Here's the ComboFix log:
ComboFix 08-02-15.1 - Richarys 2008-02-14 21:23:39.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.246 [GMT -8:00]
Running from: F:\Documents and Settings\Richarys\Desktop\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
F:\Documents and Settings\Richarys\Desktop\searchus.exe
F:\Documents and Settings\Richarys\My Documents\RACLE~1
F:\Documents and Settings\Richarys\My Documents\RACLE~1\r?gedit.exe.vzr
F:\Documents and Settings\Richarys\Start Menu\Programs\Outerinfo
F:\Documents and Settings\Richarys\Start Menu\Programs\Outerinfo\Terms.lnk
F:\Documents and Settings\Richarys\Start Menu\Programs\Outerinfo\Uninstall.lnk
F:\Program Files\Accoona
F:\Program Files\Accoona\ASearchAssist.dll
F:\Program Files\e-zshopper
F:\Program Files\e-zshopper\BarLcher.dll
F:\Program Files\kernel
F:\Program Files\mcroso~1.net
F:\Program Files\mcroso~1.net\M?crosoft.NET\
F:\Program Files\outerinfo
F:\Program Files\outerinfo\FF\chrome.manifest
F:\Program Files\outerinfo\FF\components\OuterinfoAds.xpt
F:\Program Files\outerinfo\FF\install.rdf
F:\Program Files\outerinfo\OiUninstaller.exe
F:\Program Files\outerinfo\outerinfo.ico
F:\Program Files\outerinfo\Terms.rtf
F:\Program Files\Spruce
F:\Program Files\Spruce\Spruce.dll.intermediate.manifest
F:\Program Files\Spruce\Spruce.info
F:\Program Files\Spruce\Spruce.original
F:\Program Files\Spruce\SpruceRg.dll
F:\Program Files\Spruce\un_SpruceSetup_17737.exe
F:\Program Files\Spruce\un_SpruceSetup_17737.txt
F:\Program Files\Spruce\X_Spruce.log
F:\Program Files\Temporary
F:\WINDOWS\absolute key logger.lnk
F:\WINDOWS\aconti.log
F:\WINDOWS\acontidialer.txt
F:\WINDOWS\adbar.dll
F:\WINDOWS\daxtime.dll
F:\WINDOWS\dp0.dll
F:\WINDOWS\eventlowg.dll
F:\WINDOWS\fhfmm-Uninstaller.exe
F:\WINDOWS\ie_32.exe
F:\WINDOWS\jd2002.dll
F:\WINDOWS\kkcomp$.exe
F:\WINDOWS\liqad$.exe
F:\WINDOWS\liqui-Uninstaller.exe
F:\WINDOWS\ngd.dll
F:\WINDOWS\spredirect.dll
F:\WINDOWS\system32\acespy
F:\WINDOWS\system32\acespy\__acelog.ndx
F:\WINDOWS\system32\acespy\systune.exe
F:\WINDOWS\system32\compstu.dll
F:\WINDOWS\system32\din.ip
F:\WINDOWS\system32\dpqaqlqx.bin
F:\WINDOWS\system32\drivers\blank.gif
F:\WINDOWS\system32\drivers\box_2.gif
F:\WINDOWS\system32\drivers\button_buynow.gif
F:\WINDOWS\system32\drivers\button_freescan.gif
F:\WINDOWS\system32\drivers\cell_bg.gif
F:\WINDOWS\system32\drivers\cell_footer.gif
F:\WINDOWS\system32\drivers\cell_header_block.gif
F:\WINDOWS\system32\drivers\cell_header_remove.gif
F:\WINDOWS\system32\drivers\cell_header_scan.gif
F:\WINDOWS\system32\drivers\download_btn.jpg
F:\WINDOWS\system32\drivers\download_now_btn.gif
F:\WINDOWS\system32\drivers\footer_back.jpg
F:\WINDOWS\system32\drivers\ftolhjsf.dat
F:\WINDOWS\system32\drivers\header_1.gif
F:\WINDOWS\system32\drivers\header_2.gif
F:\WINDOWS\system32\drivers\header_3.gif
