this is the combofix log
Administrator - 06-12-10 20:34:07.53 Service Pack 2
ComboFix 06.11.27W - Running from: "C:\Documents and Settings\Administrator\Desktop"
((((((((((((((((((((((((((((((( Files Created from 2006-11-10 to 2006-12-10 ))))))))))))))))))))))))))))))))))
2006-12-10 20:08 <DIR> d-------- C:\!KillBox
2006-12-10 20:07 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2006-12-10 20:07 <DIR> d-------- C:\Program Files\Grisoft
2006-12-10 20:01 2,808 --a------ C:\WINDOWS\system32\tmp.reg
2006-12-10 20:00 79,360 --a------ C:\WINDOWS\system32\swxcacls.exe
2006-12-10 20:00 53,248 --a------ C:\WINDOWS\system32\Process.exe
2006-12-10 20:00 51,200 --a------ C:\WINDOWS\system32\dumphive.exe
2006-12-10 20:00 40,960 --a------ C:\WINDOWS\system32\swsc.exe
2006-12-10 20:00 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2006-12-10 20:00 135,168 --a------ C:\WINDOWS\system32\swreg.exe
2006-12-10 19:49 <DIR> dr-h----- C:\Documents and Settings\Administrator\Recent
2006-12-10 13:41 488,144 --a------ C:\HJTsetup-1.exe
2006-12-10 13:41 <DIR> d-------- C:\Program Files\Hijackthis
2006-12-09 09:32 <DIR> d-------- C:\WINDOWS\system32\appmgmt
2006-12-09 09:18 1,497,584 --a------ C:\ccsetup135.exe
2006-12-09 09:18 <DIR> d-------- C:\Program Files\Yahoo!
2006-12-09 09:18 <DIR> d-------- C:\Program Files\CCleaner
2006-12-08 23:38 19,203,280 --a------ C:\nsb-install-8-1-2.exe
2006-12-08 23:19 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\Apple Computer
2006-12-08 23:15 36,808,256 --a------ C:\iTunesSetup.exe
2006-12-03 17:44 <DIR> d-------- C:\WINDOWS\system32\NtmsData
2006-11-30 22:11 26,496 --a------ C:\WINDOWS\system32\drivers\USBSTOR.SYS
2006-11-19 14:18 <DIR> d-------- C:\Program Files\MSXML 4.0
2006-11-19 14:18 <DIR> d-------- C:\3669c79b1ba4c40f4d5b3fb09d8aaa
2006-11-15 19:13 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\AdobeUM
2006-11-15 18:42 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\Adobe
2006-11-13 20:57 325 --a------ C:\WINDOWS\initialize.bat
2006-11-13 20:56 503,808 --a------ C:\WINDOWS\system\sxlrt232.dll
2006-11-10 21:19 <DIR> d-------- C:\Program Files\Bonjour
2006-11-10 21:18 <DIR> d-------- C:\Program Files\QuickTime
2006-11-10 21:18 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Apple Computer
2006-11-10 21:17 64,512 --a------ C:\WINDOWS\system32\PTPITCP.dll
2006-11-10 21:17 307,200 --a------ C:\WINDOWS\system32\KPDPM.dll
2006-11-10 21:17 229,376 --a------ C:\WINDOWS\system32\KPDPMUI.dll
2006-11-10 21:17 <DIR> d-------- C:\WINDOWS\system32\BWKDLogs
2006-11-10 21:16 5,632 --a------ C:\WINDOWS\system32\ptpusb.dll
2006-11-10 21:16 159,232 --a------ C:\WINDOWS\system32\ptpusd.dll
2006-11-10 21:16 <DIR> d-------- C:\Program Files\Common Files\Kodak
2006-11-10 21:15 <DIR> d-------- C:\WINDOWS\system32\color
2006-11-10 21:15 <DIR> d-------- C:\KPCMS
2006-11-10 21:13 <DIR> d-------- C:\Program Files\Kodak
2006-11-10 21:13 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kodak
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2006-12-09 00:12 -------- d---s---- C:\Documents and Settings\Administrator\Application Data\Microsoft
2006-12-08 22:44 -------- d-------- C:\Program Files\Common Files\Command Software
2006-12-06 20:02 -------- d-------- C:\Program Files\Common Files\PestPatrol
2006-11-15 18:32 30128 --a------ C:\Documents and Settings\Administrator\Application Data\GDIPFONTCACHEV1.DAT
2006-11-15 11:22 -------- d-------- C:\Program Files\Viewpoint
