I thought maybe I should run the next program so I did. I did get two messages of SED.CFexe has encountered a problem and needs to close. I hit ok and then the program started running again where it left off. Then it rebooted and then had another error message of encountered a problem and then produced a log. I hope everything is ok. Here is the log it gave me.
ComboFix 07-10-21.1** - dad 2007-10-21 0:53:45.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.2226 [GMT -4:00]
Running from: C:\Documents and Settings\dad\Desktop\ComboFix.exe
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\dad\Application Data\inst.exe
C:\WINDOWS\install.exe
C:\WINDOWS\system32\drivers\sfsync03.sys
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\LEGACY_NPF
-------\LEGACY_SFSYNC03
-------\sfsync03
((((((((((((((((((((((((( Files Created from 2007-09-21 to 2007-10-21 )))))))))))))))))))))))))))))))
.
2007-10-21 00:53 51,200 --a------ C:\WINDOWS\NirCmd.exe
2007-10-20 10:56 <DIR> d-------- C:\Program Files\Image Trends Inc
2007-10-20 10:50 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2007-10-20 10:45 60,273 --a------ C:\WINDOWS\system32\pthreadGC2.dll
2007-10-19 17:40 <DIR> d-------- C:\Program Files\SpyRemover
2007-10-19 17:03 <DIR> d-------- C:\Program Files\Trend Micro
2007-10-18 02:39 <DIR> d-------- C:\Documents and Settings\dad\Application Data\mIRC
2007-10-18 01:17 <DIR> d-------- C:\Documents and Settings\dad\Application Data\Talkback
2007-10-17 19:49 <DIR> d-------- C:\Program Files\Investintech.com Inc
2007-10-14 23:02 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
2007-10-14 22:05 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage(2)
2007-10-14 21:55 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage(2)
2007-10-13 23:42 <DIR> d-------- C:\Program Files\Advanced Registry Fix
2007-10-12 01:25 <DIR> d-------- C:\Program Files\Super DVD Creator 9.30
2007-10-12 00:49 36,912 --a------ C:\WINDOWS\system32\pcimsg.dll
2007-10-12 00:48 32,096 --a------ C:\WINDOWS\system32\gdihook5.dll
2007-10-12 00:48 31,584 --a------ C:\WINDOWS\system32\drivers\gdihook5.sys
2007-10-12 00:47 317,952 --a------ C:\WINDOWS\system32\RoboEX32.DLL
2007-10-11 22:20 <DIR> d-------- C:\Program Files\Wave Arts
2007-10-11 22:20 <DIR> d-------- C:\Program Files\Common Files\Digidesign
2007-10-11 21:50 <DIR> d-------- C:\Program Files\Arial Audio Converter
2007-10-11 21:21 <DIR> d-------- C:\Program Files\PowerTracks DirectX Plugins
2007-10-11 21:20 <DIR> d-------- C:\bb
2007-10-11 17:39 8 --ah----- C:\WINDOWS\system32\adb.dat
2007-10-11 16:53 <DIR> d-------- C:\evil roy slade orgasmo
2007-10-10 16:16 <DIR> d-------- C:\Documents and Settings\son\Application Data\Reallusion
2007-10-09 16:34 584,192 -----c--- C:\WINDOWS\system32\dllcache\rpcrt4.dll
2007-10-08 22:33 <DIR> d-------- C:\Program Files\A-one DVD Ripper
2007-10-07 23:59 <DIR> d-------- C:\Program Files\AML Products
2007-10-07 23:56 <DIR> d-------- C:\Program Files\Alien Skin
2007-10-07 20:37 <DIR> d-------- C:\Program Files\CopyPod
2007-10-06 23:30 <DIR> d-------- C:\Program Files\FaceOnBody
2007-10-06 23:21 <DIR> d-------- C:\Program Files\ImTOO
2007-10-05 00:36 <DIR> d-------- C:\Documents and Settings\dad\Application Data\Reallusion
2007-10-04 22:33 <DIR> d-------- C:\Program Files\vp5e
2007-10-04 22:24 <DIR> d-------- C:\Program Files\The Logo Creator v5
2007-10-04 22:09 <DIR> d-------- C:\Documents and Settings\dad\Application Data\Laplink
2007-10-04 20:02 <DIR> d-------- C:\Program Files\Web Page Maker V2
2007-10-04 20:02 <DIR> d-------- C:\Documents and Settings\dad\Application Data\Web Page Maker V2
2007-10-02 22:10 <DIR> d-------- C:\Program Files\Reallusion
2007-10-02 22:10 <DIR> d-------- C:\Program Files\Common Files\Reallusion
2007-10-02 18:57 512,688 --a------ C:\WINDOWS\system32\XceedCry.dll
