Here's my ComboFix log. Sorry, but for someone reason it posted twice.
ComboFix 08-06-20.4 - Jessica 2008-06-26 12:32:30.4 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.893 [GMT -5:00]
Running from: C:\Documents and Settings\Jessica\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\Jessica\Desktop\CFScript.txt
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!FILE ::
C:\Program Files\AlbumArt_{033D1EB7-074A-46D2-BA8A-17D0065BFBF3}_Large.jpg
C:\Program Files\AlbumArt_{033D1EB7-074A-46D2-BA8A-17D0065BFBF3}_Small.jpg
C:\Program Files\AlbumArt_{18E0C471-9547-461B-B883-11319DB73B6D}_Large.jpg
C:\Program Files\AlbumArt_{18E0C471-9547-461B-B883-11319DB73B6D}_Small.jpg
C:\Program Files\AlbumArt_{22CCD8D5-06CF-49FE-BC7C-0C701F5B94AD}_Large.jpg
C:\Program Files\AlbumArt_{22CCD8D5-06CF-49FE-BC7C-0C701F5B94AD}_Small.jpg
C:\Program Files\AlbumArt_{28589D26-941F-487F-8083-26A485FE8DF3}_Large.jpg
C:\Program Files\AlbumArt_{28589D26-941F-487F-8083-26A485FE8DF3}_Small.jpg
C:\Program Files\AlbumArt_{305C1E68-7556-453B-B2B3-E07E091D44E6}_Large.jpg
C:\Program Files\AlbumArt_{38B91EDA-C821-4B5B-ADAC-CCE0D5E56086}_Large.jpg
C:\Program Files\AlbumArt_{38B91EDA-C821-4B5B-ADAC-CCE0D5E56086}_Small.jpg
C:\Program Files\AlbumArt_{4FC3015B-9D06-4C8A-BCD0-3199619B0F84}_Large.jpg
C:\Program Files\AlbumArt_{4FC3015B-9D06-4C8A-BCD0-3199619B0F84}_Small.jpg
C:\Program Files\AlbumArt_{6BD410FA-C4E0-40CC-BAA0-721B8D95A562}_Large.jpg
C:\Program Files\AlbumArt_{6BD410FA-C4E0-40CC-BAA0-721B8D95A562}_Small.jpg
C:\Program Files\AlbumArt_{6E91038F-40AF-43DF-B7EB-445D2A7501CE}_Large.jpg
C:\Program Files\AlbumArt_{6E91038F-40AF-43DF-B7EB-445D2A7501CE}_Small.jpg
C:\Program Files\AlbumArt_{78A4206F-C8AD-45D4-B1A5-ED5044C8BAD1}_Large.jpg
C:\Program Files\AlbumArt_{78A4206F-C8AD-45D4-B1A5-ED5044C8BAD1}_Small.jpg
C:\Program Files\AlbumArt_{9830F7D9-15CA-47D1-B61E-D55C9179548A}_Large.jpg
C:\Program Files\AlbumArt_{9830F7D9-15CA-47D1-B61E-D55C9179548A}_Small.jpg
C:\Program Files\AlbumArt_{9DD0D907-2284-4F72-9391-14BB2B690BA8}_Large.jpg
C:\Program Files\AlbumArt_{9DD0D907-2284-4F72-9391-14BB2B690BA8}_Small.jpg
C:\Program Files\AlbumArt_{BEC47316-A373-4054-8368-7D8D139252D7}_Large.jpg
C:\Program Files\AlbumArt_{BEC47316-A373-4054-8368-7D8D139252D7}_Small.jpg
C:\Program Files\AlbumArt_{C1E4658C-4D7B-481F-8A25-E033A117028A}_Large.jpg
C:\Program Files\AlbumArt_{C1E4658C-4D7B-481F-8A25-E033A117028A}_Small.jpg
C:\Program Files\AlbumArt_{C79F18F5-5CE1-469C-9E63-F772460A2263}_Large.jpg
C:\Program Files\AlbumArt_{C79F18F5-5CE1-469C-9E63-F772460A2263}_Small.jpg
C:\Program Files\AlbumArt_{C91F467F-9332-482A-80E6-B9AF8BE8C16D}_Large.jpg
C:\Program Files\AlbumArt_{C91F467F-9332-482A-80E6-B9AF8BE8C16D}_Small.jpg
C:\Program Files\AlbumArt_{CC231E2D-2C05-4C61-813B-E4B6D42BED36}_Large.jpg
C:\Program Files\AlbumArt_{CC231E2D-2C05-4C61-813B-E4B6D42BED36}_Small.jpg
C:\Program Files\AlbumArt_{DE36FA42-A68C-4CA2-AE5B-4C11D5042FDF}_Large.jpg
C:\Program Files\AlbumArt_{DE36FA42-A68C-4CA2-AE5B-4C11D5042FDF}_Small.jpg
C:\Program Files\AlbumArt_{EAB9A23B-D51C-4FE4-84DA-1780064BD5D9}_Large.jpg
C:\Program Files\AlbumArt_{EAB9A23B-D51C-4FE4-84DA-1780064BD5D9}_Small.jpg
C:\Program Files\AlbumArt_{F41A35BC-CE0D-4961-B41D-D6040135C77A}_Large.jpg
C:\Program Files\AlbumArt_{F41A35BC-CE0D-4961-B41D-D6040135C77A}_Small.jpg
C:\Program Files\AlbumArtSmall.jpg
C:\Program Files\Aretha Franklin (feat. Lauryn Hill) - A Rose Is Still A Rose.mp3
