dr004
Newbie


Posts: 26
|
 |
Re: What's going on?
« Reply #2 on: Jan 24th, 2008, 4:50pm » |
Quote Modify
|
ComboFix 08-01-23.2 - Anyone 2008-01-24 17:36:23.2 - NTFSx86 Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.2518 [GMT -5:00] Running from: C:\Documents and Settings\Anyone\Desktop\ComboFix.exe WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !! ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) .. ---- Previous Run ------- . C:\Documents and Settings\Anyone\Application Data\addon.dat . ((((((((((((((((((((((((( Files Created from 2007-12-24 to 2008-01-24 ))))))))))))))))))))))))))))))) . 2008-01-24 07:35 . 2000-08-31 08:0051,200--a------C:\WINDOWS\Nircmd.exe 2008-01-23 21:36 . 2006-12-08 13:369,728--a------C:\WINDOWS\system32\drivers\pxscinst.dll 2008-01-23 21:36 . 2006-12-08 13:367,680--a------C:\WINDOWS\system32\drivers\pxinst.dll 2008-01-23 21:22 . 2008-01-23 21:2210,624--a------C:\WINDOWS\system32\drivers\pxark.sys 2008-01-23 21:20 . 2008-01-23 21:40<DIR>d--------C:\Program Files\PrevxCSI 2008-01-23 19:29 . 2007-05-30 07:1010,872--a------C:\WINDOWS\system32\drivers\AvgAsCln.sys 2008-01-23 19:07 . 2007-01-18 07:003,968--a------C:\WINDOWS\system32\drivers\AvgArCln.sys 2008-01-23 07:38 . 2008-01-23 07:380--a------C:\WINDOWS\vpc32.INI 2008-01-23 07:31 . 2008-01-23 07:32110,952--a------C:\WINDOWS\system32\drivers\SYMEVENT.SYS 2008-01-23 07:31 . 2008-01-23 07:3248,768--a------C:\WINDOWS\system32\S32EVNT1.DLL 2008-01-23 07:28 . 2008-01-24 17:34<DIR>d--------C:\Program Files\Symantec AntiVirus 2008-01-23 07:21 . 2008-01-23 07:21171,008--a------C:\WINDOWS\system32\routing.exe 2008-01-23 07:21 . 2008-01-23 07:2140--a------C:\WINDOWS\system32\drmgs.sys 2008-01-23 07:18 . 2008-01-23 07:18250,368--a------C:\WINDOWS\system32\ndt2.sys 2008-01-20 15:09 . 2008-01-20 15:09<DIR>d--------C:\Program Files\Cyberlink 2008-01-20 13:32 . 2008-01-20 13:3234--ah-----C:\WINDOWS\system32\DVDRipperDiamond_sysquict.dat 2008-01-20 00:10 . 2008-01-20 00:13<DIR>d--------C:\Program Files\Incomplete 2008-01-20 00:08 . 2008-01-20 12:53<DIR>d--------C:\Program Files\LimeWire 2008-01-19 23:50 . 2008-01-23 07:4754,156--ah-----C:\WINDOWS\QTFont.qfn 2008-01-19 23:50 . 2008-01-19 23:501,409--a------C:\WINDOWS\QTFont.for 2008-01-19 23:48 . 2008-01-19 23:49<DIR>d--------C:\Program Files\iTunes 2008-01-19 23:48 . 2008-01-19 23:48<DIR>d--------C:\Program Files\iPod 2008-01-19 23:45 . 2008-01-19 23:47<DIR>d--------C:\Program Files\QuickTime 2008-01-19 23:45 . 2008-01-19 23:45<DIR>d--------C:\Program Files\Apple Software Update 2008-01-19 23:44 . 2008-01-19 23:44<DIR>d----c---C:\WINDOWS\system32\DRVSTORE 2008-01-19 23:44 . 2008-01-19 23:44<DIR>d--------C:\Program Files\Common Files\Apple 2008-01-19 23:44 . 2008-01-15 02:3930,464--a------C:\WINDOWS\system32\drivers\usbaapl.sys 2008-01-19 05:40 . 2008-01-19 05:40<DIR>d--------C:\Program Files\ABIT 2008-01-19 05:08 . 2008-01-19 05:0839,756--a------C:\WINDOWS\system32\FlashMenu.sys 2008-01-19 05:07 . 2008-01-19 05:07<DIR>d--------C:\Program Files\U-ABIT 2008-01-19 05:07 . 2007-01-12 10:5410,848--a------C:\WINDOWS\system32\drivers\WinFlash.sys 2008-01-19 04:41 . 2008-01-19 04:41<DIR>d--------C:\Program Files\Bodrag 2008-01-19 03:43 . 