Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

google installer virus


  • Please log in to reply

#1
ladybug00

ladybug00

    New Member

  • Member
  • Pip
  • 1 posts
ComboFix 09-10-06.03 - Owner 10/07/2009 0:22.1.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2022.1552 [GMT -4:00]
Running from: c:\documents and settings\Owner.TERRACOTTAS\My Documents\Personal\ComboFixa.exe
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files\gamevance\gamevancelib32.dll
c:\program files\Gamevance\gvTL.dll
c:\recycler\S-1-5-21-3794940719-891563620-3004483270-500
c:\windows\Downloaded Program Files\popcaploader.dll
c:\windows\Downloaded Program Files\popcaploader.inf
c:\windows\Installer\109231.msp
c:\windows\Installer\109232.msp
c:\windows\Installer\109233.msp
c:\windows\Installer\109234.msp
c:\windows\Installer\109235.msp
c:\windows\Installer\109236.msp
c:\windows\Installer\109237.msp
c:\windows\Installer\109238.msp
c:\windows\Installer\109239.msp
c:\windows\Installer\109d1b79.msp
c:\windows\Installer\109d1b7a.msp
c:\windows\Installer\109d1b7b.msp
c:\windows\Installer\109d1b7c.msp
c:\windows\Installer\109d1b7d.msp
c:\windows\Installer\109d1b7e.msp
c:\windows\Installer\109d1b7f.msp
c:\windows\Installer\109d1b80.msp
c:\windows\Installer\109d1b81.msp
c:\windows\Installer\10acbd0f.msp
c:\windows\Installer\10acbd10.msp
c:\windows\Installer\10acbd11.msp
c:\windows\Installer\10acbd12.msp
c:\windows\Installer\10acbd13.msp
c:\windows\Installer\10acbd14.msp
c:\windows\Installer\10acbd15.msp
c:\windows\Installer\10acbd16.msp
c:\windows\Installer\10acbd17.msp
c:\windows\Installer\10eb1e.msp
c:\windows\Installer\10eb1f.msp
c:\windows\Installer\10eb20.msp
c:\windows\Installer\10eb21.msp
c:\windows\Installer\10eb22.msp
c:\windows\Installer\10eb23.msp
c:\windows\Installer\10eb24.msp
c:\windows\Installer\10eb25.msp
c:\windows\Installer\10eb26.msp
c:\windows\Installer\114b028.msp
c:\windows\Installer\114b029.msp
c:\windows\Installer\114b02a.msp
c:\windows\Installer\114b02b.msp
c:\windows\Installer\114b02c.msp
c:\windows\Installer\114b02d.msp
c:\windows\Installer\114b02e.msp
c:\windows\Installer\114b02f.msp
c:\windows\Installer\114b030.msp
c:\windows\Installer\128b05d1.msp
c:\windows\Installer\128b05e8.msp
c:\windows\Installer\136acf6.msp
c:\windows\Installer\136acf7.msp
c:\windows\Installer\136acf8.msp
c:\windows\Installer\136acf9.msp
c:\windows\Installer\136acfa.msp
c:\windows\Installer\136acfb.msp
c:\windows\Installer\136acfc.msp
c:\windows\Installer\136acfd.msp
c:\windows\Installer\136acfe.msp
c:\windows\Installer\142087.msp
c:\windows\Installer\142088.msp
c:\windows\Installer\142089.msp
c:\windows\Installer\14208a.msp
c:\windows\Installer\14208b.msp
c:\windows\Installer\14208c.msp
c:\windows\Installer\14208d.msp
c:\windows\Installer\14208e.msp
c:\windows\Installer\14208f.msp
c:\windows\Installer\142feb5.msp
c:\windows\Installer\142feb6.msp
c:\windows\Installer\142feb7.msp
c:\windows\Installer\142feb8.msp
c:\windows\Installer\142feb9.msp
c:\windows\Installer\142feba.msp
c:\windows\Installer\142febb.msp
c:\windows\Installer\142febc.msp
c:\windows\Installer\142febd.msp
c:\windows\Installer\14907e35.msp
c:\windows\Installer\14907e36.msp
c:\windows\Installer\14907e37.msp
c:\windows\Installer\14907e38.msp
c:\windows\Installer\14907e39.msp
c:\windows\Installer\14907e3a.msp
c:\windows\Installer\14907e3b.msp
c:\windows\Installer\14907e3c.msp
c:\windows\Installer\14907e3d.msp
c:\windows\Installer\1505e6a.msp
c:\windows\Installer\1505e6b.msp
c:\windows\Installer\1505e6c.msp
c:\windows\Installer\1505e6d.msp
c:\windows\Installer\1505e6e.msp
c:\windows\Installer\1505e6f.msp
c:\windows\Installer\1505e70.msp
c:\windows\Installer\1505e71.msp
c:\windows\Installer\1505e72.msp
c:\windows\Installer\15d8a951.msp
