here is the SDFix report:
SDFix: Version 1.143
Run by vikrensimraj on 17/02/2008 at 22:49
Microsoft Windows XP [Version 5.1.2600]
Running From: C:\DOCUME~1\VIKREN~1\Desktop\SDFix
Checking Services:
Restoring Windows Registry Values
Restoring Windows Default Hosts File
Rebooting...
Checking Files:
Trojan Files Found:
C:\~WRD0001.TMP - Deleted
C:\WINDOWS\system32\afqvnarogm\csrss.ini - Deleted
C:\WINDOWS\system32\ahdxpxy\csrss.ini - Deleted
C:\WINDOWS\system32\ajuoasgy\csrss.ini - Deleted
C:\WINDOWS\system32\aopvdnil\csrss.ini - Deleted
C:\WINDOWS\system32\aqgjuq\csrss.ini - Deleted
C:\WINDOWS\system32\avwtxmlx\csrss.ini - Deleted
C:\WINDOWS\system32\awohopyak\csrss.ini - Deleted
C:\WINDOWS\system32\baqlxg\csrss.ini - Deleted
C:\WINDOWS\system32\bbatwbpw\csrss.ini - Deleted
C:\WINDOWS\system32\bbhisjv\csrss.ini - Deleted
C:\WINDOWS\system32\bdujytmdpm\csrss.ini - Deleted
C:\WINDOWS\system32\bgdmgzlj\csrss.ini - Deleted
C:\WINDOWS\system32\bgwvllxogs\csrss.ini - Deleted
C:\WINDOWS\system32\bgxswg\csrss.ini - Deleted
C:\WINDOWS\system32\bhdfxlrxg\csrss.ini - Deleted
C:\WINDOWS\system32\bmvchcoufz\csrss.ini - Deleted
C:\WINDOWS\system32\bnpjupwk\csrss.ini - Deleted
C:\WINDOWS\system32\bojhfvo\csrss.ini - Deleted
C:\WINDOWS\system32\bpegmo\csrss.ini - Deleted
C:\WINDOWS\system32\bvnzxq\csrss.ini - Deleted
C:\WINDOWS\system32\bwjttsw\csrss.ini - Deleted
C:\WINDOWS\system32\bxgujgvwd\csrss.ini - Deleted
C:\WINDOWS\system32\bycnlpfnvo\csrss.ini - Deleted
C:\WINDOWS\system32\cafctjrq\csrss.ini - Deleted
C:\WINDOWS\system32\cainjzlnv\csrss.ini - Deleted
C:\WINDOWS\system32\cazkcj\csrss.ini - Deleted
C:\WINDOWS\system32\cegmjei\csrss.ini - Deleted
C:\WINDOWS\system32\cfxzeugj\csrss.ini - Deleted
C:\WINDOWS\system32\ckbtnykae\csrss.ini - Deleted
C:\WINDOWS\system32\clquwny\csrss.ini - Deleted
C:\WINDOWS\system32\cpnuuyd\csrss.ini - Deleted
C:\WINDOWS\system32\cqrunokln\csrss.ini - Deleted
C:\WINDOWS\system32\crdqqkm\csrss.ini - Deleted
C:\WINDOWS\system32\cumizxg\csrss.ini - Deleted
C:\WINDOWS\system32\cvowfrm\csrss.ini - Deleted
C:\WINDOWS\system32\cxvlhdf\csrss.ini - Deleted
C:\WINDOWS\system32\cyoocgemf\csrss.ini - Deleted
C:\WINDOWS\system32\dfseyprpde\csrss.ini - Deleted
C:\WINDOWS\system32\dgjaxgyfhv\csrss.ini - Deleted
C:\WINDOWS\system32\diascu\csrss.ini - Deleted
C:\WINDOWS\system32\dixhmejgcm\csrss.ini - Deleted
C:\WINDOWS\system32\djnaqsoep\csrss.ini - Deleted
C:\WINDOWS\system32\djzolenfy\csrss.ini - Deleted
C:\WINDOWS\system32\dlipxy\csrss.ini - Deleted
C:\WINDOWS\system32\doobegq\csrss.ini - Deleted
C:\WINDOWS\system32\dufznx\csrss.ini - Deleted
C:\WINDOWS\system32\dwrlpgqy\csrss.ini - Deleted
C:\WINDOWS\system32\dwwqwyct\csrss.ini - Deleted
C:\WINDOWS\system32\ecbdcc\csrss.ini - Deleted
C:\WINDOWS\system32\eelifle\csrss.ini - Deleted
