well i have no idea whats goin on but i was able to boot off a cd
heres the combo fix log and ill post the report once it finishes as it appears it might take awhile
ComboFix 09-11-27.02 - Illmaculate 11/29/2009 21:09.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6000.0.1252.1.1033.18.2942.2004 [GMT -7:00]
Running from: c:\users\Illmaculate\Desktop\ComboFix.exe
Command switches used :: c:\users\Illmaculate\Desktop\CFScript.txt
AV: Trend Micro AntiVirus *On-access scanning disabled* (Updated) {7D2296BC-32CC-4519-917E-52E652474AF5}
SP: Trend Micro AntiVirus *disabled* (Updated) {003DD9A8-02A6-43CF-81BA-5D403CAD001E}
SP: Webroot AntiVirus with AntiSpyware *disabled* (Outdated) {00000000-E9D0-004F-D859-4D0000000000}
SP: Windows Defender *disabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((( Files Created from 2009-10-28 to 2009-11-30 )))))))))))))))))))))))))))))))
.
2009-11-30 04:17 . 2009-11-30 04:17 -------- d-----w- c:\users\Public\AppData\Local\temp
2009-11-30 04:17 . 2009-11-30 04:17 -------- d-----w- c:\users\Owner\AppData\Local\temp
2009-11-30 04:17 . 2009-11-30 04:17 -------- d-----w- c:\users\Default\AppData\Local\temp
2009-11-30 04:17 . 2009-11-30 04:17 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2009-11-30 04:06 . 2009-11-30 04:07 45056 d-----w- C:\32788R22FWJFW
2009-11-27 21:56 . 2009-11-30 04:17 4096 d-----w- c:\users\Illmaculate\AppData\Local\temp
2009-11-25 02:10 . 2009-11-25 02:10 -------- d-----w- c:\users\Owner\AppData\Local\Apple
2009-11-21 05:48 . 2009-11-21 05:48 4096 d-----w- c:\users\Illmaculate\New Folder
2009-11-21 02:25 . 2009-11-21 05:37 4096 d-----w- c:\users\Illmaculate\Marisa music
2009-11-20 03:46 . 2009-11-20 03:46 -------- d-----w- c:\users\Illmaculate\AppData\Roaming\AccurateRip
2009-11-20 03:46 . 2009-11-20 03:46 -------- d-----w- c:\program files\Illustrate
2009-11-20 02:48 . 2009-11-20 02:48 -------- d-----w- c:\users\Administrator\AppData\Roaming\Malwarebytes
2009-11-20 02:48 . 2009-11-20 02:48 -------- d-----w- c:\programdata\Malwarebytes
2009-11-20 02:48 . 2009-11-20 02:48 4096 d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-11-20 02:25 . 2009-11-20 02:25 -------- d-----w- c:\users\Administrator\AppData\Roaming\Hewlett-Packard
2009-11-20 02:24 . 2009-11-20 02:24 -------- d-----w- c:\users\Administrator\AppData\Local\Mozilla
2009-11-20 02:23 . 2009-11-20 02:23 -------- d-----w- c:\users\Administrator\AppData\Roaming\Snapfish
2009-11-20 02:23 . 2009-11-20 02:23 92472 ----a-w- c:\users\Administrator\AppData\Local\GDIPFONTCACHEV1.DAT
2009-11-20 02:21 . 2009-11-20 04:33 8192 d-----w- c:\users\Administrator
2009-11-20 02:21 . 2009-11-20 02:23 4096 d-----w- c:\users\Administrator\AppData\Local\Microsoft
2009-11-20 02:21 . 2009-11-04 03:32 -------- d-----w- c:\users\Administrator\AppData\Local\Microsoft Help
2009-11-20 02:21 . 2006-11-02 12:37 -------- d-----w- c:\users\Administrator\AppData\Roaming\Media Center Programs
2009-11-20 01:37 . 2009-11-20 02:46 4096 d-----w- c:\programdata\Spybot - Search & Destroy
2009-11-20 01:37 . 2009-11-20 02:46 8192 d-----w- c:\program files\Spybot - Search & Destroy
2009-11-19 04:24 . 2009-11-19 04:30 45056 d-----w- c:\users\Illmaculate\Dillion music
2009-11-19 04:08 . 2009-11-19 04:08 -------- d-----w- c:\users\Owner\AppData\Roaming\SharePod
