Alrighty awesome it worked that time. Below is the Combofix, HijackTHIS, and LOP S&D logs you requested.
COMBOFIX LOG:ComboFix 09-04-04.01 - Compaq_Owner 2009-04-05 19:38:51.14 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.958.631 [GMT -4:00]
Running from: c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Desktop\Combo-Fix.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
---- Previous Run -------
.
c:\windows\sysguard.exe
c:\windows\system32\drivers\UACokwmafty.sys
c:\windows\system32\iehelper.dll
c:\windows\system32\lowsec
c:\windows\system32\lowsec\local.ds
c:\windows\system32\lowsec\user.ds
c:\windows\system32\lowsec\user.ds.lll
c:\windows\system32\qbrlfys.dll
c:\windows\system32\sdra64.exe
c:\windows\system32\UACcoessqjm.dll
c:\windows\system32\UACfnsxtqmt.log
c:\windows\system32\uacinit.dll
c:\windows\system32\UACjaraeoeb.dll
c:\windows\system32\UACndcesurd.dll
c:\windows\system32\UACnkoyhaea.dll
c:\windows\system32\UACpagtkuln.log
c:\windows\system32\UACpyovlbgd.dat
c:\windows\system32\UACsvlbswmw.log
c:\windows\system32\UACuoykjgws.dll
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Service_UACd.sys
-------\Legacy_DUHMUGGU
-------\Service_duhmuggu
-------\Legacy_DUHMUGGU
-------\Service_duhmuggu
((((((((((((((((((((((((( Files Created from 2009-03-05 to 2009-04-05 )))))))))))))))))))))))))))))))
.
2009-04-05 17:57 . 2009-04-05 17:57 <DIR> d-------- c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\cqafderf
2009-04-05 16:46 . 2009-04-05 16:46 <DIR> d-------- C:\Lop SD
2009-04-04 16:24 . 2009-04-04 16:24 <DIR> d-------- c:\documents and settings\NetworkService\Application Data\cqafderf
2009-04-01 02:34 . 2006-05-20 02:46 <DIR> d-------- c:\documents and settings\Administrator.COMPAQMEDIA\WINDOWS
2009-04-01 02:34 . 2009-04-01 02:34 <DIR> d-------- c:\documents and settings\Administrator.COMPAQMEDIA
2009-03-11 14:12 . 2009-03-11 14:12 <DIR> d-------- c:\program files\HydraIRC
2009-03-11 14:08 . 2009-04-01 17:01 <DIR> d-------- C:\wIRC
2009-03-11 14:08 . 2009-03-11 16:36 <DIR> d-------- c:\program files\abgx360
2009-03-10 18:17 . 2009-03-10 18:18 <DIR> d-------- c:\program files\TurboFTP
2009-03-10 18:17 . 2009-03-10 18:18 <DIR> d-------- c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\TurboFTP
2009-03-10 18:17 . 2009-03-10 18:17 <DIR> d-------- c:\documents and settings\All Users\Application Data\TurboFTP
2009-03-07 03:03 . 2009-03-07 03:03 742,770 --a------ c:\windows\system32\abgx360.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-04-05 23:25 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\uTorrent
2009-04-05 03:22 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\FrostWire
2009-03-29 22:24 --------- d-----w c:\program files\Windows Media Connect 2
2009-03-25 20:48 --------- d-----w c:\program files\AskBarDis
2009-03-24 01:50 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\dvdcss
2009-03-16 03:02 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\DivX
2009-03-14 09:24 --------- d-----w c:\program files\FrostWire
2009-03-10 22:18 --------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
2009-02-26 08:33 --------- d-----w c:\program files\Windows Desktop Search
2009-02-26 06:20 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\Sony
2009-02-26 06:19 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\Publish Providers
2009-02-26 06:18 --------- d-----w c:\program files\Sony
2009-02-26 06:17 --------- d-----w c:\program files\Microsoft.NET
2009-02-26 06:17 --------- d-----w c:\program files\Microsoft SQL Server
2009-02-26 06:16 --------- d-----w c:\program files\MSXML 6.0
2009-02-26 06:12 --------- d-----w c:\program files\Sony Setup
2009-02-26 06:09 --------- d-----w c:\program files\Vstplugins
2009-02-26 06:09 --------- d-----w c:\documents and settings\All Users\Application Data\Sony
2009-02-26 05:21 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\Sony Setup
2009-02-26 04:37 --------- d-----w c:\documents and settings\LocalService\Application Data\CyberLink
2009-02-26 04:06 --------- d-----w c:\documents and settings\All Users\Application Data\CyberLink
2009-02-26 04:05 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\CyberLink
2009-02-26 04:03 --------- d--h--w c:\program files\InstallShield Installation Information
2009-02-26 04:03 --------- d-----w c:\program files\CyberLink
2009-02-26 04:01 --------- d-----w c:\documents and settings\All Users\Application Data\SmartSound Software Inc
2009-02-26 04:00 --------- d-----w c:\program files\SmartSound Software
2009-02-19 08:26 --------- d-----w c:\program files\Opera
2009-02-15 04:13 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\AdobeUM
2009-02-15 04:04 --------- d-----w c:\program files\AIM
2009-02-15 00:16 --------- d-----w c:\program files\iTunes
2009-02-14 22:58 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\Aim
2009-02-14 22:43 --------- d-----w c:\program files\AIM+
2009-02-14 09:04 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\Malwarebytes
2009-02-14 09:04 --------- d-----w c:\documents and settings\All Users\Application Data\Malwarebytes
2009-02-14 07:42 --------- d-----w c:\program files\Trend Micro
2009-02-14 01:27 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\Apple Computer
2009-02-13 06:12 --------- d-----w c:\program files\Yahoo!