F:\WINDOWS\system32\drivers\header_4.gif
F:\WINDOWS\system32\drivers\header_red_bg.gif
F:\WINDOWS\system32\drivers\header_red_free_scan.gif
F:\WINDOWS\system32\drivers\header_red_free_scan_bg.gif
F:\WINDOWS\system32\drivers\header_red_protect_your_pc.gif
F:\WINDOWS\system32\drivers\infected.gif
F:\WINDOWS\system32\drivers\main_back.gif
F:\WINDOWS\system32\drivers\product_2_header.gif
F:\WINDOWS\system32\drivers\product_2_name_small.gif
F:\WINDOWS\system32\drivers\product_features.gif
F:\WINDOWS\system32\drivers\pt.htm
F:\WINDOWS\system32\drivers\rating.gif
F:\WINDOWS\system32\drivers\screenshot.jpg
F:\WINDOWS\system32\drivers\sep_hor.gif
F:\WINDOWS\system32\drivers\sep_vert.gif
F:\WINDOWS\system32\drivers\shadow.jpg
F:\WINDOWS\system32\drivers\shadow_bg.gif
F:\WINDOWS\system32\drivers\spacer.gif
F:\WINDOWS\system32\drivers\star.gif
F:\WINDOWS\system32\drivers\star_gray.gif
F:\WINDOWS\system32\drivers\star_gray_small.gif
F:\WINDOWS\system32\drivers\star_small.gif
F:\WINDOWS\system32\drivers\style.css
F:\WINDOWS\system32\drivers\v.gif
F:\WINDOWS\system32\drivers\warning_icon.gif
F:\WINDOWS\system32\drivers\win_logo.gif
F:\WINDOWS\system32\drivers\x.gif
F:\WINDOWS\system32\pac.txt
F:\WINDOWS\system32\sznf.ascii
F:\WINDOWS\system32\uvvwa.ini
F:\WINDOWS\system32\uvvwa.ini2
F:\WINDOWS\system32\wnstscc32.exe
F:\WINDOWS\system32\z1
F:\WINDOWS\system32\z9
F:\WINDOWS\wbeInst$.exe
F:\WINDOWS\xadbrk_.exe
F:\WINDOWS\xxxvideo.exe
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\LEGACY_RITIXCNZ
-------\ritixcnz
((((((((((((((((((((((((( Files Created from 2008-01-15 to 2008-02-15 )))))))))))))))))))))))))))))))
.
2008-02-14 20:20 . 2008-02-14 20:20 <DIR> d-------- F:\Program Files\Trend Micro
2008-02-02 10:30 . 2008-02-02 12:15 <DIR> d-------- F:\Documents and Settings\Richarys\.housecall6.6
2008-02-02 10:30 . 2008-02-02 12:09 102,664 --a------ F:\WINDOWS\system32\drivers\tmcomm.sys
2008-02-02 09:46 . 2008-02-02 09:46 <DIR> d-------- F:\Program Files\Yahoo! Games
2008-02-01 18:38 . 2008-02-01 18:38 <DIR> d-------- F:\WINDOWS\Sun
2008-02-01 18:38 . 2007-09-24 23:31 69,632 --a------ F:\WINDOWS\system32\javacpl.cpl
2008-02-01 18:33 . 2008-02-01 18:38 <DIR> d-------- F:\Program Files\Java
2008-02-01 18:33 . 2008-02-01 18:33 <DIR> d-------- F:\Program Files\Common Files\Java
2008-02-01 16:40 . 2008-02-01 16:41 54,156 --ah----- F:\WINDOWS\QTFont.qfn
2008-02-01 16:40 . 2008-02-01 16:41 1,409 --a------ F:\WINDOWS\QTFont.for
2008-02-01 16:39 . 2008-02-01 16:40 <DIR> d-------- F:\Program Files\QuickTime
2008-02-01 16:39 . 2008-02-01 16:39 <DIR> d-------- F:\Documents and Settings\All Users\Application Data\Apple Computer
2008-02-01 16:38 . 2008-02-01 16:38 <DIR> d-------- F:\Program Files\Apple Software Update
