That was one long weekend.
Download and run this regfix and then try the searh again:
http://www.kellys-korner-xp.com/regs...ngservice2.reg
This file is from a worm , or the "Security Task Manager" application:
C:\WINDOWS\system32\
taskman.exe
Do you use that app? If you dont know then please upload the file in bold to this site:
http://www.virustotal.com/en/indexf.html
And post back with the scan results.
Then boot in safemode (hit f8 when booting up)
Click Start>Run and type in: services.msc
Click OK
In the Services window find:
Hardware Clock Driver
Select/highlight and right click the entry, and choose: Properties
On the General tab, under Service Status click the Stop button
Beside: Startup Type, in the drop menu, select: Disabled
Click Apply, then OK
Open
HJT and click config > misc tools > ?delete an NT service?
Copy and past:
hwclock
Click OK.
Then fix these with
hjt if still present:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: Shell=
O23 - Service: Hardware Clock Driver (hwclock) - Unknown owner - C:\WINDOWS\System32\
hwclock.exe
Delete the file in bold , reboot , and post a new
hjt log please.
And where you just using system restore?