2009-11-19 04:03 . 2009-11-19 12:39 4096 d-----w- c:\users\Owner\AppData\Roaming\Apple Computer
2009-11-19 04:03 . 2009-11-19 04:04 -------- d-----w- c:\users\Owner\AppData\Local\Apple Computer
2009-11-14 21:55 . 2009-11-15 01:02 57344 d-----w- c:\users\Illmaculate\Music2
2009-11-11 16:44 . 2009-11-11 16:45 -------- d-----w- c:\programdata\NVIDIA
2009-11-11 02:31 . 2009-08-10 13:08 321536 ----a-w- c:\windows\system32\WSDApi.dll
2009-11-11 02:30 . 2009-08-14 14:01 2031104 ----a-w- c:\windows\system32\win32k.sys
2009-11-11 02:19 . 2008-07-08 15:45 4984 ----a-w- c:\windows\system32\drivers\nvphy.bin
2009-11-11 02:15 . 2009-11-11 02:15 8192 d-----w- c:\windows\nvtmpinst
2009-11-10 02:31 . 2009-11-10 02:31 -------- d-----w- c:\program files\GSi
2009-11-10 01:33 . 2009-11-20 04:30 4096 d-----w- c:\users\Illmaculate\AppData\Roaming\OpenCandy
2009-11-10 01:33 . 2009-11-10 01:33 3828846 ----a-w- c:\users\Illmaculate\AppData\Roaming\OpenCandy\maximus_install.exe
2009-11-10 01:25 . 2009-11-10 01:32 4096 d-----w- c:\program files\ASIO4ALL v2
2009-11-10 01:24 . 2006-06-20 08:56 225280 ----a-w- c:\windows\system32\rewire.dll
2009-11-10 01:22 . 2009-11-10 01:38 4096 d-----w- c:\program files\VstPlugins
2009-11-10 01:22 . 2009-11-10 01:22 -------- d-----w- c:\program files\Outsim
2009-11-10 01:09 . 2009-11-10 01:38 4096 d-----w- c:\program files\Image-Line
2009-11-09 04:22 . 2008-06-20 01:18 105016 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-11-09 04:22 . 2008-06-20 01:17 97800 ----a-w- c:\windows\system32\infocardapi.dll
2009-11-09 04:22 . 2008-06-20 01:18 43544 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2009-11-09 04:22 . 2008-06-20 01:17 622080 ----a-w- c:\windows\system32\icardagt.exe
2009-11-09 04:22 . 2008-06-20 01:17 11264 ----a-w- c:\windows\system32\icardres.dll
2009-11-09 04:22 . 2008-06-20 01:18 781344 ----a-w- c:\windows\system32\PresentationNative_v0300.dll
2009-11-09 04:22 . 2008-06-20 01:18 326160 ----a-w- c:\windows\system32\PresentationHost.exe
2009-11-09 04:07 . 2008-07-27 18:00 96760 ----a-w- c:\windows\system32\dfshim.dll
2009-11-09 04:07 . 2008-07-27 18:00 282112 ----a-w- c:\windows\system32\mscoree.dll
2009-11-09 04:07 . 2008-07-27 18:00 41984 ----a-w- c:\windows\system32\netfxperf.dll
2009-11-09 04:07 . 2008-07-27 18:00 158720 ----a-w- c:\windows\system32\mscorier.dll
2009-11-09 04:06 . 2008-07-27 18:00 83968 ----a-w- c:\windows\system32\mscories.dll
2009-11-09 02:48 . 2009-05-18 22:17 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2009-11-09 02:48 . 2008-04-17 21:12 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2009-11-09 02:48 . 2009-11-09 02:48 -------- dc----w- c:\windows\system32\DRVSTORE
2009-11-09 02:13 . 2009-11-09 02:13 -------- d-----w- c:\users\Illmaculate\AppData\Local\Adobe
2009-11-05 16:06 . 2009-11-05 16:06 -------- d-----w- c:\users\Owner\AppData\Roaming\MSNInstaller
2009-11-05 04:32 . 2009-11-05 04:32 -------- d-----w- c:\users\Illmaculate\AppData\Roaming\SharePod
2009-11-05 03:23 . 2009-11-05 03:23 -------- d-----w- c:\windows\system32\config\systemprofile\{b87ef2d5-f374-4b40-b97f-e3f604a0ce74}
2009-11-05 03:20 . 2006-01-04 09:12 77824 ----a-w- c:\windows\system32\HPZIDS01.dll
2009-11-05 03:19 . 2006-04-10 22:03 38400 ----a-w- c:\windows\system32\hpz3l054.dll
2009-11-05 03:18 . 2009-11-05 03:20 32768 d-----w- c:\windows\system32\config\systemprofile\{b051f0c9-594b-4a33-bc0b-99844b97d526}
