Here is my ComboFix log:
ComboFix 08-02.05.3 - Brian Chen 2008-02-10 15:31:23.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.936.86.1033.18.538 [GMT -5:00]
Running from: C:\Documents and Settings\Brian Chen\Desktop\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Log\2007 Oct 14 - 03_21_36 PM_140.log
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Log\2007 Oct 14 - 03_21_38 PM_000.log
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Log\2007 Oct 14 - 03_27_03 PM_531.log
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Log\2007 Oct 14 - 03_27_03 PM_921.log
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Log\2007 Oct 14 - 03_27_38 PM_031.log
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Log\2007 Oct 14 - 03_27_38 PM_421.log
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Log\2007 Oct 14 - 03_28_17 PM_062.log
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Log\2007 Oct 14 - 03_28_17 PM_484.log
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Log\2007 Oct 14 - 04_19_04 PM_796.log
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Log\2007 Oct 14 - 04_20_01 PM_609.log
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Log\2007 Oct 14 - 05_27_38 PM_156.log
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\rs.dat
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Settings\CustomScan.stg
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Settings\IgnoreList.stg
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Settings\ScanInfo.stg
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Settings\ScanResults.stg
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Settings\SelectedFolders.stg
C:\Documents and Settings\Brian Chen\Application Data\AntiSpywareBot\Settings\Settings.stg
C:\Program Files\3721
C:\Program Files\3721\assist\asbar.dll
C:\Program Files\3721\helper.dll
C:\Program Files\Accoona
C:\Program Files\Accoona\ASearchAssist.dll
C:\Program Files\akl
C:\Program Files\akl\akl.dll
C:\Program Files\akl\akl.exe
C:\Program Files\akl\curlog.htm
C:\Program Files\akl\keylog.txt
C:\Program Files\akl\readme.txt
C:\Program Files\akl\uninstall.exe
C:\Program Files\akl\unsetup.dat
C:\Program Files\akl\unsetup.exe
C:\Program Files\amsys
C:\Program Files\amsys\awmsg.dat
C:\Program Files\amsys\guid.dat
C:\Program Files\amsys\ijl15.dll
C:\Program Files\amsys\mfc42.dll
C:\Program Files\amsys\msvcrt.dll
C:\Program Files\amsys\unins000.dat
C:\Program Files\amsys\unis000.exe
C:\Program Files\amsys\winam.dat
C:\Program Files\Common Files\sogou pxp
C:\Program Files\Common Files\sogou pxp\p2psvr.exe
C:\Program Files\e-zshopper
C:\Program Files\e-zshopper\BarLcher.dll
C:\Program Files\Helper
C:\Program Files\p2pnetworks
C:\Program Files\p2pnetworks\amp2pl.exe
C:\WINDOWS\764.exe
C:\WINDOWS\7search.dll
C:\WINDOWS\absolute key logger.lnk
C:\WINDOWS\aconti.exe
C:\WINDOWS\aconti.ini
C:\WINDOWS\aconti.log
C:\WINDOWS\aconti.sdb
C:\WINDOWS\acontidialer.txt
C:\WINDOWS\adbar.dll
C:\WINDOWS\bck1.dat
C:\WINDOWS\cbinst$.exe
C:\WINDOWS\daxtime.dll
C:\WINDOWS\default.htm
C:\WINDOWS\dp0.dll
C:\WINDOWS\eventlowg.dll
C:\WINDOWS\flt.dll
C:\WINDOWS\hotporn.exe
C:\WINDOWS\ie_32.exe
C:\WINDOWS\iexplorr23.dll
