
 . Próbowałem usunąć je Ad-Aware - pousuwał troszkę ale jednak pozostały denerwujące okienka powiadamiające o "wirusach". Najbardziej natrętny jest SpyFalcom ale pewnie też jest ich więcej..
. Próbowałem usunąć je Ad-Aware - pousuwał troszkę ale jednak pozostały denerwujące okienka powiadamiające o "wirusach". Najbardziej natrętny jest SpyFalcom ale pewnie też jest ich więcej..
Daje jego 2 logi z hijackthis i silentrunners:
[ sorka że takie szerokie ale tam jakiś długi link do czegoś jest
 ]
 ]
- Kod: Zaznacz wszystko
- Logfile of HijackThis v1.99.1
 Scan saved at 20:55:04, on 2006-04-16
 Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
 MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
 Running processes:
 C:\WINDOWS\System32\smss.exe
 C:\WINDOWS\SYSTEM32\winlogon.exe
 C:\WINDOWS\system32\services.exe
 C:\WINDOWS\system32\lsass.exe
 C:\WINDOWS\system32\svchost.exe
 C:\WINDOWS\System32\svchost.exe
 C:\WINDOWS\Explorer.EXE
 C:\WINDOWS\system32\spoolsv.exe
 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
 C:\WINDOWS\System32\svchost.exe
 C:\WINDOWS\system32\mssearchnet.exe
 C:\WINDOWS\system32\nvctrl.exe
 C:\Program Files\Winamp\winampa.exe
 C:\WINDOWS\system32\ctfmon.exe
 C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
 C:\Program Files\WinZip\WZQKPICK.EXE
 C:\WINDOWS\system32\wscntfy.exe
 C:\Program Files\Neostrada TP\NeostradaTP.exe
 C:\Program Files\Neostrada TP\ComComp.exe
 C:\Program Files\Neostrada TP\Watch.exe
 C:\Program Files\Gadu-Gadu\gg.exe
 C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
 C:\Program Files\Mozilla Firefox\firefox.exe
 C:\Documents and Settings\Ajem\Pulpit\HijackThis.exe
 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Neostrada TP
 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
 R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\NEOSTR~1\SEARCH~1.DLL
 O2 - BHO: Nothing - {4da4616d-7e6e-4fd9-a2d5-b6c535733e22} - C:\WINDOWS\system32\hp62F0.tmp
 O3 - Toolbar: (no name) - {2E608F70-C430-4bc5-96F6-608E02EBA5B2} - (no file)
 O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
 O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
 O4 - HKLM\..\Run: [SpyFalcon] C:\Program Files\SpyFalcon\SpyFalcon.exe /h
 O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
 O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
 O4 - HKCU\..\Run: [Eyeball Chat] "C:\Program Files\Eyeball\Eyeball Chat\EyeballChat.exe" -min
 O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
 O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
 O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
 O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
 O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
 O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
 O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
 O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
 O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
 O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
 O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
 O16 - DPF: {03F998B2-0E00-11D3-A498-00104B6EB52E} (MetaStreamCtl Class) - https://components.viewpoint.com/MTSInstallers/MetaStream3.cab?url=http://automobiles.honda.com/models/mov_iframe_viewpt.asp?path=/images/banners/2006/ridgeline/exterior_viewpoint&FrameBGColor=%23333333&ModelNameDir=ridgeline.mtz&FlashNav=direction_btn.swf&MediaDimensions=454x240%3A%3A454x107
 O16 - DPF: {5DA9D8E0-5A57-11CF-9E36-00C0930198C0} (Pegasus ImagN' 32-bit (Windowed) ActiveX Control v4.00) - http://smetek.fan-tex.com.pl/LNetCam.cab
 O16 - DPF: {A9ED6AA2-D9D4-4D71-9586-E293E2E3580B} (GameDesire Marbles&Diamonds&Runes) - http://67.15.101.3/g_bin/pl/marbles_2_0_0_23.cab
 O16 - DPF: {AD7013FF-1D9A-4F36-94A6-3CD408A663F9} (GameDesire BreakOut) - http://67.15.101.3/g_bin/pl/breakout_2_0_0_21.cab
 O16 - DPF: {CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA} (Java Runtime Environment 1.4.0) -
 O16 - DPF: {E7544C6C-CFD6-43EA-B4E9-360CEE20BDF7} - http://skaner.mks.com.pl/SkanerOnline.cab
 O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C1} (GameDesire Pool 8) - http://67.15.101.3/g_bin/pl/billard8_2_0_0_24.cab
 O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
 O17 - HKLM\System\CCS\Services\Tcpip\..\{DF561156-E802-4D4A-AC31-47B2B4F14C65}: NameServer = 194.204.152.34 217.98.63.164
 O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
 O21 - SSODL: DCOM Server - {2C1CD3D7-86AC-4068-93BC-A02304BB8C34} - (no file)
 O23 - Service: NOD32 Kernel Service (NOD32krn) - Unknown owner - C:\Program Files\Eset\nod32krn.exe (file missing)
 O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
- Kod: Zaznacz wszystko
- "Silent Runners.vbs", revision 44, http://www.silentrunners.org/
 Operating System: Windows XP SP2
 Output limited to non-default values, except where indicated by "{++}"
 Startup items buried in registry:
 ---------------------------------
 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
 "ctfmon.exe" = "C:\WINDOWS\system32\ctfmon.exe" [MS]
 "Eyeball Chat" = ""C:\Program Files\Eyeball\Eyeball Chat\EyeballChat.exe" -min" ["Eyeball Networks Inc."]
