Okay heres the combo fix log, I should add that in msconfig I had a few items disabled in startup so for this hjt log I turned em all on. After the usual clean sweep of avg tools computer health seems better but I'm still getting random pop ups from ie and who knows what else is going on in background. Any way heres the logs.
ryan - 06-10-12 13:59:34.25 Service Pack 2
ComboFix 06.10.12 - Running from: "C:\Documents and Settings\ryan\Desktop"
(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\system32\adrot-uninst.exe
C:\Program Files\Common Files\Yazzle1122OinUninstaller.exe
C:\Program Files\Inetget2
C:\WINDOWS\system32\components
C:\Program Files\Common Files\{381A8A96-031E-1033-0430-040323040001}
C:\Program Files\Common Files\{A81A8A96-031E-1033-0430-040323040001}
((((((((((((((((((((((((((((((( Files Created from 2006-09-12 to 2006-10-12 ))))))))))))))))))))))))))))))))))
2006-10-08 15:38 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2006-10-07 19:50 90,112 --a------ C:\WINDOWS\system32\AVASTSS.scr
2006-10-07 19:50 87,424 --a------ C:\WINDOWS\system32\drivers\aswmon2.sys
2006-10-07 19:50 85,952 --a------ C:\WINDOWS\system32\drivers\aswmon.sys
2006-10-07 19:50 666,240 --a------ C:\WINDOWS\system32\aswBoot.exe
2006-10-07 19:50 36,176 --a------ C:\WINDOWS\system32\drivers\aswTdi.sys
2006-10-07 19:50 24,560 --a------ C:\WINDOWS\system32\drivers\aavmker4.sys
2006-10-07 19:50 16,352 --a------ C:\WINDOWS\system32\drivers\aswRdr.sys
2006-10-07 19:48 1,233 --a------ C:\WINDOWS\system32\kbb7c6c3.sys
2006-10-07 19:47 50,976 --a------ C:\WINDOWS\elitepop06.exe
2006-10-07 19:47 433,632 --a------ C:\WINDOWS\hancerdoem.exe
2006-10-07 19:47 217,840 --a------ C:\WINDOWS\justin-new.exe
2006-10-07 01:15 40,973 ---hs---- C:\WINDOWS\system32\rqrrqon.dll
2006-10-06 15:38 111,262 --a------ C:\WINDOWS\system32\justin.exe
2006-10-06 13:15 97,433 --a------ C:\WINDOWS\system32\traffic_solution_new.exe
2006-09-28 18:24 75,264 --a------ C:\WINDOWS\system32\nswA.dll
2006-09-25 14:59 15,440 --a------ C:\WINDOWS\system32\drivers\hamachi.sys
2006-09-23 13:00 28,672 --a------ C:\WINDOWS\system32\regclass.dll
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2006-10-12 14:01 -------- d-------- C:\Program Files\Common Files
2006-10-12 13:51 -------- d-------- C:\Program Files\Mozilla Firefox
2006-10-11 23:42 -------- d-------- C:\Program Files\HyperLobbyPro3
2006-10-11 23:31 -------- d-------- C:\Program Files\Steam
2006-10-11 21:42 -------- d-------- C:\Documents and Settings\ryan\Application Data\Hamachi
2006-10-10 11:57 -------- d-------- C:\Program Files\PeerGuardian2
2006-10-10 11:57 -------- d-------- C:\Documents and Settings\ryan\Application Data\uTorrent
2006-10-09 11:55 -------- d-------- C:\Program Files\THQ
2006-10-08 18:59 124 --a------ C:\Documents and Settings\ryan\Application Data\iScrobbler.ini
2006-10-08 15:38 -------- d-------- C:\Program Files\Grisoft
2006-10-08 15:14 -------- d-------- C:\Program Files\TrojanHunter 4.6
2006-10-08 15:04 -------- d-------- C:\Documents and Settings\ryan\Application Data\TrojanHunter
2006-10-08 14:50 -------- d-------- C:\Program Files\LogMeIn
2006-10-08 14:30 -------- d-------- C:\Program Files\CleanUp!