2009-02-13 03:29 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\.purple
2009-02-11 11:39 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\Nero
2009-02-11 11:34 --------- d-----w c:\program files\Common Files\Nero
2009-02-11 11:21 --------- d-----w c:\program files\Nero
2009-02-11 11:19 --------- d-----w c:\program files\Windows Sidebar
2009-02-11 11:13 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
2009-02-11 08:45 --------- d-----w c:\program files\ICQ6.5
2009-02-11 08:45 --------- d-----w c:\documents and settings\All Users\Application Data\Symantec
2009-02-11 08:40 --------- d-----w c:\program files\PowerISO
2009-02-11 08:34 --------- d-----w c:\program files\HP
2009-02-11 08:34 --------- d-----w c:\program files\Hewlett-Packard
2009-02-11 08:28 --------- d-----w c:\program files\Microsoft Works
2009-02-11 08:19 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\Yahoo!
2009-02-11 08:16 --------- d-----w c:\program files\DivX
2009-02-11 08:14 --------- d-----w c:\program files\QuickTime
2009-02-11 08:12 --------- d-----w c:\program files\MagicISO
2009-02-11 08:11 --------- d-----w c:\program files\Winamp
2009-02-11 08:10 --------- d-----w c:\program files\Winamp Remote
2009-02-11 08:00 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\vlc
2009-02-11 07:59 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\ICQ
2009-02-11 07:31 --------- d-----w c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\X-Chat 2
2009-02-11 07:26 1,965 --sha-r c:\windows\system32\drivers\103C_HP_CPC_EX321AA-ABA SR1930NX NA630_YC_0Pres_QCNH621_E63NAheREA2_48_IAltair_SASUSTeK Computer INC._V1.00_B3.03_T060519_WXH2_L409_M959_J200_7Intel_8Pentium 4_93.07_#070814_N10EC8139_Z14F12F20_G10025A61.MRK
2009-02-11 06:40 --------- d-----w c:\documents and settings\All Users\Application Data\Simply Super Software
2009-02-05 04:23 --------- d-----w c:\documents and settings\All Users\Application Data\Yahoo!
2007-12-12 01:26 32 ----a-w c:\documents and settings\All Users\Application Data\ezsid.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-09-08 279944]
[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]
[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Recguard"="c:\windows\SMINST\RECGUARD.EXE" [2005-07-23 237568]
"HPBootOp"="c:\program files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" [2006-02-16 249856]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2006-05-20 180269]
"RTHDCPL"="RTHDCPL.EXE" [2006-03-08 c:\windows\RTHDCPL.EXE]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AIM]
--a------ 2009-02-15 00:04 67112 c:\progra~1\AIM\aim.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CloneCDTray]
--a------ 2006-09-28 15:21 57344 c:\program files\SlySoft\CloneCD\CloneCDTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
--a------ 2008-12-17 09:36 172792 c:\program files\ICQ6.5\ICQ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Messenger (Yahoo!)]
--a------ 2009-02-04 17:57 4363504 c:\program files\Yahoo!\Messenger\YahooMessenger.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--a------ 2008-04-13 20:12 1695232 c:\program files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Orb]
--a------ 2008-03-31 21:54 507904 c:\program files\Winamp Remote\bin\OrbTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
--a------ 2008-11-02 04:38 167936 c:\program files\PowerISO\PWRISOVM.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 2009-02-12 17:21 148888 c:\program files\Java\jre6\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
--a------ 2006-05-20 02:30 180269 c:\program files\Common Files\Real\Update_OB\realsched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"LightScribeService"=2 (0x2)
"iPod Service"=3 (0x3)
"Nero BackItUp Scheduler 4.0"=2 (0x2)
"MDM"=2 (0x2)
"JavaQuickStarterService"=2 (0x2)
"IDriverT"=3 (0x3)
"Ati HotKey Poller"=2 (0x2)
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\Winamp Remote\\bin\\Orb.exe"=
"c:\\Program Files\\Winamp Remote\\bin\\OrbTray.exe"=
"c:\\Program Files\\Winamp Remote\\bin\\OrbStreamerClient.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\xchat\\xchat.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\AIM\\aim.exe"=
"c:\\Program Files\\FrostWire\\FrostWire.exe"=
S3 MSSQL$SONY_MEDIAMGR2;SQL Server (SONY_MEDIAMGR2);c:\program files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2007-02-10 29178224]
.
