Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2022.1552 [GMT -4:00]
Running from: c:\documents and settings\Owner.TERRACOTTAS\My Documents\Personal\ComboFixa.exe
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\gamevance\gamevancelib32.dll
c:\program files\Gamevance\gvTL.dll
c:\recycler\S-1-5-21-3794940719-891563620-3004483270-500
c:\windows\Downloaded Program Files\popcaploader.dll
c:\windows\Downloaded Program Files\popcaploader.inf
c:\windows\Installer\109231.msp
c:\windows\Installer\109232.msp
c:\windows\Installer\109233.msp
c:\windows\Installer\109234.msp
c:\windows\Installer\109235.msp
c:\windows\Installer\109236.msp
c:\windows\Installer\109237.msp
c:\windows\Installer\109238.msp
c:\windows\Installer\109239.msp
c:\windows\Installer\109d1b79.msp
c:\windows\Installer\109d1b7a.msp
c:\windows\Installer\109d1b7b.msp
c:\windows\Installer\109d1b7c.msp
c:\windows\Installer\109d1b7d.msp
c:\windows\Installer\109d1b7e.msp
c:\windows\Installer\109d1b7f.msp
c:\windows\Installer\109d1b80.msp
c:\windows\Installer\109d1b81.msp
c:\windows\Installer\10acbd0f.msp
c:\windows\Installer\10acbd10.msp
c:\windows\Installer\10acbd11.msp
c:\windows\Installer\10acbd12.msp
c:\windows\Installer\10acbd13.msp
c:\windows\Installer\10acbd14.msp
c:\windows\Installer\10acbd15.msp
c:\windows\Installer\10acbd16.msp
c:\windows\Installer\10acbd17.msp
c:\windows\Installer\10eb1e.msp
c:\windows\Installer\10eb1f.msp
c:\windows\Installer\10eb20.msp
c:\windows\Installer\10eb21.msp
c:\windows\Installer\10eb22.msp
c:\windows\Installer\10eb23.msp
c:\windows\Installer\10eb24.msp
c:\windows\Installer\10eb25.msp
c:\windows\Installer\10eb26.msp
c:\windows\Installer\114b028.msp
c:\windows\Installer\114b029.msp
c:\windows\Installer\114b02a.msp
c:\windows\Installer\114b02b.msp
c:\windows\Installer\114b02c.msp
c:\windows\Installer\114b02d.msp
c:\windows\Installer\114b02e.msp
c:\windows\Installer\114b02f.msp
c:\windows\Installer\114b030.msp
c:\windows\Installer\128b05d1.msp
c:\windows\Installer\128b05e8.msp
c:\windows\Installer\136acf6.msp
c:\windows\Installer\136acf7.msp
c:\windows\Installer\136acf8.msp
c:\windows\Installer\136acf9.msp
c:\windows\Installer\136acfa.msp
c:\windows\Installer\136acfb.msp
c:\windows\Installer\136acfc.msp
c:\windows\Installer\136acfd.msp
c:\windows\Installer\136acfe.msp
c:\windows\Installer\142087.msp
c:\windows\Installer\142088.msp
c:\windows\Installer\142089.msp
c:\windows\Installer\14208a.msp
c:\windows\Installer\14208b.msp
c:\windows\Installer\14208c.msp
c:\windows\Installer\14208d.msp
c:\windows\Installer\14208e.msp
c:\windows\Installer\14208f.msp
c:\windows\Installer\142feb5.msp
c:\windows\Installer\142feb6.msp
c:\windows\Installer\142feb7.msp
c:\windows\Installer\142feb8.msp
c:\windows\Installer\142feb9.msp
c:\windows\Installer\142feba.msp
c:\windows\Installer\142febb.msp
c:\windows\Installer\142febc.msp
c:\windows\Installer\142febd.msp
c:\windows\Installer\14907e35.msp
c:\windows\Installer\14907e36.msp
c:\windows\Installer\14907e37.msp
c:\windows\Installer\14907e38.msp
c:\windows\Installer\14907e39.msp
c:\windows\Installer\14907e3a.msp
c:\windows\Installer\14907e3b.msp
c:\windows\Installer\14907e3c.msp
c:\windows\Installer\14907e3d.msp
c:\windows\Installer\1505e6a.msp
c:\windows\Installer\1505e6b.msp
c:\windows\Installer\1505e6c.msp
c:\windows\Installer\1505e6d.msp
c:\windows\Installer\1505e6e.msp
c:\windows\Installer\1505e6f.msp
c:\windows\Installer\1505e70.msp
c:\windows\Installer\1505e71.msp
c:\windows\Installer\1505e72.msp
c:\windows\Installer\15d8a951.msp
c:\windows\Installer\15d8a952.msp
c:\windows\Installer\15d8a953.msp
c:\windows\Installer\15d8a954.msp
c:\windows\Installer\15d8a955.msp
c:\windows\Installer\15d8a956.msp
c:\windows\Installer\15d8a957.msp