c:\windows\Installer\15d8a952.msp
c:\windows\Installer\15d8a953.msp
c:\windows\Installer\15d8a954.msp
c:\windows\Installer\15d8a955.msp
c:\windows\Installer\15d8a956.msp
c:\windows\Installer\15d8a957.msp
c:\windows\Installer\15d8a958.msp
c:\windows\Installer\15d8a959.msp
c:\windows\Installer\160fbd5.msp
c:\windows\Installer\160fbd6.msp
c:\windows\Installer\160fbd7.msp
c:\windows\Installer\160fbd8.msp
c:\windows\Installer\160fbd9.msp
c:\windows\Installer\160fbda.msp
c:\windows\Installer\160fbdb.msp
c:\windows\Installer\160fbdc.msp
c:\windows\Installer\160fbdd.msp
c:\windows\Installer\1657567.msp
c:\windows\Installer\1657568.msp
c:\windows\Installer\1657569.msp
c:\windows\Installer\165756a.msp
c:\windows\Installer\165756b.msp
c:\windows\Installer\165756c.msp
c:\windows\Installer\165756d.msp
c:\windows\Installer\165756e.msp
c:\windows\Installer\165756f.msp
c:\windows\Installer\1684ddb.msp
c:\windows\Installer\1684ddc.msp
c:\windows\Installer\1684ddd.msp
c:\windows\Installer\1684dde.msp
c:\windows\Installer\1684ddf.msp
c:\windows\Installer\1684de0.msp
c:\windows\Installer\1684de1.msp
c:\windows\Installer\1684de2.msp
c:\windows\Installer\1684de3.msp
c:\windows\Installer\17b1068.msp
c:\windows\Installer\17b1069.msp
c:\windows\Installer\17b106a.msp
c:\windows\Installer\17b106b.msp
c:\windows\Installer\17b106c.msp
c:\windows\Installer\17b106d.msp
c:\windows\Installer\17b106e.msp
c:\windows\Installer\17b106f.msp
c:\windows\Installer\17b1070.msp
c:\windows\Installer\17e09a3.msp
c:\windows\Installer\17e09a4.msp
c:\windows\Installer\17e09a5.msp
c:\windows\Installer\17e09a6.msp
c:\windows\Installer\17e09a7.msp
c:\windows\Installer\17e09a8.msp
c:\windows\Installer\17e09a9.msp
c:\windows\Installer\17e09aa.msp
c:\windows\Installer\17e09ab.msp
c:\windows\Installer\18210e3.msp
c:\windows\Installer\18210e4.msp
c:\windows\Installer\18210e5.msp
c:\windows\Installer\18210e6.msp
c:\windows\Installer\18210e7.msp
c:\windows\Installer\18210e8.msp
c:\windows\Installer\18210e9.msp
c:\windows\Installer\18210ea.msp
c:\windows\Installer\18210eb.msp
c:\windows\Installer\190e35.msp
c:\windows\Installer\190e7d.msp
c:\windows\Installer\190e8f.msp
c:\windows\Installer\190ea1.msp
c:\windows\Installer\190ea8.msp
c:\windows\Installer\19816e3.msp
c:\windows\Installer\19816e4.msp
c:\windows\Installer\19816e5.msp
c:\windows\Installer\19816e6.msp
c:\windows\Installer\19816e7.msp
c:\windows\Installer\19816e8.msp
c:\windows\Installer\19816e9.msp
c:\windows\Installer\19816ea.msp
c:\windows\Installer\19816eb.msp
c:\windows\Installer\1985ff3.msp
c:\windows\Installer\1985ff4.msp
c:\windows\Installer\1985ff5.msp
c:\windows\Installer\1985ff6.msp
c:\windows\Installer\1985ff7.msp
c:\windows\Installer\1985ff8.msp
c:\windows\Installer\1985ff9.msp
c:\windows\Installer\1985ffa.msp
c:\windows\Installer\1985ffb.msp
c:\windows\Installer\1a98ae8.msp
c:\windows\Installer\1a98ae9.msp
c:\windows\Installer\1a98aea.msp
c:\windows\Installer\1a98aeb.msp
c:\windows\Installer\1a98aec.msp
c:\windows\Installer\1a98aed.msp
c:\windows\Installer\1a98aee.msp
c:\windows\Installer\1a98aef.msp
c:\windows\Installer\1a98af0.msp
c:\windows\Installer\1b69f1.msi
c:\windows\Installer\243a504e.msp
c:\windows\Installer\243a504f.msp
c:\windows\Installer\243a5050.msp
c:\windows\Installer\243a5051.msp
c:\windows\Installer\243a5052.msp
c:\windows\Installer\243a5053.msp
c:\windows\Installer\243a5054.msp
c:\windows\Installer\243a5055.msp
c:\windows\Installer\243a5056.msp
c:\windows\Installer\27444f.msp
c:\windows\Installer\274450.msp
c:\windows\Installer\274451.msp
c:\windows\Installer\274452.msp
c:\windows\Installer\274453.msp
c:\windows\Installer\274454.msp
c:\windows\Installer\274455.msp
c:\windows\Installer\274456.msp
c:\windows\Installer\274457.msp