 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\ {++}
 "wininet.dll" = "dfrgsrv.exe" [null data]
 "kernel32.dll" = "C:\WINDOWS\system32\mssearchnet.exe" [null data]
 "nvctrl.exe" = "nvctrl.exe" [null data]
 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
 "WinampAgent" = "C:\Program Files\Winamp\winampa.exe" [null data]
 "SpyFalcon" = "C:\Program Files\SpyFalcon\SpyFalcon.exe /h" ["SpyFalcon.com"]
 "SpySweeper" = ""C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray" ["Webroot Software, Inc."]
 HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
 {4da4616d-7e6e-4fd9-a2d5-b6c535733e22}\(Default) = (no title provided)
 -> {HKLM...CLSID} = "Nothing"
 \InProcServer32\(Default) = "C:\WINDOWS\system32\hp62F0.tmp" [null data]
 HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
 "{42071714-76d4-11d1-8b24-00a0c9068ff3}" = "Rozszerzenie CPL kadrowania wyświetlania"
 -> {HKLM...CLSID} = "Rozszerzenie CPL kadrowania wyświetlania"
 \InProcServer32\(Default) = "deskpan.dll" [file not found]
 "{88895560-9AA2-1069-930E-00AA0030EBC8}" = "Rozszerzenie ikony HyperTerminalu"
 -> {HKLM...CLSID} = "HyperTerminal Icon Ext"
 \InProcServer32\(Default) = "C:\WINDOWS\System32\hticons.dll" ["Hilgraeve, Inc."]
 "{B41DB860-8EE4-11D2-9906-E49FADC173CA}" = "WinRAR shell extension"
 -> {HKLM...CLSID} = "WinRAR"
 \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]
 "{640167b4-59b0-47a6-b335-a6b3c0695aea}" = "Portable Media Devices"
 -> {HKLM...CLSID} = "Portable Media Devices"
 \InProcServer32\(Default) = "C:\WINDOWS\system32\Audiodev.dll" [MS]
 "{cc86590a-b60a-48e6-996b-41d25ed39a1e}" = "Portable Media Devices Menu"
 -> {HKLM...CLSID} = "Portable Media Devices Menu"
 \InProcServer32\(Default) = "C:\WINDOWS\system32\Audiodev.dll" [MS]
 "{0006F045-0000-0000-C000-000000000046}" = "Microsoft Outlook Custom Icon Handler"
 -> {HKLM...CLSID} = "Rozszerzenie ikon plików programu Outlook"
 \InProcServer32\(Default) = "C:\PROGRA~1\MICROS~2\Office\OLKFSTUB.DLL" [MS]
 "{21569614-B795-46b1-85F4-E737A8DC09AD}" = "Shell Search Band"
 -> {HKLM...CLSID} = "Shell Search Band"
 \InProcServer32\(Default) = "C:\WINDOWS\system32\browseui.dll" [MS]
 "{42042206-2D85-11D3-8CFF-005004838597}" = "Microsoft Office HTML Icon Handler"
 -> {HKLM...CLSID} = (no title provided)
 \InProcServer32\(Default) = "C:\Program Files\Microsoft Office\OFFICE11\msohev.dll" [MS]
 "{e57ce731-33e8-4c51-8354-bb4de9d215d1}" = "Uniwersalne urządzenia Plug and Play"
 -> {HKLM...CLSID} = "Uniwersalne urządzenia Plug and Play"
 \InProcServer32\(Default) = "C:\WINDOWS\system32\upnpui.dll" [MS]
 "{400CFEE2-39D0-46DC-96DF-E0BB5A4324B3}" = "My Logitech Pictures"
 -> {HKLM...CLSID} = "My Logitech Pictures"
 \InProcServer32\(Default) = "C:\Program Files\Logitech\Video\Namespc2.dll" ["Logitech Inc."]
