My laptop seems to behave the way it was before the infection. IE is loading pages fines. As per your instruction the CombiFix log is as follows:
ComboFix 10-01-11.04 - teddy 13/01/2010 9:03.1.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2551.2087 [GMT 0:00]
Running from: e:\clean up tool\ComboFix.exe
AV: AVG Anti-Virus Free *On-access scanning disabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\Bluetooth.lnk
c:\documents and settings\teddy\Start Menu\Programs\Startup\MagicDisc.lnk
c:\windows\$NtUninstallKB922582$
c:\windows\$NtUninstallKB922582$\fltlib.dll
c:\windows\$NtUninstallKB922582$\fltmc.exe
c:\windows\$NtUninstallKB922582$\fltmgr.sys
c:\windows\$NtUninstallKB922582$\spuninst\spuninst.exe
c:\windows\$NtUninstallKB922582$\spuninst\spuninst.inf
c:\windows\$NtUninstallKB922582$\spuninst\spuninst.txt
c:\windows\$NtUninstallKB922582$\spuninst\updspapi.dll
c:\windows\system32\twain_32.dll
Infected copy of c:\windows\system32\DRIVERS\atapi.sys was found and disinfected
Restored copy from - Kitty ate it
.
original MBR restored successfully !
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
——-\Legacy_SSHNAS
((((((((((((((((((((((((( Files Created from 2009-12-13 to 2010-01-13 )))))))))))))))))))))))))))))))
.
2010-01-07 18:28 . 2010-01-07 18:28 ——– d—–w- c:\documents and settings\HelpAssistant\UserData
2010-01-07 18:27 . 2010-01-07 18:27 ——– d—–w- c:\documents and settings\HelpAssistant\PrivacIE
2010-01-07 18:26 . 2010-01-07 18:26 52224 —-a-w- c:\documents and settings\teddy\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2010-01-07 18:26 . 2010-01-07 18:26 117760 —-a-w- c:\documents and settings\teddy\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2010-01-07 18:24 . 2010-01-07 18:24 ——– d—–w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2010-01-07 18:24 . 2010-01-07 18:24 ——– d—–w- c:\documents and settings\teddy\Application Data\SUPERAntiSpyware.com
2010-01-07 18:23 . 2010-01-07 18:23 ——– d—–w- c:\program files\Common Files\Wise Installation Wizard
2010-01-06 21:26 . 2010-01-06 21:26 ——– d—–w- c:\documents and settings\teddy\Application Data\Malwarebytes
2010-01-06 21:26 . 2009-12-30 14:55 38224 —-a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-06 21:26 . 2010-01-06 21:26 ——– d—–w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-01-06 21:26 . 2009-12-30 14:54 19160 —-a-w- c:\windows\system32\drivers\mbam.sys
2010-01-06 05:41 . 2010-01-06 05:41 ——– d—–w- c:\documents and settings\HelpAssistant\IECompatCache
2010-01-06 05:41 . 2010-01-06 05:41 ——– d—–w- c:\documents and settings\HelpAssistant\Bluetooth Software
2009-12-28 17:03 . 2009-02-24 18:42 116736 —-a-w- c:\windows\system32\drivers\mcdbus.sys
2009-12-18 13:52 . 2009-12-18 13:52 294656 —-a-w- c:\documents and settings\All Users\Application Data\avg9\update\backup\avglngx.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-12 15:47 . 2009-12-04 11:53 ——– d—–w- c:\documents and settings\All Users\Application Data\avg9
2010-01-11 16:40 . 2004-08-04 03:59 96512 —-a-w- c:\windows\system32\drivers\atapi.sys
2010-01-06 17:15 . 2009-11-23 00:34 ——– d—–w- c:\documents and settings\teddy\Application Data\BitTorrent
2010-01-05 08:01 . 2009-11-28 09:13 ——– d—–w- c:\program files\AVS4YOU
2009-12-23 21:50 . 2009-11-07 13:45 2 –shatr- c:\windows\winstart.bat
2009-12-23 12:39 . 2009-10-07 12:59 100520 —-a-w- c:\documents and settings\teddy\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-12-22 14:33 . 2009-12-12 08:19 4043544 —-a-w- c:\documents and settings\All Users\Application Data\avg9\update\backup\avgui.exe
2009-12-22 14:32 . 2009-12-04 12:05 3966744 —-a-w- c:\documents and settings\All Users\Application Data\avg9\update\backup\avgcorex.dll
2009-12-17 07:55 . 2009-10-12 23:08 ——– d—–w- c:\documents and settings\All Users\Application Data\Research In Motion
2009-12-10 08:50 . 2009-12-10 08:50 24416 —-a-w- c:\windows\system32\drivers\regguard.sys
