(c) Malwarebytes Corporation 2011-2012
OS version: 5.1.2600 Windows XP Service Pack 3 x86
Account is Administrative
Internet Explorer version: 8.0.6001.18702
File system is: NTFS
Disk drives: C:\ DRIVE_FIXED
CPU speed: 1.397000 GHz
Memory total: 1072930816, free: 527466496
------------ Kernel report ------------
03/27/2013 23:08:05
------------ Loaded modules -----------
\WINDOWS\system32\ntoskrnl.exe
\WINDOWS\system32\hal.dll
\WINDOWS\system32\KDCOM.DLL
\WINDOWS\system32\BOOTVID.dll
ACPI.sys
\WINDOWS\system32\DRIVERS\WMILIB.SYS
pci.sys
isapnp.sys
compbatt.sys
\WINDOWS\system32\DRIVERS\BATTC.SYS
pciide.sys
\WINDOWS\system32\DRIVERS\PCIIDEX.SYS
aliide.sys
intelide.sys
toside.sys
viaide.sys
cmdide.sys
pcmcia.sys
MountMgr.sys
ftdisk.sys
PartMgr.sys
VolSnap.sys
cpqarray.sys
\WINDOWS\system32\DRIVERS\SCSIPORT.SYS
atapi.sys
aha154x.sys
sparrow.sys
symc810.sys
aic78xx.sys
dac960nt.sys
ql10wnt.sys
amsint.sys
asc.sys
asc3550.sys
mraid35x.sys
i2omp.sys
ini910u.sys
ql1240.sys
aic78u2.sys
symc8xx.sys
sym_hi.sys
sym_u3.sys
ABP480N5.SYS
asc3350p.sys
cd20xrnt.sys
ultra.sys
adpu160m.sys
dpti2o.sys
ql1080.sys
ql1280.sys
ql12160.sys
perc2.sys
perc2hib.sys
hpn.sys
cbidf2k.sys
dac2w2k.sys
disk.sys
\WINDOWS\system32\DRIVERS\CLASSPNP.SYS
fltmgr.sys
sr.sys
drvmcdb.sys
PxHelp20.sys
KSecDD.sys
WudfPf.sys
Ntfs.sys
NDIS.sys
sisagp.sys
viaagp.sys
ohci1394.sys
\WINDOWS\system32\DRIVERS\1394BUS.SYS
Mup.sys
avgrkx86.sys
avglogx.sys
avgmfx86.sys
avgidshx.sys
agp440.sys
alim1541.sys
amdagp.sys
agpCPQ.sys
\SystemRoot\system32\DRIVERS\nic1394.sys
\SystemRoot\system32\DRIVERS\tunmp.sys
\SystemRoot\system32\DRIVERS\intelppm.sys
\SystemRoot\system32\DRIVERS\CmBatt.sys
\SystemRoot\system32\DRIVERS\nv4_mini.sys
\SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
\SystemRoot\system32\DRIVERS\usbuhci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\system32\DRIVERS\usbehci.sys
\SystemRoot\system32\DRIVERS\bcm4sbxp.sys
\SystemRoot\system32\DRIVERS\w29n51.sys
\SystemRoot\system32\DRIVERS\i8042prt.sys
\SystemRoot\system32\DRIVERS\Apfiltr.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\imapi.sys
\SystemRoot\system32\drivers\sscdbhk5.sys
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\system32\DRIVERS\redbook.sys
\SystemRoot\system32\DRIVERS\ks.sys
\SystemRoot\System32\Drivers\GEARAspiWDM.sys
\SystemRoot\system32\drivers\stac97.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\system32\DRIVERS\HSFHWICH.sys
\SystemRoot\system32\DRIVERS\HSF_DP.sys
\SystemRoot\system32\DRIVERS\HSF_CNXT.sys
\SystemRoot\System32\Drivers\Modem.SYS
\SystemRoot\system32\DRIVERS\iwca.sys
\SystemRoot\system32\DRIVERS\audstub.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\system32\DRIVERS\psched.sys
\SystemRoot\system32\DRIVERS\msgpc.sys
\SystemRoot\system32\DRIVERS\ptilink.sys
\SystemRoot\system32\DRIVERS\raspti.sys
\SystemRoot\system32\DRIVERS\wanatw4.sys
\SystemRoot\system32\DRIVERS\termdd.sys
\SystemRoot\system32\DRIVERS\swenum.sys
\SystemRoot\system32\DRIVERS\update.sys
\SystemRoot\system32\DRIVERS\mssmbios.sys
\SystemRoot\system32\DRIVERS\omci.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\System32\Drivers\i2omgmt.SYS
\SystemRoot\System32\Drivers\Fs_Rec.SYS
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\system32\drivers\ssrtln.sys
