Hi, thank you for helping me with this.
Here's the ComboFix log.
ComboFix 08-01-23.1C - Compaq_Owner 2008-01-26 1:07:09.2 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.533 [GMT -7:00]
Running from: C:\Documents and Settings\Compaq_Owner\Desktop\ComboFix.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\WINDOWS\system32\pmnli.dll
.
---- Previous Run -------
.
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
C:\Documents and Settings\Compaq_Owner\Application Data\MANTEC~1
C:\Documents and Settings\Compaq_Owner\Application Data\WinTouch
C:\Documents and Settings\Compaq_Owner\Application Data\WinTouch\wintouch.cfg
C:\Documents and Settings\Compaq_Owner\Application Data\WinTouch\WinTouch.exe
C:\Documents and Settings\Compaq_Owner\Application Data\WinTouch\WTUninstaller.exe
C:\Documents and Settings\Compaq_Owner\My Documents\MANTEC~1
C:\Documents and Settings\Compaq_Owner\My Documents\MANTEC~1\umm...essay thing.wps
C:\Program Files\mediapipe
C:\Program Files\mediapipe\Agent.dll
C:\Program Files\mediapipe\insdl.dll
C:\Program Files\mediapipe\install.log
C:\Program Files\mediapipe\ItBill_terms.txt
C:\Program Files\mediapipe\MediaPipe.ini
C:\Program Files\mediapipe\p2pl.exe
C:\Program Files\mediapipe\register.dll
C:\Program Files\QdrDrive
C:\Program Files\Router
C:\Program Files\Router\Router.exe
C:\Program Files\Router\UnInstall.exe
C:\Temp\1cb
C:\Temp\1cb\syscheck.log
C:\temp\tn3
C:\Temp\tpBe12
C:\Temp\tpBe12\etFr.log
C:\WINDOWS\b148.exe
C:\WINDOWS\cookies.ini
C:\WINDOWS\crosof~1
C:\WINDOWS\mrofinu1000106.exe
C:\WINDOWS\mrofinu572.exe
C:\WINDOWS\system32\abc2
C:\WINDOWS\system32\abc2\bmbrpl2.exe
C:\WINDOWS\system32\acaaxyoc.dll
C:\WINDOWS\system32\ex1
C:\WINDOWS\system32\eyhadwlq.dll
C:\WINDOWS\system32\fitcjklw.dll
C:\WINDOWS\system32\fuonwmgd.dll
C:\WINDOWS\system32\hiupjcya.dll
C:\WINDOWS\system32\iapsjblb.exe
C:\WINDOWS\system32\ilnmp.ini
C:\WINDOWS\system32\ilnmp.ini2
C:\WINDOWS\system32\ineWc01
C:\WINDOWS\system32\ineWc01\ineWc011065.exe
C:\WINDOWS\system32\jbtcugsh.dll
C:\WINDOWS\system32\jdrbjhex.dll
C:\WINDOWS\system32\jfrraftn.dll
C:\WINDOWS\system32\jlcgsaty.dll
C:\WINDOWS\system32\knnmp.ini
C:\WINDOWS\system32\knnmp.ini2
C:\WINDOWS\system32\ksbckcem.exe
C:\WINDOWS\system32\kuikusp.dll
C:\WINDOWS\system32\ldsabnbt.dll
C:\WINDOWS\system32\lufyclve.dll
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\mremeyri.dll
C:\WINDOWS\system32\nnnkjjj.dll
C:\WINDOWS\system32\nqoobcms.dll
C:\WINDOWS\system32\nyyssqgr.dll
C:\WINDOWS\system32\oc9
C:\WINDOWS\system32\onnmp.ini
C:\WINDOWS\system32\onnmp.ini2
C:\WINDOWS\system32\pac.txt
C:\WINDOWS\system32\pbtiaapk.exe
C:\WINDOWS\system32\qmoaveec.exe
C:\WINDOWS\system32\qqgugrmb.dll
C:\WINDOWS\system32\qwaoukdn.dll
C:\WINDOWS\system32\rgqssyyn.ini
C:\WINDOWS\system32\sawsfxqp.dll
C:\WINDOWS\system32\shel9
C:\WINDOWS\system32\symjsvuo.exe
C:\WINDOWS\system32\tdwlwtsm.dll
C:\WINDOWS\system32\uvgybvys.dll
C:\WINDOWS\system32\vccdjpnx.exe
C:\WINDOWS\system32\vsjhldmj.exe
C:\WINDOWS\system32\wcpsvcc.exe
C:\WINDOWS\system32\wlkjctif.ini
C:\WINDOWS\system32\xieujqeu.dll
C:\WINDOWS\system32\yhwesytm.dll
D:\Autorun.inf
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\LEGACY_CORE
-------\LEGACY_DOMAINSERVICE
-------\LEGACY_NETWORK_MONITOR
-------\DomainService
((((((((((((((((((((((((( Files Created from 2007-12-26 to 2008-01-26 )))))))))))))))))))))))))))))))
.
2008-01-26 00:52 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\Nircmd.exe
2008-01-25 23:35 . 2008-01-26 00:40 <DIR> d-------- C:\Program Files\Sony
2008-01-23 18:44 . 2008-01-24 17:20 1,426 ---hs---- C:\WINDOWS\system32\bffqjctj.ini
2008-01-22 18:35 . 2008-01-23 18:35 1,134 ---hs---- C:\WINDOWS\system32\bhqvqhsv.ini
2008-01-21 17:01 . 2008-01-22 18:32 714 ---hs---- C:\WINDOWS\system32\lblylhwa.ini
2008-01-20 16:22 . 2008-01-21 16:58 714 ---hs---- C:\WINDOWS\system32\pwhhyajh.ini
2008-01-19 15:04 . 2008-01-20 16:19 354 ---hs---- C:\WINDOWS\system32\pwtfrynd.ini
2008-01-17 21:01 . 2008-01-17 21:14 354 ---hs---- C:\WINDOWS\system32\wswiybhw.ini
2008-01-17 07:53 . 2008-01-17 20:06 474 ---hs---- C:\WINDOWS\system32\glnlrcvu.ini
2008-01-15 16:29 . 2008-01-17 21:11 <DIR> d-------- C:\VundoFix Backups
2008-01-14 16:02 . 2008-01-14 16:02 1,033,216 --a------ C:\WINDOWS\system32\dllcache\explorer.exe
2008-01-14 16:02 . 2008-01-14 16:02 1,033,216 --a------ C:\WINDOWS\Explorer.EXE
2008-01-13 19:20 . 2008-01-13 19:20 552 --a------ C:\WINDOWS\system32\d3d8caps.dat
2008-01-13 18:45 . 2008-01-14 16:51 3,474 ---hs---- C:\WINDOWS\system32\hcfvxavg.ini
2008-01-13 15:48 . 2008-01-13 15:48 2,694 ---hs---- C:\WINDOWS\system32\htopqmqs.ini
2008-01-13 15:46 . 2008-01-26 00:41 16,624 --a------ C:\WINDOWS\BM9306bfba.xml
2008-01-13 15:46 . 2008-01-26 00:29 22 --a------ C:\WINDOWS\pskt.ini
2008-01-13 12:41 . 2008-01-13 12:42 2,634 ---hs---- C:\WINDOWS\system32\siisktvu.ini
2008-01-10 18:31 . 2008-01-13 12:35 2,574 ---hs---- C:\WINDOWS\system32\vmeyokfr.ini
2008-01-07 16:26 . 2008-01-10 18:31 2,454 ---hs---- C:\WINDOWS\system32\hvjbormc.ini
2008-01-06 16:30 . 2008-01-06 16:30 2,154 ---hs---- C:\WINDOWS\system32\ldvmpqii.ini
2008-01-06 10:02 . 2008-01-06 16:24 2,094 ---hs---- C:\WINDOWS\system32\clreuols.ini
2008-01-04 18:43 . 2008-01-06 09:59 1,974 ---hs---- C:\WINDOWS\system32\agrscidh.ini
2008-01-04 13:58 . 2008-01-04 18:29 1,794 ---hs---- C:\WINDOWS\system32\aapuaklr.ini
2008-01-01 20:20 . 2008-01-04 13:55 1,614 ---hs---- C:\WINDOWS\system32\fpgnbttm.ini
2007-12-31 17:30 . 2008-01-01 20:17 1,434 ---hs---- C:\WINDOWS\system32\ybjkplaj.ini
2007-12-29 13:47 . 2008-01-17 21:21 <DIR> d-------- C:\Program Files\Trend Micro
2007-12-29 13:02 . 2007-12-29 15:02 625,152 --a------ C:\WINDOWS\system32\dllcache\iexplore.exe
2007-12-29 12:29 . 2007-12-31 17:28 954 ---hs---- C:\WINDOWS\system32\pgpcekok.ini
2007-12-28 12:18 . 2007-12-29 12:26 414 ---hs---- C:\WINDOWS\system32\tamevpiu.ini
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-26 06:37 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-01-18 23:36 --------- d-----w C:\Program Files\a-squared Anti-Malware
2008-01-15 13:56 --------- d-----w C:\Program Files\Microsoft Digital Image 10
2007-12-22 07:20 --------- d-----w C:\Program Files\microsoft frontpage
2007-12-22 01:08 --------- d-----w C:\Program Files\MP3 Player Utilities 4.18
2007-12-21 21:10 --------- d-----w C:\Program Files\Yahoo!
2007-12-17 06:09 --------- d-----w C:\Program Files\SUPERAntiSpyware
2007-12-17 06:09 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2007-12-17 06:08 --------- d-----w C:\Program Files\Enigma Software Group
2007-12-15 18:09 39,936 ----a-w C:\WINDOWS\mrofinu572.exe.tmp
2007-12-13 05:24 --------- d-----w C:\Program Files\e-Sword
2005-01-11 17:23 3,645,440 ----a-w C:\Program Files\e-Sword.exe
2005-07-29 23:24 472 --sha-r C:\WINDOWS\UmljaGFyZCBBcmNodWxldGE\oA53u3IVtF11wAhCxqU5x3H.vbs
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{1118974E-D28A-4CED-B32F-EAC47B55E0E2}]
C:\WINDOWS\system32\gebyy.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{4C9C2502-715E-4AC8-84F9-C91D0F3D36AC}]
C:\WINDOWS\system32\pmnno.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{CB8D929F-CD1C-4A85-AFFD-51BDE98217B2}]
C:\PROGRAM FILES\MSN\HOKEV83122.DLL
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{E0CB963A-5E29-4F49-C583-28EF4395BE61}]
C:\Program Files\microsoft frontpage\lavupah465.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 04:00 15360]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-06-13 14:41 68856]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 04:00 15360]
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\
0]
Source= C:\Program Files\microsoft frontpage\profsydyb.html
FriendlyName=
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=C:\WINDOWS\pss\Adobe Reader Speed Launch.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Compaq Connections.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Compaq Connections.lnk
backup=C:\WINDOWS\pss\Compaq Connections.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Event Reminder.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Event Reminder.lnk
backup=C:\WINDOWS\pss\Event Reminder.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=C:\WINDOWS\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Image Zone Fast Start.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Image Zone Fast Start.lnk
backup=C:\WINDOWS\pss\HP Image Zone Fast Start.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Microsoft Office.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk
backup=C:\WINDOWS\pss\Microsoft Office.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^SpySubtract.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\SpySubtract.lnk
backup=C:\WINDOWS\pss\SpySubtract.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^ymetray.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ymetray.lnk
backup=C:\WINDOWS\pss\ymetray.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^Compaq_Owner^Start Menu^Programs^Startup^WkCalRem.LNK]
path=C:\Documents and Settings\Compaq_Owner\Start Menu\Programs\Startup\WkCalRem.LNK
backup=C:\WINDOWS\pss\WkCalRem.LNKStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\90358c26]
C:\WINDOWS\system32\mghufopw.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AGRSMMSG]
--a------ 2004-06-29 10:06 88363 C:\WINDOWS\AGRSMMSG.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BM9306bfba]
C:\WINDOWS\system32\trflilhq.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccApp]
--a------ 2004-08-27 16:22 58488 c:\Program Files\Common Files\Symantec Shared\ccApp.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Cgvoy]
C:\Documents and Settings\Compaq_Owner\My Documents\??mantec\m?iexec.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
--a------ 2004-08-04 04:00 15360 C:\WINDOWS\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
--a------ 2005-12-07 17:01 120320 C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPDJ Taskbar Utility]
--a------ 2004-04-06 03:28 172032 C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb11.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPHmon06]
--a------ 2004-06-06 21:42 659456 C:\WINDOWS\system32\hphmon06.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpsysdrv]
--a------ 1998-05-07 09:04 52736 c:\windows\system\hpsysdrv.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
--a------ 2004-08-04 04:00 208952 C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IS CfgWiz]
--a------ 2004-08-17 15:36 132248 c:\Program Files\Norton Internet Security\cfgwiz.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
--a------ 2006-09-25 13:54 229952 C:\Program Files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KBD]
--a------ 2003-02-11 12:02 61440 C:\HP\KBD\KBD.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LSBWatcher]
--a------ 2004-10-14 14:54 253952 c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MediaPipe P2P Loader]
C:\Program Files\p2pnetworks\mpp2pl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--a------ 2004-10-13 09:24 1694208 C:\Program Files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSPY2002]
--a------ 2004-08-04 04:00 59392 C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]
--a------ 2004-08-04 04:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]
--a------ 2004-08-04 04:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QdrPack10]
C:\Program Files\QdrPack\QdrPack10.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2006-09-24 02:24 282624 C:\Program Files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Router]
C:\Program Files\Router\Router.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SfKg6w]
--a------ 2007-12-16 11:25 35840 C:\Documents and Settings\Compaq_Owner\Application Data\Microsoft\Windows\rayiou.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Srro]
C:\WINDOWS\CROSOF~1\mshta.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSC_UserPrompt]
--a------ 2004-08-05 10:23 218240 c:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
--a------ 2007-06-13 14:41 68856 C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
--a------ 2005-02-22 22:32 180269 C:\Program Files\Common Files\Real\Update_OB\realsched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WebBuying]
C:\Program Files\Web Buying\v1.8.6\webbuying.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
--a------ 2006-06-21 10:14 35328 C:\Program Files\Winamp\winampa.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinTouch]
C:\Documents and Settings\Compaq_Owner\Application Data\WinTouch\WinTouch.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zune Launcher]
--a------ 2007-11-15 21:51 166304 c:\Program Files\Zune\ZuneLauncher.exe
R2 zumbus;Zune Bus Enumerator Driver;C:\WINDOWS\system32\DRIVERS\zumbus.sys [2007-11-15 21:38]
R2 ZuneBusEnum;Zune Bus Enumerator;c:\WINDOWS\system32\ZuneBusEnum.exe [2007-11-15 21:51]
S3 GrooveInstallerService;Groove Installer Service;C:\Program Files\Groove Networks\Groove\Bin\GrooveInstallerService.exe [2003-03-28 17:35]
S3 ZuneWlanCfgSvc;Zune Wireless Configuration Service;c:\WINDOWS\system32\ZuneWlanCfgSvc.exe [2007-11-15 21:51]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{946850c5-1e27-11d9-baf0-806d6172696f}]
\Shell\AutoRun\command - D:\setup.exe
.
Contents of the 'Scheduled Tasks' folder
"2007-10-16 19:15:00 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-01-25 04:26:00 C:\WINDOWS\Tasks\HP Usg Daily FY04.job"
- C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\pexpress\hphped06.exe
"2005-02-23 06:07:38 C:\WINDOWS\Tasks\Symantec NetDetect.job"
- C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-01-26 01:13:14
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
PROCESS: C:\WINDOWS\system32\lsass.exe [5.01.2600.2180]
-> C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork1.dll
.
Completion time: 2008-01-26 1:15:34 - machine was rebooted [Compaq_Owner]
ComboFix-quarantined-files.txt 2008-01-26 08:15:31
.
2008-01-14 03:19:49 --- E O F ---