|
|
grahalex
regular
Reg'd: Sat
Posts: 45
|
Re: Blue Screen - please check log
Tue Apr 01 2008 02:54 PM
|
|
|
Hi Bricat, here is combo log, HJT to follow.
"Graham" - 2008-04-01 14:50:08 - ComboFix 07-07-14.6 - Service Pack 2 NTFS Command switches used :: C:\Documents and Settings\Graham\Desktop\CFScript.txt
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\DOCUME~1\Annette\DesktopEditorFKWP1.5.exe C:\DOCUME~1\Annette\DesktopEditorFKWP2.0.exe C:\DOCUME~1\Annette\Desktopfilemanagerclient.exe C:\DOCUME~1\Annette\Desktopfkwp1.5.exe C:\DOCUME~1\Annette\Desktopfkwp2.0.exe C:\DOCUME~1\Annette\Desktopfwebd.exe C:\DOCUME~1\Annette\DesktopFWebdEditor.exe C:\DOCUME~1\Annette\DesktopTrojan.Win32.BlackBird.exe C:\DOCUME~1\Annette\Desktopvirii C:\DOCUME~1\Annette\Desktopvirii\Trojan-Downloader.Win32.Agent.bl.exe C:\DOCUME~1\Annette\Desktopvirii\Trojan-Downloader.Win32.Agent.p.exe C:\DOCUME~1\Annette\Desktopvirii\Trojan-Downloader.Win32.Agent.r.exe C:\DOCUME~1\Annette\Desktopvirii\Trojan-Downloader.Win32.Agent.t.exe C:\DOCUME~1\Annette\Desktopvirii\Trojan-Downloader.Win32.Agent.v.exe C:\WINDOWS\a.bat C:\WINDOWS\bdn.com C:\WINDOWS\FVProtect.exe C:\WINDOWS\iTunesMusic.exe C:\WINDOWS\mssecu.exe C:\WINDOWS\system32\ncxudivg.exe C:\WINDOWS\system32akttzn.exe C:\WINDOWS\system32anticipator.dll C:\WINDOWS\system32awtoolb.dll C:\WINDOWS\system32bdn.com C:\WINDOWS\system32bsva-egihsg52.exe C:\WINDOWS\system32dpcproxy.exe C:\WINDOWS\system32emesx.dll C:\WINDOWS\system32h@tkeysh@@k.dll C:\WINDOWS\system32hoproxy.dll C:\WINDOWS\system32hxiwlgpm.dat C:\WINDOWS\system32hxiwlgpm.exe C:\WINDOWS\system32medup012.dll C:\WINDOWS\system32medup020.dll C:\WINDOWS\system32msgp.exe C:\WINDOWS\system32msnbho.dll C:\WINDOWS\system32mssecu.exe C:\WINDOWS\system32msvchost.exe C:\WINDOWS\system32mtr2.exe C:\WINDOWS\system32mwin32.exe C:\WINDOWS\system32netode.exe C:\WINDOWS\system32newsd32.exe C:\WINDOWS\system32ps1.exe C:\WINDOWS\system32psof1.exe C:\WINDOWS\system32psoft1.exe C:\WINDOWS\system32regc64.dll C:\WINDOWS\system32regm64.dll C:\WINDOWS\system32Rundl1.exe C:\WINDOWS\system32smp C:\WINDOWS\system32smp\msrc.exe C:\WINDOWS\system32sncntr.exe C:\WINDOWS\system32ssurf022.dll C:\WINDOWS\system32ssvchost.com C:\WINDOWS\system32ssvchost.exe C:\WINDOWS\system32sysreq.exe C:\WINDOWS\system32taack.dat C:\WINDOWS\system32taack.exe C:\WINDOWS\system32temp#01.exe C:\WINDOWS\system32thun.dll C:\WINDOWS\system32thun32.dll C:\WINDOWS\system32vbsys2.dll C:\WINDOWS\system32vcatchpi.dll C:\WINDOWS\system32winlogonpc.exe C:\WINDOWS\system32winsystem.exe C:\WINDOWS\system32WINWGPX.EXE C:\WINDOWS\userconfig9x.dll C:\WINDOWS\winsystem.exe
((((((((((((((((((((((((( Files Created from 2008-03-01 to 2008-04-01 )))))))))))))))))))))))))))))))
