After running combofix I can now reach safer-networking.org and it appears my clicks are no longer being hijacked.
Here is the combofix log:
ComboFix 09-05-03.6 - Owner 05/04/2009 14:11.1 - NTFSx86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.2038.1137 [GMT -5:00]
Running from: c:\users\Owner\Downloads\ComboFix.exe
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Autorun.inf
c:\recycler\S-6-2-60-100012815-100004722-100020005-9146.com
c:\windows\system32\drivers\gxvxchcuxnxcmprxboppsyfbhixrwptpiimug.sys
c:\windows\system32\gxvxcavgxbkkbiwdtepjlmxylifwndqwemvrr.dll
c:\windows\system32\gxvxccounter
c:\windows\system32\x64
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Service_gxvxcserv.sys
((((((((((((((((((((((((( Files Created from 2009-04-04 to 2009-05-04 )))))))))))))))))))))))))))))))
.
2009-05-03 22:56 . 2009-05-04 19:10 32 --sha-w c:\windows\system32\drivers\fidbox2.dat
2009-05-03 22:56 . 2009-05-04 19:10 32 --sha-w c:\windows\system32\drivers\fidbox.dat
2009-05-03 05:09 . 2009-05-03 05:09 -------- d-----w c:\program files\Trend Micro
2009-05-03 03:07 . 2009-05-03 03:07 96976 ----a-w c:\windows\system32\drivers\klin.dat
2009-05-03 03:07 . 2009-05-03 03:07 87855 ----a-w c:\windows\system32\drivers\klick.dat
2009-05-03 03:06 . 2009-05-03 03:06 -------- d-----w c:\program files\Kaspersky Lab
2009-05-03 03:06 . 2009-05-03 03:07 -------- d-----w c:\programdata\Kaspersky Lab
2009-05-03 03:06 . 2009-05-03 03:07 -------- d-----w c:\users\All Users\Kaspersky Lab
2009-05-03 03:00 . 2009-05-03 03:00 -------- d-----w c:\programdata\Kaspersky Lab Setup Files
2009-05-03 03:00 . 2009-05-03 03:00 -------- d-----w c:\users\All Users\Kaspersky Lab Setup Files
2009-05-03 02:51 . 2009-04-06 20:32 15504 ----a-w c:\windows\system32\drivers\mbam.sys
2009-05-03 02:51 . 2009-04-06 20:32 38496 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys
2009-05-03 02:51 . 2009-05-03 02:51 -------- d-----w c:\programdata\Malwarebytes
2009-05-03 02:51 . 2009-05-03 02:51 -------- d-----w c:\users\All Users\Malwarebytes
2009-05-03 02:51 . 2009-05-03 02:51 -------- d-----w c:\program files\Malwarebytes' Anti-Malware
2009-05-03 02:49 . 2009-05-04 04:48 -------- d-----w c:\users\Owner\AppData\Roaming\QuickScan
2009-05-02 23:24 . 2009-05-03 02:24 -------- d---a-w c:\programdata\TEMP
2009-05-02 23:24 . 2009-05-03 02:24 -------- d---a-w c:\users\All Users\TEMP
2009-05-02 01:45 . 2009-05-02 01:46 7 ----a-w c:\windows\sbacknt.bin
2009-05-02 01:24 . 2009-05-02 01:24 -------- d-----w c:\program files\Common Files\Totem Shared
2009-04-28 02:18 . 2009-04-28 02:18 -------- d-----w c:\windows\Sun
2009-04-24 05:13 . 2007-12-24 18:47 7680 ----a-w c:\windows\system32\ff_vfw.dll
2009-04-24 05:13 . 2007-11-29 17:52 60273 ----a-w c:\windows\system32\pthreadGC2.dll
2009-04-24 05:13 . 2007-11-29 17:52 348160 ----a-w c:\windows\system32\msvcr71.dll
2009-04-24 05:13 . 2007-11-29 17:52 499712 ----a-w c:\windows\system32\msvcp71.dll
2009-04-24 05:13 . 2009-04-24 05:13 -------- d-----w c:\program files\ffdshow
2009-04-24 05:13 . 2009-04-24 05:14 -------- d-----w c:\program files\TVersity Codec Pack
2009-04-24 05:12 . 2009-04-24 05:12 -------- d-----w c:\program files\TVersity
