Here are the logs: (some of these things were deleted quite awhile ago, or at least I thought they were)
ComboFix 08-04-13.3 - Jonathan 2008-04-14 18:10:56.1 - NTFSx86
Running from: C:\Documents and Settings\Jonathan\Desktop\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\Mykel\Start Menu\Programs\Internet Speed Monitor
C:\Documents and Settings\Mykel\Start Menu\Programs\Internet Speed Monitor\Uninstall.lnk
C:\Program Files\Common Files\uninstall information
C:\Program Files\outlook
C:\WINDOWS\pskt.ini
C:\WINDOWS\system32\acespy
C:\WINDOWS\system32\acespy\__acelog.ndx
C:\WINDOWS\system32\acespy\systune.exe
C:\WINDOWS\SYSTEM32\BJlSCJlm.ini
C:\WINDOWS\SYSTEM32\BJlSCJlm.ini2
C:\WINDOWS\system32\Cache
C:\WINDOWS\system32\drivers\fad.sys
C:\WINDOWS\system32\f02WtR
C:\WINDOWS\system32\iifdcYol.dll
C:\WINDOWS\system32\ikoalbyi.dll
C:\WINDOWS\system32\isahnlrg.dll
C:\WINDOWS\system32\kqoejhks.dll
C:\WINDOWS\system32\kvcwfhnq.dll
C:\WINDOWS\system32\lmnbyfmd.dll
C:\WINDOWS\SYSTEM32\loYcdfii.ini
C:\WINDOWS\SYSTEM32\loYcdfii.ini2
C:\WINDOWS\system32\mlJCSlJB.dll
C:\WINDOWS\system32\mobidmrl.dll
C:\WINDOWS\system32\msixu.dll
C:\WINDOWS\system32\MSNSA32.dll
C:\WINDOWS\system32\mvtlkwfs.dll
C:\WINDOWS\system32\pmnNfDUl.dll
C:\WINDOWS\system32\pvttstry.dll
C:\WINDOWS\system32\qmopt.dll
C:\WINDOWS\system32\shdocpe.dll
C:\WINDOWS\system32\SIPSPI32.dll
C:\WINDOWS\system32\wer8274.dll
C:\WINDOWS\system32\whxsncoc.dll
C:\WINDOWS\system32\winfrun32.bin
C:\WINDOWS\system32\zxdnt3d.cfg
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_LANMANDRV
-------\Service_lanmandrv
-------\Service_runtime
-------\Service_smtpdrv
((((((((((((((((((((((((( Files Created from 2008-03-15 to 2008-04-15 )))))))))))))))))))))))))))))))
.
2008-04-12 20:15 . 2008-04-12 20:15 <DIR> d-------- C:\Program Files\Trend Micro
2008-04-12 19:56 . 2008-04-12 19:56 102,400 --a------ C:\WINDOWS\SYSTEM32\oncjefol.exe
2008-04-09 16:53 . 2008-04-09 16:53 3,648 --a------ C:\WINDOWS\SYSTEM32\ecajinbp.dll
2008-04-08 16:50 . 2008-04-08 16:50 3,648 --a------ C:\WINDOWS\SYSTEM32\bdnkgxfp.dll
2008-04-08 16:49 . 2008-04-08 16:49 2,748 --a------ C:\WINDOWS\SYSTEM32\PerfStringBackup.TMP
2008-04-05 07:48 . 2008-04-05 07:48 106,496 --a------ C:\WINDOWS\SYSTEM32\yvunwpsp.exe
2008-04-04 19:52 . 2008-04-04 19:52 110,592 --a------ C:\WINDOWS\SYSTEM32\upajyxkz.exe
2008-04-03 20:07 . 2008-04-03 20:08 <DIR> d-------- C:\Program Files\Panda Security
2008-04-03 19:24 . 2008-04-03 19:24 86,016 --a------ C:\WINDOWS\SYSTEM32\pajczkru.exe
2008-04-03 18:09 . 2008-04-03 18:09 86,016 --a------ C:\WINDOWS\SYSTEM32\xgxcdmza.exe
2008-04-03 18:01 . 2008-04-03 18:01 <DIR> d-------- C:\Documents and Settings\Jonathan\Application Data\SUPERAntiSpyware.com
2008-04-03 18:00 . 2008-04-03 18:00 118,784 --a------ C:\WINDOWS\SYSTEM32\yfyzmngb.exe
2008-04-03 16:56 . 2008-04-03 16:56 118,784 --a------ C:\WINDOWS\SYSTEM32\gpmzsvqx.exe
2008-04-02 20:08 . 2008-04-03 18:12 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2008-04-02 20:08 . 2008-04-02 20:08 <DIR> d-------- C:\Documents and Settings\Luckey Davis\Application Data\SUPERAntiSpyware.com
2008-04-02 20:08 . 2008-04-02 20:08 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-04-02 20:06 . 2008-04-02 20:06 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-04-02 19:55 . 2008-04-02 19:55 <DIR> d-------- C:\Documents and Settings\Administrator.DAMAMA\Application Data\AVG7