2007-10-02 18:57 423,784 --a------ C:\WINDOWS\system32\XceedBkp.dll
2007-10-02 18:57 118,784 --a------ C:\WINDOWS\system32\msstdfmt.dll
2007-10-02 17:22 <DIR> d-------- C:\Program Files\ZD Soft
2007-09-30 21:20 <DIR> d-------- C:\Program Files\Magellass
2007-09-30 12:27 <DIR> d-------- C:\Program Files\Magic Music Factory
2007-09-29 19:31 <DIR> d-------- C:\Program Files\Magic Video Converter
2007-09-29 19:31 544,768 --a------ C:\WINDOWS\system32\msvcr71d.dll
2007-09-29 01:01 <DIR> d-------- C:\Documents and Settings\dad\Application Data\uk.co.planetside
2007-09-29 00:59 <DIR> d-------- C:\Program Files\Terragen
2007-09-29 00:15 <DIR> d-------- C:\Program Files\Download Direct
2007-09-29 00:10 <DIR> d-------- C:\Program Files\McFunSoft Audio Studio
2007-09-28 23:49 <DIR> d-------- C:\Program Files\Kontakt Player 2
2007-09-28 23:49 <DIR> d-------- C:\Program Files\Garritan Instruments for Finale
2007-09-28 22:53 <DIR> d-------- C:\PSFONTS
2007-09-28 22:52 <DIR> d-------- C:\Program Files\Finale 2008
2007-09-28 21:47 <DIR> d-------- C:\Documents and Settings\dad\Application Data\DAEMON Tools Pro
2007-09-28 21:46 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Pro
2007-09-28 21:45 <DIR> d-------- C:\Program Files\DAEMON Tools Pro
2007-09-28 21:43 685,816 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2007-09-28 13:44 <DIR> d-------- C:\Program Files\Registry Clean Expert
2007-09-28 13:41 <DIR> d-------- C:\Program Files\SWiSHmax
2007-09-28 12:32 <DIR> d-------- C:\Program Files\DigitalView Video Studio
2007-09-24 22:01 <DIR> d-------- C:\Program Files\FirmTools
2007-09-24 22:01 <DIR> d-------- C:\My PhotoAlbums
2007-09-24 21:55 <DIR> d-------- C:\Program Files\PhotoActions
2007-09-24 21:18 <DIR> d-------- C:\Program Files\AVD Graphic Studio 6.7 TRIAL
2007-09-24 21:16 <DIR> d-------- C:\Program Files\AllStar DVD Photo Slideshow
2007-09-23 14:35 <DIR> d-------- C:\DVDShrink
2007-09-23 01:47 <DIR> d-------- C:\Program Files\PasswordTools
2007-09-23 01:45 <DIR> d-------- C:\WINDOWS\system32\1986
2007-09-23 01:45 <DIR> d-------- C:\WINDOWS\system32\1003
2007-09-23 01:42 <DIR> d-------- C:\WINDOWS\system32\1104
2007-09-23 01:42 <DIR> d-------- C:\WINDOWS\File Anti-Copy
2007-09-23 01:42 <DIR> d-------- C:\Program Files\File Anti-Copy
2007-09-22 01:08 <DIR> d-------- C:\Documents and Settings\dad\Application Data\1clickPro
2007-09-21 07:33 <DIR> d-------- C:\Program Files\Advanced MP3 Converter
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-10-21 04:17 --------- d-----w C:\Documents and Settings\dad\Application Data\LimeWire
2007-10-20 14:45 --------- d-----w C:\Program Files\ffdshow
2007-10-20 14:45 --------- d-----w C:\Program Files\DScaler5
2007-10-20 05:42 --------- d-----w C:\WINDOWS\system32\config\systemprofile\Application Data\SolidDocuments
2007-10-20 05:42 --------- d-----w C:\WINDOWS\system32\config\systemprofile\Application Data\SolidDocuments
2007-10-19 23:23 --------- d-----w C:\Documents and Settings\All Users\Application Data\1Click DVD Copy Pro
2007-10-19 10:11 --------- d-----w C:\Documents and Settings\dad\Application Data\U3
2007-10-19 00:29 --------- d-----w C:\Program Files\mIRC
2007-10-18 18:53 --------- d-----w C:\Documents and Settings\dad\Application Data\dvdcss
2007-10-18 02:08 --------- d-----w C:\Documents and Settings\dad\Application Data\SolidDocuments
2007-10-15 20:26 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-10-14 21:35 --------- d-----w C:\Program Files\CloneDVD
2007-10-14 17:04 --------- d-----w C:\Documents and Settings\mom\Application Data\SolidDocuments
2007-10-12 02:22 --------- d-----w C:\Program Files\VstPlugins
2007-10-12 01:23 --------- d-----w C:\Program Files\VirtualDJ
2007-10-11 01:24 --------- d-----w C:\Program Files\Games X Copy
2007-10-11 01:23 --------- d-----w C:\Program Files\Asus