c:\windows\Installer\15d8a958.msp
c:\windows\Installer\15d8a959.msp
c:\windows\Installer\160fbd5.msp
c:\windows\Installer\160fbd6.msp
c:\windows\Installer\160fbd7.msp
c:\windows\Installer\160fbd8.msp
c:\windows\Installer\160fbd9.msp
c:\windows\Installer\160fbda.msp
c:\windows\Installer\160fbdb.msp
c:\windows\Installer\160fbdc.msp
c:\windows\Installer\160fbdd.msp
c:\windows\Installer\1657567.msp
c:\windows\Installer\1657568.msp
c:\windows\Installer\1657569.msp
c:\windows\Installer\165756a.msp
c:\windows\Installer\165756b.msp
c:\windows\Installer\165756c.msp
c:\windows\Installer\165756d.msp
c:\windows\Installer\165756e.msp
c:\windows\Installer\165756f.msp
c:\windows\Installer\1684ddb.msp
c:\windows\Installer\1684ddc.msp
c:\windows\Installer\1684ddd.msp
c:\windows\Installer\1684dde.msp
c:\windows\Installer\1684ddf.msp
c:\windows\Installer\1684de0.msp
c:\windows\Installer\1684de1.msp
c:\windows\Installer\1684de2.msp
c:\windows\Installer\1684de3.msp
c:\windows\Installer\17b1068.msp
c:\windows\Installer\17b1069.msp
c:\windows\Installer\17b106a.msp
c:\windows\Installer\17b106b.msp
c:\windows\Installer\17b106c.msp
c:\windows\Installer\17b106d.msp
c:\windows\Installer\17b106e.msp
c:\windows\Installer\17b106f.msp
c:\windows\Installer\17b1070.msp
c:\windows\Installer\17e09a3.msp
c:\windows\Installer\17e09a4.msp
c:\windows\Installer\17e09a5.msp
c:\windows\Installer\17e09a6.msp
c:\windows\Installer\17e09a7.msp
c:\windows\Installer\17e09a8.msp
c:\windows\Installer\17e09a9.msp
c:\windows\Installer\17e09aa.msp
c:\windows\Installer\17e09ab.msp
c:\windows\Installer\18210e3.msp
c:\windows\Installer\18210e4.msp
c:\windows\Installer\18210e5.msp
c:\windows\Installer\18210e6.msp
c:\windows\Installer\18210e7.msp
c:\windows\Installer\18210e8.msp
c:\windows\Installer\18210e9.msp
c:\windows\Installer\18210ea.msp
c:\windows\Installer\18210eb.msp
c:\windows\Installer\190e35.msp
c:\windows\Installer\190e7d.msp
c:\windows\Installer\190e8f.msp
c:\windows\Installer\190ea1.msp
c:\windows\Installer\190ea8.msp
c:\windows\Installer\19816e3.msp
c:\windows\Installer\19816e4.msp
c:\windows\Installer\19816e5.msp
c:\windows\Installer\19816e6.msp
c:\windows\Installer\19816e7.msp
c:\windows\Installer\19816e8.msp
c:\windows\Installer\19816e9.msp
c:\windows\Installer\19816ea.msp
c:\windows\Installer\19816eb.msp
c:\windows\Installer\1985ff3.msp
c:\windows\Installer\1985ff4.msp
c:\windows\Installer\1985ff5.msp
c:\windows\Installer\1985ff6.msp
c:\windows\Installer\1985ff7.msp
c:\windows\Installer\1985ff8.msp
c:\windows\Installer\1985ff9.msp
c:\windows\Installer\1985ffa.msp
c:\windows\Installer\1985ffb.msp
c:\windows\Installer\1a98ae8.msp
c:\windows\Installer\1a98ae9.msp
c:\windows\Installer\1a98aea.msp
c:\windows\Installer\1a98aeb.msp
c:\windows\Installer\1a98aec.msp
c:\windows\Installer\1a98aed.msp
c:\windows\Installer\1a98aee.msp
c:\windows\Installer\1a98aef.msp
c:\windows\Installer\1a98af0.msp
c:\windows\Installer\1b69f1.msi
c:\windows\Installer\243a504e.msp
c:\windows\Installer\243a504f.msp
c:\windows\Installer\243a5050.msp
c:\windows\Installer\243a5051.msp
c:\windows\Installer\243a5052.msp
c:\windows\Installer\243a5053.msp
c:\windows\Installer\243a5054.msp
c:\windows\Installer\243a5055.msp
c:\windows\Installer\243a5056.msp
c:\windows\Installer\27444f.msp
c:\windows\Installer\274450.msp
c:\windows\Installer\274451.msp
c:\windows\Installer\274452.msp
c:\windows\Installer\274453.msp
c:\windows\Installer\274454.msp
c:\windows\Installer\274455.msp
c:\windows\Installer\274456.msp
c:\windows\Installer\274457.msp
c:\windows\Installer\28adf1.msp
c:\windows\Installer\28adf2.msp
c:\windows\Installer\28adf3.msp
c:\windows\Installer\28adf4.msp
c:\windows\Installer\28adf5.msp
c:\windows\Installer\28adf6.msp
c:\windows\Installer\28adf7.msp