2009-12-10 08:46 . 2009-12-10 08:46 34760 —-a-w- c:\windows\system32\drivers\Partizan.sys
2009-12-10 08:40 . 2009-12-10 08:40 35040 —-a-w- c:\windows\system32\Partizan.exe
2009-12-09 06:57 . 2009-10-08 14:23 ——– d—–w- c:\documents and settings\All Users\Application Data\Microsoft Help
2009-12-06 07:18 . 2009-10-14 22:05 ——– d—–w- c:\program files\Google
2009-12-04 11:54 . 2009-10-08 19:08 360584 —-a-w- c:\windows\system32\drivers\avgtdix.sys
2009-12-04 11:54 . 2009-10-08 19:08 333192 —-a-w- c:\windows\system32\drivers\avgldx86.sys
2009-12-04 11:54 . 2009-10-08 19:08 28424 —-a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-12-04 11:54 . 2009-10-08 19:08 12464 —-a-w- c:\windows\system32\avgrsstx.dll
2009-12-04 11:53 . 2009-10-08 19:07 ——– d—–w- c:\program files\AVG
2009-12-02 05:51 . 2009-11-28 19:59 ——– d—–w- c:\program files\Common Files\Real
2009-12-02 05:50 . 2009-12-02 05:50 ——– d—–w- c:\program files\Common Files\xing shared
2009-12-02 05:50 . 2003-10-17 11:44 499712 —-a-w- c:\windows\system32\msvcp71.dll
2009-12-02 05:50 . 2003-10-17 11:44 348160 —-a-w- c:\windows\system32\msvcr71.dll
2009-11-29 08:18 . 2009-11-29 08:13 ——– d—–w- c:\program files\Garmin
2009-11-29 08:14 . 2009-11-29 08:14 ——– d—–w- c:\documents and settings\teddy\Application Data\GARMIN
2009-11-29 08:13 . 2009-11-29 08:13 ——– d—–w- c:\program files\Garmin GPS Plugin
2009-11-29 08:13 . 2009-11-29 08:13 ——– d—–w- c:\program files\DIFX
2009-11-28 19:00 . 2009-10-13 12:20 ——– d—–w- c:\documents and settings\teddy\Application Data\DivX
2009-11-28 18:58 . 2009-11-28 18:58 ——– d—–w- c:\program files\Common Files\DivX Shared
2009-11-28 09:14 . 2009-11-28 09:14 ——– d—–w- c:\documents and settings\teddy\Application Data\AVS4YOU
2009-11-28 09:14 . 2009-11-28 09:14 ——– d—–w- c:\documents and settings\All Users\Application Data\AVS4YOU
2009-11-28 09:13 . 2009-11-28 09:11 ——– d—–w- c:\program files\Common Files\AVSMedia
2009-11-23 20:00 . 2009-11-23 20:00 ——– d—–w- c:\documents and settings\teddy\Application Data\Apple Computer
2009-11-23 19:55 . 2009-11-23 19:55 ——– d—–w- c:\documents and settings\All Users\Application Data\Apple Computer
2009-11-23 19:55 . 2009-11-23 19:55 ——– d—–w- c:\program files\Common Files\Apple
2009-11-23 19:54 . 2009-11-23 19:54 ——– d—–w- c:\program files\Apple Software Update
2009-11-23 19:54 . 2009-11-23 19:54 ——– d—–w- c:\documents and settings\All Users\Application Data\Apple
2009-11-23 19:31 . 2009-11-23 19:31 ——– d—–w- c:\program files\Windows Media Connect 2
2009-11-22 11:18 . 2009-10-13 21:46 256 —-a-w- c:\windows\system32\pool.bin
2009-11-19 12:33 . 2009-10-06 17:17 86327 —-a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-11-17 19:54 . 2009-11-17 19:54 ——– d—–w- c:\documents and settings\teddy\Application Data\Hewlett-Packard
2009-11-17 19:52 . 2009-11-17 19:46 19558 —-a-w- c:\windows\hpoins01.dat
2009-11-17 19:49 . 2009-11-17 19:49 ——– d—–w- c:\program files\Common Files\Hewlett-Packard
2009-11-14 00:49 . 2009-11-28 18:58 9464 ——w- c:\windows\system32\drivers\cdralw2k.sys
2009-11-14 00:49 . 2009-11-28 18:58 9336 ——w- c:\windows\system32\drivers\cdr4_xp.sys
2009-11-14 00:49 . 2009-11-28 18:58 129784 ——w- c:\windows\system32\pxafs.dll
2009-11-14 00:49 . 2009-11-28 18:58 120056 ——w- c:\windows\system32\pxcpyi64.exe
2009-11-14 00:49 . 2009-11-28 18:58 118520 ——w- c:\windows\system32\pxinsi64.exe
2009-11-14 00:49 . 2005-04-25 01:03 43528 ——w- c:\windows\system32\drivers\pxhelp20.sys
2009-11-14 00:47 . 2009-11-14 00:47 856064 —-a-w- c:\windows\system32\divx_xx0c.dll
2009-11-14 00:47 . 2009-11-14 00:47 856064 —-a-w- c:\windows\system32\divx_xx07.dll
2009-11-14 00:47 . 2009-11-14 00:47 847872 —-a-w- c:\windows\system32\divx_xx0a.dll
2009-11-14 00:47 . 2009-11-14 00:47 843776 —-a-w- c:\windows\system32\divx_xx16.dll
2009-11-14 00:47 . 2009-11-14 00:47 839680 —-a-w- c:\windows\system32\divx_xx11.dll
