ComboFix 08-04-03.2 - Don Corleone 2008-04-03 21:57:20.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.153 [GMT -8:00]
Running from: C:\Documents and Settings\Don Corleone\Desktop\New Era\ComboFix.exe
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!.
TimedOut: progfile.dat
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\WINDOWS\BM9f1959a9.xml
C:\WINDOWS\cookies.ini
C:\WINDOWS\Fonts\'
C:\WINDOWS\Fonts\a.zip
C:\WINDOWS\pskt.ini
C:\WINDOWS\system32\DcadsSocial-uninstall.exe
C:\WINDOWS\system32\fnjgmsnn.dll
C:\WINDOWS\system32\gvorhdwx.dll
C:\WINDOWS\system32\hronicif.ini
C:\WINDOWS\system32\ihlpondf.dll
C:\WINDOWS\system32\jgracakq.dll
C:\WINDOWS\system32\jtakdgws.dll
C:\WINDOWS\system32\jxynsghc.dll
C:\WINDOWS\system32\kduyyjvv.ini
C:\WINDOWS\system32\kiohvoiw.dll
C:\WINDOWS\system32\lxadxhke.ini
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\neotfudm.ini2
C:\WINDOWS\system32\neotfudm.tmp
C:\WINDOWS\system32\oqtwa.ini
C:\WINDOWS\system32\oqtwa.ini2
C:\WINDOWS\system32\rypoefnw.dll
C:\WINDOWS\system32\selktdpe.dll
C:\WINDOWS\system32\swgdkatj.ini
C:\WINDOWS\system32\sysdm.exe
C:\WINDOWS\system32\uidusoab.ini
C:\WINDOWS\system32\urcxgres.dll
C:\WINDOWS\system32\utrutqvx.dll
C:\WINDOWS\system32\vfwbsqro.dll
C:\WINDOWS\system32\vtsqo(2).dll
C:\WINDOWS\system32\wkmrrghg.dll
C:\WINDOWS\system32\wnfeopyr.ini
C:\WINDOWS\system32\xvqturtu.ini
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_NWSAPAGENT
-------\Service_NwSapAgent
((((((((((((((((((((((((( Files Created from 2008-03-04 to 2008-04-04 )))))))))))))))))))))))))))))))
.
2008-04-03 21:52 . 2008-04-03 21:52 1,181,022 --a------ C:\WINDOWS\system32\TmpA46251640
2008-04-03 21:26 . 2008-04-03 21:55 <DIR> d-------- C:\Documents and Settings\Don Corleone\Application Data\AVG7
2008-04-03 21:25 . 2008-04-03 21:25 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\AVG7
2008-04-03 21:25 . 2008-04-03 21:25 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2008-04-03 21:25 . 2008-04-03 21:28 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\avg7
2008-04-03 18:29 . 2007-09-05 23:22 289,144 --a------ C:\WINDOWS\system32\VCCLSID.exe
2008-04-03 18:29 . 2006-04-27 16:49 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2008-04-03 18:29 . 2008-03-28 23:19 86,528 --a------ C:\WINDOWS\system32\VACFix.exe
2008-04-03 18:29 . 2008-03-26 08:50 82,432 --a------ C:\WINDOWS\system32\IEDFix.exe
2008-04-03 18:29 . 2003-06-05 20:13 53,248 --a------ C:\WINDOWS\system32\Process.exe
2008-04-03 18:29 . 2004-07-31 17:50 51,200 --a------ C:\WINDOWS\system32\dumphive.exe
2008-04-03 18:29 . 2007-10-03 23:36 25,600 --a------ C:\WINDOWS\system32\WS2Fix.exe
2008-04-03 18:24 . 2008-04-03 18:24 <DIR> d-------- C:\Program Files\Trend Micro
2008-04-03 00:41 . 2008-04-03 00:41 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-04-03 00:41 . 2008-04-03 00:41 1,409 --a------ C:\WINDOWS\QTFont.for
2008-04-02 04:46 . 2008-04-02 04:46 <DIR> d-------- C:\Program Files\Lavasoft
2008-04-02 04:46 . 2008-04-02 04:46 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-03-31 23:01 . 2008-03-31 23:06 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\AOL OCP
2008-03-31 23:00 . 2008-03-31 23:04 <DIR> d-------- C:\Program Files\AIM6
