sory with the slow reply... i'm having trouble with my JAP
this is my combofix log
ComboFix 07-08-09.3 - "AthaNz" 2007-08-14 9:47:26.3 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.559 [GMT 7:00]
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\system32\_000006_.tmp.dll
C:\WINDOWS\system32\_000009_.tmp.dll
C:\WINDOWS\system32\_000010_.tmp.dll
C:\WINDOWS\system32\_000011_.tmp.dll
((((((((((((((((((((((((( Files Created from 2007-07-14 to 2007-08-14 )))))))))))))))))))))))))))))))
2007-08-14 09:25 <DIR> d-------- C:\Program Files\MSXML 6.0
2007-08-14 09:22 <DIR> d-------- C:\Program Files\MSXML 4.0
2007-08-13 08:20 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-08-12 18:32 <DIR> d-------- C:\WINDOWS\system32\xircom
2007-08-12 18:32 <DIR> d-------- C:\WINDOWS\system32\inetsrv
2007-08-12 18:32 <DIR> d-------- C:\WINDOWS\system32\drivers\disdn
2007-08-12 18:32 <DIR> d-------- C:\WINDOWS\system32\1033
2007-08-12 18:32 <DIR> d-------- C:\WINDOWS\srchasst
2007-08-12 18:32 <DIR> d-------- C:\WINDOWS\peernet
2007-08-12 18:32 <DIR> d-------- C:\Program Files\movie maker
2007-08-12 18:01 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
2007-08-11 21:02 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2007-08-11 19:22 <DIR> d-------- C:\Program Files\JAP
2007-08-11 19:10 19,328 --a--c--- C:\WINDOWS\system32\dllcache\wstcodec.sys
2007-08-11 19:10 19,328 --a------ C:\WINDOWS\system32\drivers\WSTCODEC.SYS
2007-08-11 19:10 17,024 --a--c--- C:\WINDOWS\system32\dllcache\ccdecode.sys
2007-08-11 19:10 17,024 --a------ C:\WINDOWS\system32\drivers\CCDECODE.sys
2007-08-11 19:10 15,360 --a--c--- C:\WINDOWS\system32\dllcache\streamip.sys
2007-08-11 19:10 15,360 --a------ C:\WINDOWS\system32\drivers\StreamIP.sys
2007-08-11 19:10 <DIR> d-------- C:\DOCUME~1\AthaNz\Pavark
2007-08-11 18:00 <DIR> d-------- C:\DOCUME~1\AthaNz\APPLIC~1\Zeon
2007-08-10 16:43 32,592 --a------ C:\WINDOWS\system32\msonpmon.dll
2007-08-10 16:40 <DIR> d-------- C:\Program Files\MSBuild
2007-08-10 16:40 <DIR> d-------- C:\Program Files\Microsoft Works
2007-08-10 16:39 <DIR> d-------- C:\Program Files\Microsoft.NET
2007-08-10 16:32 <DIR> d-------- C:\Program Files\Ulead Systems
2007-08-10 15:30 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
2007-08-10 15:28 <DIR> dr-h----- C:\MSOCache
2007-08-10 13:10 5,504 --a--c--- C:\WINDOWS\system32\dllcache\mstee.sys
2007-08-10 13:10 5,504 --a------ C:\WINDOWS\system32\drivers\MSTEE.sys
2007-08-10 13:09 85,376 --a--c--- C:\WINDOWS\system32\dllcache\nabtsfec.sys
2007-08-10 13:09 85,376 --a------ C:\WINDOWS\system32\drivers\NABTSFEC.sys
2007-08-10 12:05 <DIR> d-------- C:\WINDOWS\system32\LogFiles
2007-08-09 23:47 11,136 --a--c--- C:\WINDOWS\system32\dllcache\slip.sys
2007-08-09 23:47 11,136 --a------ C:\WINDOWS\system32\drivers\SLIP.sys
2007-08-09 23:28 24,816 --a------ C:\WINDOWS\system32\mdimon.dll
2007-08-09 23:25 <DIR> d-------- C:\WINDOWS\SHELLNEW
2007-08-09 23:22 34,832 --ah----- C:\WINDOWS\system32\mlfcache.dat
2007-08-09 23:15 <DIR> d-------- C:\DOCUME~1\AthaNz\APPLIC~1\COWON
2007-08-09 22:28 <DIR> d-------- C:\Program Files\PowerISO
