir path for fileItem number 56
    2011-01-09 05:51:21,114 DEBUG Missing ParentDir path for fileItem number 57
    2011-01-09 05:51:21,114 DEBUG Missing ParentDir path for fileItem number 58
    2011-01-09 05:51:21,114 DEBUG Missing ParentDir path for fileItem number 59
    2011-01-09 05:51:21,114 DEBUG Missing ParentDir path for fileItem number 60
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 61
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 62
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 63
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 64
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 65
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 66
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 67
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 68
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 69
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 70
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 71
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 72
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 73
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 74
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 75
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 76
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 77
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 78
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 79
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 80
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 81
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 82
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 83
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 84
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 85
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 86
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 87
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 88
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 89
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 90
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 91
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 92
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 93
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 94
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 95
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 96
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 97
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 98
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 99
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 100
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 101
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 102
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 103
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 104
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 105
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 106
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 107
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 108
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 109
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 110
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 111
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 112
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 113
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 114
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 115
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 116
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 117
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 118
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 119
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 120
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 121
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 122
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 123
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 124
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 125
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 126
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 127
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 128
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 129
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 130
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 131
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 132
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 133
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 134
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 135
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 136
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 137
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 138
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 139
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 140
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 141
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 142
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 143
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 144
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 145
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 146
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 147
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 148
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 149
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 150
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 151
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 152
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 153
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 154
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 155
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 156
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 157
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 158
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 159
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 160
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 161
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 162
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 163
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 164
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 165
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 166
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 167
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 168
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 169
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 170
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 171
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 172
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 173
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 174
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 175
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 176
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 177
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 178
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 179
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 180
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 181
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 182
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 183
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 184
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 185
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 186
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 187
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 188
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 189
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 190
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 191
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 192
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 193
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 194
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 195
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 196
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 197
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 198
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 199
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 200
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 201
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 202
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 203
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 204
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 205
    2011-01-09 05:51:21,129 DEBUG Processing item 'C:\WINDOWS\System32\Drivers'
    2011-01-09 05:51:21,129 DEBUG Processing item 'C:\WINDOWS\System32\Drivers'
    2011-01-09 05:51:21,129 DEBUG Processing item 'C:\WINDOWS\System32\Drivers'
    2011-01-09 05:51:21,129 DEBUG Processing item 'C:\WINDOWS\System32\Drivers'
    2011-01-09 05:51:21,129 DEBUG Processing item 'C:\WINDOWS\System32\Drivers'
    2011-01-09 05:51:21,129 DEBUG Processing item 'C:\WINDOWS\System32\Drivers'
    2011-01-09 05:51:21,129 DEBUG Processing item 'C:\WINDOWS\System32\Drivers\AVG'
    2011-01-09 05:51:21,129 INFO Directory 'C:\WINDOWS\System32\Drivers\AVG' not found
    2011-01-09 05:51:21,129 DEBUG Processing item 'C:\WINDOWS\System32'
    2011-01-09 05:51:21,129 DEBUG Processing item 'C:\Program Files\Windows Sidebar\Shared Gadgets\AVG.Gadget'
    2011-01-09 05:51:21,129 INFO Directory 'C:\Program Files\Windows Sidebar\Shared Gadgets\AVG.Gadget' not found
    2011-01-09 05:51:21,129 DEBUG Missing ParentDir path for fileItem number 215
    2011-01-09 05:51:21,129 DEBUG Processing item 'C:\Documents and Settings\All Users\Application Data\AVG10\SetupCoreBackup'
    2011-01-09 05:51:21,129 INFO Directory 'C:\Documents and Settings\All Users\Application Data\AVG10\SetupCoreBackup' not found
    2011-01-09 05:51:21,129 DEBUG Processing item 'C:\Documents and Settings\All Users\Application Data\AVG10\SetupBackup'
    2011-01-09 05:51:21,144 INFO Directory 'C:\Documents and Settings\All Users\Application Data\AVG10\SetupBackup' not found
    2011-01-09 05:51:21,144 DEBUG Processing item 'C:\Documents and Settings\All Users\Application Data\AVG10\Chjw'
    2011-01-09 05:51:21,144 INFO Directory 'C:\Documents and Settings\All Users\Application Data\AVG10\Chjw' not found
    2011-01-09 05:51:21,189 DEBUG Processing item 'C:\Documents and Settings\All Users\Application Data\AVG10\Antispam'
    2011-01-09 05:51:21,189 INFO Directory 'C:\Documents and Settings\All Users\Application Data\AVG10\Antispam' not found
    2011-01-09 05:51:21,189 DEBUG Processing item 'C:\Documents and Settings\All Users\Application Data\AVG10'
    2011-01-09 05:51:21,189 INFO Directory 'C:\Documents and Settings\All Users\Application Data\AVG10' not found
    2011-01-09 05:51:21,189 DEBUG Processing item 'C:\Documents and Settings\All Users\Start Menu\Programs\AVG 2011'
    2011-01-09 05:51:21,189 INFO Directory 'C:\Documents and Settings\All Users\Start Menu\Programs\AVG 2011' not found
    2011-01-09 05:51:21,189 DEBUG Processing item 'C:\Documents and Settings\All Users\Start Menu\Programs\AVG FREE 2011'
    2011-01-09 05:51:21,189 INFO Directory 'C:\Documents and Settings\All Users\Start Menu\Programs\AVG FREE 2011' not found
    2011-01-09 05:51:21,189 DEBUG Processing item 'C:\Documents and Settings\All Users\Desktop\AVG 2011.lnk'
    2011-01-09 05:51:21,189 INFO File 'C:\Documents and Settings\All Users\Desktop\AVG 2011.lnk' not found
    2011-01-09 05:51:21,189 DEBUG Processing item 'C:\Documents and Settings\All Users\Desktop\AVG FREE 2011.lnk'
    2011-01-09 05:51:21,218 INFO File 'C:\Documents and Settings\All Users\Desktop\AVG FREE 2011.lnk' not found
    2011-01-09 05:51:21,218 DEBUG Processing item 'C:\WINDOWS\SysWOW64\Drivers\AVG'
    2011-01-09 05:51:21,218 INFO Directory 'C:\WINDOWS\SysWOW64\Drivers\AVG' not found
    2011-01-09 05:51:21,218 DEBUG Missing ParentDir path for fileItem number 226
     
