Alright, here they are.
ComboFix 07-10-20.6 - Hollie Zimmerman 2007-10-21 16:52:45.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.1.1252.1.1033.18.71 [GMT -4:00]
Running from: C:\Documents and Settings\Hollie Zimmerman\Desktop\ComboFix.exe
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\check_LSA7.txt
C:\Documents and Settings\All Users\Application Data\Starware349
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\ebaykeyword.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\ebaykeyword.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\ebaykeyword.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\ebaykeyword.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\ebaysearch.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\ebaysearch.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\ebaysearch.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\ebaysearch.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\FindIt.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\FindIt.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\FindItHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\FindItHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\findithotxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\findithotxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\finditxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\finditxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\Highlight.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\Highlight.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\HighlightHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\HighlightHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\highlighthotxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\highlighthotxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\highlightxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\highlightxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\Reference.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\Reference.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\ReferenceHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\ReferenceHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\referencehotxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\referencehotxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\referencexp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\referencexp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\starware_toolbar_icon.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\starware_toolbar_icon.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\Weather.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\Weather.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\weatherhotxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\weatherhotxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\weatherxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\buttons\weatherxp.png
C:\Documents and Settings\All Users\Application Data\Starware349\contexts\error.xml
C:\Documents and Settings\All Users\Application Data\Starware349\contexts\error.xml
C:\Documents and Settings\All Users\Application Data\Starware349\contexts\related.xml
C:\Documents and Settings\All Users\Application Data\Starware349\contexts\related.xml
C:\Documents and Settings\All Users\Application Data\Starware349\contexts\Travel.xml