Contents of the 'Scheduled Tasks' folder
2009-04-05 c:\windows\Tasks\At1.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At10.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At11.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At12.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At13.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At14.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At15.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At16.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At17.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At18.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At19.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At2.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At20.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At21.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At22.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At23.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At24.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At25.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At26.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At27.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At28.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At29.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At3.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At30.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At31.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At32.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At33.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At34.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At35.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At36.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At37.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At38.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At39.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At4.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At40.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At41.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At42.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At43.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At44.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At45.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At46.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At47.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At48.job
- c:\windows\system32\6l0Wf2rh.exe []
2009-04-05 c:\windows\Tasks\At49.job
- c:\windows\system32\qbrlfys.dll []
2009-04-05 c:\windows\Tasks\At5.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At6.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At7.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At8.job
- ?:\2 []
2009-04-05 c:\windows\Tasks\At8.job
- c:\windows\system32\q37SRk5a.exe []
2009-04-05 c:\windows\Tasks\At9.job
- c:\windows\system32\q37SRk5a.exe []
.
- - - - ORPHANS REMOVED - - - -
BHO-{C1961015-9A50-4EF4-9DD4-0EA2D3E14282} - c:\windows\system32\qbrlfys.dll
HKCU-Run-system tool - c:\windows\sysguard.exe
.
------- Supplementary Scan -------
.
uInternet Settings,ProxyOverride = *.local
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\Compaq_Owner.COMPAQMEDIA\Application Data\Mozilla\Firefox\Profiles\8v7fle8h.default\
.
**************************************************************************
catchme 0.3.1375 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2009-04-05 19:44:43
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-983352657-3560731182-2007119311-1009\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
[HKEY_USERS\S-1-5-21-983352657-3560731182-2007119311-1009\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{988DF640-7566-F1B8-8014-8008F1564F95}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"jahjoafjikmbknpfbmnl"=hex:6a,61,64,70,69,68,6a,6c,68,6c,63,65,61,70,6b,6a,63,
6a,6e,6f,00,f2
"iabjanjnllamdkllcj"=hex:6a,61,64,70,69,68,6a,6c,68,6c,63,65,61,70,6b,6a,63,6a,
6e,6f,00,f2
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(760)
c:\windows\system32\Ati2evxx.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\CyberLink\Shared files\RichVideo.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe
c:\windows\system\hpsysdrv.exe
c:\program files\Java\jre1.5.0_05\bin\jusched.exe
c:\program files\Java\jre1.5.0_05\bin\jucheck.exe
c:\program files\iTunes\iTunesHelper.exe
c:\program files\iPod\bin\iPodService.exe
.
**************************************************************************
.
Completion time: 2009-04-05 19:48:48 - machine was rebooted [Compaq_Owner]
ComboFix-quarantined-files.txt 2009-04-05 23:48:45
Pre-Run: 965,296,128 bytes free
Post-Run: 950,763,520 bytes free
337 --- E O F --- 2009-03-14 07:01:23
HIJACKTHIS LOG: Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:49:33 PM, on 4/5/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\system32\wuauclt.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
