I disabled Tea timer and AntiVirus then rebooted, then created the CFScript file and dragged it over ComboFix. It scanned and produced a log file without requiring restart. I also created a new HijackThis log then reenabled my local protections. Here are the logs:
ComboFix 08-11-19.08 - user 2008-11-24 10:36:28.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.666 [GMT -5:00]
Running from: c:\documents and settings\user\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\user\Desktop\CFScript.txt
* Created a new restore point
FILE ::
c:\windows\system32\cgybkeyqhsxqe.dll-uninst.exe
c:\windows\system32\dxxntgbdovynrgzcx.exe
c:\windows\system32\fayqhusytjjvhqzbr.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\user\Application Data\LimeWire
c:\documents and settings\user\Application Data\LimeWire\.NetworkShare\LimeWireWin4.16.6.exe
c:\documents and settings\user\Application Data\LimeWire\49splashpro.png
c:\documents and settings\user\Application Data\LimeWire\createtimes.cache
c:\documents and settings\user\Application Data\LimeWire\fileurns.bak
c:\documents and settings\user\Application Data\LimeWire\fileurns.cache
c:\documents and settings\user\Application Data\LimeWire\filters.props
c:\documents and settings\user\Application Data\LimeWire\gnutella.net
c:\documents and settings\user\Application Data\LimeWire\installation.props
c:\documents and settings\user\Application Data\LimeWire\library.dat
c:\documents and settings\user\Application Data\LimeWire\limewire.props
c:\documents and settings\user\Application Data\LimeWire\pub1.key
c:\documents and settings\user\Application Data\LimeWire\public.key
c:\documents and settings\user\Application Data\LimeWire\questions.props
c:\documents and settings\user\Application Data\LimeWire\simpp.xml
c:\documents and settings\user\Application Data\LimeWire\spam.dat
c:\documents and settings\user\Application Data\LimeWire\tables.props
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme.lwtp
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\
01_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\
02_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\
03_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\
04_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\
05_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\chat.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\dir_closed.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\dir_open.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\forward_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\forward_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\kill.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\kill_on.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\lime.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\logo.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\notsearching.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\pause_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\pause_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\play_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\play_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\question.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\rewind_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\rewind_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\searching.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\splash.png
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\stop_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\stop_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\theme.txt
c:\documents and settings\user\Application Data\LimeWire\themes\black_theme\warning.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme.lwtp
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\
01_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\
02_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\
03_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\
04_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\
05_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\chat.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\dir_closed.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\dir_open.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\forward_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\forward_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\kill.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\logo.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\notsearching.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\pause_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\pause_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\play_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\play_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\question.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\rewind_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\rewind_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\search.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\searching.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\splash.png
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\stop_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\stop_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\theme.txt
c:\documents and settings\user\Application Data\LimeWire\themes\classic_theme\warning.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme.lwtp
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\
01_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\
02_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\
03_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\
04_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\
05_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\chat.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\dir_closed.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\dir_open.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\forward_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\forward_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\kill.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\kill_on.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\lime.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\logo.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\notsearching.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\pause_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\pause_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\play_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\play_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\question.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\rewind_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\rewind_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\searching.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\splash.png
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\stop_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\stop_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\theme.txt
c:\documents and settings\user\Application Data\LimeWire\themes\limewire_theme\warning.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme.lwtp
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\
01_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\
02_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\
03_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\
04_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\
05_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\chat.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\dir_closed.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\dir_open.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\forward_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\forward_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\kill.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\kill_on.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\lime.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\logo.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\notsearching.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\pause_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\pause_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\play_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\play_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\question.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\rewind_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\rewind_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\searching.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\splash.png