2006-10-08 11:48 -------- d-------- C:\Program Files\Zone Labs
2006-10-08 11:45 -------- d-------- C:\Program Files\Common Files\Wise Installation Wizard
2006-10-07 19:50 -------- d-------- C:\Program Files\Alwil Software
2006-10-07 19:47 -------- d-------- C:\Program Files\em
2006-10-07 19:43 -------- d---s---- C:\Documents and Settings\ryan\Application Data\Microsoft
2006-10-04 22:41 223128 --a------ C:\WINDOWS\system32\drivers\vaxscsi.sys
2006-10-04 22:36 611064 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2006-10-04 22:34 -------- d-------- C:\Program Files\The FilmMachine
2006-10-04 22:33 -------- d-------- C:\Program Files\Common Files\Totem Shared
2006-10-04 22:32 -------- d-------- C:\Program Files\Yahoo!
2006-10-04 22:32 -------- d-------- C:\Program Files\TuneXP
2006-10-04 22:32 -------- d-------- C:\Program Files\Teen Spirit
2006-10-04 22:31 -------- d-------- C:\Program Files\SnapStream Media
2006-10-04 22:30 -------- d-------- C:\Program Files\Golden FTP Server
2006-10-03 23:08 -------- d-------- C:\Program Files\ATI Multimedia
2006-10-02 16:12 -------- d-------- C:\Program Files\InstallShield Installation Information
2006-10-02 14:27 10 --a------ C:\WINDOWS\system32\drivers\tmbi.sys
2006-10-01 23:51 -------- d-------- C:\Program Files\Azureus
2006-10-01 20:35 -------- d-------- C:\Program Files\Morpheus
2006-10-01 20:31 -------- d-------- C:\Documents and Settings\ryan\Application Data\Azureus
2006-10-01 20:11 720896 --a------ C:\WINDOWS\iun6002.exe
2006-10-01 19:52 -------- d-------- C:\Program Files\CCleaner
2006-09-29 13:48 -------- d-------- C:\Program Files\EA SPORTS
2006-09-28 21:56 -------- d-------- C:\Program Files\iTunes
2006-09-28 21:56 -------- d-------- C:\Program Files\iPod
2006-09-28 21:55 -------- d-------- C:\Program Files\QuickTime
2006-09-28 21:54 -------- d-------- C:\Program Files\Apple Software Update
2006-09-28 12:57 -------- d-------- C:\Program Files\Electronic Arts
2006-09-25 14:59 -------- d-------- C:\Program Files\Hamachi
2006-09-23 13:00 -------- d-------- C:\Program Files\FirefoxPreloader
2006-09-22 15:00 -------- d-------- C:\Program Files\BoontyGames
2006-09-22 14:48 -------- d-------- C:\Program Files\My Downloaded Games
2006-09-20 22:49 -------- d-------- C:\Program Files\UberQuickPF
2006-09-20 22:47 73216 --a------ C:\WINDOWS\ST6UNST.EXE
2006-09-20 22:47 249856 --------- C:\WINDOWS\Setup1.exe
2006-09-19 23:33 -------- d-------- C:\Program Files\WarRock
2006-09-19 15:32 -------- d-------- C:\Program Files\Raxco
2006-09-19 15:32 -------- d-------- C:\Program Files\Common Files\Raxco
2006-09-18 16:14 -------- d-------- C:\Program Files\EA GAMES
2006-09-18 15:02 -------- d-------- C:\Program Files\EnsignGames
2006-09-13 00:01 1084416 --a------ C:\WINDOWS\system32\msxml3.dll
2006-09-12 21:41 -------- d-------- C:\Documents and Settings\ryan\Application Data\Avant Browser
2006-09-12 21:39 -------- d-------- C:\Program Files\ESPN
2006-09-12 21:32 -------- d-------- C:\Program Files\iArt
2006-09-12 13:51 -------- d-------- C:\Documents and Settings\ryan\Application Data\teamspeak2
2006-09-12 12:57 -------- d-------- C:\Program Files\Common Files\InstallShield
2006-09-10 23:16 -------- d-------- C:\Program Files\Microsoft Community Bar
2006-09-08 14:33 -------- d-------- C:\Program Files\Vstplugins
2006-09-08 14:33 -------- d-------- C:\Program Files\Image-Line
2006-09-06 17:42 -------- d-------- C:\Program Files\Microsoft
2006-09-06 17:16 -------- d-------- C:\Program Files\Microsoft Virtual PC
2006-09-06 00:28 -------- d-------- C:\Program Files\Music Alarm Clock
2006-09-05 19:17 -------- d-------- C:\Program Files\Aldo's Pianito
2006-09-05 19:03 -------- d-------- C:\Documents and Settings\ryan\Application Data\NetMedia Providers
2006-09-05 18:44 -------- d-------- C:\Documents and Settings\ryan\Application Data\REAPER
2006-09-01 16:44 -------- d-------- C:\Program Files\AIM
2006-09-01 16:43 -------- d-------- C:\Program Files\AOD