C:\Program Files\Java\jre1.5.0_05\bin\jucheck.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://www.update.mi...b?1234344587984O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
--
End of file - 4084 bytes
LOP S&D LOG: --------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Home Edition ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel® Pentium® 4 CPU 3.06GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Compaq_Owner ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:179 Go (Free:0 Go)
D:\ (Local Disk) - NTFS - Total:149 Go (Free:11 Go)
E:\ (Local Disk) - NTFS - Total:127 Go (Free:1 Go)
F:\ (Local Disk) - FAT32 - Total:7 Go (Free:0 Go)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
K:\ (CD or DVD) - UDF - Total:4 Go (Free:0 Go)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( Sun 04/05/2009|19:49 )
--------------------\\ Listing folders in APPLIC~1
[01/01/2009|10:55] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> DivX
[12/06/2005|01:18] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> Identities
[05/20/2006|02:47] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> Intuit
[05/20/2006|03:15] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> Microsoft
[01/01/2009|10:54] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> Mozilla
[05/20/2006|02:30] C:\DOCUME~1\ADMINI~1\APPLIC~1\<DIR> Real
[12/06/2005|01:18] C:\DOCUME~1\ADMINI~1.COM\APPLIC~1\<DIR> Identities
[05/20/2006|02:47] C:\DOCUME~1\ADMINI~1.COM\APPLIC~1\<DIR> Intuit
[05/20/2006|03:15] C:\DOCUME~1\ADMINI~1.COM\APPLIC~1\<DIR> Microsoft
[05/20/2006|02:30] C:\DOCUME~1\ADMINI~1.COM\APPLIC~1\<DIR> Real
[05/20/2006|03:10] C:\DOCUME~1\ADMINI~1.COM\APPLIC~1\<DIR> Symantec
[10/06/2008|02:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> {3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[01/01/2009|10:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> AcrobatInstall
[05/20/2006|02:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Adobe
[09/04/2007|02:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Adobe Systems
[12/09/2007|05:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> AOL
[08/14/2007|05:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> AOL OCP
[12/21/2007|10:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Apple
[12/25/2007|11:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Apple Computer
[08/18/2007|09:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> ATI
[08/14/2007|10:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Azureus
[01/02/2009|03:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Backup
[02/26/2009|12:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> CyberLink
[01/27/2009|05:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> DVD Shrink
[01/26/2009|06:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> FLEXnet
[08/14/2007|04:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Google
[05/20/2006|03:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Hewlett-Packard
[05/20/2006|02:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> InstallShield
[05/20/2006|02:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Intuit
[02/14/2009|05:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Malwarebytes
[02/26/2009|01:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Microsoft
[02/11/2009|07:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Nero
[09/11/2007|08:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> NewsBin
[01/04/2009|05:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> OrbNetworks
[05/20/2006|02:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> SBSI
[01/02/2009|03:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> sentinel
[02/11/2009|02:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Simply Super Software
[12/11/2007|09:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Skype
[12/26/2008|03:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> SlySoft
[02/26/2009|12:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> SmartSound Software Inc
[05/20/2006|02:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Sonic
[02/26/2009|02:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Sony
[02/11/2009|04:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Symantec
[03/10/2009|06:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> TEMP
[03/10/2009|06:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> TurboFTP
[08/14/2007|06:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Windows Genuine Advantage
[02/05/2009|12:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\<DIR> Yahoo!
[02/12/2009|11:29] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> .purple
[02/11/2009|05:54] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Adobe
[02/15/2009|12:13] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> AdobeUM
[02/14/2009|06:58] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Aim
[02/13/2009|09:27] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Apple Computer
[04/05/2009|05:57] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> cqafderf