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\stop_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\stop_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\theme.txt
c:\documents and settings\user\Application Data\LimeWire\themes\limewirePro_theme\warning.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme.lwtp
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\
01_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\
02_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\
03_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\
04_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\
05_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\chat.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\forward_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\forward_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\kill.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\kill_on.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\logo.png
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\notsearching.png
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\pause_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\pause_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\play_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\play_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\question.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\rewind_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\rewind_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\searching.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\splash.png
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\stop_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\stop_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\theme.txt
c:\documents and settings\user\Application Data\LimeWire\themes\other_theme\warning.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme.lwtp
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\
01_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\
02_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\
03_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\
04_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\
05_star.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\chat.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\forward_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\forward_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\kill.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\kill_on.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\logo.png
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\notsearching.png
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\pause_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\pause_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\play_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\play_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\question.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\rewind_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\rewind_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\searching.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\splash.png
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\stop_dn.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\stop_up.gif
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\theme.txt
c:\documents and settings\user\Application Data\LimeWire\themes\windows_theme\warning.gif
c:\documents and settings\user\Application Data\LimeWire\ttree.cache
c:\documents and settings\user\Application Data\LimeWire\update.xml
c:\documents and settings\user\Application Data\LimeWire\version.key
c:\documents and settings\user\Application Data\LimeWire\version.xml
c:\documents and settings\user\Application Data\LimeWire\xml\data\audio.sxml
c:\documents and settings\user\Application Data\LimeWire\xml\data\delete_me
c:\documents and settings\user\Application Data\LimeWire\xml\data\video.sxml
c:\documents and settings\user\Application Data\LimeWire\xml\misc\application.gif
c:\documents and settings\user\Application Data\LimeWire\xml\misc\audio.gif
c:\documents and settings\user\Application Data\LimeWire\xml\misc\document.gif
c:\documents and settings\user\Application Data\LimeWire\xml\misc\image.gif
c:\documents and settings\user\Application Data\LimeWire\xml\misc\video.gif
c:\documents and settings\user\Application Data\LimeWire\xml\schemas\application.xsd
c:\documents and settings\user\Application Data\LimeWire\xml\schemas\audio.xsd
c:\documents and settings\user\Application Data\LimeWire\xml\schemas\document.xsd
c:\documents and settings\user\Application Data\LimeWire\xml\schemas\image.xsd
c:\documents and settings\user\Application Data\LimeWire\xml\schemas\video.xsd
c:\documents and settings\user\Application Data\uTorrent
c:\documents and settings\user\Application Data\uTorrent\Agent.Cody.Banks.2003.Swesub.DVDRip.Xvid-monica112.torrent
c:\documents and settings\user\Application Data\uTorrent\Batman - The Killing Joke.cbr.torrent
c:\documents and settings\user\Application Data\uTorrent\Batman Begins - Soundtrack [2005].rar.torrent
c:\documents and settings\user\Application Data\uTorrent\batman_the_killing_joke_deluxe_edition_marsh07.rar.torrent
c:\documents and settings\user\Application Data\uTorrent\Blade Runner The final cut KLAXXON.torrent
c:\documents and settings\user\Application Data\uTorrent\Boiler.Room.2000.iNT.DVDRip.XViD-EXT.torrent
c:\documents and settings\user\Application Data\uTorrent\Dead Poets Society.avi.torrent
c:\documents and settings\user\Application Data\uTorrent\dht.dat
c:\documents and settings\user\Application Data\uTorrent\dht.dat.old
c:\documents and settings\user\Application Data\uTorrent\Ennio Morricone.torrent
c:\documents and settings\user\Application Data\uTorrent\Entourage S03E19 HDTV XviD-LOL.torrent
c:\documents and settings\user\Application Data\uTorrent\GReYs aNaToMy (S04).torrent
c:\documents and settings\user\Application Data\uTorrent\Harry.Potter.And.The.Order.Of.The.Phoenix[2007]DvDrip[Eng]-aXXo.torrent
c:\documents and settings\user\Application Data\uTorrent\How_I_Met_Your_Mother.S03E18.Rebound_Bro.HDTV_XviD-FoV.[MFD].avi.torrent
c:\documents and settings\user\Application Data\uTorrent\LOST - Complete Season 3 (x264-AAC-mkv).torrent
c:\documents and settings\user\Application Data\uTorrent\Lost 4x06 The Other Woman PROPER HDTV XviD-FoV [btarena.org].avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Lost.S04E01.HDTV.XviD-XOR.avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Lost.S04E02.HDTV.XviD-2HD.avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Lost.S04E03.HDTV.XviD-XOR.avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Lost.S04E04.REPACK.HDTV.XviD-0TV.torrent
c:\documents and settings\user\Application Data\uTorrent\Lost.S04E05.HDTV[
Www.Yestorrent.Com].torrent
c:\documents and settings\user\Application Data\uTorrent\Lost.S04E06.HDTV.XviD-2HD [btarena.org].avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Lost.S04E06.The.Other.Woman.PROPER.HDTV.XviD-FoV.[
www.torrentfive.com].torrent
c:\documents and settings\user\Application Data\uTorrent\Lost.S04E13-E14.HDTV.XviD-2HD.avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Lost_Season02_Episodes_01-24.1.torrent
c:\documents and settings\user\Application Data\uTorrent\Lost_Season02_Episodes_01-24.2.torrent
c:\documents and settings\user\Application Data\uTorrent\Lost_Season02_Episodes_01-24.torrent
c:\documents and settings\user\Application Data\uTorrent\Marvel.Ultimate.Alliance.[XBOX][ProjectX][BlackDivX.org].torrent
c:\documents and settings\user\Application Data\uTorrent\Marvel.Ultimate.Alliance.PROPER-RELOADED.1.torrent
c:\documents and settings\user\Application Data\uTorrent\Marvel.Ultimate.Alliance.PROPER-RELOADED.torrent
c:\documents and settings\user\Application Data\uTorrent\Microsoft Office 2007 Complete Version + CD Key.torrent
c:\documents and settings\user\Application Data\uTorrent\Microsoft Office Enterprise 2007 (VOXIGEN@mininova.org).torrent
c:\documents and settings\user\Application Data\uTorrent\MILF Hunter - Ryan(FULL).asf.torrent
c:\documents and settings\user\Application Data\uTorrent\Moby.rar.torrent
c:\documents and settings\user\Application Data\uTorrent\MS.Office.2007.Enterprise.Complete.XP.Vista-HeartBug.torrent
c:\documents and settings\user\Application Data\uTorrent\NBA_Live_08-HATRED.torrent
c:\documents and settings\user\Application Data\uTorrent\No.Country.For.Old.Men.2007.DvDRip.Eng-FxM.torrent
c:\documents and settings\user\Application Data\uTorrent\Reggae Gold 2007.
