Hi, here is the log. Thank you.
ComboFix 12-12-02.01 - Liam 03/12/2012 17:43:53.1.8 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1252.64.1033.18.8044.6462 [GMT 13:00]
Running from: c:\users\Liam\Downloads\ComboFix.exe
AV: ESET NOD32 Antivirus 5.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
SP: ESET NOD32 Antivirus 5.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Liam\AppData\Local\Temp\7zS30D4\HPSLPSVC64.DLL
c:\users\Public\sdelevURL.tmp
c:\windows\Installer\{8a476e9b-0a60-74f7-30ef-5facd25f86e2}\@
c:\windows\Installer\{8a476e9b-0a60-74f7-30ef-5facd25f86e2}\L\00000004.@
c:\windows\Installer\{8a476e9b-0a60-74f7-30ef-5facd25f86e2}\L\201d3dde
c:\windows\Installer\{8a476e9b-0a60-74f7-30ef-5facd25f86e2}\L\4cce1f70
c:\windows\Installer\{8a476e9b-0a60-74f7-30ef-5facd25f86e2}\L\55490ac4
c:\windows\Installer\{8a476e9b-0a60-74f7-30ef-5facd25f86e2}\U\00000008.@
c:\windows\Installer\{8a476e9b-0a60-74f7-30ef-5facd25f86e2}\U\80000032.@
c:\windows\Installer\{8a476e9b-0a60-74f7-30ef-5facd25f86e2}\U\80000064.@
.
Infected copy of c:\windows\system32\services.exe was found and disinfected
Restored copy from - c:\windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_HPSLPSVC
.
.
((((((((((((((((((((((((( Files Created from 2012-11-03 to 2012-12-03 )))))))))))))))))))))))))))))))
.
.
2012-12-03 04:50 . 2012-12-03 04:50--------d-----w-c:\users\UpdatusUser\AppData\Local\temp
2012-12-03 04:50 . 2012-12-03 04:50--------d-----w-c:\users\Default\AppData\Local\temp
2012-12-01 20:02 . 2012-12-01 20:02--------d-sh--w-c:\windows\SysWow64\%APPDATA%
2012-11-30 07:17 . 2012-11-30 07:19--------d-----w-c:\programdata\Windows Codecs
2012-11-30 07:17 . 2012-11-30 07:17--------d-----w-c:\program files (x86)\Mega Codec Pack
2012-11-29 06:25 . 2012-11-29 07:08--------d-----w-c:\users\Public\Games
2012-11-29 05:50 . 2012-11-29 05:50--------d-----w-c:\programdata\Blizzard
2012-11-29 04:33 . 2012-11-08 17:249125352----a-w-c:\programdata\Microsoft\Windows Defender\Definition Updates\{514EB171-A5F4-4127-972B-519CE6FE8401}\mpengine.dll
2012-11-16 06:23 . 2012-07-26 04:472560----a-w-c:\windows\system32\drivers\en-US\wdf01000.sys.mui
2012-11-16 06:23 . 2012-07-26 04:55785512----a-w-c:\windows\system32\drivers\Wdf01000.sys
2012-11-16 06:23 . 2012-07-26 04:5554376----a-w-c:\windows\system32\drivers\WdfLdr.sys
2012-11-16 06:23 . 2012-07-26 02:369728----a-w-c:\windows\system32\Wdfres.dll
2012-11-16 06:13 . 2012-10-08 11:17816640----a-w-c:\windows\system32\jscript.dll
2012-11-16 06:13 . 2012-10-08 11:152144768----a-w-c:\windows\system32\iertutil.dll
2012-11-16 06:13 . 2012-10-08 11:25499200----a-w-c:\program files\Internet Explorer\jsdbgui.dll
2012-11-16 06:13 . 2012-10-08 07:50678912----a-w-c:\program files (x86)\Internet Explorer\iedvtool.dll
2012-11-16 06:13 . 2012-10-08 07:49387584----a-w-c:\program files (x86)\Internet Explorer\jsdbgui.dll
2012-11-16 06:13 . 2012-10-08 11:26887296----a-w-c:\program files\Internet Explorer\iedvtool.dll
2012-11-16 06:13 . 2012-10-08 12:1917811968----a-w-c:\windows\system32\mshtml.dll
2012-11-16 06:13 . 2012-10-08 11:4210925568----a-w-c:\windows\system32\ieframe.dll
2012-11-16 06:10 . 2012-07-26 02:2687040----a-w-c:\windows\system32\drivers\WUDFPf.sys
2012-11-16 06:10 . 2012-07-26 02:26198656----a-w-c:\windows\system32\drivers\WUDFRd.sys
2012-11-16 06:10 . 2012-07-26 03:0884992----a-w-c:\windows\system32\WUDFSvc.dll
2012-11-16 06:10 . 2012-07-26 03:08194048----a-w-c:\windows\system32\WUDFPlatform.dll
2012-11-16 06:10 . 2012-07-26 03:08229888----a-w-c:\windows\system32\WUDFHost.exe