C:\WINDOWS\system32\eessrlyky\csrss.ini - Deleted
C:\WINDOWS\system32\efnpel\csrss.ini - Deleted
C:\WINDOWS\system32\ekyezis\csrss.ini - Deleted
C:\WINDOWS\system32\elzlwpeutp\csrss.ini - Deleted
C:\WINDOWS\system32\eqpcggws\csrss.ini - Deleted
C:\WINDOWS\system32\erpwuer\csrss.ini - Deleted
C:\WINDOWS\system32\esgtrbfgp\csrss.ini - Deleted
C:\WINDOWS\system32\euwdpvjohl\csrss.ini - Deleted
C:\WINDOWS\system32\eybrqv\csrss.ini - Deleted
C:\WINDOWS\system32\eyubvhje\csrss.ini - Deleted
C:\WINDOWS\system32\fbspkuch\csrss.ini - Deleted
C:\WINDOWS\system32\fcmnwauau\csrss.ini - Deleted
C:\WINDOWS\system32\fgunjdsp\csrss.ini - Deleted
C:\WINDOWS\system32\fhpkwdc\csrss.ini - Deleted
C:\WINDOWS\system32\flqpagtdhd\csrss.ini - Deleted
C:\WINDOWS\system32\fnybltihe\csrss.ini - Deleted
C:\WINDOWS\system32\fqnqwxf\csrss.ini - Deleted
C:\WINDOWS\system32\ftqzsqmhs\csrss.ini - Deleted
C:\WINDOWS\system32\fwcdnfpog\csrss.ini - Deleted
C:\WINDOWS\system32\gfqvvhmq\csrss.ini - Deleted
C:\WINDOWS\system32\ghattpd\csrss.ini - Deleted
C:\WINDOWS\system32\ghcefrm\csrss.ini - Deleted
C:\WINDOWS\system32\gpdfwohc\csrss.ini - Deleted
C:\WINDOWS\system32\gqapuxiza\csrss.ini - Deleted
C:\WINDOWS\system32\gqdxqugmxq\csrss.ini - Deleted
C:\WINDOWS\system32\gtivrhsxv\csrss.ini - Deleted
C:\WINDOWS\system32\gyfvpsx\csrss.ini - Deleted
C:\WINDOWS\system32\gygkrzsxe\csrss.ini - Deleted
C:\WINDOWS\system32\gzfnjywlo\csrss.ini - Deleted
C:\WINDOWS\system32\hajifofpha\csrss.ini - Deleted
C:\WINDOWS\system32\haqqwc\csrss.ini - Deleted
C:\WINDOWS\system32\hbckcm\csrss.ini - Deleted
C:\WINDOWS\system32\hbdgob\csrss.ini - Deleted
C:\WINDOWS\system32\hdupri\csrss.ini - Deleted
C:\WINDOWS\system32\hhqblsl\csrss.ini - Deleted
C:\WINDOWS\system32\hkjwzb\csrss.ini - Deleted
C:\WINDOWS\system32\hlbiyfst\csrss.ini - Deleted
C:\WINDOWS\system32\hnjmcy\csrss.ini - Deleted
C:\WINDOWS\system32\hpaugznfa\csrss.ini - Deleted
C:\WINDOWS\system32\hqshbpk\csrss.ini - Deleted
C:\WINDOWS\system32\hqtgfd\csrss.ini - Deleted
C:\WINDOWS\system32\hqxngoezh\csrss.ini - Deleted
C:\WINDOWS\system32\htdyrji\csrss.ini - Deleted
C:\WINDOWS\system32\hvtpaly\csrss.ini - Deleted
C:\WINDOWS\system32\hwhdzrwul\csrss.ini - Deleted
C:\WINDOWS\system32\hxziphk\csrss.ini - Deleted
C:\WINDOWS\system32\imloborro\csrss.ini - Deleted
C:\WINDOWS\system32\infpcavcz\csrss.ini - Deleted
C:\WINDOWS\system32\iuguisnif\csrss.ini - Deleted
C:\WINDOWS\system32\iwchwz\csrss.ini - Deleted
C:\WINDOWS\system32\ixsaztfvz\csrss.ini - Deleted
C:\WINDOWS\system32\jdxvkypai\csrss.ini - Deleted
C:\WINDOWS\system32\jhzyuikoa\csrss.ini - Deleted
C:\WINDOWS\system32\jhzzsosr\csrss.ini - Deleted
C:\WINDOWS\system32\jirmnfpn\csrss.ini - Deleted
C:\WINDOWS\system32\jnzbcpi\csrss.ini - Deleted
C:\WINDOWS\system32\jqbopg\csrss.ini - Deleted
C:\WINDOWS\system32\jqgktsoh\csrss.ini - Deleted