2006-09-01 14:14 -------- d-------- C:\Program Files\Acoustica Beatcraft
2006-09-01 14:13 -------- d-------- C:\Program Files\Acoustica Shared Effects
2006-08-30 18:52 -------- d-------- C:\Documents and Settings\ryan\Application Data\Sony
2006-08-30 18:22 -------- d-------- C:\Documents and Settings\ryan\Application Data\Publish Providers
2006-08-30 18:20 -------- d-------- C:\Program Files\Sony
2006-08-29 21:09 -------- d-------- C:\Program Files\REAPER
2006-08-28 21:48 -------- d-------- C:\Program Files\AWS
2006-08-28 21:44 -------- d-------- C:\Program Files\Common Files\AOL
2006-08-28 14:40 -------- d-------- C:\Program Files\Ratajik Software
2006-08-26 18:46 -------- d-------- C:\Documents and Settings\ryan\Application Data\Aim
2006-08-25 10:45 617472 --a------ C:\WINDOWS\system32\comctl32.dll
2006-08-24 12:17 -------- d-------- C:\Program Files\SurfOffline
2006-08-22 17:15 -------- d-------- C:\Program Files\CopyPod
2006-08-21 07:21 16896 --a------ C:\WINDOWS\system32\fltlib.dll
2006-08-21 04:14 23040 --a------ C:\WINDOWS\system32\fltmc.exe
2006-08-21 04:14 128896 --------- C:\WINDOWS\system32\drivers\fltmgr.sys
2006-08-17 15:35 -------- d-------- C:\Program Files\Windows Media Player
2006-08-16 06:58 100352 --a------ C:\WINDOWS\system32\6to4svc.dll
2006-08-16 04:37 225664 --a------ C:\WINDOWS\system32\drivers\tcpip6.sys
2006-08-15 22:39 -------- d-------- C:\Program Files\EndItAll
2006-08-15 18:59 -------- d-------- C:\Program Files\AviSynth 2.5
2006-08-14 05:34 332928 --a------ C:\WINDOWS\system32\drivers\srv.sys
2006-08-11 17:04 9576 --a------ C:\WINDOWS\system32\LMImirr2.dll
2006-08-11 17:04 23016 --a------ C:\WINDOWS\system32\LMImirr.dll
2006-08-11 17:04 13032 --a------ C:\WINDOWS\system32\LMIport.dll
2006-08-11 17:04 11496 --a------ C:\WINDOWS\system32\LMIinit.dll
2006-08-01 16:48 7920 --a------ C:\WINDOWS\system32\ractrlkeyhook.dll
2006-07-27 08:24 679424 --a------ C:\WINDOWS\system32\inetcomm.dll
2006-07-21 03:24 72704 --a------ C:\WINDOWS\system32\hlink.dll
2006-07-19 13:29 4 --a------ C:\WINDOWS\info147.sys
2006-07-14 14:51 108144 --a------ C:\WINDOWS\system32\GEARAspi.dll
2006-07-10 01:35 870 --a------ C:\Documents and Settings\ryan\Application Data\AdobeDLM.log
2006-07-10 01:35 0 --a------ C:\Documents and Settings\ryan\Application Data\dm.ini
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="\"C:\\Program Files\\Common Files\\Ahead\\lib\\NMBgMonitor.exe\""
"GoldenFTPserver"="\"C:\\Program Files\\Golden FTP Server\\gftp.exe\""
"Steam"=""
"Aim6"=""
"MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"Apoint"="C:\\Program Files\\Apoint2K\\Apoint.exe"
"AGRSMMSG"="AGRSMMSG.exe"
"Cpqset"="C:\\Program Files\\HPQ\\Default Settings\\cpqset.exe"
"eabconfg.cpl"="C:\\Program Files\\HPQ\\Quick Launch Buttons\\EabServr.exe /Start"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_06\\bin\\jusched.exe"
"EnGraph QuickTimeKiller"="C:\\Program Files\\EnGraph\\QuickTimeKiller\\QuickTimeKiller.exe"
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"LogMeIn GUI"="\"C:\\Program Files\\LogMeIn\\LogMeInSystray.exe\""
"DiskeeperSystray"="\"C:\\Program Files\\Diskeeper Corporation\\Diskeeper\\DkIcon.exe\""
"1pop06apelt2"="C:\\WINDOWS\\elitepop06.exe"
"kbb7c6c3"="RUNDLL32.EXE w0038f22.dll,n 0057c6be000000020038f22"
"ms044655594-147"="C:\\WINDOWS\\ms044655594-147.exe"
"avast!"="\"C:\\Program Files\\Alwil Software\\Avast4\\ashDisp.exe\""
"Zone Labs Client"="\"C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe\""
"THGuard"="\"C:\\Program Files\\TrojanHunter 4.6\\THGuard.exe\""
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000001
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,00,01,00,00,00,00,00,00,00,04,00,00,e4,02,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,ff,ff,00,00,ff,ff,00,00,ff,ff,ff,ff,ff,ff,\
ff,ff,04,00,00,00
"RestoredStateInfo"=hex:18,00,00,00,a2,01,00,00,23,00,00,00,a4,00,00,00,9a,00,\