c:\windows\Installer\28adf1.msp
c:\windows\Installer\28adf2.msp
c:\windows\Installer\28adf3.msp
c:\windows\Installer\28adf4.msp
c:\windows\Installer\28adf5.msp
c:\windows\Installer\28adf6.msp
c:\windows\Installer\28adf7.msp
c:\windows\Installer\28adf8.msp
c:\windows\Installer\28adf9.msp
c:\windows\Installer\29e0c.msp
c:\windows\Installer\29e0d.msp
c:\windows\Installer\29e0e.msp
c:\windows\Installer\29e0f.msp
c:\windows\Installer\29e10.msp
c:\windows\Installer\29e11.msp
c:\windows\Installer\29e12.msp
c:\windows\Installer\29e13.msp
c:\windows\Installer\29e14.msp
c:\windows\Installer\2a956.msp
c:\windows\Installer\2a957.msp
c:\windows\Installer\2a958.msp
c:\windows\Installer\2a959.msp
c:\windows\Installer\2a95a.msp
c:\windows\Installer\2a95b.msp
c:\windows\Installer\2a95c.msp
c:\windows\Installer\2a95d.msp
c:\windows\Installer\2a95e.msp
c:\windows\Installer\2bf443.msp
c:\windows\Installer\2bf444.msp
c:\windows\Installer\2bf445.msp
c:\windows\Installer\2bf446.msp
c:\windows\Installer\2bf447.msp
c:\windows\Installer\2bf448.msp
c:\windows\Installer\2bf449.msp
c:\windows\Installer\2bf44a.msp
c:\windows\Installer\2bf44b.msp
c:\windows\Installer\2c4acee0.msp
c:\windows\Installer\2df4b.msp
c:\windows\Installer\2df4c.msp
c:\windows\Installer\2df4d.msp
c:\windows\Installer\2df4e.msp
c:\windows\Installer\2df4f.msp
c:\windows\Installer\2df50.msp
c:\windows\Installer\2df51.msp
c:\windows\Installer\2df52.msp
c:\windows\Installer\2df53.msp
c:\windows\Installer\2fc4c3.msp
c:\windows\Installer\2fc4c4.msp
c:\windows\Installer\2fc4c5.msp
c:\windows\Installer\2fc4c6.msp
c:\windows\Installer\2fc4c7.msp
c:\windows\Installer\2fc4c8.msp
c:\windows\Installer\2fc4c9.msp
c:\windows\Installer\2fc4ca.msp
c:\windows\Installer\2fc4cb.msp
c:\windows\Installer\35419c2.msp
c:\windows\Installer\35419c3.msp
c:\windows\Installer\35419c4.msp
c:\windows\Installer\35419c5.msp
c:\windows\Installer\35419c6.msp
c:\windows\Installer\35419c7.msp
c:\windows\Installer\35419c8.msp
c:\windows\Installer\35419c9.msp
c:\windows\Installer\35419ca.msp
c:\windows\Installer\35d1c5b.msp
c:\windows\Installer\35f6b77.msp
c:\windows\Installer\35f6b78.msp
c:\windows\Installer\35f6b79.msp
c:\windows\Installer\35f6b7a.msp
c:\windows\Installer\35f6b7b.msp
c:\windows\Installer\35f6b7c.msp
c:\windows\Installer\35f6b7d.msp
c:\windows\Installer\35f6b7e.msp
c:\windows\Installer\35f6b7f.msp
c:\windows\Installer\3ba74d3.msp
c:\windows\Installer\3ba74d4.msp
c:\windows\Installer\3ba74d5.msp
c:\windows\Installer\3ba74d6.msp
c:\windows\Installer\3ba74d7.msp
c:\windows\Installer\3ba74d8.msp
c:\windows\Installer\3ba74d9.msp
c:\windows\Installer\3ba74da.msp
c:\windows\Installer\3ba74db.msp
c:\windows\Installer\3c8c1e89.msp
c:\windows\Installer\3c8c1ea1.msp
c:\windows\Installer\3c8c1eb8.msp
c:\windows\Installer\3c8c1ecf.msp
c:\windows\Installer\3c8c1ee6.msp
c:\windows\Installer\3c8c1efd.msp
c:\windows\Installer\3d330.msp
c:\windows\Installer\3d331.msp
c:\windows\Installer\3d332.msp
c:\windows\Installer\3d333.msp
c:\windows\Installer\3d334.msp
c:\windows\Installer\3d335.msp
c:\windows\Installer\3d336.msp
c:\windows\Installer\3d337.msp
c:\windows\Installer\3d338.msp
c:\windows\Installer\43a870.msp
c:\windows\Installer\43a871.msp
c:\windows\Installer\43a872.msp
c:\windows\Installer\43a873.msp
c:\windows\Installer\43a874.msp
c:\windows\Installer\43a875.msp
c:\windows\Installer\43a876.msp
c:\windows\Installer\43a877.msp
c:\windows\Installer\43a878.msp
c:\windows\Installer\43cbe18.msp
c:\windows\Installer\43cbe19.msp
c:\windows\Installer\43cbe1a.msp
c:\windows\Installer\43cbe1b.msp
c:\windows\Installer\43cbe1c.msp
c:\windows\Installer\43cbe1d.msp
c:\windows\Installer\43cbe1e.msp
c:\windows\Installer\43cbe1f.msp
c:\windows\Installer\43cbe20.msp