2008-03-29 12:04 . 2008-04-01 11:54 <DIR> d-------- C:\Program Files\Spyware Doctor
2008-03-29 12:04 . 2007-04-19 15:18 83,536 --a------ C:\WINDOWS\system32\drivers\iksyssec.sys
2008-03-29 12:04 . 2007-04-19 15:18 59,984 --a------ C:\WINDOWS\system32\drivers\iksysflt.sys
2008-03-29 12:04 . 2007-04-19 15:18 52,304 --a------ C:\WINDOWS\system32\drivers\ikfilesec.sys
2008-03-29 12:04 . 2007-04-19 15:18 39,248 --a------ C:\WINDOWS\system32\drivers\ikfileflt.sys
2008-03-29 12:04 . 2007-04-19 15:18 26,064 --a------ C:\WINDOWS\system32\drivers\kcom.sys
2008-03-24 11:21 . 2008-03-29 12:13 <DIR> d-------- C:\Program Files\Azureus
2008-03-17 05:24 . 2008-03-17 05:24 <DIR> d-------- C:\Program Files\Opera
2008-03-16 16:30 . 2008-03-16 16:31 <DIR> d-------- C:\Perl
2008-03-15 23:59 . 2008-03-15 00:41 1,348,096 ---hs---- C:\WINDOWS\system32\fnapdjxx.ini
2008-03-15 19:12 . 2008-03-15 19:12 <DIR> d-------- C:\Program Files\Antares
2008-03-15 19:04 . 2008-04-03 21:53 <DIR> d-------- C:\Program Files\Antares Audio Technologies
2008-03-15 19:04 . 2003-06-20 12:28 1,777,664 --a------ C:\WINDOWS\system32\gdiplus.dll
2008-03-15 08:46 . 2008-03-29 12:17 <DIR> d-------- C:\Program Files\SpywareGuard
2008-03-14 03:42 . 2008-03-14 03:42 <DIR> d-------- C:\Documents and Settings\Don Corleone\Application Data\Malwarebytes
2008-03-14 03:40 . 2008-03-14 03:40 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-03-14 03:15 . 2008-03-14 03:11 102,664 --a------ C:\WINDOWS\system32\drivers\tmcomm.sys
2008-03-14 03:10 . 2008-03-15 12:20 <DIR> d-------- C:\Documents and Settings\Don Corleone\.housecall6.6
2008-03-14 03:09 . 2008-03-14 03:09 1,346,750 ---hs---- C:\WINDOWS\system32\mludjxyr.tmp
2008-03-14 00:00 . 2008-03-15 12:20 <DIR> d-------- C:\Program Files\Windows Defender
2008-03-13 14:21 . 2008-03-13 14:21 <DIR> d-------- C:\Program Files\ASIO4ALL v2
2008-03-13 14:08 . 2008-03-13 14:08 <DIR> d-------- C:\Program Files\Outsim
2008-03-13 09:01 . 2008-03-17 12:23 598 --a------ C:\WINDOWS\system\CmcnfgU.ini
2008-03-13 08:55 . 2006-09-04 03:54 5,464,064 -ra------ C:\WINDOWS\system\cmcnfgu.cpl
2008-03-13 08:55 . 2006-09-04 03:54 1,414,528 -ra------ C:\WINDOWS\system32\drivers\cmudaxu.sys
2008-03-13 08:55 . 2006-09-04 03:54 917,504 -ra------ C:\WINDOWS\system\cmds3du.dll
2008-03-13 08:55 . 2006-09-04 03:54 712,704 -ra------ C:\WINDOWS\system32\a3dpropu.dll
2008-03-13 08:55 . 2006-09-04 03:54 315,392 -ra------ C:\WINDOWS\system\cmifltr.dll
2008-03-13 08:55 . 2006-09-04 03:54 253,952 -ra------ C:\WINDOWS\system32\cmdrvrmu.exe
2008-03-13 08:55 . 2006-09-04 03:54 98,304 -ra------ C:\WINDOWS\system32\cmudau.dll
2008-03-13 08:55 . 2006-09-04 03:54 61,440 -ra------ C:\WINDOWS\system\cmsnxeye.exe
2008-03-13 08:55 . 2006-09-04 03:54 16,384 -ra------ C:\WINDOWS\system32\cmpropu.dll
2008-03-13 08:55 . 2006-09-29 22:44 4,356 -ra------ C:\WINDOWS\system32\cmdrvrmu.dll
2008-03-13 08:54 . 2008-03-13 08:54 <DIR> d-------- C:\Program Files\C-Media USB Sound
2008-03-13 08:54 . 2006-09-04 03:54 258,048 -ra------ C:\WINDOWS\CmiUSB2Uninstall.exe
2008-03-13 08:54 . 2006-09-04 03:54 44,276 -ra------ C:\WINDOWS\256.bmp
2008-03-13 08:54 . 2006-09-04 03:54 5,632 -ra------ C:\WINDOWS\Thumbs.db