[02/26/2009|12:05] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> CyberLink
[03/15/2009|11:02] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> DivX
[03/23/2009|09:50] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> dvdcss
[04/04/2009|11:22] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> FrostWire
[02/15/2009|04:21] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Help
[02/11/2009|03:59] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> ICQ
[12/06/2005|01:18] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Identities
[05/20/2006|02:47] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Intuit
[02/11/2009|03:51] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Macromedia
[02/14/2009|05:04] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Malwarebytes
[02/11/2009|03:31] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Microsoft
[02/13/2009|02:21] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Mozilla
[02/11/2009|07:39] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Nero
[02/15/2009|04:27] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Opera
[02/26/2009|02:19] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Publish Providers
[02/13/2009|04:37] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Real
[02/26/2009|02:20] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Sony
[02/26/2009|01:21] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Sony Setup
[02/11/2009|08:43] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Sun
[03/10/2009|06:18] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> TurboFTP
[04/05/2009|07:25] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> uTorrent
[02/11/2009|04:00] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> vlc
[02/11/2009|04:10] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> WinRAR
[02/11/2009|03:31] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> X-Chat 2
[02/11/2009|04:19] C:\DOCUME~1\COMPAQ~1.COM\APPLIC~1\<DIR> Yahoo!
[12/06/2005|01:18] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> Identities
[05/20/2006|02:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> Intuit
[05/20/2006|03:15] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> Microsoft
[05/20/2006|02:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> Real
[05/20/2006|03:10] C:\DOCUME~1\DEFAUL~1\APPLIC~1\<DIR> Symantec
[02/26/2009|12:37] C:\DOCUME~1\LOCALS~1\APPLIC~1\<DIR> CyberLink
[02/26/2009|02:05] C:\DOCUME~1\LOCALS~1\APPLIC~1\<DIR> Microsoft
[04/03/2009|10:41] C:\DOCUME~1\NETWOR~1\APPLIC~1\<DIR> Adobe
[04/04/2009|04:24] C:\DOCUME~1\NETWOR~1\APPLIC~1\<DIR> cqafderf
[03/07/2009|06:01] C:\DOCUME~1\NETWOR~1\APPLIC~1\<DIR> Macromedia
[05/20/2006|01:59] C:\DOCUME~1\NETWOR~1\APPLIC~1\<DIR> Microsoft
[04/01/2009|06:40] C:\DOCUME~1\NETWOR~1\APPLIC~1\<DIR> Mozilla
--------------------\\ Scheduled Tasks located in C:\WINDOWS\Tasks
[04/05/2009 07:30 PM][--a------] C:\WINDOWS\tasks\At49.job
[04/04/2009 11:00 PM][--a------] C:\WINDOWS\tasks\At48.job
[04/04/2009 10:00 PM][--a------] C:\WINDOWS\tasks\At47.job
[04/04/2009 08:00 PM][--a------] C:\WINDOWS\tasks\At45.job
[04/04/2009 09:00 PM][--a------] C:\WINDOWS\tasks\At46.job
[04/05/2009 06:00 PM][--a------] C:\WINDOWS\tasks\At43.job
[04/05/2009 07:00 PM][--a------] C:\WINDOWS\tasks\At44.job
[04/05/2009 05:00 PM][--a------] C:\WINDOWS\tasks\At42.job
[04/05/2009 04:00 PM][--a------] C:\WINDOWS\tasks\At41.job
[04/05/2009 02:00 PM][--a------] C:\WINDOWS\tasks\At39.job
[04/05/2009 03:00 PM][--a------] C:\WINDOWS\tasks\At40.job
[04/05/2009 01:00 PM][--a------] C:\WINDOWS\tasks\At38.job
[04/05/2009 12:00 PM][--a------] C:\WINDOWS\tasks\At37.job
[04/05/2009 11:00 AM][--a------] C:\WINDOWS\tasks\At36.job
[04/05/2009 08:00 AM][--a------] C:\WINDOWS\tasks\At33.job
[04/05/2009 10:00 AM][--a------] C:\WINDOWS\tasks\At35.job
[04/05/2009 09:00 AM][--a------] C:\WINDOWS\tasks\At34.job
[04/05/2009 06:00 AM][--a------] C:\WINDOWS\tasks\At31.job
[04/05/2009 07:00 AM][--a------] C:\WINDOWS\tasks\At32.job
[04/05/2009 05:00 AM][--a------] C:\WINDOWS\tasks\At30.job
[04/05/2009 04:00 AM][--a------] C:\WINDOWS\tasks\At29.job
[04/05/2009 03:00 AM][--a------] C:\WINDOWS\tasks\At28.job
[04/05/2009 02:00 AM][--a------] C:\WINDOWS\tasks\At27.job
[04/05/2009 01:00 AM][--a------] C:\WINDOWS\tasks\At26.job
[04/05/2009 12:25 AM][--a------] C:\WINDOWS\tasks\At25.job
[04/04/2009 11:00 PM][--a------] C:\WINDOWS\tasks\At24.job
[04/04/2009 10:00 PM][--a------] C:\WINDOWS\tasks\At23.job
[04/04/2009 09:00 PM][--a------] C:\WINDOWS\tasks\At22.job
[04/05/2009 07:00 PM][--a------] C:\WINDOWS\tasks\At20.job
[04/04/2009 08:00 PM][--a------] C:\WINDOWS\tasks\At21.job
[04/05/2009 05:00 PM][--a------] C:\WINDOWS\tasks\At18.job
[04/05/2009 04:00 PM][--a------] C:\WINDOWS\tasks\At17.job
[04/05/2009 06:00 PM][--a------] C:\WINDOWS\tasks\At19.job
[04/05/2009 03:00 PM][--a------] C:\WINDOWS\tasks\At16.job
[04/05/2009 01:00 PM][--a------] C:\WINDOWS\tasks\At14.job
[04/05/2009 02:00 PM][--a------] C:\WINDOWS\tasks\At15.job