2008-02-01 16:38 . 2008-02-01 16:38 <DIR> d-------- F:\Documents and Settings\All Users\Application Data\Apple
2008-01-27 20:07 . 2007-12-04 04:54 95,608 --a------ F:\WINDOWS\system32\AvastSS.scr
2008-01-27 20:07 . 2007-12-04 06:55 94,544 --a------ F:\WINDOWS\system32\drivers\aswmon2.sys
2008-01-27 20:07 . 2007-12-04 06:56 93,264 --a------ F:\WINDOWS\system32\drivers\aswmon.sys
2008-01-27 20:07 . 2007-12-04 06:51 42,912 --a------ F:\WINDOWS\system32\drivers\aswTdi.sys
2008-01-27 20:07 . 2007-12-04 06:49 26,624 --a------ F:\WINDOWS\system32\drivers\aavmker4.sys
2008-01-27 20:07 . 2007-12-04 06:53 23,152 --a------ F:\WINDOWS\system32\drivers\aswRdr.sys
2008-01-27 20:06 . 2008-01-27 20:06 <DIR> d-------- F:\Program Files\Alwil Software
2008-01-27 20:06 . 2007-12-04 05:04 837,496 --a------ F:\WINDOWS\system32\aswBoot.exe
2008-01-27 20:06 . 2004-01-09 01:13 380,928 --a------ F:\WINDOWS\system32\actskin4.ocx
2008-01-27 13:16 . 2008-01-27 13:16 <DIR> d-------- F:\Program Files\Enigma Software Group
2008-01-24 21:01 . 2008-01-24 21:01 <DIR> d-------- F:\Documents and Settings\Mom\Application Data\AVG7
2008-01-24 21:00 . 2008-01-24 21:00 <DIR> d-------- F:\Program Files\Hewlett-Packard
2008-01-24 21:00 . 2008-01-24 21:00 <DIR> d-------- F:\Program Files\Common Files\HP
2008-01-24 20:59 . 2008-01-24 20:59 <DIR> d-------- F:\Program Files\Common Files\Blizzard Entertainment
2008-01-22 16:03 . 2008-02-03 15:46 1,128 --a------ F:\rollback.ini
2008-01-21 11:29 . 2008-02-14 21:31 4,632,352 --ahs---- F:\WINDOWS\system32\drivers\fidbox.dat
2008-01-21 11:29 . 2008-02-14 21:30 64,136 --ahs---- F:\WINDOWS\system32\drivers\fidbox.idx
2008-01-21 11:16 . 2007-11-14 16:05 75,248 --a------ F:\WINDOWS\zllsputility.exe
2008-01-21 11:16 . 2008-02-12 19:50 4,212 ---h----- F:\WINDOWS\system32\zllictbl.dat
2008-01-21 11:15 . 2008-01-24 21:08 <DIR> d-------- F:\WINDOWS\system32\ZoneLabs
2008-01-21 11:15 . 2008-01-21 11:15 <DIR> d-------- F:\Program Files\Zone Labs
2008-01-21 11:15 . 2007-11-14 16:05 1,086,952 --a------ F:\WINDOWS\system32\zpeng24.dll
2008-01-21 11:15 . 2008-02-13 22:07 352,808 --a------ F:\WINDOWS\system32\vsconfig.xml
2008-01-21 11:14 . 2008-02-13 22:07 <DIR> d-------- F:\WINDOWS\Internet Logs
2008-01-15 22:54 . 2008-01-24 21:00 <DIR> d-------- F:\Program Files\Microsoft CAPICOM 2.1.0.2
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-15 05:31 --------- d---a-w F:\Documents and Settings\All Users\Application Data\TEMP
2008-02-14 06:21 --------- d-----w F:\Program Files\Spyware Doctor
2008-02-14 06:13 --------- d-----w F:\Documents and Settings\All Users\Application Data\Google Updater
2008-02-02 22:56 128,000 ----a-w F:\WINDOWS\Internet Logs\xDB13.tmp
2008-02-01 08:12 358,912 ----a-w F:\WINDOWS\Internet Logs\xDB12.tmp
2008-01-28 08:35 --------- d-----w F:\Documents and Settings\Natalie\Application Data\teamspeak2
