Thanks a lot
ComboFix 08-05-29.1 - Tienny 2008-05-29 16:32:47.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.2523 [GMT -4:00]
Running from: C:\Documents and Settings\Tienny\Desktop\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\Tienny\Application Data\WeatherDPA
C:\Documents and Settings\Tienny\Application Data\WeatherDPA\Weather\WeatherStartup.xml
C:\Documents and Settings\Tienny\Application Data\Zango
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\1.sdf
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\3893245.sdf
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\domains.txt
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\24098
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\271868
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\27503
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\34123
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\427075
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\52335
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\541147
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\639731
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\738022
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\753300
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\80657
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\83463
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\dynamic\ustat\36cb.dat
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\avatar.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\btntrans.idx
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\btntrans1.dat
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\buttondir.txt
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\components.cdf
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\cursors.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_1000.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_2000.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_3000.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_bar.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_bbar1.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_logos.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_other.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\d_icons_weather.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\default.cdf
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_511745-514279.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_bidzC_ZT_IE-ca.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_bidzC_ZT_IE-us.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_categorize.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_comparison.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_explorer-Mails.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_explorer-people.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_favorites.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_Games.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_Hide.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_hotbarcom.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_Hotmail.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_hsskin.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_jemster.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_jemsterie.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_jemsteruk.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_jobsearch.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_Mails.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_MobileSidewalk.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_new.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_premium.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_reun.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_ringtones.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_SearchBoxTrapper.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_searchfor.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_searchgo.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_weather.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Default_yellowpages.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\editblbuttons.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\email-def-511724-548964.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\email-def-511724-9595.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\email-t1-bg.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\icons2.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\ie_games_icon.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\ie_video.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\keywords.idx
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\keywords1.dat
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\layout.cdf
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\linkpathlegal.txt
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\progress.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\s_icons_buttons.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\sales_buttons.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\sdfmodifier.xml
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\t2_bg.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\theweb.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\top7.cdf
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\Top7_theweb.mnu
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\tsd_bg.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\zango_btn.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\2\zango_ie_menu.res
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\avatar.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\BtnTrans.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\BtnTrans1.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\buttondir.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\cursors.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_1000.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_2000.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_3000.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_bar.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_bbar1.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_logos.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_other.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_weather.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\default.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\editblbuttons.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\email-t1-bg.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\icons2.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\ie_games_icon.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\ie_video.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\keywords.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\keywords1.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\layout.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\linkpathlegal.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\progress.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\s_icons_buttons.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\sales_buttons.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\sdfmodifier.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\t2_bg.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\top7.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\tsd_bg.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\zango_btn.xip
C:\Documents and Settings\Tienny\Application Data\Zango\v3.0\Zango\static\DownLoad\zango_ie_menu.xip
C:\Documents and Settings\Tienny\cftmon.exe
C:\Documents and Settings\Tienny\Local Settings\Temporary Internet Files\ijjistarter2FxB.exe
C:\Documents and Settings\Tienny\Local Settings\Temporary Internet Files\sph264.dll
C:\Documents and Settings\Tienny\Local Settings\Temporary Internet Files\spmpeg4.dll
C:\Documents and Settings\Tienny\Local Settings\Temporary Internet Files\sptheo.dll
C:\Documents and Settings\Tienny\Local Settings\Temporary Internet Files\StreamPlug.dll
C:\WINDOWS\svchost.exe
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\oswdpofm.dll
C:\WINDOWS\system32\SYxEOWFe.ini
C:\WINDOWS\system32\SYxEOWFe.ini2
C:\WINDOWS\system32\uplrwukb.dll
C:\xcrashdump.dat
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_POWERMANAGER
((((((((((((((((((((((((( Files Created from 2008-04-28 to 2008-05-29 )))))))))))))))))))))))))))))))
.