C:\WINDOWS\jd2002.dll
C:\WINDOWS\kkcomp$.exe
C:\WINDOWS\kvnab$.exe
C:\WINDOWS\liqad$.exe
C:\WINDOWS\ngd.dll
C:\WINDOWS\ORUN32.EXE
C:\WINDOWS\pbar.dll
C:\WINDOWS\PerfInfo
C:\WINDOWS\spredirect.dll
C:\WINDOWS\system32\ace16win.dll
C:\WINDOWS\system32\acespy
C:\WINDOWS\system32\acespy\__acelog.ndx
C:\WINDOWS\system32\acespy\systune.exe
C:\WINDOWS\system32\CMMGR32.EXE
C:\WINDOWS\system32\conf.dat
C:\WINDOWS\system32\cwepmmsg.dll
C:\WINDOWS\system32\file.exe
C:\WINDOWS\SYSTEM32\gsmmpewc.ini
C:\WINDOWS\system32\gwhagnlj.dll
C:\WINDOWS\SYSTEM32\jlngahwg.ini
C:\WINDOWS\system32\njmjuxix.dll
C:\WINDOWS\system32\nupjwxdc.dll
C:\WINDOWS\system32\snmspykk.dllbox
C:\WINDOWS\system32\sojiodra.dll
C:\WINDOWS\system32\tuvwvsr.dll
C:\WINDOWS\system32\tvrqfsqj.dllbox
C:\WINDOWS\system32\vxddsk.exe
C:\WINDOWS\system32\windows
C:\WINDOWS\system32\wml.exe
C:\WINDOWS\system32\ykqsjubt.dll
C:\WINDOWS\Tasks.\AntiSpywareBot Scheduled Scan.job
C:\WINDOWS\vxddsk.exe
C:\WINDOWS\wbeInst$.exe
C:\WINDOWS\wml.exe
C:\WINDOWS\xxxvideo.exe
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\LEGACY_ASC3550O
-------\LEGACY_P4P_SERVICE
-------\ApiMon
-------\P4P Service
((((((((((((((((((((((((( Files Created from 2008-01-10 to 2008-02-10 )))))))))))))))))))))))))))))))
.
2008-02-10 14:15 . 2008-02-10 14:15 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-02-10 14:14 . 2008-02-10 15:27 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2008-02-10 14:14 . 2008-02-10 14:14 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-02-10 14:14 . 2008-02-10 14:14 <DIR> d-------- C:\Documents and Settings\Brian Chen\Application Data\SUPERAntiSpyware.com
2008-02-10 14:07 . 2008-02-10 14:07 <DIR> d-------- C:\Program Files\Trend Micro
2008-02-10 13:53 . 2008-02-10 13:53 4,960 --a------ C:\WINDOWS\SYSTEM32\xk4AbT.syz
2008-02-10 00:35 . 2008-02-10 13:52 1,220,590 ---hs---- C:\WINDOWS\SYSTEM32\nxaspush.ini
2008-02-10 00:32 . 2008-02-10 15:23 290,926 --ahs---- C:\WINDOWS\SYSTEM32\orqss.ini
2008-02-10 00:05 . 2008-02-10 00:05 10,752 --a------ C:\WINDOWS\SYSTEM32\worsock(2).dll
2008-02-10 00:05 . 2008-02-10 00:05 1 --a------ C:\WINDOWS\SYSTEM32\rc.dat
2008-02-10 00:05 . 2008-02-10 00:05 1 --a------ C:\WINDOWS\SYSTEM32\ps1.dat
2008-02-10 00:05 . 2008-02-10 00:05 1 --a------ C:\WINDOWS\SYSTEM32\cs.dat
2008-02-09 23:51 . 2008-02-09 23:51 3,795,158 --a------ C:\WINDOWS\1WcD0oSjmY.exe
2008-02-09 23:49 . 2008-02-09 23:49 4 --a------ C:\WINDOWS\SYSTEM32\winfrun32.bin
2008-02-09 23:48 . 2008-02-09 23:48 <DIR> d-------- C:\WINDOWS\qccwccfo
2008-02-09 23:48 . 2008-02-09 23:48 182,272 --a------ C:\WINDOWS\dutwtcbw.dll
2008-02-09 23:48 . 2008-02-09 23:48 58,368 --a------ C:\wpohl.exe~
2008-02-09 23:48 . 2008-02-09 23:48 58,368 --a------ C:\wpohl.exe
2008-02-09 23:48 . 2008-02-09 23:48 54,764 --a------ C:\WINDOWS\SYSTEM32\4fdw.dll
2008-02-09 23:48 . 2008-02-09 23:48 54,272 --a------ C:\WINDOWS\SYSTEM32\unifff.dll
2008-02-09 23:48 . 2008-02-09 23:48 54,272 --a------ C:\WINDOWS\SYSTEM32\condt32.dll
2008-02-09 23:48 . 2008-02-09 23:48 49,152 --a------ C:\WINDOWS\pcbyngna.exe
2008-02-09 23:48 . 2008-02-09 23:48 3,584 --a------ C:\qrwkjyd.exe
2008-02-09 23:48 . 2008-02-09 23:48 2 --a------ C:\1559543603