2008-01-19 03:43<DIR>d--------C:\Program Files\Microsoft Silverlight 2008-01-18 18:07 . 2008-01-18 18:07<DIR>d--------C:\Program Files\Gabest 2008-01-18 18:06 . 2008-01-18 18:06<DIR>d--------C:\Program Files\GordianKnot 2008-01-18 18:06 . 2008-01-18 18:06<DIR>d--------C:\Program Files\DivXCodec 2008-01-18 18:06 . 2008-01-18 18:06414,272--a------C:\WINDOWS\system32\DivXc32f.dll 2008-01-18 18:06 . 2008-01-18 18:06414,272--a------C:\WINDOWS\system32\DivXc32.dll 2008-01-18 18:06 . 2008-01-18 18:06291,408--a------C:\WINDOWS\system32\DivXa32.acm 2008-01-18 18:06 . 2008-01-18 18:06240,400--a------C:\WINDOWS\system32\DivX_c32.ax 2008-01-18 18:06 . 2008-01-18 18:06196,608--a------C:\WINDOWS\system32\avisynth.dll 2008-01-18 18:06 . 2008-01-18 18:0633,280--a------C:\WINDOWS\system32\HUFFYUV.DLL 2008-01-18 08:28 . 2008-01-18 08:28<DIR>d--------C:\Program Files\Zone.com Deluxe Games 2008-01-17 16:42 . 2008-01-18 17:20<DIR>d--------C:\Program Files\Winamp Remote 2008-01-17 16:41 . 2007-03-07 18:5143,528---------C:\WINDOWS\system32\drivers\PxHelp20.sys 2008-01-17 16:41 . 2007-03-07 18:519,464---------C:\WINDOWS\system32\drivers\cdralw2k.sys 2008-01-17 16:41 . 2007-03-07 18:519,336---------C:\WINDOWS\system32\drivers\cdr4_xp.sys 2008-01-17 16:40 . 2007-03-07 18:51129,784---------C:\WINDOWS\system32\pxafs.dll 2008-01-17 10:05 . 2008-01-17 10:05169--a------C:\WINDOWS\RtlRack.ini 2008-01-17 09:59 . 2008-01-17 09:59<DIR>d--------C:\Program Files\Common Files\ATI 2008-01-17 09:45 . 2008-01-17 09:450--a------C:\WINDOWS\ATIMMC.INI 2008-01-17 09:23 . 2008-01-17 09:59<DIR>d--------C:\Program Files\ATI Multimedia 2008-01-17 09:15 . 2004-08-04 02:5653,760--a------C:\WINDOWS\system32\vfwwdm32.dll 2008-01-17 09:15 . 2004-08-04 02:5653,760--a--c---C:\WINDOWS\system32\dllcache\vfwwdm32.dll 2008-01-17 09:12 . 2002-11-05 00:0058,240--a------C:\WINDOWS\system32\drivers\atibtcap.sys 2008-01-17 09:12 . 2002-11-05 00:0028,416--a------C:\WINDOWS\system32\drivers\ativxstw.sys 2008-01-17 09:12 . 2002-11-05 00:0017,664--a------C:\WINDOWS\system32\drivers\ativtutw.sys 2008-01-17 09:12 . 2002-11-05 00:006,912--a------C:\WINDOWS\system32\drivers\atibtxbr.sys 2008-01-17 09:08 . 2008-01-17 09:08<DIR>d--------C:\WINDOWS\system32\New Folder 2008-01-17 08:28 . 2008-01-17 08:28<DIR>d--------C:\Program Files\ATI Technologies 2008-01-16 03:43 . 2008-01-16 03:43<DIR>d--------C:\Program Files\Alwil Software 2008-01-16 02:16 . 2008-01-16 03:254,212---h-----C:\WINDOWS\system32\zllictbl.dat 2008-01-16 02:15 . 2008-01-16 04:26<DIR>d--------C:\WINDOWS\system32\ZoneLabs 2008-01-16 02:15 . 2004-04-27 04:4011,264--a------C:\WINDOWS\system32\SpOrder.dll 2008-01-16 02:14 . 2008-01-16 04:26<DIR>d--------C:\WINDOWS\Internet Logs 2008-01-16 02:13 . 2008-01-16 02:13<DIR>d--------C:\Program Files\BitDefender 2008-01-16 01:59 . 2008-01-16 02:40121--a------C:\WINDOWS\bdagent.INI 2008-01-16 01:57 . 2008-01-16 02:3681,984--a------C:\WINDOWS\system32\bdod.bin 2008-01-16 01:53 . 2008-01-16 02:42<DIR>d--------C:\Program Files\Common Files\BitDefender 2008-01-16 01:33 . 2008-01-16 02:03<DIR>d--h-----C:\WINDOWS\system32\Bifrost 2008-01-16 01:04 . 2008-01-16 01:04<DIR>d--------C:\Program Files\CCleaner 2008-01-15 19:09 . 2008-01-15 23:53<DIR>d--------C:\Program Files\Plaxo 2008-01-15 18:38 . 