00,00,01,00,00,00
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
"{553858A7-4922-4e7e-B1C1-97140C1C16EF}"="IE Component Categories cache daemon"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LMIinit
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\winjjq32
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders
securityproviders REG_SZ msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
Completion time: 06-10-12 14:02:40.93
ComboFix.txt
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
And the new hjt log:
Logfile of HijackThis v1.99.1
Scan saved at 2:10:43 PM, on 10/12/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5346.0005)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Raxco\PerfectDisk\PDSched.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\LogMeIn\LogMeInSystray.exe
C:\WINDOWS\elitepop06.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\TrojanHunter 4.6\THGuard.exe
C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\FirefoxPreloader\FirefoxPreloader.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\ryan\Desktop\joob.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=54729R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....cid={SUB_CLCID}R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {849B9523-785F-4014-9CAF-079FB4A74C61} - C:\WINDOWS\system32\trbvxcqv.dll (file missing)
O2 - BHO: (no name) - {C522F601-5E60-4543-9E53-617D55F4D6C5} - C:\WINDOWS\system32\pmkji.dll (file missing)
O2 - BHO: Banner Rotator - {D117A61F-92C3-4450-A0C8-F425B14D4127} - C:\WINDOWS\system32\adrotate.dll (file missing)
O3 - Toolbar: (no name) - {C004DEC2-2623-438e-9CA2-C9043AB28508} - (no file)
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [EnGraph QuickTimeKiller] C:\Program Files\EnGraph\QuickTimeKiller\QuickTimeKiller.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe"
O4 - HKLM\..\Run: [1pop06apelt2] C:\WINDOWS\elitepop06.exe
O4 - HKLM\..\Run: [kbb7c6c3] RUNDLL32.EXE w0038f22.dll,n 0057c6be000000020038f22
O4 - HKLM\..\Run: [ms044655594-147] C:\WINDOWS\ms044655594-147.exe
O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.6\THGuard.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [GoldenFTPserver] "C:\Program Files\Golden FTP Server\gftp.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Firefox Preloader.lnk = C:\Program Files\FirefoxPreloader\FirefoxPreloader.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Community Bar - {7F7B948C-FDD9-4469-9D97-465DA1C57023} - mscoree.dll (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O15 - Trusted Zone: *.elitemediagroup.net
O15 - Trusted Zone: *.media-motor.net
O15 - Trusted Zone: *.mmohsix.com
O15 - Trusted Zone:
http://click.getmirar.com (HKLM)
O15 - Trusted Zone:
http://click.mirarsearch.com (HKLM)
O15 - Trusted Zone:
http://redirect.mirarsearch.com (HKLM)
O15 - Trusted Zone:
http://awbeta.net-nucleus.com (HKLM)
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) -
http://pcpitstop.com...p/PCPitStop.CABO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.micros...b?1149127930681O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.micros...b?1149747488239O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) -
https://secure.logme...trl.cab?lmi=100O20 - Winlogon Notify: LMIinit - C:\WINDOWS\SYSTEM32\LMIinit.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: winjjq32 - winjjq32.dll (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
O23 - Service: PDScheduler (PDSched) - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDSched.exe
O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR3\RpcDataSrv.exe
O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR3\RpcSandraSrv.exe
O23 - Service: SF FrontLine Drivers Auto Removal (v1) (sfrem01) - Protection Technology (StarForce) - C:\WINDOWS\system32\sfrem01.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
And there ya have it, let me know if you need anything else done.