 "{E0D79304-84BE-11CE-9641-444553540000}" = "WinZip"
 -> {HKLM...CLSID} = "WinZip"
 \InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing LP"]
 "{E0D79305-84BE-11CE-9641-444553540000}" = "WinZip"
 -> {HKLM...CLSID} = "WinZip"
 \InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing LP"]
 "{E0D79306-84BE-11CE-9641-444553540000}" = "WinZip"
 -> {HKLM...CLSID} = "WinZip"
 \InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing LP"]
 "{E0D79307-84BE-11CE-9641-444553540000}" = "WinZip"
 -> {HKLM...CLSID} = "WinZip"
 \InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing LP"]
 "{7C9D5882-CB4A-4090-96C8-430BFE8B795B}" = "Webroot Spy Sweeper Context Menu Integration"
 -> {HKLM...CLSID} = "Webroot Spy Sweeper Context Menu Integration"
 \InProcServer32\(Default) = "C:\PROGRA~1\Webroot\SPYSWE~1\SSCtxMnu.dll" ["Webroot Software, Inc."]
 HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\
 INFECTION WARNING! "{C9FA1DC9-1FB3-C2A8-2F1A-DC1A33E7AF9D}" = "Prestige Software"
 -> {HKCU...CLSID} = (no title provided)
 \InProcServer32\(Default) = "C:\WINDOWS\system32\ginuerep.dll" [null data]
 HKLM\System\CurrentControlSet\Control\Session Manager\
 INFECTION WARNING! "BootExecute" = "autocheck autochk * SsiEfr.exe" [file not found], [MS], [file not found], [file not found]
 HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\
 INFECTION WARNING! WRNotifier\DLLName = "WRLogonNTF.dll" ["Webroot Software, Inc."]
 HKLM\Software\Classes\PROTOCOLS\Filter\
 INFECTION WARNING! text/xml\CLSID = "{807553E5-5146-11D5-A672-00B0D022E945}"
 -> {HKLM...CLSID} = (no title provided)
 \InProcServer32\(Default) = "C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL" [MS]
 HKLM\Software\Classes\*\shellex\ContextMenuHandlers\
 WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
 -> {HKLM...CLSID} = "WinRAR"
 \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]
 WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"
 -> {HKLM...CLSID} = "WinZip"
 \InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing LP"]
 HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\
 WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
 -> {HKLM...CLSID} = "WinRAR"
 \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]
 WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"
 -> {HKLM...CLSID} = "WinZip"
 \InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing LP"]
 HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\
 SpySweeper\(Default) = "{7C9D5882-CB4A-4090-96C8-430BFE8B795B}"
 -> {HKLM...CLSID} = "Webroot Spy Sweeper Context Menu Integration"
 \InProcServer32\(Default) = "C:\PROGRA~1\Webroot\SPYSWE~1\SSCtxMnu.dll" ["Webroot Software, Inc."]
 WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
 -> {HKLM...CLSID} = "WinRAR"
 \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]
 WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"
 -> {HKLM...CLSID} = "WinZip"
 \InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing LP"]
 Active Desktop and Wallpaper:
 -----------------------------
 Active Desktop is disabled at this entry:
 HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState
 HKCU\Control Panel\Desktop\
 "Wallpaper" = "C:\Documents and Settings\Ajem\Dane aplikacji\Microsoft\Internet Explorer\Tapeta programu Internet Explorer.bmp"
 Startup items in "Ajem" & "All Users" startup folders:
 ------------------------------------------------------
 C:\Documents and Settings\All Users\Menu Start\Programy\Autostart
 "DSLMON" -> shortcut to: "C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe /W" [empty string]
 "WinZip Quick Pick" -> shortcut to: "C:\Program Files\WinZip\WZQKPICK.EXE" ["WinZip Computing LP"]
 Enabled Scheduled Tasks:
 ------------------------
 "wrSpySweeperTrialSweep" -> launches: "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe /ScheduleSweep=wrSpySweeperTrialSweep" ["Webroot Software, Inc."]
 Winsock2 Service Provider DLLs:
 -------------------------------
 Namespace Service Providers
 HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++}
 000000000001\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]
 000000000002\LibraryPath = "%SystemRoot%\System32\winrnr.dll" [MS]
 000000000003\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]
 Transport Service Providers
 HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++}
 0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range:
 %SystemRoot%\system32\mswsock.dll [MS], 01 - 03, 06 - 19
 %SystemRoot%\system32\rsvpsp.dll [MS], 04 - 05
 Toolbars, Explorer Bars, Extensions:
 ------------------------------------
 Toolbars
 HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\
 "{2318C2B1-4965-11D4-9B18-009027A5CD4F}"
 -> {HKLM...CLSID} = "&Google"
 \InProcServer32\(Default) = "c:\program files\google\googletoolbar1.dll" ["Google Inc."]
