Hope this is what you guys might need. ADP/WEBSuite is a work program so disregard that
ComboFix 07-07-30.2 - "Jeremy Squier" 2007-08-02 8:12:50.1 [GMT -5:00] - NTFS
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.True
* Created a new restore point
(((((((((((((((((((((((((((((((((((((((((((( V Log )))))))))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\system32\filbtsqt.dll
C:\WINDOWS\system32\mmllm.bak1
C:\WINDOWS\system32\mmllm.bak2
C:\WINDOWS\system32\mmllm.ini
C:\WINDOWS\system32\mmllm.ini2
C:\WINDOWS\system32\mmllm.bak1
C:\WINDOWS\system32\mmllm.bak2
C:\WINDOWS\system32\mmllm.ini
C:\WINDOWS\system32\mmllm.ini2
C:\WINDOWS\system32\mmllm.bak1
C:\WINDOWS\system32\mmllm.bak2
C:\WINDOWS\system32\mmllm.ini
C:\WINDOWS\system32\mmllm.ini2
C:\WINDOWS\system32\mllmm.dll
C:\WINDOWS\system32\xxyayvt.dll
C:\WINDOWS\system32\xxyayvt.dll
* * * POST RUN FILES/FOLDERS * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *
C:\WINDOWS\system32\mllmm.dll
C:\WINDOWS\system32\xxyayvt.dll
C:\WINDOWS\system32\xxyayvt.dll
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\system32\x64
((((((((((((((((((((((((( Files Created from 2007-07-02 to 2007-08-02 )))))))))))))))))))))))))))))))
2007-08-02 08:14 4,672 --a------ C:\WINDOWS\system32\qakgewif.exe
2007-08-02 08:12 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-08-01 16:12 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
2007-08-01 15:57 <DIR> d-------- C:\Program Files\Common Files\LightScribe
2007-08-01 15:53 <DIR> d-------- C:\Program Files\Nero
2007-08-01 15:53 <DIR> d-------- C:\Program Files\Common Files\Ahead
2007-08-01 14:18 36,864 --a------ C:\WINDOWS\system32\wbsys.dll
2007-08-01 14:18 20,480 --a------ C:\WINDOWS\system32\wbload.dll
2007-08-01 14:18 <DIR> d-------- C:\Program Files\Stardock
2007-08-01 13:03 512 --a------ C:\ScanSectorLog.dat
2007-08-01 13:02 62,496 --ahs---- C:\WINDOWS\system32\drivers\fidbox2.dat
2007-08-01 13:02 2,783,008 --ahs---- C:\WINDOWS\system32\drivers\fidbox.dat
2007-08-01 12:55 125,504 --a------ C:\WINDOWS\system32\spmpnigk.dll
2007-08-01 12:54 <DIR> d-------- C:\DOCUME~1\JEREMY~1\APPLIC~1\MailFrontier
2007-08-01 12:49 75,512 --a------ C:\WINDOWS\zllsputility.exe
2007-08-01 12:49 4,212 --ah----- C:\WINDOWS\system32\zllictbl.dat
2007-08-01 12:49 11,264 --a------ C:\WINDOWS\system32\SpOrder.dll
2007-08-01 12:49 1,087,216 --a------ C:\WINDOWS\system32\zpeng24.dll
2007-08-01 12:49 <DIR> d-------- C:\WINDOWS\system32\ZoneLabs
2007-08-01 12:47 <DIR> d-------- C:\WINDOWS\Internet Logs
2007-08-01 12:45 <DIR> d-------- C:\Program Files\PowerArchiver
2007-08-01 07:49 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\BlueZone
2007-08-01 07:42 <DIR> d-------- C:\Program Files\ADP Dealer Services
2007-08-01 07:41 <DIR> d-------- C:\Program Files\Adp
2007-08-01 07:41 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Seagull Software
2007-07-31 17:50 <DIR> d-------- C:\DOCUME~1\ALLUSE~2.WIN\APPLIC~1\SupportSoft
2007-07-31 17:50 <DIR> d-------- C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\SupportSoft
2007-07-31 17:49 <DIR> d-------- C:\Program Files\sda
2007-07-31 17:49 <DIR> d-------- C:\Program Files\Common Files\supportsoft
2007-07-31 17:49 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\SupportSoft
2007-07-31 12:54 <DIR> d-------- C:\Program Files\MSXML 6.0