2008-03-13 08:54 . 2006-09-04 03:54 5,123 -ra------ C:\WINDOWS\Cmudau.ini
2008-03-13 08:54 . 2006-09-04 03:54 5,123 -ra------ C:\WINDOWS\Cmudau(1).ini
2008-03-13 07:55 . 2008-03-13 08:01 201 --a------ C:\WINDOWS\MyDrivers.ini
2008-03-12 14:45 . 2003-01-01 00:05 502,878,208 --a------ C:\WINDOWS\MEMORY.DMP
2008-03-12 04:16 . 2008-03-12 04:16 1,291,413 --ahs---- C:\WINDOWS\system32\ufmcbpdt.tmp
2008-03-11 20:03 . 2008-03-31 09:51 2,560 --a------ C:\WINDOWS\system32\drivers\mchInjDrv.sys
2008-03-10 14:46 . 2008-03-11 18:24 1,318,883 --ahs---- C:\WINDOWS\system32\dmvglkxn.ini
2008-03-10 14:18 . 2008-03-11 23:28 <DIR> d-------- C:\Program Files\Pop up Blocker
2008-03-10 14:03 . 2003-01-01 00:12 <DIR> d-------- C:\Program Files\EmailMarketingDirector
2008-03-10 00:34 . 2008-03-10 00:34 <DIR> d-------- C:\Program Files\Common Files\Scanner
2008-03-09 23:38 . 2008-03-09 23:38 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2008-03-09 23:06 . 2008-03-10 13:55 1,308,281 --ahs---- C:\WINDOWS\system32\hugwyrya.ini
2008-03-09 04:22 . 2005-09-23 06:29 626,688 --a------ C:\WINDOWS\system32\msvcr80.dll
2008-03-08 19:32 . 2008-03-23 18:05 <DIR> d-------- C:\Program Files\MySpace Views Increaser
2008-03-07 18:17 . 2008-03-09 22:45 1,307,810 --ahs---- C:\WINDOWS\system32\henfabgd.ini
2008-03-06 17:37 . 2008-03-06 17:37 <DIR> d-------- C:\Program Files\SongBoost, LLC
2008-03-06 07:11 . 2008-03-06 07:11 4,388 --a------ C:\WINDOWS\smproflt.dll
2008-03-06 07:11 . 2008-03-06 07:11 138 --a------ C:\WINDOWS\smproflt.inf
2008-03-04 15:02 . 2008-03-04 15:02 <DIR> d-------- C:\Documents and Settings\Don Corleone\Application Data\mioObjects
2008-03-04 15:02 . 2008-03-04 15:02 407,047 --a------ C:\WINDOWS\system32\mioengine.exe
2008-03-04 14:59 . 2008-03-04 14:59 96 --a------ C:\WINDOWS\EBrander.INI
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-04 05:53 --------- d-----w C:\Program Files\VSTplugins
2008-04-02 12:45 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2008-04-01 07:03 --------- d-----w C:\Program Files\Viewpoint
2008-03-29 20:16 --------- d-----w C:\Program Files\Kaspersky Lab
2008-03-27 19:24 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-03-24 20:35 --------- d-----w C:\Program Files\Hide IP Platinum
2008-03-24 19:30 --------- d-----w C:\Documents and Settings\Don Corleone\Application Data\Azureus
2008-03-24 10:11 --------- d-----w C:\Program Files\FriendBlasterPro
2008-03-20 06:28 --------- d-----w C:\Program Files\Screwlab
2008-03-20 06:23 73,216 ----a-w C:\WINDOWS\ST6UNST.EXE
2008-03-20 06:23 286,720 ------w C:\WINDOWS\Setup1.exe
2008-03-19 22:02 --------- d-----w C:\Program Files\Common Files\AOL
2008-03-15 20:22 --------- d-----w C:\Program Files\Image-Line
2008-03-15 20:20 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-03-15 20:20 --------- d-----w C:\Program Files\Ulead Systems
2008-03-12 03:47 --------- d-----w C:\Program Files\FrostWire
2008-03-12 01:30 --------- d-----w C:\Program Files\TuneUp Utilities 2006
2008-03-12 01:30 --------- d-----w C:\Documents and Settings\Don Corleone\Application Data\FrostWire
2008-03-10 08:47 --------- d-----w C:\Documents and Settings\Don Corleone\Application Data\AOL