c:\windows\Installer\47ddbac.msp
c:\windows\Installer\47ddbc3.msp
c:\windows\Installer\482ef1.msp
c:\windows\Installer\4c3462.msp
c:\windows\Installer\4d1df.msp
c:\windows\Installer\50b4db0.msp
c:\windows\Installer\527a5.msp
c:\windows\Installer\527a6.msp
c:\windows\Installer\527a7.msp
c:\windows\Installer\527a8.msp
c:\windows\Installer\527a9.msp
c:\windows\Installer\527aa.msp
c:\windows\Installer\527ab.msp
c:\windows\Installer\527ac.msp
c:\windows\Installer\527ad.msp
c:\windows\Installer\5285957.msp
c:\windows\Installer\5285958.msp
c:\windows\Installer\5285959.msp
c:\windows\Installer\528595a.msp
c:\windows\Installer\528595b.msp
c:\windows\Installer\528595c.msp
c:\windows\Installer\528595d.msp
c:\windows\Installer\528595e.msp
c:\windows\Installer\528595f.msp
c:\windows\Installer\52bf99.msp
c:\windows\Installer\52bf9a.msp
c:\windows\Installer\52bf9b.msp
c:\windows\Installer\52bf9c.msp
c:\windows\Installer\52bf9d.msp
c:\windows\Installer\52bf9e.msp
c:\windows\Installer\52bf9f.msp
c:\windows\Installer\52bfa0.msp
c:\windows\Installer\52bfa1.msp
c:\windows\Installer\5306f3a.msp
c:\windows\Installer\5306f3b.msp
c:\windows\Installer\5306f3c.msp
c:\windows\Installer\5306f3d.msp
c:\windows\Installer\5306f3e.msp
c:\windows\Installer\5306f3f.msp
c:\windows\Installer\5306f40.msp
c:\windows\Installer\5306f41.msp
c:\windows\Installer\5306f42.msp
c:\windows\Installer\533ccdc.msp
c:\windows\Installer\533ccdd.msp
c:\windows\Installer\533ccde.msp
c:\windows\Installer\533ccdf.msp
c:\windows\Installer\533cce0.msp
c:\windows\Installer\533cce1.msp
c:\windows\Installer\533cce2.msp
c:\windows\Installer\533cce3.msp
c:\windows\Installer\533cce4.msp
c:\windows\Installer\567820b.msp
c:\windows\Installer\567820c.msp
c:\windows\Installer\567820d.msp
c:\windows\Installer\567820e.msp
c:\windows\Installer\567820f.msp
c:\windows\Installer\5678210.msp
c:\windows\Installer\5678211.msp
c:\windows\Installer\5678212.msp
c:\windows\Installer\5678213.msp
c:\windows\Installer\5ad3ed3.msp
c:\windows\Installer\5ad3ed4.msp
c:\windows\Installer\5ad3ed5.msp
c:\windows\Installer\5ad3ed6.msp
c:\windows\Installer\5ad3ed7.msp
c:\windows\Installer\5ad3ed8.msp
c:\windows\Installer\5ad3ed9.msp
c:\windows\Installer\5ad3eda.msp
c:\windows\Installer\5ad3edb.msp
c:\windows\Installer\5bc44.msp
c:\windows\Installer\5bc45.msp
c:\windows\Installer\5bc46.msp
c:\windows\Installer\5bc47.msp
c:\windows\Installer\5bc48.msp
c:\windows\Installer\5bc49.msp
c:\windows\Installer\5bc4a.msp
c:\windows\Installer\5bc4b.msp
c:\windows\Installer\5bc4c.msp
c:\windows\Installer\5d76d3a.msp
c:\windows\Installer\5d76d3b.msp
c:\windows\Installer\5d76d3c.msp
c:\windows\Installer\5d76d3d.msp
c:\windows\Installer\5d76d3e.msp
c:\windows\Installer\5d76d3f.msp
c:\windows\Installer\5d76d40.msp
c:\windows\Installer\5d76d41.msp
c:\windows\Installer\5d76d42.msp
c:\windows\Installer\5db26.msp
c:\windows\Installer\5db27.msp
c:\windows\Installer\5db28.msp
c:\windows\Installer\5db29.msp
c:\windows\Installer\5db2a.msp
c:\windows\Installer\5db2b.msp
c:\windows\Installer\5db2c.msp
c:\windows\Installer\5db2d.msp
c:\windows\Installer\5db2e.msp
c:\windows\Installer\61e348.msp
c:\windows\Installer\62711d.msp
c:\windows\Installer\62711e.msp
c:\windows\Installer\62711f.msp
c:\windows\Installer\627120.msp
c:\windows\Installer\627121.msp
c:\windows\Installer\627122.msp
c:\windows\Installer\627123.msp
c:\windows\Installer\627124.msp
c:\windows\Installer\627125.msp
c:\windows\Installer\65a60b9.msp
c:\windows\Installer\65a60ba.msp
c:\windows\Installer\65a60bb.msp
c:\windows\Installer\65a60bc.msp
c:\windows\Installer\65a60bd.msp
c:\windows\Installer\65a60be.msp
c:\windows\Installer\65a60bf.msp
c:\windows\Installer\65a60c0.msp
c:\windows\Installer\65a60c1.msp
c:\windows\Installer\690225.msp
