Jagare525
Junior Member
 


Gender: 
Posts: 51
|
 |
Re: Help on deleting xvyu5i4c
« Reply #5 on: Oct 15th, 2008, 12:43pm » |
|
Ok, I was finally able to remove the xvyu5i4c. I was having trouble with the combofix yesterday night, everytime it keep running after awhile it keep closing. I was finally able to resolve that problem to. This is the combofix log: ComboFix 08-10-14.07 - William 2008-10-15 12:29:51.2 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1572 [GMT -5:00] Running from: C:\Documents and Settings\William\Desktop\ComboFix.exe WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !! . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . . ---- Previous Run ------- . C:\WINDOWS\system32\cuRtnM8A.exe.a_a C:\WINDOWS\system32\xvyu5i4c.exe.a_a . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_OREANS32 -------\Service_oreans32 ((((((((((((((((((((((((( Files Created from 2008-09-15 to 2008-10-15 ))))))))))))))))))))))))))))))) . 2008-10-15 03:20 . 2008-10-15 03:22<DIR>d--------C:\Program Files\JavaRa 2008-10-15 03:06 . 2008-10-15 03:06<DIR>d--------C:\Program Files\CCleaner 2008-10-15 03:06 . 2008-10-15 03:06<DIR>d--------C:\Documents and Settings\All Users\Application Data\TEMP 2008-10-15 03:05 . 2008-10-15 03:05<DIR>d--------C:\Program Files\Foxit Software 2008-10-15 02:47 . 2008-10-15 02:47<DIR>d--------C:\Documents and Settings\William\Application Data\TrojanHunter 2008-10-15 02:41 . 2008-10-15 02:41<DIR>d--------C:\Documents and Settings\Administrator.HOME\Application Data\TrojanHunter 2008-10-15 01:35 . 2007-12-11 19:57<DIR>d--------C:\Documents and Settings\Administrator.HOME\Application Data\Intel 2008-10-15 01:35 . 2008-10-15 01:35<DIR>d--------C:\Documents and Settings\Administrator.HOME 2008-10-15 01:29 . 2008-10-15 12:10<DIR>d--------C:\Program Files\TrojanHunter 5.0 2008-10-15 01:24 . 2008-10-15 01:24<DIR>d--------C:\Program Files\Trend Micro 2008-10-15 01:22 . 2008-10-15 12:2354,156--ah-----C:\WINDOWS\QTFont.qfn 2008-10-15 01:22 . 2008-10-15 01:221,409--a------C:\WINDOWS\QTFont.for 2008-10-15 01:19 . 2008-10-15 01:19<DIR>d--------C:\WINDOWS\ShellNew 2008-10-15 01:19 . 2008-10-15 01:19<DIR>d--------C:\Program Files\Microsoft ActiveSync 2008-10-15 01:17 . 2008-10-15 01:17<DIR>d--------C:\Program Files\Spybot - Search & Destroy 2008-10-15 01:17 . 2008-10-15 03:26<DIR>d--------C:\Program Files\Java 2008-10-15 01:17 . 2008-10-15 01:17<DIR>d--------C:\Program Files\Common Files\Java 2008-10-15 00:21 . 2008-09-15 07:121,846,400-----c---C:\WINDOWS\system32\dllcache\win32k.sys 2008-10-15 00:21 . 2008-09-08 05:41333,824-----c---C:\WINDOWS\system32\dllcache\srv.sys 2008-10-15 00:20 . 2008-08-14 05:112,189,184-----c---C:\WINDOWS\system32\dllcache\ntoskrnl.exe 2008-10-15 00:20 . 2008-08-14 05:092,145,280-----c---C:\WINDOWS\system32\dllcache\ntkrnlmp.exe 2008-10-15 00:20 . 2008-08-14 04:332,066,048-----c---C:\WINDOWS\system32\dllcache\ntkrnlpa.exe 2008-10-15 00:20 . 2008-08-14 04:332,023,936-----c---C:\WINDOWS\system32\dllcache\ntkrpamp.exe 2008-10-14 00:17 . 2008-10-15 03:08<DIR>d--------C:\Program Files\SpywareBlaster 2008-10-10 03:29 . 2008-10-10 03:29164--a------C:\install.dat 2008-10-10 03:06 . 2008-10-10 03:06<DIR>d--------C:\Program Files\Java(2) 2008-10-10 03:05 . 2008-10-15 01:17<DIR>d--------C:\Program Files\Common Files\Java(2) 2008-10-05 21:02 . 2008-10-05 21:02<DIR>d--------C:\Documents and Settings\Administrator\Application Data\Media Player Classic 2008-10-05 20:54 . 2008-10-15 01:17<DIR>d--------C:\Program Files\Spybot - Search & Destroy(2) 2008-10-05 18:11 . 2008-10-15 01:17<DIR>d--------C:\Program Files\Starcraft(2) 2008-10-05 18:11 . 2008-10-05 18:1332,930--a------C:\WINDOWS\scunin.dat 2008-10-04 21:53 . 2008-10-15 01:17<DIR>d---s----C:\Documents and Settings\Administrator 2008-09-29 00:06 . 2008-09-29 00:08<DIR>d--------C:\WINDOWS\ShellNew(2) 2008-09-29 00:06 . 2008-09-29 00:06<DIR>d--------C:\Program Files\Common Files\L&H . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-10-15 06:22---------d-----wC:\Program Files\Lx_cats 2008-10-15 06:19---------d-----wC:\Documents and Settings\William\Application Data\uTorrent 2008-10-15 06:17---------d-----wC:\Program Files\Winamp 2008-10-15 06:17---------d-----wC:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy 2008-10-10 07:13---------d-----wC:\Documents and Settings\William\Application Data\LimeWire 2008-09-15 12:121,846,400----a-wC:\WINDOWS\system32\win32k.sys 2008-09-14 04:57---------d-----wC:\Program Files\Warcraft III 2008-09-13 04:30---------d-----wC:\Program Files\LimeWire 2008-09-08 10:41333,824----a-wC:\WINDOWS\system32\drivers\srv.sys 2008-09-06 23:32---------d-----wC:\Documents and Settings\All Users\Application Data\NVIDIA 2008-09-06 07:54---------d--h--wC:\Program Files\InstallShield Installation Information 2008-09-06 07:54---------d-----wC:\Documents and Settings\William\Application Data\Megaupload 2008-09-06 07:54---------d-----wC:\Documents and Settings\William\Application Data\EmailNotifier 2008-09-06 07:54---------d-----wC:\Documents and Settings\All Users\Application Data\Megaupload 2008-09-06 07:54---------d-----wC:\Documents and Settings\All Users\Application Data\EmailNotifier 2008-08-28 06:11---------d-----wC:\Program Files\MSXML 4.0 2008-08-27 07:03---------d-----wC:\Documents and Settings\William\Application Data\Nero 2008-08-27 07:01---------d-----wC:\Program Files\Common Files\Nero 2008-08-27 06:59---------d-----wC:\Program Files\Nero 2008-08-27 06:59---------d-----wC:\Documents and Settings\All Users\Application Data\Nero 2008-08-26 07:24826,368----a-wC:\WINDOWS\system32\wininet.dll 2008-08-24 21:1943,320----a-wC:\Documents and Settings\William\Application Data\GDIPFONTCACHEV1.DAT 2008-08-20 19:16720,896--sha-wC:\WINDOWS\Cursors\lsass.exe 2008-08-14 10:092,145,280----a-wC:\WINDOWS\system32\ntoskrnl.exe 2008-08-14 09:332,023,936----a-wC:\WINDOWS\system32\ntkrnlpa.exe 2008-08-04 23:5098,304----a-wC:\WINDOWS\DUMP5786.tmp 2008-07-19 03:1094,920----a-wC:\WINDOWS\system32\cdm.dll 2008-07-19 03:1053,448----a-wC:\WINDOWS\system32\wuauclt.exe 2008-07-19 03:1045,768----a-wC:\WINDOWS\system32\wups2.dll 2008-07-19 03:1036,552----a-wC:\WINDOWS\system32\wups.dll 2008-07-19 03:09563,912----a-wC:\WINDOWS\system32\wuapi.dll 2008-07-19 03:09325,832----a-wC:\WINDOWS\system32\wucltui.dll 2008-07-19 03:09205,000----a-wC:\WINDOWS\system32\wuweb.dll 2008-07-19 03:091,811,656----a-wC:\WINDOWS\system32\wuaueng.dll 2008-07-19 03:07270,880----a-wC:\WINDOWS\system32\mucltui.dll 2008-07-19 03:07210,976----a-wC:\WINDOWS\system32\muweb.dll 2007-12-16 20:2622,328----a-wC:\Documents and Settings\William\Application Data\PnkBstrK.sys . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\NBHShellExt] @="{8D2223A2-B3C6-4e32-B096-CDD11F628C60}" [HKEY_CLASSES_ROOT\CLSID\{8D2223A2-B3C6-4e32-B096-CDD11F628C60}] 2008-06-10 12:2997064--a------C:\Program Files\Nero\Nero8\InCD\NBHShx.dll [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-13 15360] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" [2004-08-04 208952] "NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2006-04-25 7573504] "Dell QuickSet"="C:\Program Files\Dell\QuickSet\quickset.exe" [2007-05-14 1191936] "CTSVolFE.exe"="C:\Program Files\Creative\Mixer\CTSVolFE.exe" [2005-02-23 57344] "SigmatelSysTrayApp"="C:\Program Files\SigmaTel\C-Major Audio\WDM\stsystra.exe" [2007-05-10 405504] "IntelZeroConfig"="C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe" [2007-10-08 995328] "IntelWireless"="C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" [2007-10-08 1101824] "SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2006-03-08 761947] "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-11-15 267048] "EzPrint"="C:\Program Files\Lexmark 5400 Series\ezprint.exe" [2007-03-19 82864] "LXCTCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCTtime.dll" [2006-11-21 106496] "SecurDisc"="C:\Program Files\Nero\Nero8\InCD\NBHGui.exe" [2008-06-10 2049320] "THGuard"="C:\Program Files\TrojanHunter 5.0\THGuard.exe" [2008-10-15 1056928] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784] "BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-13 C:\WINDOWS\system32\bthprops.cpl] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [2006-05-24 622653] Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE [2001-02-13 83360] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "vidc.ffds"= ffdshow.ax "msacm.ac3filter"= ac3filter.acm [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "C:\\Program Files\\iTunes\\iTunes.exe"= "C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"= "C:\\Program Files\\BitComet\\BitComet.