C:\WINDOWS\system32\jqxhnbrh\csrss.ini - Deleted
C:\WINDOWS\system32\jwtcwq\csrss.ini - Deleted
C:\WINDOWS\system32\kaimkvxcc\csrss.ini - Deleted
C:\WINDOWS\system32\kbhhwzaarf\csrss.ini - Deleted
C:\WINDOWS\system32\kejvfda\csrss.ini - Deleted
C:\WINDOWS\system32\kgznjr\csrss.ini - Deleted
C:\WINDOWS\system32\kiokcqekbj\csrss.ini - Deleted
C:\WINDOWS\system32\klaozyz\csrss.ini - Deleted
C:\WINDOWS\system32\kodosl\csrss.ini - Deleted
C:\WINDOWS\system32\kpcripbeh\csrss.ini - Deleted
C:\WINDOWS\system32\kpctecqlmh\csrss.ini - Deleted
C:\WINDOWS\system32\kvovhnyob\csrss.ini - Deleted
C:\WINDOWS\system32\kyaaaiiygj\csrss.ini - Deleted
C:\WINDOWS\system32\lacuuuvzsf\csrss.ini - Deleted
C:\WINDOWS\system32\laegiqwa\csrss.ini - Deleted
C:\WINDOWS\system32\lfuzmalj\csrss.ini - Deleted
C:\WINDOWS\system32\lfyxke\csrss.ini - Deleted
C:\WINDOWS\system32\llnlbl\csrss.ini - Deleted
C:\WINDOWS\system32\lnddhtlp\csrss.ini - Deleted
C:\WINDOWS\system32\lqhdczu\csrss.ini - Deleted
C:\WINDOWS\system32\lrfjkdjrku\csrss.ini - Deleted
C:\WINDOWS\system32\lttgaipoay\csrss.ini - Deleted
C:\WINDOWS\system32\lttgcbil\csrss.ini - Deleted
C:\WINDOWS\system32\maunegpxw\csrss.ini - Deleted
C:\WINDOWS\system32\meufavilh\csrss.ini - Deleted
C:\WINDOWS\system32\mgjavo\csrss.ini - Deleted
C:\WINDOWS\system32\mhdzchgb\csrss.ini - Deleted
C:\WINDOWS\system32\miywrb\csrss.ini - Deleted
C:\WINDOWS\system32\mlehyjboei\csrss.ini - Deleted
C:\WINDOWS\system32\mopwsrjyx\csrss.ini - Deleted
C:\WINDOWS\system32\mzzqqgf\csrss.ini - Deleted
C:\WINDOWS\system32\mzzyvhobl\csrss.ini - Deleted
C:\WINDOWS\system32\najfvww\csrss.ini - Deleted
C:\WINDOWS\system32\ncsghpfc\csrss.ini - Deleted
C:\WINDOWS\system32\nczzwwqif\csrss.ini - Deleted
C:\WINDOWS\system32\ndvitfrgn\csrss.ini - Deleted
C:\WINDOWS\system32\ndwivzjcyw\csrss.ini - Deleted
C:\WINDOWS\system32\nlztarg\csrss.ini - Deleted
C:\WINDOWS\system32\nmidtfsw\csrss.ini - Deleted
C:\WINDOWS\system32\nmuqnrrww\csrss.ini - Deleted
C:\WINDOWS\system32\nqvwsviui\csrss.ini - Deleted
C:\WINDOWS\system32\ntarzqyv\csrss.ini - Deleted
C:\WINDOWS\system32\ntxjdsajop\csrss.ini - Deleted
C:\WINDOWS\system32\nwgcjr\csrss.ini - Deleted
C:\WINDOWS\system32\nxdoasgan\csrss.ini - Deleted
C:\WINDOWS\system32\nxyrxb\csrss.ini - Deleted
C:\WINDOWS\system32\obtlyfvb\csrss.ini - Deleted
C:\WINDOWS\system32\oeyizsimzw\csrss.ini - Deleted
C:\WINDOWS\system32\oezwhhgxbs\csrss.ini - Deleted
C:\WINDOWS\system32\ogoscax\csrss.ini - Deleted
C:\WINDOWS\system32\ogqluwi\csrss.ini - Deleted
C:\WINDOWS\system32\ojcrmxz\csrss.ini - Deleted
C:\WINDOWS\system32\omhnts\csrss.ini - Deleted
C:\WINDOWS\system32\otpefd\csrss.ini - Deleted
C:\WINDOWS\system32\oynsijj\csrss.ini - Deleted
C:\WINDOWS\system32\panhzhgxb\csrss.ini - Deleted
C:\WINDOWS\system32\pattfzxr\csrss.ini - Deleted