[04/05/2009 11:00 AM][--a------] C:\WINDOWS\tasks\At12.job
[04/05/2009 12:00 PM][--a------] C:\WINDOWS\tasks\At13.job
[04/05/2009 10:00 AM][--a------] C:\WINDOWS\tasks\At11.job
[04/05/2009 08:00 AM][--a------] C:\WINDOWS\tasks\At9.job
[04/05/2009 09:00 AM][--a------] C:\WINDOWS\tasks\At10.job
[04/05/2009 06:00 AM][--a------] C:\WINDOWS\tasks\At7.job
[04/05/2009 07:00 AM][--a------] C:\WINDOWS\tasks\At8.job
[04/05/2009 05:00 AM][--a------] C:\WINDOWS\tasks\At6.job
[04/05/2009 03:00 AM][--a------] C:\WINDOWS\tasks\At4.job
[04/05/2009 02:00 AM][--a------] C:\WINDOWS\tasks\At3.job
[04/05/2009 04:00 AM][--a------] C:\WINDOWS\tasks\At5.job
[04/05/2009 01:00 AM][--a------] C:\WINDOWS\tasks\At2.job
[04/05/2009 12:12 AM][--a------] C:\WINDOWS\tasks\At1.job
[04/05/2009 07:44 PM][--ah-----] C:\WINDOWS\tasks\SA.DAT
[08/04/2004 07:00 AM][-rah-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing Folders in C:\Program Files
[03/11/2009|04:36] C:\Program Files\<DIR> abgx360
[05/20/2006|02:40] C:\Program Files\<DIR> Adobe
[02/15/2009|12:04] C:\Program Files\<DIR> AIM
[02/14/2009|06:43] C:\Program Files\<DIR> AIM+
[02/06/2008|04:26] C:\Program Files\<DIR> AIM6
[09/16/2007|11:41] C:\Program Files\<DIR> AltBinz
[09/26/2008|02:42] C:\Program Files\<DIR> Apple Software Update
[03/25/2009|04:48] C:\Program Files\<DIR> AskBarDis
[05/20/2006|02:22] C:\Program Files\<DIR> ATI Technologies
[12/25/2007|11:50] C:\Program Files\<DIR> AviSynth 2.5
[01/11/2009|05:04] C:\Program Files\<DIR> Bonjour
[04/05/2009|07:41] C:\Program Files\<DIR> Common Files
[05/20/2006|02:23] C:\Program Files\<DIR> CONEXANT
[02/26/2009|12:03] C:\Program Files\<DIR> CyberLink
[09/08/2007|02:37] C:\Program Files\<DIR> DIFX
[02/11/2009|04:16] C:\Program Files\<DIR> DivX
[08/31/2007|02:15] C:\Program Files\<DIR> DVD Decrypter
[03/14/2009|05:24] C:\Program Files\<DIR> FrostWire
[05/20/2006|03:00] C:\Program Files\<DIR> Google
[02/11/2009|04:34] C:\Program Files\<DIR> Hewlett-Packard
[02/11/2009|04:34] C:\Program Files\<DIR> HP
[03/11/2009|02:12] C:\Program Files\<DIR> HydraIRC
[02/11/2009|04:45] C:\Program Files\<DIR> ICQ6.5
[06/27/2008|08:28] C:\Program Files\<DIR> ImgBurn
[02/26/2009|12:03] C:\Program Files\<DIR> InstallShield Installation Information
[02/26/2009|04:29] C:\Program Files\<DIR> Internet Explorer
[10/06/2008|02:39] C:\Program Files\<DIR> iPod
[02/14/2009|08:16] C:\Program Files\<DIR> iTunes
[05/20/2006|02:10] C:\Program Files\<DIR> Java
[02/11/2009|04:12] C:\Program Files\<DIR> MagicISO
[02/11/2009|06:00] C:\Program Files\<DIR> Messenger
[12/06/2005|01:19] C:\Program Files\<DIR> microsoft frontpage
[02/26/2009|02:17] C:\Program Files\<DIR> Microsoft SQL Server
[05/20/2006|02:44] C:\Program Files\<DIR> Microsoft Visual Studio
[02/11/2009|04:28] C:\Program Files\<DIR> Microsoft Works
[02/26/2009|02:17] C:\Program Files\<DIR> Microsoft.NET
[02/11/2009|05:48] C:\Program Files\<DIR> Movie Maker
[04/05/2009|07:49] C:\Program Files\<DIR> Mozilla Firefox
[08/17/2007|11:15] C:\Program Files\<DIR> MSBuild
[12/06/2005|01:19] C:\Program Files\<DIR> MSN Gaming Zone
[02/26/2009|02:16] C:\Program Files\<DIR> MSXML 6.0
[09/23/2007|05:48] C:\Program Files\<DIR> MTV Networks
[02/11/2009|07:21] C:\Program Files\<DIR> Nero
[02/11/2009|05:48] C:\Program Files\<DIR> NetMeeting
[02/19/2009|04:26] C:\Program Files\<DIR> Opera
[02/11/2009|05:48] C:\Program Files\<DIR> Outlook Express
[02/11/2009|04:40] C:\Program Files\<DIR> PowerISO
[02/11/2009|04:14] C:\Program Files\<DIR> QuickTime
[05/20/2006|02:30] C:\Program Files\<DIR> Real
[08/17/2007|11:10] C:\Program Files\<DIR> Reference Assemblies
[12/11/2007|10:33] C:\Program Files\<DIR> Skype
[08/31/2007|12:38] C:\Program Files\<DIR> SlySoft
[02/26/2009|12:00] C:\Program Files\<DIR> SmartSound Software
[02/26/2009|02:18] C:\Program Files\<DIR> Sony
[02/26/2009|02:12] C:\Program Files\<DIR> Sony Setup
[10/31/2008|11:35] C:\Program Files\<DIR> Sun
[02/14/2009|03:42] C:\Program Files\<DIR> Trend Micro
[03/10/2009|06:18] C:\Program Files\<DIR> TurboFTP
[12/05/2005|03:33] C:\Program Files\<DIR> Uninstall Information
[08/14/2007|04:37] C:\Program Files\<DIR> uTorrent
[08/14/2007|06:06] C:\Program Files\<DIR> VideoLAN
[04/23/2008|08:07] C:\Program Files\<DIR> vso
[02/26/2009|02:09] C:\Program Files\<DIR> Vstplugins
[05/14/2008|07:06] C:\Program Files\<DIR> Wal-Mart Music Downloads Store
[02/11/2009|04:11] C:\Program Files\<DIR> Winamp
[02/11/2009|04:10] C:\Program Files\<DIR> Winamp Remote
[02/26/2009|04:33] C:\Program Files\<DIR> Windows Desktop Search
[08/24/2007|11:46] C:\Program Files\<DIR> Windows Media Components
[03/29/2009|06:24] C:\Program Files\<DIR> Windows Media Connect 2
[02/26/2009|01:47] C:\Program Files\<DIR> Windows Media Player
[02/11/2009|05:48] C:\Program Files\<DIR> Windows NT
[02/11/2009|07:19] C:\Program Files\<DIR> Windows Sidebar
[12/05/2005|03:33] C:\Program Files\<DIR> WindowsUpdate
[02/11/2009|04:09] C:\Program Files\<DIR> WinRAR
[10/31/2008|12:34] C:\Program Files\<DIR> xchat
[02/13/2009|02:19] C:\Program Files\<DIR> xerox
[02/13/2009|02:12] C:\Program Files\<DIR> Yahoo!
