I also did a combofix scan as suggest above as well. Here is the log that it gave out after scanning.
ComboFix 09-07-23.04 - super mario 07/24/2009 11:38.1.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2046.1346 [GMT -7:00]
Running from: c:\documents and settings\super mario\Desktop\ComboFix.exe
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\thylacine\mp3\Julie Plug\_desktop.ini
c:\windows\Downloaded Program Files\popcaploader.dll
c:\windows\system32\404Fix.exe
c:\windows\system32\Agent.OMZ.Fix.exe
c:\windows\system32\dumphive.exe
c:\windows\system32\IEDFix.C.exe
c:\windows\system32\IEDFix.exe
c:\windows\system32\o4Patch.exe
c:\windows\system32\p2
c:\windows\system32\Process.exe
c:\windows\system32\SrchSTS.exe
c:\windows\system32\tmp.reg
c:\windows\system32\VACFix.exe
c:\windows\system32\VCCLSID.exe
c:\windows\system32\WS2Fix.exe
.
((((((((((((((((((((((((( Files Created from 2009-06-24 to 2009-07-24 )))))))))))))))))))))))))))))))
.
2009-07-24 03:05 . 2009-07-24 03:05 -------- d-----w- c:\documents and settings\All Users\Application Data\Digsby
2009-07-24 03:04 . 2009-07-24 03:05 -------- d-----w- c:\documents and settings\super mario\Application Data\Digsby
2009-07-24 03:04 . 2009-07-24 03:05 -------- d-----w- c:\documents and settings\super mario\Local Settings\Application Data\Digsby
2009-07-24 03:04 . 2009-07-24 03:04 -------- d-----w- c:\program files\Digsby
2009-07-24 01:45 . 2009-07-24 01:45 578560 -c--a-w- c:\windows\system32\dllcache\user32.dll
2009-07-24 01:38 . 2009-07-24 01:38 -------- d-----w- c:\windows\ERUNT
2009-07-24 01:36 . 2009-07-24 02:53 -------- d-----w- C:\SDFix
2009-07-23 08:24 . 2009-07-24 03:16 117760 ----a-w- c:\documents and settings\super mario\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2009-07-23 08:24 . 2009-07-23 08:24 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2009-07-23 08:24 . 2009-07-23 08:24 -------- d-----w- c:\program files\SUPERAntiSpyware
2009-07-23 08:24 . 2009-07-23 08:24 -------- d-----w- c:\documents and settings\super mario\Application Data\SUPERAntiSpyware.com
2009-07-23 08:24 . 2009-07-23 08:24 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-07-23 07:48 . 2009-07-23 07:48 -------- d-----w- c:\program files\VS Revo Group
2009-07-23 05:58 . 2009-07-23 05:58 -------- d-sh--w- c:\documents and settings\NetworkService\IETldCache
2009-07-23 05:10 . 2009-07-23 05:10 -------- d-----w- c:\program files\Trend Micro
2009-07-23 04:32 . 2009-07-23 04:32 -------- d-----w- c:\documents and settings\super mario\Local Settings\Application Data\Help
2009-07-23 04:21 . 2009-07-23 04:21 -------- d-sh--w- c:\windows\system32\config\systemprofile\IETldCache
2009-07-23 04:21 . 2009-07-03 14:49 15688 ----a-w- c:\windows\system32\lsdelete.exe
2009-07-22 20:24 . 2009-07-22 20:24 -------- d-----w- c:\windows\system32\XPSViewer
2009-07-22 20:24 . 2009-07-22 20:24 -------- d-----w- c:\program files\Reference Assemblies
2009-07-22 20:24 . 2009-07-22 20:24 -------- d-----w- C:\023450d52c44bfae963350
2009-07-22 20:24 . 2008-07-06 12:06 89088 -c----w- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2009-07-22 20:24 . 2008-07-06 12:06 575488 -c----w- c:\windows\system32\dllcache\xpsshhdr.dll
2009-07-22 20:24 . 2008-07-06 12:06 575488 ------w- c:\windows\system32\xpsshhdr.dll
2009-07-22 20:24 . 2008-07-06 12:06 1676288 -c----w- c:\windows\system32\dllcache\xpssvcs.dll
2009-07-22 20:24 . 2008-07-06 12:06 1676288 ------w- c:\windows\system32\xpssvcs.dll
2009-07-22 20:24 . 2008-07-06 12:06 117760 ------w- c:\windows\system32\prntvpt.dll
2009-07-22 20:24 . 2008-07-06 10:50 597504 -c----w- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2009-07-22 20:20 . 2009-07-22 20:20 -------- d-----w- c:\program files\Windows Media Connect 2
2009-07-22 20:18 . 2009-07-22 20:19 -------- d-----w- c:\windows\system32\drivers\UMDF
2009-07-22 20:17 . 2009-07-22 20:17 -------- d-----w- c:\windows\system32\URTTemp