2007-08-09 22:27 <DIR> d-------- C:\Program Files\MagicISO
2007-08-09 15:03 53,760 --a--c--- C:\WINDOWS\system32\dllcache\vfwwdm32.dll
2007-08-09 15:03 53,760 --a------ C:\WINDOWS\system32\vfwwdm32.dll
2007-08-09 15:00 9,856 --a------ C:\WINDOWS\system32\drivers\pmc2ir.sys
2007-08-09 15:00 164,992 --a------ C:\WINDOWS\system32\drivers\pmc2vid.sys
2007-08-09 15:00 118,400 --a------ C:\WINDOWS\system32\drivers\pmc2tun.sys
2007-08-09 15:00 10,112 --a------ C:\WINDOWS\system32\drivers\pmc2xbr.sys
2007-08-09 15:00 10,112 --a------ C:\WINDOWS\system32\drivers\pmc2ava.sys
2007-08-09 15:00 <DIR> d-------- C:\Program Files\PixelView
2007-08-09 14:59 <DIR> d-------- C:\Program Files\InterVideo
2007-08-09 14:59 <DIR> d-------- C:\Program Files\GDI
2007-08-09 14:43 1,580,544 --a------ C:\WINDOWS\system32\sfcfiles.dll
2007-08-09 14:36 984,576 --a------ C:\WINDOWS\system32\syssetup.dll
2007-08-09 13:26 <DIR> d---s---- C:\DOCUME~1\AthaNz\UserData
2007-08-09 13:03 25,856 --a--c--- C:\WINDOWS\system32\dllcache\usbprint.sys
2007-08-09 13:03 25,856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys
2007-08-09 12:59 <DIR> d-------- C:\Program Files\Common Files\CANON
2007-08-09 12:58 163,840 --a------ C:\WINDOWS\BJPSUNST.EXE
2007-08-09 12:56 306,688 --a------ C:\WINDOWS\IsUninst.exe
2007-08-09 12:52 <DIR> d-------- C:\Program Files\Canon
2007-08-09 12:51 <DIR> d-------- C:\Program Files\VCD Cutter 4.04
2007-08-09 12:35 <DIR> d-------- C:\DOCUME~1\AthaNz\APPLIC~1\Canopus
2007-08-09 12:32 <DIR> d-------- C:\DOCUME~1\AthaNz\APPLIC~1\Google
2007-08-09 12:31 86,016 --a------ C:\WINDOWS\unvise32qt.exe
2007-08-09 12:31 <DIR> d-------- C:\WINDOWS\system32\QuickTime
2007-08-09 12:31 <DIR> d-------- C:\Program Files\QuickTime
2007-08-09 12:31 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
2007-08-09 12:30 376,832 --a------ C:\WINDOWS\system32\hlcdvc.dll
2007-08-09 12:30 <DIR> d-------- C:\Program Files\directx
2007-08-09 12:27 835,665 -ra------ C:\WINDOWS\system32\cseuvec.dll
2007-08-09 12:27 69,632 -ra------ C:\WINDOWS\system32\cuvccodc.dll
2007-08-09 12:27 69,632 -ra------ C:\WINDOWS\system32\cllccodc.dll
2007-08-09 12:27 49,152 --a------ C:\WINDOWS\system32\cvpcdvc.dll
2007-08-09 12:27 385,108 --a------ C:\WINDOWS\system32\csedv.dll
2007-08-09 12:27 32,256 --a------ C:\WINDOWS\system32\cdvccodc.dll
2007-08-09 12:27 22,528 --a------ C:\WINDOWS\system32\csthread.dll
2007-08-09 12:27 159,832 --a------ C:\WINDOWS\system32\csccdvc.dll
2007-08-09 12:27 147,456 --a------ C:\WINDOWS\system32\csccdvcx.dll
2007-08-09 12:27 122,961 -ra------ C:\WINDOWS\system32\csellc.dll
2007-08-09 12:09 73,728 -ra------ C:\WINDOWS\system32\pavedius.dll
2007-08-09 12:09 458,752 -ra------ C:\WINDOWS\system32\pavapi.dll
2007-08-09 12:09 4,096 -ra------ C:\WINDOWS\system32\paveno.dll
2007-08-09 12:09 1,130,585 -ra------ C:\WINDOWS\system32\csedvh.dll
2007-08-09 12:08 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
2007-08-09 12:06 26,569 --a------ C:\WINDOWS\system32\drivers\zskrnl.sys
2007-08-09 12:06 <DIR> d-------- C:\Program Files\Common Files\Canopus Shared
2007-08-09 12:06 <DIR> d-------- C:\Program Files\Canopus