2008-01-26 19:37 --------- d-----w F:\Program Files\Common Files\InstallShield
2008-01-26 07:03 161,280 ----a-w F:\WINDOWS\Internet Logs\xDB11.tmp
2008-01-25 05:01 --------- d-----w F:\Documents and Settings\All Users\Application Data\Grisoft
2008-01-25 05:01 --------- d-----w F:\Documents and Settings\All Users\Application Data\avg7
2008-01-25 05:00 --------- d-----w F:\Program Files\Common Files\Symantec Shared
2008-01-25 05:00 --------- d-----w F:\Documents and Settings\Natalie\Application Data\AVG7
2008-01-25 00:20 17,408 ----a-w F:\WINDOWS\Internet Logs\xDBF.tmp
2008-01-25 00:20 1,718,272 ----a-w F:\WINDOWS\Internet Logs\xDB10.tmp
2008-01-25 00:10 17,920 ----a-w F:\WINDOWS\Internet Logs\xDBD.tmp
2008-01-25 00:10 1,718,272 ----a-w F:\WINDOWS\Internet Logs\xDBE.tmp
2008-01-25 00:08 25,600 ----a-w F:\WINDOWS\Internet Logs\xDBC.tmp
2008-01-24 23:58 1,716,224 ----a-w F:\WINDOWS\Internet Logs\xDBB.tmp
2008-01-24 23:57 19,456 ----a-w F:\WINDOWS\Internet Logs\xDBA.tmp
2008-01-24 23:42 17,408 ----a-w F:\WINDOWS\Internet Logs\xDB8.tmp
2008-01-24 23:42 1,714,688 ----a-w F:\WINDOWS\Internet Logs\xDB9.tmp
2008-01-24 23:39 17,408 ----a-w F:\WINDOWS\Internet Logs\xDB6.tmp
2008-01-24 23:39 1,714,688 ----a-w F:\WINDOWS\Internet Logs\xDB7.tmp
2008-01-24 23:37 21,504 ----a-w F:\WINDOWS\Internet Logs\xDB4.tmp
2008-01-24 23:37 1,714,688 ----a-w F:\WINDOWS\Internet Logs\xDB5.tmp
2008-01-24 23:34 1,714,688 ----a-w F:\WINDOWS\Internet Logs\xDB3.tmp
2008-01-24 04:55 1,714,688 ----a-w F:\WINDOWS\Internet Logs\xDB2.tmp
2008-01-24 04:54 261,632 ----a-w F:\WINDOWS\Internet Logs\xDB1.tmp
2008-01-22 23:50 --------- d-----w F:\Documents and Settings\Richarys\Application Data\AVG7
2008-01-17 22:58 --------- d-----w F:\Program Files\Norton Security Scan
2008-01-15 00:52 --------- d-----w F:\Program Files\HP
2008-01-15 00:49 --------- d-----w F:\Program Files\Common Files\Hewlett-Packard
2008-01-07 06:42 --------- d-----w F:\Program Files\Microsoft ActiveSync
2008-01-07 05:48 --------- d-----w F:\Program Files\Lavasoft
2008-01-07 05:48 --------- d-----w F:\Documents and Settings\All Users\Application Data\Lavasoft
2008-01-07 05:46 --------- d-----w F:\Program Files\Common Files\Wise Installation Wizard
2008-01-02 21:06 --------- d-----w F:\Program Files\Common Files\Adobe
2008-01-02 20:47 --------- d-----w F:\Documents and Settings\Richarys\Application Data\PC Tools
2008-01-02 20:38 --------- d-----w F:\Program Files\Google
2008-01-02 19:59 --------- d-----w F:\Program Files\Zune
2008-01-02 19:57 --------- d-----w F:\Documents and Settings\LocalService\Application Data\AVG7
2008-01-01 19:18 --------- d-----w F:\Documents and Settings\All Users\Application Data\Rabio
2007-12-30 21:45 --------- d-----w F:\Program Files\Total Video Converter
2007-12-30 11:01 --------- d-----w F:\Program Files\DivX