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\Drivers\mnmdd.SYS
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\rasacd.sys
\SystemRoot\system32\DRIVERS\ipsec.sys
\SystemRoot\system32\DRIVERS\tcpip.sys
\SystemRoot\system32\DRIVERS\tcpip6.sys
\SystemRoot\system32\DRIVERS\avgtdix.sys
\SystemRoot\system32\DRIVERS\ipnat.sys
\SystemRoot\system32\drivers\ip6fw.sys
\SystemRoot\system32\DRIVERS\netbt.sys
\SystemRoot\System32\drivers\ws2ifsl.sys
\SystemRoot\System32\drivers\afd.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\System32\Drivers\Fips.SYS
\SystemRoot\system32\DRIVERS\avgldx86.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\system32\DRIVERS\arp1394.sys
\SystemRoot\system32\DRIVERS\avgidsshimx.sys
\SystemRoot\system32\DRIVERS\avgidsdriverx.sys
\SystemRoot\System32\Drivers\Cdfs.SYS
\SystemRoot\System32\Drivers\dump_atapi.sys
\SystemRoot\System32\Drivers\dump_WMILIB.SYS
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\System32\watchdog.sys
\SystemRoot\System32\drivers\dxg.sys
\SystemRoot\System32\drivers\dxgthk.sys
\SystemRoot\System32\nv4_disp.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\drivers\drvnddm.sys
\SystemRoot\system32\dla\tfsndres.sys
\SystemRoot\system32\dla\tfsnifs.sys
\SystemRoot\system32\dla\tfsnopio.sys
\SystemRoot\system32\dla\tfsnpool.sys
\SystemRoot\system32\dla\tfsnboio.sys
\SystemRoot\system32\dla\tfsncofs.sys
\SystemRoot\system32\dla\tfsndrct.sys
\SystemRoot\system32\dla\tfsnudf.sys
\SystemRoot\system32\dla\tfsnudfa.sys
\SystemRoot\system32\DRIVERS\AegisP.sys
\SystemRoot\system32\DRIVERS\mdc8021x.sys
\SystemRoot\system32\DRIVERS\s24trans.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\mrxdav.sys
\SystemRoot\system32\drivers\wdmaud.sys
\SystemRoot\system32\drivers\sysaudio.sys
\SystemRoot\System32\Drivers\ASCTRM.SYS
\??\C:\WINDOWS\system32\Drivers\BASFND.sys
\SystemRoot\system32\DRIVERS\dsunidrv.sys
\SystemRoot\System32\Drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\srv.sys
\SystemRoot\system32\DRIVERS\mdmxsdk.sys
\??\C:\DOCUME~1\GMAN~1\LOCALS~1\Temp\mbr.sys
\??\C:\WINDOWS\system32\drivers\mbamchameleon.sys
\??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys
\WINDOWS\SYSTEM32\ntdll.dll
----------- End -----------
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xffffffff87776ab8
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IdeDeviceP0T0L0-3\
Lower Device Object: 0xffffffff87789d98
Lower Device Driver Name: \Driver\atapi\
Driver name found: atapi
Initialization returned 0x0
Load Function returned 0x0
Downloaded database version: v2013.03.28.03
Downloaded database version: v2013.03.25.01
Initializing...
Done!
<<<2>>>
Device number: 0, partition: 2
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xffffffff87776ab8, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff87775cb8, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff87776ab8, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff87789d98, DeviceName: \Device\Ide\IdeDeviceP0T0L0-3\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe142d800, 0xffffffff87776ab8, 0xffffffff86545040
Lower DeviceData: 0xffffffffe12c5058, 0xffffffff87789d98, 0xffffffff865ead38
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning directory: C:\WINDOWS\system32\drivers...
