Phil_2 - 06-10-30 22:21:53.84 Service Pack 2
ComboFix 06.10.19 - Running from: "C:\Documents and Settings\Phil_2\Desktop\virus logs"
((((((((((((((((((((((((((((((( Files Created from 2006-09-30 to 2006-10-30 ))))))))))))))))))))))))))))))))))
2006-10-29 16:08 4,682 --a------ C:\WINDOWS\system32\npptNT2.sys
2006-10-24 18:35 90,112 --a------ C:\WINDOWS\system32\AVASTSS.scr
2006-10-24 18:35 87,424 --a------ C:\WINDOWS\system32\drivers\aswmon2.sys
2006-10-24 18:35 85,952 --a------ C:\WINDOWS\system32\drivers\aswmon.sys
2006-10-24 18:35 666,240 --a------ C:\WINDOWS\system32\aswBoot.exe
2006-10-24 18:35 36,176 --a------ C:\WINDOWS\system32\drivers\aswTdi.sys
2006-10-24 18:35 24,560 --a------ C:\WINDOWS\system32\drivers\aavmker4.sys
2006-10-24 18:35 16,352 --a------ C:\WINDOWS\system32\drivers\aswRdr.sys
2006-10-23 19:42 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2006-10-21 19:11 27,648 --a------ C:\WINDOWS\system32\drivers\MpFilter.sys
2006-10-18 16:28 127,208 --a------ C:\WINDOWS\system32\mucltui.dll
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2006-10-30 22:17 -------- d-------- C:\Program Files\Logitech
2006-10-30 21:45 -------- d-------- C:\Program Files\Common Files\Microsoft Shared
2006-10-29 10:07 -------- d-------- C:\Program Files\Mozilla Firefox
2006-10-27 10:28 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\Azureus
2006-10-27 01:49 -------- d-------- C:\Program Files\Wisdom-soft AutoScreenRecorder
2006-10-27 01:47 -------- d-------- C:\Program Files\Common Files
2006-10-27 01:46 -------- d-------- C:\Program Files\Deskshare
2006-10-24 18:35 -------- d-------- C:\Program Files\Alwil Software
2006-10-24 15:00 -------- d---s---- C:\Documents and Settings\Phil_2\Application Data\Microsoft
2006-10-24 11:04 -------- d-------- C:\Program Files\mIRC
2006-10-23 19:42 -------- d-------- C:\Program Files\Grisoft
2006-10-22 11:54 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\Registry Booster
2006-10-21 20:08 -------- d-------- C:\Program Files\TrojanHunter 4.6
2006-10-21 20:06 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\TrojanHunter
2006-10-21 19:11 -------- d-------- C:\Program Files\Windows Defender
2006-10-21 11:51 -------- d-------- C:\Program Files\Windows Live Safety Center
2006-10-19 17:50 -------- d--h----- C:\Program Files\InstallShield Installation Information
2006-10-19 17:50 -------- d-------- C:\Program Files\Common Files\Wise Installation Wizard
2006-10-18 18:09 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\Windows Live Safety Center
2006-10-18 16:58 -------- d-------- C:\Program Files\MSXML 4.0
2006-10-18 16:58 -------- d-------- C:\Program Files\LIUtilities
2006-10-18 14:14 -------- d-------- C:\Program Files\SpywareBlaster
2006-10-18 07:39 -------- d-------- C:\Program Files\Trend Micro
2006-10-17 23:22 -------- d-------- C:\Program Files\Internet Explorer
2006-10-16 15:34 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\StumbleUpon
2006-10-11 20:03 -------- d-------- C:\Program Files\Common Files\Real
2006-10-11 20:03 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\Real
2006-10-09 21:09 -------- d-------- C:\Program Files\MDI VIew
2006-10-04 17:24 23728 --a------ C:\Documents and Settings\Phil_2\Application Data\GDIPFONTCACHEV1.DAT
2006-09-26 19:47 98304 --a------ C:\WINDOWS\system32\CmdLineExt.dll
2006-09-26 19:28 -------- d-------- C:\Program Files\Sierra
2006-09-19 18:05 -------- d-------- C:\Program Files\Uniblue
2006-09-16 16:16 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\Kazaa Lite
2006-09-13 20:04 -------- d-------- C:\Program Files\Yahoo!