C:\Documents and Settings\All Users\Application Data\Starware349\contexts\Travel.xml
C:\Documents and Settings\All Users\Application Data\Starware349\images\walertXP.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\images\walertXP.bmp
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\ProductMessagingConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\ProductMessagingConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\ProductMessagingConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\ProductMessagingConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\SimpleUpdateConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\SimpleUpdateConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\SimpleUpdateConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\SimpleUpdateConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\TimerManagerConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\TimerManagerConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\TimerManagerConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware349\SimpleUpdate\TimerManagerConfig.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\errorsafefreeinstallw[1].exe
C:\Documents and Settings\Hollie Zimmerman\Application Data\install.dat
C:\Documents and Settings\Hollie Zimmerman\Application Data\install.dat
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Configurator\Configurator.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Configurator\Configurator.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Configurator\Configurator.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Configurator\Configurator.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\EbayKeyword\EbayKeywordOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\EbayKeyword\EbayKeywordOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\EbayKeyword\EbayKeywordOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\EbayKeyword\EbayKeywordOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\EbaySearch\EbaySearchOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\EbaySearch\EbaySearchOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\EbaySearch\EbaySearchOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\EbaySearch\EbaySearchOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Games\GamesOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Games\GamesOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Games\GamesOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Games\GamesOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Games\images\active\Games0.bmp
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Games\images\active\Games0.bmp
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\HoroscopesMarketingSitePager\HoroscopesMarketingSitePagerOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\HoroscopesMarketingSitePager\HoroscopesMarketingSitePagerOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\HoroscopesMarketingSitePager\HoroscopesMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\HoroscopesMarketingSitePager\HoroscopesMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\HoroscopesMarketingSitePager\images\active\HoroscopesMarketingSitePager0.bmp
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\HoroscopesMarketingSitePager\images\active\HoroscopesMarketingSitePager0.bmp