C:\WINDOWS\system32\pdcvozoud\csrss.ini - Deleted
C:\WINDOWS\system32\petkdi\csrss.ini - Deleted
C:\WINDOWS\system32\piquamsij\csrss.ini - Deleted
C:\WINDOWS\system32\pqblfoj\csrss.ini - Deleted
C:\WINDOWS\system32\pqwqxocgo\csrss.ini - Deleted
C:\WINDOWS\system32\psmidw\csrss.ini - Deleted
C:\WINDOWS\system32\pzuyrb\csrss.ini - Deleted
C:\WINDOWS\system32\qdvmafcos\csrss.ini - Deleted
C:\WINDOWS\system32\qgwbhpjk\csrss.ini - Deleted
C:\WINDOWS\system32\qjeflhxx\csrss.ini - Deleted
C:\WINDOWS\system32\qluqhh\csrss.ini - Deleted
C:\WINDOWS\system32\qluzjozhm\csrss.ini - Deleted
C:\WINDOWS\system32\qpraff\csrss.ini - Deleted
C:\WINDOWS\system32\qrltcpffp\csrss.ini - Deleted
C:\WINDOWS\system32\qtshgurtgy\csrss.ini - Deleted
C:\WINDOWS\system32\qtwpelhco\csrss.ini - Deleted
C:\WINDOWS\system32\qurkvzdlfb\csrss.ini - Deleted
C:\WINDOWS\system32\rchvyr\csrss.ini - Deleted
C:\WINDOWS\system32\regqjwfcms\csrss.ini - Deleted
C:\WINDOWS\system32\rewpysxj\csrss.ini - Deleted
C:\WINDOWS\system32\rfxgwlhmp\csrss.ini - Deleted
C:\WINDOWS\system32\rjxytaz\csrss.ini - Deleted
C:\WINDOWS\system32\rncdpa\csrss.ini - Deleted
C:\WINDOWS\system32\royyihtwal\csrss.ini - Deleted
C:\WINDOWS\system32\rqixbig\csrss.ini - Deleted
C:\WINDOWS\system32\rtrrghpu\csrss.ini - Deleted
C:\WINDOWS\system32\sdzpdqmjg\csrss.ini - Deleted
C:\WINDOWS\system32\shybndarqm\csrss.ini - Deleted
C:\WINDOWS\system32\skfqnubmme\csrss.ini - Deleted
C:\WINDOWS\system32\sogykww\csrss.ini - Deleted
C:\WINDOWS\system32\srrozqtqf\csrss.ini - Deleted
C:\WINDOWS\system32\ssqinoolf\csrss.ini - Deleted
C:\WINDOWS\system32\swjlnvbgzc\csrss.ini - Deleted
C:\WINDOWS\system32\szteuo\csrss.ini - Deleted
C:\WINDOWS\system32\tahpcwv\csrss.ini - Deleted
C:\WINDOWS\system32\tbbqchyts\csrss.ini - Deleted
C:\WINDOWS\system32\tdnjnewc\csrss.ini - Deleted
C:\WINDOWS\system32\thrrbd\csrss.ini - Deleted
C:\WINDOWS\system32\tkubxwnfy\csrss.ini - Deleted
C:\WINDOWS\system32\tkwnjywj\csrss.ini - Deleted
C:\WINDOWS\system32\tnjpno\csrss.ini - Deleted
C:\WINDOWS\system32\tqqxerckp\csrss.ini - Deleted
C:\WINDOWS\system32\trijbbsdtp\csrss.ini - Deleted
C:\WINDOWS\system32\tuvmbe\csrss.ini - Deleted
C:\WINDOWS\system32\tweoldx\csrss.ini - Deleted
C:\WINDOWS\system32\txwaiony\csrss.ini - Deleted
C:\WINDOWS\system32\ubxppyv\csrss.ini - Deleted
C:\WINDOWS\system32\ugidmp\csrss.ini - Deleted
C:\WINDOWS\system32\uifofknm\csrss.ini - Deleted
C:\WINDOWS\system32\uiywqdc\csrss.ini - Deleted
C:\WINDOWS\system32\uiyxmprn\csrss.ini - Deleted
C:\WINDOWS\system32\uloikjvvi\csrss.ini - Deleted
C:\WINDOWS\system32\unvxmupno\csrss.ini - Deleted
C:\WINDOWS\system32\uopxpzk\csrss.ini - Deleted
C:\WINDOWS\system32\upqnpmm\csrss.ini - Deleted
C:\WINDOWS\system32\uryaxfjbg\csrss.ini - Deleted
C:\WINDOWS\system32\utuefrnwd\csrss.ini - Deleted
