:OTL SRV - File not found [Disabled | Stopped] -- %systemroot%\system32\PhilCam8116.dll -- (ZDPNDIS5) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ccflic0.dll -- (wg6n) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wudfrd.dll -- (vnxservice) SRV - File not found [Disabled | Stopped] -- %systemroot%\system32\avgfwsrv.dll -- (UsbDiag) SRV - File not found [Disabled | Stopped] -- %systemroot%\system32\appdrv.dll -- (USBDeviceService) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\umxfwhlp.dll -- (uploadmgr) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SE2Cbus.dll -- (uiusys) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ovepstatusengine.dll -- (Udfreadr_xp) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sscdmdfl.dll -- (twotrack) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\FileDisk.dll -- (tpsrv) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\XilinxPC4Driver.dll -- (tng-dts) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\qcmerced.dll -- (TBPanel) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lxcz_device.dll -- (tb2launch) SRV - File not found [Disabled | Stopped] -- %systemroot%\system32\lxrjd31s.dll -- (ssrvc) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nvata.dll -- (raidmagt) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Ld51ocnucsnp.dll -- (OEM02Vfx) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\msloop.dll -- (nvpvrmon) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\queuemgr.dll -- (lxcz_device) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\AtiHdmiService.dll -- (lxct_device) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tng-dts.dll -- (lvhidsvc) SRV - File not found [Auto | Stopped] -- \.\globalroot\C:\WINDOWS\system32\svchost.exe -- (LMS) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\PCISys.dll -- (icepack) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dvd_2K.dll -- (gbpoll) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\uagp35.dll -- (elbycdfl) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\abp480n5.dll -- (dwusbdnt) SRV - File not found [Disabled | Stopped] -- %systemroot%\system32\backuplauncher.dll -- (dlcj_device) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pnkbstrb.dll -- (DcCam) SRV - File not found [Disabled | Stopped] -- %systemroot%\system32\helpsvc.dll -- (cpntsrv) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nimdbgk.dll -- (basfipm) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vaiomediaplatform-musicserver-appserver.dll -- (avfilter) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nsm1bus.dll -- (atitool) SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\Ati2evxx.exe -- (Ati HotKey Poller) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\AMDPCI.dll -- (acsvc) SRV - File not found [Auto | Stopped] -- %systemroot%\system32\F700imd.dll -- (3compxe) DRV - File not found [Kernel | On_Demand | Unknown] -- C:\DOCUME~1\Steve\LOCALS~1\Temp\mbr.sys -- (mbr) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\Steve\LOCALS~1\Temp\pft17A.tmp\amifldrv.sys -- (GENERICDRV) DRV - File not found [Kernel | On_Demand | Running] -- C:\ComboFix\catchme.sys -- (catchme) O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - No CLSID value found. O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No CLSID value found. O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found. O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No CLSID value found. O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found. O3 - HKU\S-1-5-21-2395340153-2039338930-2104182020-1004\..\Toolbar\ShellBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O3 - HKU\S-1-5-21-2395340153-2039338930-2104182020-1004\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found. O3 - HKU\S-1-5-21-2395340153-2039338930-2104182020-1004\..\Toolbar\WebBrowser: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No CLSID value found. O3 - HKU\S-1-5-21-2395340153-2039338930-2104182020-1004\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O3 - HKU\S-1-5-21-2395340153-2039338930-2104182020-1004\..\Toolbar\WebBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found. O3 - HKU\S-1-5-21-2395340153-2039338930-2104182020-1004\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found. O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html File not found O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (OnlineScanner Control) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) [2012/05/03 22:40:27 | 000,000,000 | ---D | C] -- C:\Program Files\ESET [2012/05/03 08:09:23 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2012/05/03 08:09:23 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2012/05/03 08:09:22 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2012/05/03 08:09:22 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2012/05/03 08:09:05 | 000,000,000 | ---D | C] -- C:\Qoobox [2012/05/03 08:04:52 | 004,482,876 | R--- | C] (Swearware) -- C:\Documents and Settings\Steve\Desktop\ComboFix.exe [2012/05/02 20:47:24 | 004,731,392 | ---- | C] (AVAST Software) -- C:\Documents and Settings\Steve\Desktop\aswMBR.exe [2012/05/04 11:08:51 | 000,029,105 | ---- | M] () -- D:\ESET Online Scanner.PNG [2012/05/02 22:24:49 | 000,000,512 | ---- | M] () -- D:\MBR.dat [2012/05/02 20:43:47 | 004,731,392 | ---- | M] (AVAST Software) -- C:\Documents and Settings\Steve\Desktop\aswMBR.exe [2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [2012/05/03 08:09:23 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2012/05/03 08:09:23 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2012/05/03 08:09:22 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2012/05/03 08:09:22 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2012/05/03 08:09:22 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe :Files C:\TDSSKiller_Quarantine C:\Program Files\AIM\Sysfiles\WxBug.EXE :Commands [purity] [emptytemp] [EMPTYFLASH] [emptyjava] [RESETHOSTS] [CLEARALLRESTOREPOINTS] [Reboot]