I ran rootkitrevealer and got this log back. I am hopeing to get some info on the BEB3C0C7-B648-4257-96D9-B5D024816E27}\Version*Version entry. In reg edit it says the version key cannot be opend. Also is an ecripted file not present to the windows api ??????
HKLM\SECURITY\Policy\Secrets\SAC* 3/22/2005 11:38 AM 0 bytes Key name contains embedded nulls (*)
HKLM\SECURITY\Policy\Secrets\SAI* 3/22/2005 11:38 AM 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{BEB3C0C7-B648-4257-96D9-B5D024816E27}\Version*Version 10/29/2006 9:26 AM 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Minnetonka Audio Software\SurCode Dolby Digital Premiere\Version*Version 10/29/2006 9:26 AM 0 bytes Key name contains embedded nulls (*)
HKLM\SYSTEM\ControlSet001\Control\Motorola\PST\USBDriverVersionNumber 12/4/2006 3:00 PM 3 bytes Data mismatch between Windows API and raw hive data.
HKLM\SYSTEM\ControlSet003\Control\Motorola\PST\USBDriverVersionNumber 12/4/2006 3:00 PM 3 bytes Data mismatch between Windows API and raw hive data.
E:\From FFFF\Organiz\If\6333.txt:SummaryInformation 2/8/2007 7:39 PM 88 bytes Hidden from Windows API.
E:\From FFFF\Organiz\If\444.txt:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} 2/8/2007 7:39 PM 0 bytes Hidden from Windows API.
HKLM\SECURITY\Policy\Secrets\SAC* 3/22/2005 11:38 AM 0 bytes Key name contains embedded nulls (*)
HKLM\SECURITY\Policy\Secrets\SAI* 3/22/2005 11:38 AM 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{BEB3C0C7-B648-4257-96D9-B5D024816E27}\Version*Version 10/29/2006 9:26 AM 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Minnetonka Audio Software\SurCode Dolby Digital Premiere\Version*Version 10/29/2006 9:26 AM 0 bytes Key name contains embedded nulls (*)
HKLM\SYSTEM\ControlSet001\Control\Motorola\PST\USBDriverVersionNumber 12/4/2006 3:00 PM 3 bytes Data mismatch between Windows API and raw hive data.
HKLM\SYSTEM\ControlSet003\Control\Motorola\PST\USBDriverVersionNumber 12/4/2006 3:00 PM 3 bytes Data mismatch between Windows API and raw hive data.
E:\From FFFF\Organiz\If\6333.txt:SummaryInformation 2/8/2007 7:39 PM 88 bytes Hidden from Windows API.
E:\From FFFF\Organiz\If\444.txt:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} 2/8/2007 7:39 PM 0 bytes Hidden from Windows API.