2006-11-10 21:16 -------- d-------- C:\Program Files\Common Files
2006-11-09 09:20 -------- d-------- C:\Program Files\AIM
2006-11-09 09:20 -------- d-------- C:\Documents and Settings\Administrator\Application Data\Aim
2006-11-09 09:19 -------- d-------- C:\Program Files\AOD
2006-11-09 09:18 8506408 --a------ C:\Program Files\Install_AIM.exe
2006-11-07 20:49 -------- d-------- C:\Program Files\HP
2006-11-07 20:48 -------- d-------- C:\Program Files\Common Files\Hewlett-Packard
2006-11-07 20:45 -------- d-------- C:\Program Files\Common Files\HP
2006-11-07 20:25 -------- d-------- C:\Program Files\Common Files\Scanner
2006-11-07 20:24 -------- d-------- C:\Documents and Settings\Administrator\Application Data\Netscape
2006-11-07 20:23 -------- d-------- C:\Program Files\Netscape
2006-11-07 20:22 19193560 --a------ C:\Program Files\nsb-install-8-1.exe
2006-11-07 20:10 -------- d-------- C:\Documents and Settings\Administrator\Application Data\Zero Knowledge
2006-11-07 20:07 -------- d-------- C:\Program Files\Zero Knowledge
2006-11-07 20:06 21217952 --a------ C:\freedom_5_adelphia.exe
2006-11-06 15:49 -------- d-------- C:\Program Files\Windows Defender
2006-11-06 15:48 -------- d--h----- C:\Program Files\InstallShield Installation Information
2006-11-06 15:48 -------- d-------- C:\Program Files\CyberLink
2006-11-06 15:48 -------- d-------- C:\Program Files\Common Files\InstallShield
2006-11-06 15:46 -------- d-------- C:\Program Files\Ahead
2006-11-06 15:41 -------- d-------- C:\Program Files\Common Files\Adobe
2006-11-06 15:36 -------- d-------- C:\Program Files\Adobe
2006-11-06 15:12 -------- d-------- C:\Program Files\Internet Explorer
2006-11-06 14:59 -------- d-------- C:\Program Files\Windows Media Player
2006-11-06 14:59 -------- d-------- C:\Program Files\Outlook Express
2006-11-06 14:59 -------- d-------- C:\Program Files\Common Files\System
2006-11-06 14:35 -------- d-------- C:\Program Files\Messenger
2006-11-06 14:01 -------- d-------- C:\Program Files\Microsoft ActiveSync
2006-11-06 14:01 -------- d-------- C:\Program Files\Common Files\Microsoft Shared
2006-11-06 14:00 -------- d-------- C:\Program Files\Microsoft Visual Studio
2006-11-06 14:00 -------- d-------- C:\Program Files\Microsoft Office
2006-11-06 14:00 -------- d-------- C:\Program Files\Common Files\Designer
2006-11-06 13:59 -------- d-------- C:\Program Files\Common Files\L&H
2006-11-06 13:54 -------- d-------- C:\Program Files\Pinnacle
2006-11-06 13:14 -------- d--h----- C:\Program Files\WindowsUpdate
2006-11-06 12:40 -------- d-------- C:\Program Files\Movie Maker
2006-11-06 12:37 -------- d-------- C:\Program Files\Windows NT
2006-11-06 12:37 -------- d-------- C:\Program Files\NetMeeting
2006-11-06 11:56 -------- d-------- C:\Documents and Settings\Administrator\Application Data\Macromedia
2006-11-06 11:33 -------- d--h----- C:\Program Files\Uninstall Information
2006-11-06 11:33 -------- d-------- C:\Documents and Settings\Administrator\Application Data\Identities
2006-11-06 11:27 -------- d-------- C:\Program Files\xerox
2006-11-06 11:27 -------- d-------- C:\Program Files\microsoft frontpage
2006-11-06 11:26 0 -rahs---- C:\MSDOS.SYS
2006-11-06 11:26 0 -rahs---- C:\IO.SYS
2006-11-06 11:26 0 --a------ C:\CONFIG.SYS
2006-11-06 11:26 0 --a------ C:\AUTOEXEC.BAT
2006-11-06 11:25 -------- d-------- C:\Program Files\Online Services
2006-11-06 11:24 -------- d-------- C:\Program Files\Common Files\Services
2006-11-06 11:23 -------- d-------- C:\Program Files\ComPlus Applications