2006-09-13 00:01 1084416 --a------ C:\WINDOWS\system32\msxml3.dll
2006-09-12 16:51 1245184 --a------ C:\WINDOWS\system32\msxml4.dll
2006-08-25 10:45 617472 --a------ C:\WINDOWS\system32\comctl32.dll
2006-08-21 07:21 16896 --a------ C:\WINDOWS\system32\fltlib.dll
2006-08-21 04:14 23040 --a------ C:\WINDOWS\system32\fltmc.exe
2006-08-16 06:58 100352 --a------ C:\WINDOWS\system32\6to4svc.dll
2006-08-08 23:26 75 --a------ C:\WINDOWS\system32\sysogg.dll
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"LDM"="\\Program\\"
"STYLEXP"="C:\\Program Files\\TGTSoft\\StyleXP\\StyleXP.exe -Hide"
"LogitechSoftwareUpdate"="\"C:\\Program Files\\Logitech\\Video\\ManifestEngine.exe\" boot"
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"SpyDefense"="C:\\Program Files\\Everest Labs\\Spydefense\\sdc.exe /service"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"Logitech Utility"="Logi_MwX.Exe"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_06\\bin\\jusched.exe"
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"IMJPMIG8.1"="\"C:\\WINDOWS\\IME\\imjp8_1\\IMJPMIG.EXE\" /Spoil /RemAdvDef /Migration32"
"IMEKRMIG6.1"="C:\\WINDOWS\\ime\\imkr6_1\\IMEKRMIG.EXE"
"MSPY2002"="C:\\WINDOWS\\system32\\IME\\PINTLGNT\\ImScInst.exe /SYNC"
"PHIME2002ASync"="C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /SYNC"
"PHIME2002A"="C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /IMEName"
"smapp"="C:\\Program Files\\Analog Devices\\SoundMAX\\SMTray.exe"
"LVCOMSX"="C:\\WINDOWS\\system32\\LVCOMSX.EXE"
"LogitechVideoRepair"="C:\\Program Files\\Logitech\\Video\\ISStart.exe"
"LogitechVideoTray"="C:\\Program Files\\Logitech\\Video\\LogiTray.exe"
"HP Software Update"="C:\\Program Files\\HP\\HP Software Update\\HPWuSchd2.exe"
"ATICCC"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\cli.exe\" runtime -Delay"
"DAEMON Tools"="\"C:\\Program Files\\DAEMON Tools\\daemon.exe\" -lang 1033"
"WinampAgent"="C:\\Program Files\\Winamp\\winampa.exe"
"Windows Defender"="\"C:\\Program Files\\Windows Defender\\MSASCui.exe\" -hide"
"avast!"="C:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000005
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e4,02,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,00,03,\
00,00,04,00,00,40
"RestoredStateInfo"=hex:18,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,00,03,\
00,00,01,00,00,00
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"="Microsoft AntiMalware ShellExecuteHook"
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=hex:91,00,00,00
"ForceStartMenuLogOff"=dword:00000001
"NoWelcomeScreen"=dword:00000001
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"DisableTaskMgr"=dword:00000000
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoActiveDesktopChanges"=dword:00000000
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"UPnPMonitor"="{e57ce738-33e8-4c51-8354-bb4de9d215d1}"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\MP Scheduled Scan.job
Completion time: 06-10-30 22:22:32.14
C:\ComboFix.txt ... 06-10-30 22:22
C:\ComboFix2.txt ... 06-10-29 21:48
C:\ComboFix3.txt ... 06-10-24 11:07
ComboFix 06.10.19 - Running from: "C:\Documents and Settings\Phil_2\Desktop\virus logs"
((((((((((((((((((((((((((((((( Files Created from 2006-09-30 to 2006-10-30 ))))))))))))))))))))))))))))))))))
2006-10-29 16:08 4,682 --a------ C:\WINDOWS\system32\npptNT2.sys
