Hi SuperDave, thank you for spending some time with me. Here are the logs of both of those scans; I installed Service Pack 2 for Vista but have had issues with network adaptor ever since so I uninstalled it until I figure all of this out. Thanks again SuperDave!
Results of screen317's Security Check version 0.99.5
Windows Vista Service Pack 1 (UAC is enabled)
Out of date service pack!![/b]
Internet Explorer 7
Out of date! ``````````````````````````````
Antivirus/Firewall Check: Windows Firewall Disabled!
avast! Free Antivirus
Online Armor 4.0
McAfee Security Scan Plus
WMI entry may not exist for antivirus; attempting automatic update. ```````````````````````````````
Anti-malware/Other Utilities Check: Malwarebytes' Anti-Malware
CCleaner
Java(TM) 6 Update 22
Java(TM) 6 Update 5
Java(TM) 6 Update 7
Out of date Java installed! Adobe Flash Player 10.1.85.3
Adobe Reader 9.3.4
Mozilla Firefox (3.6.10)
Firefox Out of Date! ````````````````````````````````
Process Check:
objlist.exe by Laurent Windows Defender MSASCui.exe
Tall Emu Online Armor OAcat.exe
Tall Emu Online Armor oasrv.exe
Tall Emu Online Armor oaui.exe
Tall Emu Online Armor OAhlp.exe
Windows Defender MSASCui.exe
Alwil Software Avast5 AvastSvc.exe
Alwil Software Avast5 AvastUI.exe
````````````````````````````````
DNS Vulnerability Check: GREAT! (Not vulnerable to DNS cache poisoning)
``````````End of Log```````````` ===================================================================================================
ComboFix 10-10-18.03 - PT 10/19/2010 4:31.1.1 - x86
Microsoft® Windows Vista™ Home Basic 6.0.6001.1.1252.1.1033.18.1978.848 [GMT -4:00]
Running from: c:\users\PT\Desktop\Commy.exe
SP: SUPERAntiSpyware *disabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((( Files Created from 2010-09-19 to 2010-10-19 )))))))))))))))))))))))))))))))
.
2010-10-19 08:44 . 2010-10-19 08:45 -------- d-----w- c:\users\PT\AppData\Local\temp
2010-10-19 08:44 . 2010-10-19 08:44 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-10-19 02:41 . 2010-06-04 16:29 1606368 ----a-w- c:\windows\system32\drivers\athw.sys
2010-10-19 02:24 . 2010-10-19 02:24 -------- d-----w- c:\users\PT\AppData\Local\Innovative Solutions
2010-10-19 02:24 . 2010-10-19 02:24 -------- d-----w- c:\programdata\Innovative Solutions
2010-10-19 02:24 . 2010-10-19 02:24 -------- d-----w- c:\program files\Innovative Solutions
2010-10-18 12:08 . 2010-10-18 12:08 -------- d-----w- c:\program files\Microsoft
2010-10-18 12:08 . 2010-10-18 12:08 -------- d-----w- c:\program files\MSN Toolbar
2010-10-18 12:07 . 2010-10-18 12:07 -------- d-----w- c:\program files\Microsoft Silverlight
2010-10-18 12:07 . 2010-10-18 12:07 -------- d-----w- c:\programdata\PC Drivers HeadQuarters
2010-10-18 12:07 . 2010-10-18 12:08 -------- d-----w- c:\program files\MSN Toolbar Installer
2010-10-18 12:05 . 2010-10-18 12:05 -------- d-----w- c:\program files\PC Drivers HeadQuarters
2010-10-16 17:00 . 2010-10-16 17:00 388096 ----a-r- c:\users\PT\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2010-10-16 17:00 . 2010-10-16 17:00 -------- d-----w- c:\program files\Trend Micro
2010-10-16 08:36 . 2010-10-16 08:36 -------- d-----w- c:\program files\CCleaner
2010-10-16 08:21 . 2010-10-16 08:21 -------- d-----w- c:\programdata\ZA_PreservedFiles
2010-10-16 07:46 . 2010-10-16 08:19 -------- d-----w- c:\programdata\OnlineArmor
2010-10-16 07:46 . 2010-10-16 07:46 -------- d-----w- c:\users\PT\AppData\Roaming\OnlineArmor
2010-10-16 07:44 . 2010-07-07 16:25 22600 ----a-w- c:\windows\system32\drivers\OAmon.sys
2010-10-16 07:44 . 2010-07-07 16:25 29256 ----a-w- c:\windows\system32\drivers\OAnet.sys
