The only way I can start programs is from task manager. I took a stab in the dark and used the "browse" from task manager to find the launcher for my AV. At first it showed as a running in the applications tab and then disappeared and now I have the Icon in the lower right hand side of my desktop that my AV is running.
Anything that I click on gives me the above message. I don't know how to get to the security center to see if anything has changed.
*******I also just looked at the topic next to mine in this forum by SalP or something and see where he said he restarted and that fixed his problem. I was going to hit the power button on my computer and restart but then thought about using task manager.
ComboFix 12-01-12.04 - SuperDuperUserOne 01/12/2012 17:59:08.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.1.1033.18.3033.1968 [GMT -5:00]
Running from: c:\users\SuperDuperUserOne\Desktop\ComboFix.exe
AV: Trend Micro Titanium Internet Security 2012 *Enabled/Updated* {7193B549-236F-55EE-9AEC-F65279E59A92}
SP: Trend Micro Titanium Internet Security 2012 *Enabled/Updated* {CAF254AD-0555-5A60-A05C-CD200262D02F}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\SuperDuperUserOne\flashget196en.exe
c:\users\SuperDuperUserOne\MyDefrag-v4.3.1.exe
c:\windows\$NtUninstallKB3515$
c:\windows\$NtUninstallKB3515$\3308739060
.
c:\windows\system32\drivers\netbt.sys was missing
Restored copy from - c:\windows\winsxs\x86_microsoft-windows-netbt_31bf3856ad364e35_
6.0.6001.18000_none_6064c861f7442765\netbt.sys
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_.netbt
.
.
((((((((((((((((((((((((( Files Created from 2011-12-12 to 2012-01-12 )))))))))))))))))))))))))))))))
.
.
2012-01-12 23:24 . 2012-01-12 23:38 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Local\temp
2012-01-12 23:24 . 2012-01-12 23:24 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-01-12 23:24 . 2008-01-21 02:24 184320 ----a-w- c:\windows\system32\drivers\netbt.sys
2012-01-11 20:02 . 2012-01-11 20:02 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\Template
2012-01-11 14:54 . 2011-11-17 06:48 440192 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-01-11 14:54 . 2011-11-16 16:23 377344 ----a-w- c:\windows\system32\winhttp.dll
2012-01-11 14:54 . 2011-11-16 16:23 72704 ----a-w- c:\windows\system32\secur32.dll
2012-01-11 14:54 . 2011-11-16 16:23 278528 ----a-w- c:\windows\system32\schannel.dll
2012-01-11 14:54 . 2011-11-16 16:21 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2012-01-11 14:54 . 2011-11-16 14:12 9728 ----a-w- c:\windows\system32\lsass.exe
2012-01-11 00:55 . 2011-10-14 16:03 189952 ----a-w- c:\windows\system32\winmm.dll
2012-01-11 00:55 . 2011-10-14 16:00 23552 ----a-w- c:\windows\system32\mciseq.dll
2012-01-11 00:55 . 2011-11-18 20:23 1205064 ----a-w- c:\windows\system32\ntdll.dll
2012-01-11 00:55 . 2011-11-25 15:59 376320 ----a-w- c:\windows\system32\winsrv.dll
2012-01-11 00:55 . 2011-11-18 17:47 66560 ----a-w- c:\windows\system32\packager.dll
2012-01-11 00:55 . 2011-12-01 15:21 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat
2012-01-11 00:55 . 2011-10-25 15:58 1314816 ----a-w- c:\windows\system32\quartz.dll
2012-01-11 00:55 . 2011-10-25 15:58 497152 ----a-w- c:\windows\system32\qdvd.dll
2012-01-08 14:08 . 2011-12-10 20:24 20464 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-01-06 17:28 . 2012-01-06 17:28 -------- d-----w- c:\program files\Safari
2012-01-06 14:52 . 2012-01-12 22:24 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\Skype
2012-01-06 14:52 . 2012-01-06 14:52 -------- d-----r- c:\program files\Skype
2012-01-06 14:52 . 2012-01-06 14:52 -------- d-----w- c:\program files\Common Files\Skype
2012-01-06 14:52 . 2012-01-06 14:52 -------- d-----w- c:\programdata\Skype