--------------------\\ Listing Folders in C:\Program Files\Common Files
[05/20/2006|02:40] C:\Program Files\Common Files\<DIR> Adobe
[09/04/2007|02:11] C:\Program Files\Common Files\<DIR> Adobe Systems Shared
[08/14/2007|06:12] C:\Program Files\Common Files\<DIR> Ahead
[12/09/2007|05:22] C:\Program Files\Common Files\<DIR> AOL
[09/21/2008|11:39] C:\Program Files\Common Files\<DIR> Apple
[09/08/2007|02:37] C:\Program Files\Common Files\<DIR> ComponentOne
[10/14/2008|02:20] C:\Program Files\Common Files\<DIR> GTK
[05/20/2006|02:56] C:\Program Files\Common Files\<DIR> InstallShield
[05/20/2006|02:10] C:\Program Files\Common Files\<DIR> Java
[05/20/2006|02:39] C:\Program Files\Common Files\<DIR> LightScribe
[08/16/2007|03:34] C:\Program Files\Common Files\<DIR> Macrovision Shared
[02/11/2009|04:29] C:\Program Files\Common Files\<DIR> Microsoft Shared
[08/04/2004|07:00] C:\Program Files\Common Files\<DIR> Mozilla Shared
[12/06/2005|01:19] C:\Program Files\Common Files\<DIR> MSSoap
[02/11/2009|07:34] C:\Program Files\Common Files\<DIR> Nero
[12/06/2005|01:19] C:\Program Files\Common Files\<DIR> ODBC
[05/20/2006|02:30] C:\Program Files\Common Files\<DIR> Real
[12/06/2005|01:19] C:\Program Files\Common Files\<DIR> Services
[12/11/2007|09:25] C:\Program Files\Common Files\<DIR> Skype
[12/06/2005|01:19] C:\Program Files\Common Files\<DIR> SpeechEngines
[02/11/2009|05:47] C:\Program Files\Common Files\<DIR> System
[05/20/2006|02:30] C:\Program Files\Common Files\<DIR> xing shared
--------------------\\ Process
( 36 Processes )
... OK !
--------------------\\ Searching with S_Lop
No Lop folder found !
--------------------\\ Searching for Lop Files - Folders
C:\DOCUME~1\COMPAQ~1.COM\Cookies\compaq_owner@advertising[1].txt
--------------------\\ Searching within the Registry
..... OK !
--------------------\\ Checking the Hosts file
Hosts file CLEAN
--------------------\\ Searching for hidden files with Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net Rootkit scan 2009-04-05 19:51:05
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Searching for other infections
C:\WINDOWS\Tasks\At1.job
C:\WINDOWS\Tasks\At10.job
C:\WINDOWS\Tasks\At11.job
C:\WINDOWS\Tasks\At12.job
C:\WINDOWS\Tasks\At13.job
C:\WINDOWS\Tasks\At14.job
C:\WINDOWS\Tasks\At15.job
C:\WINDOWS\Tasks\At16.job
C:\WINDOWS\Tasks\At17.job
C:\WINDOWS\Tasks\At18.job
C:\WINDOWS\Tasks\At19.job
C:\WINDOWS\Tasks\At2.job
C:\WINDOWS\Tasks\At20.job
C:\WINDOWS\Tasks\At21.job
C:\WINDOWS\Tasks\At22.job
C:\WINDOWS\Tasks\At23.job
C:\WINDOWS\Tasks\At24.job
C:\WINDOWS\Tasks\At25.job
C:\WINDOWS\Tasks\At26.job
C:\WINDOWS\Tasks\At27.job
C:\WINDOWS\Tasks\At28.job
C:\WINDOWS\Tasks\At29.job
C:\WINDOWS\Tasks\At3.job
C:\WINDOWS\Tasks\At30.job
C:\WINDOWS\Tasks\At31.job
C:\WINDOWS\Tasks\At32.job
C:\WINDOWS\Tasks\At33.job