2007-12-30 11:01 --------- d-----w F:\Documents and Settings\Richarys\Application Data\DivX
2007-12-30 10:56 --------- d-----w F:\Program Files\SmartSoftVideoConverter
2007-12-30 10:51 --------- d-----w F:\Program Files\Blaze Media Pro
2007-12-30 10:43 --------- d-----w F:\Documents and Settings\All Users\Application Data\{CFAB4006-0AE0-414D-866A-DCB2C46553CF}
2007-12-30 10:35 --------- d-----w F:\Program Files\Avex
2007-12-30 10:34 --------- d-----w F:\Program Files\Common Files\Download Manager
2007-12-30 08:53 --------- d--h--w F:\Program Files\InstallShield Installation Information
2007-12-30 08:53 --------- d-----w F:\Program Files\AvRack
2007-12-30 08:53 --------- d-----w F:\Program Files\Avance Sound Manager
2007-12-30 07:23 0 ---ha-w F:\WINDOWS\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2007-12-30 07:23 0 ---ha-w F:\WINDOWS\system32\drivers\Msft_Kernel_zumbus_01005.Wdf
2007-12-30 06:34 --------- d-----w F:\Program Files\microsoft frontpage
2007-12-18 09:51 179,584 ----a-w F:\WINDOWS\system32\drivers\mrxdav.sys
2007-12-07 01:07 659,456 ----a-w F:\WINDOWS\system32\wininet.dll
2007-12-04 18:38 550,912 ----a-w F:\WINDOWS\system32\oleaut32.dll
2007-12-04 01:33 823,296 ----a-w F:\WINDOWS\system32\divx_xx0c.dll
2007-12-04 01:33 823,296 ----a-w F:\WINDOWS\system32\divx_xx07.dll
2007-12-04 01:33 802,816 ----a-w F:\WINDOWS\system32\divx_xx11.dll
2007-12-04 01:33 682,496 ----a-w F:\WINDOWS\system32\DivX.dll
2007-11-29 22:30 524,288 ----a-w F:\WINDOWS\system32\DivXsm.exe
2007-11-29 22:30 3,596,288 ----a-w F:\WINDOWS\system32\qt-dx331.dll
2007-11-29 22:30 200,704 ----a-w F:\WINDOWS\system32\ssldivx.dll
2007-11-29 22:30 1,044,480 ----a-w F:\WINDOWS\system32\libdivx.dll
2007-11-29 22:28 81,920 ----a-w F:\WINDOWS\system32\dpl100.dll
2007-11-29 22:28 196,608 ----a-w F:\WINDOWS\system32\dtu100.dll
2007-11-28 21:55 156,992 ----a-w F:\WINDOWS\system32\DivXCodecVersionChecker.exe
2007-11-28 21:53 593,920 ----a-w F:\WINDOWS\system32\dpuGUI11.dll
2007-11-28 21:53 57,344 ----a-w F:\WINDOWS\system32\dpv11.dll
2007-11-28 21:53 53,248 ----a-w F:\WINDOWS\system32\dpuGUI10.dll
2007-11-28 21:53 344,064 ----a-w F:\WINDOWS\system32\dpus11.dll
2007-11-28 21:53 294,912 ----a-w F:\WINDOWS\system32\dpu11.dll
2007-11-28 21:53 294,912 ----a-w F:\WINDOWS\system32\dpu10.dll
2007-11-28 21:52 12,288 ----a-w F:\WINDOWS\system32\DivXWMPExtType.dll
2007-11-16 05:51 80,288 ----a-w F:\WINDOWS\system32\ZuneIpTransport.dll
2007-11-16 05:51 72,608 ----a-w F:\WINDOWS\system32\ZuneUsbTransport.dll
2007-11-16 05:51 59,296 ----a-w F:\WINDOWS\system32\ZuneBusEnum.exe
2007-11-16 05:51 45,472 ----a-w F:\WINDOWS\system32\ZuneUsbConnection.dll
2007-11-16 05:51 245,664 ----a-w F:\WINDOWS\system32\ZuneWlanCfgSvc.exe
2007-11-16 05:51 155,552 ----a-w F:\WINDOWS\system32\ZuneMTPZ.dll
.