<<<2>>>
Device number: 0, partition: 2
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Read File: File "C:\WINDOWS\system32\drivers\TOSDVD.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\TSBVCAP.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\MCD.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\RAWWAN.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\CINEMST2.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\CPQDAP01.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\cxthsfs2.cty" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\del5422.cty" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\RIO8DRV.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\RIODRV.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\ROOTMDM.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\FADXP32.sys" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\hpoipr07.sys" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\NIKEDRV.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\PARVDM.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\SMCLIB.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\1028_Dell_INS_8600.mrk" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\ACPIEC.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\netwlan5.img" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\FSVGA.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\GM.DLS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\GMREADME.TXT" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\enum1394.sys" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\FAD.sys" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\fad9x.inf" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\VDMINDVD.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\WS2IFSL.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\ativmc20.cod" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\ATMEPVC.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\ATMUNI.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\NWLNKNB.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\NWLNKSPX.SYS" is compressed (flags = 1)
Read File: File "C:\WINDOWS\system32\drivers\OPRGHDLR.SYS" is compressed (flags = 1)
Done!
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: D0F4738C
Partition information:
Partition 0 type is Other (0xde)
Partition is NOT ACTIVE.
Partition starts at LBA: 63 Numsec = 96327
Partition 1 type is Primary (0x7)
Partition is ACTIVE.
Partition starts at LBA: 96390 Numsec = 111121605
Partition file system is NTFS
Partition is bootable
Partition 2 type is Other (0xdb)
Partition is NOT ACTIVE.
Partition starts at LBA: 111217995 Numsec = 5976180
Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0
Disk Size: 60011642880 bytes
Sector size: 512 bytes
Scanning physical sectors of unpartitioned space on drive 0 (1-62-117190240-117210240)...
Done!
Performing system, memory and registry scan...
Read File: File "c:\Documents and Settings\Administrator.USER123\Application Data\Microsoft\Internet Explorer\BRNDLOG.BAK" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator.USER123\Application Data\Microsoft\Protect\CREDHIST" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator.USER123\Application Data\Sonic\Update Manager\sumdb.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\BRNDLOG.BAK" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Microsoft\Protect\CREDHIST" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator\Application Data\Sonic\Update Manager\sumdb.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\Coach\AdpData.acd" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\Coach\runlog.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\AOL.INI" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\AOLDiag.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\aoltpspd.ph" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\appdata.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\axph.ph" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\compver.bin" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\goto.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\gotoko.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\ph.ph" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\shellrestart.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\trayicon.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\version.inf" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\waol.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\storage\aoltpspd.bin" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\storage\server.lock" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\AOL\storage\stderr.txt" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Common Files\51434298-11BE-D2EC-67E5-29112DDBE29D.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\GTek\gtny\counter.cfg" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\GTek\gtny\gtuser.cfg" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\SBSI\ORUN\BOOKMRK.DBF" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\SBSI\ORUN\Grpsyll.dbf" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\SBSI\ORUN\Progress.dbf" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\SBSI\ORUN\Settings.dbf" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\SBSI\ORUN\Syllabus.dbf" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Viewpoint\Viewpoint Experience Technology\HostRegistry.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Viewpoint\Viewpoint Experience Technology\MetaStreamConfig.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Viewpoint\Viewpoint Experience Technology\MetaStreamID.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Viewpoint\Viewpoint Media Player\HostRegistry.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Viewpoint\Viewpoint Media Player\MetaStreamConfig.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Viewpoint\Viewpoint Media Player\MetaStreamID.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\All Users\Application Data\Yahoo!\YOP\yop.html" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Application Data\DESKTOP.INI" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer\BRNDLOG.BAK" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Application Data\Microsoft\Protect\CREDHIST" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Application Data\Sonic\Update Manager\sumdb.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\AdobeUM\AcRdB7_1_0.sta" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Apple Computer\Preferences\com.apple.MobileDeviceCrashCopy.plist" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Apple Computer\Preferences\com.apple.WindowsContactsSync.plist" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Costco Photo Organizer\assets.yos" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Costco Photo Organizer\layouts.db" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Costco Photo Organizer\thumbnailSel.db" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Costco Photo Viewer\assets.yos" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Costco Photo Viewer\layouts.db" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Costco Photo Viewer\thumbnailSel.db" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Leadertech\PowerRegister\PowerReg.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Microsoft\Media Player\0073ABEA.wpl" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Microsoft\Protect\CREDHIST" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\MPEG Streamclip\Preferences" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Sonic\RecordNow!\playlist.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Application Data\Yahoo!\Browser\Q32BtwWkblWpt^tNYjmsKA--.yba" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\DESKTOP.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\Microsoft\Internet Explorer\BRNDLOG.BAK" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\Microsoft\Protect\CREDHIST" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\Sonic\Update Manager\sumdb.dat" is compressed (flags = 1)