2007-10-11 01:17 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2007-10-10 12:54 --------- d-----w C:\Program Files\Video Enhancer
2007-10-10 12:54 --------- d-----w C:\Program Files\TrojanHunter 4.7
2007-10-10 11:40 --------- d---a-w C:\Program Files\(KraMixer)
2007-10-10 11:40 --------- d-----w C:\Program Files\YouTubeRobot
2007-10-10 11:40 --------- d-----w C:\Program Files\YouTube Movie Ripper V1.1
2007-10-10 11:40 --------- d-----w C:\Program Files\WinSnap
2007-10-10 11:40 --------- d-----w C:\Program Files\WinHTTrack
2007-10-10 11:40 --------- d-----w C:\Program Files\Video Snapshots Genius
2007-10-10 11:40 --------- d-----w C:\Program Files\Video Convert Premier
2007-10-10 11:40 --------- d-----w C:\Program Files\VibeStreamer
2007-10-10 11:40 --------- d-----w C:\Program Files\UltraISO
2007-10-10 11:40 --------- d-----w C:\Program Files\QuickSFV
2007-10-10 11:40 --------- d-----w C:\Program Files\PowerISO
2007-10-10 11:40 --------- d-----w C:\Program Files\PE Explorer
2007-10-10 11:40 --------- d-----w C:\Program Files\PDF Password Remover v3.0
2007-10-10 11:40 --------- d-----w C:\Program Files\No1 DVD Ripper
2007-10-10 11:40 --------- d-----w C:\Program Files\MP3Fitness
2007-10-10 11:40 --------- d-----w C:\Program Files\honestech VHS to DVD 3.0
2007-10-10 11:40 --------- d-----w C:\Program Files\Hide IP Platinum
2007-10-10 11:40 --------- d-----w C:\Program Files\Easy CD-DA Extractor 10
2007-10-10 11:40 --------- d-----w C:\Program Files\DVD Shrink
2007-10-10 11:40 --------- d-----w C:\Program Files\DeadDiskDoctor
2007-10-10 11:40 --------- d-----w C:\Program Files\[bleep] NFO Viewer
2007-10-10 11:40 --------- d-----w C:\Program Files\CCleaner
2007-10-10 11:40 --------- d-----w C:\Program Files\AviDvdBurner
2007-10-10 11:40 --------- d-----w C:\Program Files\AutoGK
2007-10-10 11:40 --------- d-----w C:\Program Files\7-Zip
2007-10-06 01:44 --------- d-----w C:\Program Files\Your Uninstaller 2006
2007-10-05 03:58 --------- d-----w C:\Program Files\CyberLink
2007-10-05 01:54 --------- d-----w C:\Documents and Settings\dad\Application Data\Vso
2007-10-05 01:53 47,360 ----a-w C:\WINDOWS\system32\drivers\pcouffin.sys
2007-10-05 01:53 47,360 ----a-w C:\Documents and Settings\dad\Application Data\pcouffin.sys
2007-10-05 01:53 --------- d-----w C:\Program Files\LG Software Innovations
2007-10-03 12:24 --------- d-----w C:\Program Files\Blaze Media Pro
2007-10-02 16:00 --------- d-----w C:\Documents and Settings\daughter\Application Data\SolidDocuments
2007-10-02 01:12 --------- d-----w C:\Program Files\ACD Systems
2007-09-30 22:25 --------- d-----w C:\Documents and Settings\dad\Application Data\DivX
2007-09-30 12:31 512,096 ----a-w C:\WINDOWS\system32\drivers\amon.sys
2007-09-30 12:31 15,424 ----a-w C:\WINDOWS\system32\drivers\nod32drv.sys
2007-09-29 12:32 --------- d-----w C:\Documents and Settings\son\Application Data\SolidDocuments
2007-09-29 12:20 --------- d-----w C:\Documents and Settings\dad\Application Data\Mobile Master
2007-09-29 04:45 --------- d-----w C:\Program Files\MediaMonkey
2007-09-28 16:38 --------- d-----w C:\Program Files\AVD Video Processor 7.7 TRIAL
2007-09-24 15:17 --------- d-----w C:\Documents and Settings\dad\Application Data\Cyberlink
2007-09-23 18:08 --------- d-----w C:\Program Files\CoinManage
2007-09-21 13:10 --------- d-----w C:\Program Files\Magic Burning Studio
2007-09-21 03:01 --------- d-----w C:\Program Files\PhotoZoom Pro 2
2007-09-20 03:06 --------- d-----w C:\Program Files\onOne Software
2007-09-20 02:59 737,280 ----a-w C:\WINDOWS\iun6002.exe
2007-09-20 01:41 --------- d-----w C:\Documents and Settings\All Users\Application Data\EarMaster
2007-09-18 21:19 --------- d-----w C:\Documents and Settings\dad\Application Data\SlySoft
2007-09-18 21:19 --------- d-----w C:\Documents and Settings\dad\Application Data\Photodex
2007-09-18 21:19 --------- d-----w C:\Documents and Settings\dad\Application Data\Netscape