2009-04-24 04:53 . 2009-04-24 04:52 410984 ----a-w c:\windows\system32\deploytk.dll
2009-04-24 01:52 . 2007-08-29 20:58 172032 ----a-w c:\windows\system32\U122_A24.dll
2009-04-24 01:52 . 2007-08-29 20:55 172032 ----a-w c:\windows\system32\U122_A16.dll
2009-04-24 01:52 . 2007-08-29 20:50 39168 ----a-w c:\windows\system32\drivers\US122Wdm.sys
2009-04-24 01:52 . 2007-08-29 20:50 131968 ----a-w c:\windows\system32\drivers\US122.sys
2009-04-24 01:52 . 2007-08-29 20:50 18304 ----a-w c:\windows\system32\drivers\US122DL.sys
2009-04-24 01:52 . 2009-04-24 01:52 -------- d-----w c:\program files\US122
2009-04-23 22:55 . 2009-04-23 22:55 -------- d-----w c:\program files\Common Files\Adobe AIR
2009-04-23 18:14 . 2009-04-23 18:14 -------- d-----w c:\programdata\FLEXnet
2009-04-23 18:14 . 2009-04-23 18:14 -------- d-----w c:\users\All Users\FLEXnet
2009-04-23 18:08 . 2009-04-23 18:08 -------- d-----w c:\program files\Common Files\Macrovision Shared
2009-04-23 16:56 . 2009-04-23 17:12 763 ----a-w c:\windows\Setup_ver1.1497.0.exe
2009-04-23 16:52 . 2009-04-23 18:48 -------- d-----w c:\users\Owner\AppData\Local\Adobe
2009-04-23 16:48 . 2009-04-23 18:10 -------- d-----w c:\users\All Users\Adobe
2009-04-23 16:47 . 2009-04-23 18:10 -------- d-----w c:\program files\Common Files\Adobe
2009-04-23 16:11 . 2009-04-23 16:11 -------- d-----w c:\users\Owner\AppData\Roaming\OpenOffice.org
2009-04-23 16:08 . 2009-04-23 16:08 -------- d-----w c:\program files\JRE
2009-04-23 16:08 . 2009-04-23 16:08 -------- d-----w c:\program files\OpenOffice.org 3
2009-04-23 16:06 . 2009-04-24 04:52 -------- d-----w c:\program files\Java
2009-04-23 16:06 . 2009-04-23 16:06 -------- d-----w c:\program files\Common Files\Java
2009-04-23 04:28 . 2009-04-23 05:03 -------- d-----w c:\users\Owner\AppData\Roaming\vlc
2009-04-23 04:27 . 2009-04-23 04:27 -------- d-----w c:\program files\VideoLAN
2009-04-23 03:31 . 2009-04-23 03:31 -------- d-----w c:\users\Owner\AppData\Local\Mozilla
2009-04-23 01:13 . 2009-04-23 01:13 -------- d-----w c:\users\Owner\AppData\Local\MigWiz
2009-04-23 00:39 . 2009-04-23 00:39 -------- d-----w c:\program files\Belarc
2009-04-22 23:20 . 2009-04-23 01:12 -------- d-----w c:\windows\system32\Macromed
2009-04-16 18:52 . 2008-10-22 01:22 2048 ----a-w c:\windows\system32\tzres.dll
2009-04-16 18:43 . 2009-04-16 17:48 -------- d-----w c:\windows\Panther
2009-04-16 18:43 . 2009-04-16 18:43 -------- d-sh--w C:\Boot
2009-04-16 18:42 . 2009-04-16 18:42 -------- d-----w c:\windows\system32\OEM
2009-04-16 18:36 . 2009-05-03 03:07 -------- d-sh--w c:\windows\Installer
2009-04-16 18:33 . 2008-06-20 01:14 97800 ----a-w c:\windows\system32\infocardapi.dll
2009-04-16 18:33 . 2008-06-20 01:14 105016 ----a-w c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-04-16 18:33 . 2008-06-20 01:14 622080 ----a-w c:\windows\system32\icardagt.exe
2009-04-16 18:33 . 2008-06-20 01:14 11264 ----a-w c:\windows\system32\icardres.dll
2009-04-16 18:33 . 2008-06-20 01:14 43544 ----a-w c:\windows\system32\PresentationHostProxy.dll
2009-04-16 18:33 . 2008-06-20 01:14 781344 ----a-w c:\windows\system32\PresentationNative_v0300.dll
