ComboFix 08-02-13.2 - D. J. Lane 2008-02-12 18:39:40.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.146 [GMT -7:00]
Running from: C:\Documents and Settings\[removed]\desktop\combofix.exe
Command switches used :: /killall
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\WINDOWS\system32\efcddef.dll
C:\WINDOWS\system32\kdrdtcvs.dll
C:\WINDOWS\system32\pmkjj.dll
C:\Program Files\Internet Explorer\baxyvyry.html
C:\Program Files\Internet Explorer\wopuhaxi.dll
C:\Program Files\Internet Explorer\wopuhaxi847.dll
C:\WINDOWS\Fonts\a.zip
C:\WINDOWS\Fonts\Crack.exe
C:\WINDOWS\Fonts\svchost.exe
C:\WINDOWS\mrofinu1188.exe
C:\WINDOWS\system32\cjftbgrc.dll
C:\WINDOWS\system32\cujmnowx.dll
C:\WINDOWS\system32\dprhrhev.dll
C:\WINDOWS\system32\dxykrmoh.ini
C:\WINDOWS\system32\efcddef.dll
C:\WINDOWS\system32\gfdnmmof.dll
C:\WINDOWS\system32\homrkyxd.dll
C:\WINDOWS\system32\jexskwat.dll
C:\WINDOWS\system32\jjkmp.ini
C:\WINDOWS\system32\jjkmp.ini2
C:\WINDOWS\system32\jphdnuud.dll
C:\WINDOWS\system32\jqpgymle.ini
C:\WINDOWS\system32\kdrdtcvs.dll
C:\WINDOWS\system32\kdrdtcvs.dllbox
C:\WINDOWS\system32\khfdabb.dll
C:\WINDOWS\system32\kixqwcwa.dll
C:\WINDOWS\system32\lbfpoxjw.ini
C:\WINDOWS\system32\mawsnwar.ini
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\mljkjki.dll
C:\WINDOWS\system32\mnyyqhyj.dll
C:\WINDOWS\system32\mpumtypf.dll
C:\WINDOWS\system32\oiqeuldh.dll
C:\WINDOWS\system32\otbgrfiv.dll
C:\WINDOWS\system32\pac.txt
C:\WINDOWS\system32\pmkjj.dll
C:\WINDOWS\system32\pptxrwrq.dll
C:\WINDOWS\system32\qrwrxtpp.ini
C:\WINDOWS\system32\rbpbdglu.dll
C:\WINDOWS\system32\sodutahs.dll
C:\WINDOWS\system32\ssdqokbo.ini
C:\WINDOWS\system32\ulgdbpbr.ini
C:\WINDOWS\system32\wcjokpkf.dll
C:\WINDOWS\system32\windows
C:\WINDOWS\system32\wjxopfbl.dll
C:\WINDOWS\system32\wwyisxwu.dll
C:\WINDOWS\tk58.exe
C:\WINDOWS\Fonts\'
.
((((((((((((((((((((((((( Files Created from 2008-01-13 to 2008-02-13 )))))))))))))))))))))))))))))))
.