2008-02-09 22:20 . 2008-02-09 22:20 <DIR> d-------- C:\Documents and Settings\User 1\Application Data\TVU Networks
2008-02-09 22:20 . 2008-02-09 22:20 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\TVU Networks
2008-02-09 22:18 . 2008-02-09 22:18 <DIR> d-------- C:\Program Files\TVU Player
2008-02-05 20:07 . 2008-02-05 20:07 <DIR> d-------- C:\Program Files\Dopool
2008-02-02 14:12 . 2008-02-02 14:12 94,208 --a------ C:\WINDOWS\ScUnin.exe
2008-02-02 14:12 . 2008-02-02 14:12 13,044 --a------ C:\WINDOWS\scunin.dat
2008-02-02 14:12 . 2008-02-02 14:12 967 --a------ C:\WINDOWS\ScUnin.pif
2008-01-30 20:12 . 2008-01-30 20:13 <DIR> d-------- C:\Program Files\SopCast
2008-01-30 19:54 . 2008-01-30 20:03 <DIR> d-------- C:\Program Files\Sogou PXP
2008-01-30 19:54 . 2008-01-30 19:54 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\p3p
2008-01-30 16:10 . 2008-01-30 16:10 274,432 --a------ C:\WINDOWS\SYSTEM32\libcurl.dll
2008-01-30 15:23 . 2008-01-30 15:23 <DIR> d-------- C:\Program Files\Common Files\INCA Shared
2008-01-28 22:11 . 2008-01-28 22:11 256 --a------ C:\WINDOWS\p2plog.dat
2008-01-26 19:20 . 2008-02-10 00:21 268 --ah----- C:\sqmdata19.sqm
2008-01-26 19:20 . 2008-02-10 00:21 244 --ah----- C:\sqmnoopt19.sqm
2008-01-26 12:59 . 2008-01-26 12:59 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SupportSoft
2008-01-26 12:58 . 2008-01-26 12:58 <DIR> d-------- C:\Program Files\Dell Support Center
2008-01-26 00:26 . 2008-02-09 00:43 268 --ah----- C:\sqmdata18.sqm
2008-01-26 00:26 . 2008-02-09 00:43 244 --ah----- C:\sqmnoopt18.sqm
2008-01-25 18:59 . 2008-02-10 15:08 <DIR> d-------- C:\Program Files\Starcraft
2008-01-24 23:41 . 2008-02-08 20:40 268 --ah----- C:\sqmdata17.sqm
2008-01-24 23:41 . 2008-02-08 20:40 244 --ah----- C:\sqmnoopt17.sqm
2008-01-24 10:31 . 2008-01-24 10:32 <DIR> d-------- C:\Documents and Settings\Brian Chen\Application Data\QQDoctor
2008-01-23 23:51 . 2008-02-06 00:00 268 --ah----- C:\sqmdata16.sqm
2008-01-23 23:51 . 2008-02-06 00:00 244 --ah----- C:\sqmnoopt16.sqm
2008-01-22 23:26 . 2008-02-04 23:33 268 --ah----- C:\sqmdata15.sqm
2008-01-22 23:26 . 2008-02-04 23:33 244 --ah----- C:\sqmnoopt15.sqm
2008-01-21 23:31 . 2008-02-03 23:05 268 --ah----- C:\sqmdata14.sqm
2008-01-21 23:31 . 2008-02-03 23:05 244 --ah----- C:\sqmnoopt14.sqm
2008-01-21 01:44 . 2008-02-03 00:32 268 --ah----- C:\sqmdata13.sqm
2008-01-21 01:44 . 2008-02-03 00:32 244 --ah----- C:\sqmnoopt13.sqm
2008-01-20 00:52 . 2008-02-02 22:31 268 --ah----- C:\sqmdata12.sqm
2008-01-20 00:52 . 2008-02-02 22:31 244 --ah----- C:\sqmnoopt12.sqm
2008-01-18 22:46 . 2008-02-01 22:56 268 --ah----- C:\sqmdata11.sqm
2008-01-18 22:46 . 2008-02-01 22:56 244 --ah----- C:\sqmnoopt11.sqm
2008-01-18 13:10 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\SYSTEM32\mucltui.dll
2008-01-18 13:10 . 2007-07-30 19:19 207,736 --a------ C:\WINDOWS\SYSTEM32\muweb.dll
2008-01-18 13:10 . 2007-07-30 19:19 30,072 --a------ C:\WINDOWS\SYSTEM32\mucltui.dll.mui
2008-01-17 23:58 . 2008-01-31 23:01 268 --ah----- C:\sqmdata10.sqm
2008-01-17 23:58 . 2008-01-31 23:01 244 --ah----- C:\sqmnoopt10.sqm
2008-01-17 16:10 . 2008-01-30 23:40 268 --ah----- C:\sqmdata09.sqm
