I have a preference for ad-aware. I feel it is a superior product. I appreciate the free programs you offered and will look into using them. Here are both logs you asked for.
ComboFix 09-12-29.03 - HP_Administrator 12/29/2009 15:38:45.5.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.958.603 [GMT -5:00]
Running from: c:\documents and settings\[removed]\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\HP_Administrator\Desktop\CFScript.txt
AV: a-squared Anti-Malware *On-access scanning disabled* (Updated) {0F8591BB-342B-4493-91C3-4E948ED21255}
FW: Norton Internet Worm Protection *disabled* {990F9400-4CEE-43EA-A83A-D013ADD8EA6E}
FILE ::
"c:\windows\system32\kivihude.dll"
"c:\windows\system32\mohugeze.dll"
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\docume~1\HP_ADM~1\LOCALS~1\Temp\IadHide5.dll
c:\documents and settings\HP_Administrator\Local Settings\temp\IadHide5.dll
.
((((((((((((((((((((((((( Files Created from 2009-11-28 to 2009-12-29 )))))))))))))))))))))))))))))))
.
2009-12-26 06:09 . 2009-12-28 04:27 ——– d—–w- c:\program files\Malwarebytes' Anti-Malware
2009-12-23 03:49 . 2009-12-23 03:49 ——– d—–w- c:\documents and settings\HP_Administrator\Application Data\Malwarebytes
2009-12-23 03:49 . 2009-12-23 03:49 ——– d—–w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-12-19 20:55 . 2009-12-19 20:55 0 —-a-w- c:\documents and settings\HP_Administrator\settings.dat
2009-12-19 20:49 . 2009-12-19 20:50 ——– d—–w- c:\program files\ERUNT
2009-12-11 23:03 . 2009-12-29 20:34 ——– d—–w- c:\program files\Norton Security Scan
2009-12-09 09:00 . 2009-12-09 09:00 ——– d-sh–w- c:\windows\system32\config\systemprofile\IETldCache
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-29 20:48 . 2008-10-17 19:51 ——– d—–w- c:\program files\DNA
2009-12-29 20:48 . 2008-10-17 19:51 ——– d—–w- c:\documents and settings\HP_Administrator\Application Data\DNA
2009-12-29 20:34 . 2009-08-09 06:29 ——– d—–w- c:\documents and settings\All Users\Application Data\Norton
2009-12-29 20:34 . 2006-07-31 23:52 ——– d—–w- c:\program files\Common Files\Symantec Shared
2009-12-24 23:57 . 2007-02-06 22:01 ——– d—–w- c:\documents and settings\HP_Administrator\Application Data\BitTorrent
2009-12-11 23:03 . 2009-08-09 06:29 ——– d—–w- c:\documents and settings\All Users\Application Data\NortonInstaller
2009-12-09 08:11 . 2008-08-29 20:52 ——– d—–w- c:\documents and settings\All Users\Application Data\Microsoft Help
2009-10-29 07:45 . 2004-08-10 04:00 916480 ——w- c:\windows\system32\wininet.dll
2009-10-21 05:38 . 2004-08-10 04:00 75776 —-a-w- c:\windows\system32\strmfilt.dll
2009-10-21 05:38 . 2004-08-10 04:00 25088 —-a-w- c:\windows\system32\httpapi.dll
2009-10-20 16:20 . 2004-08-10 04:00 265728 ——w- c:\windows\system32\drivers\http.sys
2009-10-13 10:30 . 2004-08-10 04:00 270336 —-a-w- c:\windows\system32\oakley.dll
2009-10-12 13:38 . 2004-08-10 04:00 149504 —-a-w- c:\windows\system32\rastls.dll
2009-10-12 13:38 . 2004-08-10 04:00 79872 —-a-w- c:\windows\system32\raschap.dll
2009-09-27 05:12 . 2009-09-27 05:12 91648 –sha-w- c:\windows\system32\bofavoju.dll
2009-09-26 17:11 . 2009-09-26 17:11 61440 –sha-w- c:\windows\system32\jadebaji.dll
2009-09-26 05:11 . 2009-09-26 05:11 92160 –sha-w- c:\windows\system32\vizisida.dll
2009-09-26 17:11 . 2009-09-26 17:11 92672 –sha-w- c:\windows\system32\yekikewa.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-14 1695232]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2009-12-09 323392]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2009-05-26 1830128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray"="c:\windows\ehome\ehtray.exe" [2005-09-30 67584]