2006-11-06 11:23 -------- d-------- C:\Program Files\Common Files\MSSoap
2006-11-06 11:22 -------- d-------- C:\Program Files\MSN Gaming Zone
2006-11-06 11:22 -------- d-------- C:\Program Files\MSN
2006-11-06 03:08 -------- d-------- C:\Program Files\Common Files\SpeechEngines
2006-11-06 03:08 -------- d-------- C:\Program Files\Common Files\ODBC
2006-11-06 03:07 62 --ahs---- C:\Documents and Settings\Administrator\Application Data\desktop.ini
2006-11-04 14:14 1245696 --a------ C:\WINDOWS\system32\msxml4.dll
2006-10-27 15:09 6049280 --------- C:\WINDOWS\system32\ieframe.dll
2006-10-27 15:09 50688 --------- C:\WINDOWS\system32\msfeedsbs.dll
2006-10-27 15:09 458752 --------- C:\WINDOWS\system32\msfeeds.dll
2006-10-27 15:09 413696 --a------ C:\WINDOWS\system32\vbscript.dll
2006-10-27 15:09 231424 --a------ C:\WINDOWS\system32\webcheck.dll
2006-10-27 15:09 180736 --------- C:\WINDOWS\system32\ieui.dll
2006-10-27 15:09 156160 --a------ C:\WINDOWS\system32\msls31.dll
2006-10-27 02:44 71680 --a------ C:\WINDOWS\system32\admparse.dll
2006-10-27 02:44 55296 --a------ C:\WINDOWS\system32\iesetup.dll
2006-10-27 02:44 54784 --a------ C:\WINDOWS\system32\ie4uinit.exe
2006-10-27 02:44 43008 --a------ C:\WINDOWS\system32\iernonce.dll
2006-10-27 02:44 382976 --a------ C:\WINDOWS\system32\iedkcs32.dll
2006-10-27 02:44 229376 --a------ C:\WINDOWS\system32\ieaksie.dll
2006-10-27 02:44 152064 --a------ C:\WINDOWS\system32\ieakeng.dll
2006-10-27 02:44 13312 --a------ C:\WINDOWS\system32\ieudinit.exe
2006-10-27 02:44 123904 --a------ C:\WINDOWS\system32\advpack.dll
2006-10-27 02:42 161792 --a------ C:\WINDOWS\system32\ieakui.dll
2006-10-22 15:06 208896 --a------ C:\WINDOWS\system32\NVUNINST.EXE
2006-10-22 12:22 888832 --a------ C:\WINDOWS\system32\nvmobls.dll
2006-10-22 12:22 86016 --a------ C:\WINDOWS\system32\nvmctray.dll
2006-10-22 12:22 81920 --a------ C:\WINDOWS\system32\nvwddi.dll
2006-10-22 12:22 794624 --a------ C:\WINDOWS\system32\nvcplui.exe
2006-10-22 12:22 7700480 --a------ C:\WINDOWS\system32\nvcpl.dll
2006-10-22 12:22 581632 --a------ C:\WINDOWS\system32\nvhwvid.dll
2006-10-22 12:22 5644288 --a------ C:\WINDOWS\system32\nvoglnt.dll
2006-10-22 12:22 5619712 --a------ C:\WINDOWS\system32\nvdisps.dll
2006-10-22 12:22 5255168 --a------ C:\WINDOWS\system32\nvdispsr.dll
2006-10-22 12:22 466944 --a------ C:\WINDOWS\system32\nvshell.dll
2006-10-22 12:22 458752 --a------ C:\WINDOWS\system32\nvmccssr.dll
2006-10-22 12:22 4527488 --a------ C:\WINDOWS\system32\nv4_disp.dll
2006-10-22 12:22 45056 --a------ C:\WINDOWS\system32\nvmccsrs.dll
2006-10-22 12:22 442368 --a------ C:\WINDOWS\system32\nvappbar.exe
2006-10-22 12:22 425984 --a------ C:\WINDOWS\system32\keystone.exe
2006-10-22 12:22 3994624 --a------ C:\WINDOWS\system32\drivers\nv4_mini.sys
2006-10-22 12:22 35840 --a------ C:\WINDOWS\system32\nvcodins.dll
2006-10-22 12:22 35840 --a------ C:\WINDOWS\system32\nvcod.dll
2006-10-22 12:22 3203072 --a------ C:\WINDOWS\system32\nvgamesr.dll
2006-10-22 12:22 311296 --a------ C:\WINDOWS\system32\nvexpbar.dll
2006-10-22 12:22 3047424 --a------ C:\WINDOWS\system32\nvgames.dll
2006-10-22 12:22 2973696 --a------ C:\WINDOWS\system32\nvvitvsr.dll
2006-10-22 12:22 2924544 --a------ C:\WINDOWS\system32\nvvitvs.dll
2006-10-22 12:22 286720 --a------ C:\WINDOWS\system32\nvnt4cpl.dll
2006-10-22 12:22 2859008 --a------ C:\WINDOWS\system32\nvmoblsr.dll
2006-10-22 12:22 229376 --a------ C:\WINDOWS\system32\nvmccs.dll
2006-10-22 12:22 212992 --a------ C:\WINDOWS\system32\nvapi.dll