2008-01-17 16:10 . 2008-01-30 23:40 244 --ah----- C:\sqmnoopt09.sqm
2008-01-17 15:49 . 2008-01-30 20:04 268 --ah----- C:\sqmdata08.sqm
2008-01-17 15:49 . 2008-01-30 20:04 244 --ah----- C:\sqmnoopt08.sqm
2008-01-17 15:40 . 2008-01-17 15:45 <DIR> d--hsc--- C:\Program Files\Common Files\WindowsLiveInstaller
2008-01-17 15:39 . 2008-01-17 15:41 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-01-17 14:23 . 2008-01-17 14:23 <DIR> d-------- C:\Documents and Settings\User 1\Application Data\AIMPro
2008-01-12 21:54 . 2008-01-12 21:54 <DIR> d-------- C:\Program Files\Common Files\DirectX
2008-01-12 21:54 . 2008-01-12 21:54 <DIR> d-------- C:\Documents and Settings\Brian Chen\Application Data\NHN Corporation
2008-01-12 21:37 . 2008-01-21 18:19 <DIR> d-------- C:\Program Files\DriftCity
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-10 19:25 --------- d-----w C:\Program Files\NetWaiting
2008-02-03 03:37 --------- d-----w C:\Program Files\LimeWire
2008-01-26 19:42 --------- d-----w C:\Program Files\KuGoo2007
2008-01-26 17:58 --------- d-----w C:\Program Files\Common Files\SupportSoft
2008-01-26 17:58 --------- d-----w C:\Documents and Settings\All Users\Application Data\Dell
2008-01-24 15:32 --------- d-----w C:\Documents and Settings\Brian Chen\Application Data\QQUpdate
2008-01-24 15:32 --------- d-----w C:\Documents and Settings\Brian Chen\Application Data\QQ
2008-01-12 23:31 --------- d--h--w C:\Documents and Settings\Brian Chen\Application Data\ijjigame
2008-01-02 22:09 --------- d-----w C:\Documents and Settings\All Users\Application Data\thunder_dctemp
2008-01-02 00:29 --------- d-----w C:\Program Files\BitLord
2007-12-30 17:37 --------- d-----w C:\Documents and Settings\User 1\Application Data\QQUpdate
2007-12-30 06:18 --------- d-----w C:\Program Files\MUSICMATCH
2007-12-30 06:14 --------- d-----w C:\Program Files\BitSpirit
2007-12-30 06:11 --------- d-----w C:\Documents and Settings\All Users\Application Data\mvcache
2007-12-30 05:54 --------- d-----w C:\Program Files\Thunder Network
2007-12-30 05:54 --------- d-----w C:\Documents and Settings\All Users\Application Data\thunder_vod_cache
2007-12-30 05:54 --------- d-----w C:\Documents and Settings\All Users\Application Data\Thunder Network
2007-12-30 04:51 --------- d-----w C:\Documents and Settings\Brian Chen\Application Data\BitSpirit
2007-12-28 04:08 --------- d-----w C:\Program Files\Thoosje Sidebar V2.3
2007-12-28 04:08 --------- d-----w C:\Program Files\FlashGet
2007-12-27 22:20 --------- d-----w C:\Documents and Settings\All Users\Application Data\Tencent
2007-12-25 00:59 --------- d-----w C:\Program Files\鱼鱼软件
2007-12-24 03:23 --------- d-----w C:\Documents and Settings\User 1\Application Data\acccore
2007-12-23 03:52 --------- d-----w C:\Documents and Settings\User 1\Application Data\Unispim
2007-12-23 00:18 --------- d-----w C:\Documents and Settings\User 1\Application Data\QQ
2007-12-22 17:46 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-12-22 17:42 --------- d-----w C:\Program Files\VideoLAN
2007-12-22 17:42 --------- d-----w C:\Program Files\SwiftSwitch
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{3f15e156-969c-4721-a5b7-e3ee10b1b382}]