2008-01-15 18:38<DIR>d--------C:\Program Files\Common Files\Wise Installation Wizard 2008-01-13 08:54 . 2008-01-13 08:54<DIR>d--------C:\Program Files\Dr.Hardware 2008 english 2008-01-13 08:54 . 2005-12-01 10:4923,600--a------C:\WINDOWS\system32\drivers\drhard.sys 2008-01-13 08:54 . 2005-12-01 14:3820,651--a------C:\WINDOWS\system32\drivers\DRHARD.VXD 2008-01-13 08:54 . 2005-12-01 14:3820,651--a------C:\WINDOWS\system32\DRHARD.VXD 2008-01-13 08:15 . 2008-01-13 08:15<DIR>d--------C:\Program Files\Alcohol Soft 2008-01-13 08:03 . 2008-01-04 20:3420,336--a------C:\WINDOWS\system32\drivers\SSFS0BB9.sys 2008-01-13 08:02 . 2008-01-04 20:561,526,640--a------C:\WINDOWS\WRSetup.dll 2008-01-12 17:33 . 2008-01-12 17:33<DIR>d--------C:\Program Files\Webroot 2008-01-12 17:33 . 2008-01-04 20:34163,696--a------C:\WINDOWS\system32\drivers\ssidrv.sys 2008-01-12 17:33 . 2008-01-04 20:3423,920--a------C:\WINDOWS\system32\drivers\sskbfd.sys 2008-01-12 17:33 . 2008-01-04 20:3421,872--a------C:\WINDOWS\system32\drivers\sshrmd.sys 2008-01-12 16:36 . 2008-01-12 16:36<DIR>d--------C:\Program Files\Live Search Maps for Outlook 2008-01-12 09:40 . 2008-01-12 09:40<DIR>d--------C:\Program Files\MagicDisc 2008-01-12 09:40 . 2007-09-05 01:4692,544--a------C:\WINDOWS\system32\drivers\mcdbus.sys 2008-01-12 09:34 . 2008-01-12 09:34<DIR>d--------C:\WINDOWS\Sun 2008-01-12 08:29 . 2008-01-12 08:29<DIR>d--------C:\Program Files\Encore 2008-01-11 02:08 . 2008-01-11 02:08<DIR>d--------C:\Program Files\MSECache 2008-01-11 01:44 . 2008-01-11 01:44<DIR>d--------C:\WINDOWS\Caps 2008-01-11 01:24 . 2007-07-30 19:19271,224--a------C:\WINDOWS\system32\mucltui.dll 2008-01-11 01:24 . 2007-07-30 19:19207,736--a------C:\WINDOWS\system32\muweb.dll 2008-01-11 01:24 . 2007-07-30 19:1930,072--a------C:\WINDOWS\system32\mucltui.dll.mui 2008-01-11 01:07 . 2006-10-26 19:5632,592--a------C:\WINDOWS\system32\msonpmon.dll 2008-01-11 01:02 . 2008-01-11 01:02<DIR>d--------C:\Program Files\Microsoft Works 2008-01-11 01:00 . 2008-01-11 01:00<DIR>d--------C:\Program Files\Microsoft.NET 2008-01-11 00:49 . 2008-01-11 01:15<DIR>d--------C:\Program Files\Microsoft Visual Studio 8 2008-01-11 00:40 . 2008-01-11 00:40<DIR>d--------C:\Program Files\Norton License-Renewer Dr AfnDeEnAa 2008-01-11 00:09 . 2008-01-11 00:0910--a------C:\WINDOWS\popcinfo.dat . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-01-20 20:10---------d--h--wC:\Program Files\InstallShield Installation Information 2008-01-12 13:13676,224----a-wC:\WINDOWS\system32\ogacheckcontrol.dll 2008-01-07 00:50---------d-----wC:\Program Files\D-Link 2008-01-07 00:50---------d-----wC:\Program Files\Common Files\InstallShield 2008-01-07 00:38---------d--h--wC:\Program Files\Uninstall Information 2008-01-07 00:35---------d-----wC:\Program Files\microsoft frontpage 2007-11-07 09:26721,920----a-wC:\WINDOWS\system32\lsasrv.dll 2007-10-29 22:431,287,680----a-wC:\WINDOWS\system32\quartz.dll 2007-10-27 22:40222,720----a-wC:\WINDOWS\system32\wmasf.dll 2007-10-24 06:4796,760----a-wC:\WINDOWS\system32\dfshim.dll 2007-10-24 06:4784,480----a-wC:\WINDOWS\system32\mscories.dll 2007-10-24 06:47282,112----a-wC:\WINDOWS\system32\mscoree.dll 2007-10-24 06:47158,720----a-wC:\WINDOWS\system32\mscorier.dll 2003-03-21 18:3716,056----a-wC:\Program Files\owcstp16.dll . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}] C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AOL Fast Start"="C:\Program Files\AOL 9.1\AOL.exe" [2007-10-27 12:44 50528] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "THGuard"="C:\Program Files\TrojanHunter 5.0\THGuard.exe" [2007-09-09 09:31 1046688] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496] "GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2007-08-24 07:00 33648] "Ad-Watch"="D:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe" [2007-11-07 15:49 4579328] "AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2008-01-16 04:31 579072] "vptray"="C:\PROGRA~1\Symantec AntiVirus\VPTray.exe" [2007-03-14 19:49 125632] "!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 04:25 6731312] "PrevxCSI"="C:\Program Files\PrevxCSI\prevxcsi.exe" [ ] "PrevxOne"="C:\Program Files\Prevx1\PXConsole.exe" [2007-01-12 18:52 1503232] "SpySweeper"="C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" [2008-01-04 20:56 5367664] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "AVG7_Run"="C:\PROGRA~1\Grisoft\AVG7\avgw.exe" [2008-01-16 04:31 219136] C:\Documents and Settings\Anyone\Start Menu\Programs\Startup\ Webshots.lnk - C:\Program Files\Webshots\Launcher.exe [2008-01-09 17:55:19 157008] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] "NoInstrumentation"= 1 (0x1) [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=D:\PROGRA~1\Kaspersky Lab\Kaspersky Internet Security 8.0\kloehk.dll [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Acrobat Speed Launcher.lnk] path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk backup=C:\WINDOWS\pss\Adobe Acrobat Speed Launcher.lnkCommon Startup [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Acrobat Synchronizer.lnk] path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Acrobat Synchronizer.lnk backup=C:\WINDOWS\pss\Adobe Acrobat Synchronizer.lnkCommon Startup [HKLM\~\startupfolder\C:^Documents and Settings^Anyone^Start Menu^Programs^Startup^Webshots.lnk] path=C:\Documents and Settings\Anyone\Start Menu\Programs\Startup\Webshots.lnk backup=C:\WINDOWS\pss\Webshots.lnkStartup [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0] --a------ 2006-10-22 23:24 620152 D:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher] --a------ 2007-10-10 19:51 39792 D:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeUpdater] --a------ 2007-02-28 23:06 2321600 C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount] --a------ 2007-12-22 02:23 221568 C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AOL Fast Start] --a------ 2007-10-27 12:44 50528 C:\Program Files\AOL 9.1\AOL.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATI DeviceDetect] --a------ 2005-02-14 14:56 53248 C:\Program Files\ATI Multimedia\main\ATIDtct.EXE [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATI Launchpad] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccApp] --a------ 2006-11-21 17:38 52840 C:\Program Files\Common Files\Symantec Shared\ccApp.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe] --a------ 2004-08-04 02:56 15360 C:\WINDOWS\system32\ctfmon.