2008-02-12 18:02 . 2008-02-12 17:53 102,664 –a—— C:\WINDOWS\system32\drivers\tmcomm.sys
2008-02-12 17:50 . 2008-02-12 18:08 d——– C:\Documents and Settings\D. J. Lane\.housecall6.6
2008-02-11 18:28 . 2008-02-11 18:28 d——– C:\Program Files\Common Files\Hewlett-Packard
2008-02-11 18:27 . 2005-07-28 18:28 139,345 –a—— C:\WINDOWS\system32\hpzlnt12.dll
2008-02-11 18:26 . 2001-08-17 13:53 6,784 –a—— C:\WINDOWS\system32\drivers\serscan.sys
2008-02-11 18:26 . 2001-08-17 13:53 6,784 –a—— C:\WINDOWS\system32\dllcache\serscan.sys
2008-02-11 18:24 . 2005-07-28 18:28 212,992 –a—— C:\WINDOWS\system32\hptcpmui.dll
2008-02-11 18:24 . 2005-07-28 18:28 122,880 –a—— C:\WINDOWS\system32\hptcpmon.dll
2008-02-11 18:24 . 2005-07-28 18:28 73,728 –a—— C:\WINDOWS\system32\hptcpmib.dll
2008-02-11 18:24 . 2005-07-28 18:28 9,864 –a—— C:\WINDOWS\system32\hptcpmui.hlp
2008-02-11 18:24 . 2005-07-28 18:28 3,399 –a—— C:\WINDOWS\system32\hptcpmon.ini
2008-02-11 18:24 . 2008-02-11 18:24 146 –a—— C:\WINDOWS\system32\AddPort.ini
2008-02-11 18:23 . 2008-02-11 18:24 648 –a—— C:\WINDOWS\hpntwksetup.ini
2008-02-11 18:19 . 2004-09-29 12:12 278,584 –a—— C:\WINDOWS\system32\HPZidr12.1
2008-02-11 18:19 . 2004-09-29 12:15 204,800 –a—— C:\WINDOWS\system32\HPZipr12.1
2008-02-11 18:16 . 2008-02-11 18:31 68,274 –a—— C:\WINDOWS\hpoins05.dat
2008-02-11 18:16 . 2005-07-28 18:28 19,696 ——— C:\WINDOWS\hpomdl05.dat
2008-02-11 18:15 . 2008-02-11 18:16 d——– C:\Temp\HP_WebRelease
2008-02-11 18:15 . 2008-02-11 18:28 d——– C:\Temp
2008-02-11 18:15 . 2005-07-28 18:28 581,632 –a—— C:\WINDOWS\system32\hpotscl.dll
2008-02-11 18:15 . 2005-07-28 18:28 393,216 –a—— C:\WINDOWS\system32\hpzcon12.dll
2008-02-11 18:15 . 2005-07-28 18:28 278,528 –a—— C:\WINDOWS\system32\hpgwiamd.dll
2008-02-11 18:15 . 2005-07-28 18:28 229,376 –a—— C:\WINDOWS\system32\hpovst08.dll
2008-02-11 18:15 . 2005-07-28 18:28 196,608 –a—— C:\WINDOWS\system32\hpzcoi12.dll
2008-02-09 10:13 . 2008-02-09 10:13 d——– C:\Program Files\Trend Micro
2008-02-08 17:15 . 2008-02-09 17:15 2,378,565 –ahs—- C:\WINDOWS\system32\magobahr.ini
2008-02-08 16:17 . 2008-02-08 17:34 d——– C:\bintheredunthat
2008-02-08 14:46 . 2008-02-08 14:46 d——– C:\Program Files\GabbaSoft
2008-02-07 17:14 . 2008-02-08 16:48 2,378,265 –ahs—- C:\WINDOWS\system32\iaxunnjt.ini
2008-02-06 17:11 . 2008-02-07 17:12 2,377,905 –ahs—- C:\WINDOWS\system32\qyrrhhkn.ini
2008-02-05 17:08 . 2008-02-06 17:09 2,377,785 –ahs—- C:\WINDOWS\system32\uemnihnn.ini
2008-02-05 12:48 . 2008-02-05 12:49 2,377,785 –ahs—- C:\WINDOWS\system32\xfvbwtim.ini
2008-02-05 12:48 . 2008-02-05 12:48 90,688 –a—— C:\WINDOWS\system32\mitwbvfx.dll
2008-02-04 20:01 . 2008-02-05 12:36 2,377,725 –ahs—- C:\WINDOWS\system32\gnfljsek.ini
2008-02-02 20:01 . 2008-02-09 15:51 d——– C:\Documents and Settings\D. J. Lane\Application Data\Image Zone Express
2008-02-02 10:36 . 1999-12-17 10:13 86,016 –a—— C:\WINDOWS\unvise32.exe
2008-02-02 10:35 . 2008-02-02 10:36 d——– C:\Program Files\The Rosetta Stone
2008-02-01 17:32 . 2008-02-01 17:32 147,456 –a—— C:\WINDOWS\system32\vbzip10.dll
2008-02-01 17:30 . 2008-02-01 17:30 d——– C:\WINDOWS\system32\tip4
2008-02-01 17:30 . 2008-02-01 17:42 d——– C:\WINDOWS\system32\rom1
2008-02-01 17:30 . 2008-02-08 17:34 d——– C:\WINDOWS\system32\lis6
2008-02-01 17:30 . 2008-02-01 17:30 d——– C:\WINDOWS\system32\kps5
2008-02-01 17:30 . 2008-02-01 17:30 d——– C:\WINDOWS\system32\geb3
2008-02-01 17:29 . 2008-02-01 17:29 d——– C:\WINDOWS\system32\nGpxx18