2012-01-03 23:24 . 2012-01-05 04:18 -------- d-----w- c:\users\SuperDuperUserOne\Tracing
2012-01-03 23:14 . 2012-01-04 06:26 -------- d-----w- c:\program files\Microsoft
2012-01-03 23:14 . 2009-09-04 22:44 69464 ----a-w- c:\windows\system32\XAPOFX1_3.dll
2012-01-03 23:14 . 2009-09-04 22:44 515416 ----a-w- c:\windows\system32\XAudio2_5.dll
2012-01-03 23:14 . 2009-09-04 22:29 453456 ----a-w- c:\windows\system32\d3dx10_42.dll
2012-01-03 23:13 . 2006-11-29 18:06 3426072 ----a-w- c:\windows\system32\d3dx9_32.dll
2012-01-03 23:12 . 2009-08-04 08:02 754688 ----a-w- c:\windows\system32\webservices.dll
2012-01-03 23:10 . 2012-01-03 23:22 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Local\Windows Live
2012-01-03 23:10 . 2012-01-03 23:10 -------- d-----w- c:\program files\Common Files\Windows Live
2012-01-01 23:07 . 2012-01-01 23:07 -------- d-----w- c:\program files\VS Revo Group
2012-01-01 04:42 . 2012-01-01 05:07 -------- d-----w- C:\Downloads
2012-01-01 04:38 . 2012-01-01 04:38 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Local\PLX_Technology
2012-01-01 04:36 . 2010-05-25 14:14 24880 ----a-w- c:\windows\system32\drivers\OXUDIDRV_x32.sys
2012-01-01 04:36 . 2012-01-01 04:36 -------- d-----w- c:\program files\Iomega
2011-12-31 10:16 . 2012-01-09 09:33 -------- d-----w- c:\program files\MyDefrag v4.3.1
2011-12-30 07:12 . 2011-12-30 07:21 22032 ----a-w- c:\windows\DCEBoot.exe
2011-12-28 08:50 . 2011-12-28 08:50 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Local\DDMSettings
2011-12-26 02:07 . 2011-12-26 02:07 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\FlashGet
2011-12-23 00:50 . 2011-12-23 00:50 -------- d-----w- c:\program files\iPod
2011-12-23 00:50 . 2011-12-23 00:50 -------- d-----w- c:\program files\iTunes
2011-12-22 23:29 . 2012-01-02 03:49 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\Media Player Classic
2011-12-22 18:13 . 2011-12-22 23:29 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\DivX
2011-12-22 18:13 . 2011-12-22 18:13 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2011-12-22 18:12 . 2011-12-28 08:43 -------- d-----w- c:\program files\Common Files\DivX Shared
2011-12-22 18:11 . 2011-12-28 08:44 -------- d-----w- c:\program files\DivX
2011-12-22 18:11 . 2011-12-28 08:44 -------- d-----w- c:\programdata\DivX
2011-12-22 18:08 . 2011-03-02 11:43 175616 ----a-w- c:\windows\system32\unrar.dll
2011-12-18 04:30 . 2011-12-18 04:30 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\Malwarebytes
2011-12-18 04:30 . 2011-12-18 04:30 -------- d-----w- c:\programdata\Malwarebytes
2011-12-18 04:30 . 2012-01-08 14:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-12-16 01:26 . 2011-12-16 01:26 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\SUPERAntiSpyware.com
2011-12-16 01:25 . 2011-12-16 01:26 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-12-16 01:25 . 2011-12-16 01:25 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2011-12-14 03:57 . 2011-12-14 03:57 -------- d-----w- c:\program files\BurnAware Free
2011-12-14 03:11 . 2011-10-27 08:01 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-12-14 03:11 . 2011-10-27 08:01 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-12-14 03:11 . 2011-10-14 16:02 429056 ----a-w- c:\windows\system32\EncDec.dll
2011-12-14 03:11 . 2011-11-23 13:37 2043904 ----a-w- c:\windows\system32\win32k.sys
2011-12-14 03:10 . 2011-10-25 15:56 49152 ----a-w- c:\windows\system32\csrsrv.dll
2011-12-14 03:10 . 2011-11-08 14:42 2048 ----a-w- c:\windows\system32\tzres.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-12-18 04:57 . 2008-07-07 16:18 319456 ----a-w- c:\windows\DIFxAPI.dll
2011-12-04 01:31 . 2011-12-04 01:31 677136 ----a-w- c:\programdata\Microsoft\eHome\Packages\
MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-12-01 18:32 . 2011-12-01 18:32 413696 ----a-w- c:\windows\system32\wrap_oal.dll
2011-12-01 18:32 . 2011-12-01 18:32 110592 ----a-w- c:\windows\system32\OpenAL32.dll
2011-12-01 13:10 . 2011-12-01 13:10 86528 ----a-w- c:\windows\system32\iesysprep.dll
2011-12-01 13:10 . 2011-12-01 13:10 76800 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-12-01 13:10 . 2011-12-01 13:10 74752 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-12-01 13:10 . 2011-12-01 13:10 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-12-01 13:10 . 2011-12-01 13:10 161792 ----a-w- c:\windows\system32\msls31.dll
2011-12-01 13:10 . 2011-12-01 13:10 74752 ----a-w- c:\windows\system32\iesetup.dll
2011-12-01 13:10 . 2011-12-01 13:10 63488 ----a-w- c:\windows\system32\tdc.ocx
2011-12-01 13:10 . 2011-12-01 13:10 367104 ----a-w- c:\windows\system32\html.iec
2011-12-01 13:10 . 2011-12-01 13:10 23552 ----a-w- c:\windows\system32\licmgr10.dll
2011-12-01 13:10 . 2011-12-01 13:10 420864 ----a-w- c:\windows\system32\vbscript.dll
2011-12-01 13:10 . 2011-12-01 13:10 35840 ----a-w- c:\windows\system32\imgutil.dll
2011-12-01 13:10 . 2011-12-01 13:10 152064 ----a-w- c:\windows\system32\wextract.exe
2011-12-01 13:10 . 2011-12-01 13:10 150528 ----a-w- c:\windows\system32\iexpress.exe
2011-12-01 13:10 . 2011-12-01 13:10 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2011-12-01 13:10 . 2011-12-01 13:10 11776 ----a-w- c:\windows\system32\mshta.exe
2011-12-01 13:10 . 2011-12-01 13:10 101888 ----a-w- c:\windows\system32\admparse.dll
2011-12-01 13:10 . 2011-12-01 13:10 110592 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-12-01 13:09 . 2011-12-01 13:09 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2011-12-01 13:09 . 2011-12-01 13:09 357376 ----a-w- c:\windows\system32\MFHEAACdec.dll
2011-12-01 13:09 . 2011-12-01 13:09 98816 ----a-w- c:\windows\system32\mfps.dll
2011-12-01 13:09 . 2011-12-01 13:09 586240 ----a-w- c:\windows\system32\stobject.dll
2011-12-01 13:09 . 2011-12-01 13:09 302592 ----a-w- c:\windows\system32\mfmp4src.dll
2011-12-01 13:09 . 2011-12-01 13:09 2873344 ----a-w- c:\windows\system32\mf.dll
2011-12-01 13:09 . 2011-12-01 13:09 261632 ----a-w- c:\windows\system32\mfreadwrite.dll
2011-12-01 13:09 . 2011-12-01 13:09 209920 ----a-w- c:\windows\system32\mfplat.dll
2011-12-01 13:09 . 2011-12-01 13:09 683008 ----a-w- c:\windows\system32\d2d1.dll
2011-12-01 13:09 . 2011-12-01 13:09 486400 ----a-w- c:\windows\system32\d3d10level9.dll
2011-12-01 13:09 . 2011-12-01 13:09 135680 ----a-w- c:\windows\system32\XpsRasterService.dll
2011-12-01 13:09 . 2011-12-01 13:09 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2011-12-01 13:09 . 2011-12-01 13:09 638336 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2011-12-01 13:09 . 2011-12-01 13:09 478720 ----a-w- c:\windows\system32\dxgi.dll
2011-12-01 13:09 . 2011-12-01 13:09 37376 ----a-w- c:\windows\system32\cdd.dll
2011-12-01 13:09 . 2011-12-01 13:09 258048 ----a-w- c:\windows\system32\winspool.drv
2011-12-01 13:09 . 2011-12-01 13:09 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2011-12-01 13:09 . 2011-12-01 13:09 189952 ----a-w- c:\windows\system32\d3d10core.dll
2011-12-01 13:09 . 2011-12-01 13:09 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2011-12-01 13:09 . 2011-12-01 13:09 1029120 ----a-w- c:\windows\system32\d3d10.dll
2011-12-01 13:09 . 2011-12-01 13:09 847360 ----a-w- c:\windows\system32\OpcServices.dll
2011-12-01 13:09 . 2011-12-01 13:09 667648 ----a-w- c:\windows\system32\printfilterpipelinesvc.exe
2011-12-01 13:09 . 2011-12-01 13:09 26112 ----a-w- c:\windows\system32\printfilterpipelineprxy.dll