2010-10-16 07:44 . 2010-07-07 16:25 236104 ----a-w- c:\windows\system32\drivers\OADriver.sys
2010-10-16 07:44 . 2010-10-16 07:44 -------- d-----w- c:\program files\Emsisoft
2010-10-16 04:56 . 2010-09-07 14:47 17744 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-10-16 04:56 . 2010-09-07 14:52 165584 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-10-16 04:56 . 2010-09-07 14:47 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-10-16 04:56 . 2010-09-07 14:52 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-10-16 04:56 . 2010-09-07 14:47 50768 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2010-10-16 04:55 . 2010-09-07 15:12 38848 ----a-w- c:\windows\avastSS.scr
2010-10-16 04:55 . 2010-09-07 15:11 167592 ----a-w- c:\windows\system32\aswBoot.exe
2010-10-16 04:54 . 2010-10-16 04:54 -------- d-----w- c:\programdata\Alwil Software
2010-10-16 04:54 . 2010-10-16 04:54 -------- d-----w- c:\program files\Alwil Software
2010-10-16 03:49 . 2010-10-16 03:49 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2010-10-16 03:48 . 2010-10-16 03:48 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-10-16 03:47 . 2010-10-16 03:49 -------- d-----w- c:\program files\DivX
2010-10-16 03:45 . 2010-09-15 08:50 472808 ----a-w- c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
2010-10-16 03:45 . 2010-09-15 08:50 472808 ----a-w- c:\windows\system32\deployJava1.dll
2010-10-16 03:40 . 2010-10-16 03:40 -------- d-----w- c:\programdata\McAfee Security Scan
2010-10-16 03:40 . 2010-10-16 03:40 -------- d-----w- c:\program files\McAfee Security Scan
2010-10-16 00:10 . 2010-09-09 22:52 6084944 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5C93082C-93BB-4EAA-89DA-3FA60FB3D2DA}\mpengine.dll
2010-10-15 22:22 . 2010-10-15 22:22 -------- d-----w- c:\users\PT\AppData\Local\Microsoft Corporation
2010-10-15 22:14 . 2010-10-15 22:15 -------- d-----w- c:\program files\Microsoft Windows 7 Upgrade Advisor
2010-10-15 13:23 . 2010-10-15 13:23 -------- d-----w- c:\programdata\WindowsSearch
2010-10-15 04:29 . 2010-10-15 04:29 -------- d-----w- c:\windows\system32\EventProviders
2010-10-15 04:29 . 2010-10-15 23:22 -------- d-----w- C:\78944cbdd329974413
2010-10-15 03:24 . 2009-11-08 14:55 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2010-10-15 03:24 . 2009-11-08 14:55 49472 ----a-w- c:\windows\system32\netfxperf.dll
2010-10-15 03:24 . 2009-11-08 14:55 297808 ----a-w- c:\windows\system32\mscoree.dll
2010-10-15 03:24 . 2009-11-08 14:55 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2010-10-15 03:24 . 2009-11-08 14:55 1130824 ----a-w- c:\windows\system32\dfshim.dll
2010-10-15 03:19 . 2010-09-20 09:25 231936 ----a-w- c:\windows\system32\msshsq.dll
2010-10-15 03:11 . 2010-06-28 17:00 1316864 ----a-w- c:\windows\system32\ole32(1580).dll
2010-10-15 03:11 . 2010-06-28 16:15 1315840 ----a-w- c:\windows\system32\ole32.dll
2010-10-15 03:11 . 2010-06-28 14:31 339968 ----a-w- c:\program files\Windows NT\Accessories\wordpad.exe
2010-10-15 03:11 . 2010-04-05 16:08 317952 ----a-w- c:\windows\system32\MP4SDECD.DLL
2010-10-15 03:11 . 2010-08-31 15:44 531968 ----a-w- c:\windows\system32\comctl32(918).dll
2010-10-15 03:11 . 2010-08-31 15:40 531968 ----a-w- c:\windows\system32\comctl32.dll
2010-10-15 03:09 . 2010-09-10 16:35 168960 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2010-10-15 03:09 . 2010-09-10 16:37 8147456 ----a-w- c:\windows\system32\wmploc.DLL
2010-10-15 03:08 . 2010-09-06 14:13 303616 ----a-w- c:\windows\system32\drivers\srv.sys
2010-10-15 03:08 . 2010-09-06 14:12 145408 ----a-w- c:\windows\system32\drivers\srv2.sys
2010-10-15 03:08 . 2010-09-06 16:24 125952 ----a-w- c:\windows\system32\srvsvc.dll