2009-07-22 20:03 . 2009-07-22 20:03 -------- d-sh--w- c:\documents and settings\super mario\IECompatCache
2009-07-22 20:00 . 2009-07-22 20:00 -------- d-sh--w- c:\documents and settings\super mario\PrivacIE
2009-07-22 19:55 . 2009-07-22 19:55 -------- d-sh--w- c:\documents and settings\super mario\IETldCache
2009-07-22 19:55 . 2009-07-22 19:55 -------- d-sh--w- c:\documents and settings\LocalService\IETldCache
2009-07-22 19:51 . 2009-07-01 07:08 101376 -c----w- c:\windows\system32\dllcache\iecompat.dll
2009-07-22 19:51 . 2009-07-22 19:51 -------- d-----w- c:\windows\ie8updates
2009-07-22 19:50 . 2009-04-30 21:22 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2009-07-22 19:50 . 2009-04-30 21:22 1985024 -c----w- c:\windows\system32\dllcache\iertutil.dll
2009-07-22 19:50 . 2009-04-30 21:22 11064832 -c----w- c:\windows\system32\dllcache\ieframe.dll
2009-07-22 19:50 . 2009-04-30 21:22 246272 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2009-07-22 19:49 . 2009-07-22 19:50 -------- dc-h--w- c:\windows\ie8
2009-07-22 19:45 . 2009-07-22 19:45 -------- d-----w- c:\program files\MSXML 4.0
2009-07-22 19:39 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2009-07-22 19:39 . 2008-10-24 11:21 455296 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2009-07-22 19:39 . 2008-12-11 10:57 333952 -c----w- c:\windows\system32\dllcache\srv.sys
2009-07-22 19:39 . 2008-05-01 14:33 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2009-07-22 19:39 . 2008-04-11 19:04 691712 -c----w- c:\windows\system32\dllcache\inetcomm.dll
2009-07-22 19:38 . 2008-10-15 16:34 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2009-07-22 19:38 . 2008-09-04 17:15 1106944 -c----w- c:\windows\system32\dllcache\msxml3.dll
2009-07-22 19:38 . 2008-05-03 11:55 2560 ------w- c:\windows\system32\xpsp4res.dll
2009-07-22 19:38 . 2008-04-21 12:08 215552 -c----w- c:\windows\system32\dllcache\wordpad.exe
2009-07-22 19:33 . 2008-04-14 00:12 221184 ----a-w- c:\windows\system32\wmpns.dll
2009-07-22 19:27 . 2009-07-22 19:27 -------- d-----w- c:\windows\system32\scripting
2009-07-22 19:27 . 2009-07-22 19:27 -------- d-----w- c:\windows\l2schemas
2009-07-22 19:27 . 2009-07-22 19:27 -------- d-----w- c:\windows\system32\en
2009-07-22 19:27 . 2009-07-22 19:27 -------- d-----w- c:\windows\system32\bits
2009-07-22 19:23 . 2009-07-22 19:28 -------- d-----w- c:\windows\ServicePackFiles
2009-07-22 17:52 . 2004-08-04 05:41 11868 ------w- c:\windows\system32\drivers\mdmxsdk.sys
2009-07-22 17:52 . 2004-08-04 05:41 1041536 ------w- c:\windows\system32\drivers\hsfdpsp2.sys
2009-07-22 17:52 . 2004-08-04 05:41 685056 ------w- c:\windows\system32\drivers\hsfcxts2.sys
2009-07-22 17:52 . 2004-08-04 05:41 220032 ------w- c:\windows\system32\drivers\hsfbs2s2.sys
2009-07-22 17:47 . 2009-07-03 14:49 64160 ----a-w- c:\windows\system32\drivers\Lbd.sys
2009-07-22 17:46 . 2009-07-08 17:28 2920112 -c--a-w- c:\documents and settings\All Users\Application Data\{EF63305C-BAD7-4144-9208-D65528260864}\Ad-AwareAE.exe
2009-07-22 17:46 . 2009-07-22 17:46 -------- dc-h--w- c:\documents and settings\All Users\Application Data\{EF63305C-BAD7-4144-9208-D65528260864}
2009-07-22 17:46 . 2009-07-22 17:46 -------- d-----w- c:\program files\Lavasoft
2009-07-22 08:25 . 2008-12-11 15:38 159600 ----a-w- c:\windows\system32\drivers\pctgntdi.sys
2009-07-22 08:25 . 2009-04-03 18:18 130936 ----a-w- c:\windows\system32\drivers\PCTCore.sys
2009-07-22 08:25 . 2008-12-18 19:16 73840 ----a-w- c:\windows\system32\drivers\PCTAppEvent.sys
2009-07-22 08:25 . 2008-12-10 18:36 64392 ----a-w- c:\windows\system32\drivers\pctplsg.sys
2009-07-22 08:25 . 2009-07-22 08:53 -------- d-----w- c:\program files\Spyware Doctor
2009-07-22 08:25 . 2009-07-22 08:25 -------- d-----w- c:\documents and settings\super mario\Application Data\PC Tools
2009-07-22 08:25 . 2009-07-22 08:25 -------- d-----w- c:\documents and settings\All Users\Application Data\PC Tools
2009-07-22 05:20 . 2008-10-17 03:35 83288 ----a-w- c:\windows\system32\LMIRfsClientNP.dll