2011-12-01 13:09 . 2011-12-01 13:09 1554432 ----a-w- c:\windows\system32\xpsservices.dll
2011-12-01 13:07 . 2011-12-01 13:07 4096 ----a-w- c:\windows\system32\drivers\en-US\dxgkrnl.sys.mui
2011-12-01 13:07 . 2011-12-01 13:07 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll
2011-12-01 13:07 . 2011-12-01 13:07 519680 ----a-w- c:\windows\system32\d3d11.dll
2011-12-01 13:07 . 2011-12-01 13:07 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2011-12-01 13:07 . 2011-12-01 13:07 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2011-12-01 13:07 . 2011-12-01 13:07 252928 ----a-w- c:\windows\system32\dxdiag.exe
2011-12-01 13:07 . 2011-12-01 13:07 195584 ----a-w- c:\windows\system32\dxdiagn.dll
2011-12-01 13:07 . 2011-12-01 13:07 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2011-12-01 06:21 . 2011-12-01 06:21 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-12-01 00:44 . 2011-12-01 00:44 56 ----a-w- c:\windows\system32\SupportTool.exe.bat
2011-12-01 00:39 . 2011-12-01 00:47 92432 ----a-w- c:\windows\system32\drivers\tmtdi.sys
2011-12-01 00:39 . 2011-12-01 00:45 81168 ----a-w- c:\windows\system32\drivers\tmactmon.sys
2011-12-01 00:39 . 2011-12-01 00:45 68368 ----a-w- c:\windows\system32\drivers\tmevtmgr.sys
2011-12-01 00:39 . 2011-12-01 00:45 205072 ----a-w- c:\windows\system32\drivers\tmcomm.sys
2011-11-30 08:46 . 2011-11-30 08:46 652296 ----a-w- c:\programdata\Microsoft\eHome\Packages\SportsTemplate\
SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
2011-11-30 08:46 . 2011-11-30 08:46 416128 ----a-w- c:\programdata\Microsoft\eHome\Packages\NetTV\Browse\NetTVResources.dll
2011-11-10 10:54 . 2011-12-01 01:12 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-10-20 23:26 . 2011-10-20 23:26 94208 ----a-w- c:\windows\system32\dpl100.dll
2011-10-18 06:28 . 2011-11-30 07:11 6668624 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\
{3BA2DDA6-0E7F-403E-B843-9206D95A55FB}\mpengine.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Trend Micro Client Framework"="c:\program files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe" [2011-12-01 129304]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2010-04-10 1310720]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-06-03 138008]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-06-03 171288]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-06-03 172824]
"DLCCCATS"="c:\windows\system32\spool\DRIVERS\W32X86\3\DLCCtime.dll" [2006-02-24 73728]
"KBD"="c:\hp\KBD\KbdStub.EXE" [2006-12-08 65536]
"Malwarebytes' Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2011-12-24 981680]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-12-08 421736]
"hpsysdrv"="c:\hp\support\hpsysdrv.exe" [2007-04-18 65536]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-07-28 1259376]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-11-02 59240]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2011-05-04 17:54 551296 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [2011-08-11 116608]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - NETBT
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=83&bd=Pavilion&pf=cndt
uInternet Settings,ProxyOverride = *.local
IE: &Download All with FlashGet - h:\flashget\jc_all.htm
IE: &Download with FlashGet - h:\flashget\jc_link.htm
TCP: DhcpNameServer = 209.18.47.61 209.18.47.62
.
- - - - ORPHANS REMOVED - - - -
.
HKLM-Run-HP Health Check Scheduler - [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
AddRemove-FlashGet - h:\flashget\uninst.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2012-01-12 18:38
Windows 6.0.6002 Service Pack 2 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
DLCCCATS = rundll32 c:\windows\system32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16?
??
