Sorry, this is the original Combofix, I will delete the old Combofix file rescan and send the newer results on another post.
HP_Administrator - 06-12-03 16:03:46.26 Service Pack 2
ComboFix 06.11.27W - Running from: "C:\Documents and Settings\HP_Administrator\Desktop"
((((((((((((((((((((((((((((((( Files Created from 2006-11-03 to 2006-12-03 ))))))))))))))))))))))))))))))))))
2006-12-03 12:37 <DIR> d-------- C:\Program Files\Trustix
2006-12-03 12:33 <DIR> d-------- C:\Documents and Settings\HP_Administrator\Application Data\Comodo
2006-12-03 12:33 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Comodo
2006-12-03 12:28 69,120 --a------ C:\WINDOWS\system32\drivers\inspect.sys
2006-12-03 12:28 61,056 --a------ C:\WINDOWS\system32\drivers\cmdmon.sys
2006-12-03 12:28 <DIR> d-------- C:\Program Files\Comodo
2006-12-03 11:20 <DIR> d-------- C:\Program Files\HijackThis
2006-12-02 18:57 684,032 --a------ C:\WINDOWS\system32\libeay32.dll
2006-12-02 18:57 155,648 --a------ C:\WINDOWS\system32\ssleay32.dll
2006-12-02 18:57 15,872 --a------ C:\WINDOWS\system32\drivers\sshrmd.sys
2006-12-02 18:57 15,360 --a------ C:\WINDOWS\system32\drivers\sskbfd.sys
2006-12-02 18:57 14,848 --a------ C:\WINDOWS\system32\drivers\SSFS0509.sys
2006-12-02 18:57 122,368 --a------ C:\WINDOWS\system32\drivers\ssidrv.sys
2006-12-02 18:57 <DIR> d-------- C:\Program Files\Webroot
2006-12-02 18:56 <DIR> d-------- C:\Documents and Settings\HP_Administrator\Application Data\Webroot
2006-12-02 18:56 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Webroot
2006-12-02 18:10 <DIR> d-------- C:\WINDOWS\Internet Logs
2006-12-02 17:44 <DIR> d-------- C:\Program Files\Windows Defender
2006-12-02 16:53 <DIR> d-------- C:\Program Files\MSXML 4.0
2006-12-02 16:53 <DIR> d-------- C:\4a9cfc8486aa9afc7127d5
2006-12-02 16:16 <DIR> d--hs---- C:\WINDOWS\CSC
2006-12-02 13:01 <DIR> d-------- C:\SDFix
2006-11-30 22:54 <DIR> d-------- C:\Program Files\Common Files\IAR Systems
2006-11-29 16:29 185,856 --a------ C:\WINDOWS\system32\framedyn.dll
2006-11-29 15:44 <DIR> d-------- C:\WINDOWS\system32\Dllcach
2006-11-29 14:35 <DIR> d-------- C:\Program Files\Common Files\Macrovision Shared
2006-11-28 23:54 <DIR> d-------- C:\WINDOWS\SxsCaPendDel
2006-11-28 19:53 68,096 --a------ C:\WINDOWS\system32\wbtrv32.dll
2006-11-28 19:53 320,512 --a------ C:\WINDOWS\system32\w32mkde.exe
2006-11-28 19:53 110,080 --a------ C:\WINDOWS\system32\W32mkrc.dll
2006-11-28 19:53 <DIR> d-------- C:\Program Files\NEO Pro
2006-11-28 19:53 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2006-11-28 19:53 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Btrieve
2006-11-27 23:44 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\FLEXnet
2006-11-27 23:35 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Adobe
2006-11-25 17:56 722,432 --a------ C:\WINDOWS\system32\drivers\TMIMO31U.sys
2006-11-24 11:43 309,760 --a------ C:\WINDOWS\system32\lmgr326b.dll
2006-11-23 16:00 66,048 --a------ C:\WINDOWS\system32\NMORENU.DLL
2006-11-23 16:00 48,128 --a------ C:\WINDOWS\system32\NMSCKN.DLL
2006-11-23 16:00 462,848 --a------ C:\WINDOWS\system32\nmw3vwn.dll
2006-11-23 16:00 240,640 --a------ C:\WINDOWS\system32\NMOCOD.DLL
2006-11-23 16:00 21,504 --a------ C:\WINDOWS\system32\NMCLN.EXE
2006-11-23 16:00 199 --a------ C:\WINDOWS\system32\LICENSES.REG
2006-11-23 15:58 903,168 --a------ C:\WINDOWS\system32\mitmdl30.dll
2006-11-23 15:58 901,120 --a------ C:\WINDOWS\system32\sscsdk32.dll
2006-11-23 15:58 65,536 --a------ C:\WINDOWS\system32\mitmin30.dll