2009-04-16 18:33 . 2008-06-20 01:14 326160 ----a-w c:\windows\system32\PresentationHost.exe
2009-04-16 18:27 . 2008-07-27 18:03 96760 ----a-w c:\windows\system32\dfshim.dll
2009-04-16 18:27 . 2008-07-27 18:03 282112 ----a-w c:\windows\system32\mscoree.dll
2009-04-16 18:27 . 2008-07-27 18:03 41984 ----a-w c:\windows\system32\netfxperf.dll
2009-04-16 18:27 . 2008-07-27 18:03 158720 ----a-w c:\windows\system32\mscorier.dll
2009-04-16 18:27 . 2008-07-27 18:03 83968 ----a-w c:\windows\system32\mscories.dll
2009-04-16 18:24 . 2008-10-21 05:25 296960 ----a-w c:\windows\system32\gdi32.dll
2009-04-16 18:22 . 2008-06-26 01:45 2644480 ----a-w c:\windows\system32\NlsLexicons0009.dll
2009-04-16 18:22 . 2008-06-26 03:29 801280 ----a-w c:\windows\system32\NaturalLanguage6.dll
2009-04-16 18:17 . 2008-04-26 08:08 1314816 ----a-w c:\windows\system32\quartz.dll
2009-04-16 18:15 . 2009-02-09 03:10 2033152 ----a-w c:\windows\system32\win32k.sys
2009-04-16 18:15 . 2008-09-10 03:40 1334272 ----a-w c:\windows\system32\msxml6.dll
2009-04-16 18:10 . 2008-10-16 21:09 43544 ----a-w c:\windows\system32\wups2.dll
2009-04-16 18:10 . 2008-10-16 21:09 51224 ----a-w c:\windows\system32\wuauclt.exe
2009-04-16 18:10 . 2008-10-16 20:56 1524736 ----a-w c:\windows\system32\wucltux.dll
2009-04-16 18:10 . 2008-10-16 21:13 1809944 ----a-w c:\windows\system32\wuaueng.dll
2009-04-16 18:10 . 2008-10-16 21:08 34328 ----a-w c:\windows\system32\wups.dll
2009-04-16 18:10 . 2008-10-16 20:55 83456 ----a-w c:\windows\system32\wudriver.dll
2009-04-16 18:10 . 2008-10-16 21:12 561688 ----a-w c:\windows\system32\wuapi.dll
2009-04-16 18:10 . 2008-10-16 20:56 31232 ----a-w c:\windows\system32\wuapp.exe
2009-04-16 18:10 . 2008-10-16 21:08 162064 ----a-w c:\windows\system32\wuwebv.dll
2009-04-16 18:00 . 2008-06-26 16:25 337920 ----a-w c:\windows\system\rtl8187B.sys
2009-04-16 18:00 . 2009-04-16 18:00 -------- d-----w c:\windows\OPTIONS
2009-04-16 18:00 . 2009-04-16 18:00 -------- d-----w c:\program files\REALTEK RTL8187B Wireless LAN Driver
2009-04-16 18:00 . 2009-04-16 18:00 -------- d--h--w c:\program files\InstallShield Installation Information
2009-04-16 17:59 . 2009-04-16 17:59 -------- d-----w c:\users\Owner\AppData\Roaming\InstallShield
2009-04-16 17:58 . 2009-04-16 17:58 -------- d-----w c:\windows\system32\Lang
2009-04-16 17:58 . 2006-11-10 23:25 319456 ----a-w c:\windows\system32\difxapi.dll
2009-04-16 17:58 . 2008-02-12 03:13 920088 ----a-w c:\windows\system32\igxpun.exe
2009-04-16 17:58 . 2009-04-16 17:58 -------- d-----w c:\program files\Synaptics
2009-04-16 17:55 . 2009-04-16 17:55 -------- d-----w c:\program files\Intel
2009-04-16 17:55 . 2009-04-16 18:00 -------- d-----w C:\Intel
2009-04-16 17:53 . 2009-05-03 03:07 -------- d-----w c:\users\Owner
2009-04-16 17:51 . 2009-04-16 17:51 -------- d-----r c:\windows\system32\config\systemprofile\Contacts
2009-04-16 17:51 . 2009-04-23 18:47 -------- d-----w c:\windows\Debug
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-05-04 19:10 . 2009-05-03 22:56 32 --sha-w c:\windows\system32\drivers\fidbox2.idx
2009-05-04 19:10 . 2009-05-03 22:56 32 --sha-w c:\windows\system32\drivers\fidbox.idx
2009-05-03 03:07 . 2006-11-02 10:25 86016 ----a-w c:\windows\inf\infstrng.dat
