Octogonal...Thank you so much for you assistance.
I did uninstall Limewire, thanks for very important facts! Here I go with the logs....
HiJack This:
Logfile of HijackThis v1.99.1
Scan saved at 3:16:41 PM, on 8/1/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Softex\OmniPass\Omniserv.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\Softex\OmniPass\OPXPApp.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\HP\KBD\KBD.EXE
c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\America Online 9.0b\waol.exe
C:\Program Files\America Online 8.0\aoltray.exe
C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe
C:\Program Files\Southwest Airlines\Ding\Ding.exe
C:\Program Files\interMute\SpamSubtract\SpamSubtract.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Hijackthis\HijackThis.exe
C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe
C:\Program Files\America Online 9.0b\shellmon.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://srch-us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://srch-us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://srch-us8.hpwis.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://us8.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://srch-us8.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://srch-us8.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://srch-us8.hpwis.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: hp toolkit - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - C:\HP\EXPLOREBAR\HPTOOLKT.DLL
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [BCNT] C:\PROGRA~1\AWS\WEATHE~1\BCNT.EXE
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [AOL Fast Start] "C:\Program Files\America Online 9.0b\AOL.EXE" -b
O4 - Startup: DING!.lnk = C:\Program Files\Southwest Airlines\Ding\Ding.exe
O4 - Startup: spamsubtract.lnk = C:\Program Files\interMute\SpamSubtract\SpamSubtract.exe
O4 - Global Startup: America Online 8.0 Tray Icon.lnk = C:\Program Files\America Online 8.0\aoltray.exe
O4 - Global Startup: Quicken Scheduled Updates.lnk = C:\Program Files\Quicken\bagent.exe
O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://acs.pandasoft...free/asinst.cab
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: OPXPGina - C:\Program Files\Softex\OmniPass\opxpgina.dll
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Softex OmniPass Service (omniserv) - Unknown owner - C:\Program Files\Softex\OmniPass\Omniserv.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
OTMoveIt
C:\windows\system32\winupdt.008 moved successfully.
C:\Documents and Settings\Owner\Application Data\microsoft\internet explorer\quick launch\SideStep.lnk moved successfully.
File/Folder C:\Documents and Settings\Default User\Local Settings\Application Data\Wildtangent\Cdacache\1A.dat not found.
File/Folder C:\Documents and Settings\Owner\Local Settings\Application Data\Wildtangent\Cdacache\1A.dat not found.
Created on 08/01/2007 15:23:31
Jotti
Jotti's malware scan 2.99-TRANSITION_TO_3.00-R1
File to upload & scan:
Service
Service load: 0% 100%
File: Ding.exe
Status: OK
MD5: 40e3146462c1e71f3d9bf5bd56247230
Packers detected: -
Bit9 reports: File not found
Scanner results
Scan taken on 01 Aug 2007 22:40:44 (GMT)
A-Squared Found nothing
AntiVir Found nothing
ArcaVir Found nothing
Avast Found nothing
AVG Antivirus Found nothing
BitDefender Found nothing
ClamAV Found nothing
CPsecure Found nothing
Dr.Web Found nothing
F-Prot Antivirus Found nothing
F-Secure Anti-Virus Found nothing
Fortinet Found nothing
Kaspersky Anti-Virus Found nothing
NOD32 Found nothing
Norman Virus Control Found nothing
Panda Antivirus Found nothing
Rising Antivirus Found nothing
Sophos Antivirus Found nothing
VirusBuster Found nothing
VBA32 Found nothing
--------------------------------------------------------------------------------
Statistics
Last file scanned at least one scanner reported something about: 2.vmp.exe (MD5: b40bab65111667b68d29db1a46cc88a1, size: 771761 bytes), detected by:
Scanner Malware name
A-Squared X
AntiVir BDS/Hupigon.E.1
ArcaVir X
Avast Win32:Hupigon-BX
AVG Antivirus X
BitDefender GenPack:Generic.Graybird.6F8404B6
ClamAV Trojan.Hupigon-114
CPsecure BackDoor.W32.Hupigon.ani
Dr.Web BackDoor.Pigeon.252
F-Prot Antivirus X
F-Secure Anti-Virus Trojan-PSW.Win32.QQPass.tt
Fortinet X
Kaspersky Anti-Virus Trojan-PSW.Win32.QQPass.tt
NOD32 a variant of Win32/Hupigon
Norman Virus Control Hupigon.gen114
Panda Antivirus X
Rising Antivirus X
Sophos Antivirus Troj/Bckdr-IQU
VirusBuster X
VBA32 MalwareScope.Backdoor.Hupigon.1
ComboFix
ComboFix 07-07-30.2 - "Owner" 2007-08-01 15:45:53.1 [GMT -7:00] - NTFS
Microsoft Windows XP Home Edition 5.1.2600.1.1252.1.1033.18.True
* Created a new restore point
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\Program Files\Common Files\uninstall information
((((((((((((((((((((((((( Files Created from 2007-07-01 to 2007-08-01 )))))))))))))))))))))))))))))))
2007-08-01 15:44 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-07-25 05:10 <DIR> d-------- C:\WINDOWS\system32\ActiveScan
2007-07-24 19:22 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2007-07-24 19:22 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\SUPERAntiSpyware.com
2007-07-24 19:22 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com