  6. 2011/01/08
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Tried Combofix yet?
     
  7. 2011/01/09
    Jeremie

    Jeremie Inactive Thread Starter

    Joined:
    2011/01/06
    Messages:
    117
    Likes Received:
    0
    yup. same message. Tried in normal and in safe. also deleted and re-downloaded
     
  8. 2011/01/09
    Jeremie

    Jeremie Inactive Thread Starter

    Joined:
    2011/01/06
    Messages:
    117
    Likes Received:
    0
    !!!!! There was an AVG folder from 2008 I just deleted it. combofix is updating and I will run. Will post reults
     
  9. 2011/01/09
    Jeremie

    Jeremie Inactive Thread Starter

    Joined:
    2011/01/06
    Messages:
    117
    Likes Received:
    0
    ComboFix 11-01-08.04 - Gregg 01/09/2011 1:19.1.1 - x86
    Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1982.1447 [GMT -5:00]
    Running from: c:\documents and settings\Gregg\Desktop\ComboFix.exe
    .

    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .

    c:\windows\system32\_000009_.tmp.dll

    .
    ((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
    .

    -------\Legacy_SYSTEM_EVENT_DISPATCHER
    -------\Service_System Event Dispatcher


    ((((((((((((((((((((((((( Files Created from 2010-12-09 to 2011-01-09 )))))))))))))))))))))))))))))))
    .

    2011-01-09 04:09 . 2011-01-09 04:09 -------- d-----w- C:\_OTL
    2011-01-06 03:30 . 2011-01-08 18:25 -------- d-----w- c:\documents and settings\Gregg\Application Data\Malwarebytes
    2011-01-05 04:28 . 2011-01-05 04:28 -------- d-----w- c:\documents and settings\Jeremie.LATRONICA\Local Settings\Application Data\LogMeIn
    2010-12-30 04:19 . 2010-11-02 15:17 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys
    2010-12-30 04:19 . 2010-10-11 14:59 45568 -c----w- c:\windows\system32\dllcache\wab.exe

    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2010-12-13 16:35 . 2009-12-26 17:15 87424 ----a-w- c:\windows\system32\LMIinit.dll
    2010-12-13 16:35 . 2009-12-26 17:15 83360 ----a-w- c:\windows\system32\LMIRfsClientNP.dll
    2010-12-13 16:35 . 2009-12-26 17:15 53632 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\LMIproc.dll
    2010-12-13 16:35 . 2009-12-26 17:15 29568 ----a-w- c:\windows\system32\LMIport.dll
    2010-11-18 18:12 . 2007-08-21 20:47 81920 ----a-w- c:\windows\system32\isign32.dll
    2010-11-12 23:53 . 2010-05-05 13:29 472808 ----a-w- c:\windows\system32\deployJava1.dll
    2010-11-12 21:34 . 2007-09-04 14:12 73728 ----a-w- c:\windows\system32\javacpl.cpl
    2010-11-06 00:26 . 2004-08-04 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
    2010-11-06 00:26 . 2004-08-04 12:00 43520 ----a-w- c:\windows\system32\licmgr10.dll
    2010-11-06 00:26 . 2004-08-04 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
    2010-11-03 12:25 . 2004-08-04 12:00 385024 ----a-w- c:\windows\system32\html.iec
    2010-11-02 15:17 . 2004-08-04 12:00 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
    2010-10-28 13:13 . 2004-08-04 12:00 290048 ----a-w- c:\windows\system32\atmfd.dll
    2010-10-26 13:25 . 2004-08-04 12:00 1853312 ----a-w- c:\windows\system32\win32k.sys
    2010-10-19 15:41 . 2009-10-05 13:50 222080 ------w- c:\windows\system32\MpSigStub.exe
    2007-09-04 14:11 . 2007-09-04 14:11 3378248 -c--a-w- c:\program files\LimeWireWin.exe
    .