2009-11-05 03:18 . 2006-04-13 01:04 282624 ----a-w- c:\windows\system32\HPZc3212.dll
2009-11-05 03:18 . 2006-04-13 01:04 21568 ----a-w- c:\windows\system32\drivers\HPZius12.sys
2009-11-04 03:53 . 2009-11-14 21:14 -------- d-----w- c:\users\Illmaculate\AppData\Local\Apple Computer
2009-11-04 03:53 . 2009-11-04 04:00 4096 d-----w- c:\users\Illmaculate\AppData\Roaming\Apple Computer
2009-11-04 03:50 . 2009-11-09 02:47 -------- d-----w- c:\program files\iPod
2009-11-04 03:50 . 2009-11-04 03:52 -------- d-----w- c:\programdata\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-11-04 03:50 . 2009-11-09 02:48 4096 d-----w- c:\program files\iTunes
2009-11-04 03:49 . 2009-11-04 03:49 -------- d-----w- c:\program files\Bonjour
2009-11-04 03:47 . 2009-11-04 03:48 4096 d-----w- c:\program files\QuickTime
2009-11-04 03:47 . 2009-11-04 03:50 -------- d-----w- c:\programdata\Apple Computer
2009-11-04 03:46 . 2009-11-04 03:46 -------- d-----w- c:\users\Illmaculate\AppData\Local\Apple
2009-11-04 03:46 . 2009-11-04 03:46 4096 d-----w- c:\program files\Apple Software Update
2009-11-04 03:41 . 2009-11-04 03:56 -------- d-----w- c:\programdata\Apple
2009-11-04 03:41 . 2009-11-04 03:50 -------- d-----w- c:\program files\Common Files\Apple
2009-11-04 03:32 . 2009-11-04 03:32 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2009-11-04 03:25 . 2009-06-17 17:51 781435 ----a-w- c:\users\Illmaculate\AppData\Roaming\Mozilla\Firefox\Profiles\jpr7tha6.default\extensions\firedownload@mozilla.org\Download.dll
2009-11-04 03:25 . 2009-05-07 20:49 22528 ----a-w- c:\users\Illmaculate\AppData\Roaming\Mozilla\Firefox\Profiles\jpr7tha6.default\extensions\firedownload@mozilla.org\components\firedownload.dll
2009-11-04 03:18 . 2009-11-04 03:18 -------- d-----w- c:\users\Illmaculate\AppData\Local\Hewlett-Packard
2009-11-03 03:23 . 2009-11-04 02:54 -------- d-----w- c:\users\Illmaculate\Tracing
2009-11-03 03:23 . 2009-11-11 16:39 4096 d-----w- c:\program files\Microsoft Silverlight
2009-11-03 03:21 . 2009-11-03 03:22 4096 d-----w- c:\program files\Windows Live
2009-11-03 03:15 . 2009-11-03 03:15 -------- d-----w- c:\program files\Common Files\Windows Live
2009-11-03 02:52 . 2009-11-03 02:52 -------- d-----w- c:\users\Illmaculate\AppData\Local\Mozilla
2009-11-03 02:52 . 2009-11-03 02:52 -------- d-----w- c:\users\Illmaculate\AppData\Roaming\Hewlett-Packard
2009-11-02 14:46 . 2009-11-02 14:46 494592 ----a-w- c:\windows\system32\kerberos.dll
2009-11-02 14:46 . 2009-11-02 14:46 272384 ----a-w- c:\windows\system32\schannel.dll
2009-11-02 14:37 . 2009-11-20 02:53 -------- d-----w- c:\windows\system32\Service
2009-11-02 04:32 . 2009-11-02 04:32 -------- d-----w- c:\programdata\Trend Micro
2009-11-02 04:31 . 2009-11-20 03:02 4096 d-----w- c:\program files\Trend Micro
2009-11-02 04:29 . 2009-11-02 04:29 89872 ----a-w- c:\windows\system32\drivers\tmtdi.sys
2009-11-02 04:29 . 2009-11-02 04:29 59920 ----a-w- c:\windows\system32\drivers\tmactmon.sys
2009-11-02 04:29 . 2009-11-02 04:29 50704 ----a-w- c:\windows\system32\drivers\tmevtmgr.sys
2009-11-02 04:29 . 2009-11-02 04:29 36368 ----a-w- c:\windows\system32\drivers\tmpreflt.sys
2009-11-02 04:29 . 2009-11-02 04:29 225808 ----a-w- c:\windows\system32\drivers\tmxpflt.sys