2009-05-03 03:07 . 2006-11-02 10:25 86016 ----a-w c:\windows\inf\infstor.dat
2009-05-03 03:07 . 2006-11-02 10:25 51200 ----a-w c:\windows\inf\infpub.dat
2009-04-23 18:15 . 2009-04-16 17:54 52776 ----a-w c:\users\Owner\AppData\Local\GDIPFONTCACHEV1.DAT
2009-04-16 19:07 . 2006-11-02 11:18 -------- d-----w c:\program files\Windows Mail
2009-04-16 19:07 . 2006-11-02 10:25 665600 ----a-w c:\windows\inf\drvindex.dat
2009-04-16 17:58 . 2009-04-16 17:58 0 ---ha-w c:\windows\system32\drivers\Msft_Kernel_SynTP_01000.Wdf
2009-04-16 17:54 . 2009-04-16 17:54 680 ----a-w c:\users\Owner\AppData\Local\d3d9caps.dat
2009-04-16 17:48 . 2009-04-16 17:48 0 ---ha-w c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2009-03-26 15:00 . 2009-03-26 15:00 64000 ----a-w c:\windows\system32\drivers\RTSTOR.sys
2009-03-17 03:38 . 2009-04-16 18:21 13824 ----a-w c:\windows\system32\apilogen.dll
2009-03-17 03:38 . 2009-04-16 18:21 24064 ----a-w c:\windows\system32\amxread.dll
2009-03-06 16:06 . 2009-03-06 16:06 140800 ----a-w c:\windows\system32\drivers\Rtlh86.sys
2009-03-05 13:54 . 2009-03-05 13:54 73728 ----a-w c:\windows\system32\RtNicProp32.dll
2009-03-03 04:46 . 2009-04-16 18:21 3599328 ----a-w c:\windows\system32\ntkrnlpa.exe
2009-03-03 04:46 . 2009-04-16 18:21 3547632 ----a-w c:\windows\system32\ntoskrnl.exe
2009-03-03 04:40 . 2009-04-16 18:20 827392 ----a-w c:\windows\system32\wininet.dll
2009-03-03 04:39 . 2009-04-16 18:21 183296 ----a-w c:\windows\system32\sdohlp.dll
2009-03-03 04:39 . 2009-04-16 18:21 551424 ----a-w c:\windows\system32\rpcss.dll
2009-03-03 04:39 . 2009-04-16 18:21 26112 ----a-w c:\windows\system32\printfilterpipelineprxy.dll
2009-03-03 04:37 . 2009-04-16 18:20 78336 ----a-w c:\windows\system32\ieencode.dll
2009-03-03 04:37 . 2009-04-16 18:21 98304 ----a-w c:\windows\system32\iasrecst.dll
2009-03-03 04:37 . 2009-04-16 18:21 54784 ----a-w c:\windows\system32\iasads.dll
2009-03-03 04:37 . 2009-04-16 18:21 44032 ----a-w c:\windows\system32\iasdatastore.dll
2009-03-03 03:04 . 2009-04-16 18:21 666624 ----a-w c:\windows\system32\printfilterpipelinesvc.exe
2009-03-03 02:38 . 2009-04-16 18:21 17408 ----a-w c:\windows\system32\iashost.exe
2009-03-03 02:28 . 2009-04-16 18:20 26624 ----a-w c:\windows\system32\ieUnatt.exe
2009-02-13 08:49 . 2009-04-16 18:21 72704 ----a-w c:\windows\system32\secur32.dll
2009-02-13 08:49 . 2009-04-16 18:21 1255936 ----a-w c:\windows\system32\lsasrv.dll
2008-01-21 02:43 . 2006-11-02 12:50 174 --sha-w c:\program files\desktop.ini
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-04-27 865840]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-02-12 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-02-12 166424]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-02-12 133656]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-04-24 148888]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe" [2008-11-12 206088]
c:\users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.0.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2008-12-15 384000]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\KASPER~1\KASPER~1\mzvkbd.dll c:\progra~1\KASPER~1\KASPER~1\mzvkbd3.dll