2010-10-15 03:08 . 2010-09-06 14:12 101888 ----a-w- c:\windows\system32\drivers\srvnet.sys
2010-10-15 03:08 . 2010-09-06 16:23 17920 ----a-w- c:\windows\system32\netevent.dll
2010-10-15 03:07 . 2010-06-18 17:31 36864 ----a-w- c:\windows\system32\rtutils(1680).dll
2010-10-15 03:07 . 2010-06-18 16:43 36352 ----a-w- c:\windows\system32\rtutils.dll
2010-10-15 03:06 . 2010-06-22 12:57 2048 ----a-w- c:\windows\system32\tzres.dll
2010-10-15 03:05 . 2010-04-16 16:05 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2010-10-15 03:05 . 2010-04-16 14:17 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2010-10-15 03:04 . 2010-08-17 10:52 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat
2010-10-15 03:03 . 2010-01-25 08:35 523776 ----a-w- c:\windows\system32\RMActivate_isv.exe
2010-10-15 03:03 . 2010-01-25 08:34 511488 ----a-w- c:\windows\system32\RMActivate.exe
2010-10-15 03:03 . 2010-01-25 08:34 347136 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2010-10-15 03:03 . 2010-01-25 12:48 472576 ----a-w- c:\windows\system32\secproc_isv.dll
2010-10-15 03:03 . 2010-01-25 12:48 472064 ----a-w- c:\windows\system32\secproc.dll
2010-10-15 03:03 . 2010-01-25 08:35 346624 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2010-10-15 03:03 . 2010-01-25 12:48 151040 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2010-10-15 03:03 . 2010-01-25 12:48 151040 ----a-w- c:\windows\system32\secproc_ssp.dll
2010-10-15 03:03 . 2010-01-25 12:45 329216 ----a-w- c:\windows\system32\msdrm.dll
2010-10-15 03:03 . 2010-07-26 15:51 11584512 ----a-w- c:\windows\system32\shell32(1711).dll
2010-10-15 03:02 . 2010-01-29 16:22 1616384 ----a-w- c:\program files\Windows Mail\msoe.dll
2010-10-15 03:00 . 2010-04-05 16:07 67072 ----a-w- c:\windows\system32\asycfilt.dll
2010-10-15 03:00 . 2010-02-23 11:32 105984 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-10-15 03:00 . 2010-02-23 11:32 212992 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2010-10-15 03:00 . 2010-02-23 11:32 78848 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2010-10-15 02:59 . 2010-04-16 16:46 502272 ----a-w- c:\windows\system32\usp10(1812).dll
2010-10-15 02:59 . 2010-04-16 16:10 501760 ----a-w- c:\windows\system32\usp10.dll
2010-10-15 02:59 . 2010-08-10 15:53 274944 ----a-w- c:\windows\system32\schannel(1688).dll
2010-10-15 02:59 . 2010-08-10 15:02 274432 ----a-w- c:\windows\system32\schannel.dll
2010-10-15 02:59 . 2010-03-04 18:54 430080 ----a-w- c:\windows\system32\vbscript.dll
2010-10-15 02:58 . 2010-06-16 15:55 902032 ----a-w- c:\windows\system32\drivers\tcpip.sys
2010-10-15 02:58 . 2010-06-16 15:56 98192 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2010-10-15 02:58 . 2010-06-16 15:55 220040 ----a-w- c:\windows\system32\drivers\netio.sys
2010-10-15 02:58 . 2010-06-16 15:11 438272 ----a-w- c:\windows\system32\IKEEXT.DLL
2010-10-15 02:58 . 2010-06-16 15:10 595456 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2010-10-15 02:58 . 2010-06-16 15:09 328704 ----a-w- c:\windows\system32\BFE.DLL
2010-10-15 02:58 . 2010-05-27 19:16 738816 ----a-w- c:\windows\system32\inetcomm.dll
2010-10-15 02:58 . 2010-08-17 13:32 126464 ----a-w- c:\windows\system32\spoolsv.exe
2010-10-15 02:58 . 2010-05-26 16:16 34304 ----a-w- c:\windows\system32\atmlib.dll
2010-10-15 02:58 . 2010-05-26 14:25 289792 ----a-w- c:\windows\system32\atmfd.dll
2010-10-15 02:58 . 2009-10-19 14:24 72704 ----a-w- c:\windows\system32\fontsub.dll
2010-10-15 02:57 . 2010-06-08 17:00 3598216 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-10-15 02:57 . 2010-06-08 17:00 3545992 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-10-15 02:57 . 2010-05-27 19:16 81920 ----a-w- c:\windows\system32\iccvid.dll