www.lokotorrents.com.torrent
c:\documents and settings\user\Application Data\uTorrent\resume.dat
c:\documents and settings\user\Application Data\uTorrent\resume.dat.old
c:\documents and settings\user\Application Data\uTorrent\rss.dat
c:\documents and settings\user\Application Data\uTorrent\rss.dat.old
c:\documents and settings\user\Application Data\uTorrent\Season 2.1.torrent
c:\documents and settings\user\Application Data\uTorrent\Season 2.torrent
c:\documents and settings\user\Application Data\uTorrent\settings.dat
c:\documents and settings\user\Application Data\uTorrent\settings.dat.old
c:\documents and settings\user\Application Data\uTorrent\Smallville.S07E09.PROPER.HDTV.XviD-XOR.avi.torrent
c:\documents and settings\user\Application Data\uTorrent\smallville.s07e10.real.proper.hdtv.xvid-notv.[VTV].avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Smallville.S07E11.REPACK.PROPER.HDTV.XviD-2HD.avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Smallville.S07E12.PROPER.HDTV.XviD-XOR.torrent
c:\documents and settings\user\Application Data\uTorrent\Smallville.S07E13.HDTV.XviD-NoTV.avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Smallville.S07E14.HDTV.XviD-NoTV.avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Smallville.S07E15.HDTV.XviD-XOR.avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Softmod.Installer.Deluxe.v5.0.Xbox-Hq.torrent
c:\documents and settings\user\Application Data\uTorrent\Softmod.Installer.Deluxe.v5.01.Xbox-Hq.torrent
c:\documents and settings\user\Application Data\uTorrent\Soul_Calibur_II_USA_XBOX-ProjectX.torrent
c:\documents and settings\user\Application Data\uTorrent\System.Shock.2.PC.Game.[FROSTY].iso.torrent
c:\documents and settings\user\Application Data\uTorrent\The Big Bang Theory - Season 1.torrent
c:\documents and settings\user\Application Data\uTorrent\The Notorious B.I.G. Discography.torrent
c:\documents and settings\user\Application Data\uTorrent\The Office Season 3 US.torrent
c:\documents and settings\user\Application Data\uTorrent\The.Namesake.2006.PROPER.DVDRip.XviD-AFO.torrent
c:\documents and settings\user\Application Data\uTorrent\The_Game_-_L.A.X._[Explicit_Retail_08]-FOZZYDABEAR.torrent
c:\documents and settings\user\Application Data\uTorrent\There.Will.Be.Blood.REPACK.DVDSCR.XViD-mVs.torrent
c:\documents and settings\user\Application Data\uTorrent\Top Gear - [12x01] - 2008.11.02 [RiVER].avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Top Gear - [12x02] - 2008.11.09 [AFFiNiTY].avi.torrent
c:\documents and settings\user\Application Data\uTorrent\Top Gear - [12x03] - 2008.11.16 [RiVER].avi.torrent
c:\documents and settings\user\Application Data\uTorrent\UT2004.zip.torrent
c:\documents and settings\user\Application Data\uTorrent\utorrent.lng
c:\documents and settings\user\Application Data\uTorrent\Warcraft III Reign of Chaos, The Frozen Throne + Update Patch War3TFT_121b_English +CD Key.torrent
c:\documents and settings\user\Application Data\uTorrent\Watchmen - complete.rar.torrent
c:\documents and settings\user\Application Data\uTorrent\Wedding Daze[2008]DvDrip[Eng]-FXG.torrent
c:\documents and settings\user\Application Data\uTorrent\XBOX Krayzie Ndure SOFTMOD Pack.torrent
c:\documents and settings\user\Application Data\uTorrent\Y - The Last Man.torrent
c:\program files\LimeWire
c:\program files\LimeWire\log.txt
c:\temp\PRE45
c:\temp\PRE45\pG8.log
c:\windows\system32\dxxntgbdovynrgzcx.exe
c:\windows\system32\emi
c:\windows\system32\ES
c:\windows\system32\fayqhusytjjvhqzbr.exe
c:\windows\system32\sX3i19
c:\windows\system32\sys3
.