2008-03-31 03:27 75,856 --a------ C:\WINDOWS\system32\drivers\aswSP.sys 2008-03-31 03:27 20,560 --a------ C:\WINDOWS\system32\drivers\aswFsBlk.sys 2008-03-31 03:19 63,488 --a------ C:\WINDOWS\xobglu16.dll 2008-03-31 03:19 23,552 --a------ C:\WINDOWS\xobglu32.dll 2008-03-30 14:00 <DIR> d-------- C:\DOCUME~1\Graham\APPLIC~1\The Labyrinth Plus! Edition 2008-03-30 13:54 98,304 --a------ C:\WINDOWS\system32\ImmPID.dll 2008-03-30 13:54 29,372 --a------ C:\WINDOWS\system32\drivers\ImHidUsb.sys 2008-03-30 13:54 192,512 --a------ C:\WINDOWS\system32\IFC22.dll 2008-03-30 13:54 16,384 --a------ C:\WINDOWS\system32\imm_enu.dll 2008-03-30 13:54 1,024,000 --a------ C:\WINDOWS\system32\ImmCpl.dll 2008-03-30 13:54 <DIR> d-------- C:\Program Files\Saitek 2008-03-30 12:59 786,432 --ah----- C:\DOCUME~1\ADMINI~1\NTUSER.DAT 2008-03-29 18:40 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Barbie Fashion Show 2008-03-29 18:38 <DIR> d-------- C:\Program Files\Common Files\Vivendi Universal Games 2008-03-29 18:38 <DIR> d-------- C:\Program Files\Barbie(TM) 2008-03-29 17:31 4,096 --a------ C:\DOCUME~1\Graham\DesktopTrojan.Win32.BlackBird.exe 2008-03-29 17:31 4,096 --a------ C:\DOCUME~1\Graham\DesktopFWebdEditor.exe 2008-03-29 17:31 4,096 --a------ C:\DOCUME~1\Graham\Desktopfwebd.exe 2008-03-29 17:31 4,096 --a------ C:\DOCUME~1\Graham\Desktopfkwp2.0.exe 2008-03-29 17:31 4,096 --a------ C:\DOCUME~1\Graham\Desktopfkwp1.5.exe 2008-03-29 17:31 4,096 --a------ C:\DOCUME~1\Graham\Desktopfilemanagerclient.exe 2008-03-29 17:31 4,096 --a------ C:\DOCUME~1\Graham\DesktopEditorFKWP2.0.exe 2008-03-29 17:31 4,096 --a------ C:\DOCUME~1\Graham\DesktopEditorFKWP1.5.exe 2008-03-29 17:31 <DIR> d-------- C:\DOCUME~1\Graham\Desktopvirii 2008-03-29 15:27 4,096 --a------ C:\DOCUME~1\CATHER~1\DesktopTrojan.Win32.BlackBird.exe 2008-03-29 15:27 4,096 --a------ C:\DOCUME~1\CATHER~1\DesktopFWebdEditor.exe 2008-03-29 15:27 4,096 --a------ C:\DOCUME~1\CATHER~1\Desktopfwebd.exe 2008-03-29 15:27 4,096 --a------ C:\DOCUME~1\CATHER~1\Desktopfkwp2.0.exe 2008-03-29 15:27 4,096 --a------ C:\DOCUME~1\CATHER~1\Desktopfkwp1.5.exe 2008-03-29 15:27 4,096 --a------ C:\DOCUME~1\CATHER~1\Desktopfilemanagerclient.exe 2008-03-29 15:27 4,096 --a------ C:\DOCUME~1\CATHER~1\DesktopEditorFKWP2.0.exe 2008-03-29 15:27 4,096 --a------ C:\DOCUME~1\CATHER~1\DesktopEditorFKWP1.5.exe 2008-03-29 15:27 <DIR> d-------- C:\DOCUME~1\CATHER~1\Desktopvirii 2008-03-29 14:55 94,208 --a------ C:\WINDOWS\system32\uhelgdsv.exe 2008-03-29 14:34 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\fhhjytzh 2008-03-29 14:04 32,256 --a------ C:\WINDOWS\system32\drivers\w2wtime.sys 2008-03-29 14:04 12,800 --a------ C:\WINDOWS\system32\drivers\wtcls2k.sys 2008-03-29 14:04 114,688 --a------ C:\WINDOWS\system32\wintab32.exe 2008-03-29 14:04 <DIR> d-------- C:\WINDOWS\Wintime 2008-03-29 11:47 <DIR> d-------- C:\Program Files\WinTime 2008-03-29 11:14 50,280 --a------ C:\WINDOWS\system32\Pnptbyb.exe 2008-03-29 11:14 308,312 --a------ C:\WINDOWS\system32\Penopcco.dll 2008-03-29 11:14 187,208 --a------ C:\WINDOWS\system32\Penopx.dll 