    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "NvCplDaemon "= "c:\windows\system32\NvCpl.dll" [2006-08-23 7630848]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    "Winipdat "= {A3DE4317-A8FB-446A-BFF2-1C927989C582} - c:\windows\system32\vdorctrl.dll [2008-04-14 1003520]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LMIinit]
    2010-12-13 16:35 87424 ----a-w- c:\windows\system32\LMIinit.dll

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
    @= "Driver "

    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk]
    backup=c:\windows\pss\Adobe Gamma Loader.lnkCommon Startup

    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
    backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup

    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Photosmart Premier Fast Start.lnk]
    backup=c:\windows\pss\HP Photosmart Premier Fast Start.lnkCommon Startup

    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^WDDMStatus.lnk]
    path=c:\documents and settings\All Users\Start Menu\Programs\Startup\WDDMStatus.lnk
    backup=c:\windows\pss\WDDMStatus.lnkCommon Startup

    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^WDSmartWare.lnk]
    path=c:\documents and settings\All Users\Start Menu\Programs\Startup\WDSmartWare.lnk
    backup=c:\windows\pss\WDSmartWare.lnkCommon Startup

    [HKLM\~\startupfolder\C:^Documents and Settings^Jeremie.LATRONICA^Start Menu^Programs^Startup^LimeWire On Startup.lnk]
    path=c:\documents and settings\Jeremie.LATRONICA\Start Menu\Programs\Startup\LimeWire On Startup.lnk
    backup=c:\windows\pss\LimeWire On Startup.lnkStartup

    [HKLM\~\startupfolder\C:^Documents and Settings^Jeremie^Start Menu^Programs^Startup^eFax 4.4.lnk]
    backup=c:\windows\pss\eFax 4.4.lnkStartup

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
    2010-09-21 04:07 932288 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS4ServiceManager]
    2008-08-14 12:58 611712 ----a-w- c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BlackBerryAutoUpdate]
    2009-11-20 03:29 623960 ----a-w- c:\program files\Common Files\Research In Motion\Auto Update\RIMAutoUpdate.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
    2008-10-25 15:44 31072 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
    2007-05-08 20:24 54840 -c--a-w- c:\program files\hp\HP Software Update\hpwuSchd2.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
    2010-04-28 19:06 142120 ----a-w- c:\program files\iTunes\iTunesHelper.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn GUI]
    2010-05-31 16:31 63048 ----a-w- c:\program files\LogMeIn\x86\LogMeInSystray.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
    2009-07-26 21:44 3883856 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
    2010-03-18 01:53 421888 ----a-w- c:\program files\QuickTime\QTTask.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RIMDeviceManager]
    2009-10-13 19:38 1590616 ----a-w- c:\program files\Common Files\Research In Motion\RIMDeviceManager\RIMDeviceManager.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RoxWatchTray]
    2009-07-08 17:31 236016 ----a-w- c:\program files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
    2008-02-22 08:25 144784 -c--a-w- c:\program files\Java\jre1.6.0_05\bin\jusched.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
    2010-05-20 16:11 322352 ----a-w- c:\program files\uTorrent\uTorrent.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
    "WDSmartWareBackgroundService "=2 (0x2)
    "WDDMService "=2 (0x2)

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hpqtra08.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hpqste08.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hpofxm08.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hposfx08.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hposid01.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hpqscnvw.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hpqkygrp.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hpqCopy.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hpfccopy.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hpzwiz01.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\Unload\\HpqPhUnl.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\Unload\\HpqDIA.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hpoews01.exe "=
    "c:\\Program Files\\hp\\Digital Imaging\\bin\\hpqnrs08.exe "=
    "%windir%\\Network Diagnostic\\xpnetdiag.exe "=
    "c:\\Program Files\\Roxio\\Media Manager 9\\MediaManager9.exe "=
    "c:\\Program Files\\Bonjour\\mDNSResponder.exe "=
    "c:\\Program Files\\iTunes\\iTunes.exe "=
    "c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe "=
    "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe "=

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
    "3389:TCP "= 3389:TCP:mad:xpsp2res.dll,-22009

    R2 LMIGuardianSvc;LMIGuardianSvc;c:\program files\LogMeIn\x86\LMIGuardianSvc.exe [9/27/2010 2:47 PM 374152]
    R2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files\LogMeIn\x86\rainfo.sys [5/31/2010 11:31 AM 12856]
    R2 NitroReaderDriverReadSpool;NitroPDFReaderDriverCreatorReadSpool;c:\program files\Nitro PDF\Reader\NitroPDFReaderDriverService.exe [5/25/2010 11:00 AM 196912]
    R2 Update Agent;Practice Manager Update Agent;c:\program files\Common Files\PMGSoftware\Esd\PM.Deployment.EsdService.exe [11/23/2007 11:47 AM 61440]
    S3 GenericMount;Generic Mount Driver;c:\windows\system32\DRIVERS\GenericMount.sys --> c:\windows\system32\DRIVERS\GenericMount.sys [?]
    S3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [11/6/2007 3:22 PM 34064]
    S3 Usbsvcb;Usbsvcb; [x]
    S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\drivers\wdcsam.sys [12/16/2009 3:58 PM 11520]
    S4 WDDMService;WD SmartWare Drive Manager;c:\program files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [8/17/2009 10:52 AM 98304]
    S4 WDSmartWareBackgroundService;WD SmartWare Background Service;c:\program files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [6/16/2009 9:58 AM 20480]
    .
    Contents of the 'Scheduled Tasks' folder

    2010-10-04 c:\windows\Tasks\AppleSoftwareUpdate.job
    - c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 16:34]

    2011-01-09 c:\windows\Tasks\Google Software Updater.job
    - c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-05-19 21:00]

    2011-01-08 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-790384558-2054425275-2914615486-1111Core.job
    - c:\documents and settings\Jeremie.LATRONICA\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-12-10 14:34]

