ComboFix 09-01-18.01 - Owner 2009-01-18 20:52:17.8 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.959.621 [GMT -5:00]
Running from: c:\documents and settings\Owner\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Owner\Desktop\CFScript.txt
AV: avast! antivirus 4.8.1296 [VPS 090118-0] *On-access scanning disabled* (Updated)
* Created a new restore point
FILE ::
c:\windows\system32\mss.dll
c:\windows\Tasks\hoagvhxs.job
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Owner\Application Data\Azureus
c:\documents and settings\Owner\Application Data\Azureus\.certs
c:\documents and settings\Owner\Application Data\Azureus\.keystore
c:\documents and settings\Owner\Application Data\Azureus\.lock
c:\documents and settings\Owner\Application Data\Azureus\active\
0127E413E1A85A723BC1034CB97DBAF5EF9B83AC.dat
c:\documents and settings\Owner\Application Data\Azureus\active\
0127E413E1A85A723BC1034CB97DBAF5EF9B83AC.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\
0F565CD73E1A4F471E2E7947A9C77894421A328B.dat
c:\documents and settings\Owner\Application Data\Azureus\active\
0F565CD73E1A4F471E2E7947A9C77894421A328B.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\2A212BF02393053E7C86F7ECF2AD0801319356E2.dat
c:\documents and settings\Owner\Application Data\Azureus\active\2A212BF02393053E7C86F7ECF2AD0801319356E2.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\2BE5A4D03C5FC5CFCBE793935A1009C720CDE831.dat
c:\documents and settings\Owner\Application Data\Azureus\active\2BE5A4D03C5FC5CFCBE793935A1009C720CDE831.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\2D1C9A51C83C811AFDBA81AC2BD3083268A5EB79.dat
c:\documents and settings\Owner\Application Data\Azureus\active\2D1C9A51C83C811AFDBA81AC2BD3083268A5EB79.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\2FE1990388696FD5118E0E4F50266FD22F46B5E0.dat
c:\documents and settings\Owner\Application Data\Azureus\active\2FE1990388696FD5118E0E4F50266FD22F46B5E0.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\37E84C23F912E9545CCCF0D2C1D508C72CB475F9.dat
c:\documents and settings\Owner\Application Data\Azureus\active\37E84C23F912E9545CCCF0D2C1D508C72CB475F9.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\4240D095917456F38144FFA44446F7F9CB0ACFCD.dat
c:\documents and settings\Owner\Application Data\Azureus\active\4240D095917456F38144FFA44446F7F9CB0ACFCD.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\4B9757ABAD29B9BBB152007BC7E0E50A65CEA434.dat
c:\documents and settings\Owner\Application Data\Azureus\active\4B9757ABAD29B9BBB152007BC7E0E50A65CEA434.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\53CAF250F48473F677BEB888298F90899C605BBA.dat
c:\documents and settings\Owner\Application Data\Azureus\active\53CAF250F48473F677BEB888298F90899C605BBA.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\6310D6B19E09E183A039F904A3CC2EA071C5F4EE.dat
c:\documents and settings\Owner\Application Data\Azureus\active\6310D6B19E09E183A039F904A3CC2EA071C5F4EE.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\6A04C35C5B493699E7DFF32BF788ED0FC86D2114.dat
c:\documents and settings\Owner\Application Data\Azureus\active\6A04C35C5B493699E7DFF32BF788ED0FC86D2114.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\6EB7517B98800F37A73FB60E44011A9F07E0D8F7.dat
c:\documents and settings\Owner\Application Data\Azureus\active\6EB7517B98800F37A73FB60E44011A9F07E0D8F7.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\76C0322CA0AFE8B9A344AE89F945529EA46D8A50.dat
c:\documents and settings\Owner\Application Data\Azureus\active\76C0322CA0AFE8B9A344AE89F945529EA46D8A50.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\790D69D160FCCA1EEF71C9260E082DD610516E11.dat
c:\documents and settings\Owner\Application Data\Azureus\active\790D69D160FCCA1EEF71C9260E082DD610516E11.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\7A00BFC3A5CFA82F1AF588F7C1D80098BF8964EF.dat
c:\documents and settings\Owner\Application Data\Azureus\active\7A00BFC3A5CFA82F1AF588F7C1D80098BF8964EF.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\800C80180FE166360F6710D43C8BF5C270AC399D.dat
c:\documents and settings\Owner\Application Data\Azureus\active\800C80180FE166360F6710D43C8BF5C270AC399D.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\80FA9E2060BA38EAA8D59200E57A54FDBFC34D5B.dat
c:\documents and settings\Owner\Application Data\Azureus\active\80FA9E2060BA38EAA8D59200E57A54FDBFC34D5B.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\81F4C6B486508C51864C31BFEFE590D5BA73575A.dat
c:\documents and settings\Owner\Application Data\Azureus\active\81F4C6B486508C51864C31BFEFE590D5BA73575A.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\8C02D047308AC8088C8F58457DD2D322224C4D1E.dat
c:\documents and settings\Owner\Application Data\Azureus\active\8C02D047308AC8088C8F58457DD2D322224C4D1E.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\8FF1C70C832384D03B4751FBF6F005182428CCA3.dat
c:\documents and settings\Owner\Application Data\Azureus\active\8FF1C70C832384D03B4751FBF6F005182428CCA3.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\9556EEEC53245DB7B3679E5EBD5FCCCD7B151498.dat
c:\documents and settings\Owner\Application Data\Azureus\active\9556EEEC53245DB7B3679E5EBD5FCCCD7B151498.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\995DE4B36AECE2D4EFF96CD0D0D9929F6D867C2C.dat
c:\documents and settings\Owner\Application Data\Azureus\active\995DE4B36AECE2D4EFF96CD0D0D9929F6D867C2C.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\9EC334652976A6679A244BB730F84BD5224609DF.dat
c:\documents and settings\Owner\Application Data\Azureus\active\9EC334652976A6679A244BB730F84BD5224609DF.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\9F525C5896B76998D5D9843190BB44FA00FAD93F.dat
c:\documents and settings\Owner\Application Data\Azureus\active\9F525C5896B76998D5D9843190BB44FA00FAD93F.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\A18AA83AE5D25BB792A3CA6A93F14DFF60889B5C.dat
c:\documents and settings\Owner\Application Data\Azureus\active\A18AA83AE5D25BB792A3CA6A93F14DFF60889B5C.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\A2C290831389A324E147B65D7123A78E59417B9D.dat
c:\documents and settings\Owner\Application Data\Azureus\active\A2C290831389A324E147B65D7123A78E59417B9D.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\A7A94B0B99A1405AB28B1BFD3D5EB9F0B5C29034.dat
c:\documents and settings\Owner\Application Data\Azureus\active\A7A94B0B99A1405AB28B1BFD3D5EB9F0B5C29034.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\AA3D1F0EF2F9FE788CAE8C649D29665D3470CD5B.dat
c:\documents and settings\Owner\Application Data\Azureus\active\AA3D1F0EF2F9FE788CAE8C649D29665D3470CD5B.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\BBE2D6B73A447ABA561DBE9AE71CBA6C8B9811A9.dat