2012-11-16 06:10 . 2012-07-26 03:08744448----a-w-c:\windows\system32\WUDFx.dll
2012-11-16 06:10 . 2012-07-26 03:0845056----a-w-c:\windows\system32\WUDFCoinstaller.dll
2012-11-15 05:57 . 2012-10-03 17:4418944----a-w-c:\windows\system32\netevent.dll
2012-11-15 05:57 . 2012-10-03 16:4218944----a-w-c:\windows\SysWow64\netevent.dll
2012-11-15 05:57 . 2012-09-25 22:4695744----a-w-c:\windows\system32\synceng.dll
2012-11-15 05:57 . 2012-09-25 22:4778336----a-w-c:\windows\SysWow64\synceng.dll
2012-11-13 06:18 . 2012-11-13 06:52--------d-----w-c:\users\Liam\AppData\Local\Darksiders
2012-11-13 05:41 . 2012-11-13 06:17--------d-----w-c:\program files (x86)\Darksiders
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-11-16 06:11 . 2012-10-04 07:5066395536----a-w-c:\windows\system32\MRT.exe
2012-11-01 08:52 . 2012-11-01 08:5275928----a-w-c:\windows\system32\drivers\dc3d.sys
2012-11-01 08:52 . 2012-11-01 08:521795952----a-w-c:\windows\system32\WdfCoInstaller01011.dll
2012-10-21 20:55 . 2012-10-21 20:5573656----a-w-c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-10-21 20:55 . 2012-10-21 20:55696760----a-w-c:\windows\SysWow64\FlashPlayerApp.exe
2012-10-16 08:38 . 2012-11-29 04:32135168----a-w-c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2012-10-16 08:38 . 2012-11-29 04:32350208----a-w-c:\windows\apppatch\AppPatch64\AcLayers.dll
2012-10-16 07:39 . 2012-11-29 04:32561664----a-w-c:\windows\apppatch\AcLayers.dll
2012-10-05 04:04 . 2012-10-05 04:04971360----a-w-c:\windows\system32\drivers\timntr.sys
2012-10-05 04:04 . 2012-10-05 04:04210016----a-w-c:\windows\system32\drivers\vididr.sys
2012-10-05 04:04 . 2012-10-05 04:04275552----a-w-c:\windows\system32\drivers\snapman.sys
2012-10-05 04:04 . 2012-10-05 04:04141920----a-w-c:\windows\system32\drivers\vsflt53.sys
2012-10-04 08:58 . 2012-10-04 09:021640768----a-w-c:\windows\system32\nvvsvc.exe
2012-10-04 08:58 . 2012-10-04 09:025160256----a-w-c:\windows\system32\nvsvc64.dll
2012-10-04 08:58 . 2012-10-04 09:023074368----a-w-c:\windows\system32\nvsvcr.dll
2012-10-04 08:58 . 2012-10-04 09:02137536----a-w-c:\windows\system32\nvshext.dll
2012-10-04 08:58 . 2012-10-04 09:02222528----a-w-c:\windows\system32\nvmctray.dll
2012-10-04 08:58 . 2012-10-04 09:02540992----a-w-c:\windows\system32\nvhotkey.dll
2012-10-04 08:58 . 2012-10-04 09:0210428736----a-w-c:\windows\system32\nvcpl.dll
2012-10-04 08:57 . 2012-10-04 09:022417322----a-w-c:\windows\system32\nvcoproc.bin
2012-10-04 08:57 . 2012-10-04 09:02837952----a-w-c:\windows\system32\easyupdatusapiu64.dll
2012-10-04 08:57 . 2012-10-04 09:0255616----a-w-c:\windows\system32\nv3dappshextr.dll
2012-10-04 08:57 . 2012-10-04 09:021350976----a-w-c:\windows\system32\nv3dappshext.dll
2012-10-04 08:57 . 2012-10-04 09:018798528----a-w-c:\windows\system32\nvwgf2umx.dll
2012-10-04 08:57 . 2012-10-04 09:0168928----a-w-c:\windows\system32\OpenCL.dll
2012-10-04 08:57 . 2012-10-04 09:0161248----a-w-c:\windows\SysWow64\OpenCL.dll
2012-10-04 08:57 . 2012-10-04 09:01862016----a-w-c:\windows\system32\nvumdshimx.dll
2012-10-04 08:57 . 2012-10-04 09:01718144----a-w-c:\windows\SysWow64\nvumdshim.dll
2012-10-04 08:57 . 2012-10-04 09:017049536----a-w-c:\windows\SysWow64\nvwgf2um.dll
2012-10-04 08:57 . 2012-10-04 09:01371520----a-w-c:\windows\system32\nvoptimusmft.dll
2012-10-04 08:57 . 2012-10-04 09:01330560----a-w-c:\windows\SysWow64\nvoptimusmft.dll
2012-10-04 08:57 . 2012-10-04 09:0128992----a-w-c:\windows\system32\drivers\nvpciflt.sys
2012-10-04 08:57 . 2012-10-04 09:0124748864----a-w-c:\windows\system32\nvoglv64.dll