2009-11-02 04:29 . 2009-11-02 04:29 158224 ----a-w- c:\windows\system32\drivers\tmcomm.sys
2009-11-02 04:29 . 2009-11-02 04:29 1223832 ----a-w- c:\windows\system32\drivers\vsapint.sys
2009-11-01 21:31 . 2009-05-13 23:39 1563008 ----a-w- c:\windows\WRSetup.dll
2009-11-01 20:37 . 2009-11-01 20:37 2048 ----a-w- c:\windows\system32\tzres.dll
2009-11-01 20:32 . 2009-11-01 20:32 61440 ----a-w- c:\windows\system32\winipsec.dll
2009-11-01 20:32 . 2009-11-01 20:32 361984 ----a-w- c:\windows\system32\IPSECSVC.DLL
2009-11-01 20:32 . 2009-11-01 20:32 28672 ----a-w- c:\windows\system32\FwRemoteSvr.dll
2009-11-01 20:32 . 2009-11-01 20:32 272896 ----a-w- c:\windows\system32\polstore.dll
2009-11-01 20:30 . 2009-11-01 20:30 241152 ----a-w- c:\windows\system32\PortableDeviceApi.dll
2009-11-01 20:30 . 2009-11-01 20:30 95232 ----a-w- c:\windows\system32\PortableDeviceClassExtension.dll
2009-11-01 20:30 . 2009-11-01 20:30 160768 ----a-w- c:\windows\system32\PortableDeviceTypes.dll
2009-11-01 20:30 . 2009-11-01 20:30 87040 ----a-w- c:\windows\system32\msoert2.dll
2009-11-01 20:30 . 2009-11-01 20:30 39424 ----a-w- c:\windows\system32\ACCTRES.dll
2009-11-01 20:30 . 2009-11-01 20:30 205824 ----a-w- c:\windows\system32\msoeacct.dll
2009-11-01 20:28 . 2009-11-01 20:28 704000 ----a-w- c:\windows\system32\PhotoScreensaver.scr
2009-11-01 20:28 . 2009-11-01 20:28 356352 ----a-w- c:\windows\system32\wbem\wbemcomn.dll
2009-11-01 20:28 . 2009-11-01 20:28 24064 ----a-w- c:\windows\system32\wtsapi32.dll
2009-11-01 20:28 . 2009-11-01 20:28 258232 ----a-w- c:\windows\system32\drivers\acpi.sys
2009-11-01 20:28 . 2009-11-01 20:28 542720 ----a-w- c:\windows\system32\sysmain.dll
2009-11-01 20:27 . 2009-11-01 20:27 194560 ----a-w- c:\windows\system32\WebClnt.dll
2009-11-01 20:27 . 2009-11-01 20:27 110080 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2009-11-01 20:27 . 2009-11-01 20:27 123904 ----a-w- c:\windows\system32\L2SecHC.dll
2009-11-01 20:27 . 2009-11-01 20:27 67584 ----a-w- c:\windows\system32\wlanhlp.dll
2009-11-01 20:27 . 2009-11-01 20:27 502272 ----a-w- c:\windows\system32\wlansvc.dll
2009-11-01 20:27 . 2009-11-01 20:27 47104 ----a-w- c:\windows\system32\wlanapi.dll
2009-11-01 20:27 . 2009-11-01 20:27 290816 ----a-w- c:\windows\system32\wlanmsm.dll
2009-11-01 20:27 . 2009-11-01 20:27 297984 ----a-w- c:\windows\system32\wlansec.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-11-27 01:19 . 2009-10-30 03:11 0 ----a-w- c:\windows\win32k.sys
2009-11-12 04:14 . 2009-10-30 02:13 92472 ----a-w- c:\users\Owner\AppData\Local\GDIPFONTCACHEV1.DAT
2009-11-11 16:39 . 2006-11-02 11:18 4096 d-----w- c:\program files\Windows Mail
2009-11-11 05:57 . 2007-04-25 19:15 8192 d-----w- c:\programdata\Microsoft Help
2009-11-10 04:14 . 2007-04-25 19:15 28672 d-----w- c:\program files\Microsoft Works
2009-11-01 21:54 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Calendar
2009-11-01 21:53 . 2006-11-02 12:37 4096 d-----w- c:\program files\Windows Defender
2009-11-01 21:53 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2009-11-01 21:32 . 2009-11-01 21:32 775168 ----a-w- c:\windows\isRS-000.tmp
2009-11-01 21:24 . 2009-10-30 02:33 164 ----a-w- c:\windows\install.dat
2009-11-01 20:29 . 2009-11-01 20:29 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
2009-11-01 20:29 . 2009-11-01 20:29 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE
2009-11-01 20:29 . 2009-11-01 20:29 27136 ----a-w- c:\windows\system32\NETSTAT.EXE
2009-11-01 20:29 . 2009-11-01 20:29 15360 ----a-w- c:\windows\system32\netevent.dll
2009-11-01 20:29 . 2009-11-01 20:29 11264 ----a-w- c:\windows\system32\MRINFO.EXE
2009-11-01 20:29 . 2009-11-01 20:29 103936 ----a-w- c:\windows\system32\netiohlp.dll
2009-11-01 20:29 . 2009-11-01 20:29 10240 ----a-w- c:\windows\system32\finger.exe
2009-11-01 20:29 . 2009-11-01 20:29 19968 ----a-w- c:\windows\system32\ARP.EXE
2009-11-01 20:29 . 2009-11-01 20:29 17920 ----a-w- c:\windows\system32\ROUTE.EXE
2009-11-01 20:29 . 2009-11-01 20:29 22016 ----a-w- c:\windows\system32\netiougc.exe
2009-11-01 20:29 . 2009-11-01 20:29 213592 ----a-w- c:\windows\system32\drivers\netio.sys
2009-11-01 20:29 . 2009-11-01 20:29 167424 ----a-w- c:\windows\system32\tcpipcfg.dll
2009-11-01 20:29 . 2009-11-01 20:29 813568 ----a-w- c:\windows\system32\drivers\tcpip.sys
2009-11-01 20:18 . 2009-11-01 20:18 1808896 ----a-w- c:\windows\system32\NlsLexicons0046.dll
2009-11-01 18:39 . 2009-11-01 18:39 40960 ----a-w- c:\windows\system32\srclient.dll
2009-11-01 04:35 . 2006-11-02 12:37 4096 d-----w- c:\program files\Windows Sidebar
2009-11-01 04:35 . 2007-04-25 19:25 4096 d-----w- c:\programdata\Symantec
2009-10-31 21:09 . 2007-04-25 19:25 12288 d-----w- c:\program files\Common Files\Symantec Shared
2009-10-31 02:07 . 2009-10-31 02:07 -------- d-----w- c:\program files\MSXML 4.0
2009-10-30 03:23 . 2009-10-30 03:23 -------- d-----w- c:\programdata\Yahoo! Companion
2009-10-30 03:20 . 2009-10-30 03:20 1864 --sha-r- c:\windows\system32\drivers\103C_HP_CPC_GC671AA-ABA a6130n_YC_0Pavi_QCNX724_E73NAv3PrA1_49_INettle2_SECS_V1.0_B5.11_T070605_WUH0_L409_M2942_J400_7AMD_8Athlon 64 X2 Dual Core_92.6_#091030_N10DE03EF_Z14F12F20_G10DE03D0.MRK
2009-10-30 02:41 . 2009-10-30 02:41 -------- d-----w- c:\program files\MSSOAP
2009-10-30 02:14 . 2007-04-25 19:42 -------- d-----w- c:\programdata\Hewlett-Packard
2009-10-30 02:14 . 2009-10-30 02:07 -------- d-----w- c:\users\Owner\AppData\Roaming\Hewlett-Packard
2009-10-30 02:13 . 2009-10-30 02:13 -------- d-----w- c:\users\Owner\AppData\Roaming\Snapfish
2009-10-30 02:02 . 2009-10-30 02:02 2421760 ----a-w- c:\windows\system32\wucltux.dll
2009-10-30 02:02 . 2009-10-30 02:02 53472 ----a-w- c:\windows\system32\wuauclt.exe
2009-10-30 02:02 . 2009-10-30 02:02 44768 ----a-w- c:\windows\system32\wups2.dll
2009-10-30 02:02 . 2009-10-30 02:02 1929952 ----a-w- c:\windows\system32\wuaueng.dll
2009-10-30 02:01 . 2009-10-30 02:01 87552 ----a-w- c:\windows\system32\wudriver.dll
2009-10-30 02:01 . 2009-10-30 02:01 575704 ----a-w- c:\windows\system32\wuapi.dll
2009-10-30 02:01 . 2009-10-30 02:01 35552 ----a-w- c:\windows\system32\wups.dll
2009-10-30 02:01 . 2009-10-30 02:01 33792 ----a-w- c:\windows\system32\wuapp.exe
2009-10-30 02:01 . 2009-10-30 02:01 171608 ----a-w- c:\windows\system32\wuwebv.dll
2009-10-30 02:00 . 2009-10-30 02:00 -------- d-sh--we c:\programdata\Templates
2009-10-30 02:00 . 2009-10-30 02:00 -------- d-sh--we c:\programdata\Start Menu
2009-10-30 02:00 . 2009-10-30 02:00 -------- d-sh--we c:\programdata\Favorites
2009-10-30 02:00 . 2009-10-30 02:00 -------- d-sh--we c:\programdata\Documents
2009-10-30 02:00 . 2009-10-30 02:00 -------- d-sh--we c:\programdata\Desktop
2009-10-29 04:58 . 2009-10-29 04:58 79144 ----a-w- c:\programdata\Apple Computer\Installer Cache\iTunes 9.0.2.25\SetupAdmin.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HPADVISOR"="c:\program files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autoRun" [X]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-10-31 1232896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2009-11-01 1006264]
"hpsysdrv"="c:\hp\support\hpsysdrv.exe" [2006-09-28 65536]
"KBD"="c:\hp\KBD\KbdStub.EXE" [2006-12-08 65536]
"OsdMaestro"="c:\program files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" [2007-02-15 118784]
"NvSvc"="c:\windows\system32\nvsvc.dll" [2008-05-23 526880]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-23 13539872]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-05-23 92704]
"SnapfishMediaDetector"="c:\program files\Snapfish Media Detector\SnapfishMediaDetector.exe" [2007-03-02 1441792]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2005-02-17 49152]
"SSDMonitor"="c:\program files\Common Files\PC Tools\sMonitor\SSDMonitor.exe" [2009-10-14 104408]
"UfSeAgnt.exe"="c:\program files\Trend Micro\Internet Security\UfSeAgnt.exe" [2009-11-02 1020248]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-09-05 417792]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-10-29 141600]
"RtHDVCpl"="RtHDVCpl.exe" - c:\windows\RtHDVCpl.exe [2007-03-01 4390912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"="c:\windows\SMINST\launcher.exe" [2007-03-07 44168]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Snapfish Media Detector.lnk - c:\program files\Snapfish Media Detector\SnapfishMediaDetector.exe [2007-3-2 1441792]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
R2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\Common Files\PC Tools\sMonitor\StartManSvc.exe [10/31/2009 1:24 PM 583640]
R2 tmpreflt;tmpreflt;c:\windows\System32\drivers\tmpreflt.sys [11/1/2009 9:29 PM 36368]
S3 PCD5SRVC{BD6912E3-AC9D80E8-05010004};PCD5SRVC{BD6912E3-AC9D80E8-05010004} - PCDR Kernel Mode Service Helper Driver;c:\progra~1\PC-DOC~1\PCD5SRVC.pkms [3/2/2007 3:06 PM 28144]
S3 tmevtmgr;tmevtmgr;c:\windows\System32\drivers\tmevtmgr.sys [11/1/2009 9:29 PM 50704]
S3 TmProxy;Trend Micro Proxy Service;c:\program files\Trend Micro\Internet Security\TmProxy.exe [11/1/2009 9:34 PM 689416]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=73&bd=Pavilion&pf=desktop
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=73&bd=Pavilion&pf=desktop
uInternet Settings,ProxyOverride = *.local
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Illmaculate\AppData\Roaming\Mozilla\Firefox\Profiles\jpr7tha6.default\
FF - component: c:\users\Illmaculate\AppData\Roaming\Mozilla\Firefox\Profiles\jpr7tha6.default\extensions\firedownload@mozilla.org\components\firedownload.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-11-29 21:17
Windows 6.0.6000 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\PCD5SRVC{BD6912E3-AC9D80E8-05010004}]
"ImagePath"="\??\c:\progra~1\PC-DOC~1\PCD5SRVC.pkms"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Completion time: 2009-11-29 21:19
ComboFix-quarantined-files.txt 2009-11-30 04:19
ComboFix2.txt 2009-11-27 21:56
Pre-Run: 213,223,694,336 bytes free
Post-Run: 213,206,851,584 bytes free
- - End Of File - - 7D531E7B0AC82527C41402329A3B4515