2006-11-23 15:58 46,080 --a------ C:\WINDOWS\system32\lftif60n.dll
2006-11-23 15:58 346,112 --a------ C:\WINDOWS\system32\crflt13.dll
2006-11-23 15:58 320,000 --a------ C:\WINDOWS\system32\crbas13.dll
2006-11-23 15:58 303,616 --a------ C:\WINDOWS\system32\crutl13.dll
2006-11-23 15:58 26,624 --a------ C:\WINDOWS\system32\midlin30.dll
2006-11-23 15:58 23,552 --a------ C:\WINDOWS\system32\lfpcx60n.dll
2006-11-23 15:58 22,528 --a------ C:\WINDOWS\system32\lfpct60n.dll
2006-11-23 15:58 22,528 --a------ C:\WINDOWS\system32\lfeps60n.dll
2006-11-23 15:58 22,016 --a------ C:\WINDOWS\system32\lfbmp60n.dll
2006-11-23 15:58 20,480 --a------ C:\WINDOWS\system32\lfpsd60n.dll
2006-11-23 15:58 19,968 --a------ C:\WINDOWS\system32\lftga60n.dll
2006-11-23 15:58 19,456 --a------ C:\WINDOWS\system32\lfwpg60n.dll
2006-11-23 15:58 19,456 --a------ C:\WINDOWS\system32\lfwmf60n.dll
2006-11-23 15:58 18,432 --a------ C:\WINDOWS\system32\lfmsp60n.dll
2006-11-23 15:58 178,176 --a------ C:\WINDOWS\system32\mxintl30.dll
2006-11-23 15:58 176,128 --a------ C:\WINDOWS\system32\lffax60n.dll
2006-11-23 15:58 17,920 --a------ C:\WINDOWS\system32\lfmac60n.dll
2006-11-23 15:58 159,232 --a------ C:\WINDOWS\system32\crsyb13.dll
2006-11-23 15:58 157,696 --a------ C:\WINDOWS\system32\cror813.dll
2006-11-23 15:58 141,824 --a------ C:\WINDOWS\system32\lfcmp60n.dll
2006-11-23 15:58 139,264 --a------ C:\WINDOWS\system32\midlg30.dll
2006-11-23 15:58 138,752 --a------ C:\WINDOWS\system32\cror713.dll
2006-11-23 15:58 112,640 --a------ C:\WINDOWS\system32\crgup13.dll
2006-11-23 15:58 111,616 --a------ C:\WINDOWS\system32\crdb213.dll
2006-11-23 15:58 110,080 --a------ C:\WINDOWS\system32\lfpng60n.dll
2006-11-23 15:56 <DIR> d-------- C:\OrCAD
2006-11-23 15:55 <DIR> d-------- C:\Program Files\Business Objects
2006-11-23 15:54 <DIR> d-------- C:\OrCAD_Data
2006-11-23 14:31 <DIR> d-------- C:\Program Files\DiskTrix
2006-11-21 22:55 <DIR> d-------- C:\Program Files\Registrar Lite
2006-11-21 13:36 <DIR> d-------- C:\Documents and Settings\HP_Administrator\Application Data\Apple Computer
2006-11-21 13:13 <DIR> d-------- C:\Program Files\QuickTime
2006-11-21 13:13 <DIR> d-------- C:\Program Files\Apple Software Update
2006-11-21 13:12 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Apple Computer
2006-11-19 19:39 <DIR> d-------- C:\Program Files\NGWave 3
2006-11-19 18:41 <DIR> d-------- C:\Program Files\Magic Audio Editor Pro
2006-11-14 17:05 <DIR> d-------- C:\Program Files\i-Sound Pro
2006-11-13 16:53 <DIR> d-------- C:\Documents and Settings\HP_Administrator\Application Data\Help
2006-11-13 16:52 <DIR> d-------- C:\Program Files\PolderbitS
2006-11-13 16:47 <DIR> d-------- C:\Program Files\Pulse Master
2006-11-13 15:15 <DIR> d-------- C:\Program Files\All Sound Recorder XP
2006-11-13 11:12 <DIR> d-------- C:\Program Files\3D MP3 Sound Recorder G2
2006-11-13 11:00 <DIR> d-------- C:\Program Files\Arial Sound Recorder
2006-11-13 10:37 <DIR> d-------- C:\Program Files\Advanced Sound Recorder
2006-11-11 14:30 <DIR> d-------- C:\Tools
2006-11-10 12:42 <DIR> d-------- C:\Program Files\Macrovision
2006-11-10 12:39 <DIR> d-------- C:\Program Files\Cadence Switch Release
2006-11-10 10:35 <DIR> d-------- C:\Program Files\Common Files\Business Objects
2006-11-07 11:59 24,576 --a------ C:\WINDOWS\system32\STKIT432.DLL
2006-11-07 11:59 <DIR> d-------- C:\Program Files\Registry Mechanic
2006-11-06 23:27 <DIR> d-------- C:\Documents and Settings\HP_Administrator\Application Data\Dev-Cpp
2006-11-06 23:27 <DIR> d-------- C:\Dev-Cpp