2012-10-04 08:57 . 2012-10-04 09:01241984----a-w-c:\windows\system32\nvinitx.dll
2012-10-04 08:57 . 2012-10-04 09:01203072----a-w-c:\windows\SysWow64\nvinit.dll
2012-10-04 08:57 . 2012-10-04 09:0118876736----a-w-c:\windows\SysWow64\nvoglv32.dll
2012-10-04 08:57 . 2012-10-04 09:011454912----a-w-c:\windows\system32\nvgenco64.dll
2012-10-04 08:57 . 2012-10-04 09:0113012800----a-w-c:\windows\system32\drivers\nvlddmkm.sys
2012-10-04 08:57 . 2012-10-04 09:01364352----a-w-c:\windows\system32\nvdecodemft.dll
2012-10-04 08:57 . 2012-10-04 09:01301888----a-w-c:\windows\SysWow64\nvdecodemft.dll
2012-10-04 08:57 . 2012-10-04 09:0115696704----a-w-c:\windows\system32\nvd3dumx.dll
2012-10-04 08:57 . 2012-10-04 09:011543488----a-w-c:\windows\system32\nvdispco64.dll
2012-10-04 08:57 . 2012-10-04 09:0113208384----a-w-c:\windows\SysWow64\nvd3dum.dll
2012-10-04 08:57 . 2012-10-04 09:017598400----a-w-c:\windows\system32\nvcuda.dll
2012-10-04 08:57 . 2012-10-04 09:015589824----a-w-c:\windows\SysWow64\nvcuda.dll
2012-10-04 08:57 . 2012-10-04 09:012544960----a-w-c:\windows\system32\nvcuvid.dll
2012-10-04 08:57 . 2012-10-04 09:012403136----a-w-c:\windows\SysWow64\nvcuvid.dll
2012-10-04 08:57 . 2012-10-04 09:012233664----a-w-c:\windows\system32\nvcuvenc.dll
2012-10-04 08:57 . 2012-10-04 09:012100544----a-w-c:\windows\SysWow64\nvcuvenc.dll
2012-10-04 08:57 . 2012-10-04 09:0117248576----a-w-c:\windows\SysWow64\nvcompiler.dll
2012-10-04 08:57 . 2012-10-04 09:012824000----a-w-c:\windows\system32\nvapi64.dll
2012-10-04 08:57 . 2012-10-04 09:0124796992----a-w-c:\windows\system32\nvcompiler.dll
2012-10-04 08:57 . 2012-10-04 09:012472768----a-w-c:\windows\SysWow64\nvapi.dll
2012-10-04 07:55 . 2012-10-04 07:5591648----a-w-c:\windows\system32\SetIEInstalledDate.exe
2012-10-04 07:55 . 2012-10-04 07:5589088----a-w-c:\windows\system32\RegisterIEPKEYs.exe
2012-10-04 07:55 . 2012-10-04 07:5586528----a-w-c:\windows\SysWow64\iesysprep.dll
2012-10-04 07:55 . 2012-10-04 07:5576800----a-w-c:\windows\SysWow64\SetIEInstalledDate.exe
2012-10-04 07:55 . 2012-10-04 07:5574752----a-w-c:\windows\SysWow64\RegisterIEPKEYs.exe
2012-10-04 07:55 . 2012-10-04 07:5574752----a-w-c:\windows\SysWow64\iesetup.dll
2012-10-04 07:55 . 2012-10-04 07:5565024----a-w-c:\windows\system32\pngfilt.dll
2012-10-04 07:55 . 2012-10-04 07:5563488----a-w-c:\windows\SysWow64\tdc.ocx
2012-10-04 07:55 . 2012-10-04 07:5555296----a-w-c:\windows\system32\msfeedsbs.dll
2012-10-04 07:55 . 2012-10-04 07:5549664----a-w-c:\windows\system32\imgutil.dll
2012-10-04 07:55 . 2012-10-04 07:5548640----a-w-c:\windows\SysWow64\mshtmler.dll
2012-10-04 07:55 . 2012-10-04 07:5548640----a-w-c:\windows\system32\mshtmler.dll
2012-10-04 07:55 . 2012-10-04 07:55367104----a-w-c:\windows\SysWow64\html.iec
2012-10-04 07:55 . 2012-10-04 07:5535840----a-w-c:\windows\SysWow64\imgutil.dll
2012-10-04 07:55 . 2012-10-04 07:55267776----a-w-c:\windows\system32\ieaksie.dll
2012-10-04 07:55 . 2012-10-04 07:5523552----a-w-c:\windows\SysWow64\licmgr10.dll
2012-10-04 07:55 . 2012-10-04 07:55222208----a-w-c:\windows\system32\msls31.dll
2012-10-04 07:55 . 2012-10-04 07:55197120----a-w-c:\windows\system32\msrating.dll
2012-10-04 07:55 . 2012-10-04 07:55163840----a-w-c:\windows\system32\ieakui.dll
2012-10-04 07:55 . 2012-10-04 07:55161792----a-w-c:\windows\SysWow64\msls31.dll
2012-10-04 07:55 . 2012-10-04 07:55160256----a-w-c:\windows\system32\ieakeng.dll
2012-10-04 07:55 . 2012-10-04 07:55152064----a-w-c:\windows\SysWow64\wextract.exe
2012-10-04 07:55 . 2012-10-04 07:55150528----a-w-c:\windows\SysWow64\iexpress.exe