 HKLM\Software\Microsoft\Internet Explorer\Toolbar\
 "{2318C2B1-4965-11D4-9B18-009027A5CD4F}" = (no title provided)
 -> {HKLM...CLSID} = "&Google"
 \InProcServer32\(Default) = "c:\program files\google\googletoolbar1.dll" ["Google Inc."]
 Explorer Bars
 HKCU\Software\Microsoft\Internet Explorer\Explorer Bars\
 {21569614-B795-46B1-85F4-E737A8DC09AD}\(Default) = (no title provided)
 -> {HKLM...CLSID} = "Shell Search Band"
 \InProcServer32\(Default) = "C:\WINDOWS\system32\browseui.dll" [MS]
 Dormant Explorer Bars in "View, Explorer Bar" menu
 HKLM\Software\Classes\CLSID\{01002DB2-8170-4D9B-A8B1-DDC9DD114E03}\(Default) = "Volet Wanadoo"
 Implemented Categories\{00021494-0000-0000-C000-000000000046}\ [horizontal bar]
 InProcServer32\(Default) = "C:\PROGRA~1\NEOSTR~1\audience\audience.dll" [empty string]
 HKLM\Software\Classes\CLSID\{3BAF4A27-C764-4E1A-A6F4-62F7A7E5E51C}\(Default) = "ToolBand Class"
 Implemented Categories\{00021494-0000-0000-C000-000000000046}\ [horizontal bar]
 InProcServer32\(Default) = "C:\PROGRA~1\NEOSTR~1\audience\audience.dll" [empty string]
 HKLM\Software\Classes\CLSID\{5BF498C0-931E-4A4F-B33F-456D07137EAA}\(Default) = "Volet Wanadoo"
 Implemented Categories\{00021494-0000-0000-C000-000000000046}\ [horizontal bar]
 InProcServer32\(Default) = "C:\PROGRA~1\NEOSTR~1\audience\audience.dll" [empty string]
 HKLM\Software\Classes\CLSID\{FF059E31-CC5A-4E2E-BF3B-96E929D65503}\(Default) = "&Research"
 Implemented Categories\{00021493-0000-0000-C000-000000000046}\ [vertical bar]
 InProcServer32\(Default) = "C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL" [MS]
 Extensions (Tools menu items, main toolbar menu buttons)
 HKLM\Software\Microsoft\Internet Explorer\Extensions\
 {08B0E5C0-4FCB-11CF-AAA5-00401C608501}\
 "MenuText" = "Sun Java Console"
 "CLSIDExtension" = "{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC}"
 -> {HKLM...CLSID} = "Java Plug-in 1.5.0_06"
 \InProcServer32\(Default) = "C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll" ["Sun Microsystems, Inc."]
 {92780B25-18CC-41C8-B9BE-3C9C571A8263}\
 "ButtonText" = "Research"
 Miscellaneous IE Hijack Points
 ------------------------------
 HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\
 Missing lines (compared with English-language version):
 "{08C06D61-F1F3-4799-86F8-BE1A89362C85}" = (no title provided)
 -> {HKLM...CLSID} = "Search Class"
 \InProcServer32\(Default) = "C:\PROGRA~1\NEOSTR~1\SEARCH~1.DLL" [empty string]
 Running Services (Display Name, Service Name, Path {Service DLL}):
 ------------------------------------------------------------------
 Machine Debug Manager, MDM, ""C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE"" [MS]
 Webroot Spy Sweeper Engine, svcWRSSSDK, "C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe" ["Webroot Software, Inc."]
 Windows User Mode Driver Framework, UMWdf, "C:\WINDOWS\system32\wdfmgr.exe" [MS]
 Print Monitors:
 ---------------
 HKLM\System\CurrentControlSet\Control\Print\Monitors\
 Canon BJ Language Monitor i350\Driver = "CNMLM53.DLL" ["CANON INC."]
 ----------
 + This report excludes default entries except where indicated.
 + To see *everywhere* the script checks and *everything* it finds,
 launch it from a command prompt or a shortcut with the -all parameter.
 + The search for DESKTOP.INI DLL launch points on all local fixed drives
 took 77 seconds.
 + The search for all Registry CLSIDs containing dormant Explorer Bars
 took 50 seconds.
 ---------- (total run time: 168 seconds)
 
   
   
				
 
	
 

 
	 :
 :
 


 
 