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent] --a------ 2007-09-06 08:08 136136 C:\Program Files\DAEMON Tools Pro\DTProAgent.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DLD.EXE] C:\Program Files\Download Direct\DLD.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent] --a------ 2006-11-13 13:39 1289000 C:\Program Files\Microsoft ActiveSync\wcescomm.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper] --a------ 2008-01-15 03:22 267048 C:\Program Files\iTunes\iTunesHelper.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut] --a------ 2007-02-07 16:21 54832 d:\Program Files\CyberLink\PowerDVD\Language\Language.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Orb] --a------ 2008-01-07 15:02 495616 C:\Program Files\Winamp Remote\bin\OrbTray.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PlaxoUpdate] --a------ 2007-12-20 10:00 283207 C:\Program Files\Plaxo\3.7.1.2\PlaxoHelper_en.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] --a------ 2008-01-10 15:27 385024 C:\Program Files\QuickTime\QTTask.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl] --------- 2007-02-07 16:24 71216 d:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent] --a------ 2008-01-15 17:54 37376 D:\Program Files\Winamp\winampa.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services] "idsvc"=3 (0x3) "AOL ACS"=2 (0x2) R2 {95808DC4-FA4A-4c74-92FE-5B863F82066B};{95808DC4-FA4A-4c74-92FE-5B863F82 066B};d:\Program Files\CyberLink\PowerDVD\000.fcl [2006-11-02 16:51] R2 ATIBTCAP;ATI TV Wonder Video Capture;C:\WINDOWS\system32\drivers\atibtcap.sys [2002-11-05 00:00] R2 ATIBTXBAR;ATI TV Wonder Video Crossbar;C:\WINDOWS\system32\drivers\atibtxbr.sys [2002-11-05 00:00] R2 ATIVTUTW;ATI TV Wonder TV Tuner;C:\WINDOWS\system32\drivers\ativtutw.sys [2002-11-05 00:00] R2 ATIVXSTW;ATI TV Wonder Audio Crossbar;C:\WINDOWS\system32\drivers\ativxstw.sys [2002-11-05 00:00] R2 perfmons;perfmons Service;C:\WINDOWS\system32\perfs.exe [2003-03-31 07:00] R2 Routing;Routing Service;C:\WINDOWS\system32\routing.exe [2008-01-23 07:21] R3 Dot4Usb HPH09;Dot4Usb HPH09;C:\WINDOWS\system32\drivers\hphius09.sys [2006-01-13 01:46] S3 drhard;DRHARD;C:\WINDOWS\system32\DRIVERS\DRHARD.SYS [2005-12-01 10:49] S3 Memctl;Memctl;C:\Program Files\U-ABIT\FlashMenu\Memctl.sys [2006-04-18 14:53] S3 pxark;pxark;C:\WINDOWS\system32\drivers\pxark.sys [2008-01-23 21:22] S3 SaiH0255;SaiH0255;C:\WINDOWS\system32\DRIVERS\SaiH0255.sys [2005-06-17 18:41] *Newly Created Service* - AD-WATCH_REAL-TIME_SCANNER *Newly Created Service* - AD-WATCH_REGISTRY_FILTER . Contents of the 'Scheduled Tasks' folder "2008-01-24 16:15:03 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job" - C:\Program Files\Apple Software Update\SoftwareUpdate.exe "2008-01-23 07:00:00 C:\WINDOWS\Tasks\Norton Internet Security - Run Full System Scan - Anyone.job" - C:\Program Files\Norton Internet Security\Norton AntiVirus\Navw32.exeh/TASK: . ************************************************************************ ** catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-01-24 17:42:39 Windows 5.1.2600 Service Pack 2 NTFS scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfully hidden files: 0 ************************************************************************ ** .
|
|
IP Logged |
|
|
|