2007-07-23 18:59 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2007-07-22 20:01 50,048 --a------ C:\WINDOWS\system32\drivers\DMusic.sys
2007-07-22 20:01 28,160 --a------ C:\WINDOWS\system32\drivers\usbccgp.sys
2007-07-22 20:01 24,960 --a------ C:\WINDOWS\system32\drivers\usbprint.sys
2007-07-22 20:00 57,856 --a------ C:\WINDOWS\system32\drivers\drmk.sys
2007-07-22 20:00 56,832 --a------ C:\WINDOWS\system32\drivers\sysaudio.sys
2007-07-22 20:00 55,680 --a------ C:\WINDOWS\system32\drivers\ohci1394.sys
2007-07-22 20:00 50,816 --a------ C:\WINDOWS\system32\drivers\1394bus.sys
2007-07-22 20:00 2,816 --a------ C:\WINDOWS\system32\drivers\drmkaud.sys
2007-07-22 20:00 134,272 --a------ C:\WINDOWS\system32\drivers\portcls.sys
2007-07-22 18:52 <DIR> d-------- C:\Program Files\AOL Companion
2007-07-22 18:51 53,248 --a------ C:\WINDOWS\AolCInUn.exe
2007-07-22 18:51 <DIR> d-------- C:\Program Files\America Online 8.0
2007-07-22 18:49 <DIR> dr-hs---- C:\cmdcons
2007-07-22 18:49 <DIR> d-------- C:\WINDOWS\setupupd
2007-07-22 18:47 182,880 --a------ C:\WINDOWS\system32\iuenginenew.dll
2007-07-22 18:47 155,648 --a------ C:\WINDOWS\system32\igfxres.dll
2007-07-22 18:47 <DIR> d-------- C:\WUTemp
2007-07-22 18:44 51,072 --a------ C:\WINDOWS\system32\drivers\i8042prt.sys
2007-07-22 18:44 23,424 --a------ C:\WINDOWS\system32\drivers\kbdclass.sys
2007-07-22 18:07 <DIR> d--hs---- C:\DOCUME~1\DEFAUL~1\UserData
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\Shared
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\Incomplete
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Yahoo! Messenger
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Yahoo!
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\VERITAS
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Southwest Airlines
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Snapfish
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Simple Star
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Schoolhouse Technologies
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\PlayFirst
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Musicmatch
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Motive
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft Web Folders
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\McAfee.com Personal Firewall
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\LimeWire
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Leadertech
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Kinko's
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\iShell
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\InterVideo
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Hewlett-Packard
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Help
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\GTek
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Google
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\FUJIFILM
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Downloaded Installations
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Digital Album Organizer
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Corel
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\ArcSoft
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\AOL
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\Ahead
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\AdobeUM
2007-07-22 18:07 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\APPLIC~1\AdobeAUM
2007-07-22 16:57 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\GTek
2007-07-15 07:09 <DIR> d-------- C:\DOCUME~1\Owner\Shared
2007-07-15 07:09 <DIR> d-------- C:\DOCUME~1\Owner\Incomplete
2007-07-15 07:09 <DIR> d-------- C:\DOCUME~1\Owner\APPLIC~1\LimeWire
2007-07-03 06:21 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-07-25 18:27 --------- d-------- C:\Program Files\Norton AntiVirus
2007-07-25 18:27 --------- d-------- C:\Program Files\Common Files\Symantec Shared
2007-07-25 18:26 --------- d-------- C:\Program Files\Symantec
2007-07-24 19:21 --------- d-------- C:\Program Files\Common Files\Wise Installation Wizard
2007-07-22 19:44 --------- d-------- C:\Program Files\Windows NT
2007-07-22 19:44 --------- d-------- C:\Program Files\Movie Maker
2007-07-22 19:44 --------- d-------- C:\Program Files\Messenger
2007-07-22 18:54 --------- d-------- C:\Program Files\Easy Internet signup
2007-07-22 18:52 --------- d-------- C:\Program Files\Common Files\aolshare
2007-07-22 18:52 --------- d-------- C:\Program Files\Common Files\AOL
2007-07-22 18:46 4228 -rahs---- C:\WINDOWS\system32\drivers\HP_DF277A-ABA 746c_YC_Pavi_QMXM328_E33NAheBLU4_4_IMS-6577_SMICRO-STAR INTERNATIONAL CO., LTD_V030_B3.20_T030519_WXH1_L409_M504_J80_7Intel_8Pentium 4_92.4_1103300F2_N10EC8139_P_Z11C1044C_K_A808624C5_U808624C2_G80862562.MRK
2007-07-22 18:46 --------- d--h----- C:\Program Files\InstallShield Installation Information
2007-07-14 08:22 --------- d-------- C:\Program Files\American Airlines TravelDesk
2007-06-22 20:44 --------- d-------- C:\Program Files\iTunes
2007-06-22 20:44 --------- d-------- C:\Program Files\iPod
2007-06-22 20:32 --------- d-------- C:\Program Files\Apple Software Update
2007-06-18 20:40 --------- d-------- C:\DOCUME~1\Owner\APPLIC~1\Yahoo!