((((((((((((((((((((((((( Files Created from 2008-10-24 to 2008-11-24 )))))))))))))))))))))))))))))))
.
2008-11-20 22:15 . 2008-11-21 18:04 <DIR> d-------- C:\Lop SD
2008-11-20 12:17 . 2008-11-20 12:17 <DIR> d-------- c:\program files\Gravity
2008-11-19 09:26 . 2008-11-19 09:26 <DIR> d-------- C:\VundoFix Backups
2008-11-19 09:18 . 2008-11-19 11:04 488 --a------ c:\windows\wininit.ini
2008-11-18 18:57 . 2008-11-18 18:58 <DIR> d-------- c:\documents and settings\Administrator
2008-11-18 13:38 . 2008-11-18 13:38 <DIR> d-------- c:\program files\Avira
2008-11-18 13:38 . 2008-11-18 13:38 <DIR> d-------- c:\documents and settings\All Users\Application Data\Avira
2008-11-17 14:23 . 2008-11-17 14:23 <DIR> d-------- c:\program files\TeaTimer (Spybot - Search & Destroy)
2008-11-17 14:23 . 2008-11-17 14:23 <DIR> d-------- c:\program files\SDHelper (Spybot - Search & Destroy)
2008-11-17 14:23 . 2008-11-17 14:23 <DIR> d-------- c:\program files\Misc. Support Library (Spybot - Search & Destroy)
2008-11-17 14:23 . 2008-11-17 14:23 <DIR> d-------- c:\program files\File Scanner Library (Spybot - Search & Destroy)
2008-11-17 12:40 . 2008-11-17 12:40 <DIR> d-------- c:\program files\Trend Micro
2008-11-17 00:09 . 2008-11-24 10:37 <DIR> d-------- C:\Temp
2008-10-27 13:08 . 2008-10-27 13:08 <DIR> d-------- c:\program files\Codebox
2008-10-27 13:08 . 2008-10-27 13:10 <DIR> d-------- c:\documents and settings\user\Application Data\Bitmeter2
2008-10-27 13:08 . 2008-11-24 10:40 <DIR> d-------- c:\documents and settings\All Users\Application Data\Bitmeter2
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-11-24 04:31 --------- d-----w c:\documents and settings\user\Application Data\dvdcss
2008-11-24 04:24 --------- d-----w c:\program files\Warcraft III
2008-11-23 02:11 --------- d-----w c:\documents and settings\user\Application Data\Hamachi
2008-11-23 02:10 --------- d-----w c:\program files\Java
2008-11-20 17:17 --------- d--h--w c:\program files\InstallShield Installation Information
2008-11-20 16:35 --------- d-----w c:\program files\mIRC
2008-11-18 20:04 --------- d-----w c:\program files\Spybot - Search & Destroy
2008-11-17 21:51 --------- d-----w c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2008-11-17 19:03 --------- d-s---w c:\program files\Xfire
2008-11-17 19:03 --------- d-----w c:\program files\HollywoodPoker
2008-11-17 19:03 --------- d-----w c:\documents and settings\user\Application Data\Xfire
2008-11-04 21:58 --------- d-----w c:\program files\PokerStars
2008-10-22 07:56 --------- d-----w c:\program files\DivX
2008-10-21 05:11 --------- d-----w c:\program files\CDisplay
2008-10-04 15:40 --------- d-----w c:\program files\iTunes
2008-10-04 15:40 --------- d-----w c:\program files\iPod
2008-10-04 15:40 --------- d-----w c:\documents and settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-10-01 17:01 32,000 ----a-w c:\windows\system32\drivers\usbaapl.sys
2008-09-27 23:14 --------- d-----w c:\documents and settings\user\Application Data\U3
2008-09-24 15:49 --------- d-----w c:\documents and settings\user\Application Data\ByteOMeter
2008-08-29 14:18 87,336 ----a-w c:\windows\system32\dns-sd.exe
2008-08-29 13:53 61,440 ----a-w c:\windows\system32\dnssd.dll
2007-08-16 14:54 47,360 ----a-w c:\documents and settings\user\Application Data\pcouffin.sys
2007-04-08 23:34 18,224 ----a-w c:\documents and settings\user\Application Data\GDIPFONTCACHEV1.DAT
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"="c:\program files\MSN Messenger\MsnMsgr.Exe" [2007-01-19 5674352]
"DrvMon.exe"="c:\windows\System32\DrvMon.exe" [2004-11-29 53248]
"DAEMON Tools"="c:\program files\DAEMON Tools\daemon.exe" [2007-11-17 171464]
"RocketDock"="c:\program files\RocketDock\RocketDock.exe" [2007-09-02 495616]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"UpdReg"="c:\windows\UpdReg.EXE" [2000-05-11 90112]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2007-02-03 185896]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-22 7700480]
"NeroCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"diagent"="c:\program files\Creative\SBLive\Diagnostics\diagent.exe" [2002-04-03 135264]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 39792]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-10-22 86016]