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.smb]
"ImagePath"="\*"
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Trend Micro\AMSP\coreServiceShell.exe
c:\program files\Trend Micro\AMSP\coreFrameworkHost.exe
c:\windows\system32\AEADISRV.EXE
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\system32\dlcccoms.exe
c:\windows\ehome\ehmsas.exe
c:\windows\ehome\ehsched.exe
c:\program files\Trend Micro\UniClient\UiFrmWrk\uiSeAgnt.exe
c:\program files\iPod\bin\iPodService.exe
c:\windows\ehome\ehRecvr.exe
c:\program files\Hewlett-Packard\HP Health Check\hphc_service.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Completion time: 2012-01-12 18:41:58 - machine was rebooted
ComboFix-quarantined-files.txt 2012-01-12 23:41
.
Pre-Run: 391,558,811,648 bytes free
Post-Run: 391,209,582,592 bytes free
.
- - End Of File - - 2345CA6C9C98304BCF418C389C3623C3
ComboFix 12-01-12.04 - SuperDuperUserOne 01/12/2012 18:50:09.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.1.1033.18.3033.2098 [GMT -5:00]
Running from: c:\users\SuperDuperUserOne\Desktop\ComboFix.exe
AV: Trend Micro Titanium Internet Security 2012 *Enabled/Updated* {7193B549-236F-55EE-9AEC-F65279E59A92}
SP: Trend Micro Titanium Internet Security 2012 *Enabled/Updated* {CAF254AD-0555-5A60-A05C-CD200262D02F}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Files Created from 2011-12-12 to 2012-01-12 )))))))))))))))))))))))))))))))
.
.
2012-01-12 23:54 . 2012-01-12 23:54 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Local\temp
2012-01-12 23:54 . 2012-01-12 23:54 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-01-12 23:24 . 2008-01-21 02:24 184320 ----a-w- c:\windows\system32\drivers\netbt.sys
2012-01-11 20:02 . 2012-01-11 20:02 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\Template
2012-01-11 14:54 . 2011-11-17 06:48 440192 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-01-11 14:54 . 2011-11-16 16:23 377344 ----a-w- c:\windows\system32\winhttp.dll
2012-01-11 14:54 . 2011-11-16 16:23 72704 ----a-w- c:\windows\system32\secur32.dll
2012-01-11 14:54 . 2011-11-16 16:23 278528 ----a-w- c:\windows\system32\schannel.dll
2012-01-11 14:54 . 2011-11-16 16:21 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2012-01-11 14:54 . 2011-11-16 14:12 9728 ----a-w- c:\windows\system32\lsass.exe
2012-01-11 00:55 . 2011-10-14 16:03 189952 ----a-w- c:\windows\system32\winmm.dll
2012-01-11 00:55 . 2011-10-14 16:00 23552 ----a-w- c:\windows\system32\mciseq.dll
2012-01-11 00:55 . 2011-11-18 20:23 1205064 ----a-w- c:\windows\system32\ntdll.dll
2012-01-11 00:55 . 2011-11-25 15:59 376320 ----a-w- c:\windows\system32\winsrv.dll
2012-01-11 00:55 . 2011-11-18 17:47 66560 ----a-w- c:\windows\system32\packager.dll
2012-01-11 00:55 . 2011-12-01 15:21 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat
2012-01-11 00:55 . 2011-10-25 15:58 1314816 ----a-w- c:\windows\system32\quartz.dll
2012-01-11 00:55 . 2011-10-25 15:58 497152 ----a-w- c:\windows\system32\qdvd.dll
2012-01-08 14:08 . 2011-12-10 20:24 20464 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-01-06 17:28 . 2012-01-06 17:28 -------- d-----w- c:\program files\Safari
2012-01-06 14:52 . 2012-01-12 22:24 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\Skype
2012-01-06 14:52 . 2012-01-06 14:52 -------- d-----r- c:\program files\Skype
2012-01-06 14:52 . 2012-01-06 14:52 -------- d-----w- c:\program files\Common Files\Skype
2012-01-06 14:52 . 2012-01-06 14:52 -------- d-----w- c:\programdata\Skype
2012-01-03 23:24 . 2012-01-05 04:18 -------- d-----w- c:\users\SuperDuperUserOne\Tracing
2012-01-03 23:14 . 2012-01-04 06:26 -------- d-----w- c:\program files\Microsoft
2012-01-03 23:14 . 2009-09-04 22:44 69464 ----a-w- c:\windows\system32\XAPOFX1_3.dll
