ComboFix 08-02-13.1 - Student 2008-02-12 16:28:48.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.241 [GMT -5:00]
Running from: C:\Documents and Settings\Student\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\Student\Desktop\CFScript.txt

  • Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((( Files Created from 2008-01-13 to 2008-02-13 )))))))))))))))))))))))))))))))
.

2008-02-12 09:49 . 2008-02-12 09:49 d-------- C:\WINDOWS\system32\Kaspersky Lab
2008-02-12 09:49 . 2008-02-12 09:49 d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-02-12 08:21 . 2008-02-12 11:37 d-------- C:\Program Files\SUPERAntiSpyware
2008-02-11 19:07 . 2008-02-11 19:07 d-------- C:\Documents and Settings\Student\DoctorWeb
2008-02-11 16:56 . 2008-02-11 21:09 d-------- C:\Program Files\BitComet
2008-02-11 16:56 . 2008-02-11 17:54 d-------- C:\Downloads
2008-02-09 16:26 . 2008-02-09 16:26 d-------- C:\WINDOWS\system32\QuickTime
2008-02-09 16:26 . 2006-06-14 21:13 102,400 --a------ C:\WINDOWS\system32\tsccvid.dll
2008-02-09 16:25 . 2008-02-09 16:25 d-------- C:\Program Files\TechSmith
2008-02-07 20:50 . 2008-02-13 16:34 d-------- C:\Program Files\Thoosje Sidebar V2.0
2008-02-06 17:27 . 2008-02-06 17:29 d-------- C:\Program Files\Vista Start Menu
2008-02-06 06:25 . 2008-02-06 06:25 64,342 --a------ C:\WINDOWS\BricoPackUninst.cmd
2008-02-06 06:24 . 2008-02-06 06:24 2,359,350 --a------ C:\WINDOWS\BricoPack Wallpaper.bmp
2008-02-06 06:21 . 2008-02-06 06:25 6,118 --a------ C:\WINDOWS\BricoPackFoldersDelete.cmd
2008-02-06 06:20 . 2008-02-06 06:20 d-------- C:\WINDOWS\BricoPacks
2008-02-04 16:29 . 2008-02-04 16:29 d-------- C:\Program Files\Lavasoft
2008-02-04 16:29 . 2008-02-12 11:37 d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-02-04 16:29 . 2008-02-04 16:29 d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-02-03 15:13 . 2008-02-03 15:13 d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-02-01 22:06 . 2008-02-01 23:38 d-------- C:\WINDOWS\BDOSCAN8
2008-02-01 21:59 . 2008-02-13 16:32 577,568 --ahs---- C:\WINDOWS\system32\drivers\fidbox.dat
2008-02-01 21:59 . 2008-02-13 16:32 19,744 --ahs---- C:\WINDOWS\system32\drivers\fidbox2.dat
2008-02-01 21:59 . 2008-02-13 16:32 8,888 --ahs---- C:\WINDOWS\system32\drivers\fidbox.idx
2008-02-01 21:59 . 2008-02-13 16:32 2,924 --ahs---- C:\WINDOWS\system32\drivers\fidbox2.idx
2008-01-31 17:36 . 2008-01-29 15:37 102,664 --a------ C:\WINDOWS\system32\drivers\tmcomm.sys
2008-01-31 17:23 . 2007-07-30 19:18 34,136 --a------ C:\WINDOWS\system32\wucltui.dll.mui
2008-01-31 17:23 . 2007-07-30 19:19 25,944 --a------ C:\WINDOWS\system32\wuaucpl.cpl.mui
2008-01-31 17:23 . 2007-07-30 19:19 25,944 --a------ C:\WINDOWS\system32\wuapi.dll.mui
2008-01-31 17:23 . 2007-07-30 19:18 20,312 --a------ C:\WINDOWS\system32\wuaueng.dll.mui
2008-01-31 17:14 . 2008-01-31 17:14 d-------- C:\Documents and Settings\Student\Application Data\Sereniti
2008-01-29 15:37 . 2008-02-01 00:19 d-------- C:\Documents and Settings\Student.housecall6.6
2008-01-26 15:38 . 2008-02-07 06:20 d-------- C:\Program Files\Google
2008-01-17 18:53 . 2008-01-17 18:53 d-------- C:\Program Files\SystemRequirementsLab
2008-01-17 18:53 . 2008-01-17 18:53 d-------- C:\Documents and Settings\Student\Application Data\SystemRequirementsLab