2008-03-10 08:33 --------- d-----w C:\Documents and Settings\All Users\Application Data\AOL
2008-03-10 06:25 --------- d-----w C:\Program Files\Common Files\Kaspersky Lab
2008-03-10 05:46 --------- d-----w C:\Program Files\Open Adder
2008-03-09 22:09 --------- d-----w C:\Program Files\QuickTime
2008-03-09 22:05 --------- d-----w C:\Program Files\America Online 9.0a
2008-03-09 21:57 --------- d-----w C:\Program Files\AOL Toolbar
2008-03-07 05:55 --------- d-----w C:\Program Files\MySpacer
2008-03-04 23:34 --------- d-----w C:\Documents and Settings\Don Corleone\Application Data\AdobeUM
2008-03-01 17:38 --------- d-----w C:\Documents and Settings\Don Corleone\Application Data\LimeWire
2008-02-20 12:32 --------- d-----w C:\Program Files\Mp3
2008-02-18 15:14 --------- d-----w C:\Program Files\Yahoo!
2008-02-08 07:55 --------- d-----w C:\Documents and Settings\Don Corleone\Application Data\Propellerhead Software
2008-02-08 07:17 --------- d-----w C:\Program Files\Propellerhead
2007-12-14 19:29 17,781 ----a-w C:\Program Files\Patch.exe
2006-03-14 20:31 21,376 ----a-w C:\WINDOWS\inf\hopperp.sys
2003-05-09 22:03 88 --sha-w C:\WINDOWS\system32\D0140C9151.sys
2003-05-09 22:03 2,516 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2}]
2007-12-24 01:06 66912 --a------ C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{b56a6985-3266-4cff-a114-0c65f27ee409}]
C:\WINDOWS\system32\lhqfpawq.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}"= "C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL" [2007-12-24 01:06 267592]
[HKEY_CLASSES_ROOT\clsid\{f0d4b239-da4b-4daf-81e4-dfee4931a4aa}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{A8FB8EB3-183B-4598-924D-86F0E5E37085}"= C:\Program Files\PeoplePC\Toolbar\PPCToolbar.dll [2006-01-24 15:07 220672]
"{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}"= C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL [2007-12-24 01:06 267592]
[HKEY_CLASSES_ROOT\clsid\{a8fb8eb3-183b-4598-924d-86f0e5e37085}]
[HKEY_CLASSES_ROOT\PeoplePal Toolbar]
[HKEY_CLASSES_ROOT\TypeLib\{994D628D-4D22-4DB9-B6DB-F7D9F1635817}]
[HKEY_CLASSES_ROOT\PeoplePal Toolbar]
[HKEY_CLASSES_ROOT\clsid\{f0d4b239-da4b-4daf-81e4-dfee4931a4aa}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"System Mechanic Popup Blocker"="C:\Program Files\iolo\System Mechanic Professional 6\PopupBlocker.exe" [2006-12-20 17:47 752640]
"Aim6"="" []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AOLDialer"="C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" [2004-10-20 06:40 34904]
"Pure Networks Port Magic"="C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" [2004-05-07 16:54 99480]
"SystemGuardAlerter"="SystemGuardAlerter.exe" []
"CmUsbSound"="cmcnfgu.cpl" []
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2006-11-03 19:20 866584]
"9c2a6a35"="C:\WINDOWS\system32\baosudiu.dll" [ ]
"SDTray"="C:\Program Files\Spyware Doctor\SDTrayApp.exe" [2008-03-31 13:35 810576]
"BM9f1959a9"="C:\WINDOWS\system32\guloksuy.dll" [ ]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2008-04-03 21:25 579072]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"MySpaceIM"="C:\Program Files\MySpace\IM\MySpaceIM.exe" [2007-12-18 17:47 8720384]