2009-11-14 00:47 . 2009-11-14 00:47 696320 —-a-w- c:\windows\system32\DivX.dll
2009-10-29 07:45 . 2004-08-04 05:56 916480 —-a-w- c:\windows\system32\wininet.dll
2009-10-21 05:38 . 2004-08-04 05:56 75776 —-a-w- c:\windows\system32\strmfilt.dll
2009-10-21 05:38 . 2004-08-04 05:56 25088 —-a-w- c:\windows\system32\httpapi.dll
2009-10-20 16:20 . 2004-08-04 04:00 265728 —-a-w- c:\windows\system32\drivers\http.sys
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-14 1695232]
"Messenger (Yahoo!)"="e:\program files\Yahoo!\Messenger\YahooMessenger.exe" [2009-05-26 4351216]
"SUPERAntiSpyware"="e:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2010-01-05 2002160]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hpWirelessAssistant"="c:\program files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe" [2006-02-14 454656]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2006-03-31 761946]
"WatchDog"="c:\program files\InterVideo\DVD Check\DVDCheck.exe" [2006-03-31 184320]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2006-06-06 94208]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2006-06-06 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2006-06-06 118784]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2007-01-05 872448]
"Broadcom Wireless Manager UI"="c:\windows\system32\WLTRAY.exe" [2009-10-07 1839104]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2007-08-24 33648]
"BlackBerryAutoUpdate"="c:\program files\Common Files\Research In Motion\Auto Update\RIMAutoUpdate.exe" [2009-11-19 623960]
"PWRISOVM.EXE"="c:\program files\PowerISO\PWRISOVM.EXE" [2008-11-02 167936]
"Acrobat Assistant 8.0"="e:\program files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe" [2008-10-14 623992]
"QuickTime Task"="e:\program files\QuickTime\qttask.exe" [2009-11-10 417792]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2009-12-02 198160]
"AVG9_TRAY"="c:\progra~1\AVG\AVG9\avgtray.exe" [2010-01-01 2033432]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
DVD Check.lnk - c:\program files\InterVideo\DVD Check\DVDCheck.exe [2009-10-6 184320]
hp psc 2000 Series.lnk - e:\program files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe [2003-4-9 323646]
hpoddt01.exe.lnk - e:\program files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe [2003-4-9 28672]
Palo Alto Software Update Manager 9.0.lnk - c:\program files\Common Files\Palo Alto Software\9.0\PAS9_Update.exe [2006-9-5 122880]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "e:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 14:21 548352 —-a-w- e:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-12-04 11:54 12464 —-a-w- c:\windows\system32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0Partizan
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Common Files\\Adobe\\Adobe Version Cue CS3\\Server\\bin\\VersionCueCS3.exe"=
"e:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"e:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\AVG\\AVG9\\avgemc.exe"=
"c:\\Program Files\\AVG\\AVG9\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG9\\avgnsx.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3703:TCP"= 3703:TCP:Adobe Version Cue CS3 Server
"3704:TCP"= 3704:TCP:Adobe Version Cue CS3 Server
"50900:TCP"= 50900:TCP:Adobe Version Cue CS3 Server
"50901:TCP"= 50901:TCP:Adobe Version Cue CS3 Server
"65533:TCP"= 65533:TCP:Services
"52344:TCP"= 52344:TCP:Services
"2479:TCP"= 2479:TCP:Services
"9503:TCP"= 9503:TCP:Services
"3389:TCP"= 3389:TCP:Remote Desktop
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [08/10/2009 19:08 333192]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [08/10/2009 19:08 360584]
R1 SASDIFSV;SASDIFSV;e:\program files\SUPERAntiSpyware\sasdifsv.sys [05/01/2010 07:56 9968]
R1 SASKUTIL;SASKUTIL;e:\program files\SUPERAntiSpyware\SASKUTIL.SYS [05/01/2010 07:56 74480]