C:\Program Files\Dixie Chicks - Landslide.mp3
C:\Program Files\Elisa - Dancing.mp3
C:\Program Files\Fall Out Boy - Get Busy Living Or Get Busy Dying.mp3
C:\Program Files\Folder.jpg
C:\Program Files\Harvey Birdman Attorney at Law - 103 - Death By Chocolate.mpg
C:\Program Files\Harvey Birdman Attorney at Law - 109 - Blackwatch Plaid.mpg
C:\Program Files\Journey - Don't Stop Beleiving.MP3
C:\Program Files\Journey - When The Lights Go Down In The City.mp3
C:\Program Files\Madonna Feat Justin Timberlake & Timbaland-4 Minutes.mp3
C:\Program Files\Maroon 5 - Harder To Breathe.mp3
C:\Program Files\Maroon 5 - Shiver.mp3
C:\Program Files\Maroon 5 - Simple Kind of Lovely.mp3
C:\Program Files\Maroon five - Rag Doll.mp3
C:\Program Files\Musiq Soulchild - Dont Change.mp3
C:\Program Files\Nickelback - Photogragh.mp3
C:\Program Files\Nsync - I thought she knew.mp3
C:\Program Files\Nsync - Selfish.mp3
C:\Program Files\Nsync - Something Like You.mp3
C:\Program Files\Pharell Williams, P Diddy, Lenny Kravitz - Show Me Your Soul.mp3
C:\Program Files\Phil Collins - Take Me Home (long version).mp3
C:\Program Files\Phil Collins - You'll Be In My Heart.mp3
C:\Program Files\Sade - King Of Sorrow.mp3
C:\Program Files\Switchfoot - I Dare You To Move (A Walk To Remember Soundtrack)(1).mp3
C:\WINDOWS\system32\6709BCCFE0.sys
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\Jessica\Application Data\FrostWire
C:\Documents and Settings\Jessica\Application Data\FrostWire\createtimes.cache
C:\Documents and Settings\Jessica\Application Data\FrostWire\data.ser
C:\Documents and Settings\Jessica\Application Data\FrostWire\fileurns.bak
C:\Documents and Settings\Jessica\Application Data\FrostWire\fileurns.cache
C:\Documents and Settings\Jessica\Application Data\FrostWire\filters.props
C:\Documents and Settings\Jessica\Application Data\FrostWire\frostwire.props
C:\Documents and Settings\Jessica\Application Data\FrostWire\gnutella.net
C:\Documents and Settings\Jessica\Application Data\FrostWire\installation.props
C:\Documents and Settings\Jessica\Application Data\FrostWire\library.dat
C:\Documents and Settings\Jessica\Application Data\FrostWire\pub1.key
C:\Documents and Settings\Jessica\Application Data\FrostWire\public.key
C:\Documents and Settings\Jessica\Application Data\FrostWire\questions.props
C:\Documents and Settings\Jessica\Application Data\FrostWire\responses.cache
C:\Documents and Settings\Jessica\Application Data\FrostWire\secureMessage.key
C:\Documents and Settings\Jessica\Application Data\FrostWire\spam.dat
C:\Documents and Settings\Jessica\Application Data\FrostWire\tables.props
C:\Documents and Settings\Jessica\Application Data\FrostWire\themes\frostwire_theme.skin
C:\Documents and Settings\Jessica\Application Data\FrostWire\themes\frostwire_theme\kill.png
C:\Documents and Settings\Jessica\Application Data\FrostWire\themes\frostwire_theme\kill_on.png
C:\Documents and Settings\Jessica\Application Data\FrostWire\themes\frostwire_theme\theme.txt
C:\Documents and Settings\Jessica\Application Data\FrostWire\ttree.cache
C:\Documents and Settings\Jessica\Application Data\FrostWire\version.key
C:\Documents and Settings\Jessica\Application Data\FrostWire\version.xml
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\data\audio.sxml
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\data\delete_me
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\data\video.sxml