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Manager\ManagerOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Manager\ManagerOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Movies\MoviesOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Movies\MoviesOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Reference\ReferenceOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Reference\ReferenceOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Reference\ReferenceOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Reference\ReferenceOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\TravelSearch\TravelSearchOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\TravelSearch\TravelSearchOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\TravelSearch\TravelSearchOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\TravelSearch\TravelSearchOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Weather\AlertArchive.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Weather\AlertArchive.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Weather\WeatherOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Weather\WeatherOptions.xml
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Weather\WeatherOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\Application Data\Starware349\Weather\WeatherOptions.xml.backup
C:\Documents and Settings\Hollie Zimmerman\err.log
C:\Documents and Settings\Hollie Zimmerman\Start Menu\Programs\Startup\TA_Start.lnk
C:\Documents and Settings\Hollie Zimmerman\Start Menu\Programs\Startup\ta_start.lnk
C:\Documents and Settings\Hollie Zimmerman\Start Menu\Programs\Startup\think-adz.lnk
C:\Program Files\Common Files\companion wizard
C:\Program Files\Common Files\Companion Wizard\compwiz.exe
C:\Program Files\Common Files\companion wizard\compwiz.exe
C:\Program Files\Common Files\Companion Wizard\WapCHK.dll
C:\Program Files\Common Files\companion wizard\WapCHK.dll
C:\WA7P
C:\WINDOWS\cookies.ini
C:\WINDOWS\system32\abgmhttx.exe
C:\WINDOWS\system32\acacfkpq.dll
C:\WINDOWS\system32\ahtqacbi.exe
C:\WINDOWS\system32\ajdhwrsn.dll
C:\WINDOWS\system32\ajsoxear.exe
C:\WINDOWS\system32\amhjsfvr.exe
C:\WINDOWS\system32\anodiudk.dll
C:\WINDOWS\system32\bauxpbem.dll
C:\WINDOWS\system32\bbdopncc.exe
C:\WINDOWS\SYSTEM32\bdenrqjj.ini
C:\WINDOWS\system32\bgvuurnq.dll
C:\WINDOWS\system32\bhjnxhih.dll
C:\WINDOWS\system32\bhorlbjl.dll
C:\WINDOWS\system32\bmebmbea.exe
C:\WINDOWS\system32\bmrmduxy.dll
C:\WINDOWS\system32\bnkpismm.exe
C:\WINDOWS\system32\bqfnnvbp.dll
C:\WINDOWS\system32\btbcacom.exe
C:\WINDOWS\system32\bugvlpnk.exe
C:\WINDOWS\system32\bwtriale.dll
C:\WINDOWS\SYSTEM32\bxuixgvk.ini
C:\WINDOWS\system32\cathmmca.exe
C:\WINDOWS\system32\cbwxrdfr.dll
C:\WINDOWS\SYSTEM32\cgaknwwg.ini
C:\WINDOWS\system32\cgbagssj.exe
C:\WINDOWS\system32\cgscsnxf.dll
C:\WINDOWS\system32\chgrlvjc.exe
C:\WINDOWS\system32\ciiomrdk.dll
C:\WINDOWS\system32\cksuyxxv.exe
C:\WINDOWS\system32\cmmtcoyh.exe
C:\WINDOWS\system32\coyhpfvo.exe
C:\WINDOWS\system32\cpjgsphl.dll
C:\WINDOWS\system32\csiohbih.exe
C:\WINDOWS\system32\cuikgmxt.exe
C:\WINDOWS\SYSTEM32\cyxrwrvg.ini
C:\WINDOWS\system32\demjuufe.exe
C:\WINDOWS\system32\djimxynm.dll
C:\WINDOWS\system32\djkufuci.dll
C:\WINDOWS\system32\dlsvmvnw.exe
C:\WINDOWS\system32\dnqcypmp.exe
C:\WINDOWS\system32\dpuqmupd.exe
