I figured it out with the help of Google. I believe I have the 1st one done right for you.
ComboFix 12-07-30.03 - Sharon 07/31/2012 22:28:00.2.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.446.159 [GMT -4:00]
Running from: c:\documents and settings\Sharon\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Sharon\Desktop\CFScript.txt
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
* Resident AV is active
.
.
.
((((((((((((((((((((((((( Files Created from 2012-07-01 to 2012-08-01 )))))))))))))))))))))))))))))))
.
.
2012-07-29 17:23 . 2012-07-30 11:25 -------- dc----w- c:\program files\McAfee
2012-07-29 15:51 . 2012-07-29 15:51 -------- dc----w- c:\windows\system32\wbem\Repository
2012-07-29 15:51 . 2012-07-29 20:24 -------- d-----w- c:\documents and settings\All Users\Application Data\McAfee
2012-07-29 15:51 . 2012-07-29 17:24 -------- dc----w- c:\program files\Common Files\Mcafee
2012-07-25 23:03 . 2012-07-25 23:03 4269368 -c--a-w- c:\windows\uninst.exe
2012-07-25 23:03 . 2012-07-25 23:03 -------- d-----w- c:\documents and settings\All Users\Application Data\PC1Data
2012-07-25 16:13 . 2012-07-25 16:13 -------- dc----w- c:\documents and settings\Sharon\Local Settings\Application Data\SupportSoft
2012-07-19 00:05 . 2012-07-19 00:06 -------- dc-h--w- c:\windows\ie8
2012-07-16 16:17 . 2012-07-16 16:17 -------- d-----w- c:\documents and settings\All Users\Application Data\IBUpdaterService
2012-07-16 16:15 . 2012-07-16 16:16 -------- dc----w- c:\documents and settings\Sharon\Local Settings\Application Data\CRE
2012-07-16 16:07 . 2012-07-16 16:07 -------- d-----w- c:\documents and settings\All Users\Application Data\bProtectorForWindows
2012-07-15 16:07 . 2012-07-15 16:07 -------- dc----w- c:\documents and settings\Sharon\Application Data\PC Cleaners
2012-07-15 16:05 . 2012-07-15 16:07 -------- dc----w- c:\documents and settings\Sharon\Application Data\PCPro
2012-07-14 17:27 . 2012-07-19 00:07 -------- dc----w- c:\documents and settings\Sharon\Local Settings\Application Data\Road_Runner
2012-07-14 17:27 . 2012-07-19 00:07 -------- dc----w- c:\program files\Road_Runner
2012-07-10 00:18 . 2012-07-10 00:19 -------- dc----w- c:\program files\Glary Utilities
2012-07-10 00:15 . 2012-07-10 00:15 -------- d-----w- c:\documents and settings\All Users\Uniblue
2012-07-06 16:30 . 2012-07-09 13:49 -------- dc----w- c:\program files\Windows Defender
2012-07-06 13:09 . 2012-07-09 13:49 -------- dc----w- c:\documents and settings\Sharon\Tracing
2012-07-06 13:04 . 2012-07-09 13:49 -------- dc----w- c:\program files\Windows Live
2012-07-06 13:01 . 2012-07-06 13:01 -------- dc----w- c:\program files\Common Files\Windows Live
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-26 11:42 . 2012-02-15 15:34 426184 -c--a-w- c:\windows\system32\FlashPlayerApp.exe
2012-07-26 11:42 . 2011-07-28 19:37 70344 -c--a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-06-13 13:19 . 2004-08-04 03:17 1866112 -c--a-w- c:\windows\system32\win32k.sys
2012-06-05 15:50 . 2008-04-14 00:12 1372672 -c--a-w- c:\windows\system32\msxml6.dll
2012-06-05 15:50 . 2004-08-04 04:56 1172480 -c--a-w- c:\windows\system32\msxml3.dll
2012-06-04 21:35 . 2009-08-07 00:23 222448 -c--a-w- c:\windows\system32\muweb.dll
2012-06-04 04:32 . 2004-08-04 04:56 152576 -c--a-w- c:\windows\system32\schannel.dll