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\misc\application.gif
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\misc\audio.gif
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\misc\document.gif
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\misc\image.gif
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\misc\video.gif
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\schemas\application.xsd
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\schemas\audio.xsd
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\schemas\document.xsd
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\schemas\image.xsd
C:\Documents and Settings\Jessica\Application Data\FrostWire\xml\schemas\video.xsd
C:\Program Files\AlbumArt_{033D1EB7-074A-46D2-BA8A-17D0065BFBF3}_Large.jpg
C:\Program Files\AlbumArt_{033D1EB7-074A-46D2-BA8A-17D0065BFBF3}_Small.jpg
C:\Program Files\AlbumArt_{18E0C471-9547-461B-B883-11319DB73B6D}_Large.jpg
C:\Program Files\AlbumArt_{18E0C471-9547-461B-B883-11319DB73B6D}_Small.jpg
C:\Program Files\AlbumArt_{22CCD8D5-06CF-49FE-BC7C-0C701F5B94AD}_Large.jpg
C:\Program Files\AlbumArt_{22CCD8D5-06CF-49FE-BC7C-0C701F5B94AD}_Small.jpg
C:\Program Files\AlbumArt_{28589D26-941F-487F-8083-26A485FE8DF3}_Large.jpg
C:\Program Files\AlbumArt_{28589D26-941F-487F-8083-26A485FE8DF3}_Small.jpg
C:\Program Files\AlbumArt_{305C1E68-7556-453B-B2B3-E07E091D44E6}_Large.jpg
C:\Program Files\AlbumArt_{38B91EDA-C821-4B5B-ADAC-CCE0D5E56086}_Large.jpg
C:\Program Files\AlbumArt_{38B91EDA-C821-4B5B-ADAC-CCE0D5E56086}_Small.jpg
C:\Program Files\AlbumArt_{4FC3015B-9D06-4C8A-BCD0-3199619B0F84}_Large.jpg
C:\Program Files\AlbumArt_{4FC3015B-9D06-4C8A-BCD0-3199619B0F84}_Small.jpg
C:\Program Files\AlbumArt_{6BD410FA-C4E0-40CC-BAA0-721B8D95A562}_Large.jpg
C:\Program Files\AlbumArt_{6BD410FA-C4E0-40CC-BAA0-721B8D95A562}_Small.jpg
C:\Program Files\AlbumArt_{6E91038F-40AF-43DF-B7EB-445D2A7501CE}_Large.jpg
C:\Program Files\AlbumArt_{6E91038F-40AF-43DF-B7EB-445D2A7501CE}_Small.jpg
C:\Program Files\AlbumArt_{78A4206F-C8AD-45D4-B1A5-ED5044C8BAD1}_Large.jpg
C:\Program Files\AlbumArt_{78A4206F-C8AD-45D4-B1A5-ED5044C8BAD1}_Small.jpg
C:\Program Files\AlbumArt_{9830F7D9-15CA-47D1-B61E-D55C9179548A}_Large.jpg
C:\Program Files\AlbumArt_{9830F7D9-15CA-47D1-B61E-D55C9179548A}_Small.jpg
C:\Program Files\AlbumArt_{9DD0D907-2284-4F72-9391-14BB2B690BA8}_Large.jpg
C:\Program Files\AlbumArt_{9DD0D907-2284-4F72-9391-14BB2B690BA8}_Small.jpg
C:\Program Files\AlbumArt_{BEC47316-A373-4054-8368-7D8D139252D7}_Large.jpg
C:\Program Files\AlbumArt_{BEC47316-A373-4054-8368-7D8D139252D7}_Small.jpg
C:\Program Files\AlbumArt_{C1E4658C-4D7B-481F-8A25-E033A117028A}_Large.jpg
C:\Program Files\AlbumArt_{C1E4658C-4D7B-481F-8A25-E033A117028A}_Small.jpg
C:\Program Files\AlbumArt_{C79F18F5-5CE1-469C-9E63-F772460A2263}_Large.jpg
C:\Program Files\AlbumArt_{C79F18F5-5CE1-469C-9E63-F772460A2263}_Small.jpg
C:\Program Files\AlbumArt_{C91F467F-9332-482A-80E6-B9AF8BE8C16D}_Large.jpg
C:\Program Files\AlbumArt_{C91F467F-9332-482A-80E6-B9AF8BE8C16D}_Small.jpg
C:\Program Files\AlbumArt_{CC231E2D-2C05-4C61-813B-E4B6D42BED36}_Large.jpg
C:\Program Files\AlbumArt_{CC231E2D-2C05-4C61-813B-E4B6D42BED36}_Small.jpg
C:\Program Files\AlbumArt_{DE36FA42-A68C-4CA2-AE5B-4C11D5042FDF}_Large.jpg
C:\Program Files\AlbumArt_{DE36FA42-A68C-4CA2-AE5B-4C11D5042FDF}_Small.jpg
C:\Program Files\AlbumArt_{EAB9A23B-D51C-4FE4-84DA-1780064BD5D9}_Large.jpg
