Hello Cheeseball,
thank you for your time again!!
here is the Log.txt and new Hijackthis.txt
I appreciate always your valuable help!!
cheers
****************************************************************
ComboFix 07-10-12.4 - Abeysekara Family 2007-10-16 11:36:23.1 -
FAT32x86
Microsoft Windows XP Professional 5.1.2600.1.1252.1.1033.18.58 [GMT 8:00]
Running from: C:\Documents and Settings\Abeysekara Family\My Documents\My Completed Downloads\ComboFix.exe
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Autorun.inf
C:\Documents and Settings\Abeysekara Family\Desktop\internet.lnk
C:\Documents and Settings\Abeysekara Family\ResErrors.log
C:\Documents and Settings\All Users\Application Data.\salesmonitor
C:\UGA6P
C:\WINDOWS\system32\GenProtect.dll
C:\WINDOWS\system32\k11915142057.exe
C:\WINDOWS\system32\k11915645923.exe
C:\WINDOWS\system32\k11915677946.exe
C:\WINDOWS\system32\k11915696437.exe
C:\WINDOWS\system32\k11915704187.exe
C:\WINDOWS\system32\k11915728477.exe
C:\WINDOWS\system32\k11915744314.exe
C:\WINDOWS\system32\k11915749923.exe
C:\WINDOWS\system32\k11915832677.exe
D:\Autorun.inf
E:\Autorun.inf
.
((((((((((((((((((((((((( Files Created from 2007-09-16 to 2007-10-16 )))))))))))))))))))))))))))))))
.
2007-10-16 11:34 51,200 --a------ C:\WINDOWS\NirCmd.exe
2007-10-15 21:42 <DIR> d-------- C:\Program Files\Maxthon
2007-10-15 20:42 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2007-10-15 20:41 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2007-10-15 20:41 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2007-10-15 20:41 <DIR> d-------- C:\Documents and Settings\Abeysekara Family\Application Data\SUPERAntiSpyware.com
2007-10-14 18:03 <DIR> d-------- C:\Program Files\MediaRing
2007-10-14 18:03 <DIR> d-------- C:\Documents and Settings\Abeysekara Family\Application Data\MRTalk
2007-10-14 11:58 <DIR> d-------- C:\WINDOWS\ERUNT
2007-10-13 18:49 626,688 --a------ C:\WINDOWS\system32\msvcr80.dll
2007-10-05 22:23 <DIR> d-------- C:\Program Files\Kaspersky Lab
2007-10-05 22:23 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2007-10-05 22:20 <DIR> d-------- C:\Program Files\DAP
2007-10-05 22:20 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\TEMP
2007-10-05 22:20 50,688 --a------ C:\WINDOWS\system32\wbhelp2.dll
2007-10-05 17:57 124,416 --a------ C:\WINDOWS\system32\heheuv.dll
2007-10-05 17:51 <DIR> d--hs---- C:\FOUND.005
2007-10-05 17:22 124,416 --a------ C:\WINDOWS\system32\aurpkm.dll
2007-10-05 17:07 124,416 --a------ C:\WINDOWS\system32\xrpjkv.dll
2007-10-05 16:53 <DIR> d---s---- C:\Documents and Settings\foly\UserData
2007-10-05 16:52 <DIR> d-------- C:\Documents and Settings\foly\Application Data\Yahoo!