2007-08-09 11:58 262,144 --a------ C:\DOCUME~1\ALLUSE~1\ntuser.dat
2007-08-09 11:58 <DIR> d-------- C:\Program Files\Malicious Software Removal Tool
2007-08-09 11:56 <DIR> d-------- C:\Program Files\Google
2007-08-09 11:56 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
2007-08-09 11:55 59,264 -----c--- C:\WINDOWS\system32\dllcache\usbhub.sys
2007-08-09 11:55 36,864 -----c--- C:\WINDOWS\system32\dllcache\hidclass.sys
2007-08-09 11:55 2,182,144 -----c--- C:\WINDOWS\system32\dllcache\ntoskrnl.exe
2007-08-09 11:55 2,137,600 -----c--- C:\WINDOWS\system32\dllcache\ntkrnlmp.exe
2007-08-09 11:55 2,017,280 -----c--- C:\WINDOWS\system32\dllcache\ntkrpamp.exe
2007-08-09 11:53 69,120 -----c--- C:\WINDOWS\system32\dllcache\ciodm.dll
2007-08-09 11:52 82,944 -----c--- C:\WINDOWS\system32\dllcache\wdmaud.sys
2007-08-09 11:52 6,400 -----c--- C:\WINDOWS\system32\dllcache\splitter.sys
2007-08-09 11:52 172,416 -----c--- C:\WINDOWS\system32\dllcache\kmixer.sys
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) ))
2007-08-14 09:55 --------- d-------- C:\DOCUME~1\AthaNz\APPLIC~1\uTorrent
2007-08-14 09:52 4212 ---h----- C:\WINDOWS\system32\zllictbl.dat
2007-08-14 09:51 46880 --ahs---- C:\WINDOWS\system32\drivers\fidbox.idx
2007-08-14 09:51 3500064 --ahs---- C:\WINDOWS\system32\drivers\fidbox.dat
2007-08-13 16:37 --------- d-------- C:\Program Files\Common Files\ODBC
2007-08-13 10:00 --------- d-------- C:\Program Files\PeerGuardian2
2007-08-12 18:32 --------- d-------- C:\Program Files\Windows NT
2007-08-12 18:32 --------- d-------- C:\Program Files\msn gaming zone
2007-08-12 18:01 --------- d-------- C:\Program Files\Messenger Plus! Live
2007-08-11 23:16 --------- d-------- C:\Program Files\WMR11
2007-08-11 23:16 --------- d-------- C:\Program Files\NetSupport Manager
2007-08-11 23:14 --------- dr------- C:\Program Files\TypingMaster
2007-08-11 23:14 --------- d-------- C:\Program Files\MSN Messenger
2007-08-11 20:29 --------- d-------- C:\Program Files\JetAudio
2007-08-11 20:06 --------- d-------- C:\Program Files\TopDesk
2007-08-11 20:05 --------- d-------- C:\Program Files\uTorrent
2007-08-11 20:05 --------- d-------- C:\Program Files\Bonjour
2007-08-10 15:18 --------- d-------- C:\Program Files\CachemanXP
2007-08-09 14:59 --------- d--h----- C:\Program Files\InstallShield Installation Information
2007-08-09 14:42 80128 --a------ C:\WINDOWS\system32\drivers\parport.sys
2007-08-09 14:42 63744 --a------ C:\WINDOWS\system32\drivers\mf.sys
2007-08-09 14:42 61824 --a------ C:\WINDOWS\system32\drivers\nic1394.sys
2007-08-09 14:42 60800 --a------ C:\WINDOWS\system32\drivers\arp1394.sys
2007-08-09 14:42 52224 --a------ C:\WINDOWS\system32\dmutil.dll
2007-08-09 14:42 47104 --a------ C:\WINDOWS\system32\cnbjmon.dll
2007-08-09 14:42 4352 --a------ C:\WINDOWS\system32\drivers\swenum.sys
2007-08-09 14:42 42496 --a------ C:\WINDOWS\system32\drivers\p3.sys
2007-08-09 14:42 37376 --a------ C:\WINDOWS\system32\drivers\amdk7.sys
2007-08-09 14:42 36992 --a------ C:\WINDOWS\system32\drivers\amdk6.sys
2007-08-09 14:42 36480 --a------ C:\WINDOWS\system32\drivers\crusoe.sys
2007-08-09 14:42 35328 --a------ C:\WINDOWS\system32\pid.dll