C:\Program Files\AlbumArt_{EAB9A23B-D51C-4FE4-84DA-1780064BD5D9}_Small.jpg
C:\Program Files\AlbumArt_{F41A35BC-CE0D-4961-B41D-D6040135C77A}_Large.jpg
C:\Program Files\AlbumArt_{F41A35BC-CE0D-4961-B41D-D6040135C77A}_Small.jpg
C:\Program Files\AlbumArtSmall.jpg
C:\Program Files\Aretha Franklin (feat. Lauryn Hill) - A Rose Is Still A Rose.mp3
C:\Program Files\Dixie Chicks - Landslide.mp3
C:\Program Files\Elisa - Dancing.mp3
C:\Program Files\Fall Out Boy - Get Busy Living Or Get Busy Dying.mp3
C:\Program Files\Folder.jpg
C:\Program Files\FrostWire
C:\Program Files\FrostWire\clink.jar
C:\Program Files\FrostWire\commons-httpclient.jar
C:\Program Files\FrostWire\commons-logging.jar
C:\Program Files\FrostWire\commons-net.jar
C:\Program Files\FrostWire\commons-pool.jar
C:\Program Files\FrostWire\daap.jar
C:\Program Files\FrostWire\EULA.txt
C:\Program Files\FrostWire\FrostWire.exe
C:\Program Files\FrostWire\FrostWire.ico
C:\Program Files\FrostWire\FrostWire.jar
C:\Program Files\FrostWire\GPL2.txt
C:\Program Files\FrostWire\hashes
C:\Program Files\FrostWire\hs_err_pid1912.log
C:\Program Files\FrostWire\i18n.jar
C:\Program Files\FrostWire\icu4j.jar
C:\Program Files\FrostWire\id3v2.jar
C:\Program Files\FrostWire\irc.jar
C:\Program Files\FrostWire\jcraft.jar
C:\Program Files\FrostWire\jdic.dll
C:\Program Files\FrostWire\jdic.jar
C:\Program Files\FrostWire\jdic_stub.jar
C:\Program Files\FrostWire\jl011.jar
C:\Program Files\FrostWire\jmdns.jar
C:\Program Files\FrostWire\jython.jar
C:\Program Files\FrostWire\log.txt
C:\Program Files\FrostWire\log4j.jar
C:\Program Files\FrostWire\log4j.properties
C:\Program Files\FrostWire\looks.jar
C:\Program Files\FrostWire\MessagesBundle.properties
C:\Program Files\FrostWire\MessagesBundles.jar
C:\Program Files\FrostWire\mp3sp14.jar
C:\Program Files\FrostWire\pmf.ico
C:\Program Files\FrostWire\ProgressTabs.jar
C:\Program Files\FrostWire\SystemUtilities.dll
C:\Program Files\FrostWire\themes.jar
C:\Program Files\FrostWire\tray.dll
C:\Program Files\FrostWire\tritonus.jar
C:\Program Files\FrostWire\Uninstall.exe
C:\Program Files\FrostWire\update.ver
C:\Program Files\FrostWire\vorbis.jar
C:\Program Files\FrostWire\xml-apis.jar
C:\Program Files\FrostWire\xml.war
C:\Program Files\Harvey Birdman Attorney at Law - 103 - Death By Chocolate.mpg
C:\Program Files\Harvey Birdman Attorney at Law - 109 - Blackwatch Plaid.mpg
C:\Program Files\Journey - Don't Stop Beleiving.MP3
C:\Program Files\Journey - When The Lights Go Down In The City.mp3
C:\Program Files\Madonna Feat Justin Timberlake & Timbaland-4 Minutes.mp3
C:\Program Files\Maroon 5 - Harder To Breathe.mp3
C:\Program Files\Maroon 5 - Shiver.mp3
C:\Program Files\Maroon 5 - Simple Kind of Lovely.mp3
C:\Program Files\Maroon five - Rag Doll.mp3
C:\Program Files\Musiq Soulchild - Dont Change.mp3
C:\Program Files\Nickelback - Photogragh.mp3
C:\Program Files\Nsync - I thought she knew.mp3
C:\Program Files\Nsync - Selfish.mp3
C:\Program Files\Nsync - Something Like You.mp3
C:\Program Files\Pharell Williams, P Diddy, Lenny Kravitz - Show Me Your Soul.mp3
C:\Program Files\Phil Collins - Take Me Home (long version).mp3
C:\Program Files\Phil Collins - You'll Be In My Heart.mp3
C:\Program Files\Sade - King Of Sorrow.mp3
C:\Program Files\Switchfoot - I Dare You To Move (A Walk To Remember Soundtrack)(1).mp3
C:\WINDOWS\system32\6709BCCFE0.sys
.
((((((((((((((((((((((((( Files Created from 2008-05-26 to 2008-06-26 )))))))))))))))))))))))))))))))
.