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{EDFCB82C-0F85-4174-8D91-EF25DBBF08B5}"= UDP:c:\program files\TVersity\Media Server\MediaServer.exe:TVersity Media Server
"{9A07EEEB-094A-427C-9A17-0C1479D7134D}"= TCP:c:\program files\TVersity\Media Server\MediaServer.exe:TVersity Media Server
"TCP Query User{B6E96AEE-66D9-4AB2-B61F-88B8565F8C8A}c:\\program files\\utorrent\\utorrent.exe"= UDP:c:\program files\utorrent\utorrent.exe:µTorrent
"UDP Query User{3D87AC95-7BB9-45B6-9507-72EB9C528A52}c:\\program files\\utorrent\\utorrent.exe"= TCP:c:\program files\utorrent\utorrent.exe:µTorrent
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]
"EnableFirewall"= 0 (0x0)
R3 US122;US122 Driver;c:\windows\system32\Drivers\US122.sys [2007-08-29 131968]
R3 US122DL;US122 Firmware Downloader;c:\windows\system32\Drivers\US122DL.sys [2007-08-29 18304]
R3 Us122WdmService;US122 Wdm Audio;c:\windows\system32\Drivers\US122Wdm.sys [2007-08-29 39168]
S0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2008-01-29 32784]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [2008-07-09 20496]
S3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8187B.sys [2009-01-13 346112]
.
.
------- Supplementary Scan -------
.
FF - ProfilePath - c:\users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\tta80589.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.hotmail.com
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-05-04 14:15
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\
0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
Completion time: 2009-05-04 14:17
ComboFix-quarantined-files.txt 2009-05-04 19:17
Pre-Run: 116,492,193,792 bytes free
Post-Run: 116,568,469,504 bytes free
226 --- E O F --- 2009-05-01 04:51
And the new DDS Log:
DDS (Ver_09-03-16.01) - NTFSx86
Run by Owner at 14:22:07.77 on Mon 05/04/2009
Internet Explorer: 7.0.6001.18000 BrowserJavaVersion: 1.6.0_13
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.2038.1124 [GMT -5:00]
AV: Kaspersky Anti-Virus *On-access scanning disabled* (Outdated)
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Windows\Explorer.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\DllHost.exe
C:\Users\Owner\Downloads\dds.scr
C:\Windows\system32\wbem\wmiprvse.exe
============== Pseudo HJT Report ===============
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
BHO: IEVkbdBHO Class: {59273ab4-e7d3-40f9-a1a8-6fa9cca1862c} - c:\program files\kaspersky lab\kaspersky anti-virus 2009\ievkbd.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
uRun: [ehTray.exe] c:\windows\ehome\ehTray.exe
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [AVP] "c:\program files\kaspersky lab\kaspersky anti-virus 2009\avp.exe"
StartupFolder: c:\users\owner\appdata\roaming\micros~1\windows\startm~1\programs\startup\openof~1.lnk - c:\program files\openoffice.org 3\program\quickstart.exe
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - {85E0B171-04FA-11D1-B7DA-00A0C90348D6} - c:\program files\kaspersky lab\kaspersky anti-virus 2009\SCIEPlgn.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - c:\program files\belarc\advisor\system\BAVoilaX.dll
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} -