2010-10-15 02:57 . 2010-08-31 15:41 954752 ----a-w- c:\windows\system32\mfc40.dll
2010-10-15 02:57 . 2010-08-31 15:41 954288 ----a-w- c:\windows\system32\mfc40u.dll
2010-10-15 02:57 . 2010-06-11 16:15 1248768 ----a-w- c:\windows\system32\msxml3(1540).dll
2010-10-15 02:57 . 2010-06-11 15:30 1257472 ----a-w- c:\windows\system32\msxml3.dll
2010-10-15 02:57 . 2009-12-23 11:33 172032 ----a-w- c:\windows\system32\wintrust(1909).dll
2010-10-15 02:57 . 2009-12-23 12:43 171520 ----a-w- c:\windows\system32\wintrust.dll
2010-10-15 02:56 . 2010-04-16 16:10 1314816 ----a-w- c:\windows\system32\quartz.dll
2010-10-15 02:56 . 2010-01-15 00:04 98304 ----a-w- c:\windows\system32\cabview.dll
2010-10-15 02:56 . 2010-08-26 16:07 157184 ----a-w- c:\windows\system32\t2embed.dll
2010-10-15 02:56 . 2010-06-17 17:15 10926592 ----a-w- c:\program files\Movie Maker\MOVIEMK.dll
2010-10-15 02:56 . 2010-06-17 15:49 150016 ----a-w- c:\program files\Movie Maker\MOVIEMK.exe
2010-10-15 02:56 . 2010-08-31 13:39 2037248 ----a-w- c:\windows\system32\win32k.sys
2010-10-15 02:55 . 2010-01-21 15:59 62464 ----a-w- c:\windows\system32\l3codeca.acm
2010-10-15 02:55 . 2010-08-20 15:21 866816 ----a-w- c:\windows\system32\wmpmde.dll
2010-10-15 02:45 . 2009-12-28 12:32 22528 ----a-w- c:\windows\system32\msyuv.dll
2010-10-15 02:45 . 2009-12-28 12:32 31744 ----a-w- c:\windows\system32\msvidc32.dll
2010-10-15 02:45 . 2009-12-28 12:35 11776 ----a-w- c:\windows\system32\tsbyuv.dll
2010-10-15 02:45 . 2009-12-28 12:32 13312 ----a-w- c:\windows\system32\msrle32.dll
2010-10-15 02:45 . 2009-12-28 12:31 50176 ----a-w- c:\windows\system32\iyuv_32.dll
2010-10-15 02:45 . 2009-12-28 12:32 123904 ----a-w- c:\windows\system32\msvfw32.dll
2010-10-15 02:45 . 2009-12-28 12:31 82944 ----a-w- c:\windows\system32\mciavi32.dll
2010-10-15 02:45 . 2009-12-28 12:28 65024 ----a-w- c:\windows\system32\avicap32.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-01-21 1233920]
"DriverMax"="c:\program files\Innovative Solutions\DriverMax\devices.exe" [2010-03-01 9216928]
"DriverMax_RESTART"="c:\program files\Innovative Solutions\DriverMax\devices.exe" [2010-03-01 9216928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-04-17 1049896]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-06-17 150040]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-06-17 170520]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-06-17 145944]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2008-04-15 488752]
"avast5"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2010-09-07 2838912]
"@OnlineArmor GUI"="c:\program files\Emsisoft\Online Armor\OAui.exe" [2010-07-07 6854984]
"MSN Toolbar"="c:\program files\MSN Toolbar\Platform\4.0.0417.0\mswinext.exe" [2010-07-06 240480]
"Microsoft Default Manager"="c:\program files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" [2009-07-17 288080]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
McAfee Security Scan Plus.lnk - c:\program files\McAfee Security Scan\2.0.181\SSScheduler.exe [2010-1-15 255536]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"EnableShellExecuteHooks"= 1 (0x1)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"= "c:\progra~1\Emsisoft\ONLINE~1\oaevent.dll" [2010-07-07 924488]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 20:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux4"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QPService]
2008-06-12 05:17 468264 ----a-w- c:\program files\HP\QuickPlay\QPService.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-649949092-3988278955-3429382552-1000]