    2011-01-09 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-790384558-2054425275-2914615486-1111UA.job
    - c:\documents and settings\Jeremie.LATRONICA\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-12-10 14:34]
    .
    .
    ------- Supplementary Scan -------
    .
    uStart Page = hxxp://www.yahoo.com/?ilc=1
    IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
    TCP: {4F71E4B8-AAF8-4B97-B112-FE776CA407C4} = 192.168.2.4,167.206.3.154
    DPF: {53D40FAA-4E21-459F-AA87-E4D97FC3245A} - hxxp://win08srvr/PMGSoftware/PMSetup/webfiles/setup.exe
    DPF: {9D28AF62-62C1-4553-ACB9-9A148E3C35AF} - hxxp://win08srvr/PMGSoftware/PMSetup/webfiles/PmReqChecker.CAB
    DPF: {DAF7E6E7-D53A-439A-B28D-12271406B8A9} - hxxp://mobileapps.blackberry.com/devicesoftware/AxLoader.cab
    FF - ProfilePath -
    .
    - - - - ORPHANS REMOVED - - - -

    MSConfigStartUp-Acrobat Assistant 8 - c:\program files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe
    MSConfigStartUp-Adobe Reader Speed Launcher - c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe
    MSConfigStartUp-AppleSyncNotifier - c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
    MSConfigStartUp-PC Connection Agent - c:\program files\Microsoft ActiveSync\wcescomm.exe
    MSConfigStartUp-TrayServer - c:\program files\MAGIX\Movie_Edit_Pro_15_Plus_Download_version\TrayServer.exe
    AddRemove-NodEnabler - c:\program files\ESET\ESET Smart Security\NodEnabler\Uninstall.exe
    AddRemove-UBCD4Win_is1 - c:\ubcd4win\unins000.exe



    **************************************************************************

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2011-01-09 01:28
    Windows 5.1.2600 Service Pack 3 NTFS

    scanning hidden processes ...

    scanning hidden autostart entries ...

    scanning hidden files ...

    scan completed successfully
    hidden files: 0

    **************************************************************************
    .
    --------------------- DLLs Loaded Under Running Processes ---------------------

    - - - - - - - > 'winlogon.exe'(712)
    c:\windows\system32\LMIinit.dll
    c:\program files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
    c:\windows\system32\LMIRfsClientNP.dll

    - - - - - - - > 'explorer.exe'(676)
    c:\windows\system32\WININET.dll
    c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
    c:\windows\system32\ieframe.dll
    c:\windows\system32\webcheck.dll
    c:\windows\system32\WPDShServiceObj.dll
    c:\windows\system32\vdorctrl.dll
    c:\windows\system32\PortableDeviceTypes.dll
    c:\windows\system32\PortableDeviceApi.dll
    c:\windows\system32\svrltmgr.dll
    c:\program files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
    c:\windows\system32\LMIRfsClientNP.dll
    .
    ------------------------ Other Running Processes ------------------------
    .
    c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    c:\program files\Bonjour\mDNSResponder.exe
    c:\program files\Java\jre6\bin\jqs.exe
    c:\program files\LogMeIn\x86\RaMaint.exe
    c:\program files\LogMeIn\x86\LogMeIn.exe
    c:\windows\system32\msiexec.exe
    c:\windows\system32\nvsvc32.exe
    c:\windows\system32\HPZipm12.exe
    c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
    c:\program files\LogMeIn\x86\LogMeIn.exe
    .
    **************************************************************************
    .
    Completion time: 2011-01-09 01:32:57 - machine was rebooted
    ComboFix-quarantined-files.txt 2011-01-09 06:32

    Pre-Run: 53,476,319,232 bytes free
    Post-Run: 53,294,759,936 bytes free

    WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
    [boot loader]
    timeout=2
    default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
    [operating systems]
    c:\cmdcons\BOOTSECT.DAT= "Microsoft Windows Recovery Console" /cmdcons
    UnsupportedDebug= "do not select this" /debug
    multi(0)disk(0)rdisk(0)partition(2)\WINDOWS= "Microsoft Windows XP Professional" /noexecute=optin /fastdetect

    - - End Of File - - B7A700F744B6EEED9AA4179C8F4B08E2
     
  10. 2011/01/09
    Jeremie

    Jeremie Inactive Thread Starter

    Joined:
    2011/01/06
    Messages:
    117
    Likes Received:
    0
    The system restore option is now available. The computer is no longer restarting 15 times. Everything seems to look good. I think I just need to restart some of the service thatrun at start up. I really appreciate your time and help to resolve my issue. Thank you very much.
     
  11. 2011/01/09
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Great news!
    Make sure, you don't use any of restore points.
    Some of them may be infected.

    Combofix looks good :)

    Re-run OTL "Quick scan" (no custom script).
    It'll produce only one log.
     
  12. 2011/01/09
    Jeremie

    Jeremie Inactive Thread Starter

    Joined:
    2011/01/06
    Messages:
    117
    Likes Received:
    0
    OTL logfile created on: 1/9/2011 10:02:51 PM - Run 3
    OTL by OldTimer - Version 3.2.20.1 Folder = C:\Documents and Settings\Gregg\Desktop
    Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.6001.18702)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

    2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 74.00% Memory free
    2.00 Gb Paging File | 2.00 Gb Available in Paging File | 86.00% Paging File free
    Paging file location(s): C:\pagefile.sys 672 1344 [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
    Drive C: | 71.21 Gb Total Space | 49.67 Gb Free Space | 69.75% Space Free | Partition Type: NTFS
    Drive E: | 5.74 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
    Drive S: | 105.44 Gb Total Space | 100.97 Gb Free Space | 95.76% Space Free | Partition Type: NTFS
    Drive Z: | 40.00 Gb Total Space | 8.03 Gb Free Space | 20.08% Space Free | Partition Type: NTFS