2009-07-22 05:20 . 2008-10-17 03:35 28984 ----a-w- c:\windows\system32\LMIport.dll
2009-07-22 05:20 . 2008-07-25 01:46 47640 ----a-w- c:\windows\system32\drivers\LMIRfsDriver.sys
2009-07-22 05:20 . 2008-10-17 03:35 87352 ----a-w- c:\windows\system32\LMIinit.dll
2009-07-22 05:20 . 2009-07-24 07:55 -------- d-----w- c:\program files\LogMeIn
2009-07-21 21:27 . 2008-11-28 01:47 -------- d---a-w- c:\windows\system32\images
2009-07-21 21:27 . 2009-07-22 05:42 4 ----a-w- c:\windows\system32\bincd32.dat
2009-07-21 21:26 . 2009-07-22 05:47 64 ----a-w- c:\windows\ppp4.dat
2009-07-21 21:26 . 2009-07-22 05:47 1 ----a-w- c:\windows\ppp3.dat
2009-07-21 21:26 . 2009-07-22 05:47 65536 ----a-w- c:\windows\system32\desot.exe
2009-07-21 21:26 . 2009-07-21 21:26 36 ----a-w- c:\windows\system32\sysnet.dat
2009-07-17 21:26 . 2009-07-17 21:27 -------- d-----w- c:\documents and settings\super mario\Local Settings\Application Data\Temp
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-07-24 18:30 . 2009-03-31 02:17 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-07-23 17:44 . 2008-10-31 01:02 -------- d-----w- c:\program files\FAH
2009-07-23 07:59 . 2008-02-15 02:28 664 ----a-w- c:\windows\system32\d3d9caps.dat
2009-07-23 05:30 . 2008-02-23 20:53 77048 -c--a-w- c:\documents and settings\super mario\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-07-22 19:29 . 2008-01-30 23:09 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-07-22 17:46 . 2009-01-06 01:54 -------- d-----w- c:\documents and settings\All Users\Application Data\Lavasoft
2009-07-22 08:27 . 2008-02-25 06:19 -------- d-----w- c:\program files\Common Files\PC Tools
2009-07-22 07:48 . 2008-08-12 21:49 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-07-22 05:44 . 2009-01-06 07:25 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-07-21 22:26 . 2008-02-11 18:39 -------- d-----w- c:\documents and settings\super mario\Application Data\BitTorrent
2009-07-19 22:36 . 2008-01-31 00:22 -------- d-----w- c:\documents and settings\All Users\Application Data\DVD Shrink
2009-07-16 01:33 . 2008-02-09 17:41 -------- d-----w- c:\program files\BitTorrent
2009-07-13 20:36 . 2009-01-06 07:25 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-07-13 20:36 . 2009-01-06 07:25 19096 -c--a-w- c:\windows\system32\drivers\mbam.sys
2009-07-08 03:21 . 2008-01-30 23:44 -------- d-----w- c:\program files\Bonjour
2009-06-28 15:08 . 2009-01-29 17:52 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-06-28 15:08 . 2008-08-12 21:57 327688 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-06-28 15:08 . 2008-08-12 21:57 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-06-19 02:13 . 2009-06-19 02:12 -------- d-----w- c:\program files\iTunes
2009-06-19 02:13 . 2009-06-19 02:12 -------- d-----w- c:\documents and settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-06-19 02:13 . 2009-06-19 02:13 -------- d-----w- c:\program files\iPod
2009-06-19 02:13 . 2008-02-09 17:32 -------- d-----w- c:\program files\Common Files\Apple
2009-06-19 02:07 . 2008-02-09 17:32 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple
2009-06-16 14:36 . 2004-08-04 07:56 119808 ----a-w- c:\windows\system32\t2embed.dll
2009-06-16 14:36 . 2001-08-23 12:00 81920 ----a-w- c:\windows\system32\fontsub.dll
2009-06-14 22:31 . 2008-03-21 04:29 -------- d-----w- c:\documents and settings\super mario\Application Data\U3
2009-06-05 20:57 . 2009-06-05 20:57 75048 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 8.2.0.23\SetupAdmin.exe
2009-06-05 18:42 . 2009-06-19 02:06 2060288 ----a-w- c:\windows\system32\usbaaplrc.dll
2009-06-05 18:42 . 2008-02-09 17:33 39424 ----a-w- c:\windows\system32\drivers\usbaapl.sys
2009-06-03 19:09 . 2004-08-04 07:56 1291264 ----a-w- c:\windows\system32\quartz.dll
2009-05-30 18:53 . 2009-05-30 18:53 390664 -c--a-w- c:\documents and settings\super mario\Application Data\Real\RealPlayer\Update\RealPlayer11.exe
