:OTL
PRC - C:\Users\Public\Documents\AppData\PoApp\PService.e xe (PService)
SRV - (PowerOffer Service) -- C:\Users\Nick\AppData\Local\PosService\Pos.exe (PowerOfferService)
SRV - (ServUpdater) -- C:\Users\Nick\AppData\Local\ServUpdater\ServiceUpd .exe (ServiceUpd)
DRV - (USBModem) -- system32\DRIVERS\lgusbmodem.sys File not found
DRV - (UsbDiag) -- system32\DRIVERS\lgusbdiag.sys File not found
DRV - (usbbus) -- system32\DRIVERS\lgusbbus.sys File not found
DRV - (NwlnkFwd) -- system32\DRIVERS\nwlnkfwd.sys File not found
DRV - (NwlnkFlt) -- system32\DRIVERS\nwlnkflt.sys File not found
DRV - (mbr) -- C:\ComboFix\mbr.sys File not found
DRV - (IpInIp) -- system32\DRIVERS\ipinip.sys File not found
DRV - (catchme) -- C:\Users\Nick\AppData\Local\Temp\catchme.sys File not found
DRV - (blbdrive) -- C:\Windows\system32\drivers\blbdrive.sys File not found
DRV - (adfs) -- File not found
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://search.findeer.com
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://search.findeer.com
IE - HKU\S-1-5-21-51976693-4172249045-880559437-1001\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: File not found
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - No CLSID value found.
O3 - HKU\S-1-5-21-51976693-4172249045-880559437-1001\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found.
O4 - HKLM..\Run: [BigDogPath] C:\Windows\VM_STI.EXE %;USB\VID_0AC8&PID_0302.DeviceDesc% File not found
O4 - HKLM..\Run: [PosService] C:\Users\Public\Documents\AppData\PoApp\PLauncher. exe (PLauncher)
[2012/10/07 17.47.25 | 000,000,000 | ---D | C] -- C:\Users\Nick\AppData\Local\temp
[2012/10/07 17.28.41 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2012/10/07 17.28.41 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2012/10/07 17.28.33 | 000,000,000 | ---D | C] -- C:\ComboFix
[2012/10/07 17.22.29 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/10/07 17.22.08 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2012/10/07 16.38.32 | 004,762,471 | R--- | C] (Swearware) -- C:\Users\Nick\Desktop\ComboFix.exe
[2012/10/07 17.28.41 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012/10/07 17.28.41 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012/10/07 17.28.41 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012/10/07 17.28.41 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012/10/07 17.28.41 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
:Files
C:\ProgramData\Logintraintra.2b2b1o
C:\ProgramData\Logintraintra.1hj3xfv
C:\ProgramData\Tray bind seek.k1p65
ipconfig /flushdns /c
:commands
[purity]
[Reboot]