2007-08-09 14:42 35328 --a------ C:\WINDOWS\system32\drivers\processr.sys
2007-08-09 14:42 30080 --a------ C:\WINDOWS\system32\drivers\modem.sys
2007-08-09 14:42 25472 --a------ C:\WINDOWS\system32\drivers\sonydcam.sys
2007-08-09 14:42 23040 --a------ C:\WINDOWS\system32\drivers\mouclass.sys
2007-08-09 14:42 20992 --a------ C:\WINDOWS\system32\hid.dll
2007-08-09 14:42 16000 --a------ C:\WINDOWS\system32\drivers\usbintel.sys
2007-08-09 14:42 15488 --a------ C:\WINDOWS\system32\drivers\mssmbios.sys
2007-08-09 14:42 15360 --a------ C:\WINDOWS\system32\pjlmon.dll
2007-08-09 14:42 12416 --a------ C:\WINDOWS\system32\drivers\tunmp.sys
2007-08-09 14:41 86073 --a------ C:\WINDOWS\system32\usrfaxa.dll
2007-08-09 14:41 8192 --a------ C:\WINDOWS\system32\streamci.dll
2007-08-09 14:41 77891 --a------ C:\WINDOWS\system32\usrmlnka.exe
2007-08-09 14:41 77890 --a------ C:\WINDOWS\system32\usrdpa.dll
2007-08-09 14:41 77883 --a------ C:\WINDOWS\system32\usrrtosa.dll
2007-08-09 14:41 69700 --a------ C:\WINDOWS\system32\usrshuta.exe
2007-08-09 14:41 69699 --a------ C:\WINDOWS\system32\usrcoina.dll
2007-08-09 14:41 61508 --a------ C:\WINDOWS\system32\usrprbda.exe
2007-08-09 14:41 61500 --a------ C:\WINDOWS\system32\usrcntra.dll
2007-08-09 14:41 55296 --a------ C:\WINDOWS\system32\dvdplay.exe
2007-08-09 14:41 53305 --a------ C:\WINDOWS\system32\usrlbva.dll
2007-08-09 14:41 49211 --a------ C:\WINDOWS\system32\usrvpa.dll
2007-08-09 14:41 49211 --a------ C:\WINDOWS\system32\usrsdpia.dll
2007-08-09 14:41 49209 --a------ C:\WINDOWS\system32\usrv80a.dll
2007-08-09 14:41 45116 --a------ C:\WINDOWS\system32\usrvoica.dll
2007-08-09 14:41 41019 --a------ C:\WINDOWS\system32\usrsvpia.dll
2007-08-09 14:41 323641 --a------ C:\WINDOWS\system32\usrdtea.dll
2007-08-09 14:41 3200 --a------ C:\WINDOWS\system32\wowfax.dll
2007-08-09 14:41 23936 --a------ C:\WINDOWS\system32\drivers\usbcamd2.sys
2007-08-09 14:41 23808 --a------ C:\WINDOWS\system32\drivers\usbcamd.sys
2007-08-09 14:41 21376 --a------ C:\WINDOWS\system32\drivers\tsbvcap.sys
2007-08-09 14:41 18688 --a------ C:\WINDOWS\system32\drivers\cdaudio.sys
2007-08-09 14:41 13824 --a------ C:\WINDOWS\system32\wowfaxui.dll
2007-08-09 14:41 12160 --a------ C:\WINDOWS\system32\drivers\fsvga.sys
2007-08-09 14:41 102457 --a------ C:\WINDOWS\system32\usrv42a.dll
2007-08-09 13:09 --------- d-------- C:\Program Files\ATITool
2007-08-09 11:49 --------- d-------- C:\Program Files\Opera
2007-08-09 10:52 10368 --a------ C:\WINDOWS\system32\drivers\pfc.sys
2007-08-09 09:12 --------- d-------- C:\Program Files\DAEMON Tools
2007-08-08 21:19 502272 --a------ C:\WINDOWS\system32\winlogon.exe
2007-08-08 21:02 245760 --a----t- C:\WINDOWS\system32\PAVSHOOK.DLL
2007-08-08 21:02 141312 --a----t- C:\WINDOWS\system32\drivers\netflt.sys
2007-06-26 22:13 851968 -----c--- C:\WINDOWS\system32\dllcache\vgx.dll
2007-06-26 13:08 1104896 --a--c--- C:\WINDOWS\system32\dllcache\msxml3.dll
2007-06-26 13:08 1104896 --a------ C:\WINDOWS\system32\msxml3.dll
2007-06-21 21:54 75248 --a------ C:\WINDOWS\zllsputility.exe
2007-06-21 21:54 1086952 --a------ C:\WINDOWS\system32\zpeng24.dll