2008-05-28 16:35 . 2008-05-28 16:35 <DIR> d-------- C:\VundoFix Backups
2008-05-28 16:31 . 2008-05-28 16:31 <DIR> d-------- C:\Program Files\Trend Micro
2008-05-28 16:29 . 2008-05-28 16:29 <DIR> d-------- C:\Documents and Settings\Tienny\Application Data\Malwarebytes
2008-05-28 16:28 . 2008-05-28 16:29 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-05-28 16:28 . 2008-05-28 16:28 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-05-28 16:28 . 2008-05-05 20:46 27,048 --a------ C:\WINDOWS\system32\drivers\mbamcatchme.sys
2008-05-28 16:28 . 2008-05-05 20:46 15,864 --a------ C:\WINDOWS\system32\drivers\mbam.sys
2008-05-28 16:27 . 2008-05-28 16:27 <DIR> d-------- C:\Program Files\Common Files\Download Manager
2008-05-28 16:19 . 2008-05-28 16:19 5,120 --a------ C:\WINDOWS\system32\config\systemprofile\ftp34.dll
2008-05-28 08:39 . 2008-05-28 16:19 5,120 --a------ C:\WINDOWS\system32\ftp34.dll
2008-05-27 16:29 . 2008-05-27 16:29 <DIR> d-------- C:\fsaua.data
2008-05-27 16:28 . 2008-05-28 18:22 59,904 --a------ C:\WINDOWS\system32\iifcCtRL.dll.vir
2008-05-27 16:00 . 2008-05-27 16:01 480,768 --a------ C:\8.tmp
2008-05-27 15:00 . 2008-05-28 16:18 5,120 --a------ C:\Documents and Settings\LocalService\ftp34.dll
2008-05-26 18:28 . 2008-05-28 13:14 5,120 --a------ C:\Documents and Settings\Tienny\ftp34.dll
2008-05-25 18:29 . 2008-05-25 18:29 <DIR> d-------- C:\Documents and Settings\Tienny\Application Data\Thinstall
2008-05-25 17:43 . 2008-05-25 17:43 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\FLEXnet
2008-05-22 22:56 . 2008-05-22 22:57 <DIR> d-------- C:\Program Files\WM Converter
2008-05-21 15:08 . 2004-08-04 01:58 14,848 --a------ C:\WINDOWS\system32\drivers\kbdhid.sys
2008-05-21 15:08 . 2004-08-04 01:58 14,848 --a--c--- C:\WINDOWS\system32\dllcache\kbdhid.sys
2008-05-20 22:34 . 2001-08-17 13:48 12,160 --a------ C:\WINDOWS\system32\drivers\mouhid.sys
2008-05-20 22:34 . 2001-08-17 13:48 12,160 --a--c--- C:\WINDOWS\system32\dllcache\mouhid.sys
2008-05-15 20:58 . 2008-05-15 20:58 <DIR> d-------- C:\Program Files\Bonjour
2008-05-15 20:48 . 2008-05-15 20:48 <DIR> d-------- C:\Program Files\Common Files\Macrovision Shared
2008-05-10 04:09 . 2008-05-10 04:09 <DIR> d-------- C:\Iron_Man_USA_XBOX360-VORTEX
2008-05-05 19:53 . 2008-05-28 08:47 <DIR> d-------- C:\Program Files\SlySoft
2008-05-05 19:53 . 2008-05-05 19:58 24 ---hs---- C:\WINDOWS\SE28D96A8.tmp
2008-05-04 14:07 . 2008-05-04 14:07 19,464 --a------ C:\Documents and Settings\Tienny\Application Data\GDIPFONTCACHEV1.DAT
2008-04-29 14:15 . 2008-04-29 14:22 106,525,784 --a------ C:\[7] Xrated Beats [Electro] [MIXTAPE] FEB 08.mp3
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-05-28 19:08 --------- d-----w C:\Program Files\Windows Live Safety Center
2008-05-28 18:24 --------- d-----w C:\Program Files\Steam
2008-05-26 22:36 --------- d-----w C:\Program Files\Real
2008-05-26 22:35 --------- d-----w C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-05-25 21:32 --------- d-----w C:\Documents and Settings\Tienny\Application Data\mIRC
2008-05-25 18:08 --------- d-----w C:\Program Files\mIRC
2008-05-18 04:31 --------- d-----w C:\Documents and Settings\Tienny\Application Data\LimeWire