C:\WINDOWS\Tasks\At34.job
C:\WINDOWS\Tasks\At35.job
C:\WINDOWS\Tasks\At36.job
C:\WINDOWS\Tasks\At37.job
C:\WINDOWS\Tasks\At38.job
C:\WINDOWS\Tasks\At39.job
C:\WINDOWS\Tasks\At4.job
C:\WINDOWS\Tasks\At40.job
C:\WINDOWS\Tasks\At41.job
C:\WINDOWS\Tasks\At42.job
C:\WINDOWS\Tasks\At43.job
C:\WINDOWS\Tasks\At44.job
C:\WINDOWS\Tasks\At45.job
C:\WINDOWS\Tasks\At46.job
C:\WINDOWS\Tasks\At47.job
C:\WINDOWS\Tasks\At48.job
C:\WINDOWS\Tasks\At49.job
C:\WINDOWS\Tasks\At5.job
C:\WINDOWS\Tasks\At6.job
C:\WINDOWS\Tasks\At7.job
C:\WINDOWS\Tasks\At8.job
C:\WINDOWS\Tasks\At9.job
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\COMPAQ~1.COM\Application Data\uTorrent\PowerISO_v4.3_Incl_Keygen-DIGERATI.1.torrent
C:\DOCUME~1\COMPAQ~1.COM\Application Data\uTorrent\PowerISO_v4.3_Incl_Keygen-DIGERATI.torrent
C:\DOCUME~1\COMPAQ~1.COM\My Documents\AIM FILES\DeadAIMCrack.zip
C:\DOCUME~1\COMPAQ~1.COM\My Documents\Downloads\PowerISO_v4.3_Incl_Keygen-DIGERATI
C:\DOCUME~1\COMPAQ~1.COM\My Documents\Downloads\PowerISO_v4.3_Incl_Keygen-DIGERATI\digerati.nfo
C:\DOCUME~1\COMPAQ~1.COM\My Documents\Downloads\PowerISO_v4.3_Incl_Keygen-DIGERATI\dppi4301.zip
C:\DOCUME~1\COMPAQ~1.COM\My Documents\Downloads\PowerISO_v4.3_Incl_Keygen-DIGERATI\file_id.diz
C:\DOCUME~1\COMPAQ~1.COM\My Documents\SETUPfiles\Photoshop CS2 KeyGen
C:\DOCUME~1\COMPAQ~1.COM\My Documents\SETUPfiles\Sony.Vegas.v7.0d.Incl.Keygen-SSG
C:\DOCUME~1\COMPAQ~1.COM\My Documents\SETUPfiles\Photoshop CS2 KeyGen\Photoshop.CS2.KeyGen.exe
C:\DOCUME~1\COMPAQ~1.COM\My Documents\SETUPfiles\Photoshop CS2 KeyGen\Photoshop.CS2.KeyGen.nfo
C:\DOCUME~1\COMPAQ~1.COM\My Documents\SETUPfiles\Sony.Vegas.v7.0d.Incl.Keygen-SSG\.DS_Store
C:\DOCUME~1\COMPAQ~1.COM\My Documents\SETUPfiles\Sony.Vegas.v7.0d.Incl.Keygen-SSG\dvdarchitect40a.exe
C:\DOCUME~1\COMPAQ~1.COM\My Documents\SETUPfiles\Sony.Vegas.v7.0d.Incl.Keygen-SSG\Torrent downloaded from Demonoid.com.txt
C:\DOCUME~1\COMPAQ~1.COM\My Documents\SETUPfiles\Sony.Vegas.v7.0d.Incl.Keygen-SSG\vegas70d.txt
C:\DOCUME~1\COMPAQ~1.COM\My Documents\SETUPfiles\Sony.Vegas.v7.0d.Incl.Keygen-SSG\vegas70d_enu.exe
C:\DOCUME~1\COMPAQ~1.COM\My Documents\TORRENTS\PowerISO_v4.3_Incl_Keygen-DIGERATI.torrent
C:\DOCUME~1\COMPAQ~1.COM\Recent\CracKaLakiN v3 (2).lnk
C:\DOCUME~1\COMPAQ~1.COM\Recent\CracKaLakiN v3.lnk
C:\DOCUME~1\COMPAQ~1.COM\Recent\CracKaLakiN_v3.lnk
C:\DOCUME~1\COMPAQ~1.COM\Recent\crazycracka.lnk
C:\DOCUME~1\COMPAQ~1.COM\Recent\DeadAIMCrack.lnk
C:\DOCUME~1\COMPAQ~1.COM\Recent\PowerISO_v4.3_Incl_Keygen-DIGERATI.lnk
[F:1][D:1]-> C:\DOCUME~1\COMPAQ~1.COM\LOCALS~1\Temp
[F:86][D:0]-> C:\DOCUME~1\COMPAQ~1.COM\Cookies
[F:1][D:0]-> C:\DOCUME~1\COMPAQ~1.COM\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - Sun 04/05/2009|19:51 - Option : [1]
--------------------\\ Scan completed at 19:51:50