Hi IndiGenus and thank you for taking care of my problem.
Here is the combofix log:
ComboFix 08-10-14.01 - Βαγγέλης 2008-10-14 20:48:16.1 - NTFSx86
Running from: C:\Documents and Settings\[removed]\Επιφάνεια εργασίας\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
——-\Legacy_WINDOWS_SMRSS_SERVICE
——-\Service_Windows Smrss Service
((((((((((((((((((((((((( Files Created from 2008-09-14 to 2008-10-14 )))))))))))))))))))))))))))))))
.
2008-10-14 20:25 . 2008-10-14 20:26 d——– C:\Program Files\SpywareBlaster
2008-10-14 20:25 . 2008-10-14 20:25 d——– C:\Documents and Settings\All Users\Application Data\TEMP
2008-10-14 20:17 . 2008-10-14 20:17 d——– C:\Program Files\Common Files\Agnitum Shared
2008-10-14 20:17 . 2008-10-14 20:17 d——– C:\Program Files\Agnitum
2008-10-14 20:06 . 2008-10-14 20:06 d——– C:\Program Files\BillP Studios
2008-10-14 20:06 . 2008-10-14 20:06 d——– C:\Documents and Settings\Βαγγέλης\Application Data\WinPatrol
2008-10-14 20:06 . 2008-10-14 20:06 d——– C:\Documents and Settings\Βαγγέλης\Application Data\WinPatrol
2008-10-14 10:50 . 2008-10-14 10:50 d——– C:\WINDOWS\system32\el-gr
2008-10-14 10:50 . 2008-10-14 10:50 d——– C:\WINDOWS\system32\el
2008-10-14 10:50 . 2008-10-14 10:50 d——– C:\WINDOWS\system32\bits
2008-10-14 10:50 . 2008-10-14 10:50 d——– C:\WINDOWS\l2schemas
2008-10-14 10:48 . 2008-10-14 10:50 d——– C:\WINDOWS\ServicePackFiles
2008-10-14 10:14 . 2004-08-03 22:41 1,041,536 ——— C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2008-10-14 10:00 . 2007-07-30 19:19 43,352 –a—— C:\WINDOWS\system32\wups2.dll
2008-10-14 10:00 . 2007-07-30 19:19 38,232 –a—— C:\WINDOWS\system32\wucltui.dll.mui
2008-10-14 10:00 . 2007-07-30 19:18 30,040 –a—— C:\WINDOWS\system32\wuaucpl.cpl.mui
2008-10-14 10:00 . 2007-07-30 19:19 30,040 –a—— C:\WINDOWS\system32\wuapi.dll.mui
2008-10-14 10:00 . 2007-07-30 19:18 21,848 –a—— C:\WINDOWS\system32\wuaueng.dll.mui
2008-10-14 09:41 . 2008-10-14 11:51 d–h—– C:\WINDOWS\$hf_mig$
2008-10-13 18:07 . 2008-10-13 18:07 d——– C:\Program Files\Malwarebytes' Anti-Malware
2008-10-13 18:07 . 2008-10-13 18:07 d——– C:\Program Files\Common Files\Download Manager
2008-10-13 18:07 . 2008-10-13 18:07 d——– C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-10-13 18:07 . 2008-10-13 18:07 d——– C:\Documents and Settings\Βαγγέλης\Application Data\Malwarebytes
2008-10-13 18:07 . 2008-10-13 18:07 d——– C:\Documents and Settings\Βαγγέλης\Application Data\Malwarebytes
2008-10-13 18:07 . 2008-09-10 00:04 38,528 –a—— C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-10-13 18:07 . 2008-09-10 00:03 17,200 –a—— C:\WINDOWS\system32\drivers\mbam.sys
2008-10-13 18:01 . 2008-10-13 18:01 d——– C:\Program Files\ERUNT
2008-10-10 11:25 . 2008-10-10 12:37 d——– C:\Program Files\Spybot - Search & Destroy
2008-10-10 11:25 . 2008-10-10 12:37 d——– C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-10-06 12:06 . 2008-06-10 02:32 73,728 –a—— C:\WINDOWS\system32\javacpl.cpl
2008-09-29 18:45 . 2008-10-06 10:15 d——– C:\Program Files\KVS2008
2008-09-29 11:53 . 2008-09-29 11:53 d—-c— C:\WINDOWS\system32\DRVSTORE
2008-09-29 11:53 . 2008-09-29 11:53 d——– C:\Documents and Settings\Βαγγέλης\Application Data\Logitech
2008-09-29 11:53 . 2008-09-29 11:53 d——– C:\Documents and Settings\Βαγγέλης\Application Data\Logitech