c:\windows\Installer\28adf8.msp
c:\windows\Installer\28adf9.msp
c:\windows\Installer\29e0c.msp
c:\windows\Installer\29e0d.msp
c:\windows\Installer\29e0e.msp
c:\windows\Installer\29e0f.msp
c:\windows\Installer\29e10.msp
c:\windows\Installer\29e11.msp
c:\windows\Installer\29e12.msp
c:\windows\Installer\29e13.msp
c:\windows\Installer\29e14.msp
c:\windows\Installer\2a956.msp
c:\windows\Installer\2a957.msp
c:\windows\Installer\2a958.msp
c:\windows\Installer\2a959.msp
c:\windows\Installer\2a95a.msp
c:\windows\Installer\2a95b.msp
c:\windows\Installer\2a95c.msp
c:\windows\Installer\2a95d.msp
c:\windows\Installer\2a95e.msp
c:\windows\Installer\2bf443.msp
c:\windows\Installer\2bf444.msp
c:\windows\Installer\2bf445.msp
c:\windows\Installer\2bf446.msp
c:\windows\Installer\2bf447.msp
c:\windows\Installer\2bf448.msp
c:\windows\Installer\2bf449.msp
c:\windows\Installer\2bf44a.msp
c:\windows\Installer\2bf44b.msp
c:\windows\Installer\2c4acee0.msp
c:\windows\Installer\2df4b.msp
c:\windows\Installer\2df4c.msp
c:\windows\Installer\2df4d.msp
c:\windows\Installer\2df4e.msp
c:\windows\Installer\2df4f.msp
c:\windows\Installer\2df50.msp
c:\windows\Installer\2df51.msp
c:\windows\Installer\2df52.msp
c:\windows\Installer\2df53.msp
c:\windows\Installer\2fc4c3.msp
c:\windows\Installer\2fc4c4.msp
c:\windows\Installer\2fc4c5.msp
c:\windows\Installer\2fc4c6.msp
c:\windows\Installer\2fc4c7.msp
c:\windows\Installer\2fc4c8.msp
c:\windows\Installer\2fc4c9.msp
c:\windows\Installer\2fc4ca.msp
c:\windows\Installer\2fc4cb.msp
c:\windows\Installer\35419c2.msp
c:\windows\Installer\35419c3.msp
c:\windows\Installer\35419c4.msp
c:\windows\Installer\35419c5.msp
c:\windows\Installer\35419c6.msp
c:\windows\Installer\35419c7.msp
c:\windows\Installer\35419c8.msp
c:\windows\Installer\35419c9.msp
c:\windows\Installer\35419ca.msp
c:\windows\Installer\35d1c5b.msp
c:\windows\Installer\35f6b77.msp
c:\windows\Installer\35f6b78.msp
c:\windows\Installer\35f6b79.msp
c:\windows\Installer\35f6b7a.msp
c:\windows\Installer\35f6b7b.msp
c:\windows\Installer\35f6b7c.msp
c:\windows\Installer\35f6b7d.msp
c:\windows\Installer\35f6b7e.msp
c:\windows\Installer\35f6b7f.msp
c:\windows\Installer\3ba74d3.msp
c:\windows\Installer\3ba74d4.msp
c:\windows\Installer\3ba74d5.msp
c:\windows\Installer\3ba74d6.msp
c:\windows\Installer\3ba74d7.msp
c:\windows\Installer\3ba74d8.msp
c:\windows\Installer\3ba74d9.msp
c:\windows\Installer\3ba74da.msp
c:\windows\Installer\3ba74db.msp
c:\windows\Installer\3c8c1e89.msp
c:\windows\Installer\3c8c1ea1.msp
c:\windows\Installer\3c8c1eb8.msp
c:\windows\Installer\3c8c1ecf.msp
c:\windows\Installer\3c8c1ee6.msp
c:\windows\Installer\3c8c1efd.msp
c:\windows\Installer\3d330.msp
c:\windows\Installer\3d331.msp
c:\windows\Installer\3d332.msp
c:\windows\Installer\3d333.msp
c:\windows\Installer\3d334.msp
c:\windows\Installer\3d335.msp
c:\windows\Installer\3d336.msp
c:\windows\Installer\3d337.msp
c:\windows\Installer\3d338.msp
c:\windows\Installer\43a870.msp
c:\windows\Installer\43a871.msp
c:\windows\Installer\43a872.msp
c:\windows\Installer\43a873.msp
c:\windows\Installer\43a874.msp
c:\windows\Installer\43a875.msp
c:\windows\Installer\43a876.msp
c:\windows\Installer\43a877.msp
c:\windows\Installer\43a878.msp
c:\windows\Installer\43cbe18.msp
c:\windows\Installer\43cbe19.msp
c:\windows\Installer\43cbe1a.msp
c:\windows\Installer\43cbe1b.msp
c:\windows\Installer\43cbe1c.msp
c:\windows\Installer\43cbe1d.msp
c:\windows\Installer\43cbe1e.msp
c:\windows\Installer\43cbe1f.msp
c:\windows\Installer\43cbe20.msp
c:\windows\Installer\47ddbac.msp
c:\windows\Installer\47ddbc3.msp
c:\windows\Installer\482ef1.msp
c:\windows\Installer\4c3462.msp
c:\windows\Installer\4d1df.msp
c:\windows\Installer\50b4db0.msp
c:\windows\Installer\527a5.msp