c:\documents and settings\Owner\Application Data\Azureus\active\BBE2D6B73A447ABA561DBE9AE71CBA6C8B9811A9.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\BF91D6460A25236A37E8A821AED06E166DD6FB78.dat
c:\documents and settings\Owner\Application Data\Azureus\active\BF91D6460A25236A37E8A821AED06E166DD6FB78.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\C563802F1A55D93243DC34AD0109FBBCBDC76A09.dat
c:\documents and settings\Owner\Application Data\Azureus\active\C563802F1A55D93243DC34AD0109FBBCBDC76A09.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\cache.dat
c:\documents and settings\Owner\Application Data\Azureus\active\CB7C76E54AD7010F77163F70089E57BDD5CB182F.dat
c:\documents and settings\Owner\Application Data\Azureus\active\CB7C76E54AD7010F77163F70089E57BDD5CB182F.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\CDF965EBCEE5CAC5B27007E4B4FE0305FC4C2F60.dat
c:\documents and settings\Owner\Application Data\Azureus\active\CDF965EBCEE5CAC5B27007E4B4FE0305FC4C2F60.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\D51BCD3F357D72CB03AC7AB091489C76A56CB504.dat
c:\documents and settings\Owner\Application Data\Azureus\active\D51BCD3F357D72CB03AC7AB091489C76A56CB504.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\DD9EFE43B86F03B9F0F13E66229456B414EAFDEB.dat
c:\documents and settings\Owner\Application Data\Azureus\active\DD9EFE43B86F03B9F0F13E66229456B414EAFDEB.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\E3A1BAA7DF1009618D5EF1E228BB562FE61307DD.dat
c:\documents and settings\Owner\Application Data\Azureus\active\E3A1BAA7DF1009618D5EF1E228BB562FE61307DD.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\F1BC9A408DB5C7B010B87093C485E50F91405220.dat
c:\documents and settings\Owner\Application Data\Azureus\active\F1BC9A408DB5C7B010B87093C485E50F91405220.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\active\F9C042AE6B114CF826D2296A5B055B1EC45FF1ED.dat
c:\documents and settings\Owner\Application Data\Azureus\active\F9C042AE6B114CF826D2296A5B055B1EC45FF1ED.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\azureus.config
c:\documents and settings\Owner\Application Data\Azureus\azureus.config.bak
c:\documents and settings\Owner\Application Data\Azureus\azureus.statistics
c:\documents and settings\Owner\Application Data\Azureus\azureus.statistics.bak
c:\documents and settings\Owner\Application Data\Azureus\banips.config
c:\documents and settings\Owner\Application Data\Azureus\banips.config.bak
c:\documents and settings\Owner\Application Data\Azureus\dht\addresses.dat
c:\documents and settings\Owner\Application Data\Azureus\dht\contacts.dat
c:\documents and settings\Owner\Application Data\Azureus\dht\diverse.dat
c:\documents and settings\Owner\Application Data\Azureus\dht\general.dat
c:\documents and settings\Owner\Application Data\Azureus\dht\version.dat
c:\documents and settings\Owner\Application Data\Azureus\downloads.config
c:\documents and settings\Owner\Application Data\Azureus\downloads.config.bak
c:\documents and settings\Owner\Application Data\Azureus\filters.config
c:\documents and settings\Owner\Application Data\Azureus\friends.config
c:\documents and settings\Owner\Application Data\Azureus\friends.config.bak
c:\documents and settings\Owner\Application Data\Azureus\ipfilter.cache
c:\documents and settings\Owner\Application Data\Azureus\logs\alerts_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\AutoSpeed_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\AutoSpeed_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\AutoSpeedSearchHistory_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\AutoSpeedSearchHistory_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\clientid_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\debug_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\debug_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\Friends_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\Friends_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\MetaSearch_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\MetaSearch_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\MetaSearch_Engine_2356973964.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\MetaSearch_Engine_3.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\MetaSearch_Engine_3464968690.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\MetaSearch_Engine_3994983617.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\MetaSearch_Engine_4.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\MetaSearch_Engine_4217163900.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\MetaSearch_Engine_5.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\MetaSearch_Engine_6.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\MetaSearch_Engine_9.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\NetStatus_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_alerts_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_AutoSpeed_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_AutoSpeed_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_AutoSpeedSearchHistory_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_AutoSpeedSearchHistory_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_clientid_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_debug_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_debug_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_Friends_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_Friends_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_MetaSearch_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_MetaSearch_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_MetaSearch_Engine_2356973964.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_MetaSearch_Engine_3.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_MetaSearch_Engine_3464968690.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_MetaSearch_Engine_3994983617.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_MetaSearch_Engine_4.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_MetaSearch_Engine_4217163900.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_MetaSearch_Engine_5.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_MetaSearch_Engine_6.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_MetaSearch_Engine_9.txt