C:\WINDOWS\system32\wcamqcca.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{6607E676-1BDE-4cb3-9913-4DC5EBCAE35E}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9296002a-1dd2-11b2-b608-bc35e55a3e09}]
C:\WINDOWS\wruzybqh.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 11:24 1694208]
"BitTorrent"="C:\Program Files\BitTorrent\bittorrent.exe" [ ]
"Aim6"="C:\Program Files\AIM6\aim6.exe" [2007-10-04 10:20 50528]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 06:00 15360]
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2007-02-27 11:39 1310720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="C:\Program Files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 16:42 1404928]
"IAAnotif"="C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe" [2004-03-23 13:16 135168]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-08-25 13:52 339968]
"DVDLauncher"="C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" [2004-10-12 17:54 57344]
"DMXLauncher"="C:\Program Files\Dell\Media Experience\DMXLauncher.exe" [ ]
"UpdateManager"="C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" [2004-01-07 02:01 110592]
"dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [2004-08-13 02:05 122939]
"MMTray"="C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe" [2004-10-08 08:49 131072]
"VSOCheckTask"="c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" [2004-07-01 16:15 139264]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [2005-09-22 18:29 303104]
"MCUpdateExe"="C:\PROGRA~1\mcafee.com\agent\McUpdate.exe" [2006-01-11 12:05 212992]
"VirusScan Online"="c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe" [2004-08-17 17:55 180224]
"MPFExe"="C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" [2004-08-22 16:31 1327104]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe" [2004-08-04 06:00 208952]
"MSPY2002"="C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe" [2004-08-04 06:00 59392]
"PHIME2002ASync"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-04 06:00 455168]
"PHIME2002A"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-04 06:00 455168]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496]
"A Verizon App"="C:\PROGRA~1\VERIZO~1\HELPSU~1\VERIZO~1.EXE" [2005-05-23 12:20 50744]
"Motive SmartBridge"="C:\PROGRA~1\VERIZO~1\HELPSU~1\SMARTB~1\MotiveSB.exe" [2005-04-13 18:51 385024]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-11-11 21:20 180269]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-10-25 18:58 282624]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2006-10-30 09:36 256576]
"dscactivate"="C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" [2007-11-15 09:24 16384]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2006-12-20 12:55 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 2007-02-27 11:39 282624 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\snmspykk]
snmspykk.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\vtuustt]
vtuustt.dll
R2 Viewpoint Manager Service;Viewpoint Manager Service;"C:\Program Files\Viewpoint\Common\ViewpointService.exe" [2007-01-04 16:38]
S3 nenum13E;nenum13E;C:\DOCUME~1\BRIANC~1\LOCALS~1\Temp\nenum13E.sys []
.