c:\windows\Installer\527a6.msp
c:\windows\Installer\527a7.msp
c:\windows\Installer\527a8.msp
c:\windows\Installer\527a9.msp
c:\windows\Installer\527aa.msp
c:\windows\Installer\527ab.msp
c:\windows\Installer\527ac.msp
c:\windows\Installer\527ad.msp
c:\windows\Installer\5285957.msp
c:\windows\Installer\5285958.msp
c:\windows\Installer\5285959.msp
c:\windows\Installer\528595a.msp
c:\windows\Installer\528595b.msp
c:\windows\Installer\528595c.msp
c:\windows\Installer\528595d.msp
c:\windows\Installer\528595e.msp
c:\windows\Installer\528595f.msp
c:\windows\Installer\52bf99.msp
c:\windows\Installer\52bf9a.msp
c:\windows\Installer\52bf9b.msp
c:\windows\Installer\52bf9c.msp
c:\windows\Installer\52bf9d.msp
c:\windows\Installer\52bf9e.msp
c:\windows\Installer\52bf9f.msp
c:\windows\Installer\52bfa0.msp
c:\windows\Installer\52bfa1.msp
c:\windows\Installer\5306f3a.msp
c:\windows\Installer\5306f3b.msp
c:\windows\Installer\5306f3c.msp
c:\windows\Installer\5306f3d.msp
c:\windows\Installer\5306f3e.msp
c:\windows\Installer\5306f3f.msp
c:\windows\Installer\5306f40.msp
c:\windows\Installer\5306f41.msp
c:\windows\Installer\5306f42.msp
c:\windows\Installer\533ccdc.msp
c:\windows\Installer\533ccdd.msp
c:\windows\Installer\533ccde.msp
c:\windows\Installer\533ccdf.msp
c:\windows\Installer\533cce0.msp
c:\windows\Installer\533cce1.msp
c:\windows\Installer\533cce2.msp
c:\windows\Installer\533cce3.msp
c:\windows\Installer\533cce4.msp
c:\windows\Installer\567820b.msp
c:\windows\Installer\567820c.msp
c:\windows\Installer\567820d.msp
c:\windows\Installer\567820e.msp
c:\windows\Installer\567820f.msp
c:\windows\Installer\5678210.msp
c:\windows\Installer\5678211.msp
c:\windows\Installer\5678212.msp
c:\windows\Installer\5678213.msp
c:\windows\Installer\5ad3ed3.msp
c:\windows\Installer\5ad3ed4.msp
c:\windows\Installer\5ad3ed5.msp
c:\windows\Installer\5ad3ed6.msp
c:\windows\Installer\5ad3ed7.msp
c:\windows\Installer\5ad3ed8.msp
c:\windows\Installer\5ad3ed9.msp
c:\windows\Installer\5ad3eda.msp
c:\windows\Installer\5ad3edb.msp
c:\windows\Installer\5bc44.msp
c:\windows\Installer\5bc45.msp
c:\windows\Installer\5bc46.msp
c:\windows\Installer\5bc47.msp
c:\windows\Installer\5bc48.msp
c:\windows\Installer\5bc49.msp
c:\windows\Installer\5bc4a.msp
c:\windows\Installer\5bc4b.msp
c:\windows\Installer\5bc4c.msp
c:\windows\Installer\5d76d3a.msp
c:\windows\Installer\5d76d3b.msp
c:\windows\Installer\5d76d3c.msp
c:\windows\Installer\5d76d3d.msp
c:\windows\Installer\5d76d3e.msp
c:\windows\Installer\5d76d3f.msp
c:\windows\Installer\5d76d40.msp
c:\windows\Installer\5d76d41.msp
c:\windows\Installer\5d76d42.msp
c:\windows\Installer\5db26.msp
c:\windows\Installer\5db27.msp
c:\windows\Installer\5db28.msp
c:\windows\Installer\5db29.msp
c:\windows\Installer\5db2a.msp
c:\windows\Installer\5db2b.msp
c:\windows\Installer\5db2c.msp
c:\windows\Installer\5db2d.msp
c:\windows\Installer\5db2e.msp
c:\windows\Installer\61e348.msp
c:\windows\Installer\62711d.msp
c:\windows\Installer\62711e.msp
c:\windows\Installer\62711f.msp
c:\windows\Installer\627120.msp
c:\windows\Installer\627121.msp
c:\windows\Installer\627122.msp
c:\windows\Installer\627123.msp
c:\windows\Installer\627124.msp
c:\windows\Installer\627125.msp
c:\windows\Installer\65a60b9.msp
c:\windows\Installer\65a60ba.msp
c:\windows\Installer\65a60bb.msp
c:\windows\Installer\65a60bc.msp
c:\windows\Installer\65a60bd.msp
c:\windows\Installer\65a60be.msp
c:\windows\Installer\65a60bf.msp
c:\windows\Installer\65a60c0.msp
c:\windows\Installer\65a60c1.msp
c:\windows\Installer\690225.msp
c:\windows\Installer\690226.msp
c:\windows\Installer\690227.msp
c:\windows\Installer\690228.msp
c:\windows\Installer\690229.msp
c:\windows\Installer\69022a.msp
c:\windows\Installer\69022b.msp
c:\windows\Installer\69022c.msp