2006-11-06 10:21 <DIR> d-------- C:\Program Files\ACW
2006-11-04 14:14 1,245,696 --a------ C:\WINDOWS\system32\msxml4.dll
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2006-12-03 15:51 -------- d-------- C:\Documents and Settings\HP_Administrator\Application Data\Skype
2006-12-02 19:24 -------- d-------- C:\Program Files\Maxthon
2006-12-02 16:52 -------- d-------- C:\Program Files\Internet Explorer
2006-12-01 20:09 -------- d-------- C:\Program Files\HP
2006-11-30 22:54 -------- d-------- C:\Program Files\Common Files
2006-11-29 23:26 -------- d-------- C:\Documents and Settings\HP_Administrator\Application Data\UseNeXT
2006-11-29 13:58 -------- d-------- C:\Program Files\Common Files\Adobe
2006-11-29 13:57 -------- d-------- C:\Program Files\Adobe
2006-11-27 23:47 -------- d-------- C:\Documents and Settings\HP_Administrator\Application Data\Adobe
2006-11-25 21:16 -------- d--h----- C:\Program Files\InstallShield Installation Information
2006-11-24 17:29 -------- d-------- C:\Documents and Settings\HP_Administrator\Application Data\SolidWorks
2006-11-23 15:53 -------- d-------- C:\Program Files\Common Files\InstallShield
2006-11-21 14:13 -------- d-------- C:\Program Files\UseNeXT
2006-11-16 18:52 -------- d-------- C:\Program Files\Google
2006-11-15 16:43 -------- d-------- C:\Program Files\Keil
2006-11-12 12:06 -------- d---s---- C:\Documents and Settings\HP_Administrator\Application Data\Microsoft
2006-11-10 16:35 -------- d-------- C:\Documents and Settings\HP_Administrator\Application Data\NeroDCTemplates
2006-11-04 19:21 -------- d-------- C:\Program Files\eMule
2006-11-04 16:22 -------- d-------- C:\Program Files\Java
2006-11-03 11:05 61067 --a------ C:\WINDOWS\system32\drivers\ftser2k.sys
2006-11-03 11:05 47249 --a------ C:\WINDOWS\system32\drivers\ftdibus.sys
2006-11-03 11:05 33360 --a------ C:\WINDOWS\system32\ftserui2.dll
2006-11-03 11:05 188416 --a------ C:\WINDOWS\system32\ftdiunin.exe
2006-11-03 11:05 176128 --a------ C:\WINDOWS\system32\ftd2xx.dll
2006-11-03 11:05 106496 --a------ C:\WINDOWS\system32\ftbusui.dll
2006-11-03 11:05 102400 --a------ C:\WINDOWS\system32\FTLang.dll
2006-11-02 18:29 -------- d-------- C:\Program Files\MProg 2.9c
2006-10-26 22:02 -------- d-------- C:\Documents and Settings\HP_Administrator\Application Data\Sun
2006-10-22 14:13 -------- d-------- C:\Program Files\Microsoft Streets and Trips
2006-10-22 14:04 -------- d-------- C:\Program Files\Microsoft Office
2006-10-22 14:04 -------- d-------- C:\Program Files\Common Files\Microsoft Shared
2006-10-14 13:39 -------- d-------- C:\Documents and Settings\HP_Administrator\Application Data\DassaultSystemes
2006-10-13 04:35 65536 --------- C:\WINDOWS\system32\nwwks.dll
2006-10-13 04:35 64000 --------- C:\WINDOWS\system32\nwapi32.dll
2006-10-13 04:35 142336 --------- C:\WINDOWS\system32\nwprovau.dll
2006-10-13 02:23 163584 --------- C:\WINDOWS\system32\drivers\nwrdr.sys
2006-10-11 17:31 -------- d-------- C:\Program Files\PClint
2006-10-07 13:49 -------- d-------- C:\Program Files\Common Files\Merge Modules
2006-10-04 16:44 -------- d-------- C:\Program Files\National Instruments
2006-09-29 06:56 28248 -ra------ C:\WINDOWS\system32\AdobePDF.dll
2006-09-25 07:45 666240 --a------ C:\WINDOWS\system32\aswBoot.exe
2006-09-25 07:37 90112 --a------ C:\WINDOWS\system32\AVASTSS.scr
2006-09-24 10:54 5905 --a------ C:\Documents and Settings\HP_Administrator\Application Data\GdiplusUpgrade_MSIApproach_Wrapper.log
2006-09-18 17:26 81920 --a------ C:\WINDOWS\system32\FTCJTAG.dll