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-12 00:02 --------- d-----w C:\Documents and Settings\All Users\Application Data\SiteAdvisor
2008-02-08 20:45 --------- d-----w C:\Program Files\MicroType3
2008-02-05 20:55 --------- d-----w C:\Program Files\Common Files\InstallShield
2008-02-05 20:48 --------- d-----w C:\Program Files\NDCMedisoft
2008-02-05 20:47 --------- d–h–w C:\Program Files\InstallShield Installation Information
2008-02-04 21:28 --------- d-----w C:\Documents and Settings\Student\Application Data\Lavasoft
2008-01-14 15:23 --------- d-----w C:\Documents and Settings\Student\Application Data\SiteAdvisor
2008-01-13 02:22 --------- d-----w C:\Program Files\Actual Drawing
2008-01-13 02:16 --------- d-----w C:\Documents and Settings\All Users\Application Data\PY_Software
2008-01-09 20:01 53,248 ----a-w C:\WINDOWS\bdoscandel.exe
2008-01-01 05:32 --------- d-----w C:\Program Files\HyCam2
2008-01-01 03:44 --------- d-----w C:\Documents and Settings\All Users\Application Data\Viewpoint
2007-12-26 03:27 --------- d-----w C:\Program Files\Java
2007-12-26 03:26 --------- d-----w C:\Program Files\Common Files\Java
2007-12-25 17:27 --------- d-----w C:\Program Files\Yahoo!
2007-12-24 04:29 --------- d-----w C:\Program Files\Alwil Software
2007-12-23 22:42 --------- d-----w C:\Documents and Settings\LocalService\Application Data\SiteAdvisor
2007-12-23 22:42 --------- d-----w C:\Documents and Settings\All Users\Application Data\McAfee
2007-12-23 22:41 --------- d-----w C:\Program Files\SiteAdvisor
2007-12-23 22:38 --------- d–h–r C:\Documents and Settings\Student\Application Data\yahoo!
2007-12-23 04:12 --------- d-----w C:\Program Files\Trend Micro
2007-12-22 21:01 --------- d-----w C:\Program Files\CCleaner
2007-12-21 17:59 --------- d-----w C:\Program Files\File Shredder
2007-12-21 16:41 --------- d-----w C:\Program Files\Windows Media Connect 2
2007-12-21 15:57 --------- d-----w C:\Program Files\Spybot - Search & Destroy
2007-12-21 15:54 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2007-12-21 00:44 --------- d-----w C:\Program Files\MSN Messenger
2007-12-21 00:37 --------- d-----w C:\Documents and Settings\All Users\Application Data\Yahoo!
2007-12-21 00:36 --------- d-----w C:\Documents and Settings\Student\Application Data\acccore
2007-12-21 00:19 --------- d-----w C:\Program Files\AOL Search
2007-12-21 00:19 --------- d-----w C:\Program Files\AIM6
2007-12-21 00:19 --------- d-----w C:\Documents and Settings\All Users\Application Data\AOL OCP
2007-12-21 00:19 --------- d-----w C:\Documents and Settings\All Users\Application Data\AOL
2007-12-21 00:18 --------- d-----w C:\Program Files\Common Files\AOL
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
Note empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“ctfmon.exe”=“C:\WINDOWS\system32\ctfmon.exe” [2004-08-03 23:56 15360]
“Aim6”=“”
“WMPNSCFG”=“C:\Program Files\Windows Media Player\WMPNSCFG.exe” [2006-10-18 20:05 204288]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“TrackPointSrv”=“tp4mon.exe” [2004-08-03 19:56 82432 C:\WINDOWS\system32\tp4mon.exe]
“AGRSMMSG”=“AGRSMMSG.exe” [2003-06-27 07:53 88363 C:\WINDOWS\AGRSMMSG.exe]
“vptray”=“C:\PROGRA~1\SYMANT~1\SYMANT~1\vptray.exe” [2003-05-21 00:21 90112]
“NWTRAY”=“NWTRAY.EXE” [2002-03-12 09:37 28672 C:\WINDOWS\system32\nwtray.exe]
“TPHOTKEY”=“C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe” [2006-05-10 14:03 94208]
“Airlink101 WLAN Monitor”=“C:\Program Files\Airlink101\Airlink101 WLAN Monitor\WLANmon.exe” [2006-10-12 18:38 958464]
“ANIWZCS2Service”=“C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe” [2006-06-29 16:34 49152]
“SiteAdvisor”=“C:\Program Files\SiteAdvisor\6253\SiteAdv.exe” [2007-12-04 16:03 36640]
“avast!”=“C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe” [2007-12-04 08:00 79224]
“SunJavaUpdateSched”=“C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe” [2007-09-25 01:11 132496]

C:\Documents and Settings\Student\Start Menu\Programs\Startup
Thoosje Sidebar .lnk - C:\Program Files\Thoosje Sidebar V2.0\Thoosje Sidebar.exe [2007-06-19 08:24:52 524288]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
“CompatibleRUPSecurity”= 1 (0x1)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
“NoWelcomeScreen”= 1 (0x1)