hello hope this is what you need, my AVG antivirus is now up and running ok, and machine is runnig ok except for the redirects I am still getting.
ComboFix 10-04-14.01 - NICK 18/04/2010 18:59:06.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.44.1033.18.2814.1758 [GMT 10:00]
Running from: c:\users\NICK\Desktop\zzz.exe
Command switches used :: c:\users\NICK\Desktop\CFScript.txt
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
* Created a new restore point
FILE ::
"c:\windows\System32\drivers\etc\hosts"
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\System32\drivers\etc\hosts
.
((((((((((((((((((((((((( Files Created from 2010-03-18 to 2010-04-18 )))))))))))))))))))))))))))))))
.
2010-04-18 09:11 . 2010-04-18 09:11 -------- d-----w- c:\windows\system32\config\systemprofile\AppData\Local\temp
2010-04-18 09:11 . 2010-04-18 09:11 -------- d-----w- c:\users\Public\AppData\Local\temp
2010-04-18 09:11 . 2010-04-18 09:11 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-04-16 23:14 . 2010-04-16 23:14 4076824 ----a-w- c:\programdata\avg9\update\backup\avgui.exe
2010-04-16 23:14 . 2010-04-16 23:14 2059544 ----a-w- c:\programdata\avg9\update\backup\avgtray.exe
2010-04-16 23:14 . 2010-04-16 23:14 1598744 ----a-w- c:\programdata\avg9\update\backup\avgssie.dll
2010-04-16 23:14 . 2010-04-16 23:14 1274136 ----a-w- c:\programdata\avg9\update\backup\avgfrw.exe
2010-04-16 23:14 . 2010-04-16 23:14 598296 ----a-w- c:\programdata\avg9\update\backup\avgsrmx.dll
2010-04-16 23:14 . 2010-04-16 23:14 313112 ----a-w- c:\programdata\avg9\update\backup\avglogx.dll
2010-04-16 23:14 . 2010-04-16 23:14 1515224 ----a-w- c:\programdata\avg9\update\backup\avgwd.dll
2010-04-16 23:13 . 2010-04-16 23:13 459544 ----a-w- c:\programdata\avg9\update\backup\avgcclix.dll
2010-04-16 23:13 . 2010-04-16 23:13 4250976 ----a-w- c:\programdata\avg9\update\backup\avgcorex.dll
2010-04-16 23:13 . 2010-04-16 23:13 341272 ----a-w- c:\programdata\avg9\update\backup\avgxch32.dll
2010-04-16 23:13 . 2010-04-16 23:13 1086744 ----a-w- c:\programdata\avg9\update\backup\avgchsvx.exe
2010-04-16 23:13 . 2010-04-16 23:13 556824 ----a-w- c:\programdata\avg9\update\backup\avgchjwx.dll
2010-04-16 23:13 . 2010-04-16 23:13 301336 ----a-w- c:\programdata\avg9\update\backup\avgchclx.dll
2010-04-16 23:12 . 2010-04-16 23:12 1685784 ----a-w- c:\programdata\avg9\update\backup\avgupd.dll
2010-04-16 23:12 . 2010-04-16 23:12 1035032 ----a-w- c:\programdata\avg9\update\backup\avgupd.exe
2010-04-16 08:37 . 2010-04-16 08:37 12464 ----a-w- c:\windows\system32\avgrsstx.dll
2010-04-16 08:37 . 2010-04-16 08:37 242696 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2010-04-16 08:36 . 2010-04-16 08:36 216200 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2010-04-16 08:36 . 2010-04-16 08:36 29512 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2010-04-16 08:36 . 2010-04-18 08:47 -------- d-----w- c:\windows\system32\drivers\Avg
2010-04-13 11:27 . 2010-04-13 11:27 -------- d--h--w- c:\windows\PIF
2010-04-12 07:09 . 2010-04-12 07:10 -------- d-----w- C:\rsit
2010-04-12 06:56 . 2010-04-12 06:56 -------- d-----w- c:\program files\Common Files\Adobe
2010-04-12 06:51 . 2010-04-12 06:51 -------- d-----w- c:\program files\Common Files\Java
2010-04-08 06:46 . 2010-04-08 06:46 -------- d-----w- c:\program files\Trend Micro
2010-04-05 01:17 . 2010-01-07 06:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-04-05 01:17 . 2010-04-13 11:32 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-04-05 01:17 . 2010-01-07 06:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-04-05 00:34 . 2010-04-05 00:34 -------- d-----w- c:\users\NICK\AppData\Local\Threat Expert
2010-04-04 23:42 . 2010-04-04 23:42 -------- d-----w- c:\users\NICK\AppData\Roaming\AVG9
2010-03-27 17:21 . 2010-03-27 17:21 -------- d-----w- c:\program files\Windows Portable Devices
2010-03-27 17:04 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2010-03-27 17:04 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2010-03-27 17:04 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2010-03-27 17:02 . 2009-10-08 21:08 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2010-03-27 17:02 . 2009-10-08 21:08 234496 ----a-w- c:\windows\system32\oleacc.dll
2010-03-27 17:02 . 2009-10-08 21:07 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2010-03-27 08:54 . 2010-03-27 08:54 360584 ----a-w- c:\programdata\avg9\update\backup\avgtdix.sys
2010-03-27 08:54 . 2010-03-27 08:54 333192 ----a-w- c:\programdata\avg9\update\backup\avgldx86.sys
2010-03-27 08:54 . 2010-03-27 08:54 28424 ----a-w- c:\programdata\avg9\update\backup\avgmfx86.sys
2010-03-27 08:53 . 2010-01-06 15:39 1696256 ----a-w- c:\windows\system32\gameux.dll
2010-03-27 08:53 . 2010-01-06 15:38 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2010-03-27 08:53 . 2010-01-06 13:30 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2010-03-27 08:51 . 2010-03-26 20:46 613656 ----a-w- c:\programdata\avg9\update\backup\avgiproxy.exe
2010-03-27 08:51 . 2010-03-26 20:46 800536 ----a-w- c:\programdata\avg9\update\backup\avginet.dll
2010-03-26 11:31 . 2010-03-26 11:32 -------- d-----w- c:\windows\system32\ca-ES
2010-03-26 11:31 . 2010-03-26 11:32 -------- d-----w- c:\windows\system32\eu-ES
2010-03-26 11:31 . 2010-03-26 11:32 -------- d-----w- c:\windows\system32\vi-VN
2010-03-26 10:34 . 2010-03-26 10:34 -------- d-----w- c:\windows\system32\EventProviders