c:\windows\Installer\69022d.msp
c:\windows\Installer\7d8ab.msp
c:\windows\Installer\7d8ac.msp
c:\windows\Installer\7d8ad.msp
c:\windows\Installer\7d8ae.msp
c:\windows\Installer\7d8af.msp
c:\windows\Installer\7d8b0.msp
c:\windows\Installer\7d8b1.msp
c:\windows\Installer\7d8b2.msp
c:\windows\Installer\7d8b3.msp
c:\windows\Installer\81925.msp
c:\windows\Installer\81936.msp
c:\windows\Installer\8193d.msp
c:\windows\Installer\83a859.msp
c:\windows\Installer\83a85a.msp
c:\windows\Installer\83a85b.msp
c:\windows\Installer\83a85c.msp
c:\windows\Installer\83a85d.msp
c:\windows\Installer\83a85e.msp
c:\windows\Installer\83a85f.msp
c:\windows\Installer\83a860.msp
c:\windows\Installer\83a861.msp
c:\windows\Installer\88e67a8.msp
c:\windows\Installer\88e67a9.msp
c:\windows\Installer\88e67aa.msp
c:\windows\Installer\88e67ab.msp
c:\windows\Installer\88e67ac.msp
c:\windows\Installer\88e67ad.msp
c:\windows\Installer\88e67ae.msp
c:\windows\Installer\88e67af.msp
c:\windows\Installer\88e67b0.msp
c:\windows\Installer\91d60.msp
c:\windows\Installer\91d61.msp
c:\windows\Installer\91d62.msp
c:\windows\Installer\91d63.msp
c:\windows\Installer\91d64.msp
c:\windows\Installer\91d65.msp
c:\windows\Installer\91d66.msp
c:\windows\Installer\91d67.msp
c:\windows\Installer\91d68.msp
c:\windows\Installer\92c6d4d.msp
c:\windows\Installer\97b5f.msp
c:\windows\Installer\97b60.msp
c:\windows\Installer\97b61.msp
c:\windows\Installer\97b62.msp
c:\windows\Installer\97b63.msp
c:\windows\Installer\97b64.msp
c:\windows\Installer\97b65.msp
c:\windows\Installer\97b66.msp
c:\windows\Installer\97b67.msp
c:\windows\Installer\a172a97.msp
c:\windows\Installer\a172a98.msp
c:\windows\Installer\a172a99.msp
c:\windows\Installer\a172a9a.msp
c:\windows\Installer\a172a9b.msp
c:\windows\Installer\a172a9c.msp
c:\windows\Installer\a172a9d.msp
c:\windows\Installer\a172a9e.msp
c:\windows\Installer\a172a9f.msp
c:\windows\Installer\a67ade0.msp
c:\windows\Installer\a67adff.msp
c:\windows\Installer\ad8fb89.msp
c:\windows\Installer\ad8fb8a.msp
c:\windows\Installer\ad8fb8b.msp
c:\windows\Installer\ad8fb8c.msp
c:\windows\Installer\ad8fb8d.msp
c:\windows\Installer\ad8fb8e.msp
c:\windows\Installer\ad8fb8f.msp
c:\windows\Installer\ad8fb90.msp
c:\windows\Installer\ad8fb91.msp
c:\windows\Installer\b0e87ba.msp
c:\windows\Installer\b0e87bb.msp
c:\windows\Installer\b0e87bc.msp
c:\windows\Installer\b0e87bd.msp
c:\windows\Installer\b0e87be.msp
c:\windows\Installer\b0e87bf.msp
c:\windows\Installer\b0e87c0.msp
c:\windows\Installer\b0e87c1.msp
c:\windows\Installer\b0e87c2.msp
c:\windows\Installer\b49485.msp
c:\windows\Installer\b49486.msp
c:\windows\Installer\b49487.msp
c:\windows\Installer\b49488.msp
c:\windows\Installer\b49489.msp
c:\windows\Installer\b4948a.msp
c:\windows\Installer\b4948b.msp
c:\windows\Installer\b4948c.msp
c:\windows\Installer\b4948d.msp
c:\windows\Installer\b99d4eb.msp
c:\windows\Installer\b99d4ec.msp
c:\windows\Installer\b99d4ed.msp
c:\windows\Installer\b99d4ee.msp
c:\windows\Installer\b99d4ef.msp
c:\windows\Installer\b99d4f0.msp
c:\windows\Installer\b99d4f1.msp
c:\windows\Installer\b99d4f2.msp
c:\windows\Installer\b99d4f3.msp
c:\windows\Installer\be9fd.msp
c:\windows\Installer\be9fe.msp
c:\windows\Installer\be9ff.msp
c:\windows\Installer\bea00.msp
c:\windows\Installer\bea01.msp
c:\windows\Installer\bea02.msp
c:\windows\Installer\bea03.msp
c:\windows\Installer\bea04.msp
c:\windows\Installer\bea05.msp
c:\windows\Installer\c0f2e6.msp
c:\windows\Installer\c0f2e7.msp
c:\windows\Installer\c0f2e8.msp
c:\windows\Installer\c0f2e9.msp
c:\windows\Installer\c0f2ea.msp
c:\windows\Installer\c0f2eb.msp
c:\windows\Installer\c0f2ec.msp
c:\windows\Installer\c0f2ed.msp
c:\windows\Installer\c0f2ee.msp
c:\windows\Installer\c40660.msp
