Hope this is what you were looking for.
ComboFix 09-01-02.01 - clint 2009-01-04 10:38:57.4 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1022.287 [GMT -5:00]
Running from: c:\documents and settings\[removed]\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\clint\Desktop\WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
AV: Norton Internet Security *On-access scanning disabled* (Outdated)
FW: Norton Internet Security *disabled*
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\All Users\Application Data\Solt Lake Software
c:\documents and settings\All Users\Application Data\Solt Lake Software\Pro Antispyware 2009\LOG\20090102203655156.log
c:\documents and settings\All Users\Application Data\Solt Lake Software\Pro Antispyware 2009\LOG\20090103092540750.log
c:\documents and settings\All Users\Application Data\Solt Lake Software\Pro Antispyware 2009\LOG\20090103155241125.log
c:\documents and settings\All Users\Application Data\Solt Lake Software\Pro Antispyware 2009\LOG\20090103200532562.log
c:\documents and settings\All Users\Application Data\Solt Lake Software\Pro Antispyware 2009\proas2009.exe
c:\documents and settings\clint\Application Data\winantispyware2007install[1].exe
c:\documents and settings\clint\err.log
c:\documents and settings\cole\err.log
c:\documents and settings\dylan\err.log
c:\documents and settings\melissa\err.log
c:\windows\BM93ca4798.txt
c:\windows\BM93ca4798.xml
c:\windows\Downloaded Program Files\UDC6_0001_D21M0303NetInstaller.exe
c:\windows\IE4 Error Log.txt
c:\windows\system32\dlkvjopu.ini
c:\windows\system32\e51EqweE.exe.a_a
c:\windows\system32\hytrcpbc.ini
c:\windows\system32\msxml71.dll
c:\windows\system32\tmp.reg
.
((((((((((((((((((((((((( Files Created from 2008-12-04 to 2009-01-04 )))))))))))))))))))))))))))))))
.
2009-01-02 20:21 . 2009-01-03 20:50 73,728 –a—— c:\windows\SYSTEM32\e51EqweE.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-01-04 15:36 ——— d—–w c:\documents and settings\All Users\Application Data\Google Updater
2009-01-04 15:35 ——— d—–w c:\program files\Microsoft AntiSpyware
2008-12-25 16:35 ——— d—–w c:\program files\RealArcade
2008-12-24 20:29 ——— d—–w c:\documents and settings\clint\Application Data\funkitron
2008-12-13 06:40 3,593,216 —-a-w c:\windows\SYSTEM32\DLLCACHE\mshtml.dll
2008-12-11 14:15 ——— d—–w c:\documents and settings\cole\Application Data\HP
2008-10-24 11:10 453,632 ——w c:\windows\SYSTEM32\DLLCACHE\mrxsmb.sys
2008-10-23 13:01 283,648 —-a-w c:\windows\SYSTEM32\gdi32.dll
2008-10-23 13:01 283,648 ——w c:\windows\SYSTEM32\DLLCACHE\gdi32.dll
2008-10-16 19:13 202,776 —-a-w c:\windows\SYSTEM32\wuweb.dll
2008-10-16 19:13 202,776 —-a-w c:\windows\SYSTEM32\DLLCACHE\wuweb.dll
2008-10-16 19:13 1,809,944 —-a-w c:\windows\SYSTEM32\wuaueng.dll
2008-10-16 19:13 1,809,944 —-a-w c:\windows\SYSTEM32\DLLCACHE\wuaueng.dll
2008-10-16 19:12 561,688 —-a-w c:\windows\SYSTEM32\wuapi.dll
2008-10-16 19:12 561,688 —-a-w c:\windows\SYSTEM32\DLLCACHE\wuapi.dll
2008-10-16 19:12 323,608 —-a-w c:\windows\SYSTEM32\wucltui.dll
2008-10-16 19:12 323,608 —-a-w c:\windows\SYSTEM32\DLLCACHE\wucltui.dll
2008-10-16 19:09 92,696 —-a-w c:\windows\SYSTEM32\DLLCACHE\cdm.dll
2008-10-16 19:09 92,696 —-a-w c:\windows\SYSTEM32\cdm.dll
2008-10-16 19:09 51,224 —-a-w c:\windows\SYSTEM32\wuauclt.exe
2008-10-16 19:09 51,224 —-a-w c:\windows\SYSTEM32\DLLCACHE\wuauclt.exe
2008-10-16 19:09 43,544 —-a-w c:\windows\SYSTEM32\wups2.dll