R2 avg9emc;AVG Free E-mail Scanner;c:\program files\AVG\AVG9\avgemc.exe [04/12/2009 11:53 906520]
R2 avg9wd;AVG Free WatchDog;c:\program files\AVG\AVG9\avgwdsvc.exe [04/12/2009 11:53 285392]
R2 UDisk Monitor;UDisk Monitor;c:\program files\ZTE Wireless Terminal\bin\MonServiceUDisk.exe [07/10/2009 12:54 262144]
R3 SASENUM;SASENUM;e:\program files\SUPERAntiSpyware\SASENUM.SYS [05/01/2010 07:56 7408]
S3 Partizan;Partizan;c:\windows\system32\drivers\Partizan.sys [10/12/2009 08:46 34760]
S3 RegGuard;RegGuard;c:\windows\system32\drivers\regguard.sys [10/12/2009 08:50 24416]
S3 ztemtusbser;ZTEMT Legacy Serial Communication;c:\windows\system32\drivers\CT_ZTEMT_U_USBSER.sys [07/10/2009 12:54 104576]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
getPlusHelper REG_MULTI_SZ getPlusHelper
.
Contents of the 'Scheduled Tasks' folder
2010-01-06 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 12:34]
2009-12-18 c:\windows\Tasks\FRU Task 2003-04-10 00:56ewlett-Packard2003-04-10 00:56p psc 2200 series272A572217594EBCF1CEE215E352B92AD073FDE4258487569.job
- e:\program files\Hewlett-Packard\Digital Imaging\Bin\hpqfrucl.exe [2003-04-09 17:56]
.
.
——- Supplementary Scan ——-
.
uStart Page = hxxp://www.google.co.uk/
uInternet Settings,ProxyOverride = *.local
IE: Append to existing PDF - e:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert link target to Adobe PDF - e:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert link target to existing PDF - e:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert selected links to Adobe PDF - e:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert selected links to existing PDF - e:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Convert selection to Adobe PDF - e:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert selection to existing PDF - e:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert to Adobe PDF - e:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Send To &Bluetooth - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
.
- - - - ORPHANS REMOVED - - - -
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
HKCU-Run-Sony Ericsson PC Suite - f:\backup\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2010-01-13 09:12
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes …
scanning hidden autostart entries …
scanning hidden files …
scan completed successfully
hidden files: 0
**************************************************************************
.
——————— DLLs Loaded Under Running Processes ———————
- - - - - - - > 'winlogon.exe'(1052)
e:\program files\SUPERAntiSpyware\SASWINLO.dll
c:\windows\system32\WININET.dll
c:\windows\System32\BCMLogon.dll
c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\MFC80.DLL
c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
- - - - - - - > 'explorer.exe'(2684)
c:\windows\system32\WININET.dll
c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\btncopy.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
———————— Other Running Processes ————————
.
c:\program files\AVG\AVG9\avgchsvx.exe
c:\program files\AVG\AVG9\avgrsx.exe
c:\windows\System32\WLTRYSVC.EXE
c:\windows\System32\bcmwltry.exe
c:\program files\AVG\AVG9\avgcsrvx.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
c:\program files\AVG\AVG9\avgnsx.exe
c:\program files\AVG\AVG9\avgcsrvx.exe
c:\windows\system32\wscntfy.exe
e:\program files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
e:\program files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
c:\progra~1\hpq\Shared\HPQTOA~1.EXE
.
**************************************************************************
.
Completion time: 2010-01-13 09:16:10 - machine was rebooted
ComboFix-quarantined-files.txt 2010-01-13 09:16
Pre-Run: 21,706,194,944 bytes free
Post-Run: 24,479,883,264 bytes free
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
- - End Of File - - 253B8FAADEC670DA30E50967A8421937