    Computer Name: JEREMIE | User Name: Gregg | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user | Quick Scan
    Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========

    PRC - [2011/01/09 22:02:33 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Gregg\Desktop\OTL.exe
    PRC - [2010/12/13 11:36:02 | 000,136,584 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\ramaint.exe
    PRC - [2010/12/13 11:35:48 | 000,374,152 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe
    PRC - [2010/12/08 10:27:23 | 000,390,528 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\LogMeIn.exe
    PRC - [2010/05/25 11:00:52 | 000,196,912 | ---- | M] (Nitro PDF Software) -- C:\Program Files\Nitro PDF\Reader\NitroPDFReaderDriverService.exe
    PRC - [2010/05/14 10:00:26 | 000,249,136 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    PRC - [2010/04/16 07:33:40 | 000,144,672 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    PRC - [2009/12/08 20:29:44 | 000,240,992 | ---- | M] (Microsoft Corp.) -- C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\mswinext.exe
    PRC - [2008/04/13 19:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
    PRC - [2007/11/23 11:47:36 | 000,061,440 | ---- | M] (Practice Manager Group, LLC) -- C:\Program Files\Common Files\PMGSoftware\Esd\PM.Deployment.EsdService.exe
    PRC - [2007/08/09 02:27:52 | 000,073,728 | ---- | M] (HP) -- C:\WINDOWS\system32\HPZipm12.exe


    ========== Modules (SafeList) ==========

    MOD - [2011/01/09 22:02:33 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Gregg\Desktop\OTL.exe
    MOD - [2010/08/23 11:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
    MOD - [2008/04/13 19:12:10 | 001,372,160 | ---- | M] () -- C:\WINDOWS\System32\svrltmgr.dll
    MOD - [2008/04/13 19:12:10 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wsock32.dll
    MOD - [2008/04/13 19:12:01 | 000,413,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcp60.dll


    ========== Win32 Services (SafeList) ==========

    SRV - [2010/12/13 11:36:02 | 000,136,584 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files\LogMeIn\x86\RaMaint.exe -- (LMIMaint)
    SRV - [2010/12/13 11:35:48 | 000,374,152 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe -- (LMIGuardianSvc)
    SRV - [2010/12/08 10:27:23 | 000,390,528 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files\LogMeIn\x86\LogMeIn.exe -- (LogMeIn)
    SRV - [2010/05/25 11:00:52 | 000,196,912 | ---- | M] (Nitro PDF Software) [Auto | Running] -- C:\Program Files\Nitro PDF\Reader\NitroPDFReaderDriverService.exe -- (NitroReaderDriverReadSpool)
    SRV - [2010/05/14 10:00:26 | 000,249,136 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
    SRV - [2010/04/16 07:33:40 | 000,144,672 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
    SRV - [2009/08/17 10:52:08 | 000,098,304 | ---- | M] (WDC) [Disabled | Stopped] -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe -- (WDDMService)
    SRV - [2009/06/16 09:58:08 | 000,020,480 | ---- | M] (Memeo) [Disabled | Stopped] -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe -- (WDSmartWareBackgroundService)
    SRV - [2009/02/13 16:38:49 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
    SRV - [2007/11/23 11:47:36 | 000,061,440 | ---- | M] (Practice Manager Group, LLC) [Auto | Running] -- C:\Program Files\Common Files\PMGSoftware\Esd\PM.Deployment.EsdService.exe -- (Update Agent)
    SRV - [2007/11/06 15:22:26 | 000,092,792 | ---- | M] (CACE Technologies) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
    SRV - [2007/08/09 02:27:52 | 000,073,728 | ---- | M] (HP) [Auto | Running] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)


    ========== Driver Services (SafeList) ==========

    DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\GenericMount.sys -- (GenericMount)
    DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme)
    DRV - [2010/12/13 11:35:48 | 000,083,360 | ---- | M] (LogMeIn, Inc.) [File_System | Disabled | Stopped] -- C:\WINDOWS\System32\LMIRfsClientNP.dll -- (LMIRfsClientNP)
    DRV - [2010/05/31 11:31:12 | 000,012,856 | ---- | M] (LogMeIn, Inc.) [Kernel | Auto | Running] -- C:\Program Files\LogMeIn\x86\rainfo.sys -- (LMIInfo)
    DRV - [2010/05/31 11:31:10 | 000,047,640 | ---- | M] (LogMeIn, Inc.) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\LMIRfsDriver.sys -- (LMIRfsDriver)
    DRV - [2009/02/13 12:02:52 | 000,011,520 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wdcsam.sys -- (WDC_SAM)
    DRV - [2008/08/14 07:57:42 | 000,074,720 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\adfs.sys -- (adfs)
    DRV - [2008/06/12 08:46:40 | 000,004,608 | ---- | M] (RealVNC Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\vncmirror.sys -- (vncmirror)
    DRV - [2008/04/13 13:53:09 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
    DRV - [2008/04/13 11:36:05 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
    DRV - [2007/11/06 15:22:06 | 000,034,064 | ---- | M] (CACE Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF)
    DRV - [2006/08/23 12:12:38 | 003,959,712 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
    DRV - [2006/08/14 06:29:44 | 000,044,544 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\bcm4sbxp.sys -- (bcm4sbxp)
    DRV - [2006/07/27 13:24:28 | 001,171,464 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA)
    DRV - [2006/06/18 22:37:34 | 000,036,864 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
    DRV - [2005/11/18 11:02:50 | 000,005,660 | ---- | M] (Sonic Solutions) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\DLACDBHM.SYS -- (DLACDBHM)
    DRV - [2005/11/18 11:02:10 | 000,022,684 | ---- | M] (Sonic Solutions) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\DLARTL_N.SYS -- (DLARTL_N)
    DRV - [2005/11/07 04:20:00 | 000,094,332 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAUDFAM.SYS -- (DLAUDFAM)
    DRV - [2005/11/07 04:20:00 | 000,087,036 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAUDF_M.SYS -- (DLAUDF_M)
    DRV - [2005/11/07 04:20:00 | 000,086,652 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAIFS_M.SYS -- (DLAIFS_M)
    DRV - [2005/11/07 04:20:00 | 000,025,628 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLABOIOM.SYS -- (DLABOIOM)
    DRV - [2005/11/07 04:20:00 | 000,014,684 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAOPIOM.SYS -- (DLAOPIOM)
    DRV - [2005/11/07 04:20:00 | 000,006,364 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAPoolM.SYS -- (DLAPoolM)
    DRV - [2005/11/07 04:20:00 | 000,002,496 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLADResN.SYS -- (DLADResN)
    DRV - [2005/09/12 02:30:00 | 000,089,264 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\DRVMCDB.SYS -- (DRVMCDB)
    DRV - [2005/08/12 04:20:00 | 000,040,544 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\DRVNDDM.SYS -- (DRVNDDM)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========