2006-10-22 12:22 208896 --a------ C:\WINDOWS\system32\nvudisp.exe
2006-10-22 12:22 188416 --a------ C:\WINDOWS\system32\nvmccss.dll
2006-10-22 12:22 1732608 --a------ C:\WINDOWS\system32\nvwssr.dll
2006-10-22 12:22 1662976 --a------ C:\WINDOWS\system32\nvwdmcpl.dll
2006-10-22 12:22 1622016 --a------ C:\WINDOWS\system32\nwiz.exe
2006-10-22 12:22 159810 --a------ C:\WINDOWS\system32\nvsvc32.exe
2006-10-22 12:22 147456 --a------ C:\WINDOWS\system32\nvcolor.exe
2006-10-22 12:22 1470464 --a------ C:\WINDOWS\system32\nview.dll
2006-10-22 12:22 1339392 --a------ C:\WINDOWS\system32\nvdspsch.exe
2006-10-22 12:22 1236992 --a------ C:\WINDOWS\system32\nvwss.dll
2006-10-22 12:22 1019904 --a------ C:\WINDOWS\system32\nvwimg.dll
2006-10-22 12:22 1011712 --a------ C:\WINDOWS\system32\nvcpluir.dll
2006-10-17 13:06 78336 --a------ C:\WINDOWS\system32\ieencode.dll
2006-10-17 13:05 40960 --a------ C:\WINDOWS\system32\licmgr10.dll
2006-10-17 13:05 206336 --------- C:\WINDOWS\system32\WinFXDocObj.exe
2006-10-17 13:05 105984 --a------ C:\WINDOWS\system32\url.dll
2006-10-17 13:04 101376 --a------ C:\WINDOWS\system32\occache.dll
2006-10-17 13:03 17408 --a------ C:\WINDOWS\system32\corpol.dll
2006-10-17 12:58 61952 --------- C:\WINDOWS\system32\icardie.dll
2006-10-17 12:58 12288 --------- C:\WINDOWS\system32\msfeedssync.exe
2006-10-17 12:57 36352 --a------ C:\WINDOWS\system32\imgutil.dll
2006-10-17 12:57 266752 --------- C:\WINDOWS\system32\iertutil.dll
2006-10-17 12:56 45568 --a------ C:\WINDOWS\system32\mshta.exe
2006-10-17 12:28 48128 --a------ C:\WINDOWS\system32\mshtmler.dll
2006-10-17 12:27 380928 --------- C:\WINDOWS\system32\ieapfltr.dll
2006-10-13 04:35 65536 --a------ C:\WINDOWS\system32\nwwks.dll
2006-10-13 04:35 64000 --a------ C:\WINDOWS\system32\nwapi32.dll
2006-10-13 04:35 142336 --a------ C:\WINDOWS\system32\nwprovau.dll
2006-10-13 02:23 163584 --a------ C:\WINDOWS\system32\drivers\nwrdr.sys
2006-10-11 08:24 58880 --a------ C:\WINDOWS\system32\pnrpnsp.dll
2006-10-11 08:24 553984 --a------ C:\WINDOWS\system32\p2psvc.dll
2006-10-11 08:24 313344 --a------ C:\WINDOWS\system32\p2pgraph.dll
2006-10-11 08:24 153088 --a------ C:\WINDOWS\system32\p2p.dll
2006-10-11 08:24 116224 --a------ C:\WINDOWS\system32\p2pnetsh.dll
2006-10-11 08:24 104960 --a------ C:\WINDOWS\system32\p2pgasvc.dll
2006-09-12 21:01 1084416 --a------ C:\WINDOWS\system32\msxml3.dll
2006-09-12 14:24 46345 --a------ C:\WINDOWS\NSSetDefaultBrowser.EXE
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\System32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\System32\\NvMcTray.dll,NvTaskbarInit"
"CARPService"="carpserv.exe"
"NeroCheck"="C:\\WINDOWS\\system32\\\\NeroCheck.exe"
"Windows Defender"="\"C:\\Program Files\\Windows Defender\\MSASCui.exe\" -hide"
"Freedom"="C:\\Program Files\\Zero Knowledge\\Freedom\\Freedom.exe"
"HP Software Update"="\"C:\\Program Files\\HP\\HP Software Update\\HPWuSchd.exe\""
"HP Component Manager"="\"C:\\Program Files\\HP\\hpcoretech\\hpcmpmgr.exe\""
"DXDllRegExe"="dxdllreg.exe"
"ViewMgr"="C:\\Program Files\\Viewpoint\\Viewpoint Manager\\ViewMgr.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonceex]
@=""
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"="Microsoft AntiMalware ShellExecuteHook"
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\HP DArC Task #Hewlett-Packard#hp officejet 5500 series#1162961582.job
C:\WINDOWS\tasks\MP Scheduled Scan.job
Completion time: 06-12-10 20:35:28.39
C:\ComboFix.txt ... 06-12-10 20:35