Ran SDFix, here are the results.
SDFix: Version 1.240 Run by Owner on Mon 02/02/2009 at 03:38 PM
Microsoft Windows XP [Version 5.1.2600]
Running From: C:\SDFix
Checking Services :
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
Checking Files :
No Trojan Files Found
Removing Temp Files
ADS Check :
Final Check :
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2009-02-02 15:55:39
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\CancelAutoplay\CLSID]
"\30 A?E?2?A?E?D?8?F?-?5?6?9?5?-?4?a?6?d?-?9?7?0?9?-?1?4?E?5?1?C?D?1?7?B?1?C?'?"=""
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
Remaining Services :
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\\Program Files\\HomeSeer 2\\Speaker.exe"="C:\\Program Files\\HomeSeer 2\\Speaker.exe:*:Enabled:HomeSeer Speaker"
"C:\\Program Files\\HomeSeer 2\\HomeSeer.exe"="C:\\Program Files\\HomeSeer 2\\HomeSeer.exe:*:Enabled:HomeSeer 2"
"C:\\Program Files\\Symantec\\LiveUpdate\\LUALL.EXE"="C:\\Program Files\\Symantec\\LiveUpdate\\LUALL.EXE:*:Enabled:LiveUpdate"
"C:\\Program Files\\Cinemar\\mainlobby.exe"="C:\\Program Files\\Cinemar\\mainlobby.exe:*:Enabled:MainLobby"
"C:\\Program Files\\HomeSeer 2\\hs_compatibility.exe"="C:\\Program Files\\HomeSeer 2\\hs_compatibility.exe:*:Enabled:HomeSeer 1.X Compatibility Interface"
"C:\\WINDOWS\\system32\\sessmgr.exe"="C:\\WINDOWS\\system32\\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe"="C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe:*:Disabled:Zone Labs Security"
"C:\\Program Files\\PhotoDeluxe 2.0\\PD.exe"="C:\\Program Files\\PhotoDeluxe 2.0\\PD.exe:*:Disabled:Adobe PhotoDeluxe 2.0"
"C:\\Program Files\\ComponentsToGo\\C2GWHOIS\\C2GWHOIS.dll"="C:\\Program Files\\ComponentsToGo\\C2GWHOIS\\C2GWHOIS.dll:*:Disabled:C2GWHOIS.dll"
"C:\\Program Files\\HomeSeer 2\\hspi_Message_Server.exe"="C:\\Program Files\\HomeSeer 2\\hspi_Message_Server.exe:*:Enabled:hspi_Message_Server plug-in for HomeSeer"
"C:\\Program Files\\Internet Explorer\\iexplore.exe"="C:\\Program Files\\Internet Explorer\\iexplore.exe:*:Disabled:Internet Explorer"
"C:\\Program Files\\Windows Media Player\\wmplayer.exe"="C:\\Program Files\\Windows Media Player\\wmplayer.exe:*:Enabled:Windows Media Player"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Disabled:Windows Messenger"
"C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe:*:Disabled:Yahoo! FT Server"
"C:\\WINDOWS\\system32\\dpvsetup.exe"="C:\\WINDOWS\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\WINDOWS\\system32\\rundll32.exe"="C:\\WINDOWS\\system32\\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\\WINDOWS\\system32\\mmc.exe"="C:\\WINDOWS\\system32\\mmc.exe:*:Disabled:Microsoft Management Console"
"C:\\Program Files\\HomeSeer 2\\html\\webcam 2000\\WebCam2000.exe"="C:\\Program Files\\HomeSeer 2\\html\\webcam 2000\\WebCam2000.exe:*:Disabled:WebCam2000 Image Server"
"C:\\Program Files\\xat.com xatshow\\xatshow.exe"="C:\\Program Files\\xat.com xatshow\\xatshow.exe:*:Disabled:xat.com xatshow"
"C:\\Program Files\\Yahoo!\\Messenger\\YPager.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YPager.exe:*:Disabled:Yahoo! Messenger"
"C:\\Program Files\\MLServer\\MLServer.exe"="C:\\Program Files\\MLServer\\MLServer.exe:*:Enabled:MainLobby Server"
"C:\\Program Files\\HomeSeer 2\\HsScript.exe"="C:\\Program Files\\HomeSeer 2\\HsScript.exe:*:Enabled:HsScript.exe"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Disabled:MSN Messenger 7.5"
"C:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe"="C:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe:*:Disabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Roxio\\Easy Media Creator 8\\Digital Home\\RoxUpnpServer.exe"="C:\\Program Files\\Roxio\\Easy Media Creator 8\\Digital Home\\RoxUpnpServer.exe:*:Disabled:Roxio Upnp Service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:MSN Messenger 7.5"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
Remaining Files :
Files with Hidden Attributes :
Wed 16 Feb 2005 3,112,968 ...H. --- "C:\Program Files\Picasa2\setup.exe"
Fri 28 May 2004 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Fri 28 May 2004 401 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv17.bak"
Fri 18 Jan 2008 400 A..H. --- "C:\Program Files\Common Files\Symantec Shared\COH\COH32LU.reg"
Fri 18 Jan 2008 403 A..H. --- "C:\Program Files\Common Files\Symantec Shared\COH\COHDLU.reg"
Fri 28 May 2004 4,348 ...H. --- "C:\Documents and Settings\Owner\My Documents\Tim's Stuff\My Music\License Backup\drmv1key.bak"
Sat 5 Mar 2005 401 A..H. --- "C:\Documents and Settings\Owner\My Documents\Tim's Stuff\My Music\License Backup\drmv1lic.bak"
Fri 28 May 2004 312 ...H. --- "C:\Documents and Settings\Owner\My Documents\Tim's Stuff\My Music\License Backup\drmv2key.bak"
Sat 5 Mar 2005 1,536 A..H. --- "C:\Documents and Settings\Owner\My Documents\Tim's Stuff\My Music\License Backup\drmv2lic.bak"
Finished!Thanks for helping me with this.
Tim