C:\WINDOWS\system32\uyjxluuckc\csrss.ini - Deleted
C:\WINDOWS\system32\veufaxcd\csrss.ini - Deleted
C:\WINDOWS\system32\vgbwvbsfdi\csrss.ini - Deleted
C:\WINDOWS\system32\vhaqhfu\csrss.ini - Deleted
C:\WINDOWS\system32\vlztcntvh\csrss.ini - Deleted
C:\WINDOWS\system32\vomwbqgurz\csrss.ini - Deleted
C:\WINDOWS\system32\vpeaua\csrss.ini - Deleted
C:\WINDOWS\system32\vqaupbu\csrss.ini - Deleted
C:\WINDOWS\system32\vquafiuitx\csrss.ini - Deleted
C:\WINDOWS\system32\vquzhcned\csrss.ini - Deleted
C:\WINDOWS\system32\vrqkawdjqg\csrss.ini - Deleted
C:\WINDOWS\system32\vslhpqfv\csrss.ini - Deleted
C:\WINDOWS\system32\vsoqiaspzg\csrss.ini - Deleted
C:\WINDOWS\system32\vwlzklgmwt\csrss.ini - Deleted
C:\WINDOWS\system32\vwmyozr\csrss.ini - Deleted
C:\WINDOWS\system32\vxgxvsxfh\csrss.ini - Deleted
C:\WINDOWS\system32\vxjfujoo\csrss.ini - Deleted
C:\WINDOWS\system32\vyyiuwgu\csrss.ini - Deleted
C:\WINDOWS\system32\wcuvks\csrss.ini - Deleted
C:\WINDOWS\system32\wecfbmf\csrss.ini - Deleted
C:\WINDOWS\system32\wfbbidxle\csrss.ini - Deleted
C:\WINDOWS\system32\wllutf\csrss.ini - Deleted
C:\WINDOWS\system32\wnheou\csrss.ini - Deleted
C:\WINDOWS\system32\wr***t\csrss.ini - Deleted
C:\WINDOWS\system32\xmafcgend\csrss.ini - Deleted
C:\WINDOWS\system32\xnaxygv\csrss.ini - Deleted
C:\WINDOWS\system32\xqjrzrtkv\csrss.ini - Deleted
C:\WINDOWS\system32\xryvaelqb\csrss.ini - Deleted
C:\WINDOWS\system32\xtivsfzf\csrss.ini - Deleted
C:\WINDOWS\system32\xvymahpw\csrss.ini - Deleted
C:\WINDOWS\system32\xwwlxcst\csrss.ini - Deleted
C:\WINDOWS\system32\xzaqhezrd\csrss.ini - Deleted
C:\WINDOWS\system32\xzgcnx\csrss.ini - Deleted
C:\WINDOWS\system32\yajaas\csrss.ini - Deleted
C:\WINDOWS\system32\ybgsbb\csrss.ini - Deleted
C:\WINDOWS\system32\yduovuko\csrss.ini - Deleted
C:\WINDOWS\system32\yeuijsgitr\csrss.ini - Deleted
C:\WINDOWS\system32\ygazdbdoja\csrss.ini - Deleted
C:\WINDOWS\system32\yjnceyj\csrss.ini - Deleted
C:\WINDOWS\system32\ynorhuf\csrss.ini - Deleted
C:\WINDOWS\system32\yqrtwtlug\csrss.ini - Deleted
C:\WINDOWS\system32\ytaoxeik\csrss.ini - Deleted
C:\WINDOWS\system32\ywjqjxs\csrss.ini - Deleted
C:\WINDOWS\system32\yxgqez\csrss.ini - Deleted
C:\WINDOWS\system32\yyzbfxevi\csrss.ini - Deleted
C:\WINDOWS\system32\zbdgpzkul\csrss.ini - Deleted
C:\WINDOWS\system32\zkasxx\csrss.ini - Deleted
C:\WINDOWS\system32\zmhixoea\csrss.ini - Deleted
C:\WINDOWS\system32\znbggadxf\csrss.ini - Deleted
C:\WINDOWS\system32\zovnsutr\csrss.ini - Deleted
C:\WINDOWS\system32\zozworqec\csrss.ini - Deleted
C:\WINDOWS\system32\zqlhsunx\csrss.ini - Deleted
C:\WINDOWS\system32\zwxdmrbngb\csrss.ini - Deleted
C:\DOCUME~1\VIKREN~1\LOCALS~1\Temp\temp_01.exe - Deleted
C:\WINDOWS\system32\alog.txt - Deleted
C:\WINDOWS\system32\cmds.txt - Deleted
C:\WINDOWS\system32\conf.dat - Deleted
C:\WINDOWS\system32\cs.dat - Deleted