2008-02-01 17:18 . 2008-02-01 17:18 d——– C:\Tmp
2008-01-29 21:46 . 2008-01-29 21:46 d——– C:\Program Files\Common Files\HP
2008-01-29 21:46 . 2008-01-29 21:46 d——– C:\Documents and Settings\All Users\Application Data\HP
2008-01-29 21:42 . 2008-01-29 21:42 d——– C:\Program Files\Hewlett-Packard
2008-01-29 21:40 . 2004-09-28 22:11 51,120 -ra—— C:\WINDOWS\system32\drivers\HPZid412.sys
2008-01-29 21:40 . 2004-09-28 22:11 16,496 -ra—— C:\WINDOWS\system32\drivers\HPZipr12.sys
2008-01-29 21:39 . 2005-06-01 09:01 77,824 -ra—— C:\WINDOWS\system32\hpzids01.dll
2008-01-29 21:39 . 2005-05-05 08:51 37,376 –a—— C:\WINDOWS\system32\hpz3l3xu.dll
2008-01-29 21:35 . 2004-09-29 12:12 278,584 –a—— C:\WINDOWS\system32\HPZidr12.dll
2008-01-29 21:35 . 2004-09-29 12:15 204,800 –a—— C:\WINDOWS\system32\HPZipr12.dll
2008-01-29 21:35 . 2004-09-29 12:09 94,208 –a—— C:\WINDOWS\system32\HPZipt12.dll
2008-01-29 21:35 . 2004-09-29 12:14 69,632 –a—— C:\WINDOWS\system32\HPZipm12.exe
2008-01-29 21:35 . 2004-09-29 12:08 61,440 –a—— C:\WINDOWS\system32\HPZinw12.exe
2008-01-29 21:35 . 2004-09-29 12:09 57,344 –a—— C:\WINDOWS\system32\HPZisn12.dll
2008-01-29 21:32 . 2008-01-29 21:46 d——– C:\Program Files\HP
2008-01-29 21:29 . 2008-01-29 21:29 d——– C:\Documents and Settings\D. J. Lane\Application Data\HP
2008-01-29 21:29 . 2008-01-29 21:47 81,101 –a—— C:\WINDOWS\HPHins08.dat
2008-01-29 21:29 . 2005-06-01 09:23 4,011 ——— C:\WINDOWS\hphmdl08.dat
2008-01-29 19:28 . 2008-01-29 19:28 d——– C:\Documents and Settings\All Users\Application Data\SupportSoft
2008-01-29 19:26 . 2008-01-29 19:27 d——– C:\Program Files\Dell Support Center
2008-01-29 19:25 . 2008-01-29 19:26 d——– C:\Program Files\Common Files\supportsoft
2008-01-28 16:10 . 2008-01-28 16:10 d——– C:\Documents and Settings\D. J. Lane\Application Data\FDRLab
2008-01-26 17:06 . 2008-02-05 19:45 d——– C:\Documents and Settings\All Users\Application Data\Dell
2008-01-22 17:32 . 2001-08-17 13:48 12,160 –a—— C:\WINDOWS\system32\drivers\mouhid.sys
2008-01-22 17:32 . 2001-08-17 13:48 12,160 –a—— C:\WINDOWS\system32\dllcache\mouhid.sys
2008-01-22 17:32 . 2001-08-17 14:02 9,600 –a—— C:\WINDOWS\system32\drivers\hidusb.sys
2008-01-22 17:32 . 2001-08-17 14:02 9,600 –a—— C:\WINDOWS\system32\dllcache\hidusb.sys
2008-01-22 16:55 . 2008-01-22 16:55 d——– C:\Program Files\HyCam2
2008-01-21 18:37 . 2008-01-21 18:38 d——– C:\Program Files\iTunes
2008-01-21 18:37 . 2008-01-21 18:37 d——– C:\Program Files\iPod
2008-01-21 18:32 . 2008-01-21 18:33 d——– C:\Program Files\QuickTime
2008-01-20 20:59 . 2006-10-04 07:06 1,197,294 ——— C:\WINDOWS\system32\dllcache\sysmain.sdb
2008-01-20 20:59 . 2006-10-04 07:06 764,868 ——— C:\WINDOWS\system32\dllcache\apph_sp.sdb
2008-01-20 20:59 . 2006-10-04 07:06 217,118 ——— C:\WINDOWS\system32\dllcache\apphelp.sdb
2008-01-20 20:58 . 2008-02-03 18:31 d——– C:\Program Files\Windows Media Connect 2
2008-01-20 20:54 . 2008-01-30 06:42 d——– C:\WINDOWS\system32\LogFiles
2008-01-20 20:54 . 2008-01-20 20:56 d——– C:\WINDOWS\system32\drivers\UMDF
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-11 23:52 ——— d—a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-02-09 00:34 ——— d—–w C:\Program Files\There
2008-02-09 00:33 ——— d—–w C:\Program Files\Common Files\AOL
2008-02-09 00:32 ——— d—–w C:\Program Files\AIM6
2008-02-06 04:33 8,070 —-a-w C:\Documents and Settings\D. J. Lane\Application Data\wklnhst.dat
2008-01-28 01:01 ——— d—–w C:\Documents and Settings\D. J. Lane\Application Data\Yahoo!