2010-03-24 08:04 . 2010-03-24 18:17 952768 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\29657\AdobeARM.exe
2010-03-24 08:04 . 2010-03-24 18:17 70584 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\29657\AdobeExtractFiles.dll
2010-03-24 08:04 . 2010-03-24 18:17 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\29657\ReaderUpdater.exe
2010-03-24 08:04 . 2010-03-24 18:17 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\29657\AcrobatUpdater.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-04-18 09:12 . 2009-03-07 08:45 -------- d-----w- c:\users\NICK\AppData\Roaming\Skype
2010-04-18 08:44 . 2009-03-07 08:48 -------- d-----w- c:\users\NICK\AppData\Roaming\skypePM
2010-04-16 08:36 . 2010-02-04 21:07 -------- d-----w- c:\programdata\avg9
2010-04-12 06:50 . 2008-12-28 11:32 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-04-12 06:42 . 2008-12-28 11:42 -------- d-----w- c:\program files\Vuze
2010-04-02 02:04 . 2008-12-28 11:43 -------- d-----w- c:\users\NICK\AppData\Roaming\Azureus
2010-03-27 17:20 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2010-03-27 17:20 . 2010-03-27 17:20 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2010-03-26 11:32 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Sidebar
2010-03-26 11:32 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Calendar
2010-03-26 11:32 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-03-26 11:32 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Photo Gallery
2010-03-26 11:32 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Journal
2010-03-26 11:32 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Collaboration
2010-03-26 11:32 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Defender
2010-03-17 11:02 . 2008-08-19 09:12 -------- d-----w- c:\programdata\Microsoft Help
2010-03-01 06:16 . 2008-12-27 10:19 103528 ----a-w- c:\users\NICK\AppData\Local\GDIPFONTCACHEV1.DAT
2010-02-20 23:06 . 2010-03-11 20:29 24064 ----a-w- c:\windows\system32\nshhttp.dll
2010-02-20 23:05 . 2010-03-11 20:29 30720 ----a-w- c:\windows\system32\httpapi.dll
2010-02-20 20:53 . 2010-03-11 20:29 411648 ----a-w- c:\windows\system32\drivers\http.sys
2010-01-25 12:47 . 2010-02-04 21:04 3777816 ----a-w- c:\programdata\TEMP\AVG\setup.exe
2010-01-25 12:00 . 2010-02-24 06:05 471552 ----a-w- c:\windows\system32\secproc_isv.dll
2010-01-25 12:00 . 2010-02-24 06:05 152576 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2010-01-25 12:00 . 2010-02-24 06:05 152064 ----a-w- c:\windows\system32\secproc_ssp.dll
2010-01-25 12:00 . 2010-02-24 06:05 471552 ----a-w- c:\windows\system32\secproc.dll
2010-01-25 11:58 . 2010-02-24 06:05 332288 ----a-w- c:\windows\system32\msdrm.dll
2010-01-25 08:21 . 2010-02-24 06:05 526336 ----a-w- c:\windows\system32\RMActivate_isv.exe
2010-01-25 08:21 . 2010-02-24 06:05 346624 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2010-01-25 08:21 . 2010-02-24 06:05 518144 ----a-w- c:\windows\system32\RMActivate.exe
2010-01-25 08:21 . 2010-02-24 06:05 347136 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2010-01-23 09:26 . 2010-02-24 06:05 2048 ----a-w- c:\windows\system32\tzres.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]
@="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"
[HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]
2008-05-15 00:05 121392 ----a-w- c:\program files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-02-04 23975720]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"Messenger (Yahoo!)"="c:\program files\Yahoo!\Messenger\YahooMessenger.exe" [2009-05-26 4351216]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2008-03-10 689488]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2008-03-03 1848648]
"RtHDVCpl"="RtHDVCpl.exe" [2008-05-21 6144000]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-21 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-03-24 952768]
c:\users\NICK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OneNote Table Of Contents.onetoc2 [2009-12-13 3656]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\Google\GOOGLE~1\GoogleDesktopNetwork3.dll c:\windows\System32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKLM\~\startupfolder\C:^Users^NICK^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Screen Clipper and Launcher.lnk]
backup=c:\windows\pss\OneNote 2007 Screen Clipper and Launcher.lnk.Startup
backupExtension=.Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcadeDeluxeAgent]
2008-05-30 00:44 147456 ------w- c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BkupTray]
2008-04-26 04:36 28672 ----a-w- c:\program files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
2008-05-30 00:44 167936 ------w- c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eDataSecurity Loader]
2008-05-15 00:05 526896 ----a-w- c:\program files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe]
2008-01-21 02:25 125952 ----a-w- c:\windows\ehome\ehtray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ePower_DMC]
2008-06-11 17:22 409600 ----a-w- c:\program files\Acer\Empowering Technology\ePower\ePower_DMC.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
2008-12-27 10:21 24064 ----a-w- c:\program files\Google\Google Desktop Search\GoogleDesktop.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2006-10-27 00:47 31016 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager]
2008-09-10 22:02 809480 ----a-w- c:\progra~1\LAUNCH~1\LManager.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Messenger (Yahoo!)]