Notify: igfxcui - igfxdev.dll
Notify: klogon - c:\windows\system32\klogon.dll
AppInit_DLLs: c:\progra~1\kasper~1\kasper~1\mzvkbd.dll c:\progra~1\kasper~1\kasper~1\mzvkbd3.dll
================= FIREFOX ===================
FF - ProfilePath - c:\users\owner\appdata\roaming\mozilla\firefox\profiles\tta80589.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.hotmail.com
============= SERVICES / DRIVERS ===============
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2008-1-29 32784]
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\drivers\klim6.sys [2008-7-9 20496]
R3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8187B.sys [2009-1-13 346112]
S3 US122;US122 Driver;c:\windows\system32\drivers\US122.sys [2009-4-23 131968]
S3 US122DL;US122 Firmware Downloader;c:\windows\system32\drivers\US122DL.sys [2009-4-23 18304]
S3 Us122WdmService;US122 Wdm Audio;c:\windows\system32\drivers\US122Wdm.sys [2009-4-23 39168]
=============== Created Last 30 ================
2009-05-04 14:06 161,792 a------- c:\windows\SWREG.exe
2009-05-04 14:06 98,816 a------- c:\windows\sed.exe
2009-05-03 17:56 32 a--sh--- c:\windows\system32\drivers\fidbox2.idx
2009-05-03 17:56 32 a--sh--- c:\windows\system32\drivers\fidbox2.dat
2009-05-03 17:56 32 a--sh--- c:\windows\system32\drivers\fidbox.idx
2009-05-03 17:56 32 a--sh--- c:\windows\system32\drivers\fidbox.dat
2009-05-03 00:09 <DIR> --d----- c:\program files\Trend Micro
2009-05-02 22:07 96,976 a------- c:\windows\system32\drivers\klin.dat
2009-05-02 22:07 87,855 a------- c:\windows\system32\drivers\klick.dat
2009-05-02 22:06 <DIR> --d----- c:\programdata\Kaspersky Lab
2009-05-02 22:06 <DIR> --d----- c:\program files\Kaspersky Lab
2009-05-02 22:06 <DIR> --d----- c:\progra~2\Kaspersky Lab
2009-05-02 22:00 <DIR> --d----- c:\programdata\Kaspersky Lab Setup Files
2009-05-02 22:00 <DIR> --d----- c:\progra~2\Kaspersky Lab Setup Files
2009-05-02 21:51 15,504 a------- c:\windows\system32\drivers\mbam.sys
2009-05-02 21:51 38,496 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-05-02 21:51 <DIR> --d----- c:\programdata\Malwarebytes
2009-05-02 21:51 <DIR> --d----- c:\program files\Malwarebytes' Anti-Malware
2009-05-02 21:51 <DIR> --d----- c:\progra~2\Malwarebytes
2009-05-02 21:49 <DIR> --d----- c:\users\owner\appdata\roaming\QuickScan
2009-05-02 18:24 <DIR> a-d----- c:\programdata\TEMP
2009-05-01 20:45 7 a------- c:\windows\sbacknt.bin
2009-05-01 20:24 <DIR> --d----- c:\program files\common files\Totem Shared
2009-04-24 00:13 60,273 a------- c:\windows\system32\pthreadGC2.dll
2009-04-24 00:13 7,680 a------- c:\windows\system32\ff_vfw.dll
2009-04-24 00:13 547 a------- c:\windows\system32\ff_vfw.dll.manifest
2009-04-24 00:13 499,712 a------- c:\windows\system32\msvcp71.dll
2009-04-24 00:13 348,160 a------- c:\windows\system32\msvcr71.dll
2009-04-24 00:13 <DIR> --d----- c:\program files\ffdshow
2009-04-24 00:13 <DIR> --d----- c:\program files\TVersity Codec Pack
2009-04-24 00:12 <DIR> --d----- c:\program files\TVersity
2009-04-23 23:53 410,984 a------- c:\windows\system32\deploytk.dll
2009-04-23 21:10 163,485,837 a------- c:\windows\MEMORY.DMP