2008-06-25 12:39 . 2008-06-25 12:39 <DIR> d-------- C:\Deckard
2008-06-24 15:25 . 2008-06-24 15:25 <DIR> d-------- C:\Documents and Settings\Pimpin Ken\Application Data\Corel
2008-06-21 23:54 . 2008-06-21 23:54 1,932 --a------ C:\WINDOWS\system32\ealregsnapshot1.reg
2008-06-11 08:29 . 2008-06-13 06:05 272,128 --------- C:\WINDOWS\system32\dllcache\bthport.sys
2008-06-11 08:29 . 2008-05-08 09:02 203,136 --------- C:\WINDOWS\system32\dllcache\rmcast.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-06-26 17:19 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-06-26 17:19 --------- d-----w C:\Program Files\Spyware Doctor
2008-06-26 16:47 --------- d-----w C:\Program Files\Dl_cats
2008-06-24 20:34 2,516 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
2008-06-13 11:05 272,128 ------w C:\WINDOWS\system32\drivers\bthport.sys
2008-06-12 00:35 383 --sh--w C:\Program Files\desktop.ini
2008-05-31 22:58 --------- d-----w C:\Program Files\VideoLAN
2008-05-31 22:56 --------- d-----w C:\Program Files\DivX
2008-05-13 15:55 --------- d-----w C:\Documents and Settings\Pimpin Ken\Application Data\CyberLink
2008-05-13 01:49 161,096 ----a-w C:\WINDOWS\system32\DivXCodecVersionChecker.exe
2008-05-09 21:47 --------- d-----w C:\Program Files\Java
2008-05-09 19:37 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-05-09 19:26 --------- d-----w C:\Program Files\Yahoo! Games
2008-05-08 20:13 --------- d-----w C:\Documents and Settings\Jessica\Application Data\Malwarebytes
2008-05-08 20:13 --------- d-----w C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-05-08 16:47 --------- d-----w C:\Program Files\Trend Micro
2008-05-08 14:02 203,136 ----a-w C:\WINDOWS\system32\drivers\rmcast.sys
2008-05-07 18:31 10,752 ----a-w C:\WINDOWS\system32\dllcache\clb.dll
2008-05-07 18:31 10,752 ----a-w C:\WINDOWS\system32\clb.dll
2008-05-07 05:12 1,288,192 ----a-w C:\WINDOWS\system32\quartz.dll
2008-05-07 05:12 1,288,192 ------w C:\WINDOWS\system32\dllcache\quartz.dll
2008-05-06 00:10 --------- d-----w C:\Program Files\Mozilla Firefox(2)
2008-05-04 19:44 --------- d-----w C:\Program Files\Common Files\INCA Shared
2008-05-04 15:06 --------- d-----w C:\Documents and Settings\kiwana\Application Data\InstallShield Installation Information
2008-05-01 18:31 --------- d-----w C:\Program Files\Spybot - Search & Destroy
2008-05-01 18:31 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-05-01 18:06 159,880 ----a-w C:\WINDOWS\system32\drivers\pctfw2.sys
2008-04-29 19:41 --------- d-----w C:\Documents and Settings\Jessica\Application Data\Move Networks
2008-04-28 19:57 634,628 ----a-w C:\WINDOWS\java\Packages\BDZ3XBF9.ZIP
2008-04-28 03:45 --------- d-----w C:\Program Files\Google
2008-04-27 17:33 --------- d-----w C:\Program Files\Common Files\PC Tools
2008-04-27 17:32 --------- d-----w C:\Documents and Settings\All Users\Application Data\PC Tools
2008-04-27 07:24 --------- d-----w C:\Documents and Settings\Jessica\Application Data\PC Tools
2008-04-26 21:42 --------- d-----w C:\Documents and Settings\All Users\Application Data\Visual Networks
2008-04-24 13:10 86,528 ----a-w C:\WINDOWS\system32\VACFix.exe
2008-04-24 03:16 3,591,680 ----a-w C:\WINDOWS\system32\dllcache\mshtml.dll
2008-04-24 03:14 82,944 ----a-w C:\WINDOWS\system32\IEDFix.exe
2008-04-24 03:14 82,944 ----a-w C:\WINDOWS\system32\404Fix.exe
2008-04-22 07:40 625,664 ------w C:\WINDOWS\system32\dllcache\iexplore.exe
2008-04-22 07:39 70,656 ------w C:\WINDOWS\system32\dllcache\ie4uinit.exe
2008-04-22 07:39 13,824 ------w C:\WINDOWS\system32\dllcache\ieudinit.exe
2008-04-20 05:07 161,792 ----a-w C:\WINDOWS\system32\dllcache\ieakui.dll
2008-04-14 10:42 985,088 ----a-w C:\WINDOWS\system32\setupapi.dll
2008-04-14 10:42 11,264 ----a-w C:\WINDOWS\system32\spnpinst.exe
2008-04-14 10:41 423,936 ----a-w C:\WINDOWS\system32\licdll.dll
2008-04-14 00:25 1,804 ----a-w C:\WINDOWS\system32\dcache.bin
2008-04-14 00:16 329,728 ----a-w C:\WINDOWS\system32\netsetup.exe
2008-04-14 00:13 92,424 ----a-w C:\WINDOWS\system32\rdpdd.dll
2008-04-14 00:13 87,176 ----a-w C:\WINDOWS\system32\rdpwsx.dll
2008-04-14 00:13 12,168 ----a-w C:\WINDOWS\system32\tsddd.dll
2008-04-14 00:11 997,376 ----a-w C:\WINDOWS\system32\msgina.dll
2008-04-14 00:10 53,279 ----a-w C:\WINDOWS\system32\odbcji32.dll
2008-04-14 00:10 4,126 ----a-w C:\WINDOWS\system32\msdxmlc.dll
2008-04-14 00:10 4,126 ----a-w C:\WINDOWS\system32\dllcache\msdxmlc.dll
2008-04-14 00:10 3,584 ----a-w C:\WINDOWS\system32\msafd.dll
2008-04-13 22:42 8,944,288 ----a-w C:\Program Files\P-Diddy feat. Keisha Cole- Last night.mp3
2008-04-13 22:19 2,353 --sh--w C:\Program Files\AlbumArt_{305C1E68-7556-453B-B2B3-E07E091D44E6}_Small.jpg
2008-04-13 22:18 9,449 --sh--w C:\Program Files\AlbumArt_{AE85E330-21BE-4D3D-9954-75312FFF543E}_Large.jpg
2008-04-13 22:18 9,173 --sh--w C:\Program Files\AlbumArt_{5BA158BA-1376-4B75-9912-3EADD5C69625}_Large.jpg
2008-04-13 22:18 7,783 --sh--w C:\Program Files\AlbumArt_{A158502E-D531-4BC9-966B-5CFC0EEE8D9D}_Large.jpg