2009-05-26 11:06 4351216 ----a-w- c:\program files\Yahoo!\Messenger\YahooMessenger.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2001-07-09 00:50 155648 ----a-w- c:\windows\System32\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PlayMovie]
2008-05-13 00:28 167936 ----a-w- c:\program files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2009-01-05 06:18 413696 ----a-w- c:\program files\QuickTime\QTTask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2008-05-21 02:06 6144000 ----a-w- c:\windows\RtHDVCpl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2009-02-04 02:27 23975720 ----a-r- c:\program files\Skype\Phone\Skype.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
2007-11-21 02:15 1826816 ----a-w- c:\windows\SkyTel.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
2008-01-21 19:17 61440 ----a-w- c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2009-03-08 19:19 148888 ----a-w- c:\program files\Java\jre6\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
2008-04-25 18:08 1049896 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WarReg_PopUp]
2008-01-29 09:03 303104 ----a-w- c:\program files\Acer\WR_PopUp\WarReg_PopUp.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
2008-01-21 02:23 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WindowsWelcomeCenter]
2009-04-11 06:28 2153472 ----a-w- c:\windows\System32\oobefldr.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG]
2008-01-21 02:25 202240 ----a-w- c:\program files\Windows Media Player\wmpnscfg.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):08,02,82,02,d9,cc,ca,01
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1032073352-3646096773-1008586168-1000]
"EnableNotificationsRef"=dword:00000001
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-04-26 131072]
R3 GoogleDesktopManager-080708-050100;Google Desktop Manager 5.7.808.7150;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [2008-12-27 24064]
R3 WSVD;WSVD;c:\windows\system32\drivers\WSVD.sys [2007-12-17 75776]
S1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\Drivers\avgldx86.sys [2010-04-16 216200]
S1 AvgTdiX;AVG Free Network Redirector;c:\windows\system32\Drivers\avgtdix.sys [2010-04-16 242696]
S2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796};c:\program files\Acer Arcade Deluxe\PlayMovie\000.fcl [2008-05-09 61424]
S2 avg9wd;AVG Free WatchDog;c:\program files\AVG\AVG9\avgwdsvc.exe [2010-04-16 308064]
S2 BUNAgentSvc;NTI Backup Now 5 Agent Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe [2008-03-03 16384]
S2 CLHNService;CLHNService;c:\program files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [2008-01-17 81504]
S2 ETService;Empowering Technology Service;c:\program files\Acer\Empowering Technology\Service\ETService.exe [2008-03-21 24576]
S2 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-04-26 45056]
S2 NTIPPKernel;NTIPPKernel;c:\program files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\NTIPPKernel.sys [2008-01-17 122368]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\b57nd60x.sys [2008-03-28 210432]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [2008-05-29 22072]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
.
------- Supplementary Scan -------
.
uStart Page =
www.google.com.au/mStart Page =
hxxp://homepage.acer.com/rdr.aspx?b=ACA ... spire_5535IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
DPF: {C7DEDA04-2FFF-4B81-AE66-0A0E0EF4AD2F} -
hxxp://photomax.lifepics.com/net/Upload ... ader57.cab.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2010-04-18 19:11
Windows 6.0.6002 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}]
"ImagePath"="\??\c:\program files\Acer Arcade Deluxe\PlayMovie\000.fcl"
.
Completion time: 2010-04-18 19:15:16
ComboFix-quarantined-files.txt 2010-04-18 09:15
ComboFix2.txt 2010-04-16 07:50
Pre-Run: 17,539,588,096 bytes free
Post-Run: 19,818,708,992 bytes free
- - End Of File - - 64D9A28356E276AE67AD7F5B3F8C2E31