2008-09-29 11:53 . 2007-01-30 01:46 163,840 –a—— C:\WINDOWS\system32\kemutb.dll
2008-09-29 11:53 . 2007-01-30 01:46 135,168 –a—— C:\WINDOWS\system32\KemUtil.dll
2008-09-29 11:53 . 2007-01-30 01:46 110,592 –a—— C:\WINDOWS\system32\KemWnd.dll
2008-09-29 11:53 . 2007-01-23 15:44 101,136 –a—— C:\WINDOWS\KHALMNPR.Exe
2008-09-29 11:53 . 2007-01-23 15:45 78,864 –a—— C:\WINDOWS\system32\drivers\LMouKE.Sys
2008-09-29 11:53 . 2007-01-30 01:46 69,632 –a—— C:\WINDOWS\system32\KemXML.dll
2008-09-29 11:53 . 2007-01-23 15:44 62,992 –a—— C:\WINDOWS\system32\drivers\L8042mou.Sys
2008-09-29 11:53 . 2007-01-23 15:44 20,496 –a—— C:\WINDOWS\system32\drivers\L8042Kbd.sys
2008-09-29 11:52 . 2008-09-29 11:52 d——– C:\Program Files\Logitech
2008-09-29 11:52 . 2008-09-29 11:53 d——– C:\Program Files\Common Files\Logitech
2008-09-29 11:52 . 2008-09-29 11:52 d——– C:\Documents and Settings\All Users\Application Data\Logitech
2008-09-19 12:00 . 2008-09-19 12:00 d–h—– C:\WINDOWS\PIF
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-14 17:49 ——— d—–w C:\Documents and Settings\Βαγγέλης\Application Data\Free Download Manager
2008-10-14 17:49 ——— d—–w C:\Documents and Settings\Βαγγέλης\Application Data\Free Download Manager
2008-10-14 17:45 ——— d—–w C:\Documents and Settings\Βαγγέλης\Application Data\foobar2000
2008-10-14 17:45 ——— d—–w C:\Documents and Settings\Βαγγέλης\Application Data\foobar2000
2008-10-14 17:30 ——— d—–w C:\Program Files\eMule
2008-10-14 17:10 ——— d—–w C:\Program Files\Common Files\BSDDB
2008-10-13 15:13 ——— d—–w C:\Documents and Settings\Βαγγέλης\Application Data\uTorrent
2008-10-13 15:13 ——— d—–w C:\Documents and Settings\Βαγγέλης\Application Data\uTorrent
2008-10-13 07:06 ——— d—–w C:\Program Files\foobar2000
2008-10-06 09:06 ——— d—–w C:\Program Files\Java
2008-09-29 09:18 ——— d–h–w C:\Program Files\InstallShield Installation Information
2008-09-15 08:32 ——— d—–w C:\Program Files\Sprint-Layout50 (Demo)
2008-09-13 20:26 ——— d—–w C:\Program Files\uTorrent
2008-09-11 15:38 ——— d—–w C:\Program Files\Fast AVI MPEG Joiner
2008-09-11 15:19 ——— d—–w C:\Program Files\All Video Splitter
2008-09-11 15:05 ——— d—–w C:\Program Files\Common Files\DVDVideoSoft
2008-09-11 14:43 ——— d—–w C:\Program Files\ImTOO
2008-09-11 14:32 ——— d—–w C:\Documents and Settings\Βαγγέλης\Application Data\Thinstall
2008-09-11 14:32 ——— d—–w C:\Documents and Settings\Βαγγέλης\Application Data\Thinstall
2003-03-12 02:16 307,200 —-a-w C:\Program Files\internet explorer\plugins\djvu0407.dll
2003-03-12 02:16 303,104 —-a-w C:\Program Files\internet explorer\plugins\djvu0409.dll
2003-03-12 02:16 311,296 —-a-w C:\Program Files\internet explorer\plugins\djvu040c.dll
2003-03-12 02:16 299,008 —-a-w C:\Program Files\internet explorer\plugins\djvu0411.dll
2003-03-12 02:16 303,104 —-a-w C:\Program Files\internet explorer\plugins\djvu0412.dll
2003-03-12 02:16 290,816 —-a-w C:\Program Files\internet explorer\plugins\djvu0804.dll
2003-03-12 02:15 122,880 —-a-w C:\Program Files\internet explorer\plugins\DjVuCntl.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ProtoWall"="C:\Program Files\Bluetack\ProtoWall\ProtoWall.exe" [2006-04-18 737280]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-09-16 1833296]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Acrobat Assistant 7.0"="C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" [2006-01-12 483328]