C:\WINDOWS\system32\dvssqsuo.dll
C:\WINDOWS\system32\dwdsrngt.exe
C:\WINDOWS\system32\dyrrgwtj.exe
C:\WINDOWS\system32\efiwnvqk.dll
C:\WINDOWS\system32\ehpnnkms.dll
C:\WINDOWS\system32\ehxhtxws.exe
C:\WINDOWS\SYSTEM32\eprspibi.ini
C:\WINDOWS\system32\ettewsyl.dll
C:\WINDOWS\system32\eufqsmvi.dll
C:\WINDOWS\system32\ewadbjgd.exe
C:\WINDOWS\system32\f02WtR
C:\WINDOWS\system32\f02WtR\f02WtR1065.exe
C:\WINDOWS\SYSTEM32\ffyagfsf.ini
C:\WINDOWS\system32\fgipkbjp.exe
C:\WINDOWS\system32\fsfgayff.dll
C:\WINDOWS\system32\ftsgrrki.dll
C:\WINDOWS\system32\fulbsatc.exe
C:\WINDOWS\SYSTEM32\fxnscsgc.ini
C:\WINDOWS\system32\gebimley.exe
C:\WINDOWS\system32\gebmalhv.exe
C:\WINDOWS\system32\gfclustr.exe
C:\WINDOWS\system32\ghusqsbc.dll
C:\WINDOWS\SYSTEM32\glggajvm.ini
C:\WINDOWS\SYSTEM32\goymdkyu.ini
C:\WINDOWS\system32\gpgldrkt.exe
C:\WINDOWS\system32\gqdmwxpv.exe
C:\WINDOWS\system32\graienxs.dll
C:\WINDOWS\SYSTEM32\gshaquxt.ini
C:\WINDOWS\system32\gteeewmd.exe
C:\WINDOWS\system32\gtrptyba.exe
C:\WINDOWS\system32\gvrwrxyc.dll
C:\WINDOWS\system32\gwwnkagc.dll
C:\WINDOWS\system32\heejfson.dll
C:\WINDOWS\SYSTEM32\hfpjwjlx.ini
C:\WINDOWS\system32\hgepatbq.exe
C:\WINDOWS\system32\hidgnnex.exe
C:\WINDOWS\system32\hmarvgkp.exe
C:\WINDOWS\system32\hmiiwswm.exe
C:\WINDOWS\SYSTEM32\holgbxti.ini
C:\WINDOWS\system32\hskomifi.exe
C:\WINDOWS\system32\ibipsrpe.dll
C:\WINDOWS\SYSTEM32\icufukjd.ini
C:\WINDOWS\system32\idkudhvp.exe
C:\WINDOWS\system32\idyeuxgc.exe
C:\WINDOWS\system32\ifcbjany.exe
C:\WINDOWS\system32\igbetjee.dll
C:\WINDOWS\system32\iguxweum.exe
C:\WINDOWS\system32\ikkrcwsq.dll
C:\WINDOWS\SYSTEM32\ikrrgstf.ini
C:\WINDOWS\system32\imisqwht.dll
C:\WINDOWS\system32\ioovhkfr.dll
C:\WINDOWS\SYSTEM32\itvbusjj.ini
C:\WINDOWS\system32\itxbgloh.dll
C:\WINDOWS\system32\jabqewku.dll
C:\WINDOWS\system32\jacmupsw.dll
C:\WINDOWS\system32\jbplkaue.exe
C:\WINDOWS\system32\jeaxjpjm.dll
C:\WINDOWS\system32\jebdgdjc.exe
C:\WINDOWS\system32\jihhrfgn.dll
C:\WINDOWS\system32\jjqrnedb.dll
C:\WINDOWS\system32\jjsubvti.dll
C:\WINDOWS\system32\jnkdjxee.exe
C:\WINDOWS\system32\joloxiwj.dll
C:\WINDOWS\system32\jprogvag.dll
C:\WINDOWS\system32\jvqgqadf.exe
C:\WINDOWS\SYSTEM32\jwixoloj.ini
C:\WINDOWS\system32\jwplijft.dll
C:\WINDOWS\system32\jypcvqig.exe
C:\WINDOWS\system32\kgvoeyxn.dll
C:\WINDOWS\system32\kmwnutun.dll
C:\WINDOWS\system32\kqvlqnhx.exe
C:\WINDOWS\SYSTEM32\kqvnwife.ini
C:\WINDOWS\system32\kvgxiuxb.dll
C:\WINDOWS\SYSTEM32\kyjdvpmn.ini
C:\WINDOWS\SYSTEM32\kyoiommx.ini
C:\WINDOWS\system32\ldhtmxnx.dll
C:\WINDOWS\system32\leoglvbi.exe
C:\WINDOWS\system32\lgpecqie.dll
C:\WINDOWS\SYSTEM32\lmugjecq.ini
C:\WINDOWS\system32\lnntbacd.exe
C:\WINDOWS\system32\lnrecmpn.dll
C:\WINDOWS\system32\lowpwrkt.dll
C:\WINDOWS\system32\lpkeisat.exe
C:\WINDOWS\system32\lrvuakjr.dll
C:\WINDOWS\system32\lttsptcv.exe
C:\WINDOWS\SYSTEM32\lwevaifr.ini
C:\WINDOWS\SYSTEM32\mebpxuab.ini
C:\WINDOWS\system32\mirsmuvo.dll
C:\WINDOWS\system32\mjnbovnu.exe
C:\WINDOWS\SYSTEM32\mjpjxaej.ini
C:\WINDOWS\SYSTEM32\mnyxmijd.ini
C:\WINDOWS\system32\mpgxcels.dll
C:\WINDOWS\system32\mpobqfrr.exe
C:\WINDOWS\SYSTEM32\mrcoaylu.ini
C:\WINDOWS\SYSTEM32\mrfkmjpo.ini
C:\WINDOWS\system32\mrwnagyq.dll
C:\WINDOWS\system32\msnav32.ax
C:\WINDOWS\system32\mvjagglg.dll
C:\WINDOWS\system32\mygwyauv.exe
C:\WINDOWS\system32\naixcobx.exe
C:\WINDOWS\system32\nbmrhpwo.dll
C:\WINDOWS\system32\ncvlnmjl.dll