2007-07-31 12:53 <DIR> d-------- C:\Program Files\MSBuild
2007-07-31 12:49 14,048 --a------ C:\WINDOWS\system32\spmsg2.dll
2007-07-31 12:49 <DIR> d-------- C:\WINDOWS\system32\XPSViewer
2007-07-31 12:49 <DIR> d-------- C:\Program Files\Reference Assemblies
2007-07-31 12:49 <DIR> d-------- C:\6fa9a37e7fb8aa0c41a16b0890845a92
2007-07-31 12:42 36,352 --a------ C:\WINDOWS\system32\tsgqec.dll
2007-07-31 12:42 288,768 --a------ C:\WINDOWS\system32\rhttpaa.dll
2007-07-31 12:42 116,736 --a------ C:\WINDOWS\system32\aaclient.dll
2007-07-31 11:41 <DIR> d-------- C:\WINDOWS\network diagnostic
2007-07-31 11:20 <DIR> d--hs---- C:\DOCUME~1\JEREMY~1\UserData
2007-07-31 07:59 <DIR> d-------- C:\Program Files\Lavasoft
2007-07-31 07:59 <DIR> d-------- C:\DOCUME~1\JEREMY~1\APPLIC~1\Lavasoft
2007-07-31 07:42 125,504 --a------ C:\WINDOWS\system32\uhpvmndu.dll
2007-07-30 11:46 <DIR> d-------- C:\Program Files\Sunbelt Software
2007-07-30 08:40 83,536 --a------ C:\WINDOWS\system32\drivers\iksyssec.sys
2007-07-30 08:40 59,984 --a------ C:\WINDOWS\system32\drivers\iksysflt.sys
2007-07-30 08:40 52,304 --a------ C:\WINDOWS\system32\drivers\ikfilesec.sys
2007-07-30 08:40 39,248 --a------ C:\WINDOWS\system32\drivers\ikfileflt.sys
2007-07-30 08:40 26,064 --a------ C:\WINDOWS\system32\drivers\kcom.sys
2007-07-30 08:40 <DIR> d-------- C:\Program Files\Spyware Doctor
2007-07-30 08:40 <DIR> d-------- C:\DOCUME~1\JEREMY~1\APPLIC~1\PC Tools
2007-07-30 08:39 626,688 --a------ C:\WINDOWS\system32\msvcr80.dll
2007-07-27 10:18 <DIR> d-------- C:\Program Files\VistaCodecPack
2007-07-27 10:04 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
2007-07-27 10:00 228,960 --------- C:\WINDOWS\system32\mllmm.dll
2007-07-27 09:55 31,254 --------- C:\WINDOWS\system32\xxyayvt.dll
2007-07-27 09:35 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
2007-07-27 09:31 <DIR> d-------- C:\Program Files\Windows Media Connect 2
2007-07-27 09:30 <DIR> d-------- C:\WINDOWS\system32\LogFiles
2007-07-27 09:30 <DIR> d-------- C:\WINDOWS\system32\drivers\UMDF
2007-07-27 09:30 <DIR> d-------- C:\9267bbe0a230c64c39dca5
2007-07-26 13:38 <DIR> d-------- C:\WINDOWS\Downloaded Installations
2007-07-26 11:05 <DIR> d-------- C:\Program Files\uTorrent
2007-07-26 11:05 <DIR> d-------- C:\DOCUME~1\JEREMY~1\APPLIC~1\uTorrent
2007-07-26 09:04 <DIR> d-------- C:\Program Files\iPod Access for Windows
2007-07-25 12:58 <DIR> d-------- C:\Program Files\iTunes
2007-07-25 12:58 <DIR> d-------- C:\Program Files\iPod
2007-07-25 12:56 <DIR> d-------- C:\Program Files\QuickTime
2007-07-25 12:56 <DIR> d-------- C:\Program Files\Apple Software Update
2007-07-25 12:55 <DIR> d-------- C:\Program Files\Common Files\Apple
2007-07-25 12:55 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
2007-07-25 12:28 <DIR> d-------- C:\DOCUME~1\JEREMY~1\APPLIC~1\Apple Computer
2007-07-25 12:24 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
2007-07-24 15:54 <DIR> d-------- C:\DOCUME~1\JEREMY~1\HODObjs
2007-07-24 15:54 <DIR> d-------- C:\DOCUME~1\JEREMY~1\HODData
2007-07-24 15:52 <DIR> d-------- C:\DOCUME~1\JEREMY~1\HODCCweb3270.nnanet.com
2007-07-21 11:42 <DIR> d-------- C:\DOCUME~1\JEREMY~1\APPLIC~1\AdobeUM
2007-07-21 07:29 <DIR> d-------- C:\Program Files\MSXML 4.0
2007-07-20 17:41 1,688 --a------ C:\WINDOWS\mozver.dat
2007-07-20 17:34 21,504 --a------ C:\WINDOWS\system32\hidserv.dll