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\uTorrent\\uTorrent.exe"= "C:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\Crysis.exe"= "C:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"= "C:\\Program Files\\AIM6\\aim6.exe"= "C:\\Program Files\\LimeWire\\LimeWire.exe"= "C:\\WINDOWS\\system32\\lxctcoms.exe"= "C:\\WINDOWS\\system32\\dpvsetup.exe"= "C:\\Program Files\\Tencent\\QQ Games\\QQGames.exe"= "C:\\Program Files\\Veoh Networks\\Veoh\\VeohClient.exe"= "C:\\Documents and Settings\\All Users\\Application Data\\NexonUS\\NGM\\NGM.exe"= "C:\\Program Files\\Alcohol Soft\\Alcohol 120\\Alcohol.exe"= "C:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Dx9.exe"= "C:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Dx10.exe"= "C:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Launcher.exe"= "C:\\ijji\\ENGLISH\\u_gbound.exe"= "C:\\ijji\\ENGLISH\\Gunbound Revolution\\GunBound.gme"= "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "6112:TCP"= 6112:TCP:Warcraft blueserver "12345:TCP"= 12345:TCP:BitComet 12345 TCP "12345:UDP"= 12345:UDP:BitComet 12345 UDP R2 NeroRegInCDSrv;Nero Registry InCD Service;C:\Program Files\Nero\Nero8\InCD\NBHRegInCDSrv.exe [2008-06-10 53032] R2 Viewpoint Manager Service;Viewpoint Manager Service;C:\Program Files\Viewpoint\Common\ViewpointService.exe [2007-01-04 24652] S3 Razerlow;Razerlow USB Filter Driver;C:\WINDOWS\system32\Drivers\Razerlow.sys [2005-04-24 13225] S3 XDva037;XDva037;C:\WINDOWS\system32\XDva037.sys [ ] S3 XDva119;XDva119;C:\WINDOWS\system32\XDva119.sys [ ] S3 XDva121;XDva121;C:\WINDOWS\system32\XDva121.sys [ ] S3 XDva134;XDva134;C:\WINDOWS\system32\XDva134.sys [ ] S3 XDva158;XDva158;C:\WINDOWS\system32\XDva158.sys [ ] S3 XDva164;XDva164;C:\WINDOWS\system32\XDva164.sys [ ] S3 XDva165;XDva165;C:\WINDOWS\system32\XDva165.sys [ ] S3 XDva167;XDva167;C:\WINDOWS\system32\XDva167.sys [ ] S3 XDva177;XDva177;C:\WINDOWS\system32\XDva177.sys [ ] S3 XDva189;XDva189;C:\WINDOWS\system32\XDva189.sys [ ] S3 XDva195;XDva195;C:\WINDOWS\system32\XDva195.sys [ ] . Contents of the 'Scheduled Tasks' folder 2008-10-15 C:\WINDOWS\Tasks\At1.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-10 C:\WINDOWS\Tasks\At10.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-13 C:\WINDOWS\Tasks\At11.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-13 C:\WINDOWS\Tasks\At12.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-15 C:\WINDOWS\Tasks\At13.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-13 C:\WINDOWS\Tasks\At14.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-13 C:\WINDOWS\Tasks\At15.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-13 C:\WINDOWS\Tasks\At16.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-13 C:\WINDOWS\Tasks\At17.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-13 C:\WINDOWS\Tasks\At18.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-11 C:\WINDOWS\Tasks\At19.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-15 C:\WINDOWS\Tasks\At2.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-13 C:\WINDOWS\Tasks\At20.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-14 C:\WINDOWS\Tasks\At21.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-14 C:\WINDOWS\Tasks\At22.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-14 C:\WINDOWS\Tasks\At23.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-14 C:\WINDOWS\Tasks\At24.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-15 C:\WINDOWS\Tasks\At25.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-15 C:\WINDOWS\Tasks\At26.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-14 C:\WINDOWS\Tasks\At27.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-15 C:\WINDOWS\Tasks\At28.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-13 C:\WINDOWS\Tasks\At29.