C:\WINDOWS\SYSTEM32\ngfrhhij.ini
C:\WINDOWS\system32\nmpvdjyk.dll
C:\WINDOWS\SYSTEM32\npmcernl.ini
C:\WINDOWS\system32\nqesontc.exe
C:\WINDOWS\system32\nscceinl.exe
C:\WINDOWS\system32\nvijinrw.exe
C:\WINDOWS\system32\nvsdrjbp.exe
C:\WINDOWS\system32\oeydeepe.exe
C:\WINDOWS\system32\ojowfylf.exe
C:\WINDOWS\SYSTEM32\onltmlix.ini
C:\WINDOWS\system32\opjmkfrm.dll
C:\WINDOWS\system32\orjnuums.dll
C:\WINDOWS\system32\otakoslc.exe
C:\WINDOWS\system32\otkytmfc.dll
C:\WINDOWS\system32\ovmftraq.exe
C:\WINDOWS\SYSTEM32\owphrmbn.ini
C:\WINDOWS\SYSTEM32\pbvnnfqb.ini
C:\WINDOWS\SYSTEM32\pdakgwhs.ini
C:\WINDOWS\system32\pmkhbbvf.exe
C:\WINDOWS\system32\porlvgsr.exe
C:\WINDOWS\system32\psumdqur.dll
C:\WINDOWS\system32\psymevrw.exe
C:\WINDOWS\system32\pwdwtotx.dll
C:\WINDOWS\system32\pyiwehrn.exe
C:\WINDOWS\system32\pylrdjtq.exe
C:\WINDOWS\system32\qcejguml.dll
C:\WINDOWS\SYSTEM32\qnruuvgb.ini
C:\WINDOWS\system32\qsldpysv.exe
C:\WINDOWS\system32\quauqwcu.dll
C:\WINDOWS\system32\rclvjscs.exe
C:\WINDOWS\system32\regonyrr.dll
C:\WINDOWS\SYSTEM32\rfdrxwbc.ini
C:\WINDOWS\system32\rfiavewl.dll
C:\WINDOWS\system32\rhlibdod.exe
C:\WINDOWS\system32\rhpwhahu.exe
C:\WINDOWS\system32\rkjsdgsv.exe
C:\WINDOWS\SYSTEM32\rrynoger.ini
C:\WINDOWS\system32\rsecbiyh.dll
C:\WINDOWS\SYSTEM32\ruqdmusp.ini
C:\WINDOWS\system32\rvfrlfmc.dll
C:\WINDOWS\system32\ryyadsmw.exe
C:\WINDOWS\system32\sasdgqeq.exe
C:\WINDOWS\system32\shlvxsae.dll
C:\WINDOWS\system32\shwgkadp.dll
C:\WINDOWS\system32\sjvqhqsb.exe
C:\WINDOWS\system32\skeeskng.exe
C:\WINDOWS\system32\slbcecmb.dll
C:\WINDOWS\system32\slxjyvxx.dll
C:\WINDOWS\system32\srkkswxr.exe
C:\WINDOWS\system32\stera.job
C:\WINDOWS\system32\stera.log
C:\WINDOWS\system32\swinrmds.exe
C:\WINDOWS\system32\sxlcobhh.exe
C:\WINDOWS\system32\tdbhhppu.exe
C:\WINDOWS\system32\techjlkt.exe
C:\WINDOWS\system32\tgceptsq.exe
C:\WINDOWS\system32\tjujatvx.exe
C:\WINDOWS\system32\tlvexnoa.exe
C:\WINDOWS\system32\tosfdimc.dll
C:\WINDOWS\system32\tpmvjrov.dll
C:\WINDOWS\system32\tsgxwsyp.dll
C:\WINDOWS\system32\tuuxvsir.exe
C:\WINDOWS\system32\txsxquce.dll
C:\WINDOWS\system32\txuqahsg.dll
C:\WINDOWS\SYSTEM32\tyjwumiy.ini
C:\WINDOWS\system32\tyyikrpf.dll
C:\WINDOWS\system32\ucagmrky.dll
C:\WINDOWS\system32\uiykgwwm.exe
C:\WINDOWS\system32\ukhmjmya.exe
C:\WINDOWS\system32\uklqqbrg.exe
C:\WINDOWS\SYSTEM32\ukweqbaj.ini
C:\WINDOWS\system32\ulcnrpbd.exe
C:\WINDOWS\system32\ulyaocrm.dll
C:\WINDOWS\system32\umjxrnrr.exe
C:\WINDOWS\system32\unycqhtl.exe
C:\WINDOWS\system32\uowksuyx.exe
C:\WINDOWS\system32\uptvcqmt.exe
C:\WINDOWS\system32\uqemxlfc.exe
C:\WINDOWS\system32\uspxapse.exe
C:\WINDOWS\system32\uykdmyog.dll
C:\WINDOWS\system32\V1
C:\WINDOWS\system32\vbgyhsah.exe
C:\WINDOWS\system32\vebncgsq.exe
C:\WINDOWS\system32\vjbjeiyt.exe
C:\WINDOWS\system32\vnyuyofm.dll
C:\WINDOWS\SYSTEM32\vorjvmpt.ini
C:\WINDOWS\system32\vpgfkoao.exe
C:\WINDOWS\system32\vsrooqog.exe
C:\WINDOWS\system32\vwpcydqx.exe
C:\WINDOWS\system32\vxtdrucy.exe
C:\WINDOWS\system32\wcclobqx.dll
C:\WINDOWS\system32\wcstpgux.exe
C:\WINDOWS\system32\whawlhma.dll
C:\WINDOWS\system32\wiinbltn.exe
C:\WINDOWS\system32\winpfz32.sys
C:\WINDOWS\system32\wjujrfki.exe
C:\WINDOWS\system32\wjyhrwbv.exe
C:\WINDOWS\system32\wpeppivd.dll
C:\WINDOWS\system32\wpiuguds.exe
C:\WINDOWS\system32\wqdulufu.dll
C:\WINDOWS\system32\wqtyeyeu.dll
C:\WINDOWS\SYSTEM32\wspumcaj.ini
C:\WINDOWS\system32\wuqgxaju.dll