2009-04-23 20:52 471,040 a------- c:\windows\system32\US122cp.cpl
2009-04-23 20:52 172,032 a------- c:\windows\system32\U122_A24.dll
2009-04-23 20:52 172,032 a------- c:\windows\system32\U122_A16.dll
2009-04-23 20:52 131,968 a------- c:\windows\system32\drivers\US122.sys
2009-04-23 20:52 39,168 a------- c:\windows\system32\drivers\US122Wdm.sys
2009-04-23 20:52 18,304 a------- c:\windows\system32\drivers\US122DL.sys
2009-04-23 20:52 <DIR> --d----- c:\program files\US122
2009-04-23 13:14 <DIR> --d----- c:\programdata\FLEXnet
2009-04-23 13:08 <DIR> --d----- c:\program files\common files\Macrovision Shared
2009-04-23 11:56 763 a------- c:\windows\Setup_ver1.1497.0.exe
2009-04-23 11:48 <DIR> --d----- c:\programdata\Adobe
2009-04-23 11:11 <DIR> --d----- c:\users\owner\appdata\roaming\OpenOffice.org
2009-04-23 11:08 <DIR> --d----- c:\program files\JRE
2009-04-23 11:08 <DIR> --d----- c:\program files\OpenOffice.org 3
2009-04-22 23:27 <DIR> --d----- c:\program files\VideoLAN
2009-04-22 19:39 <DIR> --d----- c:\program files\Belarc
2009-04-16 13:52 2,048 a------- c:\windows\system32\tzres.dll
2009-04-16 13:43 <DIR> --d----- c:\windows\Panther
2009-04-16 13:43 8,192 a--s-r-- C:\BOOTSECT.BAK
2009-04-16 13:43 333,203 a--shr-- C:\bootmgr
2009-04-16 13:43 <DIR> --dsh--- C:\Boot
2009-04-16 13:42 330,752 a----r-- c:\windows\system32\drivers\NETBIOS.PDB
2009-04-16 13:42 <DIR> --d----- c:\windows\system32\OEM
2009-04-16 13:36 <DIR> --dsh--- c:\windows\Installer
2009-04-16 13:33 97,800 a------- c:\windows\system32\infocardapi.dll
2009-04-16 13:33 622,080 a------- c:\windows\system32\icardagt.exe
2009-04-16 13:33 105,016 a------- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-04-16 13:33 43,544 a------- c:\windows\system32\PresentationHostProxy.dll
2009-04-16 13:33 37,384 a------- c:\windows\system32\infocardcpl.cpl
2009-04-16 13:33 11,264 a------- c:\windows\system32\icardres.dll
2009-04-16 13:33 781,344 a------- c:\windows\system32\PresentationNative_v0300.dll
2009-04-16 13:33 326,160 a------- c:\windows\system32\PresentationHost.exe
2009-04-16 13:27 96,760 a------- c:\windows\system32\dfshim.dll
2009-04-16 13:27 282,112 a------- c:\windows\system32\mscoree.dll
2009-04-16 13:27 41,984 a------- c:\windows\system32\netfxperf.dll
2009-04-16 13:27 158,720 a------- c:\windows\system32\mscorier.dll
2009-04-16 13:27 83,968 a------- c:\windows\system32\mscories.dll
2009-04-16 13:24 296,960 a------- c:\windows\system32\gdi32.dll
2009-04-16 13:22 2,644,480 a------- c:\windows\system32\NlsLexicons0009.dll
2009-04-16 13:22 801,280 a------- c:\windows\system32\NaturalLanguage6.dll
2009-04-16 13:17 1,314,816 a------- c:\windows\system32\quartz.dll
2009-04-16 13:15 2,033,152 a------- c:\windows\system32\win32k.sys
2009-04-16 13:15 1,334,272 a------- c:\windows\system32\msxml6.dll
2009-04-16 13:10 1,524,736 a------- c:\windows\system32\wucltux.dll
2009-04-16 13:10 83,456 a------- c:\windows\system32\wudriver.dll
2009-04-16 13:10 162,064 a------- c:\windows\system32\wuwebv.dll
2009-04-16 13:10 31,232 a------- c:\windows\system32\wuapp.exe
2009-04-16 13:02 16,052 a------- c:\windows\system32\results.xml
2009-04-16 13:00 337,920 a------- c:\windows\system\rtl8187B.sys