2012-01-03 23:14 . 2009-09-04 22:44 515416 ----a-w- c:\windows\system32\XAudio2_5.dll
2012-01-03 23:14 . 2009-09-04 22:29 453456 ----a-w- c:\windows\system32\d3dx10_42.dll
2012-01-03 23:13 . 2006-11-29 18:06 3426072 ----a-w- c:\windows\system32\d3dx9_32.dll
2012-01-03 23:12 . 2009-08-04 08:02 754688 ----a-w- c:\windows\system32\webservices.dll
2012-01-03 23:10 . 2012-01-03 23:22 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Local\Windows Live
2012-01-03 23:10 . 2012-01-03 23:10 -------- d-----w- c:\program files\Common Files\Windows Live
2012-01-01 23:07 . 2012-01-01 23:07 -------- d-----w- c:\program files\VS Revo Group
2012-01-01 04:42 . 2012-01-01 05:07 -------- d-----w- C:\Downloads
2012-01-01 04:38 . 2012-01-01 04:38 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Local\PLX_Technology
2012-01-01 04:36 . 2010-05-25 14:14 24880 ----a-w- c:\windows\system32\drivers\OXUDIDRV_x32.sys
2012-01-01 04:36 . 2012-01-01 04:36 -------- d-----w- c:\program files\Iomega
2011-12-31 10:16 . 2012-01-09 09:33 -------- d-----w- c:\program files\MyDefrag v4.3.1
2011-12-30 07:12 . 2011-12-30 07:21 22032 ----a-w- c:\windows\DCEBoot.exe
2011-12-28 08:50 . 2011-12-28 08:50 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Local\DDMSettings
2011-12-26 02:07 . 2011-12-26 02:07 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\FlashGet
2011-12-23 00:50 . 2011-12-23 00:50 -------- d-----w- c:\program files\iPod
2011-12-23 00:50 . 2011-12-23 00:50 -------- d-----w- c:\program files\iTunes
2011-12-22 23:29 . 2012-01-02 03:49 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\Media Player Classic
2011-12-22 18:13 . 2011-12-22 23:29 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\DivX
2011-12-22 18:13 . 2011-12-22 18:13 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2011-12-22 18:12 . 2011-12-28 08:43 -------- d-----w- c:\program files\Common Files\DivX Shared
2011-12-22 18:11 . 2011-12-28 08:44 -------- d-----w- c:\program files\DivX
2011-12-22 18:11 . 2011-12-28 08:44 -------- d-----w- c:\programdata\DivX
2011-12-22 18:08 . 2011-03-02 11:43 175616 ----a-w- c:\windows\system32\unrar.dll
2011-12-18 04:30 . 2011-12-18 04:30 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\Malwarebytes
2011-12-18 04:30 . 2011-12-18 04:30 -------- d-----w- c:\programdata\Malwarebytes
2011-12-18 04:30 . 2012-01-08 14:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-12-16 01:26 . 2011-12-16 01:26 -------- d-----w- c:\users\SuperDuperUserOne\AppData\Roaming\SUPERAntiSpyware.com
2011-12-16 01:25 . 2011-12-16 01:26 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-12-16 01:25 . 2011-12-16 01:25 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2011-12-14 03:57 . 2011-12-14 03:57 -------- d-----w- c:\program files\BurnAware Free2011-12-14 03:11 . 2011-10-27 08:01 3602816 ----a-w-
c:\windows\system32\ntkrnlpa.exe
2011-12-14 03:11 . 2011-10-27 08:01 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-12-14 03:11 . 2011-10-14 16:02 429056 ----a-w- c:\windows\system32\EncDec.dll
2011-12-14 03:11 . 2011-11-23 13:37 2043904 ----a-w- c:\windows\system32\win32k.sys
2011-12-14 03:10 . 2011-10-25 15:56 49152 ----a-w- c:\windows\system32\csrsrv.dll
2011-12-14 03:10 . 2011-11-08 14:42 2048 ----a-w- c:\windows\system32\tzres.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-12-18 04:57 . 2008-07-07 16:18 319456 ----a-w- c:\windows\DIFxAPI.dll
2011-12-04 01:31 . 2011-12-04 01:31 677136 ----a-w- c:\programdata\Microsoft\eHome\Packages\
MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-12-01 18:32 . 2011-12-01 18:32 413696 ----a-w- c:\windows\system32\wrap_oal.dll
2011-12-01 18:32 . 2011-12-01 18:32 110592 ----a-w- c:\windows\system32\OpenAL32.dll