"ftutil2"="ftutil2.dll" [2004-06-07 106496]
"RTHDCPL"="RTHDCPL.EXE" [2006-06-14 16239616]
"AlwaysReady Power Message APP"="ARPWRMSG.EXE" [2005-08-03 77312]
"DMAScheduler"="c:\program files\HP DigitalMedia Archive\DMAScheduler.exe" [2006-04-13 90112]
"Recguard"="c:\windows\SMINST\RECGUARD.EXE" [2005-07-23 237568]
"HPBootOp"="c:\program files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" [2006-02-16 249856]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe" [2005-02-16 221184]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2006-07-31 180269]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-16 13529088]
"nwiz"="nwiz.exe" [2006-05-09 1519616]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-05-16 86016]
"Symantec PIF AlertEng"="c:\program files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" [2008-01-29 583048]
"a-squared"="c:\program files\A-SQUARED ANTI-MALWARE\a2guard.exe" [2009-02-25 2799760]
"HP Software Update"="c:\program files\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-10-25 282624]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2008-11-04 435096]
c:\documents and settings\HP_Administrator\Start Menu\Programs\Startup\
ERUNT AutoBackup.lnk - c:\program files\ERUNT\AUTOBACK.EXE [2005-10-20 38912]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Updates From HP.lnk - c:\program files\Updates from HP\9972322\Program\Updates from HP.exe [2006-7-31 36903]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2008-12-22 16:05 356352 —-a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2006-10-25 23:58 282624 —-a-w- c:\program files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\DISC\\DISCover.exe"=
"c:\\Program Files\\DISC\\DiscStreamHub.exe"=
"c:\\Program Files\\DISC\\myFTP.exe"=
"c:\\Program Files\\Updates from HP\\9972322\\Program\\Updates from HP.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\a-squared Anti-Malware\\a2guard.exe"=
"c:\\hp\\KBD\\kbd.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [5/26/2009 9:05 AM 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [5/26/2009 9:05 AM 72944]
R2 a2AntiMalware;a-squared Anti-Malware Service;c:\program files\a-squared Anti-Malware\a2service.exe [3/14/2009 11:54 PM 425080]
R3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [5/26/2009 9:05 AM 7408]
.
Contents of the 'Scheduled Tasks' folder
2009-12-29 c:\windows\Tasks\User_Feed_Synchronization-{84B2B653-5DBF-4B0E-A1A8-9B78EA3FD5EE}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 08:31]
.
.
——- Supplementary Scan ——-
.
uStart Page = hxxp://www.yahoo.com/
uDefault_Search_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=EN_US&c=64&bd=PAVILION&pf=desktop
mSearch Bar = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=EN_US&c=64&bd=PAVILION&pf=desktop
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = *.local
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~4\Office12\EXCEL.EXE/3000
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-12-29 15:51
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes …
scanning hidden autostart entries …
scanning hidden files …
scan completed successfully
hidden files: 0
**************************************************************************
.
——————— DLLs Loaded Under Running Processes ———————
- - - - - - - > 'winlogon.exe'(768)
c:\program files\SUPERAntiSpyware\SASWINLO.dll
c:\windows\system32\WININET.dll
- - - - - - - > 'explorer.exe'(2412)
c:\windows\system32\WININET.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\MSVCR80.dll
c:\program files\Common Files\Microsoft Shared\OFFICE12\MSOXEV.DLL
.