2007-06-08 16:19 --------- d-------- C:\Program Files\Activision
2003-08-26 00:52:24 0 --sha-w C:\WINDOWS\SMINST\HPCD.sys
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CamMonitor"="c:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe" [2002-06-22 07:27]
"Share-to-Web Namespace Daemon"="c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" [2002-04-17 17:42]
"KBD"="C:\HP\KBD\KBD.EXE" [2003-02-11 19:02]
"StorageGuard"="C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" [2003-02-13 08:01]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2003-04-09 23:36]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 02:25]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2007-07-25 17:26]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2007-08-01 14:54]
"AOL Fast Start"="C:\Program Files\America Online 9.0b\AOL.exe" [2005-07-11 22:17]
"Weather"="c:\Program Files\AWS\WeatherBug\Weather.exe" [2003-01-22 18:10]
C:\Documents and Settings\Owner\Start Menu\Programs\Startup\
DING!.lnk - C:\Program Files\Southwest Airlines\Ding\Ding.exe [2006-06-22 12:15:48]
spamsubtract.lnk - C:\Program Files\interMute\SpamSubtract\SpamSubtract.exe [2003-04-10 04:21:36]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
America Online 8.0 Tray Icon.lnk - C:\Program Files\America Online 8.0\aoltray.exe [2007-07-22 18:51:02]
Quicken Scheduled Updates.lnk - C:\Program Files\Quicken\bagent.exe [2002-09-20 19:20:02]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2006-12-20 12:55 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL 2007-08-01 14:54 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\OPXPGina]
C:\Program Files\Softex\OmniPass\opxpgina.dll 2003-02-21 03:50 40960 C:\Program Files\Softex\OmniPass\OPXPGina.dll
R0 fasttx2k;fasttx2k;C:\WINDOWS\System32\DRIVERS\fasttx2k.sys
R1 SASDIFSV;SASDIFSV;\??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
R1 SASKUTIL;SASKUTIL;\??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys
R3 ltmodem5;Lucent Modem Driver;C:\WINDOWS\System32\DRIVERS\ltmdmnt.sys
R3 MxlW2k;MxlW2k;C:\WINDOWS\System32\drivers\MxlW2k.sys
R3 Ps2;PS2;C:\WINDOWS\System32\DRIVERS\PS2.sys
R3 SASENUM;SASENUM;\??\C:\Program Files\SUPERAntiSpyware\SASENUM.SYS
R3 wanatw;WAN Miniport (ATW);C:\WINDOWS\System32\DRIVERS\wanatw4.sys
Contents of the 'Scheduled Tasks' folder
2007-07-28 05:07:00 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job - C:\Program Files\Apple Software Update\SoftwareUpdate.exe
2007-07-23 01:54:28 C:\WINDOWS\Tasks\easy Internet sign-up.job - C:\Program Files\Easy Internet signup\HPSdpApp.exe
2007-08-01 22:36:00 C:\WINDOWS\Tasks\Symantec NetDetect.job
**************************************************************************
catchme 0.3.1061 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-08-01 15:51:38
Windows 5.1.2600 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden registry entries ...
scanning hidden files ...
**************************************************************************
Completion time: 2007-08-01 15:53:32
--- E O F ---
I hope this Helps!