c:\windows\Installer\c40661.msp
c:\windows\Installer\c40662.msp
c:\windows\Installer\c40663.msp
c:\windows\Installer\c40664.msp
c:\windows\Installer\c40665.msp
c:\windows\Installer\c40666.msp
c:\windows\Installer\c40667.msp
c:\windows\Installer\c40668.msp
c:\windows\Installer\ca0ea.msp
c:\windows\Installer\ca0eb.msp
c:\windows\Installer\ca0ec.msp
c:\windows\Installer\ca0ed.msp
c:\windows\Installer\ca0ee.msp
c:\windows\Installer\ca0ef.msp
c:\windows\Installer\ca0f0.msp
c:\windows\Installer\ca0f1.msp
c:\windows\Installer\ca0f2.msp
c:\windows\Installer\cdcaa.msp
c:\windows\Installer\cdcab.msp
c:\windows\Installer\cdcac.msp
c:\windows\Installer\cdcad.msp
c:\windows\Installer\cdcae.msp
c:\windows\Installer\cdcaf.msp
c:\windows\Installer\cdcb0.msp
c:\windows\Installer\cdcb1.msp
c:\windows\Installer\cdcb2.msp
c:\windows\Installer\d7337e.msp
c:\windows\Installer\d7337f.msp
c:\windows\Installer\d73380.msp
c:\windows\Installer\d73381.msp
c:\windows\Installer\d73382.msp
c:\windows\Installer\d73383.msp
c:\windows\Installer\d73384.msp
c:\windows\Installer\d73385.msp
c:\windows\Installer\d73386.msp
c:\windows\Installer\de1c21b.msp
c:\windows\Installer\de5292.msp
c:\windows\Installer\de52a9.msp
c:\windows\Installer\de52f1.msp
c:\windows\Installer\de530a.msp
c:\windows\Installer\de5321.msp
c:\windows\Installer\de5338.msp
c:\windows\Installer\de5355.msp
c:\windows\Installer\df572c.msp
c:\windows\Installer\df572d.msp
c:\windows\Installer\df572e.msp
c:\windows\Installer\df572f.msp
c:\windows\Installer\df5730.msp
c:\windows\Installer\df5731.msp
c:\windows\Installer\df5732.msp
c:\windows\Installer\df5733.msp
c:\windows\Installer\df5734.msp
c:\windows\Installer\e22e78.msp
c:\windows\Installer\e22e79.msp
c:\windows\Installer\e22e7a.msp
c:\windows\Installer\e22e7b.msp
c:\windows\Installer\e22e7c.msp
c:\windows\Installer\e22e7d.msp
c:\windows\Installer\e22e7e.msp
c:\windows\Installer\e22e7f.msp
c:\windows\Installer\e22e80.msp
c:\windows\Installer\e5bb9.msp
c:\windows\Installer\e5bba.msp
c:\windows\Installer\e5bbb.msp
c:\windows\Installer\e5bbc.msp
c:\windows\Installer\e5bbd.msp
c:\windows\Installer\e5bbe.msp
c:\windows\Installer\e5bbf.msp
c:\windows\Installer\e5bc0.msp
c:\windows\Installer\e5bc1.msp
c:\windows\Installer\e6c31cd.msp
c:\windows\Installer\efb0c8.msp
c:\windows\Installer\efb0c9.msp
c:\windows\Installer\efb0ca.msp
c:\windows\Installer\efb0cb.msp
c:\windows\Installer\efb0cc.msp
c:\windows\Installer\efb0cd.msp
c:\windows\Installer\efb0ce.msp
c:\windows\Installer\efb0cf.msp
c:\windows\Installer\efb0d0.msp
c:\windows\Installer\f4498b6.msp
c:\windows\Installer\f4498b7.msp
c:\windows\Installer\f4498b8.msp
c:\windows\Installer\f4498b9.msp
c:\windows\Installer\f4498ba.msp
c:\windows\Installer\f4498bb.msp
c:\windows\Installer\f4498bc.msp
c:\windows\Installer\f4498bd.msp
c:\windows\Installer\f4498be.msp
c:\windows\Installer\fb3d7.msp
c:\windows\Installer\fb3d8.msp
c:\windows\Installer\fb3d9.msp
c:\windows\Installer\fb3da.msp
c:\windows\Installer\fb3db.msp
c:\windows\Installer\fb3dc.msp
c:\windows\Installer\fb3dd.msp
c:\windows\Installer\fb3de.msp
c:\windows\Installer\fb3df.msp
c:\windows\kb913800.exe
c:\windows\system32\_000005_.tmp.dll
c:\windows\system32\_000006_.tmp.dll
c:\windows\system32\bszip.dll
c:\windows\system32\drivers\UACatpngnqhtk.sys
c:\windows\system32\iehelpmod.dll
c:\windows\system32\twain.dll
c:\windows\system32\UACawlxhbcpau.dll
c:\windows\system32\UACeswgonjaem.dat
c:\windows\system32\uacinit.dll
c:\windows\system32\UACwssjcxogof.dll
c:\windows\system32\UACxalbtnkjgl.dll
D:\Autorun.inf
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Service_UACd.sys
-------\Legacy_UACd.sys
((((((((((((((((((((((((( Files Created from 2009-09-07 to 2009-10-07 )))))))))))))))))))))))))))))))
.