2007-06-19 20:31 282112 --a--c--- C:\WINDOWS\system32\dllcache\gdi32.dll
2007-06-19 20:31 282112 --a------ C:\WINDOWS\system32\gdi32.dll
2007-06-13 18:26 1033216 --a--c--- C:\WINDOWS\system32\dllcache\explorer.exe
2007-06-13 18:26 1033216 --a------ C:\WINDOWS\explorer.exe
2007-06-03 14:31 10752 --a------ C:\WINDOWS\system32\ff_vfw.dll
2007-05-31 08:44 740442 --a------ C:\WINDOWS\system32\divx.dll
2007-05-17 18:28 549376 --a--c--- C:\WINDOWS\system32\dllcache\oleaut32.dll
2007-05-17 18:28 549376 --a------ C:\WINDOWS\system32\oleaut32.dll
2007-05-16 22:12 86528 --a--c--- C:\WINDOWS\system32\dllcache\directdb.dll
2007-05-16 22:12 85504 --a--c--- C:\WINDOWS\system32\dllcache\wabimp.dll
2007-05-16 22:12 683520 --a--c--- C:\WINDOWS\system32\dllcache\inetcomm.dll
2007-05-16 22:12 683520 --------- C:\WINDOWS\system32\inetcomm.dll
2007-05-16 22:12 510976 --a--c--- C:\WINDOWS\system32\dllcache\wab32.dll
2007-05-16 22:12 1314816 --a--c--- C:\WINDOWS\system32\dllcache\msoe.dll
2007-05-15 15:43 1320800 --a------ C:\WINDOWS\system32\msxml6.dll
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-02-24 21:10]
"ZoneAlarm Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" [2007-06-21 21:54]
"SSBkgdUpdate"="C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-09-30 00:14]
"PDF3 Registry Controller"="C:\Program Files\ScanSoft\OmniPage15.0\PDFConverter3\\Registr yController.exe" []
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-07-21 02:49]
"TopDesk"="C:\Program Files\TopDesk\topdesk.exe" [2006-03-02 00:03]
"APVXDWIN"="C:\Program Files\Panda Software\Panda Internet Security 2007\APVXDWIN.exe" [2007-08-08 21:02]
"SCANINICIO"="C:\Program Files\Panda Software\Panda Internet Security 2007\Inicio.exe" [2006-02-01 18:13]
"SoundMan"="SOUNDMAN.EXE" [2007-04-16 15:28 C:\WINDOWS\soundman.exe]
"CoolSwitch"="C:\WINDOWS\system32\taskswitch.e xe" [2002-03-19 17:30]
"ISUSPM Startup"="C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-08-11 16:30]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2005-08-11 16:30]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 03:06]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 08:56]
"µTorrent"="C:\Program Files\uTorrent\utorrent.exe" [2007-02-16 03:17]
"Yahoo! Pager"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" [2007-06-07 14:08]
[HKEY_USERS\.default\software\microsoft\windows\cur rentversion\runonce]
"nltide_3"=rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
PowerMenu.lnk - C:\Program Files\PowerMenu\PowerMenu.exe [2007-08-09 10:05:37]
[HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\policies\system]
"NoVisualStyleChoice"=0 (0x0)
"NoColorChoice"=0 (0x0)
"NoSizeChoice"=0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\policies\explorer]
"NoDesktopCleanupWizard"=1 (0x1)
"NoRemoteRecursiveEvents"=1 (0x1)
[HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\policies\explorer]
"NoSMHelp"=1 (0x1)
"ForceClassicControlPanel"=1 (0x1)
"NoResolveTrack"=1 (0x1)
"LinkResolveIgnoreLinkInfo"=1 (0x1)
"NoResolveSearch"=1 (0x1)
"NoLowDiskSpaceChecks"=1 (0x1)
"ClearRecentDocsOnExit"=1 (0x1)
"NoRecentDocsMenu"=1 (0x1)
"NoRecentDocsHistory"=1 (0x1)