———————— Other Running Processes ————————
.
c:\program files\Lavasoft\Ad-Aware\aawservice.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\RUNDLL32.EXE
c:\windows\arservice.exe
c:\program files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\eHome\ehRecvr.exe
c:\windows\eHome\ehSched.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\windows\system32\nvsvc32.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\windows\ehome\mcrdsvc.exe
c:\program files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
c:\windows\system32\wscntfy.exe
c:\windows\system32\dllhost.exe
c:\windows\eHome\ehmsas.exe
c:\hp\KBD\KBD.EXE
.
**************************************************************************
.
Completion time: 2009-12-29 15:59:32 - machine was rebooted
ComboFix-quarantined-files.txt 2009-12-29 20:59
ComboFix2.txt 2009-12-28 05:03
ComboFix3.txt 2009-12-25 17:30
ComboFix4.txt 2009-12-23 03:10
ComboFix5.txt 2009-12-29 20:37
Pre-Run: 26,251,939,840 bytes free
Post-Run: 26,319,462,400 bytes free
- - End Of File - - AE9445C2AAEA0A3E4AADFB7EC9EF8EC0
2009-12-29 20:48:45 . 2006-07-31 23:35:09 24,613 —-a-w- C:\Qoobox\Quarantine\C\Documents and Settings\HP_Administrator\LOCALS~1\temp\IadHide5.dll.vir
2009-12-29 20:38:43 . 2009-12-29 20:38:43 0 —-a-w- C:\Qoobox\Quarantine\catchme.txt
2009-12-28 05:02:02 . 2009-12-28 05:02:02 1,424 —-a-w- C:\Qoobox\Quarantine\Registry_backups\AddRemove-MyITLab ActiveX Installer_is1.reg.dat
2009-12-28 05:01:46 . 2009-12-28 05:01:46 373 —-a-w- C:\Qoobox\Quarantine\Registry_backups\SSODL-guleriseb-{50d5fa88-bc08-4102-8b9c-bc709bc85704}.reg.dat
2009-12-28 05:01:44 . 2009-12-28 05:01:44 374 —-a-w- C:\Qoobox\Quarantine\Registry_backups\SharedTaskScheduler-{50d5fa88-bc08-4102-8b9c-bc709bc85704}.reg.dat
2009-12-28 04:31:49 . 2009-12-28 04:31:49 298,812 —-a-w- C:\Qoobox\Quarantine\[4]-Submit_2009-12-27_23.31.42.zip
2009-12-26 17:11:48 . 2009-12-28 04:00:00 316 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\Tasks\gtyihebo.job.vir
2009-12-25 17:25:59 . 2009-12-25 17:25:59 373 —-a-w- C:\Qoobox\Quarantine\Registry_backups\SSODL-savevijuz-{c7525c5d-7134-49fd-bb9c-8d21deaf723c}.reg.dat
2009-12-25 17:25:57 . 2009-12-25 17:25:57 374 —-a-w- C:\Qoobox\Quarantine\Registry_backups\SharedTaskScheduler-{c7525c5d-7134-49fd-bb9c-8d21deaf723c}.reg.dat
2009-12-25 17:25:51 . 2009-12-25 17:25:51 128 —-a-w- C:\Qoobox\Quarantine\Registry_backups\HKLM-Run-palozozole.reg.dat
2009-12-25 17:25:51 . 2009-12-25 17:25:51 150 —-a-w- C:\Qoobox\Quarantine\Registry_backups\HKLM-Run-migekehuv.reg.dat
2009-12-25 17:04:46 . 2009-12-25 17:04:46 25,530 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\_logon_.exe.zip
2009-12-25 17:04:03 . 2009-12-25 17:04:03 3,164 —-a-w- C:\Qoobox\Quarantine\Registry_backups\Service_Kmuyqewi.reg.dat
2009-12-25 17:04:02 . 2009-12-25 17:04:02 3,520 —-a-w- C:\Qoobox\Quarantine\Registry_backups\Service_Kfwaev.reg.dat
2009-12-25 17:04:02 . 2009-12-25 17:04:02 1,038 —-a-w- C:\Qoobox\Quarantine\Registry_backups\Legacy_KMUYQEWI.reg.dat
2009-12-25 17:04:02 . 2009-12-25 17:04:02 1,014 —-a-w- C:\Qoobox\Quarantine\Registry_backups\Legacy_KFWAEV.reg.dat
2009-12-25 14:55:28 . 2009-12-25 14:55:28 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\17421.exe.vir
2009-12-25 13:55:22 . 2009-12-25 13:55:22 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\153.exe.vir
2009-12-25 13:35:21 . 2009-12-25 13:35:21 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\3902.exe.vir
2009-12-25 13:15:21 . 2009-12-25 13:15:21 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\14604.exe.vir