2008-04-02 18:31 . 2008-04-02 18:31 <DIR> d-------- C:\Documents and Settings\Administrator.DAMAMA\Application Data\Grisoft
2008-04-02 18:18 . 2008-04-02 18:19 5,797,152 --a------ C:\Program Files\SUPERAntiSpyware.exe
2008-04-02 18:05 . 2008-04-02 18:05 114,688 --a------ C:\WINDOWS\SYSTEM32\lsfctqjs.exe
2008-04-02 16:53 . 2008-04-14 17:16 101,091 --a------ C:\WINDOWS\BMa76912e8.xml
2008-04-02 16:52 . 2008-04-02 16:52 90,112 --a------ C:\WINDOWS\SYSTEM32\tsdsvcze.exe
2008-03-30 12:13 . 2008-03-30 12:13 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\spunkpuf
2008-03-30 12:13 . 2008-03-30 12:13 98,304 --a------ C:\WINDOWS\SYSTEM32\ixwvoryr.exe
2008-03-30 12:13 . 2008-03-30 12:13 72,192 --a------ C:\Documents and Settings\All Users\Application Data\lovytgns.dll
2008-03-29 21:04 . 2008-03-29 21:04 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Rabio
2008-03-17 18:33 . 2008-04-10 22:09 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-03-17 18:33 . 2008-03-17 18:33 1,409 --a------ C:\WINDOWS\QTFont.for
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-14 03:05 4,324 ----a-w C:\Documents and Settings\Luckey Davis\Application Data\LMLayout.dat
2008-04-14 03:05 268 ----a-w C:\Documents and Settings\Luckey Davis\Application Data\LMCPaper.dat
2008-04-05 16:36 --------- d-----w C:\Program Files\SpywareBlaster
2008-04-04 00:33 3,932 ----a-w C:\Documents and Settings\Jonathan\Application Data\LMLayout.dat
2008-04-04 00:33 268 ----a-w C:\Documents and Settings\Jonathan\Application Data\LMCPaper.dat
2008-04-03 03:05 --------- d-----w C:\Documents and Settings\All Users\Application Data\avg7
2008-03-30 04:39 --------- d-----w C:\Documents and Settings\Jonathan\Application Data\AVG7
2008-03-15 00:52 --------- d-----w C:\Documents and Settings\Luckey Davis\Application Data\AVG7
2008-03-03 18:06 --------- d-----w C:\Program Files\PC Tune-Up
2007-10-28 00:48 16,384 ----a-w C:\Documents and Settings\Luckey Davis\NTDLL.dll
2007-10-17 23:27 3,932 ----a-w C:\Documents and Settings\Visitor\Application Data\LMLayout.dat
2007-10-17 23:27 268 ----a-w C:\Documents and Settings\Visitor\Application Data\LMCPaper.dat
2007-08-26 17:02 3,932 ----a-w C:\Documents and Settings\bigdadee\Application Data\LMLayout.dat
2007-08-26 17:02 268 ----a-w C:\Documents and Settings\bigdadee\Application Data\LMCPaper.dat
2007-07-30 16:14 5,616,604 ----a-w C:\WINDOWS\Internet Logs\tvDebug.zip
2007-06-05 22:00 3,932 ----a-w C:\Documents and Settings\Mykel\Application Data\LMLayout.dat
2007-06-05 22:00 268 ----a-w C:\Documents and Settings\Mykel\Application Data\LMCPaper.dat
2006-07-20 02:11 17,344,752 ----a-w C:\Program Files\avg71free_394a763.exe
2006-07-20 02:00 0 ----a-w C:\Documents and Settings\Luckey Davis\loaded.exe
2006-07-17 03:54 0 ----a-w C:\Documents and Settings\bigdadee\loaded.exe
2006-07-14 00:18 1,512,877 ----a-w C:\Documents and Settings\Jonathan\Application Data\Install.dat
2006-05-20 06:07 6,053 ----a-w C:\Program Files\XP_CD-DVD-Fix.zip
2006-05-13 22:27 2,566,736 ----a-w C:\Program Files\spywareblastersetup351.exe
2006-05-04 02:20 7,984,736 ----a-w C:\Program Files\ewido-setup.exe
2006-04-26 01:53 2,521 ----a-w C:\Program Files\xp_taskbar_desktop_fixall.vbs
