Ah sorry, here is the Combofix report. I was a little nervous to run it given how unstable my computer's been running scans lately, but I think it ran okay. I was a little startled when it restarted the computer but I guess it's supposed to do that?
ComboFix 12-10-26.05 - Zarla 10/26/2012 11:27:16.1.4 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3199.2632 [GMT -7:00]
Running from: c:\documents and settings\Zarla\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
AV: Outpost Security Suite *Disabled/Updated* {8A20CA2A-9E02-4A64-923B-0A38208EB7FD}
FW: Outpost Security Suite *Disabled* {8A20CA2A-9E02-4A64-923B-0A38208EB7FD}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\TEMP
c:\documents and settings\Zarla\WINDOWS
c:\windows\Fonts\Pokemon Unown GB.fon
c:\windows\system32\PowerToyReadme.htm
.
.
((((((((((((((((((((((((( Files Created from 2012-09-26 to 2012-10-26 )))))))))))))))))))))))))))))))
.
.
2012-10-22 21:37 . 2011-03-21 23:27 708760 ----a-w- c:\windows\system32\drivers\SandBox.sys
2012-10-22 21:37 . 2011-02-03 00:04 242040 ----a-w- c:\windows\system32\drivers\VBEngNT.sys
2012-10-22 21:37 . 2010-09-27 22:40 267624 ----a-w- c:\windows\system32\drivers\afwcore.sys
2012-10-22 21:37 . 2010-04-20 23:05 34280 ----a-w- c:\windows\system32\drivers\afw.sys
2012-10-22 21:36 . 2012-10-26 17:01 -------- d-----w- c:\windows\system32\Filt
2012-10-22 21:36 . 2012-10-22 21:36 -------- d-----w- c:\program files\Agnitum
2012-10-22 21:36 . 2012-10-22 21:36 -------- d-----w- c:\documents and settings\Zarla\Application Data\Agnitum
2012-10-22 21:36 . 2012-10-22 21:36 -------- d-----w- c:\documents and settings\All Users\Application Data\Agnitum
2012-10-22 05:22 . 2012-09-25 06:16 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2012-10-21 15:54 . 2012-10-21 15:54 -------- d-----w- c:\program files\ESET
2012-10-21 15:22 . 2012-10-21 15:22 -------- d-----w- C:\_OTL
2012-10-15 00:14 . 2012-10-15 00:14 -------- d-----w- c:\documents and settings\All Users\Application Data\ATI
2012-10-15 00:10 . 2012-10-15 00:10 -------- d-----w- c:\windows\system32\config\systemprofile\Local Settings\Application Data\ATI
2012-10-15 00:10 . 2012-10-15 00:10 -------- d-----w- c:\windows\system32\config\systemprofile\Application Data\ATI
2012-10-14 16:21 . 2001-08-17 20:28 54186 -c--a-w- c:\windows\system32\dllcache\otcsercb.sys
2012-10-14 16:21 . 2001-08-17 19:12 43689 -c--a-w- c:\windows\system32\dllcache\otceth5.sys
2012-10-14 16:21 . 2001-08-17 19:12 27209 -c--a-w- c:\windows\system32\dllcache\otc06x5.sys
2012-10-14 16:21 . 2001-08-17 19:20 54528 -c--a-w- c:\windows\system32\dllcache\opl3sax.sys
2012-10-14 16:21 . 2008-04-14 07:16 61696 -c--a-w- c:\windows\system32\dllcache\ohci1394.sys
2012-10-14 16:21 . 2001-08-17 19:50 198144 -c--a-w- c:\windows\system32\dllcache\nv3.sys
2012-10-14 16:21 . 2001-08-18 05:36 123776 -c--a-w- c:\windows\system32\dllcache\nv3.dll
2012-10-14 16:21 . 2001-08-17 19:49 51552 -c--a-w- c:\windows\system32\dllcache\ntgrip.sys
2012-10-14 16:18 . 2001-08-17 20:47 9344 -c--a-w- c:\windows\system32\dllcache\ntapm.sys
2012-10-14 16:18 . 2008-04-14 07:24 28672 -c--a-w- c:\windows\system32\dllcache\nscirda.sys
2012-10-14 16:18 . 2001-08-17 20:53 7552 -c--a-w- c:\windows\system32\dllcache\nsmmc.sys
2012-10-14 16:18 . 2001-08-17 19:20 87040 -c--a-w- c:\windows\system32\dllcache\nm6wdm.sys
2012-10-14 16:18 . 2001-08-17 19:20 126080 -c--a-w- c:\windows\system32\dllcache\nm5a2wdm.sys