    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/?ilc=1
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    FF - HKLM\software\mozilla\Firefox\extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2010/06/11 02:13:40 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/06/28 12:11:37 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/11/07 13:48:30 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird

    [2011/01/05 19:53:44 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
    [2010/05/05 08:29:39 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
    [2010/11/07 14:09:18 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
    [2011/01/05 19:53:44 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
    [2010/11/12 18:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll

    O1 HOSTS File: ([2011/01/09 01:27:45 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
    O1 - Hosts: 127.0.0.1 localhost
    O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\DLA\DLASHX_W.DLL (Sonic Solutions)
    O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
    O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll (Google Inc.)
    O2 - BHO: (MSN Toolbar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\npwinext.dll (Microsoft Corporation)
    O3 - HKLM\..\Toolbar: (MSN Toolbar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\npwinext.dll (Microsoft Corporation)
    O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
    O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
    O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
    O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
    O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} https://activatemyfios.verizon.net/sdcCommon/download/FIOS/Verizon FiOS Installer.cab (Support.com Configuration Class)
    O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab (Office Genuine Advantage Validation Tool)
    O16 - DPF: {53D40FAA-4E21-459F-AA87-E4D97FC3245A} http://win08srvr/PMGSoftware/PMSetup/webfiles/setup.exe (InstallShield Setup Player V12)
    O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase5483.cab (Windows Live Safety Center Base Module)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
    O16 - DPF: {9D28AF62-62C1-4553-ACB9-9A148E3C35AF} http://win08srvr/PMGSoftware/PMSetup/webfiles/PmReqChecker.CAB (PMRequirementsChecker Class)
    O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
    O16 - DPF: {DAF7E6E7-D53A-439A-B28D-12271406B8A9} http://mobileapps.blackberry.com/devicesoftware/AxLoader.cab (AxLoaderPassword Class)
    O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} https://dell.webex.com/client/T26L/support/ieatgpc.cab (GpcContainer Class)
    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} http://download.mcafee.com/molbin/iss-loc/mcfscan/3,0,0,5930/mcfscan.cab (McFreeScan Class)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = Latronica.com
    O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
    O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
    O20 - Winlogon\Notify\LMIinit: DllName - LMIinit.dll - C:\WINDOWS\System32\LMIinit.dll (LogMeIn, Inc.)
    O21 - SSODL: Winipdat - {A3DE4317-A8FB-446A-BFF2-1C927989C582} - C:\WINDOWS\System32\vdorctrl.dll ()
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2007/08/21 15:49:28 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
    O34 - HKLM BootExecute: (autocheck autochk *) - File not found
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37 - HKLM\...com [@ = ComFile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*

    ========== Files/Folders - Created Within 30 Days ==========

    [2011/01/09 22:02:32 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Gregg\Desktop\OTL.exe
    [2011/01/09 01:18:07 | 000,000,000 | RHSD | C] -- C:\cmdcons
    [2011/01/09 01:15:51 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
    [2011/01/09 01:15:51 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
    [2011/01/09 01:15:51 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
    [2011/01/09 01:15:51 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
    [2011/01/09 01:13:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
    [2011/01/08 23:09:08 | 000,000,000 | ---D | C] -- C:\_OTL
    [2011/01/08 13:17:41 | 000,000,000 | ---D | C] -- C:\Qoobox
    [2011/01/05 22:30:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Gregg\Application Data\Malwarebytes
    [2007/09/04 09:11:41 | 003,378,248 | ---- | C] (Lime Wire LLC) -- C:\Program Files\LimeWireWin.exe
    [1996/11/12 21:25:44 | 000,018,944 | R--- | C] ( ) -- C:\WINDOWS\System32\implode.dll