c:\windows\Installer\690226.msp
c:\windows\Installer\690227.msp
c:\windows\Installer\690228.msp
c:\windows\Installer\690229.msp
c:\windows\Installer\69022a.msp
c:\windows\Installer\69022b.msp
c:\windows\Installer\69022c.msp
c:\windows\Installer\69022d.msp
c:\windows\Installer\7d8ab.msp
c:\windows\Installer\7d8ac.msp
c:\windows\Installer\7d8ad.msp
c:\windows\Installer\7d8ae.msp
c:\windows\Installer\7d8af.msp
c:\windows\Installer\7d8b0.msp
c:\windows\Installer\7d8b1.msp
c:\windows\Installer\7d8b2.msp
c:\windows\Installer\7d8b3.msp
c:\windows\Installer\81925.msp
c:\windows\Installer\81936.msp
c:\windows\Installer\8193d.msp
c:\windows\Installer\83a859.msp
c:\windows\Installer\83a85a.msp
c:\windows\Installer\83a85b.msp
c:\windows\Installer\83a85c.msp
c:\windows\Installer\83a85d.msp
c:\windows\Installer\83a85e.msp
c:\windows\Installer\83a85f.msp
c:\windows\Installer\83a860.msp
c:\windows\Installer\83a861.msp
c:\windows\Installer\88e67a8.msp
c:\windows\Installer\88e67a9.msp
c:\windows\Installer\88e67aa.msp
c:\windows\Installer\88e67ab.msp
c:\windows\Installer\88e67ac.msp
c:\windows\Installer\88e67ad.msp
c:\windows\Installer\88e67ae.msp
c:\windows\Installer\88e67af.msp
c:\windows\Installer\88e67b0.msp
c:\windows\Installer\91d60.msp
c:\windows\Installer\91d61.msp
c:\windows\Installer\91d62.msp
c:\windows\Installer\91d63.msp
c:\windows\Installer\91d64.msp
c:\windows\Installer\91d65.msp
c:\windows\Installer\91d66.msp
c:\windows\Installer\91d67.msp
c:\windows\Installer\91d68.msp
c:\windows\Installer\92c6d4d.msp
c:\windows\Installer\97b5f.msp
c:\windows\Installer\97b60.msp
c:\windows\Installer\97b61.msp
c:\windows\Installer\97b62.msp
c:\windows\Installer\97b63.msp
c:\windows\Installer\97b64.msp
c:\windows\Installer\97b65.msp
c:\windows\Installer\97b66.msp
c:\windows\Installer\97b67.msp
c:\windows\Installer\a172a97.msp
c:\windows\Installer\a172a98.msp
c:\windows\Installer\a172a99.msp
c:\windows\Installer\a172a9a.msp
c:\windows\Installer\a172a9b.msp
c:\windows\Installer\a172a9c.msp
c:\windows\Installer\a172a9d.msp
c:\windows\Installer\a172a9e.msp
c:\windows\Installer\a172a9f.msp
c:\windows\Installer\a67ade0.msp
c:\windows\Installer\a67adff.msp
c:\windows\Installer\ad8fb89.msp
c:\windows\Installer\ad8fb8a.msp
c:\windows\Installer\ad8fb8b.msp
c:\windows\Installer\ad8fb8c.msp
c:\windows\Installer\ad8fb8d.msp
c:\windows\Installer\ad8fb8e.msp
c:\windows\Installer\ad8fb8f.msp
c:\windows\Installer\ad8fb90.msp
c:\windows\Installer\ad8fb91.msp
c:\windows\Installer\b0e87ba.msp
c:\windows\Installer\b0e87bb.msp
c:\windows\Installer\b0e87bc.msp
c:\windows\Installer\b0e87bd.msp
c:\windows\Installer\b0e87be.msp
c:\windows\Installer\b0e87bf.msp
c:\windows\Installer\b0e87c0.msp
c:\windows\Installer\b0e87c1.msp
c:\windows\Installer\b0e87c2.msp
c:\windows\Installer\b49485.msp
c:\windows\Installer\b49486.msp
c:\windows\Installer\b49487.msp
c:\windows\Installer\b49488.msp
c:\windows\Installer\b49489.msp
c:\windows\Installer\b4948a.msp
c:\windows\Installer\b4948b.msp
c:\windows\Installer\b4948c.msp
c:\windows\Installer\b4948d.msp
c:\windows\Installer\b99d4eb.msp
c:\windows\Installer\b99d4ec.msp
c:\windows\Installer\b99d4ed.msp
c:\windows\Installer\b99d4ee.msp
c:\windows\Installer\b99d4ef.msp
c:\windows\Installer\b99d4f0.msp
c:\windows\Installer\b99d4f1.msp
c:\windows\Installer\b99d4f2.msp
c:\windows\Installer\b99d4f3.msp
c:\windows\Installer\be9fd.msp
c:\windows\Installer\be9fe.msp
c:\windows\Installer\be9ff.msp
c:\windows\Installer\bea00.msp
c:\windows\Installer\bea01.msp
c:\windows\Installer\bea02.msp
c:\windows\Installer\bea03.msp
c:\windows\Installer\bea04.msp
c:\windows\Installer\bea05.msp
c:\windows\Installer\c0f2e6.msp
c:\windows\Installer\c0f2e7.msp
c:\windows\Installer\c0f2e8.msp
c:\windows\Installer\c0f2e9.msp