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_NetStatus_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_seltrace_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_seltrace_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_SpeedMan_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_SpeedMan_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_Subscriptions_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_Subscriptions_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_thread_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_thread_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_v3.ads_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_v3.CMsgr_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_v3.CMsgr_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_v3.emp_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_v3.emp_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_v3.Friends_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_v3.Friends_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_v3.MD_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_v3.PMsgr_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_v3.PMsgr_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\save\1229886076656_v3.Stream_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\seltrace_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\seltrace_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\SpeedMan_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\SpeedMan_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\Subscriptions_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\Subscriptions_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\thread_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\thread_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\v3.ads_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\v3.CMsgr_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\v3.CMsgr_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\v3.emp_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\v3.emp_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\v3.Friends_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\v3.Friends_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\v3.MD_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\v3.PMsgr_1.log
c:\documents and settings\Owner\Application Data\Azureus\logs\v3.PMsgr_2.log
c:\documents and settings\Owner\Application Data\Azureus\logs\v3.Stream_1.log
c:\documents and settings\Owner\Application Data\Azureus\metasearch.config
c:\documents and settings\Owner\Application Data\Azureus\metasearch.config.bak
c:\documents and settings\Owner\Application Data\Azureus\net\pm_6389.dat
c:\documents and settings\Owner\Application Data\Azureus\net\pm_default.dat
c:\documents and settings\Owner\Application Data\Azureus\sidebarauto.config
c:\documents and settings\Owner\Application Data\Azureus\sidebarauto.config.bak
c:\documents and settings\Owner\Application Data\Azureus\subs\
01FE0E4954FEEB299706.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\
0FD5E982A945618128C5.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\12533BF9649105ABA27A.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\221A173455F724819C49.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\2DF43E7396E6157D8CE5.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\3217BB2D8408D04AAB24.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\3C1C33756A83CC05D595.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\447229A3A371779E8871.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\4757DBA171EB6FD80AC7.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\47B6C9B058D0AB3DE916.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\47D01B51E6FACC969E1D.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\4CD6D96573CE7093FB98.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\4F2AA8C2D919E9835A62.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\50358337AB7CADE416FF.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\52C6D09A02BBB590C252.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\593134AFE6DD0A09D54F.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\5BEE993033F096CF1289.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\632A20E73961F1C133F2.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\655F45C887C9B0B1D424.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\7390271E93033371C94B.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\75BA9B896D5E20EA940E.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\776AA51A4605D1936CF6.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\829E59C40EFFE22EB406.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\83F9D7CFBA5E7496ACC5.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\93B716386602D52C6EB7.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\9E8F0BA815EFF766344A.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\A57341AB2AA7A98D5F19.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\A57341AB2AA7A98D5F19.vuze.bak
c:\documents and settings\Owner\Application Data\Azureus\subs\AE238A40E189FF666A5E.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\B2414BB2E56D073979A6.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\B34B9E6E7F0B454C43E2.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\B34B9E6E7F0B454C43E2.vuze.1
c:\documents and settings\Owner\Application Data\Azureus\subs\B34B9E6E7F0B454C43E2.vuze.bak
c:\documents and settings\Owner\Application Data\Azureus\subs\B5A81529F8BA072CAAD2.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\B9F9824CB0A991DE3AC4.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\BAD9AC808DA5DC699651.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\BAD9AC808DA5DC699651.vuze.bak
c:\documents and settings\Owner\Application Data\Azureus\subs\BFDA089DB78436D3626E.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\CAE43CBB208F38AEE37B.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\CE275B7D9043458D6329.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\DB8EBA0A8243FAC1DD16.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\DCD20AB6684A16AA1475.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\DCE2D727CE3036D9754B.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\E67D8443DF3B6D5C02B4.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\E67D8443DF3B6D5C02B4.vuze.bak
c:\documents and settings\Owner\Application Data\Azureus\subs\ED7A4A68D27A7C72BABE.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\F2E6D4EFBB83F92D8CE9.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\FAFAC4AB5C0D93AD5B55.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\FE19099D09356C10463B.vuze
c:\documents and settings\Owner\Application Data\Azureus\subs\FFD04567280511D0CE32.vuze
c:\documents and settings\Owner\Application Data\Azureus\subscriptions.config