2008-10-16 19:08 34,328 —-a-w c:\windows\SYSTEM32\wups.dll
2008-10-16 19:08 34,328 —-a-w c:\windows\SYSTEM32\DLLCACHE\wups.dll
2008-10-16 13:11 70,656 ——w c:\windows\SYSTEM32\DLLCACHE\ie4uinit.exe
2008-10-16 13:11 13,824 ——w c:\windows\SYSTEM32\DLLCACHE\ieudinit.exe
2008-10-15 16:57 332,800 ——w c:\windows\SYSTEM32\DLLCACHE\netapi32.dll
2008-10-15 07:06 633,632 ——w c:\windows\SYSTEM32\DLLCACHE\iexplore.exe
2008-10-15 07:04 161,792 —-a-w c:\windows\SYSTEM32\DLLCACHE\ieakui.dll
2005-11-08 20:00 153 -c-ha-w c:\documents and settings\melissa\hpothb07.dat
2005-11-08 19:59 0 -c-ha-w c:\documents and settings\cole\hpothb07.dat
2005-01-24 23:32 56 –sh–r c:\windows\SYSTEM32\
00C890AC13.sys
2005-01-24 23:32 1,682 –sha-w c:\windows\SYSTEM32\KGyGaAvL.sys
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2004-10-13 1694208]
"DellSupport"="c:\program files\DellSupport\DSAgnt.exe" [2007-03-15 460784]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360]
"AdobeUpdater"="c:\program files\Common Files\Adobe\Updater5\AdobeUpdater.exe" [2008-11-09 2356088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"="c:\program files\Intel\Intel Application Accelerator\iaanotif.exe" [2004-03-23 135168]
"DVDLauncher"="c:\program files\CyberLink\PowerDVD\DVDLauncher.exe" [2004-04-11 53248]
"PCMService"="c:\program files\Dell\Media Experience\PCMService.exe" [2004-04-11 290816]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2004-08-18 77824]
"HPDJ Taskbar Utility"="c:\windows\System32\spool\drivers\w32x86\3\hpztsb09.exe" [2003-05-07 188416]
"HPHUPD05"="c:\program files\Hewlett-Packard\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe" [2003-05-22 49152]
"HP Component Manager"="c:\program files\HP\hpcoretech\hpcmpmgr.exe" [2003-04-08 212992]
"HP Software Update"="c:\program files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe" [2006-02-19 49152]
"HPHmon05"="c:\windows\System32\hphmon05.exe" [2003-05-22 483328]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2004-12-05 180269]
"Microsoft Works Update Detection"="c:\program files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe" [2002-07-16 28672]
"ccApp"="c:\program files\Common Files\Symantec Shared\ccApp.exe" [2005-07-14 58992]
"Symantec NetDriver Monitor"="c:\progra~1\SYMNET~1\SNDMon.exe" [2005-08-21 100056]
"gcasServ"="c:\program files\Microsoft AntiSpyware\gcasServ.exe" [2005-07-12 473928]
"Adobe Photo Downloader"="c:\program files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe" [2007-03-09 63712]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 39792]
"dscactivate"="c:\program files\Dell Support Center\gs_agent\custom\dsca.exe" [2007-11-15 16384]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2004-08-18 24576]
HP Digital Imaging Monitor.lnk - c:\program files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe [2006-02-19 288472]
HP Photosmart Premier Fast Start.lnk - c:\program files\Hewlett-Packard\Digital Imaging\bin\hpqthb08.exe [2006-02-10 73728]
Service Manager.lnk - c:\program files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe [2005-05-03 81920]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ daila\
0stera
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
R4 MSSQL$APEX;MSSQL$APEX;c:\program files\Microsoft SQL Server\MSSQL$APEX\Binn\sqlservr.exe [2005-05-03 9150464]
S3 SQLAgent$APEX;SQLAgent$APEX;c:\program files\Microsoft SQL Server\MSSQL$APEX\Binn\sqlagent.EXE [2005-05-03 323584]
.