2007-07-20 17:27 <DIR> d-------- C:\WINDOWS\system32\PreInstall
2007-07-20 17:20 626,960 -ra------ C:\WINDOWS\system32\hpvaut32.dll
2007-07-20 17:20 487,424 -ra------ C:\WINDOWS\system32\hpvcp70.dll
2007-07-20 17:20 44,544 -ra------ C:\WINDOWS\system32\MSXML4a.dll
2007-07-20 17:20 344,064 -ra------ C:\WINDOWS\system32\hpvcr70.dll
2007-07-20 17:19 25,856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys
2007-07-20 17:17 <DIR> d-------- C:\WINDOWS\system32\SoftwareDistribution
2007-07-20 15:12 <DIR> d-------- C:\Program Files\HP
2007-07-20 15:12 <DIR> d-------- C:\Program Files\Hewlett-Packard
2007-07-20 14:10 <DIR> d-------- C:\Program Files\The Weather Channel FW
2007-07-20 14:10 <DIR> d-------- C:\Program Files\AskPBar
2007-07-20 14:09 <DIR> d-------- C:\Program Files\Trillian
2007-07-20 13:53 89,360 --a------ C:\WINDOWS\system32\VB5DB.DLL
2007-07-20 13:53 87,040 --a------ C:\WINDOWS\system32\P2BDAO.DLL
2007-07-20 13:53 748,160 --a------ C:\WINDOWS\system32\CO2C40EN.DLL
2007-07-20 13:53 54,272 --a------ C:\WINDOWS\system32\P2IRDAO.DLL
2007-07-20 13:53 50,176 --a------ C:\WINDOWS\system32\CTDAO.DLL
2007-07-20 13:53 415,504 --a------ C:\WINDOWS\system32\MSREPL35.DLL
2007-07-20 13:53 36,352 --a------ C:\WINDOWS\system32\P2BBND.DLL
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-08-02 08:14 6884 --ahs---- C:\WINDOWS\system32\drivers\fidbox2.idx
2007-08-02 08:14 38300 --ahs---- C:\WINDOWS\system32\drivers\fidbox.idx
2007-07-18 21:23 --------- d-------- C:\Program Files\Messenger
2007-07-18 21:07 6430 --a------ C:\WINDOWS\system32\drivers\1028_Dell_DIM_DM061.mrk
2007-05-16 10:12 683520 --a------ C:\WINDOWS\system32\inetcomm.dll
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{1FB63E52-4D6E-48C1-A08F-F630FE50F337}]
2007-07-27 09:55 31254 --------- C:\WINDOWS\system32\xxyayvt.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{487B5771-6E92-4323-9308-985A6E9E9D4A}]
2007-07-27 10:00 228960 --------- C:\WINDOWS\system32\mllmm.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SigmatelSysTrayApp"="stsystra.exe" [2006-07-24 10:20 C:\WINDOWS\stsystra.exe]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-08-01 16:12]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{827D3881-317C-442A-B4ED-F576CBA700BB}"= C:\WINDOWS\SYSTEM32\GWSEH.dll [2004-09-23 07:21 155648]
"{1FB63E52-4D6E-48C1-A08F-F630FE50F337}"= C:\WINDOWS\system32\xxyayvt.dll [2007-07-27 09:55 31254]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\mllmm]
C:\WINDOWS\system32\mllmm.dll 2007-07-27 10:00 228960 C:\WINDOWS\system32\mllmm.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\fastload.dll 2001-12-20 23:34 24576 C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\fastload.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\xxyayvt]
xxyayvt.dll 2007-07-27 09:55 31254 C:\WINDOWS\system32\xxyayvt.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"appinit_dlls"=wbsys.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=C:\WINDOWS\pss\Adobe Reader Speed Launch.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Google Updater.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Google Updater.lnk
backup=C:\WINDOWS\pss\Google Updater.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
"C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
"C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