2009-04-16 13:00 <DIR> --d----- c:\windows\OPTIONS
2009-04-16 13:00 <DIR> --d----- c:\program files\REALTEK RTL8187B Wireless LAN Driver
2009-04-16 12:58 920,088 a------- c:\windows\system32\igxpun.exe
2009-04-16 12:58 319,456 a------- c:\windows\system32\difxapi.dll
2009-04-16 12:58 121,232 a------- c:\windows\system32\IScrNBR.bmp
2009-04-16 12:58 121,232 a------- c:\windows\system32\IScrNB.bmp
2009-04-16 12:58 <DIR> --d----- c:\windows\system32\Lang
2009-04-16 12:58 0 a---h--- c:\windows\system32\drivers\Msft_Kernel_SynTP_01000.Wdf
2009-04-16 12:58 <DIR> --d----- c:\program files\Synaptics
2009-04-16 12:55 <DIR> --d----- C:\Intel
2009-04-16 12:53 <DIR> --d----- c:\users\Owner
2009-04-16 12:48 0 a---h--- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
==================== Find3M ====================
2009-05-02 22:07 86,016 a------- c:\windows\inf\infstrng.dat
2009-05-02 22:07 86,016 a------- c:\windows\inf\infstor.dat
2009-05-02 22:07 51,200 a------- c:\windows\inf\infpub.dat
2009-04-16 14:07 665,600 a------- c:\windows\inf\drvindex.dat
2009-03-26 10:00 64,000 a------- c:\windows\system32\drivers\RTSTOR.sys
2009-03-16 22:38 40,960 a------- c:\windows\apppatch\apihex86.dll
2009-03-16 22:38 13,824 a------- c:\windows\system32\apilogen.dll
2009-03-16 22:38 24,064 a------- c:\windows\system32\amxread.dll
2009-03-06 11:06 140,800 a------- c:\windows\system32\drivers\Rtlh86.sys
2009-03-05 08:54 73,728 a------- c:\windows\system32\RtNicProp32.dll
2009-03-02 23:46 3,599,328 a------- c:\windows\system32\ntkrnlpa.exe
2009-03-02 23:46 3,547,632 a------- c:\windows\system32\ntoskrnl.exe
2009-03-02 23:40 827,392 a------- c:\windows\system32\wininet.dll
2009-03-02 23:39 183,296 a------- c:\windows\system32\sdohlp.dll
2009-03-02 23:39 551,424 a------- c:\windows\system32\rpcss.dll
2009-03-02 23:39 26,112 a------- c:\windows\system32\printfilterpipelineprxy.dll
2009-03-02 23:37 78,336 a------- c:\windows\system32\ieencode.dll
2009-03-02 23:37 98,304 a------- c:\windows\system32\iasrecst.dll
2009-03-02 23:37 54,784 a------- c:\windows\system32\iasads.dll
2009-03-02 23:37 44,032 a------- c:\windows\system32\iasdatastore.dll
2009-03-02 22:04 666,624 a------- c:\windows\system32\printfilterpipelinesvc.exe
2009-03-02 21:38 17,408 a------- c:\windows\system32\iashost.exe
2009-03-02 21:28 26,624 a------- c:\windows\system32\ieUnatt.exe
2009-02-13 03:49 72,704 a------- c:\windows\system32\secur32.dll
2009-02-13 03:49 1,255,936 a------- c:\windows\system32\lsasrv.dll
2008-01-20 21:43 174 a--sh--- c:\program files\desktop.ini
2006-11-02 07:42 287,440 a------- c:\windows\inf\perflib\0409\perfi.dat
2006-11-02 07:42 287,440 a------- c:\windows\inf\perflib\0409\perfh.dat
2006-11-02 07:42 30,674 a------- c:\windows\inf\perflib\0409\perfd.dat
2006-11-02 07:42 30,674 a------- c:\windows\inf\perflib\0409\perfc.dat
2006-11-02 04:20 287,440 a------- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 04:20 287,440 a------- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 04:20 30,674 a------- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 04:20 30,674 a------- c:\windows\inf\perflib\0000\perfc.dat
============= FINISH: 14:22:38.52 ===============