C:\WINDOWS\system32\wxfmyanx.dll
C:\WINDOWS\system32\xbjdfuqe.dll
C:\WINDOWS\system32\xidyrvru.exe
C:\WINDOWS\system32\xilmtlno.dll
C:\WINDOWS\SYSTEM32\xjvhhqoy.ini
C:\WINDOWS\system32\xljwjpfh.dll
C:\WINDOWS\system32\xmmoioyk.dll
C:\WINDOWS\system32\xouvukkf.exe
C:\WINDOWS\system32\xoxnypwn.dll
C:\WINDOWS\system32\xwjnepff.exe
C:\WINDOWS\system32\ygqdttay.dll
C:\WINDOWS\system32\yimuwjyt.dll
C:\WINDOWS\system32\yioflcjl.exe
C:\WINDOWS\system32\ynjjiqjb.dll
C:\WINDOWS\system32\yoqhhvjx.dll
C:\WINDOWS\system32\ypsxuqvs.dll
C:\WINDOWS\system32\yqtrknyg.dll
C:\WINDOWS\system32\yruhmsjk.dll
C:\WINDOWS\system32\yxbnhubr.exe
C:\WINDOWS\SYSTEM32\yxudmrmb.ini
C:\WINDOWS\system32\yycjbivs.exe
C:\WINDOWS\system32\zxdnt3d.cfg
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\LEGACY_DOMAINSERVICE
-------\LEGACY_VSPF
-------\LEGACY_VSPF_HK
-------\DomainService
((((((((((((((((((((((((( Files Created from 2007-09-21 to 2007-10-21 )))))))))))))))))))))))))))))))
.
2007-10-21 17:02 52,763 --a------ C:\WINDOWS\SYSTEM32\dwdsrngt.exe
2007-10-21 16:51 51,200 --a------ C:\WINDOWS\NirCmd.exe
2007-10-21 16:13 <DIR> d-------- C:\VundoFix Backups
2007-10-21 15:40 <DIR> d-------- C:\FONTS
2007-10-18 23:51 4,096 --a------ C:\WINDOWS\d3dx.dat
2007-10-18 23:50 <DIR> d-------- C:\Program Files\PlayFirst
2007-10-15 14:39 <DIR> d-------- C:\Program Files\Fish Tycoon
2007-10-12 22:57 141,612 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\dump_wmimmc.sys
2007-10-12 22:56 4,682 --a------ C:\WINDOWS\SYSTEM32\npptNT2.sys
2007-10-07 23:21 <DIR> d-------- C:\Documents and Settings\Hollie Zimmerman\Application Data\Magic Academy
2007-10-03 16:41 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2007-10-02 12:25 <DIR> d-------- C:\Program Files\Plant Tycoon
2007-09-30 15:09 28,172 --a------ C:\WINDOWS\SYSTEM32\swinrmdt.exe
2007-09-23 20:58 <DIR> d-------- C:\Program Files\Ancient Mosaic
2007-09-23 16:57 <DIR> d-------- C:\Documents and Settings\Hollie Zimmerman\Application Data\Jane s Hotel
2007-09-22 20:28 <DIR> d-------- C:\Program Files\The Magicians Handbook - Cursed Valley
2007-09-22 18:02 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\HipSoft
2007-09-21 21:24 <DIR> d-------- C:\Documents and Settings\Hollie Zimmerman\Application Data\Move Networks
2007-09-21 18:24 <DIR> d-------- C:\Program Files\Lavasoft
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-10-19 03:50 --------- d-----w C:\Documents and Settings\Hollie Zimmerman\Application Data\PlayFirst
2007-10-19 03:11 --------- d-----w C:\Documents and Settings\All Users\Application Data\PlayFirst
2007-10-19 01:02 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-10-19 00:25 5,864 ----a-w C:\Program Files\install.log
2007-10-08 03:18 --------- d-----w C:\Program Files\Shockwave.com
2007-10-06 18:40 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2007-10-03 22:58 --------- d-----w C:\Program Files\QuickTime
2007-10-03 22:58 --------- d-----w C:\Program Files\Apoint
2007-10-03 20:32 --------- d-----w C:\Program Files\America Online 9.0
2007-10-03 20:25 --------- d-----w C:\Program Files\Common Files\Motive
2007-10-03 20:17 --------- d-----w C:\Program Files\The Adventure Company
2007-09-22 23:17 --------- d-----w C:\Documents and Settings\All Users\Application Data\Sandlot Games
2007-09-21 02:16 --------- d-----w C:\Documents and Settings\All Users\Application Data\Lavasoft