2008-03-29 11:14 106,824 --a------ C:\WINDOWS\system32\Penopvx.dll 2008-03-29 11:14 <DIR> d-------- C:\Program Files\PenOp 2008-03-29 11:08 94,016 --a------ C:\WINDOWS\system32\Wintab.dll 2008-03-29 11:08 65,536 --a------ C:\WINDOWS\system32\wintab32.dll 2008-03-29 11:08 10,288 --a------ C:\WINDOWS\system32\Wtt16.dll 2008-03-29 11:08 <DIR> d-------- C:\Program Files\Your Company Name 2008-03-29 10:40 <DIR> d-------- C:\Program Files\JL2005C 2008-03-28 17:12 95,232 --a------ C:\WINDOWS\system\LFKODAK.DLL 2008-03-28 17:12 93,184 --a------ C:\WINDOWS\system\LFTIF70N.DLL 2008-03-28 17:12 77,824 --a------ C:\WINDOWS\system\Lffax10n.dll 2008-03-28 17:12 600,576 --a------ C:\WINDOWS\system\Ltwrp10n.dll 2008-03-28 17:12 57,344 --a------ C:\WINDOWS\system\BPEnhan.dll 2008-03-28 17:12 55,296 --a------ C:\WINDOWS\system\LTFIL70N.DLL 2008-03-28 17:12 350,208 --a------ C:\WINDOWS\system\LTKRN70N.DLL 2008-03-28 17:12 35,840 --a------ C:\WINDOWS\system32\Lflma10n.dll 2008-03-28 17:12 35,328 --a------ C:\WINDOWS\system\LFFPX70N.DLL 2008-03-28 17:12 34,304 --a------ C:\WINDOWS\system\Lfbmp10n.dll 2008-03-28 17:12 33,280 --a------ C:\WINDOWS\system32\Lfpcx10n.dll 2008-03-28 17:12 32,768 --a------ C:\WINDOWS\system\LFGIF70N.DLL 2008-03-28 17:12 31,232 --a------ C:\WINDOWS\system32\Lflmb10n.dll 2008-03-28 17:12 297,472 --a------ C:\WINDOWS\system\Ltkrn10n.dll 2008-03-28 17:12 29,184 --a------ C:\WINDOWS\system\LFLMA70N.DLL 2008-03-28 17:12 28,160 --a------ C:\WINDOWS\system32\Lfwmf10n.dll 2008-03-28 17:12 266,752 --a------ C:\WINDOWS\system\Lfcmp10n.dll 2008-03-28 17:12 26,112 --a------ C:\WINDOWS\system\LFICA70N.DLL 2008-03-28 17:12 25,088 --a------ C:\WINDOWS\system\LFLMB70N.DLL 2008-03-28 17:12 24,576 --a------ C:\WINDOWS\system\LFBMP70N.DLL 2008-03-28 17:12 24,064 --a------ C:\WINDOWS\system\LFPCT70N.DLL 2008-03-28 17:12 228,864 --a------ C:\WINDOWS\system32\Ltdis10n.dll 2008-03-28 17:12 224,768 --a------ C:\WINDOWS\system\LFCMP70N.DLL 2008-03-28 17:12 20,992 --a------ C:\WINDOWS\system\LFTGA70N.DLL 2008-03-28 17:12 20,480 --a------ C:\WINDOWS\system\LFIMG70N.DLL 2008-03-28 17:12 19,968 --a------ C:\WINDOWS\system\LFCAL70N.DLL 2008-03-28 17:12 19,456 --a------ C:\WINDOWS\system\LFPCD70N.DLL 2008-03-28 17:12 18,944 --a------ C:\WINDOWS\system\LFMAC70N.DLL 2008-03-28 17:12 175,104 --a------ C:\WINDOWS\system\LFFAX70N.DLL 2008-03-28 17:12 17,920 --a------ C:\WINDOWS\system\LFAVI70N.DLL 2008-03-28 17:12 122,368 --a------ C:\WINDOWS\system\Lftif10n.dll 2008-03-28 17:12 117,760 --a------ C:\WINDOWS\system32\Ltimg10n.dll 2008-03-28 17:12 103,424 --a------ C:\WINDOWS\system\Ltfil10n.dll 2008-03-28 16:03 <DIR> d-------- C:\Program Files\XnView 2008-03-28 16:03 <DIR> d-------- C:\DOCUME~1\Graham\APPLIC~1\XnView 2008-03-28 15:07 <DIR> d-------- C:\Program Files\IrfanView 2008-03-28 14:43 163,840 --a------ C:\WINDOWS\system32\12kUBusd.dll 2008-03-28 14:43 <DIR> d-------- C:\Program Files\Temp 2008-03-28 14:26 323,584 --a------ C:\WINDOWS\dwnrpofk.dll 2008-03-28 14:26 212,992 --a------ C:\WINDOWS\kdftlboenbg.dll 2008-03-28 14:26 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\exarehqd 2008-03-28 14:07 <DIR> d-------- C:\DOCUME~1\Graham\APPLIC~1\Leadertech 2008-03-24 23:51 <DIR> d-------- C:\Program Files\Common Files\Skype 2008-03-24 23:47 <DIR> d-------- C:\Program Files\Philips 2008-03-24 23:36 <DIR> d-------- C:\DOCUME~1\Graham\APPLIC~1\Skype 2008-03-24 18:04 <DIR> d-------- C:\DOCUME~1\Annette\APPLIC~1\Skype 2008-03-24 12:46 59,264 --a------ C:\WINDOWS\system32\drivers\USBAUDIO.sys 2008-03-24 12:46 31,616 --a------ C:\WINDOWS\system32\drivers\usbccgp.sys 2008-03-22 10:31 <DIR> d-------- C:\Program Files\Common Files\ODBC 2008-03-21 23:30 32 --a------ C:\DOCUME~1\ALLUSE~1\APPLIC~1\ezsid.dat
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2008-04-01 13:51:46 51,290,144 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat 2008-04-01 13:46:11 -------- d-----w C:\Program Files\Firefly Media Server 2008-04-01 13:42:08 -------- d-----w C:\Program Files\Soulseek 2008-04-01 11:15:06 602,264 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx 2008-03-30 12:54:39 -------- d--h--w C:\Program Files\InstallShield Installation Information 2008-03-30 10:15:37 -------- d-----w C:\Program Files\Elaborate Bytes 2008-03-29 20:29:18 -------- d-----w C:\Program Files\Common Files\Knowledge Adventure 2008-03-29 17:45:49 1,146,232 ----a-w C:\WINDOWS\system32\aswBoot.exe 2008-03-29 17:35:21 94,544 -c--a-w C:\WINDOWS\system32\drivers\aswmon2.sys 2008-03-29 17:29:08 23,152 -c--a-w C:\WINDOWS\system32\drivers\aswRdr.sys 2008-03-29 17:27:33 42,912 -c--a-w C:\WINDOWS\system32\drivers\aswTdi.sys 2008-03-29 17:26:52 26,944 -c--a-w C:\WINDOWS\system32\drivers\aavmker4.sys 2008-03-29 17:23:22 95,608 -c--a-w C:\WINDOWS\system32\AvastSS.scr 2008-03-27 08:26:37 -------- d-----w C:\DOCUME~1\Graham\APPLIC~1\LimeWire 2008-03-22 09:34:18 -------- d-----w C:\DOCUME~1\Graham\APPLIC~1\WeatherWatcher 2008-03-22 09:31:33 -------- d-----w C:\Program Files\Weather Watcher 2008-03-21 10:07:08 -------- d-----w C:\Program Files\EPSON 2008-03-21 06:22:35 -------- d-----w C:\Program Files\Google 2008-03-20 20:54:54 -------- d-----w C:\Program Files\Windows Live 2008-03-20 20:38:59 -------- d-----w C:\Program Files\TweakNow RegCleaner Std 2008-03-20 20:38:59 -------- d-----w C:\Program Files\SimpleDivX 2008-03-20 20:38:59 -------- d-----w C:\Program Files\Roku Radio Snooper 2008-03-20 20:38:53 -------- d-----w C:\Program Files\MP3 Remix 2008-03-20 20:38:46 -------- dcsh--w C:\Program Files\Common Files\WindowsLiveInstaller 2008-03-20 20:38:46 -------- d-----w C:\Program Files\DivX 2008-03-20 20:38:46 -------- d-----w C:\Program Files\Common Files\Nullsoft 2008-03-20 20:38:43 -------- d-----w C:\Program Files\Common Files\aolshare 2008-03-20 20:38:39 -------- d-----w C:\Program Files\Apple Software Update 2008-03-20 20:38:39 -------- d-----w C:\Program Files\AOL 9.0 2008-03-19 15:14:57 -------- d-----w C:\Program Files\RogueRemover FREE 2008-03-17 18:51:41 -------- d-----w C:\Program Files\SpywareBlaster 2008-03-13 16:36:18 -------- d-----w C:\Program Files\IObit 2008-03-09 10:30:42 -------- d-----w C:\DOCUME~1\Graham\APPLIC~1\ZipGenius 2008-03-07 21:19:33 -------- d-----w C:\DOCUME~1\Graham\APPLIC~1\RipIt4Me 2008-02-28 19:36:48 -------- d-----w C:\Program Files\BitComet 2008-02-26 18:49:47 -------- d-----w C:\Program Files\GirlTech 2008-02-26 16:23:29 -------- d-----w C:\Program Files\i-Sound Pro 2008-02-19 19:56:54 13,568 -c--a-w C:\WINDOWS\system32\drivers\USBCRFT.SYS 2008-02-16 09:50:47 -------- d-----w C:\Program Files\LimeWire 2008-02-01 11:11:10 586,240 ----a-w C:\WINDOWS\WLXPGSS.SCR 2008-01-18 14:43:49 12,632 -c--a-w C:\WINDOWS\system32\lsdelete.exe 2008-01-06 10:37:16 60,416 -c--a-w C:\WINDOWS\ALCFDRTM.EXE 2008-01-04 21:59:04 524,288 ----a-w C:\WINDOWS\system32\DivXsm.exe 2008-01-04 21:58:50 3,596,288 -c--a-w C:\WINDOWS\system32\qt-dx331.dll 2008-01-04 21:58:42 200,704 -c--a-w C:\WINDOWS\system32\ssldivx.dll 2008-01-04 21:58:42 1,044,480 -c--a-w C:\WINDOWS\system32\libdivx.dll 2008-01-04 21:57:22 81,920 -c--a-w C:\WINDOWS\system32\dpl100.dll 2008-01-04 21:57:22 196,608 -c--a-w C:\WINDOWS\system32\dtu100.dll 2008-01-04 21:57:16 53,248 -c--a-w C:\WINDOWS\system32\dpuGUI10.dll 2008-01-04 21:57:14 593,920 -c--a-w C:\WINDOWS\system32\dpuGUI11.dll 2008-01-04 21:57:14 57,344 -c--a-w C:\WINDOWS\system32\dpv11.dll 2008-01-04 21:57:14 344,064 -c--a-w C:\WINDOWS\system32\dpus11.dll 2008-01-04 21:57:14 294,912 -c--a-w C:\WINDOWS\system32\dpu11.dll 2008-01-04 21:57:14 294,912 -c--a-w C:\WINDOWS\system32\dpu10.dll 2008-01-04 21:57:12 823,296 ----a-w C:\WINDOWS\system32\divx_xx07.dll 2008-01-04 21:57:10 823,296 ----a-w C:\WINDOWS\system32\divx_xx0c.dll 2008-01-04 21:57:10 802,816 ----a-w C:\WINDOWS\system32\divx_xx11.dll 2008-01-04 21:57:10 682,496 ----a-w C:\WINDOWS\system32\DivX.dll 2008-01-04 21:56:48 156,992 -c--a-w C:\WINDOWS\system32\DivXCodecVersionChecker.exe 2008-01-04 21:56:24 12,288 -c--a-w C:\WINDOWS\system32\DivXWMPExtType.dll 2008-01-01 13:39:58 46 -c--a-w C:\WINDOWS\system32\DonationCoder_rokusnooper_InstallInfo.dat
((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] 2006-10-23 00:08 62080 --a------ C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{2F364306-AA45-47B5-9F9D-39A8B94E7EF7}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}] 2007-09-28 14:30 521528 --a--c--- C:\Program Files\BitComet\tools\BitCometBHO_1.1.9.24.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}] 2008-01-04 18:21 1548624 --a------ C:\PROGRA~1\SPYBOT~1\SDHelper.