2006-10-24 18:35 90,112 --a------ C:\WINDOWS\system32\AVASTSS.scr
2006-10-24 18:35 87,424 --a------ C:\WINDOWS\system32\drivers\aswmon2.sys
2006-10-24 18:35 85,952 --a------ C:\WINDOWS\system32\drivers\aswmon.sys
2006-10-24 18:35 666,240 --a------ C:\WINDOWS\system32\aswBoot.exe
2006-10-24 18:35 36,176 --a------ C:\WINDOWS\system32\drivers\aswTdi.sys
2006-10-24 18:35 24,560 --a------ C:\WINDOWS\system32\drivers\aavmker4.sys
2006-10-24 18:35 16,352 --a------ C:\WINDOWS\system32\drivers\aswRdr.sys
2006-10-23 19:42 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2006-10-21 19:11 27,648 --a------ C:\WINDOWS\system32\drivers\MpFilter.sys
2006-10-18 16:28 127,208 --a------ C:\WINDOWS\system32\mucltui.dll
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2006-10-30 22:17 -------- d-------- C:\Program Files\Logitech
2006-10-30 21:45 -------- d-------- C:\Program Files\Common Files\Microsoft Shared
2006-10-29 10:07 -------- d-------- C:\Program Files\Mozilla Firefox
2006-10-27 10:28 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\Azureus
2006-10-27 01:49 -------- d-------- C:\Program Files\Wisdom-soft AutoScreenRecorder
2006-10-27 01:47 -------- d-------- C:\Program Files\Common Files
2006-10-27 01:46 -------- d-------- C:\Program Files\Deskshare
2006-10-24 18:35 -------- d-------- C:\Program Files\Alwil Software
2006-10-24 15:00 -------- d---s---- C:\Documents and Settings\Phil_2\Application Data\Microsoft
2006-10-24 11:04 -------- d-------- C:\Program Files\mIRC
2006-10-23 19:42 -------- d-------- C:\Program Files\Grisoft
2006-10-22 11:54 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\Registry Booster
2006-10-21 20:08 -------- d-------- C:\Program Files\TrojanHunter 4.6
2006-10-21 20:06 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\TrojanHunter
2006-10-21 19:11 -------- d-------- C:\Program Files\Windows Defender
2006-10-21 11:51 -------- d-------- C:\Program Files\Windows Live Safety Center
2006-10-19 17:50 -------- d--h----- C:\Program Files\InstallShield Installation Information
2006-10-19 17:50 -------- d-------- C:\Program Files\Common Files\Wise Installation Wizard
2006-10-18 18:09 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\Windows Live Safety Center
2006-10-18 16:58 -------- d-------- C:\Program Files\MSXML 4.0
2006-10-18 16:58 -------- d-------- C:\Program Files\LIUtilities
2006-10-18 14:14 -------- d-------- C:\Program Files\SpywareBlaster
2006-10-18 07:39 -------- d-------- C:\Program Files\Trend Micro
2006-10-17 23:22 -------- d-------- C:\Program Files\Internet Explorer
2006-10-16 15:34 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\StumbleUpon
2006-10-11 20:03 -------- d-------- C:\Program Files\Common Files\Real
2006-10-11 20:03 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\Real
2006-10-09 21:09 -------- d-------- C:\Program Files\MDI VIew
2006-10-04 17:24 23728 --a------ C:\Documents and Settings\Phil_2\Application Data\GDIPFONTCACHEV1.DAT
2006-09-26 19:47 98304 --a------ C:\WINDOWS\system32\CmdLineExt.dll
2006-09-26 19:28 -------- d-------- C:\Program Files\Sierra
2006-09-19 18:05 -------- d-------- C:\Program Files\Uniblue
2006-09-16 16:16 -------- d-------- C:\Documents and Settings\Phil_2\Application Data\Kazaa Lite
2006-09-13 20:04 -------- d-------- C:\Program Files\Yahoo!