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-14 C:\WINDOWS\Tasks\At3.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-13 C:\WINDOWS\Tasks\At30.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-10 C:\WINDOWS\Tasks\At31.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-10 C:\WINDOWS\Tasks\At32.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-10 C:\WINDOWS\Tasks\At33.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-10 C:\WINDOWS\Tasks\At34.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-13 C:\WINDOWS\Tasks\At35.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-13 C:\WINDOWS\Tasks\At36.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-15 C:\WINDOWS\Tasks\At37.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-13 C:\WINDOWS\Tasks\At38.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-13 C:\WINDOWS\Tasks\At39.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-15 C:\WINDOWS\Tasks\At4.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-13 C:\WINDOWS\Tasks\At40.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-13 C:\WINDOWS\Tasks\At41.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-13 C:\WINDOWS\Tasks\At42.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-12 C:\WINDOWS\Tasks\At43.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-13 C:\WINDOWS\Tasks\At44.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-14 C:\WINDOWS\Tasks\At45.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-14 C:\WINDOWS\Tasks\At46.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-14 C:\WINDOWS\Tasks\At47.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-14 C:\WINDOWS\Tasks\At48.job - C:\WINDOWS\system32\xvyu5i4c.exe [] 2008-10-13 C:\WINDOWS\Tasks\At5.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-13 C:\WINDOWS\Tasks\At6.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-10 C:\WINDOWS\Tasks\At7.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-10 C:\WINDOWS\Tasks\At8.job - C:\WINDOWS\system32\cuRtnM8A.exe [] 2008-10-10 C:\WINDOWS\Tasks\At9.job - C:\WINDOWS\system32\cuRtnM8A.exe [] . - - - - ORPHANS REMOVED - - - - WebBrowser-{A057A204-BACC-4D26-C39E-35F1D2A32EC8} - (no file) HKCU-Run-Aim6 - (no file) . ------- Supplementary Scan ------- . FireFox -: Profile - C:\Documents and Settings\William\Application Data\Mozilla\Firefox\Profiles\9mtao6tf.default\ FireFox -: prefs.js - SEARCH.DEFAULTURL - hxxp://search.yahoo.com/search?ei=UTF-8&fr=ytff-amo&p= FireFox -: prefs.js - STARTUP.HOMEPAGE www.gamefaqs.com FF -: plugin - C:\Documents and Settings\All Users\Application Data\NexonUS\NGM\npNxGameUS.dll FF -: plugin - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll FF -: plugin - C:\Program Files\Mozilla Firefox\plugins\npijjiFFPlugin1.dll FF -: plugin - C:\Program Files\Mozilla Firefox\plugins\npViewpoint.dll FF -: plugin - C:\Program Files\MpcStar\Codecs\QuickTime\Plugins\npqtplugin.dll FF -: plugin - C:\Program Files\MpcStar\Codecs\QuickTime\Plugins\npqtplugin2.dll FF -: plugin - C:\Program Files\MpcStar\Codecs\QuickTime\Plugins\npqtplugin3.dll FF -: plugin - C:\Program Files\MpcStar\Codecs\QuickTime\Plugins\npqtplugin4.dll FF -: plugin - C:\Program Files\MpcStar\Codecs\QuickTime\Plugins\npqtplugin5.dll FF -: plugin - C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nppl3260.dll FF -: plugin - C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nprpjplug.dll FF -: plugin - C:\Program Files\Veoh Networks\Veoh\Plugins\noreg\NPVeohVersion.dll FF -: plugin - C:\Program Files\Viewpoint\Viewpoint Media Player\npViewpoint.dll . ************************************************************************ ** catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-10-15 12:31:35 Windows 5.1.2600 Service Pack 3 NTFS scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfully hidden files: 0 ************************************************************************ ** . Completion time: 2008-10-15 12:32:35 ComboFix-quarantined-files.txt 2008-10-15 17:32:28 Pre-Run: 17,092,984,832 bytes free Post-Run: 17,102,925,824 bytes free 310--- E O F ---2008-10-15 08:01:11
|