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] 2007-09-25 01:11 501136 --a--c--- C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] 2007-12-14 13:54 392240 --a------ C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}] 2006-08-20 19:55 81920 --a--c--- C:\Program Files\Free Download Manager\iefdmcks.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-03-29 18:37] "HostManager"="C:\Program Files\Common Files\AOL\1179865871\ee\AOLSoftware.exe" [2006-11-17 14:21] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11] "IntelliType"="C:\Program Files\Microsoft Hardware\Keyboard\type32.exe" [2002-03-22 05:41] "!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25] "ZoneAlarm Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" [2007-11-14 17:05] "IntelliPoint"="c:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2007-02-05 16:52] "CICache"="CICache.exe" [2002-09-05 15:21 C:\WINDOWS\CICache.exe] "SmartRAM"="C:\Program Files\IObit\Advanced WindowsCare V2\MemCleaner.exe" [2007-10-29 17:43] "SmartDefrag"="C:\Program Files\IObit\IObit SmartDefrag\IObit SmartDefrag.exe" [2008-01-08 00:29] "TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2007-06-18 18:11] "SAITEKAUTOCONFIGURE"="C:\Program Files\Saitek\ST\Drv\saicnfig.exe" [] "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-02-01 00:13]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 00:56] "msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 12:34]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer] "LinkResolveIgnoreLinkInfo"=0 (0x0) "NoResolveSearch"=1 (0x1)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] "LinkResolveIgnoreLinkInfo"=0 (0x0)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll" [2007-05-30 13:29]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Notification Packages :\WINDOWS\syste
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\aawservice]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Driver]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Guard]
Contents of the 'Scheduled Tasks' folder 2008-03-11 20:07:01 C:\WINDOWS\tasks\AppleSoftwareUpdate.job 2008-03-30 21:00:00 C:\WINDOWS\tasks\SmartDefrag.job
**************************************************************************
catchme 0.3.915 W2K/XP/Vista - rootkit detector by Gmer, http://www.gmer.net Rootkit scan 2008-04-01 14:52:22 Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully hidden files: 0
**************************************************************************
Completion time: 2008-04-01 14:53:11 C:\ComboFix-quarantined-files.txt ... 2008-04-01 14:53 C:\ComboFix2.txt ... 2008-03-31 21:50 C:\ComboFix3.txt ... 2008-03-29 17:54
--- E O F ---
|
|
|
|
1 registered and 9 anonymous users are browsing this forum.
Moderator: putasolutions, greysts, bricat, AndrewC, Joe_London, John_McKenna, Mouse, Hello_There, TheFatControlleR, Nanook, Noviciate
Print Thread
|
Forum Permissions
You cannot start new topics
You cannot reply to topics
HTML is disabled
Mark-up is enabled
|
Rating:
Thread views: 0
|
|
|