alright here is the log
Shane Sternstein - 06-11-02 12:06:52.51 Service Pack 2
ComboFix 06.10.19 - Running from: "C:\Documents and Settings\Shane Sternstein\Desktop\hjt"
((((((((((((((((((((((((((((((( Files Created from 2006-10-02 to 2006-11-02 ))))))))))))))))))))))))))))))))))
2006-11-02 11:30 66,433,394 --a------ C:\registrybackup.reg
2006-10-31 13:28 1,032,192 --a------ C:\WINDOWS\explorer.exe
2006-10-30 12:00 106 --a------ C:\delete.bat
2006-10-24 19:51 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2006-10-24 16:20 684,032 --a------ C:\WINDOWS\system32\libeay32.dll
2006-10-24 16:20 21,056 --a------ C:\WINDOWS\system32\drivers\sskbfd.sys
2006-10-24 16:20 155,648 --a------ C:\WINDOWS\system32\ssleay32.dll
2006-10-15 12:53 223,128 --a------ C:\WINDOWS\system32\drivers\vaxscsi.sys
2006-10-15 12:46 96,256 --a------ C:\WINDOWS\system32\drivers\sptd7229.sys
2006-10-15 12:46 643,072 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2006-10-08 19:11 69,632 --------- C:\WINDOWS\system32\Wnaspint.dll
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2006-11-02 11:36 -------- d-------- C:\Program Files\Common Files
2006-10-24 22:52 -------- d-------- C:\Program Files\Alwil Software
2006-10-24 22:42 -------- d-------- C:\Program Files\Grisoft
2006-10-24 22:41 -------- d---s---- C:\Documents and Settings\Shane Sternstein\Application Data\Microsoft
2006-10-24 22:27 -------- d-------- C:\Program Files\Common Files\Symantec Shared
2006-10-24 19:26 -------- d-------- C:\Program Files\Lavasoft
2006-10-24 19:26 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\Lavasoft
2006-10-24 18:56 -------- d-------- C:\Program Files\Viewpoint
2006-10-24 17:15 -------- d-------- C:\Program Files\Seekmo
2006-10-24 13:45 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\Azureus
2006-10-23 16:11 -------- d-------- C:\Program Files\Norton Internet Security
2006-10-21 12:59 -------- d-------- C:\Program Files\Acoustica MP3 CD Burner
2006-10-20 16:20 -------- d-------- C:\Program Files\Azureus
2006-10-18 09:54 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\Google
2006-10-17 11:42 -------- d-------- C:\Program Files\Google
2006-10-16 15:56 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\InterVideo
2006-10-16 09:44 -------- d--h----- C:\Program Files\InstallShield Installation Information
2006-10-16 09:37 -------- d-------- C:\Program Files\Microsoft Games
2006-10-15 23:54 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\pixelStorm
2006-10-15 12:53 -------- d-------- C:\Program Files\Alcohol Soft
2006-10-12 20:09 848 --ahs---- C:\WINDOWS\system32\KGyGaAvL.sys
2006-10-11 16:22 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\Walgreens
2006-10-10 22:21 -------- d-------- C:\Program Files\iTunes
2006-10-10 22:21 -------- d-------- C:\Program Files\iPod
2006-10-10 10:38 -------- d-------- C:\Program Files\Free Offers from Freeze.com
2006-10-03 20:35 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\Sony Corporation
2006-10-03 08:28 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\LimeWire
2006-10-03 08:18 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\Help
2006-09-29 14:59 -------- d-------- C:\Program Files\QuickTime
2006-09-29 14:57 -------- d-------- C:\Program Files\Apple Software Update
2006-09-26 22:30 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\BitTorrent
2006-09-22 20:37 -------- d-------- C:\Program Files\Dream Vacation Solitaire