2008-05-16 00:58 --------- d-----w C:\Program Files\Common Files\Adobe
2008-04-28 21:05 --------- d-----w C:\Documents and Settings\Tienny\Application Data\dvdcss
2008-04-22 20:14 --------- d-----w C:\Program Files\ASIO4ALL v2
2008-04-09 10:48 1,343,592 ----a-w C:\WINDOWS\msvnc32.exe
2008-04-06 04:59 --------- d-----w C:\Documents and Settings\Tienny\Application Data\ATI
2008-03-31 21:16 --------- d-----w C:\Documents and Settings\Tienny\Application Data\Media Player Classic
2008-03-29 16:28 1,343,592 ----a-w C:\WINDOWS\msvnc64.exe
2008-03-02 20:50 1,363,184 ----a-w C:\WINDOWS\pic0382.zip
2007-11-23 22:30 22,328 ----a-w C:\Documents and Settings\Tienny\Application Data\PnkBstrK.sys
2004-08-04 07:56 4,096 --sha-w C:\WINDOWS\system32\1112.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 11:34 5724184]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2004-12-14 04:44:06 29696]
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE [2001-02-13 02:01:04 83360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.ffds"= C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\mIRC\\mirc.exe"=
"C:\\ijji\\ENGLISH\\u_skid.exe"=
"C:\\Program Files\\DriftCity\\DriftCity.exe"=
"C:\\Program Files\\Steam\\steamapps\\
[email protected]\\counter-strike\\hl.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\Steam\\steamapps\\
[email protected]\\counter-strike\\hl.exe"=
"C:\\Program Files\\Steam\\steamapps\\
[email protected]\\counter-strike\\hl.exe"=
"C:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"C:\\Program Files\\BitTornado\\btdownloadgui.exe"=
"C:\\WINDOWS\\PCHealth\\HelpCtr\\Binaries\\helpctr.exe"=
"C:\\Program Files\\Steam\\Steam.exe"=
"C:\\ijji\\ENGLISH\\u_gbound.exe"=
"C:\\Program Files\\HLSW\\hlsw.exe"=
"C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"C:\\Games\\Crysis\\Bin32\\Crysis.exe"=
"C:\\Games\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Documents and Settings\\All Users\\Application Data\\NexonUS\\NGM\\NGM.exe"=
"C:\\Nexon\\KartRider\\NMService.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\Steam\\steamapps\\
[email protected]\\counter-strike source\\hl2.exe"=
"C:\\Program Files\\Steam\\steamapps\\frontline46804\\counter-strike\\hl.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
S3 NPF;NetGroup Packet Filter Driver;C:\WINDOWS\system32\drivers\npf.sys [2005-08-02 17:10]
S3 XDva037;XDva037;C:\WINDOWS\system32\XDva037.sys []
S4 Viewpoint Manager Service;Viewpoint Manager Service;"C:\Program Files\Viewpoint\Common\ViewpointService.exe" [2007-01-04 17:38]
.
Contents of the 'Scheduled Tasks' folder
"2008-05-22 02:44:00 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-05-29 16:38:01
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\WINDOWS\system32\ati2evxx.exe
C:\WINDOWS\system32\ati2evxx.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\wscntfy.exe
.
**************************************************************************
.
Completion time: 2008-05-29 16:44:19 - machine was rebooted
ComboFix-quarantined-files.txt 2008-05-29 20:43:59
Pre-Run: 32,387,702,784 bytes free
Post-Run: 33,503,825,920 bytes free
268 --- E O F --- 2008-05-15 21:47:43