"RoxWatchTray"="c:\program files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe" [2008-03-06 236016]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2008-09-06 413696]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-09-03 111936]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-10-01 289576]
"avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-06-12 266497]
"SunJavaUpdateSched"="c:\program files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784]
"nwiz"="nwiz.exe" [2006-10-22 c:\windows\system32\nwiz.exe]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Bitmeter2.lnk - c:\program files\Codebox\BitMeter\BitMeter2.exe [2008-10-11 1462272]
Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-02-13 83360]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoViewOnDrive"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=pcaqvx.dll dwhjsy.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.iv31"= c:\windows\System32\ir32_32.dll
"vidc.iv32"= c:\windows\System32\ir32_32.dll
"msacm.ctmp3"= c:\windows\System32\ctmp3.acm
"VIDC.XFR1"= xfcodec.dll
"vidc.ir41"= c:\windows\System32\ir41_32.ax
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--a------ 2004-08-04 02:56 1667584 c:\program files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\Logitech\\Logitech Harmony Remote Software 7\\HarmonyRemote.exe"=
"c:\\Program Files\\FlashFXP\\FlashFXP.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\Documents and Settings\\user\\Desktop\\utorrent.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
S3 cmudau32;C-Media USB UDA Sound Interface;c:\windows\system32\drivers\cmudaxu.sys [2007-11-09 1414528]
S3 mamotou;mamotou;c:\windows\system32\DRIVERS\mamotou.sys [2007-02-17 49399]
S3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2005-08-02 32512]
S3 xbreader;ActionReplay XBox Driver (xbreader.sys);c:\windows\system32\Drivers\xbreader.sys [2007-08-30 19677]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
\Shell\AutoRun\command - G:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{b4eedc15-8036-11dd-8233-0007e98f97d6}]
\Shell\AutoRun\command - G:\LaunchU3.exe -a
.
Contents of the 'Scheduled Tasks' folder
2008-11-22 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-11-24 10:39:43
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
**************************************************************************
.
Completion time: 2008-11-24 10:43:15
ComboFix-quarantined-files.txt 2008-11-24 15:42:13
ComboFix2.txt 2008-11-20 17:04:01
Pre-Run: 1,548,902,400 bytes free
Post-Run: 1,581,948,928 bytes free
426 --- E O F --- 2007-08-02 23:56:03
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:44:36 AM, on 11/24/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\PnkBstrA.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\WINDOWS\System32\DrvMon.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Codebox\BitMeter\BitMeter2.exe
C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe
C:\Program Files\RealVNC\VNC4\WinVNC4.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\Marvelous007.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [diagent] "C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe" startup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DrvMon.exe] C:\WINDOWS\System32\DrvMon.exe
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Bitmeter2.lnk = C:\Program Files\Codebox\BitMeter\BitMeter2.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) -
http://support.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky.com/kos/eng/partner/us/kavwebscan_unicode.cab
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file://C:\Program Files\Monopoly\Images\stg_drm.ocx
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) -
http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) -
http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://www.update.microsoft.com/win...ls/en/x86/client/wuweb_site.cab?1218296795078
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) -
http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file://C:\Program Files\Monopoly\Images\armhelper.ocx
O20 - AppInit_DLLs: pcaqvx.dll dwhjsy.dll
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\System32\PnkBstrA.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - RealVNC Ltd. - C:\Program Files\RealVNC\VNC4\WinVNC4.exe
--
End of file - 8570 bytes
Thanks.