Contents of the 'Scheduled Tasks' folder
2009-01-04 c:\windows\Tasks\At1.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At10.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At11.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At12.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At13.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At14.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At15.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At16.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At17.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At18.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At19.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At2.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At20.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At21.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At22.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At23.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At24.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At25.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At26.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At27.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At28.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At29.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At3.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At30.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At31.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At32.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At33.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At34.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At35.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At36.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At37.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At38.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At39.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At4.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At40.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At41.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At42.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At43.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At44.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-03 c:\windows\Tasks\At45.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At46.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At47.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At48.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At49.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At5.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At50.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At51.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At52.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At53.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At54.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At55.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At56.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At57.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At58.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At59.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At6.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At60.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At61.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At62.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At63.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At64.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At65.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At66.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At67.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At68.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At69.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At7.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At70.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At71.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At72.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At8.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2009-01-04 c:\windows\Tasks\At9.job
- c:\windows\system32\e51EqweE.exe [2009-01-03 20:50]
2008-12-21 c:\windows\Tasks\HP DArC Task #Hewlett-Packard#7900#CN38C222QXEI.job
- c:\program files\HP\hpcoretech\comp\hpdarc.exe [2003-04-08 11:45]
2009-01-04 c:\windows\Tasks\HP Usg Daily.job
- c:\program files\Hewlett-Packard\{45B6180B-DCAB-4093-8EE8-6164457517F0}\pexpress\hphped05.exe [2003-05-22 08:03]
2009-01-03 c:\windows\Tasks\Norton AntiVirus - Scan my computer - clint.job
- c:\progra~1\NORTON~1\NORTON~1\Navw32.exe [2005-10-19 12:54]
.
- - - - ORPHANS REMOVED - - - -
HKCU-Run-Pro Antispyware 2009 - c:\documents and settings\All Users\Application Data\Solt Lake Software\Pro Antispyware 2009\proas2009.exe
.
——- Supplementary Scan ——-
.
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = localhost
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
IE: {{d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html
c:\windows\Downloaded Program Files\DIGHardwareControl.ocx - O16 -: {352797A0-EFD0-4FA6-B229-145120EA4B8A}
hxxps://disneyblast.go.com/v3/setup/activex/DIGHardwareControl.cab
c:\windows\Downloaded Program Files\DIGHardwareControl.inf
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-01-04 10:40:13
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes …
scanning hidden autostart entries …
scanning hidden files …
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2009-01-04 10:41:25
ComboFix-quarantined-files.txt 2009-01-04 15:40:50
ComboFix2.txt 2008-07-17 23:37:24
Pre-Run: 351,578,824,704 bytes free
Post-Run: 351,603,765,248 bytes free
WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect /NoExecute=OptIn
308 — E O F — 2008-12-18 08:00:35
————————————————————————————————
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:43:17 AM, on 1/4/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$APEX\Binn\sqlservr.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\WINDOWS\System32\HPZipm12.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
C:\WINDOWS\system32\e51EqweE.exe
C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\explorer.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [HPHUPD05] C:\Program Files\Hewlett-Packard\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AdobeUpdater] "C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe"
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Photosmart Premier Fast Start.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {352797A0-EFD0-4FA6-B229-145120EA4B8A} (Walt Disney Internet Group Hardware Control) - https://disneyblast.go.com/v3/setup/activex…wareControl.cab
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) -
http://photos.walmart.com/WalmartActivia.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsupdate/…b?1119663688530
O16 - DPF: {A8683C98-5341-421B-B23C-8514C05354F1} (FujifilmUploader Class) - http://photo.walmart.com/photo/uploads/Fuj…ploadClient.cab
O16 - DPF: {CC32D4D8-2A0B-4CEB-B105-C9B968379105} (CGameManagerCtrl Object) -
https://disney.go.com/games/downloads/gamem…GameManager.cab
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
–
End of file - 10834 bytes