c:\windows\Installer\c0f2ea.msp
c:\windows\Installer\c0f2eb.msp
c:\windows\Installer\c0f2ec.msp
c:\windows\Installer\c0f2ed.msp
c:\windows\Installer\c0f2ee.msp
c:\windows\Installer\c40660.msp
c:\windows\Installer\c40661.msp
c:\windows\Installer\c40662.msp
c:\windows\Installer\c40663.msp
c:\windows\Installer\c40664.msp
c:\windows\Installer\c40665.msp
c:\windows\Installer\c40666.msp
c:\windows\Installer\c40667.msp
c:\windows\Installer\c40668.msp
c:\windows\Installer\ca0ea.msp
c:\windows\Installer\ca0eb.msp
c:\windows\Installer\ca0ec.msp
c:\windows\Installer\ca0ed.msp
c:\windows\Installer\ca0ee.msp
c:\windows\Installer\ca0ef.msp
c:\windows\Installer\ca0f0.msp
c:\windows\Installer\ca0f1.msp
c:\windows\Installer\ca0f2.msp
c:\windows\Installer\cdcaa.msp
c:\windows\Installer\cdcab.msp
c:\windows\Installer\cdcac.msp
c:\windows\Installer\cdcad.msp
c:\windows\Installer\cdcae.msp
c:\windows\Installer\cdcaf.msp
c:\windows\Installer\cdcb0.msp
c:\windows\Installer\cdcb1.msp
c:\windows\Installer\cdcb2.msp
c:\windows\Installer\d7337e.msp
c:\windows\Installer\d7337f.msp
c:\windows\Installer\d73380.msp
c:\windows\Installer\d73381.msp
c:\windows\Installer\d73382.msp
c:\windows\Installer\d73383.msp
c:\windows\Installer\d73384.msp
c:\windows\Installer\d73385.msp
c:\windows\Installer\d73386.msp
c:\windows\Installer\de1c21b.msp
c:\windows\Installer\de5292.msp
c:\windows\Installer\de52a9.msp
c:\windows\Installer\de52f1.msp
c:\windows\Installer\de530a.msp
c:\windows\Installer\de5321.msp
c:\windows\Installer\de5338.msp
c:\windows\Installer\de5355.msp
c:\windows\Installer\df572c.msp
c:\windows\Installer\df572d.msp
c:\windows\Installer\df572e.msp
c:\windows\Installer\df572f.msp
c:\windows\Installer\df5730.msp
c:\windows\Installer\df5731.msp
c:\windows\Installer\df5732.msp
c:\windows\Installer\df5733.msp
c:\windows\Installer\df5734.msp
c:\windows\Installer\e22e78.msp
c:\windows\Installer\e22e79.msp
c:\windows\Installer\e22e7a.msp
c:\windows\Installer\e22e7b.msp
c:\windows\Installer\e22e7c.msp
c:\windows\Installer\e22e7d.msp
c:\windows\Installer\e22e7e.msp
c:\windows\Installer\e22e7f.msp
c:\windows\Installer\e22e80.msp
c:\windows\Installer\e5bb9.msp
c:\windows\Installer\e5bba.msp
c:\windows\Installer\e5bbb.msp
c:\windows\Installer\e5bbc.msp
c:\windows\Installer\e5bbd.msp
c:\windows\Installer\e5bbe.msp
c:\windows\Installer\e5bbf.msp
c:\windows\Installer\e5bc0.msp
c:\windows\Installer\e5bc1.msp
c:\windows\Installer\e6c31cd.msp
c:\windows\Installer\efb0c8.msp
c:\windows\Installer\efb0c9.msp
c:\windows\Installer\efb0ca.msp
c:\windows\Installer\efb0cb.msp
c:\windows\Installer\efb0cc.msp
c:\windows\Installer\efb0cd.msp
c:\windows\Installer\efb0ce.msp
c:\windows\Installer\efb0cf.msp
c:\windows\Installer\efb0d0.msp
c:\windows\Installer\f4498b6.msp
c:\windows\Installer\f4498b7.msp
c:\windows\Installer\f4498b8.msp
c:\windows\Installer\f4498b9.msp
c:\windows\Installer\f4498ba.msp
c:\windows\Installer\f4498bb.msp
c:\windows\Installer\f4498bc.msp
c:\windows\Installer\f4498bd.msp
c:\windows\Installer\f4498be.msp
c:\windows\Installer\fb3d7.msp
c:\windows\Installer\fb3d8.msp
c:\windows\Installer\fb3d9.msp
c:\windows\Installer\fb3da.msp
c:\windows\Installer\fb3db.msp
c:\windows\Installer\fb3dc.msp
c:\windows\Installer\fb3dd.msp
c:\windows\Installer\fb3de.msp
c:\windows\Installer\fb3df.msp
c:\windows\kb913800.exe
c:\windows\system32\_000005_.tmp.dll
c:\windows\system32\_000006_.tmp.dll
c:\windows\system32\bszip.dll
c:\windows\system32\drivers\UACatpngnqhtk.sys
c:\windows\system32\iehelpmod.dll
c:\windows\system32\twain.dll
c:\windows\system32\UACawlxhbcpau.dll
c:\windows\system32\UACeswgonjaem.dat
c:\windows\system32\uacinit.dll
c:\windows\system32\UACwssjcxogof.dll
c:\windows\system32\UACxalbtnkjgl.dll
D:\Autorun.inf