2007-09-20 17:51 --------- d-----w C:\Documents and Settings\All Users\Application Data\Firefly Studios
2007-09-18 03:50 --------- d-----w C:\Documents and Settings\Hollie Zimmerman\Application Data\ForgottenRiddles
2007-09-14 13:25 --------- d--h--w C:\Program Files\Zero G Registry
2007-09-07 22:02 --------- d-----w C:\Documents and Settings\All Users\Application Data\Aveyond I
2007-08-28 19:35 --------- d-----w C:\Documents and Settings\All Users\Application Data\BigFishGamesCache
2007-08-28 19:30 --------- d-----w C:\Program Files\bfgclient
2007-02-24 01:50 21,822,168 ----a-w C:\Program Files\AdbeRdr80_en_US.exe
.
((((((((((((((((((((((((((((((((((((((((((((( AWF ))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
----a-w 40,048 2007-05-11 07:06:32 C:\Program Files\Adobe\Reader 8.0\Reader\bak\Reader_sl.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
-c--a-w 155,648 2004-02-02 20:32:16 C:\Program Files\Apoint\bak\Apoint.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\Apoint\Apoint.exe
-c--a-w 110,592 2003-08-19 06:01:00 C:\Program Files\Common Files\Sonic\Update Manager\bak\sgtray.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
-c--a-w 53,248 2004-04-11 16:43:44 C:\Program Files\CyberLink\PowerDVD\bak\DVDLauncher.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
-c--a-w 290,816 2004-04-12 01:15:14 C:\Program Files\Dell\Media Experience\bak\PCMService.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\Dell\Media Experience\PCMService.exe
----a-w 49,152 2004-02-12 17:38:56 C:\Program Files\HP\HP Software Update\bak\HPWuSchd2.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
----a-w 241,664 2004-05-12 19:18:56 C:\Program Files\HP\hpcoretech\bak\hpcmpmgr.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
-c--a-w 32,881 2003-11-19 22:48:14 C:\Program Files\Java\j2re1.4.2_03\bin\bak\jusched.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
-c--a-w 303,104 2005-09-22 23:29:08 C:\Program Files\McAfee.com\Agent\bak\mcagent.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\McAfee.com\Agent\mcagent.exe
-c--a-w 135,168 2003-09-02 20:41:38 C:\Program Files\McAfee.com\Agent\bak\mcregwiz.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\McAfee.com\Agent\mcregwiz.exe
-c--a-w 212,992 2006-01-11 17:05:42 C:\Program Files\McAfee.com\Agent\bak\mcupdate.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\McAfee.com\Agent\mcupdate.exe
-c--a-w 122,880 2003-08-08 23:02:10 C:\Program Files\McAfee.com\VSO\bak\mcmnhdlr.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\McAfee.com\VSO\mcmnhdlr.exe
-c--a-w 53,248 2004-04-19 19:45:52 C:\Program Files\MUSICMATCH\Musicmatch Jukebox\bak\mmtask.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mmtask.exe
-c--a-w 131,072 2004-04-19 19:45:52 C:\Program Files\MUSICMATCH\Musicmatch Jukebox\bak\mm_tray.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe
-c--a-w 77,824 2004-07-14 15:19:54 C:\Program Files\QuickTime\bak\qttask.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\QuickTime\qttask.exe
-c--a-w 26,112 2004-07-14 15:19:25 C:\Program Files\Real\RealPlayer\bak\RealPlay.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\Real\RealPlayer\RealPlay.exe
----a-w 380,928 2003-12-10 09:52:40 C:\Program Files\SBC LightSpeed Self Support Tool\SmartBridge\bak\MotiveSB.exe