2007-09-18 21:19 --------- d-----w C:\Documents and Settings\dad\Application Data\Comodo
2007-09-18 21:19 --------- d-----w C:\Documents and Settings\dad\Application Data\bibble
2007-09-18 21:19 --------- d-----w C:\Documents and Settings\dad\Application Data\Azureus
2007-09-18 21:14 --------- d-----w C:\Documents and Settings\mom\Application Data\URSoft
2007-09-18 12:58 --------- d-----w C:\Documents and Settings\All Users\Application Data\TechSmith
2007-09-17 00:43 --------- d-----w C:\Program Files\Lavasoft
2007-09-14 10:22 --------- d-----w C:\Program Files\DivX
2007-09-11 03:28 --------- d-----w C:\Documents and Settings\All Users\Application Data\BurstCopy Labs
2007-09-10 23:50 --------- d-----w C:\Program Files\Common Files\Adobe
2007-09-10 23:41 --------- d-----w C:\Program Files\Common Files\Macrovision Shared
2007-09-10 20:31 --------- d-----w C:\Program Files\Advanced Registry Doctor
2007-09-10 02:45 --------- d-----w C:\Documents and Settings\All Users\Application Data\DVD Shrink
2007-09-10 01:24 --------- d-----w C:\Program Files\AKoff Music Composer
2007-09-10 01:09 --------- d-----w C:\Program Files\HighCriteria
2007-09-09 05:21 --------- d-----w C:\Documents and Settings\dad\Application Data\Pegasys Inc
2007-09-09 05:19 --------- d-----w C:\Program Files\Pegasys Inc
2007-09-06 01:02 --------- d-----w C:\Program Files\Maxtor
2007-09-04 01:09 --------- d-----w C:\Program Files\Business Letter Professional
2007-09-03 23:39 --------- d-----w C:\Documents and Settings\dad\Application Data\Cakewalk
2007-09-03 23:37 --------- d-----w C:\Documents and Settings\All Users\Application Data\Cakewalk
2007-09-03 23:30 --------- d-----w C:\Program Files\Cakewalk
2007-09-02 01:36 --------- d-----w C:\Program Files\LimeWire
2007-09-02 01:36 --------- d-----w C:\Program Files\Any Video Converter Professional
2007-09-02 01:36 --------- d-----w C:\Documents and Settings\All Users\Application Data\CyberLink
2007-08-30 03:52 25,586 ----a-w C:\aem8.dat
2007-08-30 03:52 --------- d-----w C:\Program Files\Audio Edit Magic
2007-08-29 04:22 --------- d-----w C:\Program Files\SiteThief
2007-08-27 03:02 --------- d-----w C:\Documents and Settings\dad\Application Data\GEAR PRO Mastering Edition 7.03
2007-08-27 02:56 --------- d-----w C:\Program Files\GEAR Software
2006-05-02 22:11:25 108 --sha-r C:\WINDOWS\neoqaz2.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-06-29 00:43]
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [2007-09-30 08:31]
"nwiz"="nwiz.exe" [2007-06-29 00:43 C:\WINDOWS\system32\nwiz.exe]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"=1 (0x1)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"=1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Acrobat Synchronizer.lnk]
backup=C:\WINDOWS\pss\Adobe Acrobat Synchronizer.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk]
backup=C:\WINDOWS\pss\Adobe Gamma Loader.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
backup=C:\WINDOWS\pss\Adobe Reader Speed Launch.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk]
backup=C:\WINDOWS\pss\Adobe Reader Synchronizer.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^GammaTray.lnk]
backup=C:\WINDOWS\pss\GammaTray.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^GetRight - Tray Icon.lnk]
backup=C:\WINDOWS\pss\GetRight - Tray Icon.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^GhostSurf proxy.lnk]
backup=C:\WINDOWS\pss\GhostSurf proxy.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^NaturalColorLoad.lnk]
backup=C:\WINDOWS\pss\NaturalColorLoad.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^NETGEAR WG311T Smart Wizard.lnk]
backup=C:\WINDOWS\pss\NETGEAR WG311T Smart Wizard.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^SpyCatcher Protector.lnk]