2008-01-25 00:57 ——— d—–w C:\Program Files\Project64 1.6
2008-01-18 22:26 ——— d—–w C:\Program Files\epson
2008-01-18 19:28 ——— d–h–w C:\Program Files\InstallShield Installation Information
2008-01-18 19:21 ——— d—–w C:\Program Files\Smart Panel
2008-01-16 20:46 270 —-a-w C:\Documents and Settings\Amanda Lane\Application Data\wklnhst.dat
2008-01-09 20:54 ——— d—–w C:\Documents and Settings\Amanda Lane\Application Data\Apple Computer
2008-01-05 23:27 ——— d—–w C:\Documents and Settings\D. J. Lane\Application Data\LEGO Company
2008-01-02 19:55 ——— d—–w C:\Documents and Settings\D. J. Lane\Application Data\DivX
2008-01-01 00:43 ——— d—–w C:\Program Files\DivX
2007-12-31 21:18 ——— d—–w C:\Program Files\Java
2007-12-31 21:15 ——— d—–w C:\Program Files\Common Files\Java
2007-12-30 01:08 ——— d—–w C:\Documents and Settings\D. J. Lane\Application Data\PrevxCSI
2007-12-30 01:04 ——— d—–w C:\Documents and Settings\All Users\Application Data\Prevx
2007-12-27 23:39 ——— d—–w C:\Documents and Settings\D. J. Lane\Application Data\dvdcss
2007-12-27 22:53 ——— d—–w C:\Documents and Settings\All Users\Application Data\DVD Shrink
2007-12-27 22:30 ——— d—–w C:\Program Files\Handbrake
2007-12-26 03:23 ——— d—–w C:\Documents and Settings\D. J. Lane\Application Data\McAfee.com Personal Firewall
2007-12-26 03:22 ——— d—–w C:\Documents and Settings\All Users\Application Data\McAfee.com Personal Firewall
2007-12-17 20:01 ——— d—–w C:\Documents and Settings\D. J. Lane\Application Data\Apple Computer
2007-12-17 20:00 ——— d—–w C:\Documents and Settings\All Users\Application Data\Apple Computer
2007-12-17 19:55 ——— d—–w C:\Program Files\Common Files\Apple
2007-12-17 19:55 ——— d—–w C:\Program Files\Apple Software Update
2007-12-17 19:55 ——— d—–w C:\Documents and Settings\All Users\Application Data\Apple
2007-12-17 19:21 ——— d—–w C:\Program Files\Common Files\eSellerate
2006-09-15 12:31 0 —-a-w C:\Documents and Settings\Constance Lane\Application Data\wklnhst.dat
2005-05-13 22:12 217,073 –sha-r C:\WINDOWS\meta4.exe
2005-10-24 16:13 66,560 –sha-r C:\WINDOWS\MOTA113.exe
2005-07-14 17:31 27,648 –sha-r C:\WINDOWS\system32\AVSredirect.dll
2004-01-25 05:00 70,656 –sha-r C:\WINDOWS\system32\i420vfw.dll
2005-02-28 18:16 240,128 –sha-r C:\WINDOWS\system32\x.264.exe
2004-01-25 05:00 70,656 –sha-r C:\WINDOWS\system32\yv12vfw.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{53BE74AB-B471-4E0C-890C-711C8110B88E}]
2007-08-02 06:43 282624 –a—— C:\Program Files\MSN\sadeno4444.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{E94B9EC5-B3E4-4A93-8741-24845774EA8A}]
2007-08-02 06:43 282624 –a—— C:\Program Files\MSN\sadeno83122.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ModemOnHold"="C:\Program Files\NetWaiting\netWaiting.exe" [2003-09-10 00:24 20480]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 03:00 15360]
"Yahoo! Pager"="C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.exe" [2006-10-26 19:21 4662776]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 09:24 1694208]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-06-04 06:49 68856]
"DellSupport"="C:\Program Files\DellSupport\DSAgnt.exe" [2007-03-15 08:09 460784]
"Aim6"="C:\Program Files\AIM6\aim6.exe" [2007-04-27 14:17 50736]
"ESPN BottomLine"="C:\Program Files\ESPN\BottomLine\bline.exe" [ ]
"DellSupportCenter"="C:\Program Files\Dell Support Center\bin\sprtcmd.exe" [2007-11-15 09:23 202544]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"igfxtray"="C:\WINDOWS\system32\igfxtray.exe" [2005-10-14 18:49 94208]