c:\documents and settings\Owner\Application Data\Azureus\subscriptions.config.bak
c:\documents and settings\Owner\Application Data\Azureus\tables.config
c:\documents and settings\Owner\Application Data\Azureus\tables.config.bak
c:\documents and settings\Owner\Application Data\Azureus\timingstats.dat
c:\documents and settings\Owner\Application Data\Azureus\tmp\AZU1678935780920433476.tmp
c:\documents and settings\Owner\Application Data\Azureus\tmp\AZU2723564404687542736.tmp
c:\documents and settings\Owner\Application Data\Azureus\tmp\AZU2895125552209931759.tmp
c:\documents and settings\Owner\Application Data\Azureus\tmp\AZU3455719843040066585.tmp
c:\documents and settings\Owner\Application Data\Azureus\tmp\AZU4111021907402065282.tmp
c:\documents and settings\Owner\Application Data\Azureus\tmp\AZU4502356619508515509.tmp
c:\documents and settings\Owner\Application Data\Azureus\tmp\AZU5871181215110517133.tmp
c:\documents and settings\Owner\Application Data\Azureus\tmp\AZU6127737571968638765.tmp
c:\documents and settings\Owner\Application Data\Azureus\tmp\AZU6476623881069110593.tmp
c:\documents and settings\Owner\Application Data\Azureus\tmp\AZU7732713404765747443.tmp
c:\documents and settings\Owner\Application Data\Azureus\torrents\[isoHunt] Exterminate_It__v1.2.1.0_[RH].4448064.TPB.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\[isoHunt] McDSP.Collection.RTAS-ONLY-H20.rar.4074452.TPB.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\[TBox] Poison the Well Discography.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\[TorrentReactor.to] - My PickUp Girls - Roller Flat(Russian Teen) 17353191.torrent .torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\_Request__Behemoth___Ezkaton__EP___2008_.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\1349 Discografia [
www.heavytorrents.org].torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\283509
c:\documents and settings\Owner\Application Data\Azureus\torrents\A_compilation_of_various_EastWest_sample__amp__loop_CD_s_in_Wave_format.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Acid_Loops_Drums_from_the_big_room_R_amp_B_iso.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Adorned_Brood_Noor_Promo_2008_AMRC.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\ArtyTorrent_Pack_34_Drum_n_Bass_Loops_160_169bpm_WAV_samples.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\ArtyTorrent_Pack_38_Slow_Acoustic_Drum_loops_64_79.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\ArtyTorrent_Pack_40_Hip_Hop_RnB_Drum_Loops_80_89bpm_v1_WAV_samples.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\ArtyTorrent_Pack_44_Hip_Hop_Drum_Loops_100_109_bpm_WAV_samples.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\ArtyTorrent_Pack_45_RnB___Funk_Drum_Loops_100_109_bpm_WAV_sample.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\ArtyTorrent_Pack_9_Hip_Hop_Philosophy_WAV_Repack.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\AZU30056.tmp
c:\documents and settings\Owner\Application Data\Azureus\torrents\AZU32566.tmp
c:\documents and settings\Owner\Application Data\Azureus\torrents\AZU32575.tmp
c:\documents and settings\Owner\Application Data\Azureus\torrents\AZU60301.tmp
c:\documents and settings\Owner\Application Data\Azureus\torrents\AZU8557.tmp
c:\documents and settings\Owner\Application Data\Azureus\torrents\Bass_Builder_s_Reggae_Bass_by_Hal__amp__Leonard.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Cakewalk Sonar v7 0 Producer Edition DVDR DYNAMiCS.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Cakewalk_SONAR_7_Producer_Edition.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Cakewalk_Sonar_v7_0_Producer_Edition_DVDR_DYNAMiCS_torrent.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Celemony_Melodyne_Plugin_VST_RTAS_v1_0_Incl_Keygen_AiR_torrent.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Children_Of_Bodom_Blooddrunk__Advance__2008_FNT.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Children_Of_Bodom_Blooddrunk__Bonus_DVD__2008_LzY.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Cryonic Temple - Discography [
www.heavytorrents.org].torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Cryonic_Temple-Immortal-Promo-2008-AMRC_.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Dark_Empire___Distant_Tides__US_Power_Metal_.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Dark_Empire_Humani_ty_Dethroned_Retai_l_2008_DKM.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\DevilDriver_Discography.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\DIFI_MAXIM_Plug_Ins_For_ProTools.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\DigiDesign_ProTools_M_Powered_v7_4___Crack.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Dillinger_Escape_Plan_Discography___5_Albums.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Dragonforce___Ultra_Beatdown_2008__MP3_320kbps__FLAWL3SS.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Dragonforce_Discography___demonoid.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\DRUMAGOG RETAIL.zip.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Duran_Duran___The_Album_Collection_1981_2007__MP3_EAC_320kBs_.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Eastwest Quantum Leap Symphonic Orchestra Gold version.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Enthroned-Tetra_Karcist-Promo-2007-QTXMp3 [
www.heavytorrents.org].torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Exodus Discography.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Extol_Discography.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Faith No More - Discography.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\For.Dummies.Pro.Tools.All.in.One.Desk.Reference.For.Dummies.2nd.Edition.Mar.2008.eBook-BBL.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Helloween - I Want Out (Live) [YB55FSWXBPNFL5XPET2R33NAJRFV7XKS].torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\HELLOWEEN (Michael Kiske) - Hell on Wheels '87 (Head Bangers Ball TV) [PZHSK4MWPTLNDQ4ZZLTX35ZV727EL5Q5].torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\HELLOWEEN (Michael Kiske) - Hell on Wheels '87 (Head Bangers Ball TV) [PZHSK4MWPTLNDQ4ZZLTX35ZV727EL5Q5].torrent._az