2012-06-02 19:19 . 2009-08-06 23:24 22040 -c--a-w- c:\windows\system32\wucltui.dll.mui
2012-06-02 19:19 . 2011-07-25 21:58 329240 -c--a-w- c:\windows\system32\wucltui.dll
2012-06-02 19:19 . 2011-07-25 21:58 219160 -c--a-w- c:\windows\system32\wuaucpl.cpl
2012-06-02 19:19 . 2011-07-25 21:58 210968 -c--a-w- c:\windows\system32\wuweb.dll
2012-06-02 19:19 . 2009-08-06 23:24 15384 -c--a-w- c:\windows\system32\wuaucpl.cpl.mui
2012-06-02 19:19 . 2011-07-25 21:58 53784 -c--a-w- c:\windows\system32\wuauclt.exe
2012-06-02 19:19 . 2011-07-25 21:58 35864 -c--a-w- c:\windows\system32\wups.dll
2012-06-02 19:19 . 2009-08-06 23:24 45080 -c--a-w- c:\windows\system32\wups2.dll
2012-06-02 19:19 . 2009-08-06 23:24 15384 -c--a-w- c:\windows\system32\wuapi.dll.mui
2012-06-02 19:19 . 2004-08-04 04:56 97304 -c--a-w- c:\windows\system32\cdm.dll
2012-06-02 19:19 . 2009-08-06 23:24 17944 -c--a-w- c:\windows\system32\wuaueng.dll.mui
2012-06-02 19:19 . 2011-07-25 21:58 577048 -c--a-w- c:\windows\system32\wuapi.dll
2012-06-02 19:19 . 2011-07-25 21:58 1933848 -c--a-w- c:\windows\system32\wuaueng.dll
2012-06-02 19:18 . 2011-12-07 12:42 275696 -c--a-w- c:\windows\system32\mucltui.dll
2012-06-02 19:18 . 2011-12-07 12:42 17136 -c--a-w- c:\windows\system32\mucltui.dll.mui
2012-05-31 13:22 . 2004-08-04 04:56 599040 -c--a-w- c:\windows\system32\crypt32.dll
2012-05-25 21:13 . 2012-03-24 16:08 151912 -c--a-w- c:\windows\system32\mfevtps.exe
2012-05-16 15:08 . 2004-08-04 04:56 916992 -c--a-w- c:\windows\system32\wininet.dll
2012-05-16 15:08 . 2004-08-04 04:56 916992 -c--a-w- c:\windows\system32\wininet(5)(2).dll
2012-05-12 00:12 . 2007-08-13 22:54 11111424 -c--a-w- c:\windows\system32\ieframe(2)(2).dll
2012-05-11 14:42 . 2007-08-13 22:34 2000384 -c--a-w- c:\windows\system32\iertutil(2)(2).dll
2012-05-11 14:42 . 2004-08-04 04:56 1469440 -c----w- c:\windows\system32\inetcpl.cpl
2012-05-11 14:42 . 2004-08-04 04:56 1212416 -c--a-w- c:\windows\system32\urlmon(5)(2).dll
2012-05-11 14:42 . 2004-08-04 04:56 105984 -c--a-w- c:\windows\system32\url(4)(2).dll
2012-05-11 14:42 . 2004-08-04 04:56 43520 -c----w- c:\windows\system32\licmgr10.dll
2012-05-11 11:38 . 2004-08-04 02:59 385024 -c----w- c:\windows\system32\html.iec
2012-05-04 13:12 . 2004-08-04 03:20 2192640 -c--a-w- c:\windows\system32\ntoskrnl.exe
2012-05-04 12:32 . 2004-08-03 22:59 2069120 -c--a-w- c:\windows\system32\ntkrnlpa.exe
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DeviceDiscovery"="c:\program files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe" [2003-05-21 229437]
"HP Component Manager"="c:\program files\HP\hpcoretech\hpcmpmgr.exe" [2004-05-12 241664]
"HPDJ Taskbar Utility"="c:\windows\system32\spool\drivers\w32x86\3\hpztsb09.exe" [2003-09-01 176128]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-08-23 7630848]
"HP Software Update"="c:\program files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe" [2011-05-10 49208]
"InstaLAN"="c:\program files\Belkin\Router Setup and Monitor\BelkinRouterMonitor.exe" [2010-07-28 1485208]
"Anti-phishing Domain Advisor"="c:\documents and settings\All Users\Application Data\Anti-phishing Domain Advisor\visicom_antiphishing.exe" [2012-01-17 232616]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"mcui_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2012-03-22 1318816]
.