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_UACd.sys
-------\Legacy_UACd.sys


((((((((((((((((((((((((( Files Created from 2009-09-07 to 2009-10-07 )))))))))))))))))))))))))))))))
.

2009-10-07 04:21 . 2009-10-07 04:23 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Temp
2009-10-07 03:08 . 2009-10-07 03:08 -------- d-----w- c:\documents and settings\Owner.TERRACOTTAS\Application Data\Uniblue
2009-10-06 22:43 . 2009-10-07 03:44 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-10-02 15:29 . 2009-10-02 15:29 -------- d-----w- c:\program files\Microsoft Office Outlook Connector
2009-10-01 16:19 . 2009-10-01 16:19 -------- d-----w- c:\program files\Common Files\TSUninstall
2009-10-01 16:18 . 2009-10-05 17:08 -------- d-----w- c:\program files\TS
2009-09-10 13:33 . 2009-06-21 21:44 153088 -c----w- c:\windows\system32\dllcache\triedit.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-10-07 04:27 . 2009-07-11 19:03 -------- d-----w- c:\program files\Gamevance
2009-10-07 04:13 . 2009-04-11 10:05 -------- d-----w- c:\documents and settings\All Users\Application Data\avg8
2009-10-07 01:39 . 2007-06-24 00:32 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-10-06 22:34 . 2006-09-19 18:33 -------- d-----w- c:\program files\Google
2009-10-06 22:33 . 2006-09-19 18:34 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-10-05 18:01 . 2009-02-05 15:33 -------- d-----w- c:\program files\Yahoo!
2009-10-05 18:01 . 2009-02-05 15:33 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo!
2009-10-05 17:13 . 2006-09-19 18:37 -------- d-----w- c:\program files\Java
2009-10-02 15:27 . 2008-05-26 15:05 -------- d-----w- c:\program files\Windows Live
2009-08-31 20:36 . 2009-08-11 22:21 -------- d-----w- c:\documents and settings\Owner.TERRACOTTAS\Application Data\Skype
2009-08-24 14:23 . 2006-06-19 04:25 77224 ----a-w- c:\documents and settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-08-21 14:58 . 2009-04-11 10:05 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-08-21 14:58 . 2009-04-11 10:05 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-08-21 14:58 . 2009-04-11 10:05 335240 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-08-16 15:58 . 2009-08-12 01:49 -------- d-----w- c:\documents and settings\Owner.TERRACOTTAS\Application Data\skypePM
2009-08-12 01:49 . 2009-08-12 01:49 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-08-11 22:21 . 2009-08-11 22:21 -------- d-----r- c:\program files\Skype
2009-08-11 22:21 . 2009-08-11 22:21 -------- d-----w- c:\program files\Common Files\Skype
2009-08-11 22:21 . 2009-08-11 22:20 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype
2009-08-06 23:24 . 2006-06-17 09:38 327896 ----a-w- c:\windows\system32\wucltui.dll
2009-08-06 23:24 . 2006-06-17 09:38 209632 ----a-w- c:\windows\system32\wuweb.dll
2009-08-06 23:24 . 2006-06-17 09:38 35552 ----a-w- c:\windows\system32\wups.dll
2009-08-06 23:24 . 2005-05-26 12:16 44768 ----a-w- c:\windows\system32\wups2.dll
2009-08-06 23:24 . 2006-06-17 09:38 53472 ----a-w- c:\windows\system32\wuauclt.exe
2009-08-06 23:24 . 2006-06-17 09:23 96480 ----a-w- c:\windows\system32\cdm.dll
2009-08-06 23:23 . 2006-06-17 09:38 575704 ----a-w- c:\windows\system32\wuapi.dll
2009-08-06 23:23 . 2007-03-20 02:50 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-08-06 23:23 . 2007-03-20 02:50 215920 ----a-w- c:\windows\system32\muweb.dll
2009-08-06 23:23 . 2006-06-17 09:38 1929952 ----a-w- c:\windows\system32\wuaueng.dll
2009-08-06 02:48 . 2009-03-25 17:11 54752 ----a-w- c:\windows\system32\drivers\fssfltr_tdi.sys
2009-08-05 09:01 . 2006-06-17 09:23 204800 ----a-w- c:\windows\system32\mswebdvd.dll
2009-07-26 20:44 . 2009-07-26 20:44 48448 ----a-w- c:\windows\system32\sirenacm.dll
2009-07-17 19:01 . 2006-06-17 09:23 58880 ----a-w- c:\windows\system32\atl.dll
2009-07-14 03:43 . 2006-06-17 09:24 286208 ----a-w- c:\windows\system32\wmpdxm.dll
2009-07-10 16:15 . 2009-07-10 16:15 306544 ----a-w- c:\windows\WLXPGSS.SCR
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
2008-07-17 21:20 279944 ----a-w- c:\program files\AskBarDis\bar\bin\askBar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-07-17 279944]