backup=C:\WINDOWS\pss\SpyCatcher Protector.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dad^Start Menu^Programs^Startup^LimeWire On Startup.lnk]
backup=C:\WINDOWS\pss\LimeWire On Startup.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dad^Start Menu^Programs^Startup^MagicDisc.lnk]
backup=C:\WINDOWS\pss\MagicDisc.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dad^Start Menu^Programs^Startup^Scheduler.lnk]
backup=C:\WINDOWS\pss\Scheduler.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeUpdater]
C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ANIWZCS2Service]
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cFosSpeed]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\D-Link RangeBooster G WUA-2340]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\dvd43]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EverioService]
"C:\Program Files\CyberLink\PCM4Everio\EverioService.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GhostSurf Reminder]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GhostSurfDelSatellite]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Launch Ai Booster]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
"C:\Program Files\Messenger\msmsgs.exe" /background
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\My Web Search Bar]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MyWebSearch Email Plugin]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
RunDLL32.exe NvMCTray.dll,NvTaskbarInit
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NWEReboot]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RegClean Expert Scheduler]
"C:\Program Files\Registry Clean Expert\RCHelper.exe" /startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ResChanger 2005]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
SOUNDMAN.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
"C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Symantec NetDriver Monitor]
C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XPRepairPro2007]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"ACS"=2 (0x2)
"ANIWZCSdService"=2 (0x2)
"Automatic LiveUpdate Scheduler"=2 (0x2)
"McNASvc"=2 (0x2)
"mcusrmgr"=2 (0x2)
"mctskshd.exe"=2 (0x2)
"mcpromgr"=2 (0x2)
"mcmispupdmgr"=2 (0x2)
"McLogManagerService"=2 (0x2)
R0 Si3132r5;SiI-3132 SoftRaid 5 Controller;C:\WINDOWS\system32\DRIVERS\Si3132r5.sys
R1 nvport;NVIDIA PORT IO Control Driver;\??\C:\WINDOWS\system32\Drivers\nvport.sys
R2 {95808DC4-FA4A-4c74-92FE-5B863F82066B};{95808DC4-FA4A-4c74-92FE-5B863F82066B};\??\C:\Program Files\CyberLink\PowerDVD\
000.fcl
R3 scrcap;scrcap;C:\WINDOWS\system32\DRIVERS\scrcap.sys
R3 usbprint;Microsoft USB PRINTER Class;C:\WINDOWS\system32\DRIVERS\usbprint.sys
S3 A5AGU;D-Link USB Wireless Network Adapter Service;C:\WINDOWS\system32\DRIVERS\A5AGU.sys
S3 ATHFMWDL;D-Link predator Bootloader driver;C:\WINDOWS\system32\Drivers\ATHFMWDL.sys
S3 bepldr;BCL easyPDF SDK 5 Loader;"C:\Program Files\Common Files\BCL Technologies\easyPDF 5\bepldr.exe"
S3 WSIMD;wsimd Service;C:\WINDOWS\system32\DRIVERS\wsimd.sys
S4 GuiHook;GuiHook;C:\PROGRA~1\NETSUP~1\guihook.exe
.
Contents of the 'Scheduled Tasks' folder
"2007-10-21 04:58:41 C:\WINDOWS\Tasks\EasyShare Registration RunOnce Task.job"
- C:\WINDOWS\system32\rundll32.exe
"2007-10-05 16:09:00 C:\WINDOWS\Tasks\EasyShare Registration Task.job"
- C:\WINDOWS\system32\rundll32.exe
"2007-10-15 05:00:00 C:\WINDOWS\Tasks\McDefragTask.job"
- c:\program files\mcafee\mqc\QcConsol.exe
"2007-09-01 05:00:00 C:\WINDOWS\Tasks\McQcTask.job"
- c:\program files\mcafee\mqc\QcConsol.exe
.
**************************************************************************
catchme 0.3.1232 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2007-10-21 00:58:56
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2007-10-21 1:00:08 - machine was rebooted
.
--- E O F ---
Edited by Amadauss, 20 October 2007 - 11:07 PM.