2008-04-13 22:18 2,429 --sh--w C:\Program Files\AlbumArt_{AE85E330-21BE-4D3D-9954-75312FFF543E}_Small.jpg
2008-04-13 22:18 2,219 --sh--w C:\Program Files\AlbumArt_{A158502E-D531-4BC9-966B-5CFC0EEE8D9D}_Small.jpg
2008-04-13 22:17 8,798 --sh--w C:\Program Files\AlbumArt_{9EBDBA08-AE07-4F77-A6CD-6E5E0E8FFE71}_Large.jpg
2008-04-13 22:17 3,024 --sh--w C:\Program Files\AlbumArt_{6F5AD8DD-5286-4BD4-ABAC-39B30077C604}_Small.jpg
2008-04-13 22:17 2,765 --sh--w C:\Program Files\AlbumArt_{A656F895-F50C-43C6-815D-1000CCE2C02C}_Small.jpg
2008-04-13 22:17 2,403 --sh--w C:\Program Files\AlbumArt_{5BA158BA-1376-4B75-9912-3EADD5C69625}_Small.jpg
2008-04-13 22:17 2,388 --sh--w C:\Program Files\AlbumArt_{9EBDBA08-AE07-4F77-A6CD-6E5E0E8FFE71}_Small.jpg
2008-04-13 22:17 12,196 --sh--w C:\Program Files\AlbumArt_{6F5AD8DD-5286-4BD4-ABAC-39B30077C604}_Large.jpg
2008-04-13 22:17 10,291 --sh--w C:\Program Files\AlbumArt_{A656F895-F50C-43C6-815D-1000CCE2C02C}_Large.jpg
2008-04-13 22:16 3,208,853 ----a-w C:\Program Files\Fall Out Boy-This Aint A Scene, Its An Arms Race.mp3
2008-04-13 22:16 10,044 --sh--w C:\Program Files\AlbumArt_{20EEE73E-5BD8-4F6F-8B04-8FDB3C988089}_Large.jpg
2008-04-13 22:15 8,915 --sh--w C:\Program Files\AlbumArt_{38EA4E20-F84E-4BA2-9B46-7CE9BA2863A4}_Large.jpg
2008-04-13 22:15 8,814 --sh--w C:\Program Files\AlbumArt_{F93F3FAD-2F98-48F1-870E-9AD9F9E6E2E5}_Large.jpg
2008-04-13 22:15 7,954 --sh--w C:\Program Files\AlbumArt_{B6287462-6DFF-464A-89FD-B0867AB749E3}_Large.jpg
2008-04-13 22:15 2,509 --sh--w C:\Program Files\AlbumArt_{20EEE73E-5BD8-4F6F-8B04-8FDB3C988089}_Small.jpg
2008-04-13 22:15 2,412 --sh--w C:\Program Files\AlbumArt_{38EA4E20-F84E-4BA2-9B46-7CE9BA2863A4}_Small.jpg
2008-04-13 22:15 2,095 --sh--w C:\Program Files\AlbumArt_{B6287462-6DFF-464A-89FD-B0867AB749E3}_Small.jpg
2008-04-13 22:14 8,574 --sh--w C:\Program Files\AlbumArt_{0C5915AB-BCCE-4C76-B3B0-BC59D1CC4A1B}_Large.jpg
2008-04-13 22:14 7,495 --sh--w C:\Program Files\AlbumArt_{08098882-E0B2-43A9-942F-12F923FF5998}_Large.jpg
2008-04-13 22:14 2,389 --sh--w C:\Program Files\AlbumArt_{0C5915AB-BCCE-4C76-B3B0-BC59D1CC4A1B}_Small.jpg
2008-04-13 22:14 2,229 --sh--w C:\Program Files\AlbumArt_{08098882-E0B2-43A9-942F-12F923FF5998}_Small.jpg
2008-04-13 22:14 2,175 --sh--w C:\Program Files\AlbumArt_{F93F3FAD-2F98-48F1-870E-9AD9F9E6E2E5}_Small.jpg
2008-04-13 21:00 103,424 ----a-w C:\WINDOWS\system32\dpcdll.dll
2008-04-13 19:30 1,845,632 ----a-w C:\WINDOWS\system32\win32k.sys
2008-04-13 19:27 2,188,928 ----a-w C:\WINDOWS\system32\ntoskrnl.exe
2008-04-13 18:44 17,664 ----a-w C:\WINDOWS\system32\watchdog.sys
2008-04-13 18:35 24,064 ----a-w C:\WINDOWS\system32\pidgen.dll
2008-04-13 18:31 7,424 ----a-w C:\WINDOWS\system32\kd1394.dll
2008-04-13 18:31 2,065,792 ----a-w C:\WINDOWS\system32\ntkrnlpa.exe
2008-04-13 18:30 61,440 ----a-w C:\WINDOWS\system32\msvcrt40.dll
2008-04-13 18:14 76,800 ------w C:\WINDOWS\system32\msshavmsg.dll
2008-04-13 17:39 438,784 ----a-w C:\WINDOWS\system32\xpob2res.dll
2008-04-13 17:39 2,897,920 ----a-w C:\WINDOWS\system32\xpsp2res.dll
2008-04-13 17:39 187,392 ----a-w C:\WINDOWS\system32\xpsp1res.dll
2008-04-13 17:37 208,384 ----a-w C:\WINDOWS\system32\rsaenh.dll
2008-04-13 17:37 138,752 ----a-w C:\WINDOWS\system32\dssenh.dll
2008-04-13 17:27 79,872 ------w C:\WINDOWS\system32\msxml6r.dll
2008-04-13 17:27 79,872 ------w C:\WINDOWS\system32\dllcache\msxml6r.dll
2008-04-13 17:26 94,208 ----a-w C:\WINDOWS\system32\odbcint.dll
2008-04-13 17:26 12,288 ----a-w C:\WINDOWS\system32\odbcp32r.dll
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of C:\Documents and Settings\Pimpin Ken\Application Data\Corel ----
2008-06-24 15:28 86511 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\wp12US.wpt
2008-06-24 15:28 22297 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\XML.wpt
2004-01-27 11:01 2900 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect Office 12\User Config\corelpdf.ini
2004-01-16 18:41 23442 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect\12\Labels\maco.lab
2004-01-16 18:36 17288 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect\12\Labels\WilsonJ.lab
2003-11-11 15:03 4009 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\wp_org.wcm
2003-11-11 15:02 65281 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\tconvert.wcm
2003-11-11 15:02 58688 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\uawp12EN.wcm
2003-11-11 15:01 8158 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\SAVETOA.WCM
2003-11-11 15:00 42426 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\reverse.wcm
2003-11-11 15:00 18553 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\saveall.wcm
2003-11-11 14:59 160042 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\prompts.wcm
2003-11-11 14:47 44524 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\pleading.wcm
2003-11-11 14:38 45173 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\LONGNAME.WCM