c:\documents and settings\Owner\Application Data\Azureus\torrents\Into_Eternity___The_Incurable_Tragedy__2008_.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Into_Eternity_Discography.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Jaco_Pastorius___Jaco_Pastorius.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Kamelot___Ghost_Opera___Second_Coming_2008__FULL_.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Keeper Of The Seven Keys Part I.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Life_of_Agony___4_albums___192.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Lord_Belial_-_The_Black_Curse-Promo-2008-CMG.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Madina Lake - From Them Through Us To You [h33t] [jakisbak].torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Maiden_Heaven__2008____Various_Artists___Iron_Maiden_Tribute.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Matisyahu.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\McDSP_Compressor_Bank_TDM_RTAS_AS_v3_6.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\McDSP_Filter_Bank_TDM_RTAS_AS_v3_6.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Melechesh_Discography.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Mudvayne_The_New_Game_2008_MUDVAYNE.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Mushroomhead___discography.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\New Wave Selections 80's [K4FPPWXPV6UJ4JI4RSIDZSH7XC5JEBXC].torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Pro_Tools_7_LE_Essential_Training__Lynda_com_.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Pro_Tools_LE_7_4_MAC_Bundle_r33p.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Pro_Tools_LE_and_M_Powered_The_Complete_Guid_protools___www_IPTorrents_com__.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Protools v7 1 Music Production Toolkit Addon-AiR_ST1425274.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\ProTools_LE_Music_Production_Toolkit__48_tracks__.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Protools_Music_Production_Toolkit_7_1_for_LE_and_M_Power.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Real_Player_11_0_9_372_Gold_Premium_SO_SA.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Roger Nichols Digital FINIS VST RTAS v1 2-AiR_ST1424335.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Secrets.of.the.Pros.ProTools.4DVDR_r33p (
www.softzone.org)_ST1145247.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Sonic_Reality_RAW_Sixties_Motown_Grooves.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Star.Wars.The.Clone.Wars.S01E01.HDTV.XviD-0TV.avi.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Star_Wars_The_Clone_Wars_S01E06_HDTV_XviD_SC_SDH.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Star_Wars_The_Clone_Wars_S01E07_HDTV_XviD_2HD.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Star_Wars_The_Clone_Wars_S01E08_HDTV_XviD_SC_SDH.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Teeth_2007_DvDrip_Eng__aXXo.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\The Lords Of The New Church.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\The_69_Eyes___Discography.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Twisted_Sister___Twisted_Christmas___2007.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Type_O_Negative_Life_Is_Killing_Me__Full_Album_2003_.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Type_O_Negative_Studio_Discography__320K.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Vocalign_RTAS_OSX__FIXED_reup.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\VST__amp__RTAS_Audio_Plugins__for_ProTools__Nuendo__Cubase_etc__.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\WaveMachine_Labs_Drumagog_Platinum_VST_RTAS_v4_10_.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Waves Mercury Complete VST DX RTAS v1 01 HAPPY NEW YEAR-AiR_ST1516064.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Within Temptation.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\wumpscut.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Yes___Studio_Discography_1969_2001___Mp3___APS__VBR___.torrent
c:\documents and settings\Owner\Application Data\Azureus\torrents\Yes_Very_best_of___1993.torrent
c:\documents and settings\Owner\Application Data\Azureus\tracker.config
c:\documents and settings\Owner\Application Data\Azureus\tracker.config.bak
c:\documents and settings\Owner\Application Data\Azureus\unsentdata.config
c:\documents and settings\Owner\Application Data\Azureus\unsentdata.config.bak
c:\documents and settings\Owner\Application Data\Azureus\update.log
c:\documents and settings\Owner\Application Data\Azureus\update.properties
c:\documents and settings\Owner\Application Data\Azureus\v3.Friends.dat
c:\documents and settings\Owner\Application Data\Azureus\v3.Friends.dat.bak
c:\documents and settings\Owner\Application Data\Azureus\VuzeActivities.config
c:\documents and settings\Owner\Application Data\Azureus\VuzeActivities.config.bak
c:\program files\ewido anti-malware
c:\program files\ewido anti-malware\danish.mo
c:\program files\ewido anti-malware\hungarian.mo
c:\program files\ewido anti-malware\logfile.txt
c:\program files\ewido anti-malware\s.dat
c:\program files\ewido anti-malware\serbian.mo
c:\program files\IESurfBar
c:\program files\IESurfBar\SurfLite Toolbar\autosearch_plugin.dll
c:\program files\IESurfBar\SurfLite Toolbar\basis.xml
c:\program files\IESurfBar\SurfLite Toolbar\dyn_surflite_aff_1000.crc
c:\program files\IESurfBar\SurfLite Toolbar\dyn_surflite_aff_1000.dll
c:\program files\IESurfBar\SurfLite Toolbar\favicon.ico
c:\program files\IESurfBar\SurfLite Toolbar\icons.bmp
c:\program files\IESurfBar\SurfLite Toolbar\info.txt
c:\program files\IESurfBar\SurfLite Toolbar\logo.png
c:\program files\IESurfBar\SurfLite Toolbar\siteActiv_plugin.dll
c:\program files\IESurfBar\SurfLite Toolbar\siteActivation_URLs.txt
c:\program files\IESurfBar\SurfLite Toolbar\uninstall.exe
c:\program files\IESurfBar\SurfLite Toolbar\version.txt
c:\program files\IESurfBar\SurfLite Toolbar\your_logo.bmp
c:\program files\IESurfBar\SurfLite Toolbar\your_logo.png
c:\program files\Vuze
c:\program files\Vuze\hs_err_pid3712.log
c:\program files\Vuze\hs_err_pid3824.log
c:\program files\Vuze\plugins\azemp\azemp_2.0.30.jar
c:\program files\Vuze\plugins\azemp\azemp_2.0.30.zip
c:\program files\Vuze\plugins\azemp\azemp_2.0.32.jar
c:\program files\Vuze\plugins\azemp\azemp_2.0.32.zip
c:\program files\Vuze\plugins\azemp\azmplay.exe.bak
c:\program files\Vuze\plugins\azemp\cp1250-a.raw.bak
c:\program files\Vuze\plugins\azemp\cp1250-b.raw.bak
c:\program files\Vuze\plugins\azemp\font.desc.bak
c:\program files\Vuze\plugins\azemp\mplayer\config
c:\program files\Vuze\plugins\azemp\osd-mplayer-a.raw.bak
c:\program files\Vuze\plugins\azemp\osd-mplayer-b.raw.bak
c:\program files\Vuze\plugins\azemp\plugin.properties_2.0.30
c:\program files\Vuze\plugins\azemp\plugin.properties_2.0.32
c:\windows\system32\mss.dll
c:\windows\Tasks\hoagvhxs.job
.
((((((((((((((((((((((((( Files Created from 2008-12-19 to 2009-01-19 )))))))))))))))))))))))))))))))
.