2011-12-01 13:10 . 2011-12-01 13:10 86528 ----a-w- c:\windows\system32\iesysprep.dll
2011-12-01 13:10 . 2011-12-01 13:10 76800 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-12-01 13:10 . 2011-12-01 13:10 74752 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-12-01 13:10 . 2011-12-01 13:10 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-12-01 13:10 . 2011-12-01 13:10 161792 ----a-w- c:\windows\system32\msls31.dll
2011-12-01 13:10 . 2011-12-01 13:10 74752 ----a-w- c:\windows\system32\iesetup.dll
2011-12-01 13:10 . 2011-12-01 13:10 63488 ----a-w- c:\windows\system32\tdc.ocx
2011-12-01 13:10 . 2011-12-01 13:10 367104 ----a-w- c:\windows\system32\html.iec
2011-12-01 13:10 . 2011-12-01 13:10 23552 ----a-w- c:\windows\system32\licmgr10.dll
2011-12-01 13:10 . 2011-12-01 13:10 420864 ----a-w- c:\windows\system32\vbscript.dll
2011-12-01 13:10 . 2011-12-01 13:10 35840 ----a-w- c:\windows\system32\imgutil.dll
2011-12-01 13:10 . 2011-12-01 13:10 152064 ----a-w- c:\windows\system32\wextract.exe
2011-12-01 13:10 . 2011-12-01 13:10 150528 ----a-w- c:\windows\system32\iexpress.exe
2011-12-01 13:10 . 2011-12-01 13:10 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2011-12-01 13:10 . 2011-12-01 13:10 11776 ----a-w- c:\windows\system32\mshta.exe
2011-12-01 13:10 . 2011-12-01 13:10 101888 ----a-w- c:\windows\system32\admparse.dll
2011-12-01 13:10 . 2011-12-01 13:10 110592 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-12-01 13:09 . 2011-12-01 13:09 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2011-12-01 13:09 . 2011-12-01 13:09 357376 ----a-w- c:\windows\system32\MFHEAACdec.dll
2011-12-01 13:09 . 2011-12-01 13:09 98816 ----a-w- c:\windows\system32\mfps.dll
2011-12-01 13:09 . 2011-12-01 13:09 586240 ----a-w- c:\windows\system32\stobject.dll
2011-12-01 13:09 . 2011-12-01 13:09 302592 ----a-w- c:\windows\system32\mfmp4src.dll
2011-12-01 13:09 . 2011-12-01 13:09 2873344 ----a-w- c:\windows\system32\mf.dll
2011-12-01 13:09 . 2011-12-01 13:09 261632 ----a-w- c:\windows\system32\mfreadwrite.dll
2011-12-01 13:09 . 2011-12-01 13:09 209920 ----a-w- c:\windows\system32\mfplat.dll
2011-12-01 13:09 . 2011-12-01 13:09 683008 ----a-w- c:\windows\system32\d2d1.dll
2011-12-01 13:09 . 2011-12-01 13:09 486400 ----a-w- c:\windows\system32\d3d10level9.dll
2011-12-01 13:09 . 2011-12-01 13:09 135680 ----a-w- c:\windows\system32\XpsRasterService.dll
2011-12-01 13:09 . 2011-12-01 13:09 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2011-12-01 13:09 . 2011-12-01 13:09 638336 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2011-12-01 13:09 . 2011-12-01 13:09 478720 ----a-w- c:\windows\system32\dxgi.dll
2011-12-01 13:09 . 2011-12-01 13:09 37376 ----a-w- c:\windows\system32\cdd.dll
2011-12-01 13:09 . 2011-12-01 13:09 258048 ----a-w- c:\windows\system32\winspool.drv
2011-12-01 13:09 . 2011-12-01 13:09 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2011-12-01 13:09 . 2011-12-01 13:09 189952 ----a-w- c:\windows\system32\d3d10core.dll
2011-12-01 13:09 . 2011-12-01 13:09 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2011-12-01 13:09 . 2011-12-01 13:09 1029120 ----a-w- c:\windows\system32\d3d10.dll
2011-12-01 13:09 . 2011-12-01 13:09 847360 ----a-w- c:\windows\system32\OpcServices.dll
2011-12-01 13:09 . 2011-12-01 13:09 667648 ----a-w- c:\windows\system32\printfilterpipelinesvc.exe
2011-12-01 13:09 . 2011-12-01 13:09 26112 ----a-w- c:\windows\system32\printfilterpipelineprxy.dll
2011-12-01 13:09 . 2011-12-01 13:09 1554432 ----a-w- c:\windows\system32\xpsservices.dll
2011-12-01 13:07 . 2011-12-01 13:07 4096 ----a-w- c:\windows\system32\drivers\en-US\dxgkrnl.sys.mui