"AVG7_Run"="C:\PROGRA~1\Grisoft\AVG7\avgw.exe" [2008-04-03 21:25 219136]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\mljjiji]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
C:\PROGRA~1\OBJECT~1\WINDOW~1\fastload.dll 2001-12-20 21:34 24576 C:\PROGRA~1\OBJECT~1\WINDOW~1\fastload.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"wuauserv"=2 (0x2)
"sdCoreService"=2 (0x2)
"sdAuxService"=2 (0x2)
"IOLO_SRV"=2 (0x2)
"AOL ACS"=2 (0x2)
"Adobe LM Service"=3 (0x3)
"WinDefend"=2 (0x2)
"TUWinStylerThemeSvc"=3 (0x3)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" /background
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"AntiVirusOverride"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Documents and Settings\\All Users\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Internet Security 7.0.1.321\\English\\setup.exe"=
"C:\\Program Files\\America Online 9.0a\\waol.exe"=
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"=
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLacsd.exe"=
"C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"C:\\Program Files\\Common Files\\AOL\\1205137941\\ee\\aolsoftware.exe"=
"C:\\Program Files\\MySpace\\IM\\MySpaceIM.exe"=
"C:\\Program Files\\Grisoft\\AVG7\\avginet.exe"=
"C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe"=
"C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe"=
"C:\\Program Files\\Grisoft\\AVG7\\avgemc.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
R1 mchInjDrv;madCodeHook DLL injection driver;C:\WINDOWS\system32\Drivers\mchInjDrv.sys [2008-03-31 09:51]
R2 Viewpoint Manager Service;Viewpoint Manager Service;"C:\Program Files\Viewpoint\Common\ViewpointService.exe" [2007-01-04 13:38]
S3 cmudau32;C-Media USB UDA Sound Interface;C:\WINDOWS\system32\drivers\cmudaxu.sys [2006-09-04 03:54]
S3 gwiopm;gwiopm;C:\Program Files\My Drivers\gwiopm.sys []
S3 SNDO763;ViviCam 3350B;C:\WINDOWS\system32\DRIVERS\sndo763.sys [2004-05-12 10:45]
S3 WmaCDriverV32;WmaCDriverV32;C:\WINDOWS\system32\drivers\WmaCDriverV32.sys [2006-09-22 15:36]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f940cb4f-4e7a-11d7-a3cd-806d6172696f}]
\Shell\AutoRun\command - D:\setup.exe
.
Contents of the 'Scheduled Tasks' folder
"2008-03-29 01:20:46 C:\WINDOWS\Tasks\1-Click Maintenance.job"
- C:\Program Files\TuneUp Utilities 2006\SystemOptimizer.exe
"2008-04-02 09:36:03 C:\WINDOWS\Tasks\MP Scheduled Scan.job"
- C:\Program Files\Windows Defender\MpCmdRun.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-04-03 22:09:43
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Common Files\AOL\1205137941\ee\aolsoftware.exe
c:\program files\common files\aol\1205137941\ee\services\antiSpywareApp\ver2_0_32_1\AOLSP Scheduler.exe
c:\program files\common files\aol\1205137941\ee\aolsoftware.exe
C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe
C:\Program Files\Mozilla Firefox\firefox.exe
.
**************************************************************************
.
Completion time: 2008-04-03 22:20:36 - machine was rebooted
ComboFix-quarantined-files.txt 2008-04-04 06:20:28
Pre-Run: 2,386,329,600 bytes free
Post-Run: 5,894,778,880 bytes free
.
2008-04-04 06:11:43 --- E O F ---