2009-01-18 14:38 . 2009-01-18 14:38 <DIR> d-------- c:\program files\Alwil Software
2009-01-01 21:19 . 2009-01-01 21:19 <DIR> d-------- c:\program files\Trend Micro
2009-01-01 19:30 . 2009-01-01 19:30 <DIR> d-------- c:\documents and settings\Administrator\Application Data\Malwarebytes
2009-01-01 19:28 . 2004-04-01 04:03 <DIR> d-------- c:\documents and settings\Administrator\WINDOWS
2009-01-01 19:28 . 2004-04-02 18:04 <DIR> d-------- c:\documents and settings\Administrator\Application Data\Symantec
2009-01-01 19:28 . 2004-04-01 16:49 <DIR> d-------- c:\documents and settings\Administrator\Application Data\SampleView
2009-01-01 19:28 . 2009-01-01 19:28 <DIR> d-------- c:\documents and settings\Administrator
2009-01-01 18:42 . 2009-01-01 18:42 0 --a------ c:\windows\system32\tmcontrol.bin
2009-01-01 18:04 . 2009-01-01 18:04 0 --a------ c:\windows\system32\system32xp.exe.tmp
2009-01-01 18:04 . 2009-01-01 18:04 0 --a------ c:\windows\system32\.tmp
2009-01-01 18:01 . 2009-01-01 18:01 108,336 --a------ c:\windows\system32\mswinsck.ocx
2009-01-01 18:00 . 2009-01-18 20:55 112,364 --a------ c:\windows\system32\drivers\6266c5bf.sys
2009-01-01 18:00 . 2009-01-01 18:00 4,707 --a------ c:\windows\system32\aidb.dat
2009-01-01 18:00 . 2009-01-01 18:54 2 --a------ C:\1077971964
2008-12-23 01:26 . 2008-12-23 01:26 410,984 --a------ c:\windows\system32\deploytk.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-01-04 19:16 --------- d-----w c:\documents and settings\Owner\Application Data\U3
2009-01-02 03:28 --------- d-----w c:\program files\Malwarebytes' Anti-Malware
2009-01-01 22:59 --------- d-----w c:\program files\Common Files\Real
2008-12-23 06:26 --------- d-----w c:\program files\Java
2008-12-11 10:57 333,952 ----a-w c:\windows\system32\drivers\srv.sys
2008-12-04 00:54 38,496 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys
2008-12-04 00:54 15,504 ----a-w c:\windows\system32\drivers\mbam.sys
2008-11-20 20:11 --------- d-----w c:\program files\free-downloads.net
2008-11-20 20:11 --------- d-----w c:\program files\Conduit
2008-11-20 20:11 --------- d-----w c:\program files\Alcohol Soft
2008-10-23 12:36 286,720 ----a-w c:\windows\system32\gdi32.dll
2006-12-16 20:09 251,883 ----a-w c:\program files\uninstal.log
2004-12-05 06:24 184,808 -c--a-w c:\documents and settings\Owner\Application Data\shb.dat
2008-12-24 13:07 67,688 ----a-w c:\program files\mozilla firefox\components\jar50.dll
2008-12-24 13:07 54,368 ----a-w c:\program files\mozilla firefox\components\jsd3250.dll
2008-12-24 13:07 34,944 ----a-w c:\program files\mozilla firefox\components\myspell.dll
2008-12-24 13:07 46,712 ----a-w c:\program files\mozilla firefox\components\spellchk.dll
2008-12-24 13:07 172,136 ----a-w c:\program files\mozilla firefox\components\xpinstal.dll
2008-09-24 17:08 32,768 --sha-w c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\MSHist012008092420080925\index.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{0579B4B6-0293-4d73-B02D-5EBB0BA0F0A2}"= "c:\program files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL" [2008-08-29 66912]
"{ecdee021-0d17-467f-a1ff-c7a115230949}"= "c:\program files\free-downloads.net\tbfree.dll" [2008-02-14 1555480]
[HKEY_CLASSES_ROOT\clsid\{0579b4b6-0293-4d73-b02d-5ebb0ba0f0a2}]
[HKEY_CLASSES_ROOT\clsid\{ecdee021-0d17-467f-a1ff-c7a115230949}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-07-26 68856]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\axcmd.exe" [2008-11-20 4608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2008-12-23 136600]
"Recguard"="c:\windows\SMINST\RECGUARD.EXE" [2004-04-14 233472]
"UpdateManager"="c:\program files\Common Files\Sonic\Update Manager\sgtray.exe" [2003-08-19 110592]
"DigidesignMMERefresh"="c:\program files\Digidesign\Drivers\MMERefresh.exe" [2007-10-30 77824]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2008-09-06 413696]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-09-10 289576]
"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2008-12-03 1265296]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-11-26 81000]
"VTTimer"="VTTimer.exe" [2005-03-08 c:\windows\system32\VTTimer.exe]
"AGRSMMSG"="AGRSMMSG.exe" [2005-03-04 c:\windows\AGRSMMSG.exe]
"AlcxMonitor"="ALCXMNTR.EXE" [2004-09-07 c:\windows\ALCXMNTR.EXE]
"WD Button Manager"="WDBtnMgr.exe" [2007-02-16 c:\windows\system32\WDBtnMgr.exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2007-03-22 39264]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2008-04-23 29696]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"wave10"= Digi32.dll