"NoStartBanner"=1 (0x1)
"NoSMMyPictures"=1 (0x1)
"NoStartMenuPinnedList"=1 (0x1)
"NoSMConfigurePrograms"=1 (0x1)
"NoSMBalloonTip"=0 (0x0)
"NoSaveSettings"=0 (0x0)
"NoChangeKeyboardNavigationIndicators"=0 (0x0)
"NoSharedDocuments"=1 (0x1)
[HKEY_USERS\.default\software\microsoft\windows\cur rentversion\policies\explorer]
"NoSMHelp"=1 (0x1)
"ForceClassicControlPanel"=1 (0x1)
"NoResolveTrack"=1 (0x1)
"LinkResolveIgnoreLinkInfo"=1 (0x1)
"NoResolveSearch"=1 (0x1)
"NoLowDiskSpaceChecks"=1 (0x1)
"ClearRecentDocsOnExit"=1 (0x1)
"NoRecentDocsMenu"=1 (0x1)
"NoRecentDocsHistory"=1 (0x1)
"NoStartBanner"=1 (0x1)
"NoSMMyPictures"=1 (0x1)
"NoStartMenuPinnedList"=1 (0x1)
"NoSMConfigurePrograms"=1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avldr]
avldr.dll 2005-09-27 12:13 45056 C:\WINDOWS\system32\avldr.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WBSrv]
C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\wbsrv.dll 2005-12-06 21:16 176128 C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\WbSrv.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"appinit_dlls"=wbsys.dll
R0 netflt;Panda Net Driver.;C:\WINDOWS\system32\Drivers\netflt.sys
R1 ATITool;ATITool Overclocking Utility;C:\WINDOWS\system32\DRIVERS\ATITool.sys
R1 PCISys;PCISys;C:\WINDOWS\system32\drivers\PCISys.s ys
R1 PMC2AVA;PMC2AVA;C:\WINDOWS\system32\drivers\pmc2av a.sys
R1 ShldDrv;Panda File Shield Driver;C:\WINDOWS\system32\drivers\ShldDrv.sys
R2 CachemanXPService;CachemanXP;C:\PROGRA~1\CACHEM~1\ CachemanXP.exe
R2 cpoint;Panda CPoint Driver;C:\WINDOWS\system32\Drivers\cpoint.sys
R2 PAVDRV;pavdrv;C:\WINDOWS\system32\DRIVERS\pavdrv51 .sys
R2 PavProc;Panda Process Protection Driver;\??\C:\WINDOWS\system32\DRIVERS\PavProc.sys
R2 PMC23880;PMC23880;C:\WINDOWS\system32\drivers\pmc2 vid.sys
R2 PMC2IR;PMC2IR;C:\WINDOWS\system32\drivers\pmc2ir.s ys
R2 PMC2TUNE;PMC2TUNE;C:\WINDOWS\system32\drivers\pmc2 tun.sys
R2 PMC2XBAR;PMC2XBAR;C:\WINDOWS\system32\drivers\pmc2 xbr.sys
R3 AvFlt;Antivirus Filter Driver;C:\WINDOWS\system32\drivers\av5flt.sys
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver;C:\WINDOWS\system32\DRIVERS\fetnd5.sys
R3 gdihook5;gdihook5;C:\WINDOWS\system32\DRIVERS\gdih ook5.sys
R3 PavSRK.sys;PavSRK.sys;\??\C:\WINDOWS\system32\PavS RK.sys
R3 PavTPK.sys;PavTPK.sys;\??\C:\WINDOWS\system32\PavT PK.sys
S3 nm;Network Monitor Driver;C:\WINDOWS\system32\DRIVERS\NMnt.sys
S3 NPF;NetGroup Packet Filter Driver;C:\WINDOWS\system32\drivers\npf.sys
S3 pgfilter;pgfilter;\??\C:\Program Files\PeerGuardian2\pgfilter.sys
Contents of the 'Scheduled Tasks' folder
2006-07-20 19:42:52 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job - C:\Program Files\Apple Software Update\SoftwareUpdate.exe
************************************************** ************************
catchme 0.3.1061 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-08-14 09:52:59
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
************************************************** ************************
Completion time: 2007-08-14 9:57:36 - machine was rebooted
C:\ComboFix-quarantined-files.txt ... 2007-08-14 09:57
--- E O F ---