Contents of the 'Scheduled Tasks' folder
"2008-02-06 21:58:00 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-02-08 23:30:00 C:\WINDOWS\Tasks\McAfee.com Scan for Viruses - My Computer (BRIAN-Brian Chen).job"
- c:\program files\mcafee.com\vso\mcmnhdlr.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-02-10 15:37:43
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\WINDOWS\system32\conime.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\Common Files\AOL\Loader\aolload.exe
C:\Program Files\Common Files\Verizon Online\ConnMgr\cmisrv.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\Program Files\Common Files\Verizon Online\AppMgr\vzOpenUIServer.exe
C:\Program Files\Common Files\MotiveBrowser\MotiveBrowser.exe
.
**************************************************************************
.
Completion time: 2008-02-10 15:42:40 - machine was rebooted
ComboFix-quarantined-files.txt 2008-02-10 20:42:37
.
2008-01-19 03:46:21 --- E O F ---
Hijack this:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:50:33 PM, on 2/10/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\conime.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\PROGRA~1\VERIZO~1\HELPSU~1\VERIZO~1.EXE
C:\PROGRA~1\VERIZO~1\HELPSU~1\SMARTB~1\MotiveSB.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\AIM6\aim6.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Common Files\AOL\Loader\aolload.exe
C:\Program Files\Common Files\Verizon Online\ConnMgr\cmisrv.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\Program Files\Common Files\Verizon Online\AppMgr\vzOpenUIServer.exe
C:\Program Files\Common Files\MotiveBrowser\MotiveBrowser.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
O2 - BHO: (no name) - {3f15e156-969c-4721-a5b7-e3ee10b1b382} - C:\WINDOWS\system32\wcamqcca.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Gamburg provider - {6607E676-1BDE-4cb3-9913-4DC5EBCAE35E} - unifff.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {9296002a-1dd2-11b2-b608-bc35e55a3e09} - C:\WINDOWS\wruzybqh.dll (file missing)
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [A Verizon App] C:\PROGRA~1\VERIZO~1\HELPSU~1\VERIZO~1.EXE
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\VERIZO~1\HELPSU~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ表情 - C:\Program Files\Tencent\QQ\AddEmotion.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O15 - ESC Trusted Zone:
http://*.update.microsoft.comO16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) -
http://messenger.zon...nt.cab31267.cabO16 - DPF: {37DF41B2-61DB-4CAC-A755-CFB3C7EE7F40} -
http://esupport.aol....oach_core_1.cabO16 - DPF: {3EA4FA88-E0BE-419A-A732-9B79B87A6ED0} (CTVUAxCtrl Object) -
http://dl.tvunetworks.com/TVUAx.cabO16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) -
http://download.divx...owserPlugin.cabO16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) -
http://messenger.zon...ro.cab56649.cabO16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} (HGPlugin9USA Class) -
http://gamedownload....GPlugin9USA.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.m...ent/swflash.cabO18 - Protocol: KuGoo - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} - C:\WINDOWS\SYSTEM32\KuGoo3DownXControl.ocx
O18 - Protocol: KuGoo3 - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} - C:\WINDOWS\SYSTEM32\KuGoo3DownXControl.ocx
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: snmspykk - snmspykk.dll (file missing)
O20 - Winlogon Notify: vtuustt - vtuustt.dll (file missing)
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Networks Associates Technology, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
--
End of file - 8983 bytes
Edited by AznSkill2k, 10 February 2008 - 02:51 PM.