2007-10-05 16:51 124,416 --a------ C:\WINDOWS\system32\vgkzhm.dll
2007-10-05 16:27 124,416 --a------ C:\WINDOWS\system32\kyxqal.dll
2007-10-05 15:46 124,416 --a------ C:\WINDOWS\system32\mnlrbm.dll
2007-10-05 15:31 <DIR> d--hs---- C:\FOUND.004
2007-10-05 15:11 124,416 --a------ C:\WINDOWS\system32\muipqt.dll
2007-10-05 15:07 124,416 --a------ C:\WINDOWS\system32\rwqmvo.dll
2007-10-05 14:06 <DIR> d--hs---- C:\FOUND.003
2007-10-05 13:32 <DIR> d--hs---- C:\FOUND.002
2007-10-05 12:54 <DIR> d--hs---- C:\FOUND.001
2007-10-05 00:56 991,232 --a------ C:\WINDOWS\system32\esent.dll
2007-10-05 00:25 <DIR> d-------- C:\WINDOWS\system32\bits
2007-10-05 00:16 549,720 --a------ C:\WINDOWS\system32\wuapi.dll
2007-10-05 00:16 325,976 --a------ C:\WINDOWS\system32\wucltui.dll
2007-10-05 00:16 203,096 --a------ C:\WINDOWS\system32\wuweb.dll
2007-10-05 00:16 186,136 --a------ C:\WINDOWS\system32\wuaueng1.dll
2007-10-05 00:16 167,704 --a------ C:\WINDOWS\system32\wuauclt1.exe
2007-10-05 00:16 33,624 --a------ C:\WINDOWS\system32\wups.dll
2007-10-04 22:47 <DIR> d-------- C:\Program Files\Google
2007-10-04 22:46 <DIR> d-------- C:\WINDOWS\LastGood
2007-10-04 22:11 <DIR> d-------- C:\Documents and Settings\Abeysekara Family\Application Data\ACD Systems
2007-10-04 20:34 480,256 --a------ C:\WINDOWS\system32\dllcache\cintsetp.exe
2007-10-04 20:34 455,168 --a------ C:\WINDOWS\system32\dllcache\tintsetp.exe
2007-10-04 20:34 175,104 --a------ C:\WINDOWS\system32\dllcache\pintlcsa.dll
2007-10-04 20:34 173,568 --a------ C:\WINDOWS\system32\dllcache\chtskf.dll
2007-10-04 20:34 97,792 --a------ C:\WINDOWS\system32\dllcache\chtmbx.dll
2007-10-04 20:34 56,320 --a------ C:\WINDOWS\system32\dllcache\chtskdic.dll
2007-10-04 20:30 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2007-10-04 20:30 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Yahoo!
2007-10-04 20:30 <DIR> d-------- C:\Documents and Settings\Abeysekara Family\Application Data\Yahoo!
2007-10-04 20:26 <DIR> d-------- C:\Program Files\Yahoo!
2007-10-04 20:13 185,624 --a------ C:\WINDOWS\system32\iuengine.dll
2007-10-04 20:13 185,624 --a------ C:\WINDOWS\system32\dllcache\iuengine.dll
2007-10-04 20:00 <DIR> d-------- C:\WINDOWS\Sun
2007-10-04 19:03 <DIR> d---s---- C:\Documents and Settings\Abeysekara Family\UserData
2007-10-04 19:02 <DIR> d-------- C:\Documents and Settings\Abeysekara Family\Contacts
2007-10-04 18:59 <DIR> d--hs---- C:\Recycled
2007-10-04 14:10 <DIR> d-------- C:\Program Files\SopCast
2007-10-04 14:10 <DIR> d-------- C:\Documents and Settings\Abeysekara Family\Application Data\SopCast
2007-10-04 14:06 163,840 -ra------ C:\WINDOWS\system32\igfxres.dll
2007-10-04 13:56 <DIR> d-------- C:\Program Files\K-Lite Codec Pack
2007-10-04 13:56 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Apple Computer
2007-10-04 13:55 <DIR> d-------- C:\Program Files\Common Files\xing shared
2007-10-04 13:54 <DIR> d-------- C:\Program Files\Real
2007-10-04 13:54 <DIR> d-------- C:\Program Files\Common Files\Real
2007-10-04 13:53 <DIR> d-------- C:\WINDOWS\system32\DRVSTORE
2007-10-04 13:52 <DIR> d-------- C:\Program Files\MSN Messenger
2007-10-04 13:49 <DIR> d-------- C:\Program Files\Winamp
2007-10-04 13:49 20,640 --------- C:\WINDOWS\system32\drivers\PxHelp20.sys
2007-10-04 13:47 <DIR> d-------- C:\Program Files\Skype
2007-10-04 13:47 <DIR> d-------- C:\Program Files\Common Files\Skype
2007-10-04 13:47 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Skype