"EnableNotificationsRef"=dword:00000001
R2 AMPingService;AMPingService;c:\users\PT\AppData\Local\Temp\AMPing.exe
R3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 193840]
R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232]
R3 nosGetPlusHelper;getPlus(R) Helper 3004;c:\windows\System32\svchost.exe [2008-01-21 21504]
R3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [2010-03-08 12872]
S1 aswSP;aswSP;
S1 OADevice;OADriver;c:\windows\system32\drivers\OADriver.sys [2010-07-07 236104]
S1 OAmon;OAmon;c:\windows\system32\drivers\OAmon.sys [2010-07-07 22600]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-03-08 12872]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.sys [2010-06-15 67656]
S2 aswFsBlk;aswFsBlk;
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-09-07 50768]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\McAfee\SiteAdvisor\McSACore.exe [2009-02-11 210216]
S2 OAcat;Online Armor Helper Service;c:\program files\Emsisoft\Online Armor\OAcat.exe [2010-07-07 1283400]
S2 Recovery Service for Windows;Recovery Service for Windows;c:\windows\SMINST\BLService.exe [2008-04-26 361808]
S2 SvcOnlineArmor;Online Armor;c:\program files\Emsisoft\Online Armor\oasrv.exe [2010-07-07 3364680]
S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;c:\windows\system32\drivers\IntcHdmi.sys [2008-06-04 113664]
S3 OAnet;OnlineArmor Service;c:\windows\system32\DRIVERS\oanet.sys [2010-07-07 29256]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
getPlusHelper REG_MULTI_SZ getPlusHelper
nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper
.
Contents of the 'Scheduled Tasks' folder
2010-10-18 c:\windows\Tasks\User_Feed_Synchronization-{AB615B01-BDB4-4572-9C5C-339E41746C7F}.job
- c:\windows\system32\msfeedssync.exe [2008-01-21 02:34]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://yahoo.com/
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=83&bd=Presario&pf=cnnb
FF - ProfilePath - c:\users\PT\AppData\Roaming\Mozilla\Firefox\Profiles\dmo63lgc.default\
FF - prefs.js: browser.startup.homepage - yahoo.com
FF - component: c:\program files\McAfee\SiteAdvisor\components\McFFPlg.dll
FF - component: c:\users\PT\AppData\Roaming\Mozilla\Firefox\Profiles\dmo63lgc.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
FF - component: c:\users\PT\AppData\Roaming\Mozilla\Firefox\Profiles\dmo63lgc.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\MSN Toolbar\Platform\4.0.0417.0\npwinext.dll
FF - plugin: c:\users\PT\AppData\Roaming\Mozilla\Firefox\Profiles\dmo63lgc.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}\plugins\np_gp.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- FIREFOX POLICIES ----
FF - user.js: browser.cache.memory.capacity - 65536
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autofill - true
FF - user.js: content.interrupt.parsing - true
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 750000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 750000
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.firstrequest - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: nglayout.initialpaint.delay - 0
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
FF - user.js: yahoo.homepage.dontask - true
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'Explorer.exe'(1680)
c:\program files\Emsisoft\Online Armor\OAwatch.dll
c:\program files\McAfee\SiteAdvisor\saHook.dll
.
Completion time: 2010-10-19 04:51:12
ComboFix-quarantined-files.txt 2010-10-19 08:51
Pre-Run: 69,963,411,456 bytes free
Post-Run: 69,929,406,464 bytes free
- - End Of File - - AE2020A2066D72A1E31A4D4E5E7F6290