2006-04-22 05:02 488,144 ----a-w C:\Program Files\HJTsetup.exe
2006-04-11 21:37 40 ----a-w C:\Documents and Settings\Visitor\Application Data\Sskuknwrd.dll
2006-04-11 21:37 112 ----a-w C:\Documents and Settings\Visitor\Application Data\Sskdmns.dll
2005-07-14 03:10 191,448 ----a-w C:\Program Files\Autoruns.zip
2005-07-06 23:03 520 ----a-w C:\Documents and Settings\Luckey Davis\tmp.bat
2005-06-26 21:27 91,656 ----a-w C:\Documents and Settings\Luckey Davis\Application Data\Install.dat
2005-06-24 00:15 0 ----a-w C:\Documents and Settings\bigdadee\Application Data\Install.dat
2005-06-23 22:09 0 ----a-w C:\Documents and Settings\Mykel\Application Data\Install.dat
2003-11-01 01:52 22,528 ----a-w C:\Program Files\HOT.pa
2002-01-18 15:52 3,932 ------w C:\Documents and Settings\LocalService\Application Data\LMLayout.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DellSupport"="C:\Program Files\Dell Support\DSAgnt.exe" [2004-07-19 08:51 306688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MMTray"="C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe" [2006-01-19 12:06 110592]
"MCUpdateExe"="C:\PROGRA~1\McAfee.com\Agent\mcupdate.exe" [ ]
"AWMON"="C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Watch.exe" [2004-10-12 10:14 538112]
"miwq"="C:\WINDOWS\System32\miwq.exe" [ ]
"winupdtl"="C:\WINDOWS\System32\winupdt.exe" [ ]
"Nsv"="C:\WINDOWS\System32\nsvsvc\nsvsvc.exe" [ ]
"vidctrl"="C:\WINDOWS\System32\vidctrl\vidctrl.exe" [ ]
"PSof1"="C:\WINDOWS\System32\PSof1.exe" [ ]
"C:\WINDOWS\VCMnet11.exe"="C:\WINDOWS\VCMnet11.exe" [ ]
"BDFRK"="C:\WINDOWS\System32\BDFRK.exe" [ ]
"Service Host"="C:\WINDOWS\System32\Services\{ACD80455-F4E6-40CF-8620-8C128A194B69}\SVCHOST.EXE" [ ]
"scrsvc"="C:\WINDOWS\System32\scrsvc.exe" [ ]
"bootpd.exe"="C:\WINDOWS\System32\bootpd.exe" [ ]
"033k39X"="traase.exe" []
"_Cat4"="C:\WINDOWS\msmsgr2.exe" [ ]
"vraibh"="c:\windows\system32\wqykxjj.exe" [ ]
"AUNPS2"="AUNPS2.DLL" []
"KavSvc"="C:\WINDOWS\System32\kpnphp.exe" [ ]
"A70F6A1D-0195-42a2-934C-D8AC0F7C08EB"="E6F1873B.DLL" []
"WinTask driver"="C:\WINDOWS\System32\wintask.exe" [ ]
"cfgmgr52"="C:\WINDOWS\cfgmgr52.dll" [ ]
"System"="C:\WINDOWS\System32\kernels32.exe" [ ]
"PayTime"="C:\WINDOWS\System32\paytime.exe" [ ]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG7_Run"="C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe" [2007-10-29 18:18 219136]
C:\Documents and Settings\Mykel\Start Menu\Programs\Startup\
V CAST Music Monitor.lnk - C:\Program Files\Verizon Wireless\V CAST Music\V CAST Music Monitor.exe [2005-11-30 11:32:10 327680]
C:\Documents and Settings\Jonathan\Start Menu\Programs\Startup\
MEMonitor.lnk - C:\Program Files\Verizon Wireless\V CAST Music Manager\MEMonitor.exe [2007-12-26 21:05:19 951640]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Lexmark X125 Settings Utility.lnk - C:\Program Files\Lexmark X125\LEX125SU.exe [2003-10-31 14:42:34 1810432]
[HKEY_LOCAL_MACHINE\software\policies\microsoft\windows\windowsupdate\au]
"NoAutoUpdate"= 1 (0x1)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2006-12-20 13:55 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 2007-02-27 12:39 282624 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