2012-10-04 07:55 . 2012-10-04 07:55149504----a-w-c:\windows\system32\occache.dll
2012-10-04 07:55 . 2012-10-04 07:55145920----a-w-c:\windows\system32\iepeers.dll
2012-10-04 07:55 . 2012-10-04 07:55135168----a-w-c:\windows\system32\IEAdvpack.dll
2012-10-04 07:55 . 2012-10-04 07:5512288----a-w-c:\windows\system32\mshta.exe
2012-10-04 07:55 . 2012-10-04 07:5511776----a-w-c:\windows\SysWow64\mshta.exe
2012-10-04 07:55 . 2012-10-04 07:55114176----a-w-c:\windows\system32\admparse.dll
2012-10-04 07:55 . 2012-10-04 07:55111616----a-w-c:\windows\system32\iesysprep.dll
2012-10-04 07:55 . 2012-10-04 07:55110592----a-w-c:\windows\SysWow64\IEAdvpack.dll
2012-10-04 07:55 . 2012-10-04 07:5510752----a-w-c:\windows\system32\msfeedssync.exe
2012-10-04 07:55 . 2012-10-04 07:55101888----a-w-c:\windows\SysWow64\admparse.dll
2012-10-04 07:55 . 2012-10-04 07:5589088----a-w-c:\windows\system32\ie4uinit.exe
2012-10-04 07:55 . 2012-10-04 07:5585504----a-w-c:\windows\system32\iesetup.dll
2012-10-04 07:55 . 2012-10-04 07:5582432----a-w-c:\windows\system32\icardie.dll
2012-10-04 07:55 . 2012-10-04 07:5576800----a-w-c:\windows\system32\tdc.ocx
2012-10-04 07:55 . 2012-10-04 07:55534528----a-w-c:\windows\system32\ieapfltr.dll
2012-10-04 07:55 . 2012-10-04 07:55452608----a-w-c:\windows\system32\dxtmsft.dll
2012-10-04 07:55 . 2012-10-04 07:55448512----a-w-c:\windows\system32\html.iec
2012-10-04 07:55 . 2012-10-04 07:55403248----a-w-c:\windows\system32\iedkcs32.dll
2012-10-04 07:55 . 2012-10-04 07:5539936----a-w-c:\windows\system32\iernonce.dll
2012-10-04 07:55 . 2012-10-04 07:553695416----a-w-c:\windows\system32\ieapfltr.dat
2012-10-04 07:55 . 2012-10-04 07:5530720----a-w-c:\windows\system32\licmgr10.dll
2012-10-04 07:55 . 2012-10-04 07:55282112----a-w-c:\windows\system32\dxtrans.dll
2012-10-04 07:55 . 2012-10-04 07:55249344----a-w-c:\windows\system32\webcheck.dll
2012-10-04 07:55 . 2012-10-04 07:55165888----a-w-c:\windows\system32\iexpress.exe
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\Windows Codecs]
@="{1EC23CFF-4C58-458f-924C-8519AEF61B32}"
[HKEY_CLASSES_ROOT\CLSID\{1EC23CFF-4C58-458f-924C-8519AEF61B32}]
2012-11-30 07:17172032----a-w-c:\programdata\Windows Codecs\MediaShellOverlays.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files (x86)\Steam\Steam.exe" [2012-10-21 1353080]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-02-17 283160]
"NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2012-04-12 113288]
"hpqSRMon"="c:\program files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe" [2008-07-22 150528]
"HP Software Update"="c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - c:\program files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-9-20 270336]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-02-17 13336]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-09-29 676936]
R2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-22 2656280]
R3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\system32\DRIVERS\dc3d.sys [2012-11-01 75928]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-10-04 1431888]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-09-29 25928]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
R3 Point64;Microsoft Mouse and Keyboard Center Filter Driver;c:\windows\system32\DRIVERS\point64.sys [2012-06-26 46176]
R3 RTCore64;RTCore64;c:\program files (x86)\MSI Afterburner\RTCore64.sys [2012-09-17 13368]
R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