2009-10-07 04:21 . 2009-10-07 04:23 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Temp
2009-10-07 03:08 . 2009-10-07 03:08 -------- d-----w- c:\documents and settings\Owner.TERRACOTTAS\Application Data\Uniblue
2009-10-06 22:43 . 2009-10-07 03:44 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-10-02 15:29 . 2009-10-02 15:29 -------- d-----w- c:\program files\Microsoft Office Outlook Connector
2009-10-01 16:19 . 2009-10-01 16:19 -------- d-----w- c:\program files\Common Files\TSUninstall
2009-10-01 16:18 . 2009-10-05 17:08 -------- d-----w- c:\program files\TS
2009-09-10 13:33 . 2009-06-21 21:44 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-10-07 04:27 . 2009-07-11 19:03 -------- d-----w- c:\program files\Gamevance
2009-10-07 04:13 . 2009-04-11 10:05 -------- d-----w- c:\documents and settings\All Users\Application Data\avg8
2009-10-07 01:39 . 2007-06-24 00:32 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-10-06 22:34 . 2006-09-19 18:33 -------- d-----w- c:\program files\Google
2009-10-06 22:33 . 2006-09-19 18:34 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-10-05 18:01 . 2009-02-05 15:33 -------- d-----w- c:\program files\Yahoo!
2009-10-05 18:01 . 2009-02-05 15:33 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo!
2009-10-05 17:13 . 2006-09-19 18:37 -------- d-----w- c:\program files\Java
2009-10-02 15:27 . 2008-05-26 15:05 -------- d-----w- c:\program files\Windows Live
2009-08-31 20:36 . 2009-08-11 22:21 -------- d-----w- c:\documents and settings\Owner.TERRACOTTAS\Application Data\Skype
2009-08-24 14:23 . 2006-06-19 04:25 77224 ----a-w- c:\documents and settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-08-21 14:58 . 2009-04-11 10:05 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-08-21 14:58 . 2009-04-11 10:05 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-08-21 14:58 . 2009-04-11 10:05 335240 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-08-16 15:58 . 2009-08-12 01:49 -------- d-----w- c:\documents and settings\Owner.TERRACOTTAS\Application Data\skypePM
2009-08-12 01:49 . 2009-08-12 01:49 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-08-11 22:21 . 2009-08-11 22:21 -------- d-----r- c:\program files\Skype
2009-08-11 22:21 . 2009-08-11 22:21 -------- d-----w- c:\program files\Common Files\Skype
2009-08-11 22:21 . 2009-08-11 22:20 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype
2009-08-06 23:24 . 2006-06-17 09:38 327896 ----a-w- c:\windows\system32\wucltui.dll
2009-08-06 23:24 . 2006-06-17 09:38 209632 ----a-w- c:\windows\system32\wuweb.dll
2009-08-06 23:24 . 2006-06-17 09:38 35552 ----a-w- c:\windows\system32\wups.dll
2009-08-06 23:24 . 2005-05-26 12:16 44768 ----a-w- c:\windows\system32\wups2.dll
2009-08-06 23:24 . 2006-06-17 09:38 53472 ----a-w- c:\windows\system32\wuauclt.exe
2009-08-06 23:24 . 2006-06-17 09:23 96480 ----a-w- c:\windows\system32\cdm.dll
2009-08-06 23:23 . 2006-06-17 09:38 575704 ----a-w- c:\windows\system32\wuapi.dll
2009-08-06 23:23 . 2007-03-20 02:50 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-08-06 23:23 . 2007-03-20 02:50 215920 ----a-w- c:\windows\system32\muweb.dll
2009-08-06 23:23 . 2006-06-17 09:38 1929952 ----a-w- c:\windows\system32\wuaueng.dll
2009-08-06 02:48 . 2009-03-25 17:11 54752 ----a-w- c:\windows\system32\drivers\fssfltr_tdi.sys
2009-08-05 09:01 . 2006-06-17 09:23 204800 ----a-w- c:\windows\system32\mswebdvd.dll
2009-07-26 20:44 . 2009-07-26 20:44 48448 ----a-w- c:\windows\system32\sirenacm.dll
2009-07-17 19:01 . 2006-06-17 09:23 58880 ----a-w- c:\windows\system32\atl.dll
2009-07-14 03:43 . 2006-06-17 09:24 286208 ----a-w- c:\windows\system32\wmpdxm.dll
2009-07-10 16:15 . 2009-07-10 16:15 306544 ----a-w- c:\windows\WLXPGSS.SCR
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
2008-07-17 21:20 279944 ----a-w- c:\program files\AskBarDis\bar\bin\askBar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-07-17 279944]
[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]
[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-07-17 279944]
[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]
[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Power2GoExpress"="NA" [X]
"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2009-07-26 3883856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray"="c:\windows\ehome\ehtray.exe" [2005-08-06 64512]