2006-09-13 00:01 1084416 --a------ C:\WINDOWS\system32\msxml3.dll
2006-09-12 16:51 1245184 --a------ C:\WINDOWS\system32\msxml4.dll
2006-08-25 10:45 617472 --a------ C:\WINDOWS\system32\comctl32.dll
2006-08-21 07:21 16896 --a------ C:\WINDOWS\system32\fltlib.dll
2006-08-21 04:14 23040 --a------ C:\WINDOWS\system32\fltmc.exe
2006-08-16 06:58 100352 --a------ C:\WINDOWS\system32\6to4svc.dll
2006-08-08 23:26 75 --a------ C:\WINDOWS\system32\sysogg.dll
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"LDM"="\\Program\\"
"STYLEXP"="C:\\Program Files\\TGTSoft\\StyleXP\\StyleXP.exe -Hide"
"LogitechSoftwareUpdate"="\"C:\\Program Files\\Logitech\\Video\\ManifestEngine.exe\" boot"
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"SpyDefense"="C:\\Program Files\\Everest Labs\\Spydefense\\sdc.exe /service"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"Logitech Utility"="Logi_MwX.Exe"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_06\\bin\\jusched.exe"
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"IMJPMIG8.1"="\"C:\\WINDOWS\\IME\\imjp8_1\\IMJPMIG.EXE\" /Spoil /RemAdvDef /Migration32"
"IMEKRMIG6.1"="C:\\WINDOWS\\ime\\imkr6_1\\IMEKRMIG.EXE"
"MSPY2002"="C:\\WINDOWS\\system32\\IME\\PINTLGNT\\ImScInst.exe /SYNC"
"PHIME2002ASync"="C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /SYNC"
"PHIME2002A"="C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /IMEName"
"smapp"="C:\\Program Files\\Analog Devices\\SoundMAX\\SMTray.exe"
"LVCOMSX"="C:\\WINDOWS\\system32\\LVCOMSX.EXE"
"LogitechVideoRepair"="C:\\Program Files\\Logitech\\Video\\ISStart.exe"
"LogitechVideoTray"="C:\\Program Files\\Logitech\\Video\\LogiTray.exe"
"HP Software Update"="C:\\Program Files\\HP\\HP Software Update\\HPWuSchd2.exe"
"ATICCC"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\cli.exe\" runtime -Delay"
"DAEMON Tools"="\"C:\\Program Files\\DAEMON Tools\\daemon.exe\" -lang 1033"
"WinampAgent"="C:\\Program Files\\Winamp\\winampa.exe"
"Windows Defender"="\"C:\\Program Files\\Windows Defender\\MSASCui.exe\" -hide"
"avast!"="C:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000005
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e4,02,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,00,03,\
00,00,04,00,00,40
"RestoredStateInfo"=hex:18,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,00,03,\
00,00,01,00,00,00
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"="Microsoft AntiMalware ShellExecuteHook"
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=hex:91,00,00,00
"ForceStartMenuLogOff"=dword:00000001
"NoWelcomeScreen"=dword:00000001
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"DisableTaskMgr"=dword:00000000
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoActiveDesktopChanges"=dword:00000000
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"UPnPMonitor"="{e57ce738-33e8-4c51-8354-bb4de9d215d1}"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\MP Scheduled Scan.job
Completion time: 06-10-30 22:22:32.14
C:\ComboFix.txt ... 06-10-30 22:22
C:\ComboFix2.txt ... 06-10-29 21:48
C:\ComboFix3.txt ... 06-10-24 11:07