CODE
<pre>
----a-w 39,792 2008-01-02 21:22:01 F:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl .exe
----a-w 68,856 2008-01-02 21:22:02 F:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier .exe
----a-w 171,448 2008-01-02 19:45:23 F:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier .exe
----a-w 579,072 2008-01-02 20:00:16 F:\Program Files\Grisoft\AVG7\avgcc .exe
----a-w 166,304 2008-01-02 20:00:05 F:\Program Files\Zune\ZuneLauncher .exe
</pre>
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{1169D616-3F89-6E5B-FCB9-60A3E7FBF098}]
F:\WINDOWS\system32\oazjpha.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{22A42330-366D-47D0-8B8F-68FD6C8C6B53}]
F:\Program Files\MSN\lavu.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{477840F3-BA52-44D9-8E41-38D61CAA010F}]
F:\WINDOWS\system32\egmulhxk.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{54DE7259-C729-45B1-BBD8-4BE9B5BD8248}]
F:\Program Files\Spruce\Spruce.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{88AD0D5A-4F8E-4528-BF2B-4AD25C0B6608}]
F:\Program Files\Online Services\hoketozy4444.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{B5DF8F6C-31F8-6829-D22B-39E6038459C6}]
F:\WINDOWS\system32\gyvqpd.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{BE47E697-80A3-4D26-949F-B3DD72ACB428}]
F:\Program Files\Online Services\hoketozy83122.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{dcce1d78-df4e-4f03-b6aa-3930a6556a63}]
F:\WINDOWS\system32\vtmjrgd.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{FE22856B-449F-451E-93D4-6CD7FD21FBC2}]
F:\Program Files\Online Services\hoketozy555077.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"H/PC Connection Agent"="F:\PROGRA~1\MICROS~2\wcescomm .exe" [ ]
"kernel"="F:\Program Files\kernel\kernel.exe" [ ]
"swg"="F:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [ ]
"Oent"="F:\Documents and Settings\Richarys\My Documents\?racle\r?gedit.exe" [ ]
"MSMSGS"="F:\Program Files\Messenger\msmsgs.exe" [2004-10-13 08:24 1694208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="soundman.exe" [2001-05-29 09:02 124416 F:\WINDOWS\soundman.exe]
"SDTray"="F:\Program Files\Spyware Doctor\SDTrayApp.exe" [ ]
"HP Software Update"="F:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2004-09-13 15:49 49152]
"avast!"="F:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 05:00 79224]
"QuickTime Task"="F:\Program Files\QuickTime\QTTask.exe" [2008-01-10 15:27 385024]
"SunJavaUpdateSched"="F:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496]
F:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Google Updater.lnk - F:\Program Files\Google\Google Updater\GoogleUpdater.exe [2008-01-02 12:38:05 124400]
HP Digital Imaging Monitor.lnk - F:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2004-11-04 19:28:24 258048]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\khffgdc]
khffgdc.dll
R2 zumbus;Zune Bus Enumerator Driver;F:\WINDOWS\system32\DRIVERS\zumbus.sys [2007-11-15 21:38]
R2 ZuneBusEnum;Zune Bus Enumerator;f:\WINDOWS\system32\ZuneBusEnum.exe [2007-11-15 21:51]
S3 ZuneWlanCfgSvc;Zune Wireless Configuration Service;f:\WINDOWS\system32\ZuneWlanCfgSvc.exe [2007-11-15 21:51]
.
Contents of the 'Scheduled Tasks' folder
"2008-02-13 06:19:12 F:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- F:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-01-25 23:00:00 F:\WINDOWS\Tasks\Norton Security Scan.job"
- F:\Program Files\Norton Security Scan\Nss.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-02-14 21:32:08
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
F:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
F:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
F:\Program Files\Alwil Software\Avast4\ashServ.exe
F:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
F:\Program Files\Spyware Doctor\svcntaux.exe
F:\Program Files\Spyware Doctor\swdsvc.exe
F:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
F:\Program Files\Alwil Software\Avast4\ashWebSv.exe
.
**************************************************************************
.
Completion time: 2008-02-14 21:34:41 - machine was rebooted
ComboFix-quarantined-files.txt 2008-02-15 05:34:32
.
2008-02-14 06:14:07 --- E O F ---