2009-05-15 06:48 . 2009-05-15 06:48 410984 ----a-w- c:\windows\system32\deploytk.dll
2009-05-15 06:47 . 2009-05-15 06:47 152576 -c--a-w- c:\documents and settings\super mario\Application Data\Sun\Java\jre1.6.0_13\lzma.dll
2009-05-13 05:15 . 2004-08-04 07:56 915456 ----a-w- c:\windows\system32\wininet.dll
2009-05-07 15:32 . 2004-08-04 07:56 345600 ----a-w- c:\windows\system32\localspl.dll
2009-04-29 04:46 . 2009-04-29 04:46 81920 ------w- c:\windows\system32\ieencode.dll
2009-07-23 07:58 . 2009-01-12 05:15 134648 ----a-w- c:\program files\mozilla firefox\components\brwsrcmp.dll
2008-01-31 00:31 . 2008-01-31 00:29 24 -csh--w- c:\windows\SA6EE9B92.tmp
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AnyDVD"="c:\program files\SlySoft\AnyDVD\AnyDVD.exe" [2007-12-21 1649600]
"Aim6"="c:\program files\AIM6\aim6.exe" [2008-03-06 50528]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2009-06-23 1830128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-06-28 1948440]
"LogMeIn GUI"="c:\program files\LogMeIn\x86\LogMeInSystray.exe" [2008-07-25 63048]
"Tweak UI"="TWEAKUI.CPL" - c:\windows\system32\TWEAKUI.CPL [2000-06-18 106544]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoSMHelp"= 01000000
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoSetActiveDesktop"= 1 (0x1)
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
Source= c:\windows\system32\onhelp.htm
FriendlyName= tets
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2008-12-22 19:05 356352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-06-28 15:08 11952 ----a-w- c:\windows\system32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LMIinit]
2008-10-17 03:35 87352 ----a-w- c:\windows\system32\LMIinit.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\system32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]
@=""
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Acrobat Speed Launcher.lnk.disabled]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk.disabled
backup=c:\windows\pss\Adobe Acrobat Speed Launcher.lnk.disabledCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Acrobat Synchronizer.lnk.disabled]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Acrobat Synchronizer.lnk.disabled
backup=c:\windows\pss\Adobe Acrobat Synchronizer.lnk.disabledCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^super mario^Start Menu^Programs^Startup^RABCO - Auto Update.lnk.disabled]
path=c:\documents and settings\super mario\Start Menu\Programs\Startup\RABCO - Auto Update.lnk.disabled
backup=c:\windows\pss\RABCO - Auto Update.lnk.disabledStartup
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"SpybotSD TeaTimer"=c:\program files\Spybot - Search & Destroy\TeaTimer.exe
"BitTorrent DNA"="c:\program files\DNA\btdna.exe"
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" -osboot
"StormCodec_Helper"="c:\program files\Ringz Studio\Storm Codec\StormSet.exe" /S /opti
"SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
"QuickTime Task"="c:\program files\Ringz Studio\Storm Codec\QTTask.exe" -atboottime
"OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
"NWEReboot"=
"NeroFilterCheck"=c:\program files\Common Files\Ahead\Lib\NeroCheck.exe
"MSPY2002"=c:\windows\system32\IME\PINTLGNT\ImScInst.exe /SYNC
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"
"Adobe_ID0EYTHM"=c:\progra~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE
"Acrobat Assistant 8.0"="c:\program files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe"
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Common Files\\Adobe\\Adobe Version Cue CS3\\Server\\bin\\VersionCueCS3.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3703:TCP"= 3703:TCP:Adobe Version Cue CS3 Server
"3704:TCP"= 3704:TCP:Adobe Version Cue CS3 Server
"50900:TCP"= 50900:TCP:Adobe Version Cue CS3 Server
"50901:TCP"= 50901:TCP:Adobe Version Cue CS3 Server
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [7/22/2009 10:47 AM 64160]