2003-11-11 14:38 43717 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\PARABRK.WCM
2003-11-11 14:37 4318 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\nomacro.wcm
2003-11-11 14:36 7454 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\FONTUP.WCM
2003-11-11 14:36 2955 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\footend.wcm
2003-11-11 14:35 7617 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\FONTDN.WCM
2003-11-11 14:30 13243 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\flipenv.wcm
2003-11-11 14:29 19439 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\EXPNDALL.WCM
2003-11-11 14:29 17429 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\FILESTMP.WCM
2003-11-11 14:28 2955 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\endfoot.wcm
2003-11-11 14:27 10929 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\DCConvert.wcm
2003-11-11 14:24 112831 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\cvtdocs12.wcm
2003-11-11 14:23 3267 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\CTRLM.WCM
2003-11-11 14:23 21991 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\closeall.wcm
2003-11-11 14:22 7920 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\checkbox.wcm
2003-11-11 14:22 15786 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ALLFONTS.WCM
2003-11-11 12:54 20972 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\adrs2mrg.wcm
2003-11-11 12:52 45331 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ABBREV.WCM
2003-11-11 12:34 7832 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\wp_pr.wcm
2003-08-14 13:06 3018 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect Office 12\User Config\CorelApp.ini
2003-08-14 13:05 54712 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect Office 12\User Config\filters.ini
2003-01-01 13:01 79658 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\app-a50.wpt
2003-01-01 13:01 76263 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\app-d30.wpt
2003-01-01 13:01 7128 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\stucco2.gif
2003-01-01 13:01 48935 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\html32ip.wpt
2003-01-01 13:01 4483 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\stucco1.gif
2003-01-01 13:01 41380 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\overview.wpt
2003-01-01 13:01 40744 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\html3_2.wpt
2003-01-01 13:01 40086 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\xmlnews.wpt
2003-01-01 13:01 37971 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\html.wpt
2003-01-01 13:01 29961 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\sample1.wpt
2003-01-01 13:01 27328 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\wrinkle.gif
2003-01-01 13:01 248062 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\docbook3.wpt
2003-01-01 13:01 218743 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\docbook2.wpt
2003-01-01 13:01 16395 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\tile.gif
2003-01-01 13:01 161751 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\sample2.wpt
2003-01-01 13:01 12684 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\water.gif
2003-01-01 13:01 101368 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\XML\teilite.wpt
2003-01-01 13:00 9585 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\marble1.gif
2003-01-01 13:00 8391 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\oil1.gif
2003-01-01 13:00 8235 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\lace1.gif
2003-01-01 13:00 5120 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\_autotmp.wpx
2003-01-01 13:00 44948 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\paper2.gif
2003-01-01 13:00 38696 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\marble2.gif
2003-01-01 13:00 36014 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\greenbrk.gif
2003-01-01 13:00 3362 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\rock.gif
2003-01-01 13:00 27655 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\pine.gif
2003-01-01 13:00 19328 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\poplar.gif
2003-01-01 13:00 17797 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\bluterra.gif
2003-01-01 13:00 17376 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\qw12EN.wpt
2003-01-01 13:00 16182 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\paper1.gif
2003-01-01 13:00 15238 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\poly.gif
2003-01-01 13:00 111114 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\lace2.gif
2003-01-01 13:00 10491 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\hatch.gif
2003-01-01 13:00 10123 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectExpert\12\Custom WP Templates\oil2.gif
2003-01-01 12:57 4284 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect\12\Labels\Tower.lab