"TrueImageMonitor.exe"="C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe" [2006-10-16 1164912]
"AcronisTimounterMonitor"="C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe" [2006-10-16 1941784]
"Acronis Scheduler2 Service"="C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe" [2006-10-16 87584]
"igfxhkcmd"="C:\WINDOWS\system32\hkcmd.exe" [2006-03-23 77824]
"igfxpers"="C:\WINDOWS\system32\igfxpers.exe" [2006-03-23 118784]
"avgnt"="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-07-18 266497]
"WinampAgent"="C:\Program Files\Winamp\winampa.exe" [2007-10-10 36352]
"HPDJ Taskbar Utility"="C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe" [2001-10-29 196608]
"WinPatrol"="C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe" [2008-10-09 333120]
"Outpost Firewall"="C:\PROGRA~1\Agnitum\OUTPOS~1.0\outpost.exe" [2002-06-14 78848]
"RTHDCPL"="RTHDCPL.EXE" [2006-06-28 C:\WINDOWS\RTHDCPL.exe]
"SkyTel"="SkyTel.EXE" [2006-05-16 C:\WINDOWS\SkyTel.exe]
"Logitech Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-01-23 C:\WINDOWS\KHALMNPR.Exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2008-04-14 15360]
C:\Documents and Settings\˜ššβΆž\Start Menu\¨¦š¨α££˜«˜\„΅΅ε¤ž©ž\
BSDent.lnk - C:\Program Files\BSoft\BSDent\BSDent.exe [2005-04-12 10616320]
C:\Documents and Settings\All Users\Start Menu\¨¦š¨α££˜«˜\„΅΅ε¤ž©ž\
Adobe Acrobat Speed Launcher.lnk - C:\WINDOWS\Installer\{AC76BA86-1033-0000-7760-000000000002}\SC_Acrobat.exe [2007-04-17 25214]
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe [2008-09-29 688128]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\uTorrent\\uTorrent.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
R1 kbfilter;Keyboard Filter Driver;C:\WINDOWS\system32\drivers\kbfilter.sys [2003-03-27 11776]
R1 VFILT;Outpost Firewall Kernel Driver;C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\2000\FILTNT.SYS [2002-06-14 90368]
R3 ADBLOCK.DLL;Outpost Firewall PlugIn (ADBLOCK.DLL);C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\ADBLOCK.DLL [2002-06-14 15552]
R3 CONTENT.DLL;Outpost Firewall PlugIn (CONTENT.DLL);C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\CONTENT.DLL [2002-06-14 3904]
R3 DNSCACHE.DLL;Outpost Firewall PlugIn (DNSCACHE.DLL);C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\DNSCACHE.DLL [2002-06-14 6144]
R3 FTPFILT.DLL;Outpost Firewall PlugIn (FTPFILT.DLL);C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\FTPFILT.DLL [2002-06-14 6304]
R3 HTMLFILT.DLL;Outpost Firewall PlugIn (HTMLFILT.DLL);C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\HTMLFILT.DLL [2002-06-14 7776]
R3 HTTPFILT.DLL;Outpost Firewall PlugIn (HTTPFILT.DLL);C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\HTTPFILT.DLL [2002-06-14 9152]
R3 IMAPFILT.DLL;Outpost Firewall PlugIn (IMAPFILT.DLL);C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\IMAPFILT.DLL [2002-06-14 7072]
R3 MAILFILT.DLL;Outpost Firewall PlugIn (MAILFILT.DLL);C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\MAILFILT.DLL [2002-06-14 9920]
R3 NNTPFILT.DLL;Outpost Firewall PlugIn (NNTPFILT.DLL);C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\NNTPFILT.DLL [2002-06-14 6656]