"Midi1"= BCR2000.DLL
"Midi2"= usbkt1x1.dll
"Midi3"= diomidi.dll
"Midi4"= mbx2midu.dll
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^DriveSelect.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\DriveSelect.lnk
backup=c:\windows\pss\DriveSelect.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^MFWAKeys.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\MFWAKeys.lnk
backup=c:\windows\pss\MFWAKeys.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Quicken Scheduled Updates.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Quicken Scheduled Updates.lnk
backup=c:\windows\pss\Quicken Scheduled Updates.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Updates from HP.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Updates from HP.lnk
backup=c:\windows\pss\Updates from HP.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^Owner^Start Menu^Programs^Startup^IMStart.lnk]
path=c:\documents and settings\Owner\Start Menu\Programs\Startup\IMStart.lnk
backup=c:\windows\pss\IMStart.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BackupNotify]
--a------ 2004-01-09 04:34 32768 c:\program files\HP\Digital Imaging\bin\BackupNotify.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Component Manager]
--a------ 2003-12-22 18:38 241664 c:\program files\HP\hpcoretech\hpcmpmgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPDJ Taskbar Utility]
--a------ 2003-03-27 04:34 172032 c:\windows\system32\spool\drivers\w32x86\3\hpztsb08.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPHUPD05]
--a------ 2003-08-21 06:23 49152 c:\program files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpsysdrv]
--a------ 1998-05-07 19:04 52736 c:\windows\system\hpsysdrv.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
--a------ 2008-09-10 16:40 289576 c:\program files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KBD]
--a------ 2003-02-11 22:02 61440 c:\hp\KBD\kbd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--a------ 2008-04-13 19:12 1695232 c:\program files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
--a------ 2001-07-09 10:50 155648 c:\windows\system32\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2008-09-06 14:09 413696 c:\program files\QuickTime\QTTask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\spc_w]
--a------ 2004-11-09 03:29 286786 c:\program files\NZSearch\nzspc.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Updates from HP\\137903\\Program\\BackWeb-137903.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"Ø[‘|€ø"= Ø[‘|€ø:Windows Service Processor
"Ø[‘|€ø"= Ø[‘|€ø:Windows Service Processor
R0 DigiFilter;DigiFilter;c:\windows\system32\drivers\DigiFilt.sys [2008-08-09 16384]
R1 Asapi;Asapi;c:\windows\system32\drivers\asapi.sys [2006-01-20 11264]
R1 aswsp;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-01-18 111184]
R1 MBX2DFU;MBX2DFU;c:\windows\system32\drivers\mbx2dfu.sys [2008-08-09 21648]
R3 dalwdmservice;dal service;c:\windows\system32\drivers\Dalwdm.sys [2008-08-09 97808]
R3 MBX2MIDK;Digidesign Mbox 2 Midi Driver;c:\windows\system32\drivers\mbx2midk.sys [2008-08-09 21904]
R3 motubus;MOTU Audio MIDI Extension;c:\windows\system32\drivers\motubus.sys [2004-10-18 15488]
R4 aswfsblk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-01-18 20560]
R4 DigiNet;Digidesign Ethernet Support;c:\windows\system32\drivers\diginet.sys [2008-08-09 16400]
R4 WinDefend;Windows Defender;c:\program files\Windows Defender\MsMpEng.exe [2006-11-03 13592]
S3 BCR2000;B-Control Rotary/Fader 2000 (08/04/2004,1.1.1.0);c:\windows\system32\drivers\bcr2000.sys [2004-08-13 21024]
S3 Duende;Duende Firewire Driver;c:\windows\system32\drivers\Duende.sys [2007-05-24 54320]
S3 iLokDrvr;iLok;c:\windows\system32\drivers\iLokDrvr.sys [2007-09-05 54256]
S3 L6BODP;Bass PODxt Pro Service;c:\windows\system32\drivers\L6BODP.sys [2004-10-05 114048]
S3 MFWAMIDI;MOTU FireWire Audio MIDI;c:\windows\system32\drivers\MFWAMIDI.sys [2004-10-18 18816]
S3 MFWAWAVE;MOTU FireWire Audio Wave;c:\windows\system32\drivers\MFWAWave.sys [2004-10-18 24320]
S3 MotuFWA;MotuFWA;c:\windows\system32\drivers\MotuFWA.sys [2004-10-18 120576]
S3 UKS11LDR;M-Audio USB Keystation Loader;c:\windows\system32\drivers\uks11ldr.sys [2006-01-15 13504]
S3 USBKT1X1;M-Audio USB Keystation;c:\windows\system32\drivers\usbkt1x1.sys [2006-01-15 22304]
S4 mrtRate;mrtRate; [x]
.