2011-12-01 13:07 . 2011-12-01 13:07 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll
2011-12-01 13:07 . 2011-12-01 13:07 519680 ----a-w- c:\windows\system32\d3d11.dll
2011-12-01 13:07 . 2011-12-01 13:07 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2011-12-01 13:07 . 2011-12-01 13:07 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2011-12-01 13:07 . 2011-12-01 13:07 252928 ----a-w- c:\windows\system32\dxdiag.exe
2011-12-01 13:07 . 2011-12-01 13:07 195584 ----a-w- c:\windows\system32\dxdiagn.dll
2011-12-01 13:07 . 2011-12-01 13:07 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2011-12-01 06:21 . 2011-12-01 06:21 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-12-01 00:44 . 2011-12-01 00:44 56 ----a-w- c:\windows\system32\SupportTool.exe.bat
2011-12-01 00:39 . 2011-12-01 00:47 92432 ----a-w- c:\windows\system32\drivers\tmtdi.sys
2011-12-01 00:39 . 2011-12-01 00:45 81168 ----a-w- c:\windows\system32\drivers\tmactmon.sys
2011-12-01 00:39 . 2011-12-01 00:45 68368 ----a-w- c:\windows\system32\drivers\tmevtmgr.sys
2011-12-01 00:39 . 2011-12-01 00:45 205072 ----a-w- c:\windows\system32\drivers\tmcomm.sys
2011-11-30 08:46 . 2011-11-30 08:46 652296 ----a-w- c:\programdata\Microsoft\eHome\Packages\SportsTemplate\Sports
TemplateCore\Microsoft.MediaCenter.Sports.UI.dll
2011-11-30 08:46 . 2011-11-30 08:46 416128 ----a-w- c:\programdata\Microsoft\eHome\Packages\NetTV\Browse\NetTVResources.dll
2011-11-10 10:54 . 2011-12-01 01:12 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-10-20 23:26 . 2011-10-20 23:26 94208 ----a-w- c:\windows\system32\dpl100.dll
2011-10-18 06:28 . 2011-11-30 07:11 6668624 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\
{3BA2DDA6-0E7F-403E-B843-9206D95A55FB}\mpengine.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Trend Micro Client Framework"="c:\program files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe" [2011-12-01 129304]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2010-04-10 1310720]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-06-03 138008]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-06-03 171288]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-06-03 172824]
"DLCCCATS"="c:\windows\system32\spool\DRIVERS\W32X86\3\DLCCtime.dll" [2006-02-24 73728]
"KBD"="c:\hp\KBD\KbdStub.EXE" [2006-12-08 65536]
"Malwarebytes' Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2011-12-24 981680]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-12-08 421736]
"hpsysdrv"="c:\hp\support\hpsysdrv.exe" [2007-04-18 65536]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-07-28 1259376]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-11-02 59240]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2011-05-04 17:54 551296 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [2011-08-11 116608]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - NETBT
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=83&bd=Pavilion&pf=cndt
uInternet Settings,ProxyOverride = *.local
IE: &Download All with FlashGet - h:\flashget\jc_all.htm
IE: &Download with FlashGet - h:\flashget\jc_link.htm
TCP: DhcpNameServer = 209.18.47.61 209.18.47.62
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2012-01-12 18:54
Windows 6.0.6002 Service Pack 2 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
DLCCCATS = rundll32 c:\windows\system32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16?
??
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\.smb]
"ImagePath"="\*"
.
Completion time: 2012-01-12 18:55:56
ComboFix-quarantined-files.txt 2012-01-12 23:55
ComboFix2.txt 2012-01-12 23:41
.
Pre-Run: 391,255,040,000 bytes free
Post-Run: 391,226,384,384 bytes free
.
- - End Of File - - 4BBED295A36C52B3FCEA12FA692C692D