R3 POP3FILT.DLL;Outpost Firewall PlugIn (POP3FILT.DLL);C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\POP3FILT.DLL [2002-06-14 7136]
R3 PROTECT.DLL;Outpost Firewall PlugIn (PROTECT.DLL);C:\PROGRA~1\Agnitum\OUTPOS~1.0\kernel\PROTECT.DLL [2002-06-14 15584]
R3 ProtoWall;ProtoWall Network Service;C:\WINDOWS\system32\DRIVERS\ProtoWall.sys [2006-01-02 23296]
.
Contents of the 'Scheduled Tasks' folder
2008-10-08 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2007-08-29 15:57]
.
- - - - ORPHANS REMOVED - - - -
MSConfigStartUp-CTFMON - (no file)
.
——- Supplementary Scan ——-
.
FireFox -: Profile - C:\Documents and Settings\Βαγγέλης\Application Data\Mozilla\Firefox\Profiles\ha2lugdu.default\
FF -: plugin - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\browser\nppdf32.dll
FF -: plugin - C:\Program Files\DivX\DivX Content Uploader\npUpload.dll
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-10-14 20:51:49
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes …
scanning hidden autostart entries …
scanning hidden files …
scan completed successfully
hidden files: 0
**************************************************************************
.
———————— Other Running Processes ————————
.
C:\WINDOWS\system32\savedump.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\Adobe\Acrobat 7.0\Acrobat\acrobat_sl.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.exe
.
**************************************************************************
.
Completion time: 2008-10-14 20:53:59 - machine was rebooted
ComboFix-quarantined-files.txt 2008-10-14 17:53:55
Pre-Run: 14 Κατάλογοι 27,263,389,696 διαθέσιμα byte
Post-Run: 14 Κατάλογοι 27,265,777,664 διαθέσιμα byte
193
And this is the HJT log:
Logfile of HijackThis v1.99.1
Scan saved at 8:56:24 μμ, on 14/10/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\PROGRA~1\Agnitum\OUTPOS~1.0\outpost.exe
C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
C:\Program Files\Bluetack\ProtoWall\ProtoWall.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Acrobat\acrobat_sl.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Hijackthis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Συνδέσεις
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe -expressboot
O4 - HKLM\..\Run: [Outpost Firewall] C:\PROGRA~1\Agnitum\OUTPOS~1.0\outpost.exe /waitservice
O4 - HKCU\..\Run: [ProtoWall] C:\Program Files\Bluetack\ProtoWall\ProtoWall.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: BSDent.lnk = C:\Program Files\BSoft\BSDent\BSDent.exe
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: Logitech SetPoint.lnk = ?
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Ε&ξαγωγή στο Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Έρευνα - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://www.update.microsoft.com/windowsupd…b?1223967544609
O17 - HKLM\System\CCS\Services\Tcpip\..\{E6859CCB-B77F-405B-98C7-86710FBBCC10}: NameServer = 194.219.227.2,193.92.150.3
O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: Outpost Firewall Service (OutpostFirewall) - Agnitum - C:\PROGRA~1\Agnitum\OUTPOS~1.0\outpost.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
P.S. Since I was really concerned about running my PC without a firewall, I have meanwhile installed Outpost Firewall