2003-01-01 12:56 60442 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect\12\Labels\Herma_e.lab
2003-01-01 12:55 41772 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect\12\Labels\Avery Labels EN.lab
2003-01-01 12:55 24720 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect\12\Labels\Avery Labels A4.lab
2003-01-01 12:55 1290 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect\12\Labels\c-line.lab
2003-01-01 12:55 12654 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect\12\Labels\apli_eng.lab
2003-01-01 12:53 6712 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ender06.wpg
2003-01-01 12:53 670 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ender02.wpg
2003-01-01 12:53 482 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ender10.wpg
2003-01-01 12:53 3418 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ender05.wpg
2003-01-01 12:53 2271 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ender07.wpg
2003-01-01 12:53 1855 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ender08.wpg
2003-01-01 12:53 1454 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ender03.wpg
2003-01-01 12:53 1404 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ender09.wpg
2003-01-01 12:53 1286 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ender01.wpg
2003-01-01 12:53 1167 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\PerfectScript\12\WordPerfect\ender04.wpg
2003-01-01 12:49 69 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect Office 12\User Config\CdrConv.ini
2003-01-01 12:49 3249 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect Office 12\User Config\Corelflt.ini
2003-01-01 12:49 1887 --a------ C:\Documents and Settings\Pimpin Ken\Application Data\Corel\WordPerfect Office 12\User Config\Color.ini
---- Directory of C:\Documents and Settings\Pimpin Ken\Application Data\Help ----
((((((((((((((((((((((((((((( snapshot@2008-06-25_18.13.10.14 )))))))))))))))))))))))))))))))))))))))))
.
- 2008-06-25 23:04:38 2,048 --s-a-w C:\WINDOWS\bootstat.dat
+ 2008-06-26 14:18:51 2,048 --s-a-w C:\WINDOWS\bootstat.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-13 19:12 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="C:\Program Files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 20:42 1404928]
"IntelMeM"="C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe" [2003-09-03 21:12 221184]
"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-07-27 17:50 221184]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2004-07-27 17:50 81920]
"DMXLauncher"="C:\Program Files\Dell\Media Experience\DMXLauncher.exe" [2005-01-27 02:02 86016]
"DLCCCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll" [2005-06-07 07:38 69632]
"DVDLauncher"="C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" [2005-02-23 16:19 53248]
"RealTray"="C:\Program Files\Real\RealPlayer\RealPlay.exe" [2006-04-08 23:05 26112]
"igfxtray"="C:\WINDOWS\system32\igfxtray.exe" [2005-09-20 09:35 94208]
"igfxhkcmd"="C:\WINDOWS\system32\hkcmd.exe" [2005-09-20 09:32 77824]
"igfxpers"="C:\WINDOWS\system32\igfxpers.exe" [2005-09-20 09:36 114688]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-12-02 20:39 282624]
"dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [2005-05-31 06:33 122941]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 23:16 39792]
"dscactivate"="C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" [2007-11-15 09:24 16384]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" [2008-03-25 04:28 144784]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"MySpaceIM"="C:\Program Files\MySpace\IM\MySpaceIM.exe" [2007-12-18 20:47 8720384]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.SP54"= SP5X_32.DLL
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Yahoo!\\Messenger\\YPager.exe"=
"C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"=
"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\YPager.exe"=
"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\yserver.exe"=
"C:\\Program Files\\Kodak\\Kodak EasyShare software\\bin\\EasyShare.exe"=
"C:\\Program Files\\Kodak\\KODAK Software Updater\\7288971\\Program\\Kodak Software Updater.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\MySpace\\IM\\MySpaceIM.exe"=
"C:\\Program Files\\Internet Explorer\\iexplore.exe"=
"C:\\Program Files\\Electronic Arts\\EADM\\Core.exe"=
R1 pctfw2;pctfw2;C:\WINDOWS\system32\drivers\pctfw2.sys [2008-05-01 13:06]
S3 dump_wmimmc;dump_wmimmc;C:\ijji\ENGLISH\U_SF\GameGuard\dump_wmimmc.sys []
*Newly Created Service* - CATCHME
.
Contents of the 'Scheduled Tasks' folder
"2008-06-18 13:21:04 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-06-26 12:34:21
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-06-26 12:37:12
ComboFix-quarantined-files.txt 2008-06-26 17:36:26
ComboFix2.txt 2008-06-25 23:13:38
Pre-Run: 44,930,134,016 bytes free
Post-Run: 44,950,847,488 bytes free
493 --- E O F --- 2008-06-20 15:32:29
Edited by Dazed&Confused08, 26 June 2008 - 11:42 AM.