Read File: File "c:\Program Files\Outlook Express\MSOE.TXT" is compressed (flags = 1)
Read File: File "c:\Program Files\Windows Media Player\NPDRMV2.ZIP" is compressed (flags = 1)
Read File: File "c:\Temp\BoiseNetWiz.txt" is compressed (flags = 1)
Read File: File "c:\Temp\hponicifs01.log" is compressed (flags = 1)
Read File: File "c:\Temp\hponiscan01.log" is compressed (flags = 1)
Read File: File "c:\Temp\QuickStartGuide.html" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Start Menu\Programs\Startup\DESKTOP.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\AddPort.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\DSOUND.VXD" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\PERFFILT.H" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\PERFWCI.H" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\PSCRIPT.SEP" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\results.txt" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\View Channels.scf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\CMOS.RAM" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\coh.cache" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\$NCSP$.INF" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\PCL.SEP" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\registersld.bat" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\spupdwxp.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\PERFCI.H" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\DESKTOP.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\PRODSPEC.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\zonedoff.reg" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\zonedon.reg" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\Settings.stg" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\L_EXCEPT.NLS" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Application Data\DESKTOP.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\DRIVERS\ETC\NETWORKS" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\OOBE\msobe.isp" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\OOBE\OBEIP.DUN" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\OOBE\oobeinfo.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\OOBE\REG.ISP" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\OOBE\MIGIP.DUN" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\OOBE\MIGRATE.ISP" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator.USER123\ntuser.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\NTUSER.INI" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\NTUSER.INI" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\NetworkService\NTUSER.INI" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator.USER123\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Local Settings\DESKTOP.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Local Settings\DESKTOP.INI" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Local Settings\Application Data\fusioncache.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Local Settings\Application Data\Microsoft\Internet Explorer\brndlog.bak" is compressed (flags = 1)
Read File: File "c:\WINDOWS\VB.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\VBADDIN.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\EXPLORER.SCF" is compressed (flags = 1)
Read File: File "c:\WINDOWS\smscfg.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\CMSETACL.LOG" is compressed (flags = 1)
Read File: File "c:\WINDOWS\DESKTOP.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\cdPlayer.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Hposcv07.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\install.dat" is compressed (flags = 1)
Read File: File "c:\WINDOWS\wininit.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\wsnk.his" is compressed (flags = 1)
Read File: File "c:\WINDOWS\wsnk.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\xpsp1hfm.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\mp10oem.txt" is compressed (flags = 1)
Read File: File "c:\WINDOWS\nsreg.dat" is compressed (flags = 1)
Read File: File "c:\WINDOWS\spupdsvc.log.1.log" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Accessibility\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\AxInterop.LTRASTERVIEWLib\1.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\cscompmgd\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\HPODMmcLib\1.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqactiv\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqactiv.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqalb\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqasset\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqcc2\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqcc2.resources\3.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\MSCORCFG\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\policy.13.0.LEAD\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\policy.13.0.LEAD.Drawing\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\policy.13.0.LEAD.Drawing.Imaging.Codecs\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\policy.13.0.LEAD.Drawing.Imaging.ImageProcessing\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\policy.13.0.LEAD.Drawing.Imaging.Twain\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\policy.13.0.LEAD.Windows.Forms\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\policy.13.0.LEAD.Windows.Forms.CommonDialogs\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\policy.13.0.LEAD.Windows.Forms.DrawingContainer\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\policy.13.0.LEAD.Wrapper\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\IIEHost\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Interop.hpocxi08\1.0.0.0__3b766a3b3d2dc385\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpodae\2.0.588.1728__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpodai\2.0.588.1728__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpodaud\2.0.588.1728__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Interop.hpodeb08\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Interop.hpodev08\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\ISymWrapper\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LEAD\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LEAD.Drawing\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LEAD.Drawing.Imaging.Codecs\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LEAD.Drawing.Imaging.ImageProcessing\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LEAD.Drawing.Imaging.Twain\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LEAD.Windows.Forms\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LEAD.Windows.Forms.CommonDialogs\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LEAD.Windows.Forms.DrawingContainer\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LEAD.Wrapper\13.0.0.113__9cf889f53ea9b907\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpodmmc\1.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpodmp\2.0.588.1728__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpodmpv\2.0.588.1728__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpodmpv_md\2.0.588.1728__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpodtrk\2.0.588.1728__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpodvid\2.0.588.1728__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpodxmlutil\2.0.588.1728__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpqcbcnv\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpqcldat\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Interop.hpqcxm08\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Interop.hpqdstcp\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpqimgr\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Interop.hpqusg\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\interop.hpqvideo\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Interop.hprblog\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Interop.LTANNLib\1.