Contents of the 'Scheduled Tasks' folder
2009-01-01 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]
2009-01-18 c:\windows\Tasks\MP Scheduled Scan.job
- c:\program files\Windows Defender\MpCmdRun.exe [2006-11-03 18:20]
2009-01-19 c:\windows\Tasks\Symantec NetDetect.job
- c:\program files\Symantec\LiveUpdate\NDETECT.EXE [2004-12-14 11:24]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://google.com
uDefault_Search_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=EN_US&c=Q304&bd=pavilion&pf=desktop
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mStart Page = hxxp://www.yahoo.com
mSearch Bar = about:blank
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = localhost;*.local
uSearchURL,(Default) = hxxp://www.yahoo.com/
IE: &AIM Search - c:\program files\AIM Toolbar\AIMBar.dll/aimsearch.htm
IE: Add To HP Organize... - c:\progra~1\HEWLET~1\HPORGA~1\bin\core.hp.main\SendTo.html
IE: E&xport to Microsoft Excel - c:\progra~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\Owner\Application Data\Mozilla\Firefox\Profiles\c0djjq0p.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1098640&SearchSource=3&q=
FF - prefs.js: browser.search.selectedEngine - Web Search
FF - prefs.js: browser.startup.homepage - hxxp://google.com
FF - component: c:\documents and settings\Owner\Application Data\Mozilla\Firefox\Profiles\c0djjq0p.default\extensions\{ecdee021-0d17-467f-a1ff-c7a115230949}\components\FFAlert.dll
FF - component: c:\program files\Mozilla Firefox\components\xpinstal.dll
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-01-18 20:55:44
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\6266c5bf]
"ImagePath"="\SystemRoot\System32\drivers\6266c5bf.sys"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"cd042efbbd7f7af1647644e76e06692b"=hex:c8,28,51,af,b0,29,a3,98,07,98,47,78,0a,
78,8d,d2,e2,63,26,f1,3f,c8,ff,68,1e,2b,5b,19,e1,2f,6c,f9,e2,63,26,f1,3f,c8,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"bca643cdc5c2726b20d2ecedcc62c59b"=hex:71,3b,04,66,8b,46,0d,96,d0,70,ec,cf,a3,
52,bf,1a,6a,9c,d6,61,af,45,84,18,94,be,41,0b,9c,55,ee,14,6a,9c,d6,61,af,45,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"2c81e34222e8052573023a60d06dd016"=hex:7a,45,05,fd,91,e8,6f,31,d9,df,9a,c7,3b,
fe,fe,70,ff,7c,85,e0,43,d4,0e,fe,d1,57,d4,eb,55,f4,4e,04,ff,7c,85,e0,43,d4,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"2582ae41fb52324423be06337561aa48"=hex:86,8c,21,01,be,91,eb,e7,17,b8,8f,4b,8c,
7a,38,9b,86,8c,21,01,be,91,eb,e7,84,18,24,7c,cc,77,9d,b5,86,8c,21,01,be,91,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"caaeda5fd7a9ed7697d9686d4b818472"=hex:cd,44,cd,b9,a6,33,6c,cd,72,98,fe,94,8e,
39,91,a9,f5,1d,4d,73,a8,13,5c,05,a5,97,cc,bd,1a,1a,40,ab,f5,1d,4d,73,a8,13,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"a4a1bcf2cc2b8bc3716b74b2b4522f5d"=hex:b0,18,ed,a7,3f,8d,37,a4,d8,a5,3b,f9,7d,
c0,21,8c,df,20,58,62,78,6b,cf,c8,e0,0d,50,49,a6,85,b5,ad,df,20,58,62,78,6b,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"4d370831d2c43cd13623e232fed27b7b"=hex:97,20,4e,9a,c7,f1,35,ee,a7,bf,7f,13,ac,
a6,46,aa,fb,a7,78,e6,12,2f,9a,ea,37,19,d7,99,6b,6b,58,fa,fb,a7,78,e6,12,2f,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"1d68fe701cdea33e477eb204b76f993d"=hex:aa,52,c6,00,84,3c,26,64,86,ea,e7,95,ee,
99,16,2a,01,3a,48,fc,e8,04,4a,f1,8a,f7,99,79,45,ea,b6,21,01,3a,48,fc,e8,04,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"1fac81b91d8e3c5aa4b0a51804d844a3"=hex:f6,0f,4e,58,98,5b,89,c9,69,26,c1,69,c4,
78,60,12,f6,0f,4e,58,98,5b,89,c9,ea,8c,20,e9,a3,99,d4,ce,f6,0f,4e,58,98,5b,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"f5f62a6129303efb32fbe080bb27835b"=hex:b1,cd,45,5a,a8,c4,f8,b9,40,68,95,ea,56,
62,74,a4,3d,ce,ea,26,2d,45,aa,78,f6,00,87,62,58,0e,f0,92,3d,ce,ea,26,2d,45,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"fd4e2e1a3940b94dceb5a6a021f2e3c6"=hex:f8,31,0f,a9,5f,a0,ec,fb,44,62,b8,4a,6e,
b6,6b,05,2a,b7,cc,b5,b9,7f,41,e7,e5,61,d8,d9,be,93,a2,cf,2a,b7,cc,b5,b9,7f,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32*]
"ThreadingModel"="Apartment"
@="c:\\WINDOWS\\system32\\OLE32.DLL"
"8a8aec57dd6508a385616fbc86791ec2"=hex:fa,ea,66,7f,d4,3b,6b,70,cf,47,64,f8,b4,
c9,90,45,6c,43,2d,1e,aa,22,2f,9c,08,ff,49,47,c8,de,39,67,6c,43,2d,1e,aa,22,\
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(708)
c:\windows\system32\mbx2midu.dll
- - - - - - - > 'lsass.exe'(764)
c:\windows\system32\mbx2midu.dll
.
Completion time: 2009-01-18 20:57:59
ComboFix-quarantined-files.txt 2009-01-19 01:57:21
ComboFix2.txt 2009-01-18 23:06:19
ComboFix3.txt 2009-01-04 19:37:46
ComboFix4.txt 2009-01-03 02:22:51
ComboFix5.txt 2009-01-19 01:51:38
Pre-Run: 28,585,639,936 bytes free
Post-Run: 28,566,835,200 bytes free
679 --- E O F --- 2009-01-18 10:48:01
Malwarebytes' Anti-Malware 1.33
Database version: 1666
Windows 5.1.2600 Service Pack 3
1/19/2009 6:10:09 AM
mbam-log-2009-01-19 (06-10-09).txt
Scan type: Full Scan (C:\|D:\|)
Objects scanned: 163318
Time elapsed: 2 hour(s), 0 minute(s), 29 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 16
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\Program Files\Alwil Software\Avast4\DATA\moved\A0109065.dll (Trojan.Clicker) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\A0109043.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\A0109064.exe (Trojan.Clicker) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\mnmx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\TDSSaesi.dll.vir (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\TDSSjvkw.dll.vir (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\TDSSqyvo.sys.vir (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\TDSSurtp.dll.vir (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\TDSSyyen.dll.vir (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\A0109147.sys (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\A0109148.dll (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\A0109149.dll (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\A0109151.dll (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\Program Files\Alwil Software\Avast4\DATA\moved\A0109152.dll (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{70304573-AB33-4072-AA96-4495C42D15E3}\RP922\A0109040.dll (Spyware.Banker) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\drivers\6266c5bf.sys (Rootkit.Agent) -> Delete on reboot.