2012-10-14 16:18 . 2001-08-17 19:12 32840 -c--a-w- c:\windows\system32\dllcache\ngrpci.sys
2012-10-14 16:18 . 2008-04-14 05:05 132695 -c--a-w- c:\windows\system32\dllcache\netwlan5.sys
2012-10-14 16:18 . 2001-08-17 19:11 65278 -c--a-w- c:\windows\system32\dllcache\netflx3.sys
2012-10-14 16:18 . 2001-08-17 19:50 39264 -c--a-w- c:\windows\system32\dllcache\neo20xx.sys
2012-10-14 16:18 . 2001-08-18 05:36 60480 -c--a-w- c:\windows\system32\dllcache\neo20xx.dll
2012-10-14 16:16 . 2001-08-17 19:50 320384 -c--a-w- c:\windows\system32\dllcache\mgaum.sys
2012-10-14 16:16 . 2008-04-14 07:11 26112 -c--a-w- c:\windows\system32\dllcache\memstpci.sys
2012-10-14 16:16 . 2001-08-17 21:56 235648 -c--a-w- c:\windows\system32\dllcache\mgaud.dll
2012-10-14 16:16 . 2001-08-18 05:36 47616 -c--a-w- c:\windows\system32\dllcache\memgrp.dll
2012-10-14 16:16 . 2001-08-17 20:58 8320 -c--a-w- c:\windows\system32\dllcache\memcard.sys
2012-10-14 16:16 . 2001-08-17 19:12 164586 -c--a-w- c:\windows\system32\dllcache\mdgndis5.sys
2012-10-14 16:16 . 2001-08-17 20:52 7424 -c--a-w- c:\windows\system32\dllcache\mammoth.sys
2012-10-14 16:14 . 2001-08-18 05:36 372824 -c--a-w- c:\windows\system32\dllcache\iconf32.dll
2012-10-14 16:13 . 2001-08-17 20:28 150239 -c--a-w- c:\windows\system32\dllcache\hsf_amos.sys
2012-10-14 16:12 . 2001-08-17 19:13 27165 -c--a-w- c:\windows\system32\dllcache\fetnd5.sys
2012-10-14 16:11 . 2001-08-17 19:10 55999 -c--a-w- c:\windows\system32\dllcache\el556nd5.sys
2012-10-14 16:10 . 2001-08-18 05:36 175104 -c--a-w- c:\windows\system32\dllcache\csamsp.dll
2012-10-14 16:09 . 2001-08-17 20:52 26496 -c--a-w- c:\windows\system32\dllcache\asc.sys
2012-10-14 15:46 . 2012-03-06 17:27 66520 ----a-w- c:\program files\Mozilla Firefox\plugins\npnul32.dll
2012-10-13 08:29 . 2012-10-13 08:29 -------- d-----w- C:\1da8f621714b45561fd86f83fdc1
2012-10-13 02:57 . 2012-10-13 02:57 -------- d-----w- c:\program files\ASIO4ALL v2
2012-10-11 20:49 . 2012-10-11 21:30 -------- d-----w- c:\documents and settings\Zarla\Application Data\MeldaProduction
2012-10-11 10:56 . 2012-10-11 10:56 -------- d-----w- c:\documents and settings\Zarla\Application Data\Avira
2012-10-11 10:53 . 2012-10-02 00:14 134184 ----a-w- c:\windows\system32\drivers\avipbb.sys
2012-10-11 10:53 . 2012-09-24 16:58 36552 ----a-w- c:\windows\system32\drivers\avkmgr.sys
2012-10-11 10:53 . 2012-09-13 17:58 83792 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2012-10-11 10:52 . 2012-10-11 10:52 -------- d-----w- c:\program files\Avira
2012-10-11 10:52 . 2012-10-11 10:52 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira
2012-10-10 05:30 . 2012-10-21 15:22 -------- d-----w- c:\documents and settings\Administrator
2012-10-07 22:11 . 2012-10-07 22:11 -------- d-----w- c:\documents and settings\Zarla\Application Data\CoCo Systems
2012-10-07 22:06 . 2012-10-07 22:06 -------- d-----w- c:\documents and settings\All Users\Application Data\CoCo Systems
2012-10-07 22:06 . 2012-10-07 22:06 -------- d-----w- c:\program files\CoCo Systems
2012-10-06 11:50 . 2012-10-06 11:50 -------- d-----w- c:\documents and settings\Zarla\Local Settings\Application Data\SourceTec
2012-10-06 11:50 . 2012-10-06 11:50 -------- d-----w- c:\program files\Common Files\SourceTec
2012-10-06 11:50 . 2012-10-06 11:50 -------- d-----w- c:\program files\SourceTec
2012-10-06 11:23 . 2012-10-13 08:48 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-10-01 04:09 . 2012-10-01 04:09 -------- d-----w- c:\program files\ERUNT
2012-09-30 16:22 . 2012-10-26 18:32 -------- d-----w- c:\windows\system32\config\systemprofile\Application Data\WTablet
2012-09-30 07:03 . 2012-09-30 16:23 -------- d-----w- c:\documents and settings\All Users\Application Data\AVAST Software
2012-09-30 07:03 . 2012-09-30 07:03 -------- d-----w- c:\program files\AVAST Software
2012-09-29 16:10 . 2012-09-29 16:10 -------- d-----w- c:\documents and settings\Zarla\Local Settings\Application Data\PCHealth
2012-09-29 13:15 . 2012-09-29 13:15 -------- d-----w- c:\windows\system32\config\systemprofile\Local Settings\Application Data\ServiceTest
2012-09-29 13:10 . 2008-04-14 09:42 221184 ----a-w- c:\windows\system32\wmpns.dll
2012-09-29 07:55 . 2012-09-29 07:55 -------- d-----w- c:\documents and settings\Zarla\Application Data\Malwarebytes
2012-09-29 07:54 . 2012-09-29 07:54 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2012-09-29 07:54 . 2012-09-30 02:54 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-09-29 07:54 . 2012-10-22 21:56 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-09-29 03:19 . 2012-10-13 08:48 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-10-26 18:39 . 2012-10-26 18:39 1409 ----a-w- c:\windows\QTFont.for
2012-09-01 21:07 . 2012-08-05 01:37 821736 ----a-w- c:\windows\system32\npDeployJava1.dll
2012-09-01 21:07 . 2012-08-05 01:37 746984 ----a-w- c:\windows\system32\deployJava1.dll
2012-08-28 15:14 . 2004-08-04 12:00 916992 ----a-w- c:\windows\system32\wininet.dll
2012-08-28 15:14 . 2004-08-04 12:00 43520 ----a-w- c:\windows\system32\licmgr10.dll
2012-08-28 15:14 . 2004-08-04 12:00 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2012-08-28 12:07 . 2004-08-04 12:00 385024 ----a-w- c:\windows\system32\html.iec
2012-08-20 04:43 . 2012-08-20 04:43 588 ----a-w- c:\windows\uninstallstickies.bat
2012-08-14 17:11 . 2012-08-14 17:11 685816 ----a-w- c:\windows\system32\drivers\sptd.sys
2006-05-03 09:06 163328 --sh--r- c:\windows\system32\flvDX.dll
2007-02-21 10:47 31232 --sh--r- c:\windows\system32\msfDX.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\Outpost]
@="{33C9E362-3EDA-4930-8AFE-5DA39A8BB77A}"
[HKEY_CLASSES_ROOT\CLSID\{33C9E362-3EDA-4930-8AFE-5DA39A8BB77A}]
2011-03-31 02:01 468128 ----a-w- c:\program files\Agnitum\Outpost Security Suite Free\op_shell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files\Steam\steam.exe" [2012-08-05 1353080]
"Taskbar Shuffle"="c:\program files\Taskbar Shuffle\taskbarshuffle.exe" [2008-04-17 818176]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
"RTHDCPL"="RTHDCPL.EXE" [2011-12-05 20065384]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2012-08-14 155648]
"PinnacleDriverCheck"="c:\windows\system32\PSDrvCheck.exe" [2004-03-10 406016]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-04 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-04 455168]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2006-02-23 278528]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2004-08-04 208952]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2012-09-25 386336]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-07-28 98304]
"OutpostMonitor"="c:\progra~1\Agnitum\OUTPOS~1\op_mon.exe" [2011-04-04 3107736]
"OutpostFeedBack"="c:\program files\Agnitum\Outpost Security Suite Free\feedback.exe" [2011-03-31 517056]
.
c:\documents and settings\Zarla\Start Menu\Programs\Startup\
ERUNT AutoBackup.lnk - c:\program files\ERUNT\AUTOBACK.EXE [2005-10-20 38912]
Last.fm Helper.lnk - c:\program files\Last.fm\LastFMHelper.exe [2012-8-14 106496]
Stickies.lnk - c:\program files\Stickies\stickies.exe [2012-8-19 1122304]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Run Nintendo Wi-Fi USB Connector Registration Tool.lnk - c:\program files\WiFiConnector\NintendoWFCReg.exe [2012-8-16 1073152]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\auditorium\\Auditorium.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\the binding of isaac\\Isaac.exe"=
"c:\\Program Files\\BitLord\\BitLord.exe"=
"c:\\Program Files\\WiFiConnector\\NintendoWFCReg.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\left 4 dead\\left4dead.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\cogs\\cogs.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\audiosurf\\engine\\QuestViewer.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\the sims 3\\Game\\Bin\\Sims3Launcher.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\the sims 3\\Support\\EA Help\\Electronic_Arts_Technical_Support.htm"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\left 4 dead 2\\left4dead2.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
.
R0 ahcix86;ahcix86;c:\windows\system32\drivers\ahcix86.sys [3/9/2010 12:58 AM 188984]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [8/14/2012 10:11 AM 685816]
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [10/11/2012 3:53 AM 36552]
R1 SandBox;SandBox;c:\windows\system32\drivers\SandBox.sys [10/22/2012 2:37 PM 708760]
R2 acssrv;Agnitum Client Security Service;c:\progra~1\Agnitum\OUTPOS~1\acs.exe [10/22/2012 2:37 PM 2072592]
R2 AntiVirSchedulerService;Avira Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [10/11/2012 3:53 AM 84256]
R2 TabletServiceWacom;TabletServiceWacom;c:\windows\system32\Wacom_Tablet.exe [8/14/2012 9:30 AM 1373480]
R2 WDDMService;WD SmartWare Drive Manager;c:\program files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [1/21/2010 4:24 PM 110592]
R2 WDSmartWareBackgroundService;WD SmartWare Background Service;c:\program files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [6/16/2009 8:58 AM 20480]
R3 afw;Agnitum firewall driver;c:\windows\system32\drivers\afw.sys [10/22/2012 2:37 PM 34280]
R3 afwcore;afwcore;c:\windows\system32\drivers\afwcore.sys [10/22/2012 2:37 PM 267624]
R3 HCWBT8xx;Hauppauge WinTV 848/9 WDM Video Driver;c:\windows\system32\drivers\HCWBT8XX.sys [8/18/2012 4:44 AM 472644]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\drivers\wdcsam.sys [8/16/2012 5:35 AM 11520]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [8/4/2012 4:17 PM 1691480]
S3 ASWFilt;ASWFilt;c:\windows\system32\Filt\ASWFilt.dll [10/22/2012 2:37 PM 70160]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdXP3.sys [5/13/2012 11:12 PM 103040]
S3 VBEngNT;VBEngNT;c:\windows\system32\drivers\VBEngNT.sys [10/22/2012 2:37 PM 242040]
S3 VBFilt;VBFilt;c:\windows\system32\Filt\VBFilt.dll [10/22/2012 2:37 PM 34096]
S4 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [7/13/2012 1:28 PM 160944]
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - WS2IFSL
.
Contents of the 'Scheduled Tasks' folder
.
2012-10-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-436374069-1202660629-839522115-1003Core.job
- c:\documents and settings\Zarla\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2012-08-16 23:29]
.
2012-10-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-436374069-1202660629-839522115-1003UA.job
- c:\documents and settings\Zarla\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2012-08-16 23:29]
.
.
------- Supplementary Scan -------
.
IE: Sothink SWF Catcher - c:\program files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
TCP: DhcpNameServer = 192.168.1.254
FF - ProfilePath - c:\documents and settings\Zarla\Application Data\Mozilla\Firefox\Profiles\jf4tt3qn.transferringover\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
FF - prefs.js: network.proxy.type - 4
FF - ExtSQL: 2012-09-17 23:04;
thumbnailZoom@dadler.github.com; c:\documents and settings\Zarla\Application Data\Mozilla\Firefox\Profiles\jf4tt3qn.transferringover\extensions\thumbnailZoom@dadler.github.com
FF - ExtSQL: 2012-09-29 06:55; {73a6fe31-595d-460b-a920-fcc0f8843232}; c:\documents and settings\Zarla\Application Data\Mozilla\Firefox\Profiles\jf4tt3qn.transferringover\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}
FF - ExtSQL: 2012-09-30 09:58; {46868735-c3fa-47ce-8ce7-cce51a66aceb}; c:\documents and settings\Zarla\Application Data\Mozilla\Firefox\Profiles\jf4tt3qn.transferringover\extensions\{46868735-c3fa-47ce-8ce7-cce51a66aceb}.xpi
FF - user.js: network.protocol-handler.warn-external.dnupdate - false
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2012-10-26 11:38
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_278_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_278_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'winlogon.exe'(228)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
.
- - - - - - - > 'explorer.exe'(2248)
c:\windows\system32\WININET.dll
c:\program files\Agnitum\Outpost Security Suite Free\op_shell.dll
c:\windows\system32\msi.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Avira\AntiVir Desktop\avguard.exe
c:\program files\Java\jre7\bin\jqs.exe
c:\program files\CDBurnerXP\NMSAccessU.exe
c:\windows\system32\WTablet\Wacom_TabletUser.exe
c:\windows\RTHDCPL.EXE
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
c:\program files\Avira\AntiVir Desktop\avshadow.exe
c:\program files\iPod\bin\iPodService.exe
c:\program files\iTunes\iTunes.exe
c:\program files\Last.fm\LastFM.exe
.
**************************************************************************
.
Completion time: 2012-10-26 11:44:50 - machine was rebooted
ComboFix-quarantined-files.txt 2012-10-26 18:42
.
Pre-Run: 605,858,693,120 bytes free
Post-Run: 607,019,470,848 bytes free
.
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer
.
- - End Of File - - C76A500E20AC71DE598F5EF909B626CD
2a. I guess they're not important? They don't seem too important.
2b. Yeah I created all of those. The Vundofix ones however were from an older computer that once got infected with a virus - I copied a lot of files over from the old one to the new one and I might have just copied those without thinking about it.
3. I'll try re-running MalwareBytes.
4. I haven't hit any bluescreens lately, but the computers been kind of freezing a lot. Everything on the screen will freeze in place, but I'll still be able to move the mouse and hear music playing from a music player. No matter what I click on though nothing happens, so I have to restart.
Another weird problem was when I closed Chrome last night, and a window with no text and a red X appeared, but I couldn't tell what error it was trying to tell me. When I clicked what I assumed was the okay button to make it go away, all the text on the computer seemed to disappear, then when I tried to restart it freaked out again. That hasn't happened again since the first time though, I'm not sure what that was.
I did order a new hard drive for the older drive, so when that comes I'll try and replace it. I'm going to be out of town for the next couple days, but I'll try to check in until I get back.