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqdcprf\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqiface\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqovskn\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Interop.hpodio08\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Configuration.Install\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Data\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqimgrc\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqimgrc.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqimlib\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqimvlt\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqimvlt.resources\3.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqisdsp\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqislib\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqltutl\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqmdmr\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqmdmr.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqmpvad\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqmydoc\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqmydoc.resources\3.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqntrop\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LTRASTERIOLib\1.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LTRASTERLib\1.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\LTRASTERVIEWLib\1.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Microsoft.VisualBasic.Vsa\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Microsoft.VisualC\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Microsoft.Vsa\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Microsoft.Vsa.Vb.CodeDOMProcessor\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\Microsoft_VsaVb\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqdcprf.resources\3.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqdcrsc\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqdcrsc.resources\3.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqdocpt\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqdocpt.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqdocvw\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqdocvw.resources\3.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqeal\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqfmrsc\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqfmrsc.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqglutl\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqglutl.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqpdmdl\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqpel10\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqpel10.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqprif\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqprrsc\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqprrsc.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqprutl\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqprutl.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqptfx\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqptfx.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqptint\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqptint.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqthumb\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqtray\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqtray.resources\4.0.0.0_en_a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqutils\4.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\hpqvideo\3.0.0.0__a53cf5803f4c3827\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\ASSEMBLY\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Debug\mrt.log.old" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Downloaded Program Files\ATTInternetInstaller.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\WINDOWS.CNT" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\WINHLP32.CNT" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\CIADMIN.HTM" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\CONF.CNT" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\CONNECT.CNT" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\NOCONTNT.CNT" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\MSHEARTS.CNT" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\MSNAUTH.CNT" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\RATINGS.CNT" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Help\UPDATE.CNT" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Installer\iProData\VERFILE.TIC" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\installutil.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\regsvcs.exe.rtm.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\vbc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\XPThemes.manifest" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ieexec.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ilasm.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\jsc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\regasm.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ConfigWizards.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\csc.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\cvtres.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\L_EXCEPT.NLP" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\regsvcs.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\caspol.exe.config" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet.mof.uninstall" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1033\SetupENU1.txt" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1033\SetupENU2.txt" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ASP.NETClientFiles\SmartNav.htm" is compressed (flags = 1)
Read File: File "c:\WINDOWS\Web\BULLET.GIF" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator.USER123\Local Settings\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator.USER123\Local Settings\History\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Administrator.USER123\Local Settings\History\History.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\Default User\Local Settings\DESKTOP.INI" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Local Settings\Application Data\fusioncache.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Local Settings\Application Data\PowerDVD\UserName.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Local Settings\History\History.IE5\INDEX.DAT" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\History\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\History\History.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\History\History.IE5\INDEX.DAT" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\NetworkService\Local Settings\History\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Local Settings\DESKTOP.INI" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Local Settings\History\desktop.ini" is compressed (flags = 1)
Read File: File "c:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Local Settings\History\History.IE5\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Local Settings\Application Data\fusioncache.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Local Settings\Application Data\HP\Digital Imaging\DataFile.dat" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Local Settings\Application Data\Microsoft\Feeds Cache\desktop.ini" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Local Settings\Application Data\Microsoft\Internet Explorer\brndlog.bak" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\G Man\Local Settings\Application Data\PowerDVD\UserName.xml" is compressed (flags = 1)
Read File: File "c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Feeds Cache\desktop.ini" is compressed (flags = 1)
Infected: HKLM\SOFTWARE\CLASSES\MyWaySearchAssistantDE.Auxiliary --> [Adware.MyWaySearch]
Infected: HKLM\SOFTWARE\CLASSES\MyWaySearchAssistantDE.Auxiliary.1 --> [Adware.MyWaySearch]
Done!
Scan finished
Creating System Restore point...
Scheduling clean up...
<<<2>>>
Device number: 0, partition: 2
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Removal successful. No system shutdown is required.
=======================================