2007-10-04 13:47 <DIR> d-------- C:\Documents and Settings\Abeysekara Family\Application Data\Skype
2007-10-04 13:45 <DIR> d-------- C:\Program Files\Java
2007-10-04 13:45 <DIR> d-------- C:\Program Files\Common Files\Java
2007-10-04 13:38 <DIR> d-------- C:\Program Files\Common Files\Ahead
2007-10-04 13:38 <DIR> d-------- C:\Program Files\Ahead
2007-10-04 13:38 1,568,768 --------- C:\WINDOWS\system32\ImagX7.dll
2007-10-04 13:38 476,320 --------- C:\WINDOWS\system32\ImagXpr7.dll
2007-10-04 13:38 471,040 --------- C:\WINDOWS\system32\ImagXRA7.dll
2007-10-04 13:38 262,144 --------- C:\WINDOWS\system32\ImagXR7.dll
2007-10-04 13:38 155,648 --a------ C:\WINDOWS\system32\NeroCheck.exe
2007-10-04 13:38 125,184 --------- C:\WINDOWS\system32\drivers\imagesrv.sys
2007-10-04 13:38 106,496 --a------ C:\WINDOWS\system32\TwnLib20.dll
2007-10-04 13:38 5,504 --------- C:\WINDOWS\system32\drivers\imagedrv.sys
2007-10-04 13:35 <DIR> d-------- C:\Program Files\Common Files\ACD Systems
2007-10-04 13:35 <DIR> d-------- C:\Program Files\ACD Systems
2007-10-04 13:35 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\ACD Systems
2007-10-04 13:35 9,856 --a------ C:\WINDOWS\system32\drivers\pfc.sys
2007-10-04 13:34 <DIR> d-------- C:\WINDOWS\Downloaded Installations
2007-10-04 13:33 21,760 --a------ C:\WINDOWS\system32\dllcache\usbstor.sys
2007-10-04 13:27 17,920 --a------ C:\WINDOWS\system32\mdimon.dll
2007-10-04 13:25 <DIR> d-------- C:\WINDOWS\SHELLNEW
2007-10-04 13:25 <DIR> d-------- C:\Program Files\Microsoft ActiveSync
2007-10-04 13:18 <DIR> dr-h----- C:\KV-Back.vir
2007-10-04 13:18 245,408 --a------ C:\WINDOWS\system32\unicows.dll
2007-10-04 13:17 570 --a------ C:\WINDOWS\CSDdiv3100.dll
2007-10-04 13:12 <DIR> d-------- C:\Program Files\Intel
2007-10-04 13:11 <DIR> d-------- C:\Program Files\Synaptics
2007-10-04 13:07 <DIR> d---s---- C:\WINDOWS\system32\Microsoft
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-10-16 03:55 6,032 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx
2007-10-16 03:55 292,128 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat
2007-10-16 03:55 2,216 --sha-w C:\WINDOWS\system32\drivers\fidbox2.idx
2007-10-16 03:55 1,056 --sha-w C:\WINDOWS\system32\drivers\fidbox2.dat
2007-10-14 10:41 82,061 ----a-w C:\WINDOWS\system32\drivers\klick.dat
2007-10-14 10:41 81,549 ----a-w C:\WINDOWS\system32\drivers\klin.dat
2007-10-04 04:49 --------- d-----w C:\Program Files\microsoft frontpage
2007-07-30 11:19 92,504 ----a-w C:\WINDOWS\system32\dllcache\cdm.dll
2007-07-30 11:19 92,504 ----a-w C:\WINDOWS\system32\cdm.dll
2007-07-30 11:19 53,080 ----a-w C:\WINDOWS\system32\wuauclt.exe
2007-07-30 11:19 53,080 ----a-w C:\WINDOWS\system32\dllcache\wuauclt.exe
2007-07-30 11:19 43,352 ----a-w C:\WINDOWS\system32\wups2.dll
2007-07-30 11:19 1,712,984 ----a-w C:\WINDOWS\system32\wuaueng.dll
2007-07-30 11:19 1,712,984 ----a-w C:\WINDOWS\system32\dllcache\wuaueng.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{15272B08-F6FE-4E71-B2BD-A59AD23EBE3C}]
C:\WINDOWS\bndsrpfn.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D1413F77-5B69-4562-84E1-78F997794E9D}"= C:\WINDOWS\netadv.dll [ ]
[HKEY_CLASSES_ROOT\CLSID\{D1413F77-5B69-4562-84E1-78F997794E9D}]
[HKEY_CLASSES_ROOT\netadv.ToolBar.1]
[HKEY_CLASSES_ROOT\TypeLib\{84C94803-B5EC-4491-B2BE-7B113E013B77}]
[HKEY_CLASSES_ROOT\netadv.ToolBar]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"@"="" []
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe" [2002-08-29 12:00]