2009-12-25 12:55:20 . 2009-12-25 12:55:20 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\32391.exe.vir
2009-12-25 12:35:20 . 2009-12-25 12:35:20 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\5436.exe.vir
2009-12-25 12:15:19 . 2009-12-25 12:15:19 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\4827.exe.vir
2009-12-25 11:55:19 . 2009-12-25 11:55:19 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\11942.exe.vir
2009-12-25 11:35:17 . 2009-12-25 11:35:18 110,592 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\2995.exe.vir
2009-12-25 11:15:16 . 2009-12-25 11:15:16 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\491.exe.vir
2009-12-25 10:55:16 . 2009-12-25 10:55:16 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\9961.exe.vir
2009-12-25 10:35:15 . 2009-12-25 10:35:15 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\16827.exe.vir
2009-12-25 10:15:15 . 2009-12-25 10:15:15 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\23281.exe.vir
2009-12-25 09:55:14 . 2009-12-25 09:55:14 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\28145.exe.vir
2009-12-25 09:35:14 . 2009-12-25 09:35:14 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\5705.exe.vir
2009-12-25 09:15:13 . 2009-12-25 09:15:13 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\24464.exe.vir
2009-12-25 08:55:12 . 2009-12-25 08:55:12 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\26962.exe.vir
2009-12-25 08:35:12 . 2009-12-25 08:35:12 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\29358.exe.vir
2009-12-25 08:15:12 . 2009-12-25 08:15:12 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\11478.exe.vir
2009-12-25 07:55:11 . 2009-12-25 16:43:02 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\15724.exe.vir
2009-12-25 07:35:10 . 2009-12-25 16:22:57 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\19169.exe.vir
2009-12-25 07:15:10 . 2009-12-25 16:02:56 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\26500.exe.vir
2009-12-25 06:55:09 . 2009-12-25 15:42:55 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\6334.exe.vir
2009-12-25 06:35:09 . 2009-12-25 15:22:55 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\18467.exe.vir
2009-12-25 06:16:32 . 2009-12-25 06:16:32 767 —-a-w- C:\Qoobox\Quarantine\C\Documents and Settings\HP_Administrator\Start Menu\Internet Security 2010.lnk.vir
2009-12-25 06:16:32 . 2009-12-25 06:16:32 767 —-a-w- C:\Qoobox\Quarantine\C\Documents and Settings\HP_Administrator\Desktop\Internet Security 2010.lnk.vir
2009-12-25 06:15:15 . 2009-12-25 06:15:07 915,968 —-a-w- C:\Qoobox\Quarantine\C\Program Files\InternetSecurity2010\IS2010.exe.vir
2009-12-25 05:59:09 . 2009-12-25 16:00:00 296 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\Tasks\yobkergo.job.vir
2009-12-25 04:48:38 . 2009-12-25 15:02:54 0 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\41.exe.vir
2009-12-25 04:48:24 . 2009-12-25 06:14:58 16,896 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\winhelper86.dll.vir
2009-12-25 04:48:13 . 2009-12-25 14:59:43 2,854 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\critical_warning.html.vir
2009-12-25 04:48:11 . 2009-12-25 04:48:08 22,016 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\winlogon86.exe.vir
2009-12-25 04:48:11 . 2009-12-25 04:48:08 22,016 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\winupdate86.exe.vir
2009-12-24 17:13:28 . 2009-12-24 17:13:25 34,308 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\logon.exe.vir