"igfxhkcmd"="C:\WINDOWS\system32\hkcmd.exe" [2005-10-14 18:46 77824]
"igfxpers"="C:\WINDOWS\system32\igfxpers.exe" [2005-10-14 18:50 114688]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2006-03-08 16:48 761947]
"IntelWireless"="C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" [2004-10-30 12:59 385024]
"SigmatelSysTrayApp"="stsystra.exe" [2006-03-24 21:30 282624 C:\WINDOWS\stsystra.exe]
"Dell QuickSet"="C:\Program Files\Dell\QuickSet\quickset.exe" [2006-04-06 12:58 1032192]
"DVDLauncher"="C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" [2005-02-23 14:19 53248]
"dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [2004-12-05 23:05 127035]
"ISUSPM Startup"="C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-06-10 08:44 249856]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2005-06-10 08:44 81920]
"VSOCheckTask"="C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" [2005-07-08 15:18 151552]
"OASClnt"="C:\Program Files\McAfee.com\VSO\oasclnt.exe" [2005-08-11 20:02 53248]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [2005-09-22 15:29 303104]
"MCUpdateExe"="C:\PROGRA~1\mcafee.com\agent\McUpdate.exe" [2006-01-11 09:05 212992]
"MSKDetectorExe"="C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe" [2006-11-07 12:49 1121280]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2007-08-12 19:07 1838592]
"MSKAGENTEXE"="C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe" [2005-09-26 07:26 110592]
"VirusScan Online"="C:\Program Files\McAfee.com\VSO\mcvsshld.exe" [2005-08-10 10:49 163840]
"MPFExe"="C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" [2005-11-11 14:00 1005096]
"HostManager"="C:\Program Files\Common Files\AOL\1158279168\ee\AOLSoftware.exe" [2006-05-09 17:24 50760]
"AOLDialer"="C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" [2005-04-18 11:38 71256]
"AOL Spyware Protection"="C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe" [2004-10-18 14:42 79448]
"IPHSend"="C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe" [2006-03-27 08:57 126104]
"EPSON Stylus CX4600 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9AA.exe" [2004-03-04 01:00 98304]
"YBrowser"="C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe" [2006-07-21 14:19 129536]
"YOP"="C:\PROGRA~1\Yahoo!\YOP\yop.exe" [2006-07-21 08:43 407032]
"Auto EPSON Stylus CX4600 Series on DANCOMP"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9AA.exe" [2004-03-04 01:00 98304]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-24 23:11 132496]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-01-10 15:27 385024]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-01-15 03:22 267048]
"dscactivate"="C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" [2007-11-15 09:24 16384]
"HPHUPD08"="C:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe" [2005-06-01 09:35 49152]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2005-05-11 23:12 49152]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 20:05:26 29696]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\IntelWireless]
C:\Program Files\Intel\Wireless\Bin\LgNotify.dll 2004-09-07 14:08 110592 C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
R2 sprtsvc_dellsupportcenter;SupportSoft Sprocket Service (dellsupportcenter);C:\Program Files\Dell Support Center\bin\sprtsvc.exe /service []
R2 Viewpoint Manager Service;Viewpoint Manager Service;"C:\Program Files\Viewpoint\Common\ViewpointService.exe" [2007-01-04 14:38]
S3 MSControlService;Microsoft cache control;C:\WINDOWS\system32\windows []
.