2006-09-13 22:14 593938 --a------ C:\WINDOWS\system32\x264vfw.dll
2006-09-12 21:01 1084416 --a------ C:\WINDOWS\system32\msxml3.dll
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="\"C:\\Program Files\\Common Files\\Ahead\\Lib\\NMBgMonitor.exe\""
"HijackThis startup scan"="\"C:\\SDFix\\HiJackThis\\HijackThis.exe\" /startupscan"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"Acrobat Assistant 8.0"="\"C:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\Acrotray.exe\""
"
\\\\ALMASLAPTOP\\EPSON Stylus Photo RX500"="\"C:\\WINDOWS\\System32\\spool\\DRIVERS\\W32X86\\3\\E_S4I2K1.EXE\" /P38 \"
\\\\ALMASLAPTOP\\EPSON Stylus Photo RX500\" /O6 \"USB001\" /M \"Stylus Photo RX500\""
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"="\"C:\\Program Files\\Google\\Gmail Notifier\\gnotify.exe\""
"TrueImageMonitor.exe"="\"C:\\Program Files\\Acronis\\TrueImageWorkstation\\TrueImageMonitor.exe\""
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.5.0_09\\bin\\jusched.exe\""
"RTHDCPL"="RTHDCPL.EXE"
"RegistryMechanic"=""
"Recguard"="C:\\WINDOWS\\SMINST\\RECGUARD.EXE"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"PCDrProfiler"=""
"nwiz"="\"nwiz.exe\" /install"
"NWEReboot"=""
"NvCplDaemon"="\"RUNDLL32.EXE\" C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"NeroFilterCheck"="\"C:\\Program Files\\Common Files\\Ahead\\Lib\\NeroCheck.exe\""
"KBD"="C:\\HP\\KBD\\KBD.EXE"
"HPBootOp"="\"C:\\Program Files\\Hewlett-Packard\\HP Boot Optimizer\\HPBootOp.exe\" /run"
"HP Software Update"="\"C:\\Program Files\\HP\\HP Software Update\\HPwuSchd2.exe\""
"ehTray"="C:\\WINDOWS\\ehome\\ehtray.exe"
"avast!"="C:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe"
"AlwaysReady Power Message APP"="ARPWRMSG.EXE"
"AcronisTimounterMonitor"="\"C:\\Program Files\\Acronis\\TrueImageWorkstation\\TimounterMonitor.exe\""
"Acronis Scheduler2 Service"="\"C:\\Program Files\\Common Files\\Acronis\\Schedule2\\schedhlp.exe\""
"Windows Defender"="\"C:\\Program Files\\Windows Defender\\MSASCui.exe\" -hide"
"SpySweeper"="\"C:\\Program Files\\Webroot\\Spy Sweeper\\SpySweeperUI.exe\" /startintray"
"Comodo Firewall"="\"C:\\Program Files\\Comodo\\Firewall\\CPF.exe\" /background"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000001
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,00,01,00,00,00,00,00,00,00,04,00,00,e4,03,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,ff,ff,00,00,ff,ff,00,00,ff,ff,ff,ff,ff,ff,\
ff,ff,04,00,00,00
"RestoredStateInfo"=hex:18,00,00,00,6a,02,00,00,23,00,00,00,a4,00,00,00,9a,00,\
00,00,01,00,00,00
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"="Microsoft AntiMalware ShellExecuteHook"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"InstallVisualStyle"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,52,65,73,6f,75,72,\
63,65,73,5c,54,68,65,6d,65,73,5c,52,6f,79,61,6c,65,5c,52,6f,79,61,6c,65,2e,\
6d,73,73,74,79,6c,65,73,00
"InstallTheme"=hex(2):43,3a,5c,57,49,4e,44,4f,57,53,5c,52,65,73,6f,75,72,63,65,\
73,5c,54,68,65,6d,65,73,5c,52,6f,79,61,6c,65,2e,74,68,65,6d,65,00
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"=""
"hkey"="HKLM"
"command"=""
"inimapping"="0"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\WebrootSpySweeperService
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\Ad-Aware SE Personal.job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\MP Scheduled Scan.job
Completion time: 06-12-03 16:05:34.03
C:\ComboFix.txt ... 06-12-03 16:05
C:\ComboFix2.txt ... 06-12-03 08:01