[HKLM\~\startupfolder\C:^Documents and Settings^bigdadee^Start Menu^Programs^Startup^SpywareGuard.lnk]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Aida]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AWMON]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDFRK]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bootpd.exe]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\C:]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\C:\WINDOWS]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\C:\WINDOWS\VCMnet11.exe]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cfgmgr52]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KavSvc]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MCUpdateExe]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nsv]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PayTime]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PSof1]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\scrsvc]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Service Host]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\System]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vidctrl]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vraibh]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinTask driver]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\winupdtl]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\_Cat4]
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\ZoneLabsFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
S0 black;black;C:\WINDOWS\system32\drivers\BlackDrv.sys []
S3 L6DP;L6DP;C:\WINDOWS\system32\Drivers\l6dp.sys []
S3 L6TPortA;Service - Line 6 TonePort UX1;C:\WINDOWS\system32\Drivers\L6TPortA.sys []
S3 RapFile;RapFile;C:\WINDOWS\System32\drivers\RapFile.sys [2003-06-19 19:40]
S3 RapNet;RapNet;C:\WINDOWS\System32\drivers\RapNet.sys [2003-06-19 19:40]
.
Contents of the 'Scheduled Tasks' folder
"2008-04-14 00:12:00 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2003-09-04 05:57:54 C:\WINDOWS\Tasks\ISP signup reminder 1.job"
- C:\WINDOWS\System32\OOBE\OOBEBALN.EXE
"2008-04-15 01:25:00 C:\WINDOWS\Tasks\McAfee.com Update Check (D5ZH1B31-Owner).job"
- C:\PROGRA~1\McAfee.com\Agent\mcupdate.ex
- C:\PROGRA~1\McAfee.com\Agent
"2008-04-15 01:23:02 C:\WINDOWS\Tasks\McAfee.com Update Check (DAMAMA-bigdadee).job"
- C:\PROGRA~1\McAfee.com\Agent\mcupdate.ex
- C:\PROGRA~1\McAfee.com\Agent
"2008-04-15 01:24:00 C:\WINDOWS\Tasks\McAfee.com Update Check (DAMAMA-Jonathan).job"
- C:\PROGRA~1\McAfee.com\Agent\mcupdate.ex
- C:\PROGRA~1\McAfee.com\Agent
"2008-04-15 01:26:00 C:\WINDOWS\Tasks\McAfee.com Update Check (DAMAMA-Luckey Davis).job"
- C:\PROGRA~1\McAfee.com\Agent\mcupdate.ex
- C:\PROGRA~1\McAfee.com\Agent
"2008-04-15 01:23:04 C:\WINDOWS\Tasks\McAfee.com Update Check (DAMAMA-Mykel).job"
- C:\PROGRA~1\McAfee.com\Agent\mcupdate.ex
- C:\PROGRA~1\McAfee.com\Agent
"2008-04-15 01:25:00 C:\WINDOWS\Tasks\McAfee.com Update Check (DAMAMA-Visitor).job"
- C:\PROGRA~1\McAfee.com\Agent\mcupdate.ex
- C:\PROGRA~1\McAfee.com\Agent
.
**************************************************************************
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-04-14 18:22:10
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
"C:\\WINDOWS\\VCMnet11.exe"="C:\\WINDOWS\\VCMnet11.exe"
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Zune\ZuneNss.exe
.