"C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DellSupport]
"C:\Program Files\DellSupport\DSAgnt.exe" /startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DMXLauncher]
C:\Program Files\Dell\Media Experience\DMXLauncher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DW4]
"C:\Program Files\The Weather Channel FW\Desktop Weather\DesktopWeather.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ECenter]
"c:\dell\E-Center\EULALauncher.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
"C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Component Manager]
"C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
"C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPDJ Taskbar Utility]
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif]
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
"C:\Program Files\iTunes\iTunesHelper.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MskAgentexe]
C:\Program Files\McAfee\MSK\MskAgent.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"C:\Program Files\QuickTime\QTTask.exe" -atboottime
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RealTray]
C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunServer]
C:\Program Files\Sunbelt Software\CounterSpy\Consumer\sunserver.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SystemOptimizer]
rundll32.exe "C:\WINDOWS\system32\spmpnigk.dll",forkonce
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ZoneAlarm Client]
"C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
R0 iaStor;Intel RAID Controller;C:\WINDOWS\system32\drivers\iaStor.sys
R2 ASCTRM;ASCTRM;C:\WINDOWS\system32\drivers\ASCTRM.sys
R2 dsunidrv;DellSupport UniDriver;C:\WINDOWS\system32\DRIVERS\dsunidrv.sys
R2 tgsrvc_sda;SupportSoft Repair Service (sda);C:\Program Files\sda\bin\tgsrvc.exe /p sda
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver;C:\WINDOWS\system32\DRIVERS\e1e5132.sys
R3 STHDA;SigmaTel High Definition Audio CODEC;C:\WINDOWS\system32\drivers\sthda.sys
S3 DSproct;DSproct;\??\C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys
S3 E100B;Intel(R) PRO Adapter Driver;C:\WINDOWS\system32\DRIVERS\e100b325.sys
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0;C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
S3 idsvc;Windows CardSpace;"C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe"
S3 IKFileFlt;File Filter Driver;C:\WINDOWS\system32\drivers\ikfileflt.sys
S3 IKFileSec;File Security Driver;C:\WINDOWS\system32\drivers\ikfilesec.sys
S3 IkSysFlt;System Filter Driver;C:\WINDOWS\system32\drivers\iksysflt.sys
S3 IKSysSec;System Security Driver;C:\WINDOWS\system32\drivers\iksyssec.sys
S3 NAL;Nal Service ;\??\C:\WINDOWS\system32\Drivers\iqvw32.sys
S3 wanatw;WAN Miniport (ATW);C:\WINDOWS\system32\DRIVERS\wanatw4.sys
S4 agpCPQ;Compaq AGP Bus Filter;C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service;"C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe"
Contents of the 'Scheduled Tasks' folder
2007-07-26 17:51:02 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
**************************************************************************
catchme 0.3.1061 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-08-02 08:16:55
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
Completion time: 2007-08-02 8:17:51 - machine was rebooted
C:\ComboFix-quarantined-files.txt ... 2007-08-02 08:17
--- E O F ---