----a-w 28,172 2007-10-03 22:56:26 C:\Program Files\SBC LightSpeed Self Support Tool\SmartBridge\MotiveSB.exe
-c--a-w 249,856 2004-05-12 21:22:52 C:\WINDOWS\SYSTEM32\bak\keyhook.exe
----a-w 192,578 2007-09-30 19:09:59 C:\WINDOWS\SYSTEM32\bak\swinrmdt.exe
----a-w 28,172 2007-10-03 22:56:26 C:\WINDOWS\SYSTEM32\swinrmdt.exe
-c--a-w 122,933 2004-03-15 06:04:00 C:\WINDOWS\SYSTEM32\dla\bak\tfswctrl.exe
----a-w 28,172 2007-10-03 22:56:26 C:\WINDOWS\SYSTEM32\dla\tfswctrl.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{41252B78-A95E-4422-AAD2-DBD92BFDB661}]
C:\WINDOWS\System32\ljjgh.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"@"="" []
"Apoint"="C:\Program Files\Apoint\Apoint.exe" [2007-10-03 18:56]
"AGRSMMSG"="AGRSMMSG.exe" [2003-11-19 16:41 C:\WINDOWS\AGRSMMSG.exe]
"SunJavaUpdateSched"="C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe" [2007-10-03 18:56]
"dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [2007-10-03 18:56]
"UpdateManager"="C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" [2007-10-03 18:56]
"PCMService"="C:\Program Files\Dell\Media Experience\PCMService.exe" [2007-10-03 18:56]
"DVDLauncher"="C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" [2007-10-03 18:56]
"RealTray"="C:\Program Files\Real\RealPlayer\RealPlay.exe" [2007-10-03 18:56]
"QuickTime Task"="C:\Program Files\QuickTime\bak\qttask.exe" [2004-07-14 11:19]
"VSOCheckTask"="c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" [2007-10-03 18:56]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [2007-10-03 18:56]
"MCUpdateExe"="C:\PROGRA~1\mcafee.com\agent\bak\mcupdate.exe" [2006-01-11 13:05]
"mmtask"="c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe" [2007-10-03 18:56]
"MMTray"="C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe" [2007-10-03 18:56]
"McRegWiz"="C:\PROGRA~1\mcafee.com\agent\mcregwiz.exe" [2007-10-03 18:56]
"Motive SmartBridge"="C:\PROGRA~1\SBCLIG~1\SMARTB~1\MotiveSB.exe" [2007-10-03 18:56]
"SiSPower"="SiSPower.dll" [2006-03-09 03:04 C:\WINDOWS\SYSTEM32\SiSPower.dll]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2007-10-03 18:56]
"HP Component Manager"="C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" [2007-10-03 18:56]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-03 18:56]
"{46-6A-AB-B3-ZN}"="c:\windows\system32\dwdsrngt.exe" [2007-10-21 17:02]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"@"="" []
"MSMSGS"="C:\Program Files\Messenger\MSMSGS.exe" [2004-11-15 16:18]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
America Online 9.0 Tray Icon.lnk - C:\Program Files\America Online 9.0\aoltray.exe [2004-07-14 11:18:40]
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2004-05-28 22:31:38]
HP Image Zone Fast Start.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe [2004-05-28 23:06:36]
SBC Self Support Tool.lnk - C:\Program Files\SBC LightSpeed Self Support Tool\bin\matcli.exe [2007-01-29 16:37:06]
Utility Tray.lnk - C:\WINDOWS\SYSTEM32\sistray.exe [2007-07-25 13:50:13]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"appinit_dlls"=
S3 NaiFiltr;NaiFiltr;C:\WINDOWS\System32\DRIVERS\NaiFiltr.sys
.
**************************************************************************
catchme 0.3.1232 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2007-10-21 17:02:03
Windows 5.1.2600 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2007-10-21 17:07:39 - machine was rebooted
.
--- E O F ---