2009-12-22 05:02:54 . 2009-12-22 05:02:54 1,312 —-a-w- C:\Qoobox\Quarantine\Registry_backups\AddRemove-ShockwaveFlash.reg.dat
2009-12-22 05:00:53 . 2009-12-22 05:00:53 159 —-a-w- C:\Qoobox\Quarantine\Registry_backups\HKCU-Run-Internet Security 2010.reg.dat
2009-12-22 05:00:53 . 2009-12-22 05:00:53 179 —-a-w- C:\Qoobox\Quarantine\Registry_backups\HKCU-Run-Uniblue RegistryBooster2.reg.dat
2009-12-22 05:00:53 . 2009-12-22 05:00:53 148 —-a-w- C:\Qoobox\Quarantine\Registry_backups\HKCU-Run-Mp4 Player.reg.dat
2009-12-22 04:49:10 . 2004-04-30 05:01:14 53 —-a-w- C:\Qoobox\Quarantine\D\Autorun.inf.vir
2009-12-22 04:42:33 . 2009-12-22 04:42:33 2,404 —-a-w- C:\Qoobox\Quarantine\Registry_backups\Service_NPF.reg.dat
2009-12-22 04:42:33 . 2009-12-22 04:42:33 1,312 —-a-w- C:\Qoobox\Quarantine\Registry_backups\Legacy_NPF.reg.dat
2009-12-22 04:42:15 . 2009-12-29 20:45:36 7,565 —-a-w- C:\Qoobox\Quarantine\Registry_backups\tcpip.reg
2009-12-22 04:09:30 . 2009-12-29 20:37:20 818 —-a-w- C:\Qoobox\Quarantine\catchme.log
2009-12-20 06:46:33 . 2009-12-20 06:46:33 81,920 —-a-w- C:\Qoobox\Quarantine\C\Documents and Settings\All Users\Application Data\Macromedia\SwUpdate\swupdate.dll.vir
2009-12-20 04:32:31 . 2009-12-20 04:32:32 110,592 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\292.exe.vir
2009-12-19 17:42:07 . 2009-12-19 17:42:07 24,064 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\config\systemprofile\Start Menu\Programs\Startup\ChkDisk.dll.vir
2009-12-19 17:42:07 . 2009-12-19 17:42:07 651 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\config\systemprofile\Start Menu\Programs\Startup\ChkDisk.lnk.vir
2009-12-19 17:42:07 . 2009-12-19 17:42:07 24,064 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\config\systemprofile\protect.dll.vir
2009-09-27 17:12:03 . 2009-09-27 17:12:03 92,160 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\mohugeze.dll.vir
2009-09-27 17:12:03 . 2009-09-27 17:12:03 38,912 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\foyugujo.dll.vir
2009-09-27 05:12:01 . 2009-09-27 05:12:01 38,912 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\zupijulo.dll.vir
2009-09-26 17:11:47 . 2009-09-26 17:11:47 38,400 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\voyutepu.dll.vir
2009-09-26 05:11:33 . 2009-09-26 05:11:33 38,400 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\dezuwabi.dll.vir
2009-09-25 05:59:19 . 2009-09-25 05:59:19 51,712 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\kivihude.dll.vir
2009-09-25 05:59:19 . 2009-09-25 05:59:19 51,712 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\pagapobo.dll.vir
2009-09-25 05:59:19 . 2009-09-25 05:59:19 51,712 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\wahewuvu.dll.vir
2009-09-25 05:59:06 . 2009-09-25 05:59:06 93,696 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\bokiluve.dll.vir
2009-09-25 05:59:06 . 2009-09-25 05:59:06 61,440 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\rutijatu.dll.vir
2009-09-25 05:59:06 . 2009-09-25 05:59:06 39,424 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\yesukeje.dll.vir
2009-09-25 05:59:06 . 2009-09-25 05:59:06 51,712 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\yonolafo.dll.vir
2009-09-24 17:18:29 . 2009-09-24 17:18:29 39,424 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\begadosi.dll.vir
2009-09-24 17:18:29 . 2009-09-24 17:18:29 93,184 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\niyihifi.dll.vir