C:\WINDOWS\system32\ps1.dat - Deleted
C:\WINDOWS\system32\rc.dat - Deleted
C:\WINDOWS\system32\unifff.dll - Deleted
C:\WINDOWS\system32\WinSpooler.exe - Deleted
C:\WINDOWS\system32\WinUpdating.exe - Deleted
Folder C:\WINDOWS\Fonts\' - Removed
Removing Temp Files...
ADS Check:
Final Check:
catchme 0.3.1344.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-02-17 23:04:27
Windows 5.1.2600 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\s ptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"p0"="C:\Program Files\Alcohol Soft\Alcohol 120\"
"h0"=dword:00000000
"ujdew"=hex:e6,3e,b2,ae,cc,ef,bc,2d,a4,e6,8d,c6,91 ,5c,06,38,00,c6,a4,d7,81,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\sptd\Cfg]
"s1"=dword:2df9c43f
"s2"=dword:110480d0
"h0"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"p0"="C:\Program Files\Alcohol Soft\Alcohol 120\"
"h0"=dword:00000000
"ujdew"=hex:e6,3e,b2,ae,cc,ef,bc,2d,a4,e6,8d,c6,91 ,5c,06,38,00,c6,a4,d7,81,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\s ptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"p0"="C:\Program Files\Alcohol Soft\Alcohol 120\"
"h0"=dword:00000000
"ujdew"=hex:e6,3e,b2,ae,cc,ef,bc,2d,a4,e6,8d,c6,91 ,5c,06,38,00,c6,a4,d7,81,..
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher]
"TracesProcessed"=dword:00000046
"TracesSuccessful"=dword:00000010
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 1
Remaining Services:
Authorized Application Key Export:
Remaining Files:
File Backups: - C:\DOCUME~1\VIKREN~1\Desktop\SDFix\backups\backups .zip
Files with Hidden Attributes:
Sun 17 Feb 2008 19,128 ..SH. --- "C:\WINDOWS\system32\ipeztqga.dllbox"
Mon 6 Sep 2004 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Mon 6 Sep 2004 401 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv15.bak"
Mon 6 Sep 2004 400 ..SH. --- "C:\Documents and Settings\All Users\DRM\v2ks.bla.bak"
Mon 6 Sep 2004 48 ..SH. --- "C:\Documents and Settings\All Users\DRM\v2ks.sec.bak"
Sun 29 Feb 2004 58,368 ...H. --- "C:\Documents and Settings\vikrensimraj\My Documents\My Received Files\~WRL0464.tmp"
Thu 15 May 2003 43,008 ...H. --- "C:\Program Files\Common Files\Adobe\ESD\DLMCleanup.exe"
Wed 4 Oct 2006 3,072,000 A..H. --- "C:\Documents and Settings\vikrensimraj\Application Data\U3\temp\Launchpad Removal.exe"
Mon 6 Sep 2004 4,348 ...H. --- "C:\Documents and Settings\vikrensimraj\My Documents\My Music\License Backup\drmv1key.bak"
Sun 10 Oct 2004 401 A..H. --- "C:\Documents and Settings\vikrensimraj\My Documents\My Music\License Backup\drmv1lic.bak"
Mon 6 Sep 2004 400 ...H. --- "C:\Documents and Settings\vikrensimraj\My Documents\My Music\License Backup\drmv2key.bak"
Sun 10 Oct 2004 1,536 A..H. --- "C:\Documents and Settings\vikrensimraj\My Documents\My Music\License Backup\drmv2lic.bak"
Finished!