**************************************************************************
.
Completion time: 2008-04-14 18:28:00 - machine was rebooted
ComboFix-quarantined-files.txt 2008-04-15 01:27:52
Pre-Run: 42,112,274,432 bytes free
Post-Run: 42,154,885,120 bytes free
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:32:21 PM, on 4/14/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Watch.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Lexmark X125\LEX125SU.exe
C:\Program Files\Verizon Wireless\V CAST Music Manager\MEMonitor.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.dellnet.comR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://195.95.218.172/index.phpR1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.drsnsrch.com/q.cgi?q=
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
http://195.95.218.172/index.phpR1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride =
http://localhost;O4 - HKLM\..\Run: [MMTray] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe"
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\McAfee.com\Agent\mcupdate.exe
O4 - HKLM\..\Run: [AWMON] "C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Watch.exe"
O4 - HKLM\..\Run: [miwq] C:\WINDOWS\System32\miwq.exe
O4 - HKLM\..\Run: [winupdtl] C:\WINDOWS\System32\winupdt.exe
O4 - HKLM\..\Run: [Nsv] C:\WINDOWS\System32\nsvsvc\nsvsvc.exe
O4 - HKLM\..\Run: [vidctrl] C:\WINDOWS\System32\vidctrl\vidctrl.exe
O4 - HKLM\..\Run: [PSof1] C:\WINDOWS\System32\PSof1.exe
O4 - HKLM\..\Run: [C:\WINDOWS\VCMnet11.exe] C:\WINDOWS\VCMnet11.exe
O4 - HKLM\..\Run: [BDFRK] C:\WINDOWS\System32\BDFRK.exe
O4 - HKLM\..\Run: [Service Host] C:\WINDOWS\System32\Services\{ACD80455-F4E6-40CF-8620-8C128A194B69}\SVCHOST.EXE
O4 - HKLM\..\Run: [scrsvc] C:\WINDOWS\System32\scrsvc.exe
O4 - HKLM\..\Run: [bootpd.exe] C:\WINDOWS\System32\bootpd.exe
O4 - HKLM\..\Run: [033k39X] traase.exe
O4 - HKLM\..\Run: [_Cat4] C:\WINDOWS\msmsgr2.exe
O4 - HKLM\..\Run: [vraibh] c:\windows\system32\wqykxjj.exe r
O4 - HKLM\..\Run: [AUNPS2] RUNDLL32 AUNPS2.DLL,_Run@16
O4 - HKLM\..\Run: [A70F6A1D-0195-42a2-934C-D8AC0F7C08EB] rundll32.exe E6F1873B.DLL,D9EBC318C
O4 - HKLM\..\Run: [cfgmgr52] RunDLL32.EXE C:\WINDOWS\cfgmgr52.dll,DllRun
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'Default user')
O4 - Startup: AutorunsDisabled
O4 - Startup: MEMonitor.lnk = C:\Program Files\Verizon Wireless\V CAST Music Manager\MEMonitor.exe
O4 - Global Startup: Lexmark X125 Settings Utility.lnk = C:\Program Files\Lexmark X125\LEX125SU.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O16 - DPF: {01111F00-3E00-11D2-8470-0060089874ED} -
http://supportsoft.a...ad/tgctlins.cabO16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) -
http://acs.pandasoft...s/as2stubie.cabO16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) -
http://photos.walmar...martActivia.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.micros...b?1143308311578O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.micros...b?1145930346796O16 - DPF: {6F750202-1362-4815-A476-88533DE61D0C} (Kodak Gallery Easy Upload Manager Class) -
http://www.kodakgall..._2/axofupld.cabO16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://acs.pandasoft...free/asinst.cabO16 - DPF: {A8683C98-5341-421B-B23C-8514C05354F1} (FujifilmUploader Class) -
http://photo.walmart...ploadClient.cabO20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O21 - SSODL: System - {7DFB3B61-E65E-45AF-8F61-C52E17764FFC} - (no file)
O22 - SharedTaskScheduler: DCOM Server 2238 - {2C1CD3D7-86AC-4068-93BC-A02304BB2238} - (no file)
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe
--
End of file - 6388 bytes