    ========== Files - Modified Within 30 Days ==========

    [2011/01/09 22:02:33 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Gregg\Desktop\OTL.exe
    [2011/01/09 21:55:00 | 000,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
    [2011/01/09 21:12:00 | 000,001,006 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-790384558-2054425275-2914615486-1111UA.job
    [2011/01/09 17:12:00 | 000,000,954 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-790384558-2054425275-2914615486-1111Core.job
    [2011/01/09 10:05:21 | 000,000,327 | RHS- | M] () -- C:\boot.ini
    [2011/01/09 09:53:33 | 000,081,191 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
    [2011/01/09 09:50:11 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
    [2011/01/09 01:27:45 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
    [2011/01/09 00:33:02 | 000,000,211 | ---- | M] () -- C:\Boot.bak
    [2011/01/08 22:07:56 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
    [2011/01/08 13:28:40 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
    [2011/01/08 13:26:16 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
    [2011/01/06 11:25:21 | 000,002,515 | ---- | M] () -- C:\Documents and Settings\Gregg\Desktop\Microsoft Office Word 2007.lnk
    [2010/12/30 11:41:56 | 002,290,192 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
    [2010/12/29 23:27:17 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
    [2010/12/29 23:18:07 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
    [2010/12/21 16:38:35 | 000,002,549 | ---- | M] () -- C:\Documents and Settings\Gregg\Desktop\Microsoft Office Excel 2007.lnk
    [2010/12/13 11:35:48 | 000,087,424 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\LMIinit.dll
    [2010/12/13 11:35:48 | 000,083,360 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\LMIRfsClientNP.dll
    [2010/12/13 11:35:48 | 000,029,568 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\LMIport.dll

    ========== Files Created - No Company Name ==========

    [2011/01/09 01:18:13 | 000,000,211 | ---- | C] () -- C:\Boot.bak
    [2011/01/09 01:18:11 | 000,260,272 | RHS- | C] () -- C:\cmldr
    [2011/01/09 01:15:51 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
    [2011/01/09 01:15:51 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
    [2011/01/09 01:15:51 | 000,089,088 | ---- | C] () -- C:\WINDOWS\MBR.exe
    [2011/01/09 01:15:51 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
    [2011/01/09 01:15:51 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
    [2010/12/21 23:32:20 | 000,000,002 | ---- | C] () -- C:\Documents and Settings\Gregg\uninstall.log
    [2010/12/21 23:30:13 | 000,001,393 | ---- | C] () -- C:\WINDOWS\imsins.BAK
    [2010/08/16 13:11:01 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\U25store.dll
    [2010/08/16 12:26:16 | 000,000,128 | ---- | C] () -- C:\Documents and Settings\Gregg\Local Settings\Application Data\fusioncache.dat
    [2010/07/15 20:50:01 | 000,004,096 | -H-- | C] () -- C:\Documents and Settings\Gregg\Local Settings\Application Data\keyfile3.drm
    [2010/03/23 16:01:42 | 000,176,235 | ---- | C] () -- C:\WINDOWS\System32\Primomonnt.dll
    [2009/12/23 11:18:59 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\vcmimm4.dll
    [2009/09/04 12:03:41 | 000,120,200 | ---- | C] () -- C:\WINDOWS\System32\DLLDEV32i.dll
    [2009/09/04 12:03:15 | 000,007,103 | ---- | C] () -- C:\WINDOWS\mgxoschk.ini
    [2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.DLL
    [2009/07/30 20:58:42 | 000,000,314 | ---- | C] () -- C:\WINDOWS\primopdf.ini
    [2008/08/12 12:44:08 | 000,002,508 | ---- | C] () -- C:\Documents and Settings\LocalService\Application Data\$_hpcst$.hpc
    [2008/07/21 10:12:24 | 000,000,000 | ---- | C] () -- C:\WINDOWS\vpc32.INI
    [2007/11/28 14:34:35 | 000,001,362 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
    [2007/11/26 11:34:24 | 000,000,061 | ---- | C] () -- C:\WINDOWS\ftk.INI
    [2007/11/06 15:19:28 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll
    [2007/10/19 15:30:00 | 000,000,000 | ---- | C] () -- C:\WINDOWS\hpqEmlSz.INI
    [2007/09/05 12:39:55 | 000,000,174 | ---- | C] () -- C:\WINDOWS\wininit.ini
    [2007/08/30 11:01:02 | 000,000,074 | ---- | C] () -- C:\WINDOWS\DTO2KXSV.INI
    [2007/08/23 12:09:24 | 000,002,115 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
    [2007/08/23 12:07:42 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\HPZIDS01.dll
    [2007/08/21 16:25:45 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
    [2007/08/21 15:54:47 | 001,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
    [2007/08/21 15:54:47 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
    [2007/08/21 15:54:45 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
    [2007/08/21 15:54:42 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
    [2007/08/21 15:54:41 | 001,470,464 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
    [2007/08/21 15:54:41 | 000,581,632 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll
    [2007/08/21 15:54:36 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\nvapi.dll
    [2007/08/21 11:41:39 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
    [2005/11/28 19:11:07 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
    [2004/08/04 07:00:00 | 001,372,160 | ---- | C] () -- C:\WINDOWS\System32\svrltmgr.dll
    [2004/08/04 07:00:00 | 001,003,520 | ---- | C] () -- C:\WINDOWS\System32\vdorctrl.dll
    [2004/08/04 07:00:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\cmproxfr.dll
    [2004/08/04 07:00:00 | 000,177,495 | ---- | C] () -- C:\WINDOWS\System32\wzodlg32.dll
    [2004/08/04 07:00:00 | 000,044,686 | ---- | C] () -- C:\WINDOWS\System32\mzsyk32.dll
    [2002/03/16 19:00:00 | 000,007,420 | ---- | C] () -- C:\WINDOWS\UA000059.DLL
    [2001/07/07 02:00:00 | 000,003,399 | ---- | C] () -- C:\WINDOWS\System32\hptcpmon.ini