c:\documents and settings\Sharon\Start Menu\Programs\Startup\
Monitor Ink Alerts - HP Deskjet 3050A J611 series.lnk - c:\windows\system32\RunDll32.exe [2004-8-4 33280]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Event Planner Reminder.lnk]
backup=c:\windows\pss\Event Planner Reminder.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2012-01-03 13:10 843712 -c--a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
2003-06-25 15:24 49152 -c--a-w- c:\program files\Hewlett-Packard\HP Software Update\hpwuSchd.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2006-08-23 18:12 7630848 -c--a-w- c:\windows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2006-08-23 18:12 86016 -c--a-w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
2006-08-23 18:12 1617920 -c--a-w- c:\windows\system32\nwiz.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SigmatelSysTrayApp]
2006-07-27 18:19 282624 -c--a-w- c:\windows\stsystra.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2012-01-18 19:02 254696 -c--a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WMPNetworkSvc"=3 (0x3)
"SupportSoft RemoteAssist"=2 (0x2)
"ose"=3 (0x3)
"MDM"=2 (0x2)
"JavaQuickStarterService"=2 (0x2)
"AdobeFlashPlayerUpdateSvc"=3 (0x3)
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\ComputerAssociatesAntiMalware]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\Program Files\\Common Files\\Mcafee\\McSvcHost\\McSvHost.exe"=
.
R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [x]
R3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [x]
R3 gupdatem;Google Update Service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [x]
R3 mfendisk;McAfee Core NDIS Intermediate Filter;c:\windows\system32\DRIVERS\mfendisk.sys [x]
R3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [x]
R4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
S1 mfetdi2k;McAfee Inc. mfetdi2k;c:\windows\system32\drivers\mfetdi2k.sys [x]
S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe [x]
S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [x]
S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [x]
S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [x]
S3 mfendiskmp;mfendiskmp;c:\windows\system32\DRIVERS\mfendisk.sys [x]
.
.
--- Other Services/Drivers In Memory ---
.
*Deregistered* - mfeavfk01
.
Contents of the 'Scheduled Tasks' folder
.
2012-08-01 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-02-15 11:42]
.
2012-07-31 c:\windows\Tasks\At1.job
- c:\program files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe [2011-06-08 22:06]
.
2012-08-01 c:\windows\Tasks\At2.job
- c:\program files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe [2011-06-08 22:06]
.
2012-07-31 c:\windows\Tasks\At3.job
- c:\program files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe [2011-06-08 22:06]
.
2012-07-31 c:\windows\Tasks\At4.job
- c:\program files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe [2011-06-08 22:06]
.
2012-08-01 c:\windows\Tasks\GlaryInitialize.job
- c:\program files\Glary Utilities\initialize.exe [2012-07-10 02:16]
.
2012-08-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-05-04 23:14]
.
2012-08-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-05-04 23:14]
.
2012-08-01 c:\windows\Tasks\User_Feed_Synchronization-{6B8A5EAC-8DEB-4366-A45A-7F0736942A8C}.job
- c:\windows\system32\msfeedssync.exe [2007-08-13 09:31]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.rr.com/
uInternet Connection Wizard,ShellNext = iexplore
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.2.1
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2012-07-31 22:46
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(1752)
c:\windows\system32\WININET.dll
c:\documents and settings\All Users\Application Data\Anti-phishing Domain Advisor\visicom_antiphishing.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Belkin\Router Setup and Monitor\BelkinService.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\windows\system32\nvsvc32.exe
c:\program files\Common Files\McAfee\SystemCore\mcshield.exe
c:\program files\Common Files\McAfee\SystemCore\mfefire.exe
c:\program files\Belkin\Router Setup and Monitor\BelkinSetup.exe
.
**************************************************************************
.
Completion time: 2012-07-31 22:59:45 - machine was rebooted
ComboFix-quarantined-files.txt 2012-08-01 02:59
ComboFix2.txt 2012-07-26 18:48
.
Pre-Run: 59,884,027,904 bytes free
Post-Run: 60,298,731,520 bytes free
.
- - End Of File - - 4478D0B8F5FA56CB6C530487A7FBD09F