2006-09-22 20:36 -------- d-------- C:\Program Files\ReflexiveArcade
2006-09-19 20:35 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\Apple Computer
2006-09-12 21:01 1084416 --a------ C:\WINDOWS\system32\msxml3.dll
2006-09-10 20:21 -------- d-------- C:\Program Files\WinRAR
2006-09-06 22:07 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\Sonic
2006-09-06 22:07 -------- d-------- C:\Documents and Settings\Shane Sternstein\Application Data\Leadertech
2006-08-25 07:45 617472 --a------ C:\WINDOWS\system32\comctl32.dll
2006-08-21 04:21 16896 --a------ C:\WINDOWS\system32\fltlib.dll
2006-08-21 01:14 23040 --a------ C:\WINDOWS\system32\fltmc.exe
2006-08-16 03:58 100352 --a------ C:\WINDOWS\system32\6to4svc.dll
2006-08-09 10:58 61678 --a------ C:\Documents and Settings\Shane Sternstein\Application Data\PFP120JPR.{PB
2006-08-09 10:58 12358 --a------ C:\Documents and Settings\Shane Sternstein\Application Data\PFP120JCM.{PB
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"Google Desktop Search"="\"C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe\" /startup"
"swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\1.2.908.5008\\GoogleToolbarNotifier.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"AGRSMMSG"="AGRSMMSG.exe"
"ehTray"="C:\\WINDOWS\\ehome\\ehtray.exe"
"ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"High Definition Audio Property Page Shortcut"="HDAudPropShortcut.exe"
"VAIO Update 2"="\"C:\\Program Files\\Sony\\VAIO Update 2\\VAIOUpdt.exe\" /Stationary"
"SoundMan"="SOUNDMAN.EXE"
"AlcWzrd"="ALCWZRD.EXE"
"Alcmtr"="ALCMTR.EXE"
"IgfxTray"="C:\\WINDOWS\\system32\\igfxtray.exe"
"HotKeysCmds"="C:\\WINDOWS\\system32\\hkcmd.exe"
"VAIOSurvey"="c:\\program files\\sony\\vaio survey\\surveysa.exe"
"ccApp"="\"C:\\Program Files\\Common Files\\Symantec Shared\\ccApp.exe\""
"VAIO Recovery"="C:\\WINDOWS\\Sonysys\\VAIO Recovery\\PartSeal.exe"
"Symantec NetDriver Monitor"="C:\\PROGRA~1\\SYMNET~1\\SNDMon.exe /Consumer"
"NetPumper"="\"C:\\Program Files\\NetPumper\\NetPumperIEProxy.exe\""
"RealTray"="C:\\Program Files\\Real\\RealPlayer\\RealPlay.exe SYSTEMBOOTHIDEPLAYER"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000005
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,86,01,00,00,00,00,00,00,7a,02,00,00,fc,02,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,fc,02,\
00,00,04,00,00,40
"RestoredStateInfo"=hex:18,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,fc,02,\
00,00,01,00,00,00
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000008
"NoBandCustomize"=dword:00000000
"NoMovingBands"=dword:00000000
"NoCloseDragDropBands"=dword:00000000
"NoActiveDesktop"=dword:00000000
"ClassicShell"=dword:00000000
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"InstallVisualStyle"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,52,65,73,6f,75,72,\
63,65,73,5c,54,68,65,6d,65,73,5c,52,6f,79,61,6c,65,5c,52,6f,79,61,6c,65,2e,\
6d,73,73,74,79,6c,65,73,00
"InstallTheme"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,52,65,73,6f,75,72,63,65,\
73,5c,54,68,65,6d,65,73,5c,52,6f,79,61,6c,65,2e,74,68,65,6d,65,00
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000008
"NoCDBurning"=dword:00000000
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\FRU Task #Hewlett-Packard#hp psc 2170 series#1155710347.job
C:\WINDOWS\tasks\Norton AntiVirus - Scan my computer - Shane Sternstein.job
C:\WINDOWS\tasks\XoftSpy.job
Completion time: 06-11-02 12:08:31.96
C:\ComboFix.txt ... 06-11-02 12:08
Shane