"readericon"="c:\program files\Digital Media Reader\readericon45G.exe" [2005-12-10 139264]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2006-06-23 98304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2006-06-23 86016]
"Persistence"="c:\windows\system32\igfxpers.exe" [2006-06-23 81920]
"IntelAudioStudio"="c:\program files\Intel Audio Studio\IntelAudioStudio.exe" [2006-07-13 9134080]
"Reminder"="c:\windows\Creator\Remind_XP.exe" [2005-02-26 966656]
"Recguard"="c:\windows\SMINST\RECGUARD.EXE" [2002-09-14 212992]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2006-07-06 151552]
"CCUTRAYICON"="c:\program files\Intel\IntelDH\CCU\CCU_TrayIcon.exe" [2006-07-27 303104]
"NMSSupport"="c:\program files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" [2006-03-30 375296]
"MSKDetectorExe"="c:\program files\McAfee\SpamKiller\MSKDetct.exe" [2005-08-12 1121792]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-09-19 98304]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472]
"PaperPort PTD"="c:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2007-01-30 30248]
"IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2007-01-30 46632]
"PPort11reminder"="c:\program files\ScanSoft\PaperPort\Ereg\Ereg.exe" [2007-02-01 255528]
"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2007-03-23 663552]
"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2007-01-26 65536]
"Intuit SyncManager"="c:\program files\Common Files\Intuit\Sync\IntuitSyncManager.exe" [2008-09-09 623880]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-10-01 2023704]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"Gamevance"="c:\program files\Gamevance\gamevance32.exe" [2009-07-11 105984]
"AlwaysReady Power Message APP"="ARPWRMSG.EXE" - c:\windows\arpwrmsg.exe [2005-08-02 77312]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
QuickBooks Update Agent.lnk - c:\program files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe [2009-7-16 984352]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-08-21 14:58 11952 ----a-w- c:\windows\system32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UpdatesDisableNotify"=""
"AntiVirusOverride"=""
"FirewallOverride"=""
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Intuit\\QuickBooks 2005\\QBDBMgrN.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [4/11/2009 6:05 AM 335240]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [4/11/2009 6:05 AM 108552]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [4/11/2009 6:05 AM 297752]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [3/25/2009 1:11 PM 54752]
S2 gupdate1ca1ad21b5061ac;Google Update Service (gupdate1ca1ad21b5061ac);c:\program files\Google\Update\GoogleUpdate.exe [8/11/2009 6:21 PM 133104]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\Windows Live\Family Safety\fsssvc.exe [8/5/2009 10:48 PM 704864]
.
Contents of the 'Scheduled Tasks' folder
2009-10-07 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-11 22:21]
2009-10-07 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-11 22:21]
2007-01-03 c:\windows\Tasks\ISP signup reminder 1.job
- c:\windows\system32\OOBE\oobebaln.exe [2006-06-17 00:12]
2007-01-03 c:\windows\Tasks\ISP signup reminder 3.job
- c:\windows\system32\OOBE\oobebaln.exe [2006-06-17 00:12]
.
.
------- Supplementary Scan -------
.
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html
uSearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://www.yahoo.com
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
Handler: intu-help-qb2 - {84D77A00-41B5-4b8b-8ADF-86486D72E749} - c:\program files\Intuit\QuickBooks 2005\HelpAsyncPluggableProtocol.dll
DPF: CabBuilder - hxxp://ak.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
.
- - - - ORPHANS REMOVED - - - -
WebBrowser-{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - (no file)
HKCU-Run-updateMgr - c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe
HKCU-Run-TS - c:\program files\TS\tsc.exe
HKLM-Run-SigmatelSysTrayApp - sttray.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-10-07 00:30
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-2602526093-2560155442-2002368976-1007\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
Completion time: 2009-10-07 0:31
ComboFix-quarantined-files.txt 2009-10-07 04:31
Pre-Run: 199,299,944,448 bytes free
Post-Run: 202,429,816,832 bytes free
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Windows XP Media Center Edition" /fastdetect /NoExecute=OptIn
857 --- E O F --- 2009-10-06 15:56