"PHIME2002ASync"="C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.exe" [2002-08-29 12:00]
"PHIME2002A"="C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.exe" [2002-08-29 12:00]
"IgfxTray"="C:\WINDOWS\System32\igfxtray.exe" [2005-03-10 09:20]
"HotKeysCmds"="C:\WINDOWS\System32\hkcmd.exe" [2005-03-10 09:16]
"SynTPLpr"="C:\Program Files\Synaptics\SynTP\SynTPLpr.exe" [2004-11-04 18:40]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2004-11-04 18:38]
"SoundMan"="SOUNDMAN.EXE" [2004-09-16 20:39 C:\WINDOWS\SOUNDMAN.EXE]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe" [2005-06-03 03:52]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2007-10-04 13:54]
"AVP"="C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe" [2007-01-29 23:02]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"@"="" []
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2007-01-19 12:54]
"ctfmon.exe"="C:\WINDOWS\System32\ctfmon.exe" [2002-08-29 12:00]
"Yahoo! Pager"="C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.exe" [2007-08-30 17:43]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [2007-10-04 22:48]
"MSMSGS"="C:\Program Files\Messenger\MSMSGS.exe" [2004-11-15 16:18]
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2007-06-21 14:06]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"KvXP"="C:\Program Files\KV2006\KvXP.kxp" /ScanBoot /ScanSys
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell ExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2006-12-20 13:55 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 2007-04-19 13:41 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
.
**************************************************************************
catchme 0.3.1169 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-10-16 11:56:19
Windows 5.1.2600 Service Pack 1 FAT NTAPI
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2007-10-16 11:57:00 - machine was rebooted
.
--- E O F ---
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Logfile of HijackThis v1.99.1
Scan saved at 12:00:00 PM, on 10/16/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\MSMSGS.EXE
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\ymsgr_tray.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe
C:\WINDOWS\system32\slmdmsr.exe
C:\WINDOWS\System32\wuauclt.exe
D:\Software Utilities\HijackThis.exe
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\YAHOO!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\YAHOO!\Companion\Installs\cpn\yt.dll
O2 - BHO: MSVPS System - {15272B08-F6FE-4E71-B2BD-A59AD23EBE3C} - C:\WINDOWS\bndsrpfn.dll (file missing)
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\YAHOO!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: The netadv - {D1413F77-5B69-4562-84E1-78F997794E9D} - C:\WINDOWS\netadv.dll (file missing)
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\MSMSGS.EXE" /background
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm
O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\ie_banner_deny.htm
O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scieplugin.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: klogon - C:\WINDOWS\System32\klogon.dll
O23 - Service: Kaspersky Internet Security 6.0 (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe" -r (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slmdmsr.exe
*****************************************************************