    ========== LOP Check ==========

    [2010/03/16 15:01:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EasySoft
    [2009/07/22 12:03:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\eFax Messenger 4.4 Output
    [2010/02/04 15:57:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
    [2010/03/19 15:20:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IBM
    [2011/01/09 00:00:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LogMeIn
    [2010/03/19 16:01:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MAGIX
    [2007/11/29 11:19:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MediaWidget
    [2010/06/01 10:49:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nitro PDF
    [2010/01/20 11:06:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Research In Motion
    [2010/07/03 15:07:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
    [2008/11/21 09:47:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ulead Systems
    [2011/01/08 23:06:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
    [2009/12/16 15:59:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Western Digital
    [2008/07/09 15:04:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WinZip
    [2009/03/16 10:38:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
    [2010/07/03 12:02:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{1C6FDDD8-FC9E-4C12-9FA5-1AAD377097B3}
    [2010/04/07 09:11:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
    [2009/09/10 14:01:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
    [2009/04/22 09:41:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
    [2010/09/23 14:20:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Gregg\Application Data\webex

    ========== Purity Check ==========



    < End of report >
     
  13. 2011/01/09
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    You need to install some AV program.
    I suggest one of these:
    - Avast! free antivirus: http://www.avast.com/eng/download-avast-home.html
    - Avira free antivirus: http://www.free-av.com/en/download/1/avira_antivir_personal__free_antivirus.html

    ================================================================

    Looks good :)

    Last scans...

    1. Download Security Check from HERE, and save it to your Desktop.
    • Double-click SecurityCheck.exe
    • Follow the onscreen instructions inside of the black box.
    • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

      NOTE SecurityCheck may produce some false warning(s), so leave the results reading to me.


    2. Download Temp File Cleaner (TFC)
    • Double click on TFC.exe to run the program.
    • Click on Start button to begin cleaning process.
    • TFC will close all running programs, and it may ask you to restart computer.


    3. Please run a free online scan with the ESET Online Scanner

    • Disable your antivirus program
    • Tick the box next to YES, I accept the Terms of Use
    • Click Start
    • IMPORTANT! UN-check Remove found threats
    • Accept any security warnings from your browser.
    • Check Scan archives
    • Click Start
    • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
    • When the scan completes, push List of found threats
    • Click on Export to text file , and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
    • NOTE. If Eset won't find any threats, it won't produce any log.
     
  14. 2011/01/10
    Jeremie

    Jeremie Inactive Thread Starter

    Joined:
    2011/01/06
    Messages:
    117
    Likes Received:
    0
    Results of screen317's Security Check version 0.99.7
    Windows XP Service Pack 3
    Internet Explorer 8
    ``````````````````````````````
    Antivirus/Firewall Check:

    Windows Security Center service is not running! This report may not be accurate!
    Windows Firewall Disabled!
    WMI entry may not exist for antivirus; attempting automatic update.
    ```````````````````````````````
    Anti-malware/Other Utilities Check:

    HijackThis 2.0.2
    CCleaner
    RegVac Registry Cleaner 5.01 (Trial Version)
    Java(TM) 6 Update 23
    Java(TM) 6 Update 5
    Out of date Java installed!
    Adobe Flash Player 10.1.53.64
    Adobe Reader 9.4.1
    Out of date Adobe Reader installed!
    Mozilla Firefox (3.0.19) Firefox Out of Date!
    ````````````````````````````````
    Process Check:
    objlist.exe by Laurent

    ``````````End of Log````````````


    I have a network monitoring software installed thats why windows firewall is disabled. I havent gotten around to choosing a AV prog that will not be a headache with the Monitoring software..as far as setting up exceptions.
     
  15. 2011/01/10
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    I'm not familiar with those. Does it give you same protection as a firewall?
    You definitely need some AV program.
    Without it, you'll be back in this forum in no time.

    ===============================================================

    Uninstall Java(TM) 6 Update 5

    ===============================================================

    Update Adobe Reader

    You can download it from http://www.adobe.com/products/acrobat/readstep2.html
    After installing the latest Adobe Reader, uninstall all previous versions.
    Note. If you already have Adobe Photoshop® Album Starter Edition installed or do not wish to have it installed UNcheck the box which says Also Download Adobe Photoshop® Album Starter Edition.

    Alternatively, you can uninstall Adobe Reader (33.5 MB), download and install Foxit PDF Reader(3.5MB) from HERE.
    It's a much smaller file to download and uses a lot less resources than Adobe Reader.
    Note: When installing FoxitReader, make sure to UN-check any pre-checked toolbar, or other garbage.
    On this page:

    [​IMG]

    make sure, you have both boxes UN-checked AND (important!) click on Decline button
     
  16. 2011/01/10
    Jeremie

    Jeremie Inactive Thread Starter

    Joined:
    2011/01/06
    Messages:
    117
    Likes Received:
    0
    Its Spector 360. I have a symantec AV ,but theres alot of exceptions I would have to put in. The firewall however also need to be disabled. Im sure I can add exceptions I just have to sit down and go through it. Thanks again for the help.
     
  17. 2011/01/10
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    This? http://www.spector360.com/
    If so, I don't see any firewall type protection, which is a must and an AV program is another "a must ".

    For now, please continue with Eset scan and couple of other steps from my reply #34.
     
  18. 2011/01/15
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Are you still out there?
     
Thread Status:
Not open for further replies.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.