R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [7/22/2009 1:25 AM 130936]
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [8/12/2008 2:57 PM 327688]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [6/23/2009 11:01 AM 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [6/23/2009 11:01 AM 72944]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [1/29/2009 10:52 AM 298776]
R2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files\LogMeIn\x86\rainfo.sys [7/24/2008 6:46 PM 12856]
R2 LMIRfsDriver;LogMeIn Remote File System Driver;c:\windows\system32\drivers\LMIRfsDriver.sys [7/21/2009 10:20 PM 47640]
R2 Prvflder;Prvflder;c:\windows\system32\drivers\prvflder.sys [4/21/2006 9:22 AM 70912]
R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\Viewpoint\Common\ViewpointService.exe [3/30/2008 7:31 PM 24652]
R3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [6/23/2009 11:01 AM 7408]
S1 mouhidd;mouhidd;c:\windows\system32\drivers\mouhidd.sys --> c:\windows\system32\drivers\mouhidd.sys [?]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [7/3/2009 7:49 AM 1029456]
S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [7/22/2009 1:25 AM 348752]
S4 LMIRfsClientNP;LMIRfsClientNP; [x]
--- Other Services/Drivers In Memory ---
*Deregistered* - mchInjDrv
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
Contents of the 'Scheduled Tasks' folder
2009-07-22 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-07-03 14:49]
2009-07-22 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-04-12 19:34]
2009-07-24 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-823518204-1292428093-725345543-1003Core.job
- c:\documents and settings\super mario\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-03-14 03:23]
2009-07-24 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-823518204-1292428093-725345543-1003UA.job
- c:\documents and settings\super mario\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-03-14 03:23]
.
.
------- Supplementary Scan -------
.
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Append to existing PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert link target to Adobe PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert link target to existing PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert selected links to Adobe PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert selected links to existing PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Convert selection to Adobe PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert selection to existing PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert to Adobe PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
LSP: c:\program files\Common Files\PC Tools\Lsp\PCTLsp.dll
FF - ProfilePath - c:\documents and settings\super mario\Application Data\Mozilla\Firefox\Profiles\wvfrll3k.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com/r/hq
FF - component: c:\program files\AVG\AVG8\Firefox\components\avgssff.dll
FF - plugin: c:\documents and settings\super mario\Local Settings\Application Data\Google\Update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npbittorrent.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npViewpoint.dll
FF - plugin: c:\program files\Viewpoint\Viewpoint Media Player\npViewpoint.dll
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-07-24 11:46
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(684)
c:\program files\SUPERAntiSpyware\SASWINLO.dll
c:\windows\system32\WININET.dll
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\LMIinit.dll
c:\windows\system32\NavLogon.dll
- - - - - - - > 'lsass.exe'(800)
c:\program files\Common Files\PC Tools\Lsp\PCTLsp.dll
.
Completion time: 2009-07-24 11:49
ComboFix-quarantined-files.txt 2009-07-24 18:49
Pre-Run: 49,841,295,360 bytes free
Post-Run: 57,730,686,976 bytes free
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
Current=2 Default=2 Failed=1 LastKnownGood=4 Sets=1,2,3,4
315 --- E O F --- 2009-07-23 04:30