Combo Fix log:
ComboFix 08-02-21 - Orolin 2008-02-20 20:37:45.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.504 [GMT -8:00]
Running from: C:\Documents and Settings\Orolin\Desktop\ComboFix.exe
- Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\Orolin\Application Data\macromedia\Flash Player#SharedObjects\BYFFZSMH\www.broadcaster.com
C:\Documents and Settings\Orolin\Application Data\macromedia\Flash Player#SharedObjects\BYFFZSMH\www.broadcaster.com\played_list.sol
C:\Documents and Settings\Orolin\Application Data\macromedia\Flash Player#SharedObjects\BYFFZSMH\www.broadcaster.com\video_queue.sol
C:\Documents and Settings\Orolin\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys#www.broadcaster.com
C:\Documents and Settings\Orolin\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys#www.broadcaster.com\settings.sol
C:\WINDOWS\system32\credu.dll
C:\WINDOWS\system32\drivers\iaxktvhs.dat
C:\WINDOWS\system32\drivers\sfsync02.sys
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\LEGACY_PIQOQDSB
-------\LEGACY_SFSYNC02
-------\piqoqdsb
-------\sfsync02
((((((((((((((((((((((((( Files Created from 2008-01-21 to 2008-02-21 )))))))))))))))))))))))))))))))
.
2008-02-19 18:22 . 2008-02-19 18:22 d-------- C:\Program Files\Alwil Software
2008-02-19 18:22 . 2007-12-04 05:04 837,496 --a------ C:\WINDOWS\system32\aswBoot.exe
2008-02-19 18:22 . 2004-01-09 01:13 380,928 --a------ C:\WINDOWS\system32\actskin4.ocx
2008-02-19 18:22 . 2007-12-04 04:54 95,608 --a------ C:\WINDOWS\system32\AvastSS.scr
2008-02-19 18:22 . 2007-12-04 06:55 94,544 --a------ C:\WINDOWS\system32\drivers\aswmon2.sys
2008-02-19 18:22 . 2007-12-04 06:56 93,264 --a------ C:\WINDOWS\system32\drivers\aswmon.sys
2008-02-19 18:22 . 2007-12-04 06:51 42,912 --a------ C:\WINDOWS\system32\drivers\aswTdi.sys
2008-02-19 18:22 . 2007-12-04 06:49 26,624 --a------ C:\WINDOWS\system32\drivers\aavmker4.sys
2008-02-19 18:22 . 2007-12-04 06:53 23,152 --a------ C:\WINDOWS\system32\drivers\aswRdr.sys
2008-02-18 21:34 . 2008-02-18 21:34 d-------- C:\Program Files\SpyShredder
2008-02-14 15:27 . 2008-02-14 15:27 d-------- C:\Program Files\Unity
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-19 04:17 --------- d—a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-01-19 23:40 --------- d-----w C:\Documents and Settings\Orolin\Application Data\gtk-2.0
2008-01-18 23:34 --------- d-----w C:\Documents and Settings\Orolin\Application Data\uTorrent
2008-01-06 00:35 --------- d-----w C:\Program Files\Frets on Fire
2008-01-06 00:11 --------- d-----w C:\Program Files\Java
2007-12-21 22:25 --------- d–h–w C:\Program Files\InstallShield Installation Information
2007-12-21 05:37 --------- d-----w C:\Program Files\TGTSoft
2007-12-21 04:52 --------- d-----w C:\Program Files\Stardock
2006-05-13 20:58 1 ----a-w C:\Documents and Settings\Orolin\SI.bin
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
Note empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE~\Browser Helper Objects{2ba521ac-b9b9-4433-ba45-dba2f02cba5a}]
2007-12-07 13:00 1502232 --a------ C:\Program Files\speed-bit\tbspe1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11D4-9B18-009027A5CD4F}
{2BA521AC-B9B9-4433-BA45-DBA2F02CBA5A}
[HKEY_CLASSES_ROOT\clsid{2ba521ac-b9b9-4433-ba45-dba2f02cba5a}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
“{2BA521AC-B9B9-4433-BA45-DBA2F02CBA5A}”= C:\Program Files\speed-bit\tbspe1.dll [2007-12-07 13:00 1502232]
[HKEY_CLASSES_ROOT\clsid{2ba521ac-b9b9-4433-ba45-dba2f02cba5a}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“Steam”=“”
“ctfmon.exe”=“C:\WINDOWS\system32\ctfmon.exe” [2004-08-04 04:00 15360]
“Aim6”=“C:\Program Files\AIM6\aim6.exe” [2007-10-04 07:20 50528]
“swg”=“C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe” [2007-06-24 12:36 68856]
“STYLEXP”=“C:\Program Files\TGTSoft\StyleXP\StyleXP.exe” [2006-05-24 10:31 1372160]
“WMPNSCFG”=“C:\Program Files\Windows Media Player\WMPNSCFG.exe” [2006-10-18 20:05 204288]