2009-09-24 17:13:11 . 2009-09-24 17:13:11 52,224 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\fesorega.dll.tmp.vir
2009-09-24 17:13:11 . 2009-09-24 17:13:11 52,224 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\pajuwojo.dll.tmp.vir
2009-09-24 17:13:11 . 2009-09-24 17:13:11 52,224 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\yevazani.dll.tmp.vir
2009-04-06 15:43:12 . 2009-04-06 15:43:12 24,064 —-a-w- C:\Qoobox\Quarantine\C\Documents and Settings\NetworkService\protect.dll.vir
2009-04-05 10:51:40 . 2009-04-05 10:51:40 24,064 -c–a-w- C:\Qoobox\Quarantine\C\Documents and Settings\LocalService\protect.dll.vir
2009-04-05 00:55:06 . 2009-04-05 00:55:12 24,064 —-a-w- C:\Qoobox\Quarantine\C\Documents and Settings\HP_Administrator\Start Menu\Programs\Startup\ChkDisk.dll.vir
2009-04-05 00:55:06 . 2009-05-01 05:00:02 651 —-a-w- C:\Qoobox\Quarantine\C\Documents and Settings\HP_Administrator\Start Menu\Programs\Startup\ChkDisk.lnk.vir
2009-04-05 00:55:03 . 2009-04-05 00:55:03 24,064 -c–a-w- C:\Qoobox\Quarantine\C\Documents and Settings\HP_Administrator\protect.dll.vir
2009-04-05 00:55:02 . 2009-12-22 04:25:54 24,064 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\autochk.dll.vir
2008-08-29 21:27:14 . 2008-08-29 21:27:10 683,801 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\unins000.exe.vir
2008-08-29 21:27:14 . 2008-08-29 21:27:15 1,074 -c–a-w- C:\Qoobox\Quarantine\C\WINDOWS\unins000.dat.vir
2008-02-23 03:03:39 . 2008-02-23 03:03:39 883 —-a-w- C:\Qoobox\Quarantine\C\Documents and Settings\HP_Administrator\Start Menu\Programs\Startup\MEMonitor.lnk.vir
2007-02-04 08:04:11 . 2006-03-21 03:23:12 23,040 -c–a-w- C:\Qoobox\Quarantine\C\WINDOWS\kb913800.exe.vir
2005-08-02 21:24:02 . 2005-08-02 21:24:02 14,336 -c–a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\pthreadVC.dll.vir
2005-08-02 21:18:46 . 2005-08-02 21:18:46 93,696 -c–a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\wpcap.dll.vir
2005-08-02 21:10:14 . 2005-08-02 21:10:14 32,512 -c–a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\npf.sys.vir
2005-08-02 21:08:10 . 2005-08-02 21:08:10 29,696 -c–a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\Packet.dll.vir
2005-08-02 21:08:08 . 2005-08-02 21:08:08 24,064 -c–a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\WanPacket.dll.vir
2004-08-18 19:47:58 . 2004-08-18 19:47:58 241 -c–a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\popcaploader.inf.vir
2004-08-11 18:28:04 . 2004-08-11 18:28:04 393,216 -c–a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\BSTIEPrintCtl1.dll.vir
2004-08-10 04:00:00 . 2008-04-13 18:40:30 96,512 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\atapi.sys.vir
2004-08-10 04:00:00 . 2008-04-13 18:40:30 96,512 —-a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\atapi.sys.vir_
I'm currently using safari as my browser. The computer seems to run fine but start up takes a little longer than usual. I try to minimize my start up programs. There is actually nothing I need to have appear on start up. The restart before this one displayed a rundll error for the first two programs you had me insert for the CFScript, kivihud and mohugeze. I don't understand why that happened but it did not occur again. I have a question. Is it safe to browse and insert personal information, such as credit cards, into sites that are suppose to be secure? I purchase a lot from e-bay and online stores. If I missed any questions, please reask. I do not leave them unanswered on purpose. Thank you again for all the time you have spent with me.