Contents of the 'Scheduled Tasks' folder
"2008-02-04 23:18:06 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-02-02 01:30:00 C:\WINDOWS\Tasks\McAfee.com Scan for Viruses - My Computer (CONNIES-Constance Lane).job"
- c:\program files\mcafee.com\vso\mcmnhdlr.exe
"2008-02-12 10:30:00 C:\WINDOWS\Tasks\RegistrySmart Scheduled Scan.job"
- C:\Program Files\RegistrySmart\RegistrySmart.ex
- C:\Program Files\RegistrySmart
"2008-02-13 00:38:35 C:\WINDOWS\Tasks\User_Feed_Synchronization-{1E20C545-85CE-4E72-8C0E-D32625F1C842}.job"
- C:\WINDOWS\system32\msfeedssync.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-02-12 19:03:05
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes …
scanning hidden autostart entries …
scanning hidden files …
scan completed successfully
hidden files: 0
**************************************************************************
.
——————— DLLs Loaded Under Running Processes ———————
PROCESS: C:\WINDOWS\explorer.exe [6.00.2900.3156]
-> C:\Program Files\ArcSoft\Software Suite\PhotoImpression 5\share\pihook.dll
.
———————— Other Running Processes ————————
.
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\system32\fxssvc.exe
C:\WINDOWS\system32\igfxsrvc.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
.
**************************************************************************
.
Completion time: 2008-02-12 19:13:47 - machine was rebooted
ComboFix-quarantined-files.txt 2008-02-13 02:13:37
.
2008-01-22 10:02:44 — E O F —
————————————————————————————————————————————–
————————————————————————————————————————————–
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:18, on 2008-02-12
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\system32\fxssvc.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\stsystra.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
c:\program files\mcafee.com\vso\mcvsshld.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\Common Files\AOL\1158279168\ee\AOLSoftware.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\PROGRA~1\Yahoo!\YOP\yop.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\WINDOWS\explorer.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://att.my.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://red.clientapps.yahoo.com/customize/…/search/ie.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=2060909
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O2 - BHO: (no name) - {53BE74AB-B471-4E0C-890C-711C8110B88E} - C:\Program Files\MSN\sadeno4444.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\common\yiesrvc.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.1121.2472\swg.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O2 - BHO: (no name) - {E94B9EC5-B3E4-4A93-8741-24845774EA8A} - C:\Program Files\MSN\sadeno83122.dll
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe /startup
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1158279168\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [EPSON Stylus CX4600 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9AA.EXE /P26 "EPSON Stylus CX4600 Series" /O6 "USB001" /M "Stylus CX4600"
O4 - HKLM\..\Run: [YBrowser] C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [YOP] C:\PROGRA~1\Yahoo!\YOP\yop.exe /autostart
O4 - HKLM\..\Run: [Auto EPSON Stylus CX4600 Series on DANCOMP] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9AA.EXE /P42 "Auto EPSON Stylus CX4600 Series on DANCOMP" /O17 "\\DANCOMP\Printer" /M "Stylus CX4600"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKLM\..\Run: [HPHUPD08] C:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [ESPN BottomLine] C:\Program Files\ESPN\BottomLine\bline.exe
O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Dell Network Assistant.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O9 - Extra button: AT&T Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - http://www.musicnotes.com/download/mnviewer.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper20073151.dll
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1005.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) -
http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {8FEFF364-6A5F-4966-A917-A3AC28411659} -
http://download.sopcast.com/download/SOPCORE.CAB
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) -
http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab
O16 - DPF: {E473A65C-8087-49A3-AFFD-C5BC4A10669B} (Quantum Streaming IE Player Class) - http://mvnet.xlontech.net/qm/fox/06101102/qsp2ie06101001.cab
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: Microsoft cache control (MSControlService) - Unknown owner - C:\WINDOWS\system32\windows (file missing)
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
–
End of file - 16652 bytes
Ran Combo fix and here is my new hijack this log.