R3 VBoxUSB;VirtualBox USB;c:\windows\system32\Drivers\VBoxUSB.sys [2012-09-12 105816]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2012-10-04 1255736]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2012-10-04 28992]
S0 vididr;Acronis Virtual Disk;c:\windows\system32\DRIVERS\vididr.sys [2012-10-05 210016]
S0 vidsflt53;Acronis Disk Storage Filter (53);c:\windows\system32\DRIVERS\vsflt53.sys [2012-10-05 141920]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2011-08-03 146432]
S1 VBoxDrv;VirtualBox Service;c:\windows\system32\DRIVERS\VBoxDrv.sys [2012-09-12 237400]
S1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\DRIVERS\VBoxUSBMon.sys [2012-09-12 119640]
S2 Autodesk Content Service;Autodesk Content Service;c:\program files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2011-02-02 18656]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2011-08-09 202576]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2011-09-21 974944]
S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [2011-08-03 137144]
S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-09-29 399432]
S2 SgtSch2Svc;Seagate Scheduler2 Service;c:\program files (x86)\Common Files\Seagate\Schedule2\schedul2.exe [2011-06-30 1191408]
S3 b57xdbd;Broadcom xD Picture Bus Driver Service;c:\windows\system32\DRIVERS\b57xdbd.sys [2011-01-20 67624]
S3 b57xdmp;Broadcom xD Picture vstorp client drv;c:\windows\system32\DRIVERS\b57xdmp.sys [2011-01-20 19496]
S3 bScsiMSa;bScsiMSa;c:\windows\system32\DRIVERS\bScsiMSa.sys [2011-01-19 52264]
S3 bScsiSDa;bScsiSDa;c:\windows\system32\DRIVERS\bScsiSDa.sys [2011-01-13 85544]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2010-12-01 411688]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2012-04-12 82432]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2012-04-12 181760]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys [2012-09-12 131416]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys [2012-09-12 146264]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
hpdevmgmtREG_MULTI_SZ hpqcxs08 hpqddsvc
.
Contents of the 'Scheduled Tasks' folder
.
2012-12-03 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-21 20:55]
.
2012-12-03 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-10-04 08:31]
.
2012-12-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-10-04 08:31]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-03-19 170264]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-03-19 398616]
"Persistence"="c:\windows\system32\igfxpers.exe" [2012-03-19 439064]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2011-09-21 4035152]
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 112512]
"IntelliType Pro"="c:\program files\Microsoft Device Center\itype.exe" [2012-06-26 1464928]
"IntelliPoint"="c:\program files\Microsoft Device Center\ipoint.exe" [2012-06-26 2004584]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://
www.daum.net/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~1\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.1.1
.
- - - - ORPHANS REMOVED - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10c.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Google\Update\1.3.21.123\GoogleCrashHandler.exe
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
.
**************************************************************************
.
Completion time: 2012-12-03 17:53:52 - machine was rebooted
ComboFix-quarantined-files.txt 2012-12-03 04:53
.
Pre-Run: 589,453,541,376 bytes free
Post-Run: 590,719,184,896 bytes free
.
- - End Of File - - 52E0A7657CA0B5E48492BEDA44EB4AA7