[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]
[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-07-17 279944]

[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]
[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Power2GoExpress"="NA" [X]
"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2009-07-26 3883856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray"="c:\windows\ehome\ehtray.exe" [2005-08-06 64512]
"readericon"="c:\program files\Digital Media Reader\readericon45G.exe" [2005-12-10 139264]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2006-06-23 98304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2006-06-23 86016]
"Persistence"="c:\windows\system32\igfxpers.exe" [2006-06-23 81920]
"IntelAudioStudio"="c:\program files\Intel Audio Studio\IntelAudioStudio.exe" [2006-07-13 9134080]
"Reminder"="c:\windows\Creator\Remind_XP.exe" [2005-02-26 966656]
"Recguard"="c:\windows\SMINST\RECGUARD.EXE" [2002-09-14 212992]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2006-07-06 151552]
"CCUTRAYICON"="c:\program files\Intel\IntelDH\CCU\CCU_TrayIcon.exe" [2006-07-27 303104]
"NMSSupport"="c:\program files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" [2006-03-30 375296]
"MSKDetectorExe"="c:\program files\McAfee\SpamKiller\MSKDetct.exe" [2005-08-12 1121792]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-09-19 98304]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472]
"PaperPort PTD"="c:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2007-01-30 30248]
"IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2007-01-30 46632]
"PPort11reminder"="c:\program files\ScanSoft\PaperPort\Ereg\Ereg.exe" [2007-02-01 255528]
"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2007-03-23 663552]
"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2007-01-26 65536]
"Intuit SyncManager"="c:\program files\Common Files\Intuit\Sync\IntuitSyncManager.exe" [2008-09-09 623880]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-10-01 2023704]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"Gamevance"="c:\program files\Gamevance\gamevance32.exe" [2009-07-11 105984]
"AlwaysReady Power Message APP"="ARPWRMSG.EXE" - c:\windows\arpwrmsg.exe [2005-08-02 77312]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
QuickBooks Update Agent.lnk - c:\program files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe [2009-7-16 984352]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-08-21 14:58 11952 ----a-w- c:\windows\system32\avgrsstx.dll

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UpdatesDisableNotify"=""
"AntiVirusOverride"=""
"FirewallOverride"=""

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Intuit\\QuickBooks 2005\\QBDBMgrN.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=

R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [4/11/2009 6:05 AM 335240]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [4/11/2009 6:05 AM 108552]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [4/11/2009 6:05 AM 297752]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [3/25/2009 1:11 PM 54752]
S2 gupdate1ca1ad21b5061ac;Google Update Service (gupdate1ca1ad21b5061ac);c:\program files\Google\Update\GoogleUpdate.exe [8/11/2009 6:21 PM 133104]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\Windows Live\Family Safety\fsssvc.exe [8/5/2009 10:48 PM 704864]
.
Contents of the 'Scheduled Tasks' folder

2009-10-07 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-11 22:21]

2009-10-07 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-11 22:21]

2007-01-03 c:\windows\Tasks\ISP signup reminder 1.job
- c:\windows\system32\OOBE\oobebaln.exe [2006-06-17 00:12]

2007-01-03 c:\windows\Tasks\ISP signup reminder 3.job
- c:\windows\system32\OOBE\oobebaln.exe [2006-06-17 00:12]
.
.
------- Supplementary Scan -------
.
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html
uSearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://www.yahoo.com
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
Handler: intu-help-qb2 - {84D77A00-41B5-4b8b-8ADF-86486D72E749} - c:\program files\Intuit\QuickBooks 2005\HelpAsyncPluggableProtocol.dll
DPF: CabBuilder - hxxp://ak.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
.
- - - - ORPHANS REMOVED - - - -

WebBrowser-{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - (no file)
HKCU-Run-updateMgr - c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe
HKCU-Run-TS - c:\program files\TS\tsc.exe
HKLM-Run-SigmatelSysTrayApp - sttray.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-10-07 00:30
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_USERS\S-1-5-21-2602526093-2560155442-2002368976-1007\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
Completion time: 2009-10-07 0:31
ComboFix-quarantined-files.txt 2009-10-07 04:31

Pre-Run: 199,299,944,448 bytes free
Post-Run: 202,429,816,832 bytes free

WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Windows XP